403Webshell
Server IP : 192.169.170.185  /  Your IP : 216.73.216.97
Web Server : Apache
System : Linux p3plmcpnl495852.prod.phx3.secureserver.net 4.18.0-553.52.1.lve.el8.x86_64 #1 SMP Wed May 21 15:31:29 UTC 2025 x86_64
User : akhilnew ( 1712764)
PHP Version : 5.6.40
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/akhilnew/www/inc/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/akhilnew/www/inc/journalsubscription.php
<?php
if($decryptedfocus === '[GET_ENQUIRY]'):
	if(isset($_POST['honeypot']) && $_POST['honeypot'] !== ''):
		die(output('You are not authorized user.'));
	endif;

	if (preg_match( '/[\p{Cyrillic}]/u', $_POST['message'])) {
		die(output('You are not authorized user.'));
	}

	$name = filter_input(INPUT_POST, 'name', FILTER_SANITIZE_STRING);
	$name = strip_tags($fn->remespace($fn->escape($name)));
	$name = stripslashes(stripcslashes(htmlentities($name, ENT_QUOTES)));

	$email = filter_input(INPUT_POST, 'email', FILTER_SANITIZE_EMAIL);
	$email = strip_tags($fn->remaspace($fn->escape($email)));

	$phone = filter_input(INPUT_POST, 'phone', FILTER_SANITIZE_STRING);
	$phone = strip_tags($fn->remespace($fn->sanitize($fn->escape($phone))));

	$message = filter_input(INPUT_POST, 'message', FILTER_SANITIZE_STRING);
	$message = strip_tags($fn->remespace($fn->escape($message)));
	$message = stripslashes(stripcslashes(htmlentities(str_replace('\r\n', PHP_EOL, $message), ENT_QUOTES)));

	$address = filter_input(INPUT_POST, 'address', FILTER_SANITIZE_STRING);
	$address = strip_tags($fn->remespace($fn->escape($address)));

	$capcode = filter_input(INPUT_POST, 'capcode', FILTER_SANITIZE_STRING);
	$capcode = strip_tags($fn->remaspace($fn->escape($capcode)));

	$baseurl = parse_url($baseurl, PHP_URL_HOST);

	if(preg_match('(pills|canadian|female|viagra|walmart|yandex|cialis|autoauction.nhk)', $email) === 1):
		die(output('You are not authorized user.'));
	endif;
	if(preg_match('(pills|canadian|female|viagra|walmart|yandex|cialis|autoauction.nhk)', $message) === 1):
		die(output('You are not authorized user.'));
	endif;

	if(empty($name)):
		die(output('Please enter your full name.'));
	elseif(empty($email)):
		die(output('Please enter your email ID.'));
	elseif($fn->validateemail($email) === false):
		die(output('Please enter a valid email ID.'));
	elseif(empty($phone) && strlen($phone) == 0):
		die(output('Please enter your phone number.'));
	elseif(empty($message)):
		die(output('Please enter your message.'));
	elseif(empty($address)):
		die(output('Please enter your address.'));
	elseif(empty($capcode)):
		die(output('Please enter captcha code.'));
	else:
		if($capcode == $_SESSION['akiniksubscaptcha']):
			$creation= date('Y-m-d H:i:s');
			$stmt = $mysqli->prepare("INSERT INTO enquiry(name, email, phone, message, address, creation) VALUES(?, ?, ?, ?, ?, ?)") or die(output('An error occurred. Please contact '.$websitename.'.'));
			$stmt->bind_param('ssssss', $name, $email, $phone, $message, $address, $creation);
			$e = $stmt->execute();
			$lastid = $stmt->insert_id;
			$stmt->close();
			if($e):
				$message  = nl2br(html_entity_decode($message));
				$lastid = str_pad($lastid, 8, 0, STR_PAD_LEFT);
				$date = date('d/m/Y');
				$subject = 'Journal Subscription Enquiry Received. UID: #'.$lastid;
				$message = <<<EOJ
	<table brder="0" cellpadding="0" cellspacing="0" style="float:left;width:500px;background:#fff"><tr><td align="left" valign="middle" style="background:#1b2e72;border-bottom:3px solid #f6cc00;padding:12px 15px;color:#98afdb;font-size:17px;text-transform:uppercase">{$name}</td><td align="right" valign="middle" style="background:#1b2e72;border-bottom:3px solid #f6cc00;padding:12px 15px;color:#98afdb;font-size:17px;text-transform:uppercase">ID: {$lastid}</td></tr><tr><td align="left" valign="middle" colspan="2" style="background:#fff;border:1px solid #ddd;border-top:none;padding:12px 15px;color:#000;font-size:12px"><p style="float:left;width:100%;margin:0 0 5px">Hi {$websitename}</p><p style="float:left;width:100%;margin:0 0 10px">You have received an enquiry from {$name} on {$date}.</p><p style="float:left;width:100%;margin:0 0 10px"><b>DETAILS:</b></p><p style="float:left;width:100%;margin:0 0 10px"><b>NAME:</b> {$name}</p><p style="float:left;width:100%;margin:0 0 10px"><b>E-MAIL:</b> {$email}</p><p style="float:left;width:100%;margin:0 0 10px"><b>PHONE:</b> {$phone}</p><p style="float:left;width:100%;margin:0 0 10px"><b>MESSAGE:</b> {$message}</p><p style="float:left;width:100%;margin:0 0 10px"><b>ADDRESS:</b> {$address}</p></td></tr></table>
EOJ;
	
				$sm->SendMail('akiniksubs@gmail.com', '', '', $subject, $message, $fromname, $fromemail, $name, $email);
	
				unset($_SESSION['akiniksubscaptcha']);
	
				die(output(array('text' => 'Thank you, Your enquiry has been submitted!', 'stat' => true)));
			else:
				die(output('An error occurred. Please contact '.$websitename.'.'));
			endif;
		else:
			die(output('Please enter a valid captcha code.'));
		endif;
	endif;
else:
	die(output('Access Denied!'));
endif;
?>

Youez - 2016 - github.com/yon3zu
LinuXploit