Hi,
Forgive me if I misunderstood, but I think you were (originally anyway) curious about decrypting the encrypted part, yes?
I'm in the midst of fixing the exact same hack. Even have the same beginning line code inputed into the header.php file.
All you have to do is take out the code...