当前位置: 首页 > news >正文

企业网站建站系统哪个好用湖州 网站建设

企业网站建站系统哪个好用,湖州 网站建设,做手机网站的公司,成都seo培训班逆向目标 网址#xff1a;https://match.yuanrenxue.cn/match/6接口#xff1a;https://match.yuanrenxue.cn/api/match/6参数#xff1a;payload(m、q) 逆向过程 老规矩#xff0c;先来分析网络请求#xff0c;加密的地方一目了然#xff0c;没什么可多说的#xff…逆向目标 网址https://match.yuanrenxue.cn/match/6接口https://match.yuanrenxue.cn/api/match/6参数payload(m、q) 逆向过程 老规矩先来分析网络请求加密的地方一目了然没什么可多说的直接进行下一步的分析 逆向分析 启动器跟栈进入打个断点然后翻页 断点断住了 t Date.parse(new Date()); var list {page: window.page,m: r(t, window.o),q: window.i window.o - t |, }; window.o 1;我们直接进到加密js文件delect.js然后来分析一下这个文件内容 如上截图整个js文件就这么几块内容最后一个红框内容一看就是我们的加密函数中间那个就是一个webpack的对象形式还有对webpack不太熟悉的朋友可以去阅读下这篇文章【JS逆向学习】36kr登陆逆向案例webpack里面有对webpack做了详细介绍并给出了具体案例最上面那个红框里的内容看起来就是一堆的笑脸符号其实就是AAEncode加密/解密遇到这种没见过的加密字符百度搜索就行了这里给出一个AAEncode加密/解密的在线网站 AAEncode加密/解密我们把第一个红框内的内容解密一下看是个什么东西 可以看到这一大坨就只是做了一个变量赋值window.o1;先不管它我们继续跟栈分析 function r(param1, param2) {if (window.o 6) {alert(不要戳这么多下人家好痛嘛~);location.reload();}return z(param1, param2); }window.o就是翻页累计的变量超过 6 次就会重新加载网页再来看加密的参数 function z(pwd, time) {var n _n(jsencrypt);var g (new n);var r g.encode(pwd, time);return r; }pwd 就是13位的时间戳time 就是页数加密函数和加密参数都清楚了既然是webpack 而且只有两个模块我们就直接全部扣然后给个值本地调用加密函数看下结果 /Users/rookie/dev/jsprojects/yuanrenxue/Chatper6/test.js:2557ASN1.prototype.getHexStringValue function() {^ReferenceError: ASN1 is not defined奇怪了代码里面明明有定义这个变量 我们先补上window global; 然后输出一下window 看看 window 为空这就怪了肯定有地方对window做了赋值或删除操作我们先全局搜索一下看 自执行函数对window做了重新赋值操作作者巧妙利用了浏览器环境和node环境的区别埋了个雷在浏览器下执行window{}实际不会生效的但是在node 环境中做window{}操作则会生效我们把这行代码注释重新打印观察下window window: ref *1 Object [global] {global: [Circular *1],queueMicrotask: [Function: queueMicrotask],clearImmediate: [Function: clearImmediate],setImmediate: [Function: setImmediate] {[Symbol(nodejs.util.promisify.custom)]: [Getter]},structuredClone: [Getter/Setter],clearInterval: [Function: clearInterval],clearTimeout: [Function: clearTimeout],setInterval: [Function: setInterval],setTimeout: [Function: setTimeout] {[Symbol(nodejs.util.promisify.custom)]: [Getter]},atob: [Getter/Setter],btoa: [Getter/Setter],performance: [Getter/Setter],fetch: [AsyncFunction: fetch],crypto: [Getter],window: [Circular *1],navigator: {} }可以看到这个时候window是有值的然后看到又报了其他的错 Message too long for RSA继续分析代码发现了一大坨jsfuck 混淆后的代码 xe [][(![] [])[![] !![] !![]] ([] {})[!![]] (!![] [])[!![]] (!![] [])[[]]][([] {})[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]] (![] [])[![] !![] !![]] (!![] [])[[]] (!![] [])[!![]] ([][[]] [])[[]] ([] {})[![] !![] !![] !![] !![]] (!![] [])[[]] ([] {})[!![]] (!![] [])[!![]]]((!![] []) (![] !![] !![] !![] !![] []) (![] !![] !![] !![] !![] !![] !![] []) (!![] []) (![] !![] !![] !![] !![] []) ([] []) (![] !![] !![] !![] !![] !![] !![] []) ([] []))(![] !![] !![] !![] !![] !![] !![]) ([][(![] [])[![] !![] !![]] ([] {})[!![]] (!![] [])[!![]] (!![] [])[[]]][([] {})[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]] (![] [])[![] !![] !![]] (!![] [])[[]] (!![] [])[!![]] ([][[]] [])[[]] ([] {})[![] !![] !![] !![] !![]] (!![] [])[[]] ([] {})[!![]] (!![] [])[!![]]]((!![] []) (![] !![] !![] !![] !![] !![] []) (![] !![] !![] !![] !![] !![] !![] []) (![] !![] !![] !![] !![] !![] !![] []) (![] !![] !![] !![] !![] !![] !![] []) (![] !![] []) (!![] []) (![] !![] !![] !![] !![] []))(![] !![] !![] !![] !![] !![]) [][(![] [])[![] !![] !![]] ([] {})[!![]] (!![] [])[!![]] (!![] [])[[]]][([] {})[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]] (![] [])[![] !![] !![]] (!![] [])[[]] (!![] [])[!![]] ([][[]] [])[[]] ([] {})[![] !![] !![] !![] !![]] (!![] [])[[]] ([] {})[!![]] (!![] [])[!![]]](([] []) [][(![] [])[![] !![] !![]] ([] {})[!![]] (!![] [])[!![]] (!![] [])[[]]][([] {})[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]] (![] [])[![] !![] !![]] (!![] [])[[]] (!![] [])[!![]] ([][[]] [])[[]] ([] {})[![] !![] !![] !![] !![]] (!![] [])[[]] ([] {})[!![]] (!![] [])[!![]]]((!![] [])[!![]] ([][[]] [])[![] !![] !![]] (!![] [])[[]] ([][[]] [])[[]] (!![] [])[!![]] ([][[]] [])[!![]] ([] {})[![] !![] !![] !![] !![] !![] !![]] ([][[]] [])[[]] ([][[]] [])[!![]] ([][[]] [])[![] !![] !![]] (![] [])[![] !![] !![]] ([] {})[![] !![] !![] !![] !![]] ({} [])[!![]] ([] [][(![] [])[![] !![] !![]] ([] {})[!![]] (!![] [])[!![]] (!![] [])[[]]][([] {})[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]] (![] [])[![] !![] !![]] (!![] [])[[]] (!![] [])[!![]] ([][[]] [])[[]] ([] {})[![] !![] !![] !![] !![]] (!![] [])[[]] ([] {})[!![]] (!![] [])[!![]]]((!![] [])[!![]] ([][[]] [])[![] !![] !![]] (!![] [])[[]] ([][[]] [])[[]] (!![] [])[!![]] ([][[]] [])[!![]] ([] {})[![] !![] !![] !![] !![] !![] !![]] (![] [])[![] !![]] ([] {})[!![]] ([] {})[![] !![] !![] !![] !![]] ({} [])[!![]] (!![] [])[[]] ([][[]] [])[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]])(!![]))[![] !![] !![]] ([][[]] [])[![] !![] !![]])(![] !![] !![] !![] !![])([][(![] [])[![] !![] !![]] ([] {})[!![]] (!![] [])[!![]] (!![] [])[[]]][([] {})[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]] (![] [])[![] !![] !![]] (!![] [])[[]] (!![] [])[!![]] ([][[]] [])[[]] ([] {})[![] !![] !![] !![] !![]] (!![] [])[[]] ([] {})[!![]] (!![] [])[!![]]]((!![] [])[!![]] ([][[]] [])[![] !![] !![]] (!![] [])[[]] ([][[]] [])[[]] (!![] [])[!![]] ([][[]] [])[!![]] ([] {})[![] !![] !![] !![] !![] !![] !![]] ([][[]] [])[![] !![] !![]] (![] [])[![] !![] !![]] ([] {})[![] !![] !![] !![] !![]] ({} [])[!![]] ([] [][(![] [])[![] !![] !![]] ([] {})[!![]] (!![] [])[!![]] (!![] [])[[]]][([] {})[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]] (![] [])[![] !![] !![]] (!![] [])[[]] (!![] [])[!![]] ([][[]] [])[[]] ([] {})[![] !![] !![] !![] !![]] (!![] [])[[]] ([] {})[!![]] (!![] [])[!![]]]((!![] [])[!![]] ([][[]] [])[![] !![] !![]] (!![] [])[[]] ([][[]] [])[[]] (!![] [])[!![]] ([][[]] [])[!![]] ([] {})[![] !![] !![] !![] !![] !![] !![]] (![] [])[![] !![]] ([] {})[!![]] ([] {})[![] !![] !![] !![] !![]] ({} [])[!![]] (!![] [])[[]] ([][[]] [])[![] !![] !![] !![] !![]] ([] {})[!![]] ([][[]] [])[!![]])(!![]))[![] !![] !![]] ([][[]] [])[![] !![] !![]])(![] !![] !![] !![] !![] !![] !![] !![])(([] {})[[]])[[]] (![] !![] !![] !![] !![] !![] !![] []) (![] !![] !![] !![] !![] !![] !![] !![] [])) ([][[]] [])[![] !![]] ([][[]] [])[![] !![] !![]] ({} [])[!![]] ([][[]] [])[![] !![]] ([] {})[![] !![]] ([][[]] [])[![] !![] !![]] ([][[]] [])[![] !![] !![]] ([][[]] [])[![] !![] !![] !![]] ([] {})[![] !![] !![] !![] !![]] ({} [])[!![]] ([][[]] [])[![] !![] !![] !![]] ([][[]] [])[![] !![] !![]])(![] !![] !![]));直接拷贝到控制台执行一下就是一个false xe false直接替换下然后再次执行代码发现有结果了 55oooAObwblpKTvAWBcmMINgCzert2%2BSoeGzJ2CV9XzdzsMpWK9WNJlKOj%2FDzXor7TvLUKMguBnnK0thBNq%2BrZrBtokWfWJze8dvmB%2FUpTrmLTKnQvCHfKuoMuBkUd%2FZt4LzQykZCDlz9Fwl69VAoxJMak8c0SxvqXv0%2FdeC8GI%3D到这里m参数的加密已经分析结束了我们继续看q q: window.i window.o - t |再结合网络请求来看q是做了拼接了 q: 1-1710235684000|2-1710235690000|但是我们每次用于加密的是没有拼接 至此两个参数的加密分析都完成了 逆向结果 源码需要的自取猿人学第六题源码
http://www.pierceye.com/news/211412/

相关文章:

  • 长春旅游网站开发360投放广告怎么收费
  • 微信公众号做网站卖东西静态化网站的缺点
  • 网站空间购买今天的新闻头条最新消息
  • 网站制作教程图解怎么解压wordpress
  • 唐山市城市建设规划局网站腾讯云建设一个网站要多少钱
  • 邢台集团网站建设费用聚牛建设网站
  • 如何创建电子商务网站学校网站设计首页
  • 扬州建设投资集团网站世界总人口实时数据
  • 沧州制作网站食品商务网-网站建设
  • 0592 网站建设模板网站建设+百度
  • 请人做个网站多少钱免费商城app
  • 网站建设包括哪些方面?手游源码网站
  • 机关门户网站建设管理情况软件开发工具都有哪些
  • 官方网站建设专家磐石网络wordpress对应的id
  • 学生自做网站优秀作品徐州企业建站模板
  • 网络电子商务购物网站idc机房建设
  • 网站单页seo个人服务器网站备案
  • 装修队伍做网站做机票在线预订网站
  • 手机版企业网站php山西建设执业注册中心网站
  • 南充网站建设略奥科技凡科建站电话
  • 个人网站可以做自媒体吗手机网站建设需要多少钱
  • 网站 模板网站什么英文字体
  • 北京市朝阳区住房建设网站图片在线编辑网站
  • 柳州市诚信体系建设网站网站数据库网络错误
  • 微站网站vps lnmp wordpress
  • 哪里有网站建设哪家好word做网站框架
  • 企业建网站的费用百度掘金入口官网
  • 德洲网站建设wordpress的title设置
  • 苏州企业网站制作服务河北关键词排名推广
  • 营销型集团网站建设镇江网站推广