Commit 5606c76a authored by wang's avatar wang

解密payload

parent e5e0a731
...@@ -1969,6 +1969,7 @@ try { ...@@ -1969,6 +1969,7 @@ try {
function Ka() { function Ka() {
var n = co; var n = co;
try { try {
console.log('px12573', Ma)
if (qa("q2u")) eo(function (f, n, t) { if (qa("q2u")) eo(function (f, n, t) {
return Math.floor(f / 18076) * n.charCodeAt(15); return Math.floor(f / 18076) * n.charCodeAt(15);
}["apply"](null, Ma)); }["apply"](null, Ma));
...@@ -1991,6 +1992,7 @@ try { ...@@ -1991,6 +1992,7 @@ try {
function eo(t) { function eo(t) {
var r = co; var r = co;
var a = i; var a = i;
console.log('PX12573', t, Oe("" + Math["floor"](t)))
!_a["PX12573"] && (_a["PX12573"] = Oe("" + Math["floor"](t))); !_a["PX12573"] && (_a["PX12573"] = Oe("" + Math["floor"](t)));
} }
function no() { function no() {
...@@ -4049,6 +4051,7 @@ try { ...@@ -4049,6 +4051,7 @@ try {
return Vs[Tn][hs] || ""; return Vs[Tn][hs] || "";
} }
function Ds(t) { function Ds(t) {
console.log(t[0])
for (var m = i, g = Oc(), R = 0; R < t[kf(532)]; R++) { for (var m = i, g = Oc(), R = 0; R < t[kf(532)]; R++) {
var Q = t[R]; var Q = t[R];
Q.d[m(kf(500))] = Ct, g && (Q.d[m(kf(452))] = g), Q.d[m(kf(479))] = xl, vh && (Q.d[m(kf(447))] = vh); Q.d[m(kf(500))] = Ct, g && (Q.d[m(kf(452))] = g), Q.d[m(kf(479))] = xl, vh && (Q.d[m(kf(447))] = vh);
...@@ -4206,6 +4209,7 @@ try { ...@@ -4206,6 +4209,7 @@ try {
} }
}, },
o1oo1o: function (t, e, n) { o1oo1o: function (t, e, n) {
console.log(`vid = '${t}'`)
t && Vs[Vn] === p[ch(515)] && (e = e || 0, Fc(ch(503), e, t, n), ql(t), wt(t)); t && Vs[Vn] === p[ch(515)] && (e = e || 0, Fc(ch(503), e, t, n), ql(t), wt(t));
}, },
o1o1o1: function (t, e, n, r, a, o) { o1o1o1: function (t, e, n, r, a, o) {
...@@ -4271,6 +4275,7 @@ try { ...@@ -4271,6 +4275,7 @@ try {
} }
}, },
o11o1111: function (t, e) { o11o1111: function (t, e) {
console.log(`sid = '${t}'`)
if ("1" === t && e && (e = Number(e), !isNaN(e))) { if ("1" === t && e && (e = Number(e), !isNaN(e))) {
var a; var a;
if (uf() && 0 === e) { if (uf() && 0 === e) {
......
...@@ -9,19 +9,19 @@ ...@@ -9,19 +9,19 @@
</head> </head>
<body> <body>
<script> <script>
window._pxVid = '00e75340-7710-11ee-87b1-636cff189edc'; window._pxVid = '8e67eaf5-77c7-11ee-a055-95a424f0c448';
window._pxUuid = '667e7041-7040-1031-a27b-c27d9036b97c'; window._pxUuid = 'c17855d1-7040-1031-9f40-d0b3e152315a';
window._pxAppId = 'PXVb73hTEg'; window._pxAppId = 'PXVb73hTEg';
window._pxHostUrl = 'https://collector-PXVb73hTEg.perimeterx.net'; window._pxHostUrl = 'https://collector-PXVb73hTEg.perimeterx.net';
window._pxCustomLogo = ''; window._pxCustomLogo = '';
window._pxJsClientSrc = '//client.perimeterx.net/PXVb73hTEg/main.min.js'; window._pxJsClientSrc = '//client.perimeterx.net/PXVb73hTEg/main.min.js';
window._pxFirstPartyEnabled = 'false'; window._pxFirstPartyEnabled = 'false';
var script = document.createElement('script'); var script = document.createElement('script');
script.src = '//captcha.perimeterx.net/PXVb73hTEg/captcha.js?a=&u=667e7041-7040-1031-a27b-c27d9036b97c&v=00e75340-7710-11ee-87b1-636cff189edc&m=0'; script.src = '//captcha.perimeterx.net/PXVb73hTEg/captcha.js?a=&u=c17855d1-7040-1031-9f40-d0b3e152315a&v=8e67eaf5-77c7-11ee-a055-95a424f0c448&m=0';
document.head.appendChild(script); document.head.appendChild(script);
script.onerror = function () { script.onerror = function () {
script = document.createElement('script'); script = document.createElement('script');
script.src = 'https://captcha.px-cloud.net/PXVb73hTEg/captcha.js?a=&u=667e7041-7040-1031-a27b-c27d9036b97c&v=00e75340-7710-11ee-87b1-636cff189edc&m=0'; script.src = 'https://captcha.px-cloud.net/PXVb73hTEg/captcha.js?a=&u=c17855d1-7040-1031-9f40-d0b3e152315a&v=8e67eaf5-77c7-11ee-a055-95a424f0c448&m=0';
script.onerror = window._pxDisplayErrorMessage; script.onerror = window._pxDisplayErrorMessage;
document.head.appendChild(script); document.head.appendChild(script);
}; };
......
This diff is collapsed.
This diff is collapsed.
import base64 import base64
import json
with open('test.js', 'r', encoding='utf-8') as f: with open('test.js', 'r', encoding='utf-8') as f:
jsCode = f.read() jsCode = f.read()
...@@ -56,6 +57,8 @@ a2 ="WVkHBwdZFDcYEFoUW1tYFA0RIlkhAgcBMiw5XCUvPVglEikcJhILHyYBWBAlPz4EJDwPEjI8MRw ...@@ -56,6 +57,8 @@ a2 ="WVkHBwdZFDcYEFoUW1tYFA0RIlkhAgcBMiw5XCUvPVglEikcJhILHyYBWBAlPz4EJDwPEjI8MRw
# a2 = "WVkHBwdZFDcYEFoUW1tYFA0RIlkhAgcBMT89EiUFIRExEikcJhIyBSYrWBAlPz4EJDwAAiUsLRwmPyIBJT8xHyUsLVgxAgwDIQEfAQwBIV4hBS4EMQI5XSYsDxIkPAtaMgI5HCU8LgQyO1hcMTwiBSQ8PVwxAg8SMgU6AyY8DxIyKyEbIQY5AScCMRElLCESJRIPXCUsKR8mER8BCSshXiECMVomPzIAJgI5ESUvOgIlWjFbMT8lWCU/JRInPyERJz8lECU8MgUxEiYAJzwpETE8IV0nPCkfJgI9Eic8KREmPzIFJS8mAyY8BAMmAioEJiw5XTI/LQEOOVVVFBwaHQ0UW1hYFhYWFgdZB1lZWRQLHQ==" # a2 = "WVkHBwdZFDcYEFoUW1tYFA0RIlkhAgcBMT89EiUFIRExEikcJhIyBSYrWBAlPz4EJDwAAiUsLRwmPyIBJT8xHyUsLVgxAgwDIQEfAQwBIV4hBS4EMQI5XSYsDxIkPAtaMgI5HCU8LgQyO1hcMTwiBSQ8PVwxAg8SMgU6AyY8DxIyKyEbIQY5AScCMRElLCESJRIPXCUsKR8mER8BCSshXiECMVomPzIAJgI5ESUvOgIlWjFbMT8lWCU/JRInPyERJz8lECU8MgUxEiYAJzwpETE8IV0nPCkfJgI9Eic8KREmPzIFJS8mAyY8BAMmAioEJiw5XTI/LQEOOVVVFBwaHQ0UW1hYFhYWFgdZB1lZWRQLHQ=="
a2 = "B1kHWVlZFAsdFhYWFllZBwcHWRQ3GBBaFFtbWBQNESJZIQIHASU/JVoyBSYDMjwpHCYSDAMmAVgQJT8+BCQ8Ax8yBSUcJzwDEDICA1oxPC4BJQILESEBHwEMASFeIQIDWyUvPVglPAsRJDwLWzIsMRwlPC4EMjtZACc/PgEkPzldJi8mATICD10xWi1dJQEhGyEGOQEnAi1aJzwPWyYsD1olPDkQJiw9GyEFDwEnASIFJhI6BDI/MR8mBSFbJjw9WCc8JR8xEgwEMRI5EDIFPVgxWj4FMQIyACYsDxIlLDIAJT8xXCYSMgAlPzlcJiwhXTESDx8yLA9YMjwtEjESLgEyPz4AIQZYVRQcGh0NFFtYWA=="
# 0III0I00 判断是否通过 # 0III0I00 判断是否通过
...@@ -63,6 +66,34 @@ b2 = base64.b64decode(a2.encode()) ...@@ -63,6 +66,34 @@ b2 = base64.b64decode(a2.encode())
print(b2) print(b2)
for i in bytes(encrypt(b2, 872 % 128)).decode().split('~~~~'): for i in bytes(encrypt(b2, 872 % 128)).decode().split('~~~~'):
print('o11o111o' in i, i) print('o11o111o' in i, i)
cookies = bytes(encrypt(b2, 872 % 128)).decode()
cks = cookies.split('~~~~')
m = {}
for i in cks:
tmp = i.split('|')
m[tmp[0]] = tmp[1]
if tmp[0] == 'o111ooo1':
ts = tmp[1]
if tmp[0] == 'o111oooo':
num1 = int(tmp[1])
if tmp[0] == '111o1o':
num2 = tmp[1]
if tmp[0] == '1oooo1':
str1 = tmp[1]
if tmp[0] == 'o1oo1o':
vid = tmp[1]
if tmp[0] == 'o11o11':
sid = tmp[1]
if tmp[0] == '11o111':
cs = tmp[1]
if tmp[0] == 'o11o11oo':
cts = tmp[1]
uuid = '1c6fcde0-77d6-11ee-90fc-991f96a1b272'
print( json.dumps([sid, vid, ts, num1, num2, str1, uuid]))
''' '''
cs 76873d4d057ac0dd8994181324b5ccae4e40db09ff250771ce27da0cded7c668 cs 76873d4d057ac0dd8994181324b5ccae4e40db09ff250771ce27da0cded7c668
......
...@@ -26,35 +26,29 @@ headers = { ...@@ -26,35 +26,29 @@ headers = {
# headers['cookie'] = '_gcl_au=1.1.963045782.1698659101; _gid=GA1.2.297884565.1698659101; wisepops=%7B%22csd%22%3A1%2C%22popups%22%3A%7B%7D%2C%22sub%22%3A0%2C%22ucrn%22%3A47%2C%22cid%22%3A%2278471%22%2C%22v%22%3A4%2C%22bandit%22%3A%7B%22recos%22%3A%7B%7D%7D%7D; _fbp=fb.1.1698659101107.1293308129; pxcts=fed889bc-7708-11ee-ac10-e036b01709e2; _pxvid=fed8767f-7708-11ee-ac10-daadcbe32b84; _pin_unauth=dWlkPU5EUmlZak5qWmprdFpEUmhNeTAwTURNMUxUazBZamd0WWpSaVpETXhZV1V5WW1Saw; ORA_FPC=id=206781d1-8791-4bcd-9d13-b25999e30ff7; WTPERSIST=; _up=1.2.738217452.1698659104; wisepops_visits=%5B%222023-10-30T09%3A45%3A15.407Z%22%2C%222023-10-30T09%3A45%3A00.986Z%22%5D; wisepops_session=%7B%22arrivalOnSite%22%3A%222023-10-30T09%3A45%3A15.407Z%22%2C%22mtime%22%3A1698659118611%2C%22pageviews%22%3A1%2C%22popups%22%3A%7B%7D%2C%22bars%22%3A%7B%7D%2C%22sticky%22%3A%7B%7D%2C%22countdowns%22%3A%7B%7D%2C%22src%22%3Anull%2C%22utm%22%3A%7B%7D%2C%22testIp%22%3Anull%7D; _ga_XXXX=GS1.1.1698659101.1.1.1698659118.0.0.0; _ga=GA1.1.389354129.1698659101; _uetsid=fea8def0770811ee91a20bd33fe9c12d; _uetvid=fea8d5c0770811eeaa5ba75fb8581e79; _px2=eyJ1IjoiMDczYjQ1ODAtNzcwOS0xMWVlLTk3ZTctNDk3ZTRiYTM5OWMxIiwidiI6ImZlZDg3NjdmLTc3MDgtMTFlZS1hYzEwLWRhYWRjYmUzMmI4NCIsInQiOjYyMDIzMzg4MDAwNywiaCI6ImMzYjczNDNhMWVmNGZjZmE0M2MwOTI5NTliN2Q0ZTcwMjIxYTE4NmNmY2NlY2ViZDdlYWEwM2ZhZDk1NWNiN2YifQ==; _ga_P2WLKWBNNW=GS1.1.1698659101.1.1.1698659146.15.0.0' # headers['cookie'] = '_gcl_au=1.1.963045782.1698659101; _gid=GA1.2.297884565.1698659101; wisepops=%7B%22csd%22%3A1%2C%22popups%22%3A%7B%7D%2C%22sub%22%3A0%2C%22ucrn%22%3A47%2C%22cid%22%3A%2278471%22%2C%22v%22%3A4%2C%22bandit%22%3A%7B%22recos%22%3A%7B%7D%7D%7D; _fbp=fb.1.1698659101107.1293308129; pxcts=fed889bc-7708-11ee-ac10-e036b01709e2; _pxvid=fed8767f-7708-11ee-ac10-daadcbe32b84; _pin_unauth=dWlkPU5EUmlZak5qWmprdFpEUmhNeTAwTURNMUxUazBZamd0WWpSaVpETXhZV1V5WW1Saw; ORA_FPC=id=206781d1-8791-4bcd-9d13-b25999e30ff7; WTPERSIST=; _up=1.2.738217452.1698659104; wisepops_visits=%5B%222023-10-30T09%3A45%3A15.407Z%22%2C%222023-10-30T09%3A45%3A00.986Z%22%5D; wisepops_session=%7B%22arrivalOnSite%22%3A%222023-10-30T09%3A45%3A15.407Z%22%2C%22mtime%22%3A1698659118611%2C%22pageviews%22%3A1%2C%22popups%22%3A%7B%7D%2C%22bars%22%3A%7B%7D%2C%22sticky%22%3A%7B%7D%2C%22countdowns%22%3A%7B%7D%2C%22src%22%3Anull%2C%22utm%22%3A%7B%7D%2C%22testIp%22%3Anull%7D; _ga_XXXX=GS1.1.1698659101.1.1.1698659118.0.0.0; _ga=GA1.1.389354129.1698659101; _uetsid=fea8def0770811ee91a20bd33fe9c12d; _uetvid=fea8d5c0770811eeaa5ba75fb8581e79; _px2=eyJ1IjoiMDczYjQ1ODAtNzcwOS0xMWVlLTk3ZTctNDk3ZTRiYTM5OWMxIiwidiI6ImZlZDg3NjdmLTc3MDgtMTFlZS1hYzEwLWRhYWRjYmUzMmI4NCIsInQiOjYyMDIzMzg4MDAwNywiaCI6ImMzYjczNDNhMWVmNGZjZmE0M2MwOTI5NTliN2Q0ZTcwMjIxYTE4NmNmY2NlY2ViZDdlYWEwM2ZhZDk1NWNiN2YifQ==; _ga_P2WLKWBNNW=GS1.1.1698659101.1.1.1698659146.15.0.0'
cookies = { cookies = {
"_pxhd": "22d212df719dee891560a19dd1fcf693763a5313e14dceaceeffeadd74c1ed9a:a668952e-76f1-11ee-86c3-0367edfc9861", "_gcl_au": "1.1.414833160.1698747403",
"ASP.NET_SessionId": "jeqduql3iyaomqpqad3blyfw", "pxcts": "970e4f63-77d6-11ee-a9eb-78e6fe245189",
"__RequestVerificationToken": "SiL39TrXCORrOWYMGAn1m9r_PJmUiaCgG2cBScexdb-e38HOXLlF5mufYteJfduU2GuMiP1lLsdu2s8E2DoMspPe5YlaeF2W0mUMzrXyxBslr1p1eWNnlR7IJSs9tJv1m-JWjQ2", "_pxvid": "970e4172-77d6-11ee-a9eb-d94cbf89ca92",
"_pin_unauth": "dWlkPU5EUmlZak5qWmprdFpEUmhNeTAwTURNMUxUazBZamd0WWpSaVpETXhZV1V5WW1Saw", "_gid": "GA1.2.680187526.1698747449",
"_gcl_au": "1.1.963045782.1698659101", "_ga_XXXX": "GS1.1.1698747449.1.0.1698747449.0.0.0",
"_gid": "GA1.2.297884565.1698659101", "_ga": "GA1.1.1167861038.1698747449",
"wisepops": "%7B%22csd%22%3A1%2C%22popups%22%3A%7B%7D%2C%22sub%22%3A0%2C%22ucrn%22%3A99%2C%22cid%22%3A%2278471%22%2C%22v%22%3A4%2C%22bandit%22%3A%7B%22recos%22%3A%7B%7D%7D%7D",
"wisepops_visits": "%5B%222023-10-31T10%3A16%3A43.178Z%22%5D",
"wisepops_session": "%7B%22arrivalOnSite%22%3A%222023-10-31T10%3A16%3A43.178Z%22%2C%22mtime%22%3A1698747449168%2C%22pageviews%22%3A1%2C%22popups%22%3A%7B%7D%2C%22bars%22%3A%7B%7D%2C%22sticky%22%3A%7B%7D%2C%22countdowns%22%3A%7B%7D%2C%22src%22%3Anull%2C%22utm%22%3A%7B%7D%2C%22testIp%22%3Anull%7D",
"_uetsid": "b239cc6077d611eeaab83f2f47c2a229",
"_uetvid": "b23a019077d611ee95d4a1ffbf4c148d",
"_pin_unauth": "dWlkPVlUUmhaRE0yT1dRdFpXRXpZUzAwTkRGakxXRmtNbUl0TW1FeVkyTTNPVFV4TkRJdw",
"_up": "1.2.1716056127.1698747450",
"_fbp": "fb.1.1698747450567.801236987",
"_tt_enable_cookie": "1",
"_ttp": "gqklM1LVE3nGzGdLVvg2tobFsVx",
"_ga_P2WLKWBNNW": "GS1.1.1698747449.1.0.1698748313.60.0.0",
"_gat_UA-2678252-1": "1", "_gat_UA-2678252-1": "1",
"wisepops": "%7B%22csd%22%3A1%2C%22popups%22%3A%7B%7D%2C%22sub%22%3A0%2C%22ucrn%22%3A47%2C%22cid%22%3A%2278471%22%2C%22v%22%3A4%2C%22bandit%22%3A%7B%22recos%22%3A%7B%7D%7D%7D", "_px2": "eyJ1IjoiMWM2ZmNkZTAtNzdkNi0xMWVlLTkwZmMtOTkxZjk2YTFiMjcyIiwidiI6Ijk3MGU0MTcyLTc3ZDYtMTFlZS1hOWViLWQ5NGNiZjg5Y2E5MiIsInQiOjE2OTg3NDg2MTQxNDUsImgiOiJmNzRlZWYwNmI3NTU0OTMwYzdlYzQxZmU0Y2VmYjZhNDgzMDZhMWY4NzZhMWQ4NDI5YzgwZDg0ZTEzYzFiZWVhIn0="
"_uetsid": "fea8def0770811ee91a20bd33fe9c12d",
"_uetvid": "fea8d5c0770811eeaa5ba75fb8581e79",
"_fbp": "fb.1.1698659101107.1293308129",
"pxcts": "fed889bc-7708-11ee-ac10-e036b01709e2",
"_pxvid": "fed8767f-7708-11ee-ac10-daadcbe32b84",
"_px2": "eyJ1IjoiZmU4Y2ZiNDAtNzcwOC0xMWVlLTg5MzUtZWZlNDZiMGU4OTBjIiwidiI6ImZlZDg3NjdmLTc3MDgtMTFlZS1hYzEwLWRhYWRjYmUzMmI4NCIsInQiOjE2OTg2NTk0MDI0ODIsImgiOiI3ODdmOGYyZDZhNjYyY2IwZTQzMDM5YTE4ODY0Y2VjMDYxMTU4ODZhOWI2N2ZjZjg1NzdiNjUwMGFkYWQ1YTczIn0=",
"ORA_FPC": "id=206781d1-8791-4bcd-9d13-b25999e30ff7",
"WTPERSIST": "",
"_up": "1.2.738217452.1698659104",
"wisepops_visits": "%5B%222023-10-30T09%3A45%3A15.407Z%22%2C%222023-10-30T09%3A45%3A00.986Z%22%5D",
"wisepops_session": "%7B%22arrivalOnSite%22%3A%222023-10-30T09%3A45%3A15.407Z%22%2C%22mtime%22%3A1698659118611%2C%22pageviews%22%3A1%2C%22popups%22%3A%7B%7D%2C%22bars%22%3A%7B%7D%2C%22sticky%22%3A%7B%7D%2C%22countdowns%22%3A%7B%7D%2C%22src%22%3Anull%2C%22utm%22%3A%7B%7D%2C%22testIp%22%3Anull%7D",
"_ga_XXXX": "GS1.1.1698659101.1.1.1698659118.0.0.0",
"_ga": "GA1.1.389354129.1698659101",
"_ga_P2WLKWBNNW": "GS1.1.1698659101.1.1.1698659118.43.0.0"
} }
# cookies.update( # cookies.update(
# # {'_pxhd': '96f0793333025988fe38bb055475264dd82252fff204e97b7ac2aaa8cef23698:56b34b9c-77c7-11ee-992d-daaf5fea4f5e', '_pxvid': '56b34b9c-77c7-11ee-992d-daaf5fea4f5e', '_px2': 'eyJ1IjoiYmJlNjBjZTktNzA0MC0xMDMxLTk5ZjEtOThhMDY3YmM2OGUxIiwidiI6IjU2YjM0YjljLTc3YzctMTFlZS05OTJkLWRhYWY1ZmVhNGY1ZSIsInQiOjE2OTg3NDExNTU2ODUsImgiOiI4ZDkxZjdlYjQ2NDhlZjg4MDlkOTg1Y2RkMjEzZTMwYzJmYjA1MTE1ODg3YTRmZTVkZDQ5ODY3OTY1NjJhOTlmIn0=', 'pxcts': '576c03b4-77c7-11ee-91bd-ac4e67be51db'}
# {'_pxhd': '29599d17a26fd935cd95526fa24063252758acffd2f7b02453e3652e9287b2a6:83f63b50-7709-11ee-9484-341acdebc08b',
# 'pxcts': '8755dd4a-7709-11ee-9693-a9aaf6d5449c', '_pxvid': '83f63b50-7709-11ee-9484-341acdebc08b',
# '_px2': 'eyJ1IjoiYzA2NjMwYTktNzA0MC0xMDMxLTlmN2YtMWYyMmQyMWIzMTFhIiwidiI6IjgzZjYzYjUwLTc3MDktMTFlZS05NDg0LTM0MWFjZGViYzA4YiIsInQiOjE2OTg2NTk2MzA3OTMsImgiOiI1MGRjM2E3NGVkMjIxMWJkODEwYzVhN2JkMWU2MTg5Y2E0Yjk1MjM1MjNmY2RjM2U0N2MyNjkzMjUxNzU1N2NiIn0='}
# #
# ) # )
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment