Blogger Templates

பல இணைய தளங்களிலிருந்து சேகரித்தவைகளை பலருக்கும் பயனாக அமையும் என்ற நோக்கம் கருதி இந்த - Blogல் பதிந்துள்ளேன்

- பொன்.சுதாகர்

Showing posts with label Ethical Hack. Show all posts
Showing posts with label Ethical Hack. Show all posts

Monday, November 22, 2010

Hack PC while Chatting

I am not sure that this will work 100 %.
But yes will work almost 70 percent of the times.
But before that you need to know some few things of yahoo chat protocol
leave a comment here after u see the post lemme know if it does works or not or u having a problem post here.
Following are the features : -

1) When we chat on yahoo every thing goes through the server.Only when we chat thats messages.
2) When we send files yahoo has 2 options
         a) Either it uploads the file and then the other client has to down load it.
         b) Either it connects to the client directly and gets the files
3) When we use video or audio:-
         a) It either goes thru the server
                           Or
         b) It has client to client connection
And when we have client to client connection the opponents IP is revealed.On the 5051 port.So how do we exploit the Chat user when he gets a direct connection. And how do we go about it.Remember i am here to hack a system with out using a TOOL only by simple net commands and yahoo chat techniques.Thats what makes a difference between a real hacker and new bies.

So lets analyse

1) Its impossible to get a Attackers IP address when you only chat.
2) There are 50 % chances of getting a IP address when you send files
3) Again 50 % chances of getting IP when you use video or audio.

So why to wait lets exploit those 50 % chances .
I'll explain only for files here which lies same for Video or audio
1) Go to dos
type ->
netstat -n 3
You will get the following output.Just do not care and be cool
Active Connections
Proto Local Address Foreign Address State
TCP 194.30.209.15:1631 194.30.209.20:5900 ESTABLISHED
TCP 194.30.209.15:2736 216.136.224.214:5050 ESTABLISHED
TCP 194.30.209.15:2750 64.4.13.85:1863 ESTABLISHED
TCP 194.30.209.15:2864 64.4.12.200:1863 ESTABLISHED
Active Connections
Proto Local Address Foreign Address State
TCP 194.30.209.15:1631 194.30.209.20:5900 ESTABLISHED
TCP 194.30.209.15:2736 216.136.224.214:5050 ESTABLISHED
TCP 194.30.209.15:2750 64.4.13.85:1863 ESTABLISHED
TCP 194.30.209.15:2864 64.4.12.200:1863 ESTABLISHED

Just i will explain what the out put is in general.In left hand side is your IP address.And in right hand side is the IP address of the foreign machine.And the port to which is connected.Ok now so what next ->
2) Try sending a file to the Target .
if the files comes from server.Thats the file is uploaded leave itYou will not get the ip.But if a direct connection is established
HMMMM then the first attacker first phase is over
This is the output in your netstat.The 5101 number port is where the Attacker is connected.
Active Connections
Proto Local Address Foreign Address State

TCP 194.30.209.15:1631 194.30.209.20:5900 ESTABLISHED

TCP 194.30.209.15:2736 216.136.224.214:5050 ESTABLISHED

TCP 194.30.209.15:2750 64.4.13.85:1863 ESTABLISHED

TCP 194.30.209.15:2864 64.4.12.200:1863 ESTABLISHED

TCP 194.30.209.15:5101 194.30.209.14:3290 ESTABLISHED
3) so what next???

Hmmm........ Ok so make a DOS attack now

Go to dos prompt and

Just do

nbtstat -A Attackers IPaddress.Can happen that if system is not protected then you can see the whole network.

C:\>nbtstat -A 194.30.209.14
Local Area Connection:

Node IpAddress: [194.30.209.15] Scope Id: []

NetBIOS Remote Machine Name Table

Name Type Status
---------------------------------------------

EDP12 <00> UNIQUE Registered

XYZ <00> GROUP Registered

XYZ <20> UNIQUE Registered

XYZCOMP1 <1e> GROUP Registered

MAC Address = 00-C0-W0-D5-EF-9A

What to do next??

It is now ur job to tell me what u have done next...

So the conclusion is never exchange files , video or audio till you know that the user with whom you are chatting is not going to harm you.
Share:

Thursday, November 11, 2010

Again Airtel GPRS Hack! Browse Internet For Free

I really don't know whether this trick is working or not, but I found in some forums that members are posting that this trick is still working fine! IF you want to browse internet for free of cost using Airtel Live. All you need to have a free mobile browser Opera 4.2 or 5 Beta 2 and some GPRS setting in Airtel Live

IF your Airtel Live is not active, call the customer care and receive Airtel Live setting and configure according to their guidance.

Now download the following Opera mobile browser and install it in to your mobile.

Now you have have activated your Airtel Live and opera mini browner.

Now change the follow the instruction to configure your Airtel Live setting to surf freely

For s60 users:                                                                                
Access Point as airtelgprs.com
Proxy address= 80.239.242.253
Port= 80 (Remember its 80 not 8080)

Just try it on your mobile and share your feeback with us.
Share:

Tuesday, August 10, 2010

5 Ways To Hack Orkut Profiles

                 Knowledge about on how Hackers Hack orkut profiles will help you to protect yours Orkut Profile from Being Hacked by Hackers,Below are 5 methods through which you can hack or protect yours orkut profile or any other social networking profile from being Hacked by Hackers :P
  • Phishing Attack is the most popular way of stealing other’s password. Popular by the name of fake login (among those who knows it!!) the users land on a page where they are asked for their login information and they enter their username and password thinking it to be a real page but actually it is other way round. It submits all the details entered to the programmer or the coder.
  • Community Links: Many times you are provided with a link to a community in a scrap. Read the link carefully, It may be something like http://www.okrut.com/Community.aspx?cmm=22910233 OKRUT not ORKUT. Clicking on this link will take you to a fake login page and there you loose up your password.Orkut Tools
  • Orkut New Features: I have come across a page that looks like they are giving the user a choice of selecting new features for orkut with your ID and password, of course!! When user submit the page, there goes his ID and password mailed to the coder.
  • Java script: You must have seen the circulating scraps that asks you to paste this code in your address bar and see what happens! Well sometimes they also leak out your information. Check the code and if you are unsure of what to do, then I recommend not to use it.
  • Primary mail address: If by some means a hacker came to know password of your Yahoo mail or Gmail, which users normally keeps as their primary mail address in their Orkut account, then hacker can hack Orkut account by simply using USER ID and clicking on ‘forget password’.This way Google will send link to the already hacked primary email id to change the password of the Orkut account. Hence the email hacker will change your Orkut account’s password. Hence your Orkut account hacked too.
Share:

Sunday, June 13, 2010

How to Hack a Window XP Admins Password (2.0)

        The most popular post I have ever made on this site is still to this day the article about how to hack a windows admin password. There have been many Windows updates after this post was released and I believe they fixed what was causing the vulnerability. A very nice person has just commented with a detailed explanation on how to hack the admin password on the new version of Windows. Here is it:

1.you should have ur own cmputer at home.or at least a computer from someone who can use a cd writer.

2.use nero 7 downloadable from net
3.create bootable disk.
4.bring the disk to your victims computer.
5.boot from it.(it mounts NTFS)
6.type “c:” enter
7.type “dir” enter
8.if you see WINDOWS ok fine.but if not you have to try other drive letters and do the same process (u cn try d: or e: until yo’ll find WINDOWS).
9.if succeed type “copy c:\windows\system32\config\SAM c:\folder” (this copy SAM & create folder in c:)
10.repeat but change “SAM” to “SYSTEM”.
11.remember use “c:” only if you seen WINDOWS in “c:” but if not use the drive letter that has.
12.get Offline Registry Editor from Pnordhal donloadable from net.
13.follow instructions.use it.it will blank your administrator password.
14.log on using administrator blank password.
15.non-domain users press ctrl+alt+del (press del twice, del only).type in.
16.have a copy of SAMInside.follow instructions using SAM file.(from internet)
17.export users to PWDump file.
17.have a copy of LOpthcrack 5
18.follow instructions.crack passwd using importing PWDump.browse file.follow instructions.that’s it.
19.You have ur administrator password.hack ur own PC.and bring back the original administrator password from users options.
20.blanking ur administrator pass disables ur access to “ENCRYPTED” files only, if u made one , but not all files.
21.if u dont want to blank ur password then do this at home.crack ur password at home.
22.some of these steps came from authors of mentioned products, except create boot disk part & changing back admin password.i discovered it myself.
23.thanks to the authors.
24.why use 4 application? you’ll know.
25.thanks to the crackers they are making hackers out of you.enjoy.
26.this is only for local computers.
Share:

Tuesday, January 12, 2010

டாப் 10 பாஸ்வேர்டு கிராக்கர்..

நண்பர்களே, இதில் 10 பாஸ்வேர்டு கிராக்கர்களை கொடுத்துள்ளேன், உபயோகித்துப் பார்க்கவும்.

1. Cain And Abel:-
இது ஒரு சிறந்த Windows Based பாஸ்வேர்டு கிராக்கர். இது பாஸ்வேர்டுகளை sniffing, dictionery, Brute force attack மற்றும், Crypt analysis attack போன்ற முறைகளைக் கொண்டு கண்டு பிடிக்கிறது. மேலும் பாஸ்வேர்டு டிகோடிங்க்கும் பயன்படுத்த முடியும்.
இந்த மென்பொருளை இங்கிருந்து பெறலாம்.

2. John the ripper:-
இது ஒரு fastest பாஸ்வேர்டு கிராக்கர். இது யுனிக்ஸ் based ஆப்பரேட்டிங் சிஸ்டங்களில் இயங்கும் படி வடிவமைக்கப் பட்டுள்ளது. மேலும் பாஸ்வேர்டு Decryption-க்கும் பயன்படுத்தப் படுகிறது (சென்ற பதிவில் உபயோகித்தோம்). இதனை இயக்க வேர்டு லிஸ்ட்கள் தேவை. அவற்றை கீழே உள்ள தளங்களில் இருந்து பெறலாம்.
ftp://ftp.ox.ac.uk/pub/wordlists
http://www.outpost9.com/files/WordLists.html
ftp://ftp.mirrorgeek.com/openwall/wordlists
இந்த மென்பொருளை இங்கிருந்து பெறலாம்.

3. THC Hydra:-
இது fastest நெட்வொர்க் பாஸ்வேர்டு கிராக்கர். இது Brute Force Attack மூலமாக பாஸ்வேர்டுகளை கண்டுபிடிக்கிறது.இது http, ftp, telnet, smb உட்பட 30 protocol களில் செயல்படும். இதனை பெற இங்கே சொடுக்கவும்.
http://freeworld.thc.org/thc-hydra/hydra_pass.jpg


4. Air Crack:-
இது 802.11 a, 802.11b, 802.11g வயர்லஸ் நெட்வொர்க்களின் பாஸ்வேர்டுகளை கிராக் செய்கிறது. இது ஒருமுறை packet information-ஐ பெற்ற பின்னர், 512-பிட் WPA கீகள், 40-களை கண்டுபிடிக்கிறது. இதனுடன் AirDump (Packet Capture Program), Air crack (WEP and WPA-PSK cracking) and AirDecap (Decryption toll for WEP,WPA ). இதனை இங்கிருந்து பெறலாம்.
http://wirelessdefence.org/Contents/Images/aircrack_win1.PNG

5. l0pht crack:-
இது ஒரு விண்டோஸ் பாஸ்வேர்டு ரெகவரி மென்பொருள். இதன் மூலம், primary domain, controller, Active directory ஆகிய பாஸ்வேர்டுகளை கிராக் செய்ய முடியும். இதனை இங்கு பெறலாம். மேலும் இதற்கு பதிலாக OphCrack-ம் பயனடுத்தலாம்.
6. Airsnort:-
இதுவும் ஒரு வயர்லெஸ் WEP, WPA கீ கிராக்கிங் டூல். இதனை இங்கு பெறலாம். இது போல் இன்னொரு டூல் இங்கே.
7. Solar Winds:-
SNMP பாஸ்வேர்டு கிராக்கர், பாஸ்வேர்டு டீகிரிப்டர் போன்றபல மென்பொருட்களை solarwinds தளம் கொண்டுள்ளது.


8. PwDump:-
இது ஒரு விண்டோஸ் பாஸ்வேர்டு கிராக்கர். இதனை இங்கு பெறலாம்.

9. Rainbow Crack:-
இது ஒரு மிக வேகமான Brute force attack tool. இதனை இங்கு பெறலாம்.

10. Brutus:-
இதுவும் ஒரு Remote Password cracking Tool ஆகும். இது HTTP, POP3, FTP, SMB, TELNET, IMAP, NTP ஆகிய Protocol-களை மட்டும் support பண்ணுகிறது. இதனை இங்கு பெறலாம்.
Share:

என்னை பற்றி...

My photo
Am Working as Assistant Professor in the Department of Information Technology at Sri Sairam Institute of Technology, Chennai.

முக்கிய செய்திகள்...

நாள்காட்டி

வானிலை



IP and Flag Counter

Wikipedia

Search results

QR Code Generator

All Conversion Widget

Recent Posts

Copyright © பொன். சுதாகர் | Powered by Blogger
Design by SimpleWpThemes | Blogger Theme by NewBloggerThemes.com & Distributed By Bloggertemplates4u