1、首先将后门源代码加密,得到加密后的代码
<?php
$encode = <<<EOF
if(!file_exists(dirname(dirname(dirname(__FILE__))).'/blog.csdn.net.ChinaLiaoTian')){
header('Location:https://blog.csdn.net/ChinaLiaoTian');
exit();
}
EOF;
echo base64_encode( gzdeflate( $encode ) );
得到字符串“y0zTUEzLzEmNT63ILC4p1kjJLMpLzE3FoOPj3Tx9XOPjNTU19dT1k3Ly0/WSi1Py9PJSS/ScMzLzEn0yE/NDMhPz1DU1q7kUgCAjNTEltUhD3Sc/ObEkMz/PKqOkpKDYSh9Vsz6aZmuwXqBjSjSA7FoA”,这就是密文
2、将密文用以下方式放在程序加载的路径上来执行
<?php
eval( gzinflate( base64_decode( 'y0zTUEzLzEmNT63ILC4p1kjJLMpLzE3FoOPj3Tx9XOPjNTU19dT1k3Ly0/WSi1Py9PJSS/ScMzLzEn0yE/NDMhPz1DU1q7kUgCAjNTEltUhD3Sc/ObEkMz/PKqOkpKDYSh9Vsz6aZmuwXqBjSjSA7FoA' ) ) );