Модераторы: 2man
  

Поиск:

Ответ в темуСоздание новой темы Создание опроса
> месенджер WP, или веб шелл ? 
:(
    Опции темы
php717
  Дата 26.6.2014, 19:42 (ссылка) | (нет голосов) Загрузка ... Загрузка ... Быстрая цитата Цитата


Новичок



Профиль
Группа: Участник
Сообщений: 2
Регистрация: 12.6.2014

Репутация: нет
Всего: нет



нашол скрипт мессенджера.. 
но к сожалению virustotal.com а именно Bkav пишет что там : VEX44f6.Webshell 
я вообсче немогу даже найти что это за модификация шелла .. и где он имено...

кто может помочь ?


Код


            $rows = get_option('default_post_edit_rows');
            if (($rows < 3) || ($rows > 100)){
                $rows = 12;
            }
            $rows = "rows='$rows'";

            if ( user_can_richedit() ){
                add_filter('the_editor_content', 'wp_richedit_pre');
            }
            //    $the_editor_content = apply_filters('the_editor_content', $content);
            ?>
            <h2><?php _e('Send Reply', 'messaging') ?></h2>
            <form name="reply_to_message" method="POST" action="admin.php?page=messaging&action=reply_process">
            <input type="hidden" name="message_to" value="<?php echo $tmp_username; ?>" class="messaging-suggest-user ui-autocomplete-input" autocomplete="off" />
            <input type="hidden" name="message_subject" value="<?php echo $tmp_message_subject; ?>" />
                <table class="form-table">
                <tr valign="top">
                <th scope="row"><?php _e('To', 'messaging') ?></th>
                <td><input disabled="disabled" type="text" name="message_to" id="message_to_disabled" style="width: 95%" maxlength="200" value="<?php echo $tmp_username; ?>" />
                <br />
                <?php //_e('Required - seperate multiple usernames by commas Ex: demouser1,demouser2') ?></td>
                </tr>
                <tr valign="top">
                <th scope="row"><?php _e('Subject', 'messaging') ?></th>
                <td><input disabled="disabled" type="text" name="message_subject" id="message_subject_disabled" style="width: 95%" maxlength="200" value="<?php echo $tmp_message_subject; ?>" />
                <br />
                <?php //_e('Required') ?></td>
                </tr>
                <tr valign="top">
                <th scope="row"><?php echo $tmp_username . __(' wrote', 'messaging'); ?></th>
                <td><?php echo $tmp_message_content; ?>
                <br />
                <?php _e('Required', 'messaging') ?></td>
                </tr>
                <tr valign="top">
                <th scope="row"><?php _e('Content', 'messaging') ?></th>
                <td>
            <?php if (version_compare($wp_version, "3.3") >= 0 && user_can_richedit()) { ?>
                <?php wp_editor('', 'message_content'); ?>
            <?php } else { ?>
                <textarea <?php if ( user_can_richedit() ){ echo "class='mceEditor'"; } ?> <?php echo $rows; ?> style="width: 95%" name='message_content' tabindex='1' id='message_content'></textarea>
            <?php } ?>

        <br />
                <?php _e('Required', 'messaging') ?></td>
                </tr>
                </table>
            <p class="submit">
            <input class="button button-primary" type="submit" name="Submit" value="<?php _e('Send', 'messaging') ?>" />
            </p>
            </form>                <?php
            } else {
            ?>
            <p><?php _e('You do not have permission to view this message', 'messaging') ?></p>
            <?php
            }
        break;
        //---------------------------------------------------//
        case "reply_process":
            if ($_POST['message_to'] == '' || $_POST['message_subject'] == '' || $_POST['message_content'] == ''){
                $rows = get_option('default_post_edit_rows');
                if (($rows < 3) || ($rows > 100)){
                    $rows = 12;
                }
                $rows = "rows='$rows'";

                if ( user_can_richedit() ){
                    add_filter('the_editor_content', 'wp_richedit_pre');
                }
                //    $the_editor_content = apply_filters('the_editor_content', $content);
                ?>
                <h2><?php _e('Send Reply', 'messaging') ?></h2>
                <p><?php _e('Please fill in all required fields', 'messaging') ?></p>
                <form name="reply_to_message" method="POST" action="admin.php?page=messaging&action=reply_process">
                <input type="hidden" name="message_to" value="<?php echo sanitize_text_field($_POST['message_to']); ?>" />
                <input type="hidden" name="message_subject" value="<?php echo stripslashes(sanitize_text_field($_POST['message_subject'])); ?>" />
                    <table class="form-table">
                    <tr valign="top">
                    <th scope="row"><?php _e('To', 'messaging') ?></th>
                    <td><input disabled="disabled" type="text" name="message_to" id="message_to_disabled"
                        class="messaging-suggest-user ui-autocomplete-input" autocomplete="off"
                        style="width: 95%" maxlength="200"
                        value="<?php echo sanitize_text_field($_POST['message_to']); ?>" />
                    <br />
                    <?php //_e('Required - seperate multiple usernames by commas Ex: demouser1,demouser2') ?></td>
                    </tr>
                    <tr valign="top">
                    <th scope="row"><?php _e('Subject', 'messaging') ?></th>
                    <td><input disabled="disabled" type="text" name="message_subject" id="message_subject_disabled" style="width: 95%" maxlength="200" value="<?php echo stripslashes(sanitize_text_field($_POST['message_subject'])); ?>" />
                    <br />
                    <?php //_e('Required') ?></td>
                    </tr>
                    <tr valign="top">
                    <th scope="row"><?php _e('Content', 'messaging') ?></th>
                    <td><textarea <?php if ( user_can_richedit() ){ echo "class='mceEditor'"; } ?> <?php echo $rows; ?> style="width: 95%" name='message_content' tabindex='1' id='message_content'><?php echo wp_kses_post($_POST['message_content']); ?></textarea>
                    <br />
                    <?php _e('Required', 'messaging') ?></td>
                    </tr>
                    </table>
                <p class="submit">
                <input class="button button-primary" type="submit" name="Submit" value="<?php _e('Send', 'messaging') ?>" />
                </p>
                </form>
        <?php
                    if ( user_can_richedit() ){
                        wp_print_scripts( array( 'wpdialogs-popup' ) );
                        wp_print_styles('wp-jquery-ui-dialog');

                        require_once ABSPATH . 'wp-admin/includes/template.php';
                        require_once ABSPATH . 'wp-admin/includes/internal-linking.php';
                        ?><div style="display:none;"><?php wp_link_dialog(); ?></div><?php
                        wp_print_scripts('wplink');
                        wp_print_styles('wplink');
                    }
            } else {
                //==========================================================//
                $tmp_usernames = sanitize_text_field($_POST['message_to']);
                //$tmp_usernames = str_replace( ",", ', ', $tmp_usernames );
                //$tmp_usernames = ',,' . $tmp_usernames . ',,';
                //$tmp_usernames = str_replace( " ", '', $tmp_usernames );
                $tmp_usernames_array = explode(",", $tmp_usernames);
                $tmp_usernames_array = array_unique($tmp_usernames_array);

                $tmp_username_error = 0;
                $tmp_error_usernames = '';
                $tmp_to_all_uids = '|';

                foreach ($tmp_usernames_array as $tmp_username){
                    $tmp_username = trim($tmp_username);
                    if ($tmp_username != ''){
                        $tmp_username_count = $wpdb->get_var($wpdb->prepare("SELECT COUNT(*) FROM " . $wpdb->users . " WHERE user_login = %s", $tmp_username));
                        if ($tmp_username_count > 0){
                            $tmp_user_id = $wpdb->get_var($wpdb->prepare("SELECT ID FROM " . $wpdb->users . " WHERE user_login = %s", $tmp_username));
                            $tmp_to_all_uids = $tmp_to_all_uids . $tmp_user_id . '|';
                            //found
                        } else {
                            $tmp_username_error = $tmp_username_error + 1;
                            $tmp_error_usernames = $tmp_error_usernames . $tmp_username . ', ';
                        }
                    }
                }
                $tmp_error_usernames = trim($tmp_error_usernames, ", ");
                //==========================================================//
                if ($tmp_username_error > 0){
                    $rows = get_option('default_post_edit_rows');
                    if (($rows < 3) || ($rows > 100)){
                        $rows = 12;
                    }
                    $rows = "rows='$rows'";
                    ?>
                    <h2><?php _e('Send Reply', 'messaging') ?></h2>
                    <p><?php _e('The following usernames could not be found in the system', 'messaging') ?> <em><?php echo $tmp_error_usernames; ?></em></p>
                    <form name="new_message" method="POST" action="admin.php?page=messaging&action=reply_process">
                    <input type="hidden" name="message_to" value="<?php echo sanitize_text_field($_POST['message_to']); ?>" />
                    <input type="hidden" name="message_subject" value="<?php echo stripslashes(sanitize_text_field($_POST['message_subject'])); ?>" />
                        <table class="form-table">
                        <tr valign="top">
                        <th scope="row"><?php _e('To', 'messaging') ?></th>
                        <td><input disabled="disabled" type="text" name="message_to" id="message_to_disabled"
                         class="messaging-suggest-user ui-autocomplete-input" autocomplete="off"
                         style="width: 95%" tabindex='1' maxlength="200"
                         value="<?php echo sanitize_text_field($_POST['message_to']); ?>" />
                        <br />
                        <?php //_e('Required - seperate multiple usernames by commas Ex: demouser1,demouser2') ?></td>
                        </tr>
                        <tr valign="top">
                        <th scope="row"><?php _e('Subject', 'messaging') ?></th>
                        <td><input disabled="disabled" type="text" name="message_subject" id="message_subject_disabled" style="width: 95%" tabindex='2' maxlength="200" value="<?php echo stripslashes(sanitize_text_field($_POST['message_subject'])); ?>" />
                        <br />
                        <?php //_e('Required') ?></td>
                        </tr>
                        <tr valign="top">
                        <th scope="row"><?php _e('Content', 'messaging') ?></th>
                        <td><textarea <?php if ( user_can_richedit() ){ echo "class='mceEditor'"; } ?> <?php echo $rows; ?> style="width: 95%" name='message_content' tabindex='3' id='message_content'><?php echo wp_kses_post($_POST['message_content']); ?></textarea>
            <br />
                        <?php _e('Required', 'messaging') ?></td>
                        </tr>
                        </table>
                    <p class="submit">
                    <input class="button button-primary" type="submit" name="Submit" value="<?php _e('Send', 'messaging') ?>" />
                    </p>
                    </form>
            <?php
                    if ( user_can_richedit() ){
                        wp_print_scripts( array( 'wpdialogs-popup' ) );
                        wp_print_styles('wp-jquery-ui-dialog');

                        require_once ABSPATH . 'wp-admin/includes/template.php';
                        require_once ABSPATH . 'wp-admin/includes/internal-linking.php';
                        ?><div style="display:none;"><?php wp_link_dialog(); ?></div><?php
                        wp_print_scripts('wplink');
                        wp_print_styles('wplink');
                    }
                } else {
                    //everything checked out - send the messages
                    ?>
                    <p><?php _e('Sending message(s)...', 'messaging') ?></p>
                    <?php
                    foreach ($tmp_usernames_array as $tmp_username){
                        if ($tmp_username != ''){


PM MAIL   Вверх
  
Ответ в темуСоздание новой темы Создание опроса
0 Пользователей читают эту тему (0 Гостей и 0 Скрытых Пользователей)
0 Пользователей:
« Предыдущая тема | WordPress | Следующая тема »


 




[ Время генерации скрипта: 0.0441 ]   [ Использовано запросов: 22 ]   [ GZIP включён ]


Реклама на сайте     Информационное спонсорство

 
По вопросам размещения рекламы пишите на vladimir(sobaka)vingrad.ru
Отказ от ответственности     Powered by Invision Power Board(R) 1.3 © 2003  IPS, Inc.