Showing posts with label Facebook Hacking tricks. Show all posts
Showing posts with label Facebook Hacking tricks. Show all posts

Tuesday, September 17, 2013

HACK ANY COMPUTER WITH JUST AN IP


1.) Autopwn is no longer included by default in the msf framework, as it tends to crash target computers, which isn't usually the desired effect. You can still use autopwn is you have an older version of the framework or backtrack. It's quick and effective, but it raises lots of red flags.

2.) This tutorial is two years old, setting up metasploit is now easier and only requires you to hit "next" a dozen times. There's no need for all the sql stuff anymore.

3.) Metasploit has the potential to exploit ANY computer with ANY OS, not just Windows.

4.) There are a group of people out their who insist this entire tutorial was copied and pasted. The places I apparently copied it from copied it from me! Check those dates people, come on...

I'm going to leave the original thread here for archive purposes. Perhaps it can help someone.

--
Hello everybody! I am here to show you this magical tool called Metasploit that allows you to hack ANY unpatched computer with only it's IP. Lets begin...

1.) First you need to download Metasploit. The most up-to-date version is FREE at metasploit.com.

2.) You need PostgrSQL for your database. Download here: http://www.postgresql.org/. Make sure you use all the defaults or Metasploit woun't work!

3.) Now lets get down to buisness... After installing both tools, open up the PostgrSQL admin gui (start -> all programs -> PostgreSQL 9.0 -> pgAdmin III). Then right-click on your server (in the left hand box) and click connect. Remember to keep this window open the whole time. You will also need the pass you chose to use in step 5...

[Image: pgadmin.bmp]

4.) Time for some hacking! Go to start -> all programs -> Metasploit Framework, and then open the Metasploit gui. Let it load untill it look like this:

[Image: metasploit.bmp]

5.)Now, in the window type:

db_connect postgres:ThePassYouChose@localhost:5432

The first time you do this you will see lots of text flash buy. Don't wory, this is normal.

6.)Type db_host to make sure you are connected correctally.

7.)Now type this:

db_nmap 000.000.000.000

Make sure you put the ip of the computer you are trying to hack in the place of 000.000.000.000...

7.) Now we get to the fun part; the automatic exploitation. Just type db_autopwn -t -p -e -s -b , watch the auto-exploitation start, go play Halo for a while, and then come back...

8.) After the exploitation is done, type sessions -l to see what the scanner found. If all went well, you should see a list of exploits.

9.) Now we get to use the exploits to hack the computer! If you will notice, all of the exploits are numbered, and they all have obvious names (i. e., reverseScreen_tcp). In order to use an exploit, type this:

HACK ANY COMPUTER WITH JUST AN IP

Posted at  3:42 AM - by devil 0

HACK ANY COMPUTER WITH JUST AN IP


1.) Autopwn is no longer included by default in the msf framework, as it tends to crash target computers, which isn't usually the desired effect. You can still use autopwn is you have an older version of the framework or backtrack. It's quick and effective, but it raises lots of red flags.

2.) This tutorial is two years old, setting up metasploit is now easier and only requires you to hit "next" a dozen times. There's no need for all the sql stuff anymore.

3.) Metasploit has the potential to exploit ANY computer with ANY OS, not just Windows.

4.) There are a group of people out their who insist this entire tutorial was copied and pasted. The places I apparently copied it from copied it from me! Check those dates people, come on...

I'm going to leave the original thread here for archive purposes. Perhaps it can help someone.

--
Hello everybody! I am here to show you this magical tool called Metasploit that allows you to hack ANY unpatched computer with only it's IP. Lets begin...

1.) First you need to download Metasploit. The most up-to-date version is FREE at metasploit.com.

2.) You need PostgrSQL for your database. Download here: http://www.postgresql.org/. Make sure you use all the defaults or Metasploit woun't work!

3.) Now lets get down to buisness... After installing both tools, open up the PostgrSQL admin gui (start -> all programs -> PostgreSQL 9.0 -> pgAdmin III). Then right-click on your server (in the left hand box) and click connect. Remember to keep this window open the whole time. You will also need the pass you chose to use in step 5...

[Image: pgadmin.bmp]

4.) Time for some hacking! Go to start -> all programs -> Metasploit Framework, and then open the Metasploit gui. Let it load untill it look like this:

[Image: metasploit.bmp]

5.)Now, in the window type:

db_connect postgres:ThePassYouChose@localhost:5432

The first time you do this you will see lots of text flash buy. Don't wory, this is normal.

6.)Type db_host to make sure you are connected correctally.

7.)Now type this:

db_nmap 000.000.000.000

Make sure you put the ip of the computer you are trying to hack in the place of 000.000.000.000...

7.) Now we get to the fun part; the automatic exploitation. Just type db_autopwn -t -p -e -s -b , watch the auto-exploitation start, go play Halo for a while, and then come back...

8.) After the exploitation is done, type sessions -l to see what the scanner found. If all went well, you should see a list of exploits.

9.) Now we get to use the exploits to hack the computer! If you will notice, all of the exploits are numbered, and they all have obvious names (i. e., reverseScreen_tcp). In order to use an exploit, type this:

Hack almost everyone. every FACEBOOK and EMAIL
 (via facebook) 100% hack


TUTORIAL: Hack anyone Facebook,email or PC..

This tutorial is like a spreading tutorial way basically. But more precise and powerful.

MOSTLY I HAVE HACKED GIRLS WITH THIS METHOD (because they don't get fooled so easily by a poser and other shit. So this thing can do it)Hehe

REQUIREMENTS:-

1) A fully FUD server(SERVER BEING FUD is the most important part of the hack)
2) Patience

That's all...

Now coming to the hack...

there are basically thousands of tutorials in HF about keylogger,RAT,stealer and crypting... so read one and make your server fully fud...

Now do just as what i say:-

1) go to "http://emailattack.host22.com/emailspoof.php" and leave that tab open

2) now login to your facebook and copy the username of the person(FB username) you want to hack

like this....

http://imageshack.us/photo/my-images/543/username.png

so basically the name after the http://www.facebook.com/ is the username...

in my example "RANDOM" is the username....

if the link shows url like "https://www.facebook.com/profile.php?id=100003721756694" then you cannot use this method on them....

3) as you are the friend of the person you must know who he his/her best friend or just close friend....

so basically get his email id attached to his Facebook like

http://imageshack.us/photo/my-images/152/contactw.png

[this can be hard if you don't have this person as your friend]

anyways you can ask his/her email id if you know him....

4)Now just open that spoofer tab and paste the info as follows:-

in Spoofed Email: the id you stolen from the contact info: ex: something@anymail.com

in Targets Email: username@facebook.com, ex: random@facebook.com

in Reply Email: same as spoofed email

in message title: hi or whatever

in message body : Hi check out my new pics uploaded here: "link of your key-logger,rat or whatever"

HE/SHE WILL RECEIVE THAT MESSAGE FROM THE SPOOFED PERSON AND AS HE/SHE IS HER CLOSE FRIEND SHE WILL DEFINITELY DOWNLOAD AND RUN ITYeye

VICTIM WILL TAKE SOME TIME TO READ THE MESSAGE>DOWNLOAD THE FILE>RUN IT. THAT'S WHY I SAID PATIENCE IS A REQUIREMENT Ninja....

PRO-TIP:

1) If you are using the message from the example then i suggest you to download some of the spoofed person(victim friend)

pictures and use icon-changer to change your server icon to JPEG icon and put all that pics and your server to an .rar file and

upload it to the hosting site....

Lol,,,, no one sees the extension if you do this thing..

2) use rat's crew extension spoofer to change the extension to JPEG and change server icon to JPEG too....

Hack almost everyone. every FACEBOOK and EMAIL (via facebook) 100% hack

Posted at  3:19 AM - by devil 0

Hack almost everyone. every FACEBOOK and EMAIL
 (via facebook) 100% hack


TUTORIAL: Hack anyone Facebook,email or PC..

This tutorial is like a spreading tutorial way basically. But more precise and powerful.

MOSTLY I HAVE HACKED GIRLS WITH THIS METHOD (because they don't get fooled so easily by a poser and other shit. So this thing can do it)Hehe

REQUIREMENTS:-

1) A fully FUD server(SERVER BEING FUD is the most important part of the hack)
2) Patience

That's all...

Now coming to the hack...

there are basically thousands of tutorials in HF about keylogger,RAT,stealer and crypting... so read one and make your server fully fud...

Now do just as what i say:-

1) go to "http://emailattack.host22.com/emailspoof.php" and leave that tab open

2) now login to your facebook and copy the username of the person(FB username) you want to hack

like this....

http://imageshack.us/photo/my-images/543/username.png

so basically the name after the http://www.facebook.com/ is the username...

in my example "RANDOM" is the username....

if the link shows url like "https://www.facebook.com/profile.php?id=100003721756694" then you cannot use this method on them....

3) as you are the friend of the person you must know who he his/her best friend or just close friend....

so basically get his email id attached to his Facebook like

http://imageshack.us/photo/my-images/152/contactw.png

[this can be hard if you don't have this person as your friend]

anyways you can ask his/her email id if you know him....

4)Now just open that spoofer tab and paste the info as follows:-

in Spoofed Email: the id you stolen from the contact info: ex: something@anymail.com

in Targets Email: username@facebook.com, ex: random@facebook.com

in Reply Email: same as spoofed email

in message title: hi or whatever

in message body : Hi check out my new pics uploaded here: "link of your key-logger,rat or whatever"

HE/SHE WILL RECEIVE THAT MESSAGE FROM THE SPOOFED PERSON AND AS HE/SHE IS HER CLOSE FRIEND SHE WILL DEFINITELY DOWNLOAD AND RUN ITYeye

VICTIM WILL TAKE SOME TIME TO READ THE MESSAGE>DOWNLOAD THE FILE>RUN IT. THAT'S WHY I SAID PATIENCE IS A REQUIREMENT Ninja....

PRO-TIP:

1) If you are using the message from the example then i suggest you to download some of the spoofed person(victim friend)

pictures and use icon-changer to change your server icon to JPEG icon and put all that pics and your server to an .rar file and

upload it to the hosting site....

Lol,,,, no one sees the extension if you do this thing..

2) use rat's crew extension spoofer to change the extension to JPEG and change server icon to JPEG too....

How To Bypassing Facebook security


Ok, here's a new quick tutorial for everyone who has been having to deal with Facebook blocking your entrance into someone's account due to logging in from a different location.

Ever since I had been problems constantly having to deal with Facebook leaving me out off people's accounts I began to think that I should write over my experiences to help others.

I will go over specific techniques and ideas to eventually grant you entrance to their accounts without having to deal with that Facebook problem having logging in from different location.

1st. Before you even begin reading this, you must already have their passwords or e-mails. If not, I will tell you a few ideas of how to acquire them.

If you only want to log in without changing passwords, I would suggest that you steal their passwords through Phishing, keylogging, or RATing.

2nd. Bypassing Facebook security can be done through black hat methods, however I will not go over those methods, instead I will be touching the social engineering methods which are more effective and you can get faster results.

3rd. You will need to use your brain to think and have patience. If you don't have either a brain to think or the patience to wait, please don't continue reading this tutorial because you will not get any success.

Ok, let's move on to the actual information.

-This method is a cheap shot method, but you never know if it might work or not.

#1. If a person uses a particular computer to log in to their accounts on a regular basis, THAT computer alone should be your focus.

You should infect that computer with a keylogger and have it linked together with a FTP to send you the logs or linked to send you e-mails.


#2. Another method is to use your OWN computer to acquire the password by infecting yourself with a keylogger and let the victim use your computer. Gain their trust to the point of where they can log in to different websites.

You can say for instance "My account is not working, I think Facebook banned me. Can you test your account to see if yours is working?"

And of course, they will log in and you will gain the information. After they successfully log in, you can login to your account and say "Oh, there we go! It worked"

Now, you will attempt to log in in the future and the problem of Logging in from another location will dissapear.

#3. Let's say that they aren't stupid enough to use your computer to log in, you might think, what then? Well, here's my next suggestion to you.

Considering that you will already have the password through the methods I mentioned earlier, but you will have the problem of Logging in from another location.

Here's what you do:

Watch and study your victim, if you know he/she uses a location to use a computer, you should attempt to log in at that same location as well. It could be school, library, another friend's house, etc...

Most people will use any computer to log in to Social Networks or E-mails to check on updates. Considering that the IP you log in at that particular is the same within their network, the problem of Logging in from another location will not come up.

#4. So, you don't have the choice of either offering your computer as a trap or the chance to "stalk" your victim. You wonder, what do I do then?

Well, this is where it gets more tricky considering that Facebook finally came up with an ingenious method to avoid intruders of taking over accounts easily.

Here's what Facebook did, in case if you don't already know. Facebook implemented a feature where you must visually recognize the friends on that account. They will show you pictures of random people within that account and ask you to select the name of that person. 


If you don't recognize any of those people, you're screwed.

When will this happen? That will only happen when you attempt to change their passwords, so Facebook makes sure that you do in fact own that account. I personally wouldn't attempt to change the passwords, but if you do try, here's what I would recommend to you.

-If you know the person in person, notice who he/she is friends with to try to recognize the faces and physically ask the other persons their names.

-If you do not know the person, you can use websites like:

http://com.lullar.com/

http://www.pipl.com/email/

To search their names, e-mails, phone numbers to see whether if you can find them on other Social networks. You can search the person's name manually by going to Myspace, Facebook, etc...To see who they have added as friends.

Your next step will be to add a friend of the victim or the victim directly. Adding the victim directly would probably be the best plan because you would have access directly to all the victims' friends and their pictures.

Now, all you have to do is match the pictures that Facebook asks you when you attempt to change their passwords by going to the victims friends and match them.

If you don't want to change their passwords, you can mask the victim's IP using other methods in which I will not go over. To find out their IP, you will need a RAT to manually whois them or any other method other there to find their IP.

A quick method I will suggest to you is to send the victim an e-mail if they have a hotmail account. When they reply you can right click on the e-mail and view source. You will see an IP from sender and use that to mask.

Mask their IP and facebook will not give you the problem of Logging in from another location.

If you follow the suggestions I have given you, you will surely gain entrance to their accounts and Facebook won't be able to do crap.

Their security is strong, but good ol' Social engineering never fails. Thumbsup

Enjoy. Black Hat

How To Bypassing Facebook security

Posted at  3:11 AM - by devil 0

How To Bypassing Facebook security


Ok, here's a new quick tutorial for everyone who has been having to deal with Facebook blocking your entrance into someone's account due to logging in from a different location.

Ever since I had been problems constantly having to deal with Facebook leaving me out off people's accounts I began to think that I should write over my experiences to help others.

I will go over specific techniques and ideas to eventually grant you entrance to their accounts without having to deal with that Facebook problem having logging in from different location.

1st. Before you even begin reading this, you must already have their passwords or e-mails. If not, I will tell you a few ideas of how to acquire them.

If you only want to log in without changing passwords, I would suggest that you steal their passwords through Phishing, keylogging, or RATing.

2nd. Bypassing Facebook security can be done through black hat methods, however I will not go over those methods, instead I will be touching the social engineering methods which are more effective and you can get faster results.

3rd. You will need to use your brain to think and have patience. If you don't have either a brain to think or the patience to wait, please don't continue reading this tutorial because you will not get any success.

Ok, let's move on to the actual information.

-This method is a cheap shot method, but you never know if it might work or not.

#1. If a person uses a particular computer to log in to their accounts on a regular basis, THAT computer alone should be your focus.

You should infect that computer with a keylogger and have it linked together with a FTP to send you the logs or linked to send you e-mails.


#2. Another method is to use your OWN computer to acquire the password by infecting yourself with a keylogger and let the victim use your computer. Gain their trust to the point of where they can log in to different websites.

You can say for instance "My account is not working, I think Facebook banned me. Can you test your account to see if yours is working?"

And of course, they will log in and you will gain the information. After they successfully log in, you can login to your account and say "Oh, there we go! It worked"

Now, you will attempt to log in in the future and the problem of Logging in from another location will dissapear.

#3. Let's say that they aren't stupid enough to use your computer to log in, you might think, what then? Well, here's my next suggestion to you.

Considering that you will already have the password through the methods I mentioned earlier, but you will have the problem of Logging in from another location.

Here's what you do:

Watch and study your victim, if you know he/she uses a location to use a computer, you should attempt to log in at that same location as well. It could be school, library, another friend's house, etc...

Most people will use any computer to log in to Social Networks or E-mails to check on updates. Considering that the IP you log in at that particular is the same within their network, the problem of Logging in from another location will not come up.

#4. So, you don't have the choice of either offering your computer as a trap or the chance to "stalk" your victim. You wonder, what do I do then?

Well, this is where it gets more tricky considering that Facebook finally came up with an ingenious method to avoid intruders of taking over accounts easily.

Here's what Facebook did, in case if you don't already know. Facebook implemented a feature where you must visually recognize the friends on that account. They will show you pictures of random people within that account and ask you to select the name of that person. 


If you don't recognize any of those people, you're screwed.

When will this happen? That will only happen when you attempt to change their passwords, so Facebook makes sure that you do in fact own that account. I personally wouldn't attempt to change the passwords, but if you do try, here's what I would recommend to you.

-If you know the person in person, notice who he/she is friends with to try to recognize the faces and physically ask the other persons their names.

-If you do not know the person, you can use websites like:

http://com.lullar.com/

http://www.pipl.com/email/

To search their names, e-mails, phone numbers to see whether if you can find them on other Social networks. You can search the person's name manually by going to Myspace, Facebook, etc...To see who they have added as friends.

Your next step will be to add a friend of the victim or the victim directly. Adding the victim directly would probably be the best plan because you would have access directly to all the victims' friends and their pictures.

Now, all you have to do is match the pictures that Facebook asks you when you attempt to change their passwords by going to the victims friends and match them.

If you don't want to change their passwords, you can mask the victim's IP using other methods in which I will not go over. To find out their IP, you will need a RAT to manually whois them or any other method other there to find their IP.

A quick method I will suggest to you is to send the victim an e-mail if they have a hotmail account. When they reply you can right click on the e-mail and view source. You will see an IP from sender and use that to mask.

Mask their IP and facebook will not give you the problem of Logging in from another location.

If you follow the suggestions I have given you, you will surely gain entrance to their accounts and Facebook won't be able to do crap.

Their security is strong, but good ol' Social engineering never fails. Thumbsup

Enjoy. Black Hat

Copyright © 2013 hacking-guru. by Bloggertheme9 Powered by Blogger.
WP Theme-junkie converted by Blogger template