<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" version="2.0"><channel><atom:id>tag:blogger.com,1999:blog-6265331555026227303</atom:id><lastBuildDate>Mon, 28 Nov 2011 00:09:41 +0000</lastBuildDate><category>yahoo</category><category>password reset</category><category>wireless network hack</category><category>joomla admin password hack</category><category>multi-login</category><category>pinoy websites hack</category><category>forgot windows password</category><category>filipino website hacked</category><category>registry</category><category>joomla website hacking</category><category>network intrusion</category><category>how to</category><category>myspace private pic viewer</category><category>multiple account</category><category>joomla hacking</category><category>hide hard disk</category><category>myspace private profile viewer</category><category>ophcrack</category><category>forgot admin password</category><category>cracking</category><category>wireless hacking</category><category>strong password encryption</category><category>profile viewer</category><category>about password</category><category>intrusion</category><category>local area hack</category><category>airodump</category><category>joomla exploit</category><category>cracking MD5 password</category><category>hard disk</category><category>hide</category><category>administrator password</category><category>myspace</category><category>windows password recovery</category><category>protect password</category><category>windows xp password crack</category><category>wireless password crack</category><category>undelete sms message</category><category>messenger</category><category>no reset windows xp hack</category><category>password combination</category><category>reset windows password</category><category>retrieve windows xp password</category><category>lock</category><category>tutorial</category><category>manual locking</category><category>password hacking</category><category>defend your password</category><category>lock hard disk</category><category>how to recover sms message</category><category>usage</category><category>cracking password</category><category>hacking joomla site</category><category>wep cracking</category><category>privacy protect</category><category>password cracking</category><category>password dump</category><category>LAN secure</category><category>wireless</category><category>rainbow table</category><category>hard drive</category><category>securing hard drive</category><category>sms message recover</category><category>sms message recovery</category><category>wep</category><category>mobile phone message recover</category><category>hacking joomla</category><category>dual account</category><category>FBI way</category><category>defend network privacy</category><category>windows password</category><category>secure network</category><category>hard disk tricks</category><category>windows xp admin password</category><category>MD5 hash crack</category><title>Davao Hackers</title><description>Get hooked!</description><link>http://davaohackers.blogspot.com/</link><managingEditor>noreply@blogger.com (yheng)</managingEditor><generator>Blogger</generator><openSearch:totalResults>15</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/blogspot/uEtr" /><feedburner:info xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" uri="blogspot/uetr" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-4198626911922608107</guid><pubDate>Thu, 02 Oct 2008 06:13:00 +0000</pubDate><atom:updated>2008-10-01T23:15:47.895-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">joomla hacking</category><category domain="http://www.blogger.com/atom/ns#">pinoy websites hack</category><category domain="http://www.blogger.com/atom/ns#">filipino website hacked</category><category domain="http://www.blogger.com/atom/ns#">password reset</category><category domain="http://www.blogger.com/atom/ns#">hacking joomla site</category><title>Joomla-based Filipino sites still vulnerable</title><description>Few weeks had past since joomla team release a security update regarding high-priority issues of Joomla 1.5x version where admin passwords can be reset when token sanitation failed to sanitize correctly which results in a successful password reset.  Affected versions ranges from Joomla 1.5.0 – 1.5.5, but to my dismay I found out ‘till now some joomla-based sites which belongs to some of my fellow filipino people haven’t updated yet their joomla sites which are very vulnerable to exploitation.  I even conducted a penetration test to see if it is still possible to reset there admin passwords and gain privileges to their site.  I got a few list of vulnerable sites but I don’t want to share it publicly for security purposes.  One of my hit lists belongs to Academic institution, including some local government sites and personal site.  I’ve contacted a few webmasters regarding their site but more are left uninformed about the security issue, leaving their site prone to exploitation.   &lt;/p&gt; &lt;p style="margin-bottom: 0in;"&gt;&lt;br /&gt;&lt;/p&gt; &lt;p style="margin-bottom: 0in;"&gt;On the other hand, I reached to the point where I almost decided to hack their site just to vandalize it or post some explicit/vulgar words but thank God He had given me strength and a solid faith to avoid such unethical practices.  I guess I grew up a little bit each day not like when I was in my younger days when I had no doubt and fear of doing such stupid things.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;Read More:&lt;br /&gt;&lt;script type="text/javascript"&gt;&lt;!-- google_ad_client = "pub-3608441691629926"; /* 468x15, created 10/1/08 */ google_ad_slot = "9966930010"; google_ad_width = 468; google_ad_height = 15; //--&gt;&lt;br /&gt;&lt;/script&gt;&lt;br /&gt;&lt;script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;&lt;br /&gt;&lt;/script&gt;&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-4198626911922608107?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/10/joomla-based-filipino-sites-still.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-8232018027777990874</guid><pubDate>Tue, 22 Jul 2008 06:25:00 +0000</pubDate><atom:updated>2008-07-21T23:45:43.823-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">how to recover sms message</category><category domain="http://www.blogger.com/atom/ns#">mobile phone message recover</category><category domain="http://www.blogger.com/atom/ns#">sms message recovery</category><category domain="http://www.blogger.com/atom/ns#">sms message recover</category><category domain="http://www.blogger.com/atom/ns#">undelete sms message</category><title>How to recover deleted SMS message from mobile phone</title><description>Now you can recover deleted sms messages from mobile phone using this tutorial.  First you'll need some tools to make it possible, pre-requisites are listed below:&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Smart card reader that is compatible with the Windows smart card subsystem&lt;/li&gt;&lt;li&gt;Smart card reader that is compatible with the Windows smart card subsystem. You probably also need a Plug-in (GSM SIM card size) to ID-1 (ordinary smart card size) adapter card so the SIM card fits into the reader physically or &lt;span style="font-weight: bold;"&gt;ChipDrive Micro RS232 from Towitoko.&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;Download this tool &lt;a href="http://vidstrom.net/downloads/undeletesms.exe"&gt;UndeleteSMS&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;After downloading run the program thru command.com or simply type cmd.exe (ex. click windows button-&gt;run-&gt;then type cmd.exe and drag the Undeletesms.exe to command and check the given info before proceeding.  make sure you already attach you devices before executing it.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Q &amp;amp; A&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Q: My GSM SIM card reader does not work with UndeleteSMS, how come?&lt;br /&gt;&lt;br /&gt;A: Dedicated GSM SIM card readers are usually not compatible with the Windows smart card subsystem.&lt;br /&gt;&lt;br /&gt;Q: Where do the erased SMS's end up?&lt;br /&gt;&lt;br /&gt;A: They are printed in the Command Prompt window.&lt;br /&gt;&lt;br /&gt;Q: What does "message is not in default alpabet [40] cannot decode" mean?&lt;br /&gt;&lt;br /&gt;A: It usually means that the entry is an EMS or MMS instead of an ordinary SMS.&lt;br /&gt;&lt;br /&gt;Q: I have a question that is not covered here. Where can I get help?&lt;br /&gt;&lt;br /&gt;A: &lt;a href="http://vidstrom.net/contact/"&gt;Send me&lt;/a&gt; your question. I can't promise that I will have time to answer, but I'll do my best.&lt;br /&gt;&lt;br /&gt;All credits goes to Arne Vidstrom - http://vidstrom.net&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-8232018027777990874?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/07/how-to-recover-deleted-sms-message-from.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-5166066706280679796</guid><pubDate>Tue, 22 Jul 2008 06:02:00 +0000</pubDate><atom:updated>2008-07-21T23:21:20.122-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">defend network privacy</category><category domain="http://www.blogger.com/atom/ns#">local area hack</category><category domain="http://www.blogger.com/atom/ns#">intrusion</category><category domain="http://www.blogger.com/atom/ns#">secure network</category><category domain="http://www.blogger.com/atom/ns#">network intrusion</category><category domain="http://www.blogger.com/atom/ns#">LAN secure</category><title>Network intrusion - How to defend yourself</title><description>Last week I conducted an experiment for our local area network (LAN) to check whether it is secured or not.  We have firewall installed on our network and over 30 computers on LAN area. &lt;br /&gt;&lt;br /&gt;To check the integrity of our network to know if we are safe (I mean on a local area only) I use a software to perform a packet sniffing - a method to sniff traffic/packet over network.  Surprisingly, I was able to sniff usernames and passwords for more than thirty computers on my network I was able to sniff them including cookies on secure connection (referring to browsers' cookie).&lt;br /&gt;&lt;br /&gt;The method I perform is called ARP Spoofing, many software like this available online and for penetration testing only.  If used improperly may cause you to trouble.  I used cain &amp;amp; abel from oxid.it to perform such spoofing and I really like this software for conducting penetration tests.  Note that your antivirus might flag it as a "virus" because it uses some packet sniffing method.  Download only on that site for security purpose.&lt;br /&gt;&lt;br /&gt;My purpose of ARP spoofing is to know if the packets sent over our network is safe and can't be intercepted and immune to local network attacks.  But to my surprise I was able to gain their username and passwords, email, secure certificates, browser coockies, and other important details of each computer's user transaction.&lt;br /&gt;&lt;br /&gt;I do not suggest you to take advantage and do evil things by using this program, as per IT security experts motive is to conduct a penetration test and not to harm network and perform hacking unethically.  Nor I myself did not take advantage to those sniffed passwords and all other materials gathered during penetration testing.&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-5166066706280679796?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/07/network-intrusion-how-to-defend.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-983399920154155845</guid><pubDate>Tue, 22 Jul 2008 05:22:00 +0000</pubDate><atom:updated>2008-07-21T22:47:26.006-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">password combination</category><category domain="http://www.blogger.com/atom/ns#">privacy protect</category><category domain="http://www.blogger.com/atom/ns#">ophcrack</category><category domain="http://www.blogger.com/atom/ns#">about password</category><category domain="http://www.blogger.com/atom/ns#">protect password</category><category domain="http://www.blogger.com/atom/ns#">MD5 hash crack</category><category domain="http://www.blogger.com/atom/ns#">strong password encryption</category><category domain="http://www.blogger.com/atom/ns#">password cracking</category><category domain="http://www.blogger.com/atom/ns#">defend your password</category><title>How to secure your password - Things you don't know yet about your password</title><description>There are several ways on how to secure your password.  Basically people use passwords base on their pet names, spouse, birthdays or any other important events and names which are &lt;span style="font-weight: bold;"&gt;alphabetically&lt;/span&gt; simple.  On my &lt;a href="http://davaohackers.blogspot.com/2008/06/windows-xp-cracking-passwords-easy-way.html"&gt;previous post&lt;/a&gt; I mentioned having a seven (7) characters long password is important.  In this case, having a seven characters long password is still easy to crack/decode using various method as I have mention on my &lt;a href="http://davaohackers.blogspot.com/2008/06/windows-xp-cracking-passwords-easy-way.html"&gt;previous post&lt;/a&gt; that it can be much easier using those tools to gain/crack passwords even if it is seven characters long.&lt;br /&gt;&lt;br /&gt;A great way to secure your password is having a combination of alphabetical and number, more than seven characters long passwords.  Base on my experience, a 7 characters long alphabetical password is cracked only in a few seconds compare to combined alphabet and number passwords.  Even a longer than seven (7) characters is cracked within a minutes of waiting using a special method of cracking.  Want some proof?  Check out my previous post on using Ophcrack and see for yourself!&lt;br /&gt;&lt;br /&gt;Even my twelve (12) characters long password - all alphabetical - was cracked by myself in a few minutes which I myself forcefully decided to change it having a number combination to harden the encryption.  How does this happen?  Having all alphabetical passwords are crack faster because of having "only alphabets" no numbers included, and a less time for decoding it.  Truly, MD5  hashed passwords are hard to crack but having your passwords composed of only alphabetical is still vulnerable to cracking.  A Salted MD5 hash would do because salted hash is a lot difficult to crack but on windows system is not reliable enough to protect you password.&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-983399920154155845?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/07/how-to-secure-your-password-things-you.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-8600480646831983817</guid><pubDate>Fri, 20 Jun 2008 00:20:00 +0000</pubDate><atom:updated>2008-06-26T22:06:27.924-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">profile viewer</category><category domain="http://www.blogger.com/atom/ns#">myspace private pic viewer</category><category domain="http://www.blogger.com/atom/ns#">myspace private profile viewer</category><category domain="http://www.blogger.com/atom/ns#">myspace</category><title>Myspace Private Picture Hack</title><description>Can't view private pictures on someone's profile? Here is a trick to show off that private pics they hide on their profile on Myspace.  I do not recommend using any software/program this time but a simple url trick would do.&lt;br /&gt;&lt;br /&gt;To be able to view private pics on Myspace profile just copy this URL below:&lt;br /&gt;&lt;br /&gt;&lt;pre class="alt2" dir="ltr" style="border: 1px inset ; margin: 0px; padding: 7px; overflow: auto; width: 470px; height: 34px; text-align: left;"&gt;http://lads.myspace.com/slides/photoslider.swf?u=&lt;br /&gt;&lt;/pre&gt;&lt;br /&gt;so just put your private person or anybody's myspace id after the = and you can see all their photos&lt;br /&gt;&lt;br /&gt;For example: http://lads.myspace.com/slides/photoslider.swf?u=29736584&lt;br /&gt;&lt;br /&gt;have fun :)&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-8600480646831983817?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/06/myspace-private-picture-hack.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-25668903520426830</guid><pubDate>Wed, 18 Jun 2008 05:24:00 +0000</pubDate><atom:updated>2008-06-17T22:48:21.492-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">joomla admin password hack</category><category domain="http://www.blogger.com/atom/ns#">joomla exploit</category><category domain="http://www.blogger.com/atom/ns#">cracking MD5 password</category><category domain="http://www.blogger.com/atom/ns#">hacking joomla site</category><category domain="http://www.blogger.com/atom/ns#">hacking joomla</category><category domain="http://www.blogger.com/atom/ns#">joomla website hacking</category><title>Hacking Joomla Sites</title><description>Personally I like Joomla! based sites because it is easy to manage and sort things out even doing the SEO just like on wordpress blogging and even creating your own site design.  But these days more and more Joomla! sites are getting hacked by anonymous hackers on the web globally.  Reasons are easily be pointed out to unaware webmasters/owners of the site the installation of extensions or shall we say add-ons to Joomla resulting in a more vulnerable of getting exploited, massive damage and defacement to their site including loss of prospects, personal information, and on financial aspect.&lt;br /&gt;&lt;br /&gt;How these events had happened? When the site owners pointed fingers to their hosts blaming for unsecured web server, failed security, failure monitoring and so forth.  But they don't know that by adding some extensions without checking first if the extension that they are using have a bugs or vulnerable to exploitation then it would be a major reason that their site is prone to hacking.  For my personal experience I manage to obtain admin password hashes of several Joomla based sites in a minutes of exploiting using Google as search engine.  Using MD5 hash cracker the encrypted MD5 passwords are converted into readable ascii letters.  Fortunately a lot of web based MD5 cracker is available on the net making the cracking process speed up.&lt;br /&gt;&lt;br /&gt;It is really a big issue for security aspect on your site if you are not aware of these kind of vulnerables and bugs of those extensions that you applied on your Joomla site.  It is best advised to manage and update the extensions used (if update of such extension is available) then you should update it to address the known security issues to your site to avoid getting hacked.&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-25668903520426830?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/06/hacking-joomla-sites.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-3657277935017506716</guid><pubDate>Wed, 18 Jun 2008 05:09:00 +0000</pubDate><atom:updated>2008-06-17T22:53:28.608-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">no reset windows xp hack</category><category domain="http://www.blogger.com/atom/ns#">retrieve windows xp password</category><category domain="http://www.blogger.com/atom/ns#">rainbow table</category><category domain="http://www.blogger.com/atom/ns#">ophcrack</category><category domain="http://www.blogger.com/atom/ns#">windows xp password crack</category><category domain="http://www.blogger.com/atom/ns#">password hacking</category><category domain="http://www.blogger.com/atom/ns#">MD5 hash crack</category><title>Windows XP Cracking Passwords the Easy Way!</title><description>Well, many of us trying to crack/decode a password on Windows XP System had a hard time or shall we say most of the time we end up failure specially if we are cracking more than seven (7) characters long passwords.  Some people uses cracking programs whether brute forcing, dictionary based cracking and so on.  Face the fact that seven or more characters long passwords are harder to decode, possibly you can crack it for a few or more days by brute forcing.&lt;br /&gt;&lt;br /&gt;Now we can easily crack long passwords for an instance in my personal experience I will introduce to you using the 0phCrack and the infamous "Rainbow table" algorithm.  Surprisingly the seven character long or more passwords are cracked in a few seconds! Yes it's true, But bear in mind that I have my Rainbow table as big as 669 MB which it can be loaded by 0phcrack and cracks passwords in a few seconds (5 user accounts on my system with 12 characters long passwords!). &lt;br /&gt;&lt;br /&gt;Maybe you'll think that this is just another work-today-die-tomorrow cracking tricks but to let you know that this process cracks MD5 hashes.  LM and NT passwords are easily cracked by this method specially on Windows XP system.  I will not discuss further as to where you can find 0phcrack and rainbow tables that I used (669MB file size) but believe me it helps me a lot, making the process done quickly as I never expected before.  You can find those tools and references on many sites for free.  But if you really want to know where the hell I get those tool and the rainbow table then you are free to send me pm or post your comments here.&lt;br /&gt;&lt;br /&gt;Using this method of cracking Windows Xp password there is no need for you to reset loss password, saves your day ahead without getting caught for resetting the administrator password on windows xp.  Just make sure you have the privilege to install the mentioned program/tools so that your cracking will be successful.&lt;br /&gt;&lt;br /&gt;So start cracking now!&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-3657277935017506716?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/06/windows-xp-cracking-passwords-easy-way.html</link><author>noreply@blogger.com (yheng)</author><thr:total>3</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-3309618519371513344</guid><pubDate>Thu, 10 Apr 2008 08:39:00 +0000</pubDate><atom:updated>2008-04-10T01:45:56.800-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">usage</category><category domain="http://www.blogger.com/atom/ns#">cracking</category><category domain="http://www.blogger.com/atom/ns#">administrator password</category><category domain="http://www.blogger.com/atom/ns#">airodump</category><category domain="http://www.blogger.com/atom/ns#">tutorial</category><category domain="http://www.blogger.com/atom/ns#">how to</category><category domain="http://www.blogger.com/atom/ns#">wireless</category><category domain="http://www.blogger.com/atom/ns#">wep</category><title>How to use Airodump (from WEP cracking tutorial)</title><description>Airodump usage: &lt;span style="font-weight: bold;"&gt;airodump [interface] [output file prefix] [channel no.] [IVs flag]&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;1. The &lt;span style="font-weight: bold;"&gt;[channel no.]&lt;/span&gt; can be set to a single channel &lt;span style="font-weight: bold;"&gt;(1 thru 14)&lt;/span&gt; or set to 0 to hop between all channels&lt;br /&gt;2. The &lt;span style="font-weight: bold;"&gt;[IVs flag]&lt;/span&gt; can be set to &lt;span style="font-weight: bold;"&gt;1&lt;/span&gt; to only save the captured IVs&lt;br /&gt;&lt;br /&gt;e.g. airodump eth1 testfile1 6 produced the in progress capture below:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_FTF22v5X0IU/R_3Ssu7RcEI/AAAAAAAAAAM/FgBzIdlcS2w/s1600-h/airodump1.png"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_FTF22v5X0IU/R_3Ssu7RcEI/AAAAAAAAAAM/FgBzIdlcS2w/s320/airodump1.png" alt="" id="BLOGGER_PHOTO_ID_5187534011753394242" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Basics to be aware of from the above screen capture are:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt; - BSSID =  MAC address of the access point (but not always!)&lt;br /&gt;&lt;br /&gt; - Beacons = Number of captured beacon packets (of no use!)&lt;br /&gt;&lt;br /&gt; - # Data = Number of IVs captured so far (this is the all important figure!)&lt;br /&gt;&lt;br /&gt; - MB = Data Rate '48' mixed mode in the above example.  A '.' appears after the figures if the Data Rate is dedicated e.g. '48.'&lt;br /&gt;&lt;br /&gt; -  WEP = Network is configured as WEP&lt;br /&gt;&lt;br /&gt; -  Number of IVs required to break WEP depends on the WEP key length&lt;br /&gt;        * Approximately 300.000 IVs for 40-bit WEP (AKA 64-bit WEP)&lt;br /&gt;        * Approximately 1.000.000 IVs for 104-bit WEP (AKA 128-bit WEP)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Examples:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;airodump wlan0 capture1 10 (Interface=wlan0, filename=capture1, channel=10)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;airodump eth1 testfile 6 1 (Interface=eth1, filename=testfile, channel=6, only captured IVs saved)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;airodump ath0 alpha 0 (Interface=ath0, filename=alpha, channel hopping mode)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Output Files:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;An airodump capture with produce the following output files .txt, .cap and .gps&lt;br /&gt;&lt;br /&gt;The .txt file contains:&lt;br /&gt;&lt;br /&gt;   * BSSID and MAC addresses&lt;br /&gt;    &lt;br /&gt;   * Time/Date info&lt;br /&gt;    &lt;br /&gt;   * Channel Info&lt;br /&gt;    &lt;br /&gt;   * Data rate&lt;br /&gt;    &lt;br /&gt;   * Encryption method&lt;br /&gt;    &lt;br /&gt;   * No. of beacons captured&lt;br /&gt;    &lt;br /&gt;   * No. of IVs captured&lt;br /&gt;    &lt;br /&gt;   * LAN IP&lt;br /&gt;    &lt;br /&gt;   * ESSID&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The .cap file contains the packet capture from your session.  This is the file that is input into aircrack for WEP cracking.&lt;br /&gt;&lt;br /&gt;The .gps file contains GPS related info if you have a GPS device enabled&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Troubleshooting:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Be aware of the modes of your card and target network (802.11b or 802.11g).  I have observed Airodump capture only around 2,000 IVs an hour (on a busy network) when the card is an 802.11b card and the network is working in 802.11g mode.  Be sure your card and the target network are using the same mode. &lt;br /&gt;&lt;br /&gt;On a saturated 802.11b network we captured around 23,000 IVs a minute.&lt;br /&gt;&lt;br /&gt;On a saturated 802.11g network we captured around 140,000 IVs a minute.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Source:http://wirelessdefence.org/Contents/Aircrack_airodump.htm&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-3309618519371513344?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/04/how-to-use-airodump-from-wep-cracking.html</link><author>noreply@blogger.com (yheng)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_FTF22v5X0IU/R_3Ssu7RcEI/AAAAAAAAAAM/FgBzIdlcS2w/s72-c/airodump1.png" height="72" width="72" /><thr:total>1</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-2816464754231274106</guid><pubDate>Thu, 10 Apr 2008 08:31:00 +0000</pubDate><atom:updated>2008-04-10T01:51:44.192-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">wireless network hack</category><category domain="http://www.blogger.com/atom/ns#">cracking password</category><category domain="http://www.blogger.com/atom/ns#">wep cracking</category><category domain="http://www.blogger.com/atom/ns#">password dump</category><category domain="http://www.blogger.com/atom/ns#">FBI way</category><category domain="http://www.blogger.com/atom/ns#">cracking</category><category domain="http://www.blogger.com/atom/ns#">wireless password crack</category><category domain="http://www.blogger.com/atom/ns#">administrator password</category><category domain="http://www.blogger.com/atom/ns#">wep</category><category domain="http://www.blogger.com/atom/ns#">wireless hacking</category><title>Wep Cracking - The Fbi Way</title><description>WEP cracking usually takes hours. Lots of hours, depending on the amount of traffic on the access point. A few months ago, two FBI agents demonstrated how they were able to crack a WEP enabled access point within a couple of minutes.  3 minutes to be exact. This is unbelievable when compared to, say 3 days of work. Here is how they did it, and how you can do it. You may need to know your way with each and every of these tools to get this done. You can ask Google for that. Anyway, if you are familiar with them, just do as follows :&lt;br /&gt;&lt;br /&gt;1. Run &lt;span style="font-weight: bold;"&gt;Kismet&lt;/span&gt; to find your target network. Get the &lt;span style="font-weight: bold;"&gt;SSID&lt;/span&gt; and the channel.&lt;br /&gt;2. Run &lt;span style="font-weight: bold;"&gt;Airodump&lt;/span&gt; and start capturing data.&lt;br /&gt;3. With Aireplay, start replaying a packet on the target network. (You can find a ‘good packet’ by looking at the &lt;span style="font-weight: bold; font-style: italic;"&gt;BSSID MAC&lt;/span&gt; on Kismet and comparing it to the captured packet’s BSSID MAC).&lt;br /&gt;4. Watch as Airodump goes crazy with new IVs. Thanks to Aireplay.&lt;br /&gt;5. Stop Airodump when you have about &lt;span style="font-weight: bold; font-style: italic;"&gt;1,000 IVs.&lt;/span&gt;&lt;br /&gt;6. Run &lt;span style="font-weight: bold;"&gt;Aircrack&lt;/span&gt; on the captured file.&lt;br /&gt;7. You should see the WEP key infront of you now.&lt;br /&gt;&lt;br /&gt;The software runs on &lt;span style="font-weight: bold;"&gt;Linux&lt;/span&gt;, they are all available on the &lt;span style="font-weight: bold;"&gt;Knoppix Linux Live CD&lt;/span&gt;. And finally, I think you should always use a combination of 2 or more security features.  As for what you need, get &lt;span style="font-weight: bold;"&gt;Aircrack&lt;/span&gt; (Includes &lt;span style="font-weight: bold;"&gt;Airodump&lt;/span&gt;, &lt;span style="font-weight: bold;"&gt;Aireplay&lt;/span&gt;, &lt;span style="font-weight: bold;"&gt;Aircrack&lt;/span&gt; and optional &lt;span style="font-weight: bold;"&gt;Airdecap&lt;/span&gt; for decrypting WEP/WPA capture files) and get &lt;span style="font-weight: bold;"&gt;Kismet&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Update:&lt;/span&gt; Kismet for Windows (Kiswin32) is available now.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Download this tools:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Kismet:&lt;/span&gt;Win32 version&lt;br /&gt;http://www.kismetwireless.net/code/setup_kismet_2007-10-R1.exe&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Aircrack:&lt;/span&gt;&lt;br /&gt;http://download.aircrack-ng.org/aircrack-ng-0.9.3-win.zip&lt;br /&gt;&lt;br /&gt;Source:h++p://masc2279.no-ip.org/gadgets-toys/internet/wep-cracking-the-fbi-way/&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-2816464754231274106?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/04/wep-cracking-fbi-way.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-550633612388305979</guid><pubDate>Thu, 10 Apr 2008 05:38:00 +0000</pubDate><atom:updated>2008-04-09T22:47:34.577-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">lock hard disk</category><category domain="http://www.blogger.com/atom/ns#">securing hard drive</category><category domain="http://www.blogger.com/atom/ns#">manual locking</category><category domain="http://www.blogger.com/atom/ns#">hide hard disk</category><category domain="http://www.blogger.com/atom/ns#">hard disk</category><category domain="http://www.blogger.com/atom/ns#">registry</category><category domain="http://www.blogger.com/atom/ns#">hard drive</category><category domain="http://www.blogger.com/atom/ns#">lock</category><category domain="http://www.blogger.com/atom/ns#">hide</category><category domain="http://www.blogger.com/atom/ns#">hard disk tricks</category><title>[Trick]Easy Way to Locking and Hiding Hard Drives!</title><description>Here I' m going to tell you about manually locking/hiding your hard drive tricks without using any software! Just follow this steps:&lt;br /&gt;&lt;br /&gt;1. Open Registry (go to run command, type "regedit" and press enter)&lt;br /&gt;&lt;br /&gt;2. then go to this key&lt;br /&gt;&lt;br /&gt;HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Policies\Explorer&lt;br /&gt;&lt;br /&gt;3. Now click right button and create DWORD Value (blue color)&lt;br /&gt;&lt;br /&gt;4. Rename it as "NoViewOnDrive" (for locking drive) or Rename it as "NoDrives" (for Hiding drive)&lt;br /&gt;&lt;br /&gt;5. Double click it and put some numbers to lock your desired Drive and click ok.&lt;br /&gt;&lt;br /&gt;Here is Drive No.&lt;br /&gt;A: 1&lt;br /&gt;C: 4&lt;br /&gt;D: 8&lt;br /&gt;E: 16&lt;br /&gt;F: 32&lt;br /&gt;G: 64&lt;br /&gt;H: 128&lt;br /&gt;&lt;br /&gt;finally restart or log-off the computer to take effect.&lt;br /&gt;&lt;br /&gt;Keep in mind that "0" is Default Value or Disable or remove this setting. &lt;br /&gt;&lt;br /&gt;Note:At your own risk!  If you fucked up your registry settings then try "System Restore" or have your backups before you edit your registry.&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-550633612388305979?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/04/trickeasy-way-to-locking-and-hiding.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-1844135531562927977</guid><pubDate>Fri, 04 Apr 2008 08:30:00 +0000</pubDate><atom:updated>2008-04-04T01:46:18.856-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">multiple account</category><category domain="http://www.blogger.com/atom/ns#">dual account</category><category domain="http://www.blogger.com/atom/ns#">messenger</category><category domain="http://www.blogger.com/atom/ns#">yahoo</category><category domain="http://www.blogger.com/atom/ns#">multi-login</category><title>Tips &amp; Tricks: Multi-login Yahoo! Messenger</title><description>In this tutorial you can use ym in a multiple account.  Basically you can't use Yahoo! Messenger with multiple login account for an instances.  This trick requires registry editing.&lt;br /&gt;&lt;br /&gt;This will be very easy to understand as we go on with the tutorial, just simple steps required:&lt;br /&gt;&lt;br /&gt;1. Go to START-&gt;RUN-&gt; Type ‘regedit’ and press ENTER.&lt;br /&gt;&lt;br /&gt;2. Then navigate to ‘HKEY_CURRENT_USER\Software\Yahoo\Pager\Test’&lt;br /&gt;&lt;br /&gt;3. Now in the right pane right click New-&gt;DOWRD Value. Name it as ‘Plural’&lt;br /&gt;&lt;br /&gt;4. Now Double click the the Plural DWORD you created &amp;amp; set the value to 1&lt;br /&gt;&lt;br /&gt;5. Reboot may or may not require, you can test it by opening another Yahoo Messenger program :)&lt;br /&gt;&lt;br /&gt;Enjoy!&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-1844135531562927977?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/04/tips-tricks-multi-login-yahoo-messenger.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-5430156172682806139</guid><pubDate>Fri, 28 Mar 2008 05:30:00 +0000</pubDate><atom:updated>2008-03-27T22:34:35.172-07:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">windows password recovery</category><category domain="http://www.blogger.com/atom/ns#">windows password</category><category domain="http://www.blogger.com/atom/ns#">forgot windows password</category><category domain="http://www.blogger.com/atom/ns#">administrator password</category><category domain="http://www.blogger.com/atom/ns#">reset windows password</category><category domain="http://www.blogger.com/atom/ns#">windows xp admin password</category><category domain="http://www.blogger.com/atom/ns#">forgot admin password</category><title>5 ways to crack or reset a forgotten Windows XP administrator password</title><description>There are already so many articles written on how to recover or reset a password that I’m not going to reinvent the wheel, but instead will guide you to the best online resources that I used to crack my Windows XP password.&lt;br /&gt;&lt;br /&gt;1. &lt;span style="font-weight: bold;"&gt;Ophcrack Live CD&lt;/span&gt; - My favorite ways to blank out or crack a Windows password is to use a Linux Live CD. These are special distributions of Linux that run directly from the CD (no installation required) and are specially designed for cracking Windows passwords. You can read the documentation to learn how to use it. Simply burn the ISO and boot using the CD and the program will get right to work. It won’t work, however, on very complicated password because it actually tries to determine the password rather than reset it.&lt;br /&gt;&lt;br /&gt;2. &lt;span style="font-weight: bold;"&gt;Offline NT Password and Registry Editor&lt;/span&gt; - This is a very small program, only 3MB in size, that you can burn to a CD and boot to. It’ll auto-detect the Windows installation and the account names (that is if everything was installed in the default Windows directories). Using this program you can reset or blank out a Windows password, which means it doesn’t matter how long or complicated it is. I tried this program on Vista and it would not load afterwards, so definitely only use for Windows XP or earlier!&lt;br /&gt;&lt;br /&gt;3. &lt;span style="font-weight: bold;"&gt;Login Recovery&lt;/span&gt; - Login Recovery is a web site that has a program that you can either download onto a floppy disk or a cd and that you use to boot up with. You’ll get a list of account and some numbers when the program runs. Take those numbers and enter them onto the web site and Login Recovery will crunch it through it’s system to find out password for Windows NT, 2000, XP and Vista. I have tried this site and it did not work for my password, which was 11 characters and mostly symbols, numbers, and letters. However, if the password was something simple, they will probably be able to crack it.&lt;br /&gt;&lt;br /&gt;4. &lt;span style="font-weight: bold;"&gt;John The Ripper&lt;/span&gt; - Another free password cracker that works on Windows, Linux and Macs, so it’s useful for any Mac or Linux user who wants to recovery a password. Pretty easy to use and comes with good instructions, so most people can follow along.&lt;br /&gt;&lt;br /&gt;5. &lt;span style="font-weight: bold;"&gt;Knoppix STD&lt;/span&gt; - G4TV has a good article on another Linux distro you can download and use to crack your Windows password. Follow the detailed instructions he gives and if the password is not too long or difficult, it should be able to crack it!&lt;br /&gt;&lt;br /&gt;As you can tell, the best ways to crack a Windows password is using Linux! It might be a little too techie for some people, but it’s definitely worth it if you want to avoid having to re-install Windows and lose all of your data! Any questions, post a comment!&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-5430156172682806139?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/03/5-ways-to-crack-or-reset-forgotten.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-4702903992544021754</guid><pubDate>Tue, 25 Mar 2008 06:25:00 +0000</pubDate><atom:updated>2008-03-24T23:52:41.527-07:00</atom:updated><title>Take over the website using C99.php shell</title><description>You can hack a certain site using C99.php shell by uploading it to web server.  Unfortunately I cannot post the source code of c99 shell here but I will provide tips on how to find c99 shell script.  The c99.php is detected as harmful to your pc scanned by various anti-virus but basically it doesn't harm your pc anyway, it's just a hack script which is applicable only to webserver running Php under Linux platform or maybe on Windows server (haven't tried yet) but 99% works on Linux servers.&lt;br /&gt;&lt;br /&gt;You can find c99 shell using Google by using a 'Google Dork', just type [allinurl: c99.php"] without the brackets google will provide your results which links to c99.php shell.  I advise that you copy the c99.php code and save it as "c99.php" and upload it to web host.  To be able to use the c99 shell script just access it via URL (i.e. www.somesite.com/c99.php)  or similar to this and voila!  You can retrieve/modify password, upload file, modify, etc..&lt;br /&gt;&lt;br /&gt;But before you access the file make sure you have your proxy setup to avoid getting caught.  It is unwise to access directly the exploit without protecting yourself first!&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-4702903992544021754?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/03/take-over-website-using-c99php-shell.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-7428953291146711527</guid><pubDate>Tue, 25 Mar 2008 05:09:00 +0000</pubDate><atom:updated>2008-03-24T22:20:03.460-07:00</atom:updated><title>How to Obscure Any URL</title><description>&lt;span style="font-size:100%;"&gt;&lt;b&gt;How Spammers And Scammers Hide and Confuse&lt;br /&gt;&lt;br /&gt;Maybe this topic is too old for you to read but most of the people on web are victimized by phishing.  A lot of people are tricked with this simple yet very useful for phishers. &lt;br /&gt;&lt;br /&gt;Using this trick you can hide your real URL into something (e.g. hexadecimal, dword, etc..) and make your victim think that it brings them to real site.&lt;br /&gt;&lt;br /&gt;Visit this site:&lt;/b&gt;&lt;/span&gt;&lt;a href="http://www.pc-help.org/obscure.htm" target="_blank"&gt;http://www.pc-help.org/obscure.htm&lt;/a&gt;&lt;br /&gt;&lt;span style="font-size:100%;"&gt;&lt;b&gt;&lt;br /&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-7428953291146711527?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/03/how-to-obscure-any-url.html</link><author>noreply@blogger.com (yheng)</author><thr:total>1</thr:total></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-6265331555026227303.post-5870584832982165207</guid><pubDate>Tue, 25 Mar 2008 04:51:00 +0000</pubDate><atom:updated>2008-03-24T22:01:48.907-07:00</atom:updated><title>How to become user SYSTEM in Windows XP</title><description>Ok, to start, go to Start&gt;Run.&lt;br /&gt;Type cmd.exe and hit ok.&lt;br /&gt;Now in the command prompt that appeared, type at and hit enter. It should say "There are no entries in the list", but if it comes up with some stuff, we should be fine.&lt;br /&gt;Now type this into the command prompt:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;at XX:XX /interactive "cmd.exe"&lt;br /&gt;&lt;br /&gt;&lt;/blockquote&gt;Where XX:XX is approximately 1 minute from the current time in 24 hour format.&lt;br /&gt;When the system clock reaches that time, a new command prompt will open.&lt;br /&gt;Now type tasklist in the command prompt and hit enter. A list of all the processes running on your computer will be displayed.&lt;br /&gt;Search through this list for explorer.exe. Once located, remember the PID number next to it.&lt;br /&gt;Now enter this into the command prompt:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;tskill XXXX&lt;/blockquote&gt;&lt;br /&gt;Where XXXX is the PID number of explorer.exe.&lt;br /&gt;Finally type explorer.exe into the command prompt.&lt;br /&gt;When you press the start button again, your username should be changed to SYSTEM, and you will have full administrative rights over the entire computer.&lt;br /&gt;You can kill processes that Windows normally locks, change all the user account names and passwords, delete Windows files, pretty much anything that you wouldn't normally be able to do.&lt;br /&gt;&lt;br /&gt;Thanks for looking and I hope you find this informative and useful.&lt;div class="blogger-post-footer"&gt;&lt;script type="text/javascript"&gt;&lt;!--
google_ad_client = "pub-3608441691629926";
/* 468x15, created 10/1/08 */
google_ad_slot = "4202170982";
google_ad_width = 468;
google_ad_height = 15;
//--&gt;
&lt;/script&gt;
&lt;script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;
&lt;/script&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6265331555026227303-5870584832982165207?l=davaohackers.blogspot.com' alt='' /&gt;&lt;/div&gt;</description><link>http://davaohackers.blogspot.com/2008/03/how-to-become-user-system-in-windows-xp.html</link><author>noreply@blogger.com (yheng)</author><thr:total>0</thr:total></item></channel></rss>

