Diane Trout (alienghic) wrote,
Diane Trout
alienghic

Auto-affiliate

I saw rumors that the current LJ owners were trying the javascript affiliate re-writing code again. This is a link to a pdf where I know one of the authors. The link text is the simplest version of the amazon link that works correctly. I'm curious if the link one lands at differs from it.

http://www.amazon.com/Introduction-Testing-Applications-twill-Selenium/dp/B001O7HEPW/

Answer: Yes they are doing it, though its even subtler. When I clicked on the link in this post and for a moment I saw a redirect in the url bar. So I dumped my port 80 network traffic.

The first HTTP request. (Note the Host: outboundlink.me entry)



GET /anxo/dr_ta_1/dr_rwl_v2.php?DR_id=1111&r=false&link=http%3A//www.amazon.com/Introduction-Testing-Applications-twill-Selenium/dp/B001O7HEPW/&link_id=link_13&dr_log=-1&callback=DR_JSONP_callback&ref=http%3A//alienghic.livejournal.com/ HTTP/1.1
Host: outboundlink.me
Referer: http://alienghic.livejournal.com/
User-Agent: Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_3; en-us) AppleWebKit/531.22.7 (KHTML, like Gecko) Version/4.0.5 Safari/531.22.7
Accept: */*
Accept-Language: en-us
Accept-Encoding: gzip, deflate
Connection: keep-alive

Next there's some json request:

THTTP/1.1 200 OK
Connection: closeDate: Thu, 22 Apr 2010 23:23:02 GMT
Server: Microsoft-IIS/6.0X-Powered-By: PHP/5.2.5
Content-type: application/json

TDR_JSONP_callback({"l_ID":"link_13","dr_af":"http:\/\/www.amazon.com\/Introduction-Testing-Applications-twill-Selenium\/dp\/B001O7HEPW\/","log_id":"-1","log":true,"m":0})

Then there's the connection to amazon.

GET /gp/redirect.html?ie=UTF8&location=http%3A%2F%2Fwww.amazon.com%2FIntroduction-Testing-Applications-twill-Selenium%2Fdp%2FB001O7HEPW%2F&tag=5336432744-20&linkCode=ur2&camp=1789&creative=9325 HTTP/1.1
Host: www.amazon.com
User-Agent: Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_3; en-us) AppleWebKit/531.22.7 (KHTML, like Gecko) Version/4.0.5 Safari/531.22.7
Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
Accept-Language: en-us
Accept-Encoding: gzip, deflate
Connection: keep-alive


That GET has quite a bit more information than my initial URL. However then it finally finishes redirecting with:


HTTP/1.1 301 MovedPermanently
Date: Thu, 22 Apr 2010 23:23:02 GMT
Server: Server
x-amz-id-1: 118NYYYJRESMA4CBCA7W
p3p: policyref="http://www.amazon.com/w3c/p3p.xml",CP="AMZN "
x-amz-id-2: +BtO3oszOFtkCQ6sGA4NuJ5QIUsoqqXz
Location: http://www.amazon.com/Introduction-Testing-Applications-twill-Selenium/dp/B001O7HEPW/
Vary: Accept-Encoding,User-Agent
Content-Encoding: gzip
Content-Type: text/html; charset=ISO-8859-1
Transfer-Encoding: chunked


which contains my initial url.

(I did remove the Cookie: header from these posts.

I am curious what the parameters tag, linkCode, camp, and creative mean.

http://www.amazon.com/dp/0596514832/thepolychromatpa Link to Web Security Testing Cookbook: Systematic Techniques to Find Problems Fast using joedeckers affiliate code.
Subscribe

  • Guild Wars 2

    I started playing Guild Wars 2, and am happy their questing system has broken with WoW's current quest design. As WoW grew they "simplified" and…

  • calendar.

    Its been a really long time since I tried to write. I keep meaning to roll my own blog software, but there's so many other things I should be doing.…

  • Building debian packages for mozilla's sync server

    I'm surprised this seems to have gotten valid debian packages with a minimum of fuss for a package where I couldn't find a recommended release…

  • Post a new comment

    Error

    Anonymous comments are disabled in this journal

    default userpic

    Your reply will be screened

    Your IP address will be recorded 

  • 5 comments