Jump to content
GIGN Forum

Kā Lai Novelk?


w4p1337
 Share

Recommended Posts

Tas flash vēl sūta POST requestus uz:

test/receiveUpdate.asp

sūta:

Host    www.cmagics.com
User-Agent    Mozilla/5.0 (Windows; U; Windows NT 6.1; lv; rv:1.9.2.8) Gecko/20100722 Firefox/3.6.8
Accept    text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language    lv,en-us;q=0.7,en;q=0.3
Accept-Encoding    gzip,deflate
Accept-Charset    ISO-8859-13,utf-8;q=0.7,*;q=0.7
Keep-Alive    115
Connection    keep-alive
Cookie    ASPSESSIONIDCARCTDSA=COODDDJAFEPGPNBJKCKIOOEH
Referer: http://www.virtualpiano.net/host.swf
Content-type: application/x-www-form-urlencoded
Content-length: 43

strURLthis=undefined&strIPaddthis=undefined

saņem:

Date    Mon, 16 Aug 2010 12:56:45 GMT
Server    Microsoft-IIS/6.0
X-Powered-By    ASP.NET
Content-Length    63
Content-Type    text/html
Cache-Control    private

&strURL=undefined&strIPAddress=undefined&WhereFrom=licence_1001

test/sendUpdate2.asp

sūta:

Host    www.cmagics.com
User-Agent    Mozilla/5.0 (Windows; U; Windows NT 6.1; lv; rv:1.9.2.8) Gecko/20100722 Firefox/3.6.8
Accept    text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language    lv,en-us;q=0.7,en;q=0.3
Accept-Encoding    gzip,deflate
Accept-Charset    ISO-8859-13,utf-8;q=0.7,*;q=0.7
Keep-Alive    115
Connection    keep-alive
Cookie    ASPSESSIONIDCARCTDSA=COODDDJAFEPGPNBJKCKIOOEH
Referer: http://www.virtualpiano.net/host.swf
Content-type: application/x-www-form-urlencoded
Content-length: 226

strURLthis=undefined&strIPaddthis=undefined&WhereFrom=licence%5F1001&ipadd=undefined&strURL=undefined&disp=licence%5F1001+%7C+undefined+%7C+undefined&licence%5Fnumber=undefined&visit%5Ftime=+3+%3A+56+PM+%28Mon%29+16++Aug++2010

saņem:

Connection    close
Date    Mon, 16 Aug 2010 12:56:52 GMT
Server    Microsoft-IIS/6.0
X-Powered-By    ASP.NET
Location    /error_404_415789?404;http://www.cmagics.com/test/sendUpdate2.asp

Failed to load source for: http://www.cmagics.com/test/sendUpdate2.asp

beta/piano/save_to_db.asp

sūta:

Host    www.cmagics.com
User-Agent    Mozilla/5.0 (Windows; U; Windows NT 6.1; lv; rv:1.9.2.8) Gecko/20100722 Firefox/3.6.8
Accept    text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language    lv,en-us;q=0.7,en;q=0.3
Accept-Encoding    gzip,deflate
Accept-Charset    ISO-8859-13,utf-8;q=0.7,*;q=0.7
Keep-Alive    115
Connection    keep-alive
Cookie    ASPSESSIONIDCARCTDSA=COODDDJAFEPGPNBJKCKIOOEH
Referer: http://www.virtualpiano.net/host.swf
Content-type: application/x-www-form-urlencoded
Content-length: 226

strURLthis=undefined&strIPaddthis=undefined&WhereFrom=licence%5F1001&ipadd=undefined&strURL=undefined&disp=licence%5F1001+%7C+undefined+%7C+undefined&licence%5Fnumber=undefined&visit%5Ftime=+3+%3A+56+PM+%28Mon%29+16++Aug++2010

saņem:

Connection    close
Date    Mon, 16 Aug 2010 12:56:52 GMT
Server    Microsoft-IIS/6.0
X-Powered-By    ASP.NET
Location    /error_404_415789?404;http://www.cmagics.com/beta/piano/save_to_db.asp

Failed to load source for: http://www.cmagics.com/beta/piano/save_to_db.asp

2 no 3 requestiem beidzas ar 302 un pārējie vispār 404 :D Pašu flešu nekačāju, bet tu vari cerēt, ka urļi vinā norādīti relatīvi ( bez domaina ), tad tu varētu pats sataisīt vajadzīgos failus, kuros sabāzt vajadzīgo kontentu. Pēdējā iespēja ir dekompilēt swf un samainīt urļus.

Link to comment
Share on other sites

Ok tik tālu tiku..

tur bija kkas tāds

_level0.movieToLoad = "index.swf";
_level0.musicToLoad = "grand_piano.swf";
_level0.musicToLoadSustained = "grand_piano_sustained.swf";
_level0.notesToUse = "Standard Piano";
_level0.musicLength = "normal";
_level0.licence_number = "licence_1001";

tālāk ejot vnk index.swf meta vārningu, ka ir illegal utt..

http://virtualpiano.net/index.swf?licence_number=licence_1001&musicLength=Normal&musicToLoad=grand_piano.swf&musicType=music/Standard%20Piano/Normal/

pieliku dažādus get parametrus, kas tur bija uzreiz aizgāja, bet neskan notis :S

Link to comment
Share on other sites

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
 Share

×
×
  • Create New...