Check Order status | Verified Sales | Escrow Service | Advertise
westernunion carding gold carding
revolut carding electronics carding
paypal carding payoneer carding
advertise on cracking forums

Semi-nonalphanumeric & Self-replicating PHP-based Database Backdoor/Modifier

Prince

[ Verified Seller ]
Staff member
Trusted Seller
Joined
10 yrs. 6 mth. 18 days
Messages
5,387
Reaction score
18,373
Age
44
Wallet
11,590$
Introduction:

First of all, let's not forget to point the basis of my current studying and backdoor. This is
Please, Log in or Register to view URLs content!
tutorial on how to use XOR as an operation within PHP. Based on his explanations and examples, I've written a self-spreading backdoor script with nothing more but symbols (meaning without alpha or numeric values) for databases. Currently, it includes only MySQL db servers but I'll enlarge the scope of its abilities in the near future.

Features of the backdoor:Self-replication
- copying itself in random directories throughout the server it's been uploaded to
Authentication for access
- basic authentication system to justify the name of the script
Restriction of internal REMOTE_ADDRs
- restricting the access of those who handle and manage the server
Logging and sending out replications' locations
- we do need to know where it had replicated itself in order to access it
Database browser
- enabling us to view the content and records within the available databases
Arbitrary SQL execution
- enabling us to modify the content and records within the available databasesFuture features:Usage of anonymous functions without preassigned temporary name- Starfall hit me with this idea
Self-destruction and remote control
- just for the sake of control
Complete non-alphanumeric content
- NAN-ing the conditional statements (loops)
MsSQL, Oracle, PostgreSQL, Sybase, Firebird databases handling
- because we never know what the server is running
Polymorphic obfuscation class to go through the source and parse it through an obfuscation algorithm
- to make the source harder to read in additionConstruction:

The backdoor consists of two main files. The script itself and the authentication form. Aside from that, the replication copies are with a forced .php extension, of course and with an indefinite amount of replications. The others are just .txt files for the storage of their locations. The entire backdoor is written in PDO (PHP Data Objects) due to the deprecation of some of the functions for MySQL in PHP5.5+ and security measures. It is semi-nonalphanumeric due to the fact that I have NANed only the MySQL queries in case there is a sort of detection or an IDS. However, the entire authentication system and SQL execution script are completely non-alphanumeric with the exception of foreach() and if() loops. During the process of coding, I have made a separate project to handle my inputs and convert alpha and numeric values to symbols using the XOR operation in PHP. That can be witnessed on my website - http://keeperax.neta...NGenerator.php.[/url] There is additional obfuscation within the declaration/definition of variables using Kanji symbols, Hepburn romanization system and particially alt-codes.

A small preview (part of the authentication system) is presented below:

Code:
Please, Log in or Register to view codes content!
Both the backdoor script and generator of non-alphanumeric values will be handed to all members without exception free of charge. Note that I will be giving away only the NANed copies of them both so do not PM to ask me of the 'clean' and plainly readable source. Those who are interested in the backdoor ought to post an application in the following form and if approved will be PMed the sources:
b]Scripts you desire:[/b] [Backdoor/Generator/Both]
Reason: [Justify your reasons]
Intended usage: [We all know it won't go for whitehats but I do want to see what members intend to do with it]
 
Top Bottom