302_poc_2.py 7.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169
  1. import json
  2. import re
  3. import time
  4. from urllib import parse
  5. import requests
  6. def poc_2(account, passwd, target_url):
  7. # session
  8. """
  9. 模拟登录
  10. """
  11. # 定义请求地址
  12. login_url = "https://t.livepocket.jp/api/sessions/create?mytimestamp=" + str(int(time.time()))
  13. # 定义请求header
  14. headers = {'Content-Type': 'application/x-www-form-urlencoded;',
  15. 'Referer': 'https://t.livepocket.jp/login?acroot=header-new_p_u_nl',
  16. 'Sec-Ch-Ua': 'Chromium',
  17. 'User-Agent': 'Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36'
  18. }
  19. # 通过字典方式定义请求body
  20. form_data = {"login": account,
  21. "password": passwd,
  22. "auto_login": "on",
  23. "login_password": f"{account}&{passwd}"
  24. }
  25. data = parse.urlencode(form_data)
  26. session = requests.session()
  27. content = session.post(url=login_url, headers=headers, data=data, proxies=None).text
  28. cookie = session.cookies
  29. response_cookie = cookie.get_dict()
  30. login_resp = json.loads(content)
  31. token = login_resp['result']['token']
  32. login_session = response_cookie['ci_session']
  33. php_session = response_cookie['PHPSESSID']
  34. # event_id
  35. event_id = 0
  36. response = requests.get(target_url)
  37. if response.status_code == 200:
  38. html_string = response.content.decode('utf8')
  39. start_index = html_string.find('https://t.livepocket.jp/purchase/verify?event_id=')
  40. if start_index != -1:
  41. end_index = html_string.find("'", start_index)
  42. if end_index != -1:
  43. event_id = html_string[start_index + len('https://t.livepocket.jp/purchase/verify?event_id='):end_index]
  44. print(f'event_id: {event_id}')
  45. else:
  46. print('End index not found.')
  47. else:
  48. print('Substring not found.')
  49. else:
  50. print('Failed to fetch the page. Status code:', response.status_code)
  51. # ticket_id
  52. ticket_id = 0
  53. response = requests.get(target_url)
  54. if response.status_code == 200:
  55. html_string = response.text
  56. match = re.search(r'id="js_order_limited_(\d+)"', html_string)
  57. if match:
  58. ticket_id = match.group(1)
  59. print(ticket_id)
  60. else:
  61. print("未找到匹配的数值")
  62. # event_cname
  63. # url = 'https://t.livepocket.jp/e/lxyyc'
  64. sub_str = target_url.replace("https://t.livepocket.jp/", "")
  65. strs = sub_str.split('/')
  66. cname = strs[len(strs) - 1]
  67. # print(cname)
  68. # redirect_url1
  69. net_url = 'https://t.livepocket.jp/purchase?type=new'
  70. result = requests.Session()
  71. header = {
  72. 'Host': 't.livepocket.jp',
  73. 'User-Agent': "Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) "
  74. "Chrome/69.0.3947.100 Safari/537.36",
  75. 'Content-Type': 'application/x-www-form-urlencoded',
  76. 'Referer': f'{target_url}',
  77. }
  78. # my_session = 'IN7u3uuP5WcizQkmRzF%2F3OsLuNNQePnxNBvnlPgqT6FPz2BgyKT2KCJaMvdj8ZSa6wNp2xZIL6VoA7Mj0R2zECMZkOKJOLbsNwUdXwvcsROxjfCzibxEaj4nG%2Bq29dCEUdiWI2TgUsKSFGRZaOP0p37ktl%2B1wSMqMAk918Nkt7APIxpQtZ%2BoLwId4PMOkN3oOIwT3CvsuDbgPQHIuokZXcnNe8uOAUuZBLW4nKOdYimLcSw6oTMt85UXkwm4OyTdxYR3%2B8crA0OfQCyfHXqY%2Bj0t9R0mmNSusRXRDuDBmOCFR58vHVuuwZ0AXNHYoYB0sdm28VL9xgHHrzkvm2M9cpLEIVWUWBWGaZgtO3xp2d8L70%2BfAKwyv6JPGcGmGf9wUQzBltssBpMmYqSfkws1%2Bp8BOhmXOqfljSYbWcxxVVSw%2B2dtoxBXsTf793mD9sVYRsrr8YPGz4JPVGWGU0outg%3D%3D'
  79. cookies = {
  80. 'ci_session': f'{login_session}',
  81. 'PHPSESSID': f'{php_session}',
  82. 'list_count': '{"success":true,"result":{"myticket_count":{"count":"0"},"today_event":{"total_count":0,"data_list":[]},"unread_count":5},"submit":true}',
  83. 'sns_status': '{"success":true,"result":{"facebook":0,"twitter":0,"mixi":0,"line":0,"yahoo":0,"plusid":1,"google":0},"submit":true}',
  84. 'display_init': '{"success":true,"result":{"purchased_tickets":{"total_count":0,"data_list":{"ticket_info":[]}},"lottery_tickets":{"total_count":0,"data_list":{"ticket_info":[]}},"order_limited_event_tickets":{"data_list":{"ticket_info":[]},"total_count":0},"event_order_limit":true},"submit":true}',
  85. }
  86. ticket_key = f'ticket_id_{ticket_id}'
  87. form_data = {
  88. 'redirect_url': 'https://t.livepocket.jp/purchase/',
  89. 'event_id': event_id,
  90. 'event_cname': f'{cname}',
  91. 'ticket_type': 'lottery',
  92. 'facebook_ticket_count': 0,
  93. 'twitter_ticket_count': 0,
  94. 'plusid_linkage_invalidation_flg': 0,
  95. ticket_key: 1
  96. }
  97. print('form_data:', form_data)
  98. response = result.post(net_url, headers=header, cookies=cookies, data=form_data, allow_redirects=False)
  99. print('response.headers: ', response.headers)
  100. redirect_url1 = response.headers['Location']
  101. # https://t.livepocket.jp/purchase/security?id=309887&type=new
  102. # redirect_url2
  103. response2 = result.get(redirect_url1, headers=header, cookies=cookies, allow_redirects=False)
  104. print('response2.headers: ', response2.headers)
  105. redirect_url2 = response2.headers['Location']
  106. # https://t.livepocket.jp/purchase/confirm?id=309887&reserved_session_id=423272
  107. # redirect_url3
  108. response3 = result.get(redirect_url2, headers=header, cookies=cookies, allow_redirects=False)
  109. print('response3.headers: ', response3.headers)
  110. redirect_url3 = response3.headers['Location']
  111. # https://t.livepocket.jp/purchase/confirm?id=309887&reserved_session_id=794986&otoken=mMyZTgzMmQ4OWQ5ZjY5NWFlNGE2ZmJlMWM5Mm
  112. # drawing_tickets
  113. drawing_url = 'https://t.livepocket.jp/api/drawing_tickets/entry?mytimestamp=' + str(int(time.time()))
  114. region_string = redirect_url3.split('?')[1]
  115. params = region_string.split('&')
  116. reserve_session_id = params[1].split("=")[1]
  117. drawing_headers = {
  118. 'Host': 't.livepocket.jp',
  119. 'User-Agent': "Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) "
  120. "Chrome/69.0.3947.100 Safari/537.36",
  121. 'Content-Type': 'application/x-www-form-urlencoded',
  122. 'Referer': f'{redirect_url3}',
  123. }
  124. drawing_cookies = {
  125. 'ci_session': f'{login_session}',
  126. 'PHPSESSID': f'{php_session}',
  127. }
  128. drawing_form_data = {
  129. 'utoken': f'{token}',
  130. 'onetime_token_name': 'buy_ticket',
  131. 'onetime_token_value': params[2].split('=')[1],
  132. 'url': f'https://t.livepocket.jp/purchase/confirm?id={event_id}&reserved_session_id={reserve_session_id}',
  133. 'payment_method': 0,
  134. 'reserve_session_id': reserve_session_id,
  135. 'event_id': event_id,
  136. 'reserve_ticket[0][ticket_id]': ticket_id,
  137. 'reserve_ticket[0][amount]': 1,
  138. 'payment_type': 'credit'
  139. }
  140. drawing_response = result.post(drawing_url, headers=drawing_headers, cookies=drawing_cookies, data=drawing_form_data, allow_redirects=False)
  141. print('drawing_response.text: ', drawing_response.text)
  142. drawing_data = json.loads(drawing_response.text)
  143. if drawing_data['success']:
  144. order_id = drawing_data['result']['order_id']
  145. onetime_token_name = drawing_data['result']['onetime_token_name']
  146. onetime_token_value = drawing_data['result']['onetime_token_value']
  147. print('order_id, onetime_token_name, onetime_token_value', order_id, onetime_token_name, onetime_token_value)
  148. if __name__ == '__main__':
  149. poc_2('sa304@huatcn.com', 'panyue666', 'https://t.livepocket.jp/e/pp20240515')