Closed sfjuocekr closed 3 years ago
Thanks for opening the the issue.
Indeed, it looks like they changed at least the id. If someone does have a windows box at hand, it would be welcomed to sniff the updated URL.
hey could you verify if this is the new URL
Update:
I was able to trim the URL down to just
The new additional part is "%2F0&pl=en-US"
This is looking good, thanks for the input!
Looks like only the product version %2F0
(/0) in the user agent field is required now.
I've made the changes, but I still get the "checksum incorrect" more often than not.
Also when this happens a "null" file is created, I think this should be catched and skipped.
I think this is a new issue, it was working for the past two month and now I receive it as well.
Again, when somebody with a windows box can provide more insights, that would be great. Maybe @capt-pyro knows more?
I guess it is going to be VM time then, where do I find the URL?
It’s not easy, if I remember correctly from the first time I did it. You need to sniff the network communication of a trusted MITM attack (as it is encrypted) and trigger a image reload (which is a challenge itself) at the same time.
Another possibility would be to play around with the URL @capt-pyro posted in one of the comments above.
It looks like M$ changed something on their end :(