Wednesday, July 25, 2012

HACKING TUTORIAL


How to Hack the Windows Admin Password Using     

OphCrack in Backtrack tutorial


if you are college/school students, you may curious to hack the admin password in your college or school system. This post is going to help you to crack the any type of windows accounts passwords. Learn how to hack the windows admin password like a geek.

This is My Second Backtrack Linux Tutorial.
[see the screen shots of this tutorial ]

Refer this link also: How to hack the windows 7 or vista using the following method

Requirements:
  • BackTrack Linux 4 or 5. Download it from http://backtrack-linux.org
  • Two Pen drives [if you are going to test in your own system, one pen drive is enough]
  • Xp Free Fast RainBow table [tables_xp_free_fast.zip]. Download it from here:http://ophcrack.sourceforge.net/tables.php

Install the Backtrack Linux in one pen drive. Leave another pen drive as empty. 

Step 1: Booting From Back Track 
Insert the Backtrack installed  pen drive in target computer[when turned off].  We are going to boot the operating system from pen drive, so insert when the system is turned off.
Now Turn on the system. 
Press F10 [boot menu, differs for system]  before booting and select boot from Pen drive.  
Now it will boot the Backtrack. 
Select "Graphical User Interface "
Now wait for a while ( it will execute some commands}
Now you can see the "root:" 
type "startx" and hit enter.  It will bring you to the GUI view of Backtrack.

Step 2:Copy the SAM and System files
Click the  Start button(dragon symbol)
Select System Menu
Select Storage Media(if you see nothing, close the window open it again).

You can see the list of Hard disk and Your pen drive.
Open the windows installed Hard disk and Navigate to this path:
WINDOWS/system32/config/

There you can see two files named as "SAM" and "System".  

Copy the both SAM and system files.
[ Just proceed to next step without closing the window]

Step 3:Insert your Empty Pen Drive 
Now again go to System Menu->Storage Media
Open Your pen drive(Empty Pen drive) ,Create a new folder and paste the sam and system files inside that folder

[note: you may not paste into your backtrack installed pen drive. that's why i asked you to bring 2 pen drives.  If you testing in your system, then you can copy to any other hard drive.]

You can not directly copy the sam and system files from same operating system. That's why we are using Backtrack.

Step 4:Now go to your home.
Boot into windows.  Extract the "tables_xp_free_fast.zip" in any hard drive.
Copy the folder that contains sam and system files from your pen drive.
Paste in any hard drive. 
---
Restart the windows. 
Insert the Backtrack installed pen drive and boot from Pen drive.

Step 5: Mounting the Hard drive in Backtrack


Now  go to System Menu->Storage Media(if you see nothing, close the window open it again).
and open the hard drives that contains sam files and rainbow tables. Then close it.

Don't be confused. I asked you to open those hard drive for mounting purpose. In linux , it won't mount automatically until you open the drive

Step 6: Run OphCrack Tool in Backtrack
Open the ophcrack GUI(start->Backtrack->Privilege Escalation->Password Attack->offline Attacks-ophCrack GUI).

Ophcrack GUI application will run now.

Step 7: Loading the folder that contains sam and system files

Click the Load and select "Encrypted SAM" in ophcrack tool.
Now it will ask you to select directory that contains SAM folder.
  
[Select Computer in file selecting window.  click '/'  browse to /media/your_Hard_Disk]
 Select the directory(don't open the directory, just select it).

Now it will load and display the list of user accounts in the windows.

Step 8: Target the Admin Account
Here i am going to hack the one of the administrator account "secure" of my computer.
So remove all other accounts except the target admin account.[This is not necessary, but it will increase the cracking speed] by clicking delete button.

Step 9: Install the Rainbow Table
Now let us install the Rainbow table.
Click the Table button in ophcrack tool.
Now it will ask you to selec the table.  
we are going to crack windows password right?. So choose the first one. and click the install button.
[note: i have installed the rainbow table already.  So it showing green.]

Now browse to the Rain bow table directory. I mean to the "tables_xp_free_fast" folder.
[here also, don't open the foler, just choose it]

now click ok.


Step 10: Cracking Begins
Click the Crack button.
Wait for a while [ophcrack is the fastest cracking tool. so it won't take too much time]

Step 11: Password is cracked
Yes..!! we got the password.  Now go to your school/college and login with that password.
Enjoy.  Don't forget to share with your friends.  This is interesting one na..!
Actually i missed the fun.  I didn't know this hack when i study in college. if i know that time itself, 
i may have fun with my college system.  

Using Backtrack Installed CD Or single Pen drive:
You will need only one pen drive, if you are going to hack the admin password in the target system itself. Don't forget to bring the rainbow table in your backtrack pen drive in this case.


you can use cd instead of Pen drive for backtrack installation.
If you use cd, you can not bring the SAM file to your home. You have to crack it in that computer itself


Confused? Screen shots of Tutorial
Are you confused little bit?  See the Screenshot of this tutorial here:
Screen shots windows Admin Password Cracking
Still confused?


Rar Password Remover Tool | Password Cracking

  • Sometimes if you download rar files from internet, it may be password protected.
  • In your friends laptop they may have password protected rar files.
  • Sometimes you may forget password for your rar files

What will you do in these situation? Yes.there is solution for these situation. You can use the RAR p
assword Cracker tool to retrieve the password of RAR.


Step 1 Download Password Cracking Tool :

Download it from here:
http://www.mediafire.com/?ac5c0uigdhaslya
Step 2:
Extract the rar file.
You can see setup.exe file and crack folder.
Double click the setup.exe and install the RAR password remover.
Step 3-Cracked:
Now copy the urpwdr11rc16.exe file from crack folder.
Paste into the C:\Program Files\Intelore\RAR-PR(i installed the rar password remover in this path).


Now it is cracked.

In my next post , i'll explain how to use this software.

Ethical Hacking Tutorials



Hi BTS readers, so far i have gave the Web Application Pen Testing tutorials .  Now it is time to for practicing your skills in legal way. Last time , i explained about the Damn Vulnerable  Web Application(DVWA).  This time i came with different web application  that will develop your knowledge in Web App PenTesting.
Description: https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhLpdmEQKbgqmE01Anuxg3irl7NuQufPOHndNLxcNbiHbxRZ0SR7cCDlibw5g-0_ETM4wk2bYG9Is3aT-sVgRpuEnTah9F16wfaY5aS1ULI0Zpk8PE531m1BfMuGIBzVvVFdEbe5XH765w/s450/War+deploy.jpg



Description: http://3.bp.blogspot.com/-EJlES5tIqYk/TvdwRxBWKKI/AAAAAAAAAvk/b3nyBKDoGpU/s320/Pen+Testing+Lab+.jpg
I hope you learned about the Sql injection and XSS from BTS.  But you may curious to practice the SQLi and XSS attacks. we know that doing the attack on third-party website is crime.  So how can we do the practice? Here is the solution for you friends. Why shouldn't set up your own web application ? Yes, you can setup your ow


Description: https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjCBddxlErUzPVmMIuq8E_Rxxyrb8dGO0GNunh79IVTkzowi6nWH7pRvNYbXaKQYTeNNDUTUYktNvW2M7lTpLRkM4jeFI9ofViyetyNX9I14l4ejVE8yDjCQDuij-qdJQFfKIwPJXj6W6L4/s200/sql+injection.jpg
 Blind SQL injection technique is used when the web application is vulnerable but the output doesn’t display to the attacker. When hacker tries SQL injection, they will redirect to some other pages instead of error message. Blind SQL Injection is harder to implement when compared with the above Traditional SQL Injection Technique, it wil


Description: https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgfv8RhciPRyQNZJn7nWzzH4AdCP0Adp5S-CmvGp5ZTU2P9qKBHcmnzIFoOuyOIuhFVci_HCyKf1PbS5Ed0cGWeNBtXdUf0y0gFX7iR3DtUG2UQ6Ed6peWA-fA4cUtnZotS1WuwWIC9LH8/s200/sql+injection.jpg
What is Blind SQL Injection:Some Websites are vulnerable to SQL Injection but the results of injection are not visible to the attacker.  In this situation, Blind SQL Injection is used. The page with the vulnerability may not be one that displays data but will display differently depending on the results of a logical statement injec

http://www.be007.gigfa.com/scanner/scanner.php http://www.sunmagazin.com/tools/hack/SQLI-Scan http://scanner.drie88.tk http://localvn.biz/Tools/tools/Hack-Shop/SQLI-Scan http://wolfscps.com/gscanner.php
Description: Continue   Reading>>

Thursday, July 19, 2012

3 Free sites to backup your files online


3 Free sites to backup your files online

Written by Sudeep Acharya on March 20, 2012   | Filed as: Backup, 
Free Online BackupIt is very important to backup your files. You don’t know when you gonna lose it. You must have to backup your important files/data. Either you can copy your data to the external hard disk, USB or any other removal medias or use online backup service. Some time backup of your data to USB or other media may not be suitable. So at this condition you can back up your data online. With online back up you can also access your files from other computer and restore them easily. There are several paid and free backup service. You don’t have to think that always paid one is better but sometimes when you need to backup large data then of course you can go for paid one. Sometimes free also may be better. I am gonna share some free sites/service which can back up your files online.
Dropbox
I always choose dropbox at the first position. It can provide you 2GB space. You can also increase some space by referring to your friends. Increase 250Mb space per invitation. Limit upto 8GB.
Ubuntu One
If you are a Ubuntu user then you may be familier to Ubuntu One. It provides 5 GB of free backup. You can access your backup data from any supported device.
Idrive
This is also another cool service this also provide 5GB free space.
These are the free backup service which will help you to backup your files online. Also there are some others like : AdriveMozy, Zumodrive

Convert to and from PDF online using email


Convert to and from PDF online using email

Written by karthi on July 3, 2012   | Filed as: Internet, 

Convert PDF documentsHere are 5 email addresses. Just you have to do is compose new mail and attach your document(like .txt, .doc, .html) and send to the below email addresses then you will get your file converted into .pdf. You will receive an email attached with converted PDF file instantly.
You can also convert pdf file into txt and other document types and you can easily read even if you don’t have pdf reader installed in your machine.
This method is very useful and free to convert your document and html(web page) into and from pdf without installing any converter software to your computer. This method will save your time.
Some of the supported formats are jpg, tiff, tif, emf, doc, dot, docx, xls, ppt, odt, ods, ots, otp, ps, rtf, txt and many more.

5 Email address to do the job

  • converter@pdf24.org -It converts your documents(all supported formats) into pdf. For this just attach your document and send email to this address.
  • format@zamzar.com – Here the format can be doc, txt and others. For example if you want to convert pdf into doc then attach pdf file and send it to doc@zamzar.com
  • pdf@koolwire.com – It converts various format into pdf.
  • doc@koowire.com – It convert the pdf file into doc.
  • submit@web2pdfconvert.com – It converts web page into pdf. For example: Write convert as subject and write url(eg http://callthetricks.com) in message box and send email. Then you will get callthetricks.com as pdf file. We can take this as html to pdf converter
Copy Protected by Shakil Wahid.Protect Yours !