全球主机交流论坛

标题: 关于php解密的问题,有分 [打印本页]

作者: 有女乃大    时间: 2012-8-15 18:06
标题: 关于php解密的问题,有分
<?php $_F=__FILE__;$_X='Pz48Pw0KDQo0bmNsM2Q1KCJjMm5mNGc
这种需要什么软件可以解密?
作者: lxqfff    时间: 2012-8-15 18:08
提示: 作者被禁止或删除 内容自动屏蔽
作者: 搞基专家    时间: 2012-8-15 18:08
不懂  大牛来回答
作者: 阿里云    时间: 2012-8-15 18:09
不懂  大牛来回答

5楼回答
作者: smyz    时间: 2012-8-15 18:14
这个就两个变量。还要怎么解密呢
作者: huochai    时间: 2012-8-15 18:15
贴个完整的出来啊
作者: 有女乃大    时间: 2012-8-15 18:22
huochai 发表于 2012-8-15 18:15
贴个完整的出来啊

已帖

<?php $_F=__FILE__;$_X='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';eval(base64_decode('JF9YPWJhc2U2NF9kZWNvZGUoJF9YKTskX1g9c3RydHIoJF9YLCcxMjM0NTZhb3VpZScsJ2FvdWllMTIzNDU2Jyk7JF9SPWVyZWdfcmVwbGFjZSgnX19GSUxFX18nLCInIi4kX0YuIiciLCRfWCk7ZXZhbCgkX1IpOyRfUj0wOyRfWD0wOw=='));?>
作者: Administrator    时间: 2012-8-15 18:27
提示: 作者被禁止或删除 内容自动屏蔽
作者: huochai    时间: 2012-8-15 18:31
<?

include("config.inc.php");

function check_valid_address($domainname) {

//Check domain length > 2 || < 63 characters
    if (strlen($domainname) < 3){
        return 1;
//Check domain can not start with -
    } elseif (ereg("^-|-$", $domainname)){
       return 2;
//Letters , numbers and - _ only
    } elseif (!ereg("([a-z]|[A-Z]|[0-9]|-){".strlen($domainname)."}", $domainname)){
        return 3;
    }
  return 0;
}

function whois ($tld, $getdomainname)
{
global $whois_servers,$whois_available,$whois_error,$statusmsg;

//Strip html
$getdomainname = strip_tags($getdomainname);

//Strip www. and http://
$getdomainname = str_replace("www.", "", $getdomainname);
$getdomainname = str_replace("http://", "", $getdomainname);

//Replace Space
$getdomainname = str_replace(" ", "", $getdomainname);

//Split .com .net .org or .* (Split text after .)
$getdomainname = explode(".", $getdomainname);

//Join domain with tld (.com,.net,.org, .*)
$domainname = $getdomainname[0] . "." . $tld;

//Select Whois Server in config.inc.php
$select_server = $whois_servers[$tld][0];

//Connect to selected whois server
$sock = @fsockopen($select_server,43);

//Initial value for display status message in config.inc.php
$domainstatus = 0;

        if(!$sock) {
        //Can't connect to Server
        $domainstatus = 4;
        }else{
        $send_request = @fputs($sock,"$domainname\r\n");
                if(!$send_request) {
                //Unable to send request
                $domainstatus = 4;
                }else{
                while(!feof($sock)) {
                $result .= fgets($sock,128);
                }

$result = str_replace("\n", "<br>", $result);


//Check error or Available
for($i=0;$i<count($whois_error);$i++){

if(@eregi($whois_error[$i],$result)) {
//error?
$domainstatus = 4;
}

}

//Check excedded quota from whois server (.org limited 4 query per minute/server ip)
if(@eregi("EXCEEDED",$result)) {
//Exceeded server quota?
$domainstatus = 5;
}

//No error
if($domainstatus == 0){
                //Check Available

                                if(@eregi($whois_servers[$tld][1],$result)) {
                                //Available
                                $domainstatus = 0;
                                }else{
                                $domainstatus = 6; //taken
                                }


}



                }
@fclose($sock);

                }
return $domainstatus;

}

//-------------------------Start main program-------------------------

if ($_GET['domainname'] != '') {
$domainname = $_GET['domainname'];

//check valid or not
$isvalid = check_valid_address($domainname);

//Check tld
if($isvalid ==0){
$domainstatus[0] = whois('com',$domainname );
$domainstatus[1] = whois('net',$domainname );
$domainstatus[2] = whois('org',$domainname );
$domainstatus[3] = whois('info',$domainname );
$domainstatus[4] = whois('biz',$domainname );
$domainstatus[5] = whois('us',$domainname );


$tld[0] = ".com";
$tld[1] = ".net";
$tld[2] = ".org";
$tld[3] = ".info";
$tld[4] = ".biz";
$tld[5] = ".us";


//-----------------------Prepare Results ----------------------------

for($i=0;$i<count($tld);$i++){
if($domainstatus[$i] > 0){


//Domain Taken or Error

$status[$i] = "<table width=\"100%\" border=\"0\" cellpadding=\"0\" cellspacing=\"0\">
        <tr>
          <td bgcolor=\"#Fe0000\" class=\"normaltext\"><div align=\"center\"><strong><font color=\"#FFFFFF\">";
                $status[$i] .= $tld[$i]." ";
                $status[$i] .= $statusmsg[$domainstatus[$i]];
                $status[$i] .= "</font> </strong></div></td></tr><tr>
          <td class=\"result\"><center><a href=\"http://www.$domainname$tld[$i]\">Website</a></center></td>
        </tr>
      </table>";

}else{

//Domain Available
$status[$i] = "<table width=\"100%\" border=\"0\" cellpadding=\"0\" cellspacing=\"0\">
                <tr>
                  <td bgcolor=\"#A3C401\" class=\"normaltext\">
<div align=\"center\"><font color=\"#FFFFFF\">$tld[$i] is available!</font></div></td>
                </tr>
                <tr>
                 <td class=\"result\"><center>Register using<br>
                                 <a href=\"http://www.jdoqocy.com/click-3101935-3181654\" target=\"_blank\">Transfer your domain for just $8.95 and get a year free!</a>
<img src=\"http://www.tqlkg.com/image-3101935-3181654\" width=\"1\" height=\"1\" border=\"0\" /><br>
                    </center></td>
                </tr>
              </table>";

}
}

//---------------------------------Print Results-------------------------------------------
echo "<?xml version='1.0' encoding='UTF-8'?>";
echo "<table width=\"600\" border=\"0\" cellpadding=\"5\" cellspacing=\"0\">
  <tr valign=\"top\">
    <td colspan=\"3\" class=\"bookmarktext\"><center>Search Result for <b>$domainname</b></center></td>
  </tr>
          <tr valign=\"top\">
    <td width=\"150\">$status[0]</td>
    <td width=\"150\">$status[1]</td>
    <td width=\"150\">$status[2]</td>
  </tr>
                  <tr valign=\"top\">
    <td width=\"150\">$status[3]</td>
    <td width=\"150\">$status[4]</td>
    <td width=\"150\">$status[5]</td>
  </tr>

</table>";

}else{

//not valid domain

echo "<?xml version='1.0' encoding='UTF-8'?>";
echo "<table width=\"600\" border=\"0\" cellpadding=\"5\" cellspacing=\"0\">
  <tr valign=\"top\">
    <td colspan=\"3\" class=\"bookmarktext\"><center><b>$statusmsg[$isvalid]</b></center></td>
    </tr>
</table>";
}

}
die();
?>
作者: 360安全卫士    时间: 2012-8-15 18:33
典型威盾加密。
作者: wdlth    时间: 2012-8-15 20:11
类微盾,改eval为echo,重复n次。




欢迎光临 全球主机交流论坛 (https://fd.vvwvv.eu.org/) Powered by Discuz! X3.4