Pages

Saturday, 14 September 2013

Simple Steps To Hack A Website - IIS Exploit

(Only For N00bs not for advance users)
++++++++++++++++++++++++++
Method :- IIS Exploit.

Things Needed :-
1. IIS Vulnerable Sites.
2. Windows Operating System. (Windows XP, Windows 7, Windows)
++++++++++++++++++++++++++
First of all you have to find a vulnerable IIS website. (Some will be provided for practice)
and just you have to follow my steps to perform this attack.

_______________________________________________
Sites For Practice :-
1 .www.advanceautomation.co.in
2. www.hljyhdc.com
3. www.268au.com
4. www.jsdtsx.com
5. www.lsmdly.com
6. www.itixiang.com
7. www.lvshi163.com
8. www.songspk.pk
9. www.infanziasantonio.com
10.www.msc-waldkappel-breitau.de
________________________________________________
******************************************
This technique is for Educational Purpose only and I am not responsible any harm done by you.
******************************************
________________________________________________
1. For Windows XP Users :-

STEP 1: Click on Start button and open “RUN”.

STEP 2: Now Type this in RUN
%WINDIR%EXPLORER.EXE ,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}::{BDEADF00-C265-11d0-BCED-00A0C90AB50F}
Now A Folder named “Web Folders” will open.

STEP 3: Now “Right-Click” in the folder and Goto “New” and then “Web Folder“.

STEP 4: Now type the name of the Vulnerable site in this. e.g.” http://autoqingdao.com/” and click “Next“.

STEP 5: Now Click on “Finish“

STEP 6: Now the folder will appear. You can open it and put any deface page or anything.

STEP 7: I put text file in that folder. Named “securityalert.txt” (you can put a shell or HTML file also). If the file appear in the folder then the Hack is successful but if it don’t then the site is not Vulnerable.

Now to view the uploaded site i will go to “http://autoqingdao.com/securityalert.txt”
In your case it will be ” www.[sitename].com/[file name that you uploaded] “

_______________________________________________
For Windows 7 Users :-
1. Open My Computer.
2. Right Click in the white space and select "Add a network location"
3. A Window will pop up
3. Click Next
4. Double Click "Choose A custom Network"
5. Add the vulnerable IIS website !
in my case i am using
http://admats.concerts.com/
6. Click Next! Then wait a little second !
7. Then a Web Folder will open
8. Upload your Deface page or Shell

Finish!
Only For N00bs not for advance users)
++++++++++++++++++++++++++
Method :- IIS Exploit.
Things Needed :- 1. IIS Vulnerable Sites.
2. Windows Operating System. (Windows XP, Windows 7, Windows
++++++++++++++++++++++++++
First of all you have to find a vulnerable IIS website. (Some will be provided for practice)
and just you have to follow my steps to perform this attack.

_______________________________________________
Sites For Practice :-
1 .www.advanceautomation.co.in
2. www.hljyhdc.com
3. www.268au.com
4. www.jsdtsx.com
5. www.lsmdly.com
6. www.itixiang.com
7. www.lvshi163.com
8. www.songspk.pk
9. www.infanziasantonio.com
10.www.msc-waldkappel-breitau.de
________________________________________________
******************************************
This technique is for Educational Purpose only and I am not responsible any harm done by you.
******************************************
________________________________________________
1. For Windows XP Users :-

STEP 1: Click on Start button and open “RUN”.

STEP 2: Now Type this in RUN
%WINDIR%EXPLORER.EXE ,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}::{BDEADF00-C265-11d0-BCED-00A0C90AB50F}
Now A Folder named “Web Folders” will open.

STEP 3: Now “Right-Click” in the folder and Goto “New” and then “Web Folder“.

STEP 4: Now type the name of the Vulnerable site in this. e.g.” http://autoqingdao.com/” and click “Next“.

STEP 5: Now Click on “Finish“

STEP 6: Now the folder will appear. You can open it and put any deface page or anything.

STEP 7: I put text file in that folder. Named “securityalert.txt” (you can put a shell or HTML file also). If the file appear in the folder then the Hack is successful but if it don’t then the site is not Vulnerable.

Now to view the uploaded site i will go to “http://autoqingdao.com/securityalert.txt
In your case it will be ” www.[sitename].com/[file name that you uploaded] “

_______________________________________________
For Windows 7 Users :-
1. Open My Computer.
2. Right Click in the white space and select "Add a network location"
3. A Window will pop up
3. Click Next
4. Double Click "Choose A custom Network"
5. Add the vulnerable IIS website !
in my case i am using
http://admats.concerts.com/
6. Click Next! Then wait a little second !
7. Then a Web Folder will open
8. Upload your Deface page or Shell

Finish!
- See more at: http://www.darkhtu.net/2013/06/easy-method-to-hack-website.html#sthash.q9ik8Zdr.dpuf

How to Surf The Web Anonymously with proxies in Internet Explorer?

Are you looking to surf the Internet without anyone knowing your location or details? Do you want to regain access to a banned website or forum? Well you’ve come to the right place as in this article I will  answer the frequently asked question, How To Surf The Web Anonymously ? , How to access restricted  websites?. There are many ways to surf the web Anonymously.But the best way to surf the web Anonymously with out spending any money  is by using Proxies.

First we need  to find a proxy sever .There are thousand's of free proxy severs on the net  You can find them by googling .For this tutorial i will be using proxies from www.aliveproxy.com
 
Using proxy with Internet Explorer
1. First open Internet explorer  .Go to Tools menu, and click on Internet Options
 

2. Now select connections tab and then select   Lan settings



3. Now check  "Use proxy" and enter the address of the proxy server and the
    port .(use the proxy that we got from www.aliveproxy.com  )




4.  Now Hit ok that's it now we can surf with proxies.

To check weather your  behind  a proxy go to www.whatismyip.com you can see a
different ip address after setting up your proxy......





For Mozilla Firefox click the below link :-
How to Surf The Web Anonymously with proxies in Mozilla Firefox?

What is a proxy?

A proxy is an address ( IP address ) of a  Server (proxy server)  that is placed between your computer and the Internet
                                    
                            Without Proxy



                                 With Proxy




The advantage of a proxy is that your real IP address is Hidden so when you hack  your giving the IP address of   the proxy sever and not your real IP address Same  way if your a normal Internet user the hacker won't get your real IP but the IP of the proxy server.You can use it to enter site or forum that you are IP is banned
Follow the link given below to Surf the web Anonymously

http://computertipstricksandhack.blogspot.in/2013/09/how-to-surf-web-anonymously-with.html

How to Surf The Web Anonymously with proxies in Mozilla Firefox?

Are you looking to surf the Internet without anyone knowing your location or details? Do you want to regain access to a banned website or forum? Well you’ve come to the right place as in this article I will  answer the frequently asked question, How To Surf The Web Anonymously ? , How to access restricted  websites?. There are many ways to surf the web Anonymously.But the best way to surf the web Anonymously with out spending any money  is by using Proxies.

First we need  to find a proxy sever .There are thousand's of free proxy severs on the net  You can find them by googling .For this tutorial i will be using proxies from www.aliveproxy.com


1. Open FireFox  Go to Tools menu, and click on Options
 

2. Now select "connections settings" and then  click on the “Manual Proxy
   Configuration” button and enter the proxy address and port you have from the site
   mentioned above, in the HTTP Proxy address and Port boxes. Click the OK button
   twice, and you're done.
 
To check weather your  behind  a proxy go to www.whatismyip.com you can see a
different ip address after setting up your proxy......

Saturday, 7 September 2013

Use ProRAT to Hack a Computer Online

ProRat is a Microsoft Windows based backdoor trojan horse, more commonly known as a RAT (Remote Administration Tool).

Step 1: Download free software called PRO RAT.
Launch pro rat. Pro rat has a lot options as keylogger, screen shot, file manager, pc shutdown.
Step 2: You should create ProRat Server and send it to the target pc. To create server click on the bottom Create.

Step 3: Enter your IP address, if you don't know your IP address click on red arrow. Also add your email address that will be used to send email notification.

Step 4: Next go to general settings, 5110 is the port that you will connect to the target PC, you can change server password. You can give a fake error message, when the target launches your remote file, error message will be shown. You can type the error message whatever you want. You can use the option to bind with the file. You can bind server with any file. Under server extension I recommend to use EXE (has icon support ) or SCR (has icon support). Under server icon select any icon that you want that your server look out.

Step 5: Click on Create Server. Now you need to send server file to the target pc. There are many ways how you can do it. You can create server file that looks as image and email it to your friends . The most effective way by my opinion is to bind server file to the movie file and upload it to the torrent or rapidshare.

Step 6: After the target clicks on your server file, you'll be able to connect to the target PC. In main window of pro rat you'll see IP field. Type target PC IP Address. In the port field type 5110 and click Connect.

You’ll see the File Manager of hacked pc. You can download any file from the hacked PC

HACK WIFI HOTSPOT WITH BACKTRACK

Step 1:
Boot into your Backtrack Linux. Start Wireless Assistant in Backtrack & confirm you have some wireless network around. Then you can click “Connect” to that network. It won’t let you connect because you are not the paid user. It will open up browser and will ask you to pay for usage.Close it.

Step 2:
  Connecting up With Wi Fi Network (rausb0)

There are multiple ways you can do this & very simple would be to use Ping Scan from backtrack. I am demonstrating here by using AiroDump which will be an add on method for you to learn.

Open up your Shell or Konsole form Backtrack & now we have to put network in Monitor mode.

Type in ifconfig -a (Hit Enter)

You ll see list of network interfaces. I see “rausb0” in my list which I want to connect so type in following and hit enter again.

ifconfig rausb0 up

Now your network is up & we have to put network in monitor mode so type in following.

iwconfig rausb0 mode monitor (Hit Enter)

iwconfig (Enter again)

So now we are up in monitor mode. We have to start Airodump Next.

Step 3:
Start Airodump

In the same shell type in

airo (Enter)

Then, type next

airodump –ng rausb0 ( Enter again)

Now we will see the SSID of the whole network. We have to find the user’s MAC address that is already on a network.

Step 4:
Capturing MAC Address For Spoofing (of Connected User)

You ll see a list of SSID’s around there. But at the end of all lines you have to find out the name of Wi Fi access point.

E.g – You’ll Find attwifi if you are on the AT&T wifi network. As shown in following image.

MAC Address Session Stealing

You have to copy the MAC address corresponding to that wifi network. And use it in following command.

airodump –ng –bssid xx:xx:xx:xx:xx:xx rausb0 (Replace copied MAC Address at XX & Hit Enter)

It will now open up the rausb0 interface & will take some time to find out network traffic. Then you’ll see some stations with its packet data flow information. For security pick up the station that have more data packets flowing. (Like more than 30-40)

Copy the MAC ADDRESS of this station.

Now you have finalized the address to replace as our MAC address, you have to put back the network to Manage mode from monitor Mode.

If you have USB dongle plugged in simply unplug it, change MAC adrdress and plug it back again. If you are not USB dongle type in following and it enter again.

Ifconfig rausb0 down

Step 5:
Changing MAC Address

In your shell type in mac and hit enter to change MAC Address.

macchange –m xx:xx:xx:xx:xx:xx rausb0 (replace xx with copied MAC address & Enter)

Now you’ll see current MAC address & Fake MAC address .

Step 6:
Now you have to plug back in your USB you took out few minutes ago. Or if you have used command to put your interface down use following command to put it back up.

Ifconfig rausb0 up

Now your MAC address successfully changed you can check by typing ifconfig in console.

Step 7:
Connecting to Hacked Wi Fi Network

Now you are done at Bypassing Wi Fi HotSpot’s Access Control Using Session Stealing & you can connect to hotspot as follows.

1. Open Wireless Assistant.
2. Select Network
3. Hit Connect

And you’re done!!!

Disclaimer: This is For Educational Purpose Only !

FREE NETWORK HACKING TOOLS DOWNLOAD LINK

Tools Descriptions:

1. Nmap

I think everyone has heard of this one, recently evolved into the 4.x series.

Nmap (Network Mapper) is a free open source utility for network exploration
or security auditing. It was designed to rapidly scan large networks, although
it works fine against single hosts. Nmap uses raw IP packets in novel ways to
determine what hosts are available on the network, what services (application
name and version) those hosts are offering, what operating systems (and OS
versions) they are running, what type of packet filters/firewalls are in use,
and dozens of other characteristics. Nmap runs on most types of computers and
both console and graphical versions are available. Nmap is free and open source.

Can be used by beginners (-sT) or by pros alike (packet_trace). A very
versatile tool, once you fully understand the results.

Get Nmap Here - http://www.insecure.org/nmap/download.html

2. Nessus Remote Security Scanner

Recently went closed source, but is still essentially free. Works with a client-
server framework.

Nessus is the worlds most popular vulnerability scanner used in over 75,000
organizations world-wide. Many of the worlds largest organizations are
realizing significant cost savings by using Nessus to audit business-critical
enterprise devices and applications.

Get Nessus Here - http://www.nessus.org/download/

3. John the Ripper

Yes, JTR 1.7 was recently released!

John the Ripper is a fast password cracker, currently available for many
flavors of Unix (11 are officially supported, not counting different
architectures), DOS, Win32, BeOS, and OpenVMS. Its primary purpose is to detect
weak Unix passwords. Besides several crypt(3) password hash types most commonly
found on various Unix flavors, supported out of the box are Kerberos AFS and
Windows NT/2000/XP/2003 LM hashes, plus several more with contributed patches.

You can get JTR Here - http://www.openwall.com/john/

4. Nikto

Nikto is an Open Source (GPL) web server scanner which performs comprehensive
tests against web servers for multiple items, including over 3200 potentially
dangerous files/CGIs, versions on over 625 servers, and version specific
problems on over 230 servers. Scan items and plugins are frequently updated and
can be automatically updated (if desired).

Nikto is a good CGI scanner, there are some other tools that go well with Nikto
(focus on http fingerprinting or Google hacking/info gathering etc, another
article for just those).

Get Nikto Here - http://www.cirt.net/code/nikto.shtml

5. SuperScan

Powerful TCP port scanner, pinger, resolver. SuperScan 4 is an update of the
highly popular Windows port scanning tool, SuperScan.

If you need an alternative for nmap on Windows with a decent interface, I
suggest you check this out, it’s pretty nice.

Get SuperScan Here - http://www.foundstone.com/index.htm
subnav=resources/navigation.htm&subcontent=/resources/proddesc/superscan4.htm

6. p0f

P0f v2 is a versatile passive OS fingerprinting tool. P0f can identify the
operating system on:

- machines that connect to your box (SYN mode),
- machines you connect to (SYN+ACK mode),
- machine you cannot connect to (RST+ mode),
- machines whose communications you can observe.

Basically it can fingerprint anything, just by listening, it doesn’t make ANY
active connections to the target machine.

Get p0f Here - http://lcamtuf.coredump.cx/p0f/p0f.shtml

7. Wireshark (Formely Ethereal)

Wireshark is a GTK+-based network protocol analyzer, or sniffer, that lets you
capture and interactively browse the contents of network frames. The goal of
the project is to create a commercial-quality analyzer for Unix and to give
Wireshark features that are missing from closed-source sniffers.

Works great on both Linux and Windows (with a GUI), easy to use and can
reconstruct TCP/IP Streams! Will do a tutorial on Wireshark later.

Get Wireshark Here - http://www.wireshark.org/

8. Yersinia

Yersinia is a network tool designed to take advantage of some weakeness in
different Layer 2 protocols. It pretends to be a solid framework for analyzing
and testing the deployed networks and systems. Currently, the following network
protocols are implemented: Spanning Tree Protocol (STP), Cisco Discovery
Protocol (CDP), Dynamic Trunking Protocol (DTP), Dynamic Host Configuration
Protocol (DHCP), Hot Standby Router Protocol (HSRP), IEEE 802.1q, Inter-Switch
Link Protocol (ISL), VLAN Trunking Protocol (VTP).

The best Layer 2 kit there is.

Get Yersinia Here - http://yersinia.sourceforge.net/

9. Eraser

Eraser is an advanced security tool (for Windows), which allows you to
completely remove sensitive data from your hard drive by overwriting it several
times with carefully selected patterns. Works with Windows 95, 98, ME, NT,
2000, XP and DOS. Eraser is Free software and its source code is released under
GNU General Public License.

An excellent tool for keeping your data really safe, if you’ve deleted it..make
sure it’s really gone, you don’t want it hanging around to bite you in the ass.

Get Eraser Here - http://www.heidi.ie/eraser/download.php

10. PuTTY

PuTTY is a free implementation of Telnet and SSH for Win32 and Unix platforms,
along with an xterm terminal emulator. A must have for any h4. 0r wanting to
telnet or SSH from Windows without having to use the crappy default MS command
line clients.

Get PuTTY Here. - http://www.chiark.greenend.org.uk/~sgtatham/putty/

11. LCP

Main purpose of LCP program is user account passwords auditing and recovery in
Windows NT/2000/XP/2003. Accounts information import, Passwords recovery, Brute
force session distribution, Hashes computing.

A good free alternative to L0phtcrack.

LCP was briefly mentioned in our well read Rainbow Tables and RainbowCrack
article.

Get LCP Here - http://www.lcpsoft.com/english/download.htm

12. Cain and Abel

My personal favourite for password cracking of any kind.

Cain & Abel is a password recovery tool for Microsoft Operating Systems. It
allows easy recovery of various kind of passwords by sniffing the network,
cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis
attacks, recording VoIP conversations, decoding scrambled passwords, revealing
password boxes, uncovering cached passwords and analyzing routing protocols.
The program does not exploit any software vulnerabilities or bugs that could
not be fixed with little effort.

Get Cain and Abel Here - http://www.oxid.it/cain.html

13. Kismet

Kismet is an 802.11 layer2 wireless network detector, sniffer, and intrusion
detection system. Kismet will work with any wireless card which supports raw
monitoring (rfmon) mode, and can sniff 802.11b, 802.11a, and 802.11g traffic.

A good wireless tool as long as your card supports rfmon (look for an orinocco
gold).

Get Kismet Here - http://www.kismetwireless.net/download.shtml

14. NetStumbler

Yes a decent wireless tool for Windows! Sadly not as powerful as it’s Linux
counterparts, but it’s easy to use and has a nice interface, good for the
basics of war-driving.

NetStumbler is a tool for Windows that allows you to detect Wireless Local Area
Networks (WLANs) using 802.11b, 802.11a and 802.11g. It has many uses:

Verify that your network is set up the way you intended.
Find locations with poor coverage in your WLAN.
Detect other networks that may be causing interference on your network.
Detect unauthorized rogue access points in your workplace.
Help aim directional antennas for long-haul WLAN links.
Use it recreationally for WarDriving.

Get NetStumbler Here - http://www.stumbler.net/

15. Hping

To finish off, something a little more advanced if you want to test your TCP/IP
packet monkey skills.

hping is a command-line oriented TCP/IP packet assembler/analyzer. The
interface is inspired to the ping unix command, but hping isn’t only able to
send ICMP echo requests. It supports TCP, UDP, ICMP and RAW-IP protocols, has a
traceroute mode, the ability to send files between a covered channel, and many
other features.

Get hping Here - http://www.hping.org/