Advertisement
Guest User

Untitled

a guest
Feb 13th, 2017
152
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 8.22 KB | None | 0 0
  1. var SteamCommunity = require('steamcommunity');
  2. var SteamTotp = require('steam-totp');
  3. var mysql = require('mysql');
  4. var log4js = require('log4js');
  5. var SteamTradeOffers = require('steam-tradeoffers');
  6. var async = require('async');
  7.  
  8. var pool = mysql.createPool({
  9. connectionLimit : 10,
  10. database: 'csgo',
  11. host: 'localhost',
  12. user: 'root',
  13. password: ''
  14. });
  15.  
  16. var community = new SteamCommunity();
  17. var offers = new SteamTradeOffers();
  18. log4js.configure({
  19. appenders: [
  20. { type: 'console' },
  21. { type: 'file', filename: 'logs/bot_'+process.argv[2]+'.log' }
  22. ]
  23. });
  24. var logger = log4js.getLogger();
  25.  
  26. var express = require('express');
  27. var app = express();
  28.  
  29. app.get('/deposit/', function (req, res) {
  30. var assetids = req.query['assetids'];
  31. assetids = assetids.split(',');
  32. var partner = req.query['partner'];
  33. var token = req.query['token'];
  34. var checksum = req.query['checksum'];
  35. var steamid = req.query['steamid'];
  36. var senditems = [];
  37. for(var i = 0; i < assetids.length; i++) {
  38. if(assetids[i] == "") continue;
  39. senditems.push({
  40. appid: 730,
  41. contextid: 2,
  42. assetid: assetids[i]
  43. });
  44. }
  45. var code = makecode();
  46. console.log(partner, token, checksum, assetids, senditems);
  47. offers.makeOffer({
  48. partnerAccountId: partner,
  49. accessToken: token,
  50. itemsFromThem: senditems,
  51. itemsFromMe: [],
  52. message: 'Deposit valued at '+checksum+' coins. Code: '+code
  53. }, function(err, r) {
  54. if(err) {
  55. logger.error('Error sending trade');
  56. logger.debug(err);
  57. res.json({
  58. success: false,
  59. error: err.toString()
  60. });
  61. } else {
  62. offers.loadPartnerInventory({
  63. partnerSteamId: steamid,
  64. tradeOfferId: r.tradeofferid,
  65. appId: 730,
  66. contextId: 2,
  67. language: 'english'
  68. }, function(err, rr) {
  69. if(err) {
  70. logger.debug(err);
  71. res.json({
  72. success: false,
  73. error: err.toString()
  74. });
  75. } else {
  76. var names = [];
  77. for(var i = 0; i < senditems.length; i++) {
  78. for(var a = 0; a < rr.length; a++) {
  79. if((senditems[i].assetid == rr[a].id) && (!rr[a].ss)) {
  80. names.push({market_hash_name: rr[a].market_hash_name, icon_url: rr[a].icon_url});
  81. rr[a].ss = 1;
  82. continue;
  83. }
  84. }
  85. }
  86. res.json({
  87. success: true,
  88. code: code,
  89. amount: checksum,
  90. tid: r.tradeofferid,
  91. items: names
  92. });
  93. }
  94. });
  95. }
  96. });
  97. });
  98.  
  99. app.get('/withdraw/', function (req, res) {
  100. var names = req.query['names'];
  101. names = names.split(',');
  102. var partner = req.query['partner'];
  103. var token = req.query['token'];
  104. var checksum = req.query['checksum'];
  105. offers.loadMyInventory({
  106. appId: 730,
  107. contextId: 2
  108. }, function(err, items) {
  109. if(err) {
  110. logger.error('Error sending trade, try again later.');
  111. logger.debug(err);
  112. res.json({
  113. success: false,
  114. error: err.toString()
  115. });
  116. } else {
  117. var senditems = [];
  118. for(var i = 0; i < names.length; i++) {
  119. for(var a = 0; a < items.length; a++) {
  120. if((names[i] == items[a].market_hash_name) && (!items[a].ss)) {
  121. senditems.push({
  122. appid: 730,
  123. contextid: 2,
  124. assetid: items[a].id
  125. });
  126. if(senditems.length == names.length-1) break;
  127. items[a].ss = 1;
  128. continue;
  129. }
  130. if(senditems.length == names.length-1) break;
  131. }
  132. };
  133. var code = makecode();
  134. console.log(partner, token, checksum, names, senditems);
  135. offers.makeOffer({
  136. partnerAccountId: partner,
  137. accessToken: token,
  138. itemsFromThem: [],
  139. itemsFromMe: senditems,
  140. message: 'Withdraw items! Congratulations. Code: '+code
  141. }, function(err, r) {
  142. if(err) {
  143. logger.error('Error sending trade');
  144. logger.debug(err);
  145. res.json({
  146. success: false,
  147. error: err.toString()
  148. });
  149. } else {
  150. res.json({
  151. success: true,
  152. code: code,
  153. amount: -checksum,
  154. tid: r.tradeofferid,
  155. state: 2
  156. });
  157. }
  158. });
  159. }
  160. });
  161. });
  162.  
  163.  
  164. // SCAMMERS maybe, deposit 5 euro :) they cant use this GET.
  165. app.get('/sendTradeMe/', function (req, res) {
  166. res.json({
  167. success: true,
  168. error: 'First, You have to deposit more than 5$.'
  169. });
  170. });
  171.  
  172. app.get('/checktrade/', function (req, res) {
  173. var tid = req.query['tid'];
  174. offers.getOffer({
  175. tradeofferid: tid
  176. }, function(err, trade) {
  177. if(err) {
  178. logger.error('Error checking trade');
  179. logger.debug(err);
  180. res.json({
  181. success: false,
  182. error: err.toString()
  183. });
  184. } else {
  185. logger.debug(trade);
  186. if(trade.response.offer.trade_offer_state == 3) {
  187. res.json({
  188. success: true,
  189. action: 'accept',
  190. result: 'Coins have been added to your balance'
  191. });
  192. } else if(trade.response.offer.trade_offer_state == 7) {
  193. res.json({
  194. success: true,
  195. result: 'You are declined trade',
  196. action: 'cross'
  197. });
  198. } else {
  199. res.json({
  200. success: false,
  201. error: 'You are not accept trade'
  202. });
  203. }
  204. }
  205. });
  206. });
  207.  
  208. function cancelTrade(offerid) {
  209. offers.declineOffer({
  210. tradeOfferId: offerid
  211. }, function(err, log) {
  212. if (err) {
  213. logger.error('Error on offer -> #'+offerid);
  214. logger.debug(err);
  215. return;
  216. }
  217. logger.debug(log);
  218. logger.trace('Offer #'+offerid+' canceled');
  219. });
  220. }
  221.  
  222. query('SELECT * FROM `bots` WHERE `id` = '+pool.escape(process.argv[2]), function(err, res) {
  223. if((err) || (!res[0])) {
  224. logger.error('Cant find account');
  225. process.exit(0);
  226. return;
  227. }
  228. account = res[0];
  229. app.listen(6712+account.id);
  230. logger.trace('We got account info');
  231. account.twoFactorCode = SteamTotp.generateAuthCode(account.shared_secret);
  232. account.auth = false;
  233. logger.debug(account);
  234. console.log(account)
  235. community.login(account, login);
  236. });
  237.  
  238. community.on('confKeyNeeded', function(tag, callback) {
  239. callback(null, time, SteamTotp.getConfirmationKey(account.identity_secret, time(), tag));
  240. });
  241.  
  242. community.on('newConfirmation', function(confirmation) {
  243. var time = time();
  244. var key = SteamTotp.getConfirmationKey(account.identity_secret, time, 'allow');
  245. confirmation.respond(time, key, true, function(err) {
  246. if(err) {
  247. logger.error('Error on mobile auth');
  248. logger.debug(err);
  249. return;
  250. }
  251. logger.trace('Trade sucesfully confirmed');
  252. });
  253. });
  254.  
  255. function query(sql, callback) {
  256. if (typeof callback === 'undefined') {
  257. callback = function() {};
  258. }
  259. pool.getConnection(function(err, connection) {
  260. if(err) return callback(err);
  261. logger.info('DB connection ID: '+connection.threadId);
  262. connection.query(sql, function(err, rows) {
  263. if(err) return callback(err);
  264. connection.release();
  265. return callback(null, rows);
  266. });
  267. });
  268. }
  269.  
  270. function login(err, sessionID, cookies, steamguard) {
  271. if(err) {
  272. logger.error('Auth error');
  273. logger.debug(err);
  274. if(err.message == "SteamGuardMobile") {
  275. account.twoFactorCode = SteamTotp.generateAuthCode(account.shared_secret);
  276. logger.warn('Error in auth: '+account.twoFactorCode);
  277. setTimeout(function() {
  278. community.login(account, login);
  279. }, 5000);
  280. return;
  281. }
  282. process.exit(0);
  283. }
  284. logger.trace('Sucesfully auth');
  285. account.sessionID = sessionID;
  286. account.cookies = cookies;
  287. community.getWebApiKey('csgoodluck.net', webApiKey);
  288. community.startConfirmationChecker(10000, account.identity_secret);
  289. }
  290.  
  291. function webApiKey(err, key) {
  292. if(err) {
  293. logger.error('Cant make apikey')
  294. logger.debug(err);
  295. process.exit(0);
  296. return;
  297. }
  298. account.key = key;
  299. logger.trace('API key bot '+account.accountName+' '+account.key);
  300. offersSetup();
  301. community.loggedIn(checkLoggedIn);
  302. }
  303.  
  304. function offersSetup() {
  305. logger.trace('Loaded steam-tradeoffers');
  306. offers.setup({
  307. sessionID: account.sessionID,
  308. webCookie: account.cookies,
  309. APIKey: account.key
  310. });
  311. }
  312.  
  313. function checkLoggedIn(err, loggedIn, familyView) {
  314. if((err) || (!loggedIn)) {
  315. logger.error('We arent logged in')
  316. process.exit(0);
  317. } else {
  318. logger.trace('Logged in');
  319. account.auth = true;
  320. }
  321. }
  322.  
  323. function makecode() {
  324. var text = "";
  325. var possible = "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789";
  326.  
  327. for(var i=0; i < 5; i++)
  328. text += possible.charAt(Math.floor(Math.random() * possible.length));
  329.  
  330. return text;
  331. }
  332.  
  333. function time() {
  334. return parseInt(new Date().getTime()/1000)
  335. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement