Quote:
it-s harder because it-s coded and i don-t know how it was coded.
<!-- code shared by jasonpham -->
<html>
<head>
<META http-equiv=Content-Type content="text/html; charset=utf-8">
<script language="JavaScript">
var count = 0 ;
function auto_sub()
{
document.form.submit();
}
function auto_sub1()
{
setTimeout("auto_sub()",20000);
}
</script>
</head>
<body onLoad="auto_sub1();">
<form name="form" method="post">
FACEBOOK_ID</br>
<input name="fbid" value="<?php echo $_POST['fbid']?>" /></br>
USER_KEY</br>
<input name="user" value="<?php echo $_POST['user']?>" /></br>
<select name="mode">
<option value="1">Food only 2000 / 2 minutes</option>
</select></br></br></br>
</form>
<?php
session_start();
if (empty($_SESSION['counter'])){
$_SESSION['counter'] = 1;
} else{
$_SESSION['counter']++;
}
echo 'How many times we refesh page : '.$_SESSION['counter'];
if (isset($_POST['flashVersion']) and !empty($_POST['flashVersion'])) $_SESSION['swversi'] = $_POST['flashVersion'];
$versi = "0.5.23a";
if (isset($_SESSION['swversi'])) $versi = $_SESSION['swversi'];
if (isset($_POST['fbid']) and isset($_POST['mode'])) {
$fbid = $_POST['fbid'];
$user = $_POST['user'];
$result = komut("http://dynamicdc.socialpointgames.com/dragoncity/web/srv/get_player_info.php?USERID=$fbid&user_key=$user&language=en");
$payload = explode(';', $result);
$data = json_decode($payload[1], true);
$str .= "name: " . $data['playerInfo']['name'] . "<br/>";
$str .= "cash: " . number_format($data['playerInfo']['cash'], 0, ',', '.') . "<br/>";
$str .= "gold: " . number_format($data['playerInfo']['gold'], 0, ',', '.') . "<br/>";
$str .= "food: " . number_format($data['playerInfo']['food'], 0, ',', '.') . "<br/>";
$str .= "xp: " . number_format($data['playerInfo']['xp'], 0, ',', '.') . "<br/>";
$str .= "------------------------------<br/>";
$hcx = '';
for ($i = 1; $i < 100; $i++) {
//$hcx.='{"args":[89,25],"number":'.$i.',"cmd":"collect","time":1372771201},';
$hcx .= '{"args":[18],"number":' . $i . ',"cmd":"collect","time":1372771201},';
//$hcx.='{"args":[134],"number":'.$i.',"cmd":"collect","time":1372771201},';
}
$hcx = substr($hcx, 0, -1);
$hc = '{"commands":[' . $hcx . ']}';
$hc = json_decode($hc, 1);
$num = 1;
for ($i = 0; $i < count($hc['commands']); $i++) {
$hc['commands'][$i]['time'] = time();
}
$hc = substr(substr(str_replace(" ", "", json_encode($hc)), 0, -1), 1);
function arasi($a, $b, $data)
{
$x = explode($a, $data);
$z = explode($b, $x[1]);
$oh = $z[0];
if ($x && $z) {
return $oh;
} else {
return false;
}
}
function komut2($komut, $num)
{
$data = komutyolla($komut, $num);
if (stristr($data, 'bad command number: expected')) {
$yeninum = arasi('bad command number: expected ', ',', $data);
$data = komutyolla($komut, $yeninum);
return substr($data, 65);
} else {
return substr($data, 65);
}
}
function komutyolla($komut, $num)
{
global $fbid, $user;
$ch = curl_init();
curl_setopt($ch, CURLOPT_URL, "http://dynamicdc.socialpointgames.com/dragoncity/web/srv/packet.php?USERID=$fbid&user_key=$user&language=tr");
curl_setopt($ch, CURLOPT_POST, 1);
curl_setopt($ch, CURLOPT_POSTFIELDS, http_build_query(array("id" => "$fbid", "data" => hashla($komut, $num))));
curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
//curl_setopt($ch, CURLOPT_HTTPHEADER, array("REMOTE_ADDR: ".fakeip(),"X-Client-IP: ".fakeip(),"Client-IP: ".fakeip(),"HTTP_X_FORWARDED_FOR: ".fakeip(),"X-Forwarded-For: ".fakeip()));
curl_setopt($ch, CURLOPT_ENCODING, "gzip");
//curl_setopt($ch, CURLOPT_PROXY, "127.0.0.1:8888");
$data = curl_exec($ch);
curl_close($ch);
return $data;
}
function hashla($komut, $n)
{
$ar = array("first_number" => $n, "publishActions" => 0, "tries" => 1, "flashVersion" => "0.5.19", "ts" => time());
$x = 'RGhXbiy4xEeDnSNX1oBG';
$sonkod = str_replace(" ", "", str_replace('}', ',' . $komut . '}', json_encode($ar)));
return hash_hmac('sha256', $sonkod, $x) . ';' . $sonkod;
}
if (isset($_POST["fbid"])) {
$fbid = $_POST['fbid'];
$user = $_POST['user'];
if ($_POST["mode"] == 1) {
unset($hc, $hcx);
$hcx = '';
for ($i = 1; $i < 201; $i++) {
$hcx .= '{"args":[18],"number":' . $i . ',"cmd":"Assist_Receive","time":'.time().'},';
//$hcx.='{"args":[3666,1],"number":'.$i.',"cmd":"finish_building","time":'.time().'},';
}
$hcx = substr($hcx, 0, -1);
$hc = '{"commands":[' . $hcx . ']}';
$hc = json_decode($hc, 1);
$num = 1;
/*for ($i = 0; $i < count($hc['commands']); $i++) {
$hc['commands'][$i]['time'] = time();
}*/
}
$hc = substr(substr(str_replace(" ", "", json_encode($hc)), 0, -1), 1);
$sucb = json_decode(komut2($hc, $num), 1);
}
$result = komut("http://dynamicdc.socialpointgames.com/dragoncity/web/srv/get_player_info.php?USERID=$fbid&user_key=$user&language=en");
$payload = explode(';', $result);
$data = json_decode($payload[1], true);
if (empty($data['playerInfo']['name'])) die("FBID EMPTY OR BAD USER_KEY");
$str .= "cash: " . number_format($data['playerInfo']['cash'], 0, ',', '.') . "<br/>";
$str .= "gold: " . number_format($data['playerInfo']['gold'], 0, ',', '.') . "<br/>";
$str .= "food: " . number_format($data['playerInfo']['food'], 0, ',', '.') . "<br/>";
$str .= "xp: " . number_format($data['playerInfo']['xp'], 0, ',', '.') . "<br/>";
$str .= "------------------------------<br/>";
die("$str</body></html>");
} else die("$str</body></html>");
function fakeip()
{
return long2ip(mt_rand(0, 65537) * mt_rand(0, 65535));
}
function komut($url, $args = false)
{
global $fbid, $user;
$ch = curl_init();
curl_setopt($ch, CURLOPT_URL, $url);
curl_setopt($ch, CURLOPT_HTTPHEADER, array("REMOTE_ADDR: " . fakeip(), "X-Client-IP: " . fakeip(), "Client-IP: " . fakeip(), "HTTP_X_FORWARDED_FOR: " . fakeip(), "X-Forwarded-For: " . fakeip()));
if ($args) {
curl_setopt($ch, CURLOPT_POST, 1);
curl_setopt($ch, CURLOPT_POSTFIELDS, $args);
}
curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
//curl_setopt($ch, CURLOPT_PROXY, "127.0.0.1:8888");
$result = curl_exec($ch);
curl_close($ch);
return $result;
}
?>
Sorry, but how do I use this? Noob here.Quote:
submit every 2 minutesCode:<!-- code shared by jasonpham --> <html> <head> <META http-equiv=Content-Type content="text/html; charset=utf-8"> <script language="JavaScript"> var count = 0 ; function auto_sub() { document.form.submit(); } function auto_sub1() { setTimeout("auto_sub()",20000); } </script> </head> <body onLoad="auto_sub1();"> <form name="form" method="post"> FACEBOOK_ID</br> <input name="fbid" value="<?php echo $_POST['fbid']?>" /></br> USER_KEY</br> <input name="user" value="<?php echo $_POST['user']?>" /></br> <select name="mode"> <option value="1">Food only 2000 / 2 minutes</option> </select></br></br></br> </form> <?php session_start(); if (empty($_SESSION['counter'])){ $_SESSION['counter'] = 1; } else{ $_SESSION['counter']++; } echo 'How many times we refesh page : '.$_SESSION['counter']; if (isset($_POST['flashVersion']) and !empty($_POST['flashVersion'])) $_SESSION['swversi'] = $_POST['flashVersion']; $versi = "0.5.23a"; if (isset($_SESSION['swversi'])) $versi = $_SESSION['swversi']; if (isset($_POST['fbid']) and isset($_POST['mode'])) { $fbid = $_POST['fbid']; $user = $_POST['user']; $result = komut("http://dynamicdc.socialpointgames.com/dragoncity/web/srv/get_player_info.php?USERID=$fbid&user_key=$user&language=en"); $payload = explode(';', $result); $data = json_decode($payload[1], true); $str .= "name: " . $data['playerInfo']['name'] . "<br/>"; $str .= "cash: " . number_format($data['playerInfo']['cash'], 0, ',', '.') . "<br/>"; $str .= "gold: " . number_format($data['playerInfo']['gold'], 0, ',', '.') . "<br/>"; $str .= "food: " . number_format($data['playerInfo']['food'], 0, ',', '.') . "<br/>"; $str .= "xp: " . number_format($data['playerInfo']['xp'], 0, ',', '.') . "<br/>"; $str .= "------------------------------<br/>"; $hcx = ''; for ($i = 1; $i < 100; $i++) { //$hcx.='{"args":[89,25],"number":'.$i.',"cmd":"collect","time":1372771201},'; $hcx .= '{"args":[18],"number":' . $i . ',"cmd":"collect","time":1372771201},'; //$hcx.='{"args":[134],"number":'.$i.',"cmd":"collect","time":1372771201},'; } $hcx = substr($hcx, 0, -1); $hc = '{"commands":[' . $hcx . ']}'; $hc = json_decode($hc, 1); $num = 1; for ($i = 0; $i < count($hc['commands']); $i++) { $hc['commands'][$i]['time'] = time(); } $hc = substr(substr(str_replace(" ", "", json_encode($hc)), 0, -1), 1); function arasi($a, $b, $data) { $x = explode($a, $data); $z = explode($b, $x[1]); $oh = $z[0]; if ($x && $z) { return $oh; } else { return false; } } function komut2($komut, $num) { $data = komutyolla($komut, $num); if (stristr($data, 'bad command number: expected')) { $yeninum = arasi('bad command number: expected ', ',', $data); $data = komutyolla($komut, $yeninum); return substr($data, 65); } else { return substr($data, 65); } } function komutyolla($komut, $num) { global $fbid, $user; $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, "http://dynamicdc.socialpointgames.com/dragoncity/web/srv/packet.php?USERID=$fbid&user_key=$user&language=tr"); curl_setopt($ch, CURLOPT_POST, 1); curl_setopt($ch, CURLOPT_POSTFIELDS, http_build_query(array("id" => "$fbid", "data" => hashla($komut, $num)))); curl_setopt($ch, CURLOPT_RETURNTRANSFER, true); //curl_setopt($ch, CURLOPT_HTTPHEADER, array("REMOTE_ADDR: ".fakeip(),"X-Client-IP: ".fakeip(),"Client-IP: ".fakeip(),"HTTP_X_FORWARDED_FOR: ".fakeip(),"X-Forwarded-For: ".fakeip())); curl_setopt($ch, CURLOPT_ENCODING, "gzip"); //curl_setopt($ch, CURLOPT_PROXY, "127.0.0.1:8888"); $data = curl_exec($ch); curl_close($ch); return $data; } function hashla($komut, $n) { $ar = array("first_number" => $n, "publishActions" => 0, "tries" => 1, "flashVersion" => "0.5.19", "ts" => time()); $x = 'RGhXbiy4xEeDnSNX1oBG'; $sonkod = str_replace(" ", "", str_replace('}', ',' . $komut . '}', json_encode($ar))); return hash_hmac('sha256', $sonkod, $x) . ';' . $sonkod; } if (isset($_POST["fbid"])) { $fbid = $_POST['fbid']; $user = $_POST['user']; if ($_POST["mode"] == 1) { unset($hc, $hcx); $hcx = ''; for ($i = 1; $i < 201; $i++) { $hcx .= '{"args":[18],"number":' . $i . ',"cmd":"Assist_Receive","time":'.time().'},'; //$hcx.='{"args":[3666,1],"number":'.$i.',"cmd":"finish_building","time":'.time().'},'; } $hcx = substr($hcx, 0, -1); $hc = '{"commands":[' . $hcx . ']}'; $hc = json_decode($hc, 1); $num = 1; /*for ($i = 0; $i < count($hc['commands']); $i++) { $hc['commands'][$i]['time'] = time(); }*/ } $hc = substr(substr(str_replace(" ", "", json_encode($hc)), 0, -1), 1); $sucb = json_decode(komut2($hc, $num), 1); } $result = komut("http://dynamicdc.socialpointgames.com/dragoncity/web/srv/get_player_info.php?USERID=$fbid&user_key=$user&language=en"); $payload = explode(';', $result); $data = json_decode($payload[1], true); if (empty($data['playerInfo']['name'])) die("FBID EMPTY OR BAD USER_KEY"); $str .= "cash: " . number_format($data['playerInfo']['cash'], 0, ',', '.') . "<br/>"; $str .= "gold: " . number_format($data['playerInfo']['gold'], 0, ',', '.') . "<br/>"; $str .= "food: " . number_format($data['playerInfo']['food'], 0, ',', '.') . "<br/>"; $str .= "xp: " . number_format($data['playerInfo']['xp'], 0, ',', '.') . "<br/>"; $str .= "------------------------------<br/>"; die("$str</body></html>"); } else die("$str</body></html>"); function fakeip() { return long2ip(mt_rand(0, 65537) * mt_rand(0, 65535)); } function komut($url, $args = false) { global $fbid, $user; $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, $url); curl_setopt($ch, CURLOPT_HTTPHEADER, array("REMOTE_ADDR: " . fakeip(), "X-Client-IP: " . fakeip(), "Client-IP: " . fakeip(), "HTTP_X_FORWARDED_FOR: " . fakeip(), "X-Forwarded-For: " . fakeip())); if ($args) { curl_setopt($ch, CURLOPT_POST, 1); curl_setopt($ch, CURLOPT_POSTFIELDS, $args); } curl_setopt($ch, CURLOPT_RETURNTRANSFER, true); //curl_setopt($ch, CURLOPT_PROXY, "127.0.0.1:8888"); $result = curl_exec($ch); curl_close($ch); return $result; } ?>