灌水 找出微信联系人中谁删除了你

思寒_seveniruby · 2016年01月05日 · 最后由 Aries 回复于 2016年11月01日 · 2102 次阅读

作用

挺好玩的. 发给大家, 作者是 https://github.com/0x5e
工具地址 https://github.com/0x5e/wechat-deleted-friends

用法

git clone https://github.com/0x5e/wechat-deleted-friends.git
cd wechat-deleted-friends/
python wdf.py 

我试过了, 可以查出来. 挺有意思. 接下来大家是不是借鉴下, 搞个红包的接口玩玩 :)

原理

参考官方的说明. 我只贴下源代码.

#!/usr/bin/env python
# coding=utf-8

import os
import urllib, urllib2
import re
import cookielib
import time
import xml.dom.minidom
import json
import sys
import math

DEBUG = False

MAX_GROUP_NUM = 35 # 每组人数

QRImagePath = os.getcwd() + '/qrcode.jpg'

tip = 0
uuid = ''

base_uri = ''
redirect_uri = ''

skey = ''
wxsid = ''
wxuin = ''
pass_ticket = ''
deviceId = 'e000000000000000'

BaseRequest = {}

ContactList = []
My = []

def getUUID():
    global uuid

    url = 'https://login.weixin.qq.com/jslogin'
    params = {
        'appid': 'wx782c26e4c19acffb',
        'fun': 'new',
        'lang': 'zh_CN',
        '_': int(time.time()),
    }

    request = urllib2.Request(url = url, data = urllib.urlencode(params))
    response = urllib2.urlopen(request)
    data = response.read()

    # print data

    # window.QRLogin.code = 200; window.QRLogin.uuid = "oZwt_bFfRg==";
    regx = r'window.QRLogin.code = (\d+); window.QRLogin.uuid = "(\S+?)"'
    pm = re.search(regx, data)

    code = pm.group(1)
    uuid = pm.group(2)

    if code == '200':
        return True

    return False

def showQRImage():
    global tip

    url = 'https://login.weixin.qq.com/qrcode/' + uuid
    params = {
        't': 'webwx',
        '_': int(time.time()),
    }

    request = urllib2.Request(url = url, data = urllib.urlencode(params))
    response = urllib2.urlopen(request)

    tip = 1

    f = open(QRImagePath, 'wb')
    f.write(response.read())
    f.close()

    if sys.platform.find('darwin') >= 0:
        os.system('open %s' % QRImagePath)
    elif sys.platform.find('linux') >= 0:
        os.system('xdg-open %s' % QRImagePath)
    else:
        os.system('call %s' % QRImagePath)

    print '请使用微信扫描二维码以登录'

def waitForLogin():
    global tip, base_uri, redirect_uri

    url = 'https://login.weixin.qq.com/cgi-bin/mmwebwx-bin/login?tip=%s&uuid=%s&_=%s' % (tip, uuid, int(time.time()))

    request = urllib2.Request(url = url)
    response = urllib2.urlopen(request)
    data = response.read()

    # print data

    # window.code=500;
    regx = r'window.code=(\d+);'
    pm = re.search(regx, data)

    code = pm.group(1)

    if code == '201': #已扫描
        print '成功扫描,请在手机上点击确认以登录'
        tip = 0
    elif code == '200': #已登录
        print '正在登录...'
        regx = r'window.redirect_uri="(\S+?)";'
        pm = re.search(regx, data)
        redirect_uri = pm.group(1) + '&fun=new'
        base_uri = redirect_uri[:redirect_uri.rfind('/')]
    elif code == '408': #超时
        pass
    # elif code == '400' or code == '500':

    return code

def login():
    global skey, wxsid, wxuin, pass_ticket, BaseRequest

    request = urllib2.Request(url = redirect_uri)
    response = urllib2.urlopen(request)
    data = response.read()

    # print data

    '''
        <error>
            <ret>0</ret>
            <message>OK</message>
            <skey>xxx</skey>
            <wxsid>xxx</wxsid>
            <wxuin>xxx</wxuin>
            <pass_ticket>xxx</pass_ticket>
            <isgrayscale>1</isgrayscale>
        </error>
    '''

    doc = xml.dom.minidom.parseString(data)
    root = doc.documentElement

    for node in root.childNodes:
        if node.nodeName == 'skey':
            skey = node.childNodes[0].data
        elif node.nodeName == 'wxsid':
            wxsid = node.childNodes[0].data
        elif node.nodeName == 'wxuin':
            wxuin = node.childNodes[0].data
        elif node.nodeName == 'pass_ticket':
            pass_ticket = node.childNodes[0].data

    # print 'skey: %s, wxsid: %s, wxuin: %s, pass_ticket: %s' % (skey, wxsid, wxuin, pass_ticket)

    if skey == '' or wxsid == '' or wxuin == '' or pass_ticket == '':
        return False

    BaseRequest = {
        'Uin': int(wxuin),
        'Sid': wxsid,
        'Skey': skey,
        'DeviceID': deviceId,
    }

    return True

def webwxinit():

    url = base_uri + '/webwxinit?pass_ticket=%s&skey=%s&r=%s' % (pass_ticket, skey, int(time.time()))
    params = {
        'BaseRequest': BaseRequest
    }

    request = urllib2.Request(url = url, data = json.dumps(params))
    request.add_header('ContentType', 'application/json; charset=UTF-8')
    response = urllib2.urlopen(request)
    data = response.read()

    if DEBUG == True:
        f = open(os.getcwd() + '/webwxinit.json', 'wb')
        f.write(data)
        f.close()

    # print data

    global ContactList, My
    dic = json.loads(data)
    ContactList = dic['ContactList']
    My = dic['User']

    ErrMsg = dic['BaseResponse']['ErrMsg']
    if len(ErrMsg) > 0:
        print ErrMsg

    Ret = dic['BaseResponse']['Ret']
    if Ret != 0:
        return False

    return True

def webwxgetcontact():

    url = base_uri + '/webwxgetcontact?pass_ticket=%s&skey=%s&r=%s' % (pass_ticket, skey, int(time.time()))

    request = urllib2.Request(url = url)
    request.add_header('ContentType', 'application/json; charset=UTF-8')
    response = urllib2.urlopen(request)
    data = response.read()

    if DEBUG == True:
        f = open(os.getcwd() + '/webwxgetcontact.json', 'wb')
        f.write(data)
        f.close()

    # print data

    dic = json.loads(data)
    MemberList = dic['MemberList']

    # 倒序遍历,不然删除的时候出问题..
    SpecialUsers = ['newsapp', 'fmessage', 'filehelper', 'weibo', 'qqmail', 'fmessage', 'tmessage', 'qmessage', 'qqsync', 'floatbottle', 'lbsapp', 'shakeapp', 'medianote', 'qqfriend', 'readerapp', 'blogapp', 'facebookapp', 'masssendapp', 'meishiapp', 'feedsapp', 'voip', 'blogappweixin', 'weixin', 'brandsessionholder', 'weixinreminder', 'wxid_novlwrv3lqwv11', 'gh_22b87fa7cb3c', 'officialaccounts', 'notification_messages', 'wxid_novlwrv3lqwv11', 'gh_22b87fa7cb3c', 'wxitil', 'userexperience_alarm', 'notification_messages']
    for i in xrange(len(MemberList) - 1, -1, -1):
        Member = MemberList[i]
        if Member['VerifyFlag'] & 8 != 0: # 公众号/服务号
            MemberList.remove(Member)
        elif Member['UserName'] in SpecialUsers: # 特殊账号
            MemberList.remove(Member)
        elif Member['UserName'].find('@@') != -1: # 群聊
            MemberList.remove(Member)
        elif Member['UserName'] == My['UserName']: # 自己
            MemberList.remove(Member)

    return MemberList

def createChatroom(UserNames):
    MemberList = []
    for UserName in UserNames:
        MemberList.append({'UserName': UserName})


    url = base_uri + '/webwxcreatechatroom?pass_ticket=%s&r=%s' % (pass_ticket, int(time.time()))
    params = {
        'BaseRequest': BaseRequest,
        'MemberCount': len(MemberList),
        'MemberList': MemberList,
        'Topic': '',
    }

    request = urllib2.Request(url = url, data = json.dumps(params))
    request.add_header('ContentType', 'application/json; charset=UTF-8')
    response = urllib2.urlopen(request)
    data = response.read()

    # print data

    dic = json.loads(data)
    ChatRoomName = dic['ChatRoomName']
    MemberList = dic['MemberList']
    DeletedList = []
    for Member in MemberList:
        if Member['MemberStatus'] == 4: #被对方删除了
            DeletedList.append(Member['UserName'])

    ErrMsg = dic['BaseResponse']['ErrMsg']
    if len(ErrMsg) > 0:
        print ErrMsg

    return (ChatRoomName, DeletedList)

def deleteMember(ChatRoomName, UserNames):
    url = base_uri + '/webwxupdatechatroom?fun=delmember&pass_ticket=%s' % (pass_ticket)
    params = {
        'BaseRequest': BaseRequest,
        'ChatRoomName': ChatRoomName,
        'DelMemberList': ','.join(UserNames),
    }

    request = urllib2.Request(url = url, data = json.dumps(params))
    request.add_header('ContentType', 'application/json; charset=UTF-8')
    response = urllib2.urlopen(request)
    data = response.read()

    # print data

    dic = json.loads(data)
    ErrMsg = dic['BaseResponse']['ErrMsg']
    if len(ErrMsg) > 0:
        print ErrMsg

    Ret = dic['BaseResponse']['Ret']
    if Ret != 0:
        return False

    return True

def addMember(ChatRoomName, UserNames):
    url = base_uri + '/webwxupdatechatroom?fun=addmember&pass_ticket=%s' % (pass_ticket)
    params = {
        'BaseRequest': BaseRequest,
        'ChatRoomName': ChatRoomName,
        'AddMemberList': ','.join(UserNames),
    }

    request = urllib2.Request(url = url, data = json.dumps(params))
    request.add_header('ContentType', 'application/json; charset=UTF-8')
    response = urllib2.urlopen(request)
    data = response.read()

    # print data

    dic = json.loads(data)
    MemberList = dic['MemberList']
    DeletedList = []
    for Member in MemberList:
        if Member['MemberStatus'] == 4: #被对方删除了
            DeletedList.append(Member['UserName'])

    ErrMsg = dic['BaseResponse']['ErrMsg']
    if len(ErrMsg) > 0:
        print ErrMsg

    return DeletedList

def main():

    opener = urllib2.build_opener(urllib2.HTTPCookieProcessor(cookielib.CookieJar()))
    urllib2.install_opener(opener)

    if getUUID() == False:
        print '获取uuid失败'
        return

    showQRImage()
    time.sleep(1)

    while waitForLogin() != '200':
        pass

    os.remove(QRImagePath)

    if login() == False:
        print '登录失败'
        return

    if webwxinit() == False:
        print '初始化失败'
        return

    MemberList = webwxgetcontact()

    MemberCount = len(MemberList)
    print '通讯录共%s位好友' % MemberCount

    ChatRoomName = ''
    result = []
    for i in xrange(0, int(math.ceil(MemberCount / float(MAX_GROUP_NUM)))):
        UserNames = []
        NickNames = []
        DeletedList = ''
        for j in xrange(0, MAX_GROUP_NUM):
            if i * MAX_GROUP_NUM + j >= MemberCount:
                break

            Member = MemberList[i * MAX_GROUP_NUM + j]
            UserNames.append(Member['UserName'])
            NickNames.append(Member['NickName'].encode('utf-8'))

        print '第%s组...' % (i + 1)
        print ', '.join(NickNames)
        print '回车键继续...'
        raw_input()

        # 新建群组/添加成员
        if ChatRoomName == '':
            (ChatRoomName, DeletedList) = createChatroom(UserNames)
        else:
            DeletedList = addMember(ChatRoomName, UserNames)

        DeletedCount = len(DeletedList)
        if DeletedCount > 0:
            result += DeletedList

        print '找到%s个被删好友' % DeletedCount
        # raw_input()

        # 删除成员
        deleteMember(ChatRoomName, UserNames)

    # todo 删除群组


    resultNames = []
    for Member in MemberList:
        if Member['UserName'] in result:
            NickName = Member['NickName']
            if Member['RemarkName'] != '':
                NickName += '(%s)' % Member['RemarkName']
            resultNames.append(NickName.encode('utf-8'))

    print '---------- 被删除的好友列表 ----------'
    print '\n'.join(resultNames)
    print '-----------------------------------'

# windows下编码问题修复
# http://blog.csdn.net/heyuxuanzee/article/details/8442718
class UnicodeStreamFilter:  
    def __init__(self, target):  
        self.target = target  
        self.encoding = 'utf-8'  
        self.errors = 'replace'  
        self.encode_to = self.target.encoding  
    def write(self, s):  
        if type(s) == str:  
            s = s.decode('utf-8')  
        s = s.encode(self.encode_to, self.errors).decode(self.encode_to)  
        self.target.write(s)  

if sys.stdout.encoding == 'cp936':  
    sys.stdout = UnicodeStreamFilter(sys.stdout)

if __name__ == '__main__' :

    print '本程序的查询结果可能会引起一些心理上的不适,请小心使用...'
    print '回车键继续...'
    raw_input()

    main()

    print '回车键结束'
    raw_input()
如果觉得我的文章对您有用,请随意打赏。您的支持将鼓励我继续创作!
共收到 43 条回复 时间 点赞

好使~~

好玩~~已 star

用了以后 心里还真有点不适了 哈哈

研究一下

还好,用完没有什么不适,😄

结果超乎意料啊

#2 楼 @chenhengjie123
发现个投票 bug,每次投完票后,再点击菜单上,页面会抖动 2 下,才会拉取信息

有意思 红包的接口还有判断机制怎么整呢

不错,挺好用的,一共三个被删除好友

试了 然后我也果断把删了我的人给删掉了

#8 楼 @kasi 在限制范围内争取最大程度的利用. 比如自动点红包, 哪怕提个醒也行.

#11 楼 @seveniruby 回头可以写个试试看

没有人删除我,可能删除我的都被我删除了

被现在同事删了。。。。为什么我要到处宣传这件事情啊

@seveniruby 得慢慢抓包 一个个分析了

#16 楼 @kasi 你多发几个红包,我们好抓包,哈哈哈

还好没有出现不适的情况..哈哈

#7 楼 @doctorq ok,已 mark :https://github.com/testerhome/testerhome/issues/20

是投票成功后必现是吗?浏览器版本能否在那个 issue 下 comment 记录一下?

#14 楼 @_echo 一定有隐情 ...

#11 楼 @seveniruby PC 的微信好像没红包的接口吧。
可以监听聊天内容,发现红包马上弹窗让你看手机,这个是没问题的应该。哈哈

#22 楼 @anikikun 但感觉用处就不大了。。= =

#22 楼 @anikikun 肯定被秒光了,哈哈哈,大家抢红包很快地

对啊 直接守着看都是被秒的 不过可以用 android 手机装一个抢包神器

#15 楼 @gaopeng1106 都是附近的人,加了之后就删除了么?

好贴。。。不敢轻易使用。。

#26 楼 @lihuazhang 经验很丰富嘛

牛人

—— 来自 TesterHome 官方 安卓客户端

#26 楼 @lihuazhang 漂流瓶和附近的人两个功能都没有开启,哈哈,听思寒 说通过模拟三个位置可以定位附近的人准确位置。。。我就把所有 app 的附近的人功能都关了。。哈哈


执行完,果然心里不适

还是有点不适。。。

何必自寻烦恼呢:)

用 py3 的 还在改···没改好···抄都抄不会 好烦...

请使用微信扫描二维码以登录
成功扫描,请在手机上点击确认以登录
正在登录...
通讯录共467位好友
第1组...

回车键继续...

Everything is OK
找到0个被删好友

回车键继续...

找到1个被删好友
---------- 被删除的好友列表 ----------
Zhu

-----------------------------------
回车键结束

很好很好。。。。

#31 楼 @gaopeng1106 人与人之间的信任哪...

#35 楼 @tlbin python 的前途就断在 python3 上了

#37 楼 @seveniruby 发生什么了。。。哈哈哈

昨天就在云头条微信公众号上面看到了代码,一直未尝试,直到今天在 TesterHome 看到。
按耐不止心中的骚动,代码抄了一遍,完美运行。

请使用微信扫描二维码以登录
成功扫描,请在手机上点击确认以登录
正在登录...
通讯录共 97 位好友
开始查找...
[ ########## ] (当前,你被 2 人删除,好友共 97 人
---------- 被删除的好友列表 ----------
追梦
阿奔

A 蕊希

回车键结束

还是有 BUG 的,统计的明显不正确

真想转给那些天天发信息来清是否被删除的人。。。

学习了

需要 登录 後方可回應,如果你還沒有帳號按這裡 注册