Facebook Poker Bug © Spymastersnake.org
<?
set_time_limit(0);
$agent = "Opera/9.64 (Windows NT 6.0; U; tr) Presto/2.1.1";
$email="x@hotmail.com";
$pass="123456";
$dir=$_SERVER['DOCUMENT_ROOT']."/";
function arasi($a,$b,$data)
{
$x = explode($a,$data);
$z = explode($b,$x[1]);
$oh = $z[0];
if($x && $z) { return $oh; } else { return false; }
}
$ch = curl_init();
curl_setopt($ch, CURLOPT_URL,"https://login.facebook.com/login.php");
curl_setopt($ch, CURLOPT_USERAGENT, $agent);
curl_setopt($ch, CURLOPT_COOKIEFILE, $dir."facook.txt");
curl_setopt($ch, CURLOPT_COOKIEJAR, $dir."facook.txt");
curl_setopt($ch, CURLOPT_REFERER, "http://www.facebook.com/login.php");
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
curl_setopt($ch, CURLOPT_HEADER, 1);
curl_setopt($ch, CURLOPT_POST, 1);
curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
curl_setopt($ch, CURLOPT_POSTFIELDS, "charset_test=%E2%82%AC%2C%C2%B4%2C%E2%82%AC%2C%C2%B4%2C%E6%B0%B4%2C%D0%94%2C%D0%84&version=1.0&return_session=0&charset_test=%E2%82%AC%2C%C2%B4%2C%E2%82%AC%2C%C2%B4%2C%E6%B0%B4%2C%D0%94%2C%D0%84&email=$email&pass=$pass");
$giris = curl_exec($ch);
curl_close($ch);
if(!eregi("Location: http://www.facebook.com/home.php",$giris)) die("Giriş Başarısız");
$ch = curl_init();
curl_setopt($ch, CURLOPT_URL,"http://apps.facebook.com/texas_holdem/index.php?src_track_str=Poker+FB+Bookmark+Other+%25ACTION%25+o%3ABookmark%3A2009-03-11");
curl_setopt($ch, CURLOPT_USERAGENT, $agent);
curl_setopt($ch, CURLOPT_COOKIEFILE, $dir."facook.txt");
curl_setopt($ch, CURLOPT_COOKIEJAR, $dir."facook.txt");
curl_setopt($ch, CURLOPT_REFERER, "http://www.facebook.com/home.php?");
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
curl_setopt($ch, CURLOPT_HEADER, 1);
curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
$html = curl_exec($ch);
curl_close($ch);
#echo $html;
#linkler
$zbar2=arasi('iframe height="60" width="760" frameborder="0" scrolling="no" src="','"',$html);
$geof2="http://statics.poker.static.zynga.com/poker//geo/f2.php";$geof2.=arasi('iframe name="cpc" src="http://statics.poker.static.zynga.com/poker//geo/f2.php','"',$html);
$launch="http://facebook.poker.zynga.com/poker/launch.php";$launch.=arasi('<iframe src="http://facebook.poker.zynga.com/poker/launch.php','"',$html);
$ladder=arasi('name="ladder" src="','"',$html);
$geoframe="http://street.presidiomedia.com/track/geoframe.php";$geoframe.=arasi('iframe src="http://street.presidiomedia.com/track/geoframe.php','"',$html);
$link803="http://nav3.zynga.com/link/link.php?link=803".arasi('
<iframe src="http://nav3.zynga.com/link/link.php?link=803','"',$html);
$pcanvas="http://nav3.zynga.com/link/link.php?item=Poker".arasi('<iframe src="http://nav3.zynga.com/link/link.php?item=Poker','"',$html);
$ppi="http://www.socialmedia.com/facebook/ppi.php".arasi('iframe src="http://www.socialmedia.com/facebook/ppi.php','"',$html);
$linkler[]=$zbar2;
$linkler[]=$geof2;
$linkler[]=$launch;
$linkler[]=$ladder;
$linkler[]=$geoframe;
$linkler[]=$pcanvas;
$linkler[]=$ppi;
print_r($linkler);
#değişkenler
$uid=arasi('uid=','&',$html);
$hash=arasi(';
FBML.Contexts["','"',$html);
$postformid=arasi('post_form_id:"','"',$html);
$dtsg=arasi('fb_dtsg:"','"',$html);
$postdata=array(
'url'=>'http://facebook.poker.zynga.com/poker/inc/ajax/lottery.php',
'type'=>'0',
'require_login'=>'false',
'fb_mockajax_context'=>'O:16:"CanvasFBMLFlavor":1:{s:9:"_fbml_env";a:13:{s:4:"user";i:'.$uid.';s:6:"app_id";i:2389801228;s:10:"fb_page_id";i:0;s:10:"canvas_url";s:124:"http://apps.facebook.com/texas_holdem/index.php?src_track_str=Poker+FB+Bookmark+Other+%25ACTION%25+o%3ABookmark%3A2009-03-11";s:10:"source_url";s:124:"http://facebook.poker.zynga.com/poker/index.php?src_track_str=Poker+FB+Bookmark+Other+%25ACTION%25+o%3ABookmark%3A2009-03-11";s:17:"quickling_enabled";b:0;s:9:"loggedout";b:0;s:7:"non-tos";b:0;s:11:"flavor_code";i:3;s:14:"on_canvas_info";b:0;s:8:"is_tosed";b:1;s:8:"fb_frame";s:12:"texas_holdem";s:14:"suppress_label";b:1;}}',
'fb_mockajax_context_hash'=>$hash,
'appid'=>'2389801228',
'post_form_id'=>$postformid,
'fb_dtsg'=>$dtsg,
'__a'=>'1');
print_r($postdata);
echo "
zbar2=$zbar2
geof2=$geof2
launch=$launch
ladder=$ladder
geoframe=$geoframe
pcanvas=$pcanvas
ppi=$ppi";
if($ladder!="")
{
echo "<br>
<b>sorun yok devam<b>
<br>";
}
else
{
die("<b><br>
sorun var $html
<br>");
}
foreach($linkler as $x => $link)
{
echo "<b>
$link
<b><br>.";
$ch = curl_init();
curl_setopt($ch, CURLOPT_URL,$link);
curl_setopt($ch, CURLOPT_USERAGENT, $agent);
curl_setopt($ch, CURLOPT_COOKIEFILE, $dir."facook.txt");
curl_setopt($ch, CURLOPT_COOKIEJAR, $dir."facook.txt");
curl_setopt($ch, CURLOPT_REFERER, "http://www.facebook.com/home.php?");
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
curl_setopt($ch, CURLOPT_HEADER, 1);
curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
$html = curl_exec($ch);
curl_close($ch);
}
$ch = curl_init();
curl_setopt($ch, CURLOPT_URL,"http://apps.facebook.com/fbml/fbjs_ajax_proxy.php");
curl_setopt($ch, CURLOPT_USERAGENT, $agent);
curl_setopt($ch, CURLOPT_COOKIEFILE, $dir."facook.txt");
curl_setopt($ch, CURLOPT_COOKIEJAR, $dir."facook.txt");
curl_setopt($ch, CURLOPT_REFERER, "http://apps.facebook.com/texas_holdem/index.php?src_track_str=Poker+FB+Bookmark+Other+%25ACTION%25+o%3ABookmark%3A2009-03-11");
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
curl_setopt($ch, CURLOPT_HEADER, 1);
curl_setopt($ch, CURLOPT_POST, 1);
curl_setopt($ch, CURLOPT_POSTDATA, $postdata);
curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
$html = curl_exec($ch);
curl_close($ch);
echo "<br><br><br><br><br>$html";
print_r($postdata);
?>