Kiyou asked me to look at an ECMall site and ask for webshell in the background.
I am sending my thoughts
First of all, I used ECMall to get shell in the background for the first time.
So take a look
Found a pendant Management
Editable File
Then select the last edit register to join and register button to log on.
Edit script for element review
<A href = "www.2cto.com index. php? App = widget & act = edit & name = register_and_apply & file = script "> edit script </a>
Name = register_and_apply: The name of a folder is displayed.
Then download the source code
Find this path
Found by using the search function
Then I found two PHP script files.
SO
View the source code of these two script files
The main. widget. php file is the same as the source code of the file we edited on the website.
The path for editing the file is external \ widgets \ register_and_apply \ main. widget. php.
Then it will be okay to modify it into one sentence.
Get the shell and give it back.
Haha
Do not destroy website files
Requirements of kiyou