Recent Articles
Showing posts with label Hacking Tips. Show all posts
Showing posts with label Hacking Tips. Show all posts

Thursday, June 05, 2014

hacking admin account through guest account.

Thursday, June 05, 2014 - 0 Comments

hack admin account through guest account.

Hello guys, Today will provide you an
awesome and easy trick through which
you can hack admin account through
guest account.
1) Go to C:/windows/system32.
2) Copy cmd.exe and paste it on
desktop.
3) Rename cmd.exe to sethc.exe.
4) Copy the new sethc.exe to system
32,when windows asks for overwriting...
the file,then click yes.
5) Now Log out from your guest
account and at the user select
window,press shift key 5 times.
6) Instead of Sticky Key confirmation
dialog,command prompt with full
administrator privileges will open.
7) Now type “ NET USER
ADMINISTRATOR “zzz” where “zzz”
can be any password you like and
press enter.
You will see “ The Command
completed successfully” and then exit
the command prompt and login into
administrator with your new password.
Now You have hacked admin through
guest account. 

USEFUL Run commands : START >> RUN

USEFUL Run commands : START >> RUN

Run commands :
START >> RUN

Accessibility Controls
access.cpl

Add Hardware Wizard
hdwwiz.cpl

Add/Remove Programs...
appwiz.cpl

Administrative Tools
control.exe admintools

Automatic Updates
wuaucpl.cpl

Bluetooth Transfer Wizard
fsquirt

Calculator
calc

Certificate Manager
certmgr.msc

Character Map
charmap

Check Disk Utility
chkdsk

Clipboard Viewer
clipbrd

Command Prompt
cmd

Component Services
dcomcnfg

Computer Management
compmgmt.msc

Date and Time Properties
timedate.cpl

DDE Shares
ddeshare

Device Manager
devmgmt.msc

Direct X Control Panel (if installed)
directx.cpl

Direct X Troubleshooter
dxdiag

Disk Cleanup Utility
cleanmgr

Disk Defragment
dfrg.msc

Disk Management
diskmgmt.msc

Disk Partition Manager
diskpart

Display Properties
control.exe desktop

Display Properties
desk.cpl

Display Properties (w/Appearance Tab Preselected)
control.exe color

Dr. Watson System Troubleshooting Utility
drwtsn32

Driver Verifier Utility
verifier

Event Viewer
eventvwr.msc

File Signature Verification Tool
sigverif

Findfast
findfast.cpl

Folders Properties
control.exe folders

Fonts
control.exe fonts

Fonts Folder
fonts

Free Cell Card Game
freecell

Game Controllers
joy.cpl

Group Policy Editor (XP Prof)
gpedit.msc

Hearts Card Game
mshearts

Iexpress Wizard
iexpress

Indexing Service
ciadv.msc

Internet Properties
inetcpl.cpl

Java Control Panel (if installed)
jpicpl32.cpl

Java Control Panel (if installed)
javaws

Keyboard Properties
control.exe keyboard

Local Security Settings
secpol.msc

Local Users and Groups
lusrmgr.msc

Logs You Out Of Windows
logoff

Microsoft Chat
winchat

Minesweeper Game
winmine

Mouse Properties
control.exe mouse

Mouse Properties
main.cpl

Network Connections
control.exe netconnections

Network Connections
ncpa.cpl

Network Setup Wizard
netsetup.cpl

Nview Desktop Manager (if installed)
nvtuicpl.cpl

Object Packager
packager

ODBC Data Source Administrator
odbccp32.cpl

On Screen Keyboard
osk

Opens AC3 Filter (if installed)
ac3filter.cpl

Password Properties
password.cpl

Performance Monitor
perfmon.msc

Performance Monitor
perfmon

Phone and Modem Options
telephon.cpl

Power Configuration
powercfg.cpl

Printers and Faxes
control.exe printers

Printers Folder
printers

Private Character Editor
eudcedit

Quicktime (If Installed)
QuickTime.cpl

Regional Settings
intl.cpl

Registry Editor
regedit

Registry Editor
regedit32

Removable Storage
ntmsmgr.msc

Removable Storage Operator Requests
ntmsoprq.msc

Resultant Set of Policy
rsop.msc

Resultant Set of Policy (XP Prof)
rsop.msc

Scanners and Cameras
sticpl.cpl

Scheduled Tasks
control.exe schedtasks

Security Center
wscui.cpl

Services
services.msc

Shared Folders
fsmgmt.msc

Shuts Down Windows
shutdown

Sounds and Audio
mmsys.cpl

Spider Solitare Card Game
spider

SQL Client Configuration
cliconfg

System Configuration Editor
sysedit

System Configuration Utility
msconfig

System File Checker Utility
sfc

System Properties
sysdm.cpl

Task Manager
taskmgr

Telnet Client
telnet

User Account Management
nusrmgr.cpl

Utility Manager
utilman

Windows Firewall
firewall.cpl

Windows Magnifier
magnify

Windows Management Infrastructure
wmimgmt.msc

Windows System Security Tool
syskey

Windows Update Launches
wupdmgr

Windows XP Tour Wizard
tourstart

Wordpad
write

Sunday, May 25, 2014

Three Working Methods and basic Misconceptions To Hack Whats App - [Updated] [By Digi Hackers]

Sunday, May 25, 2014 - 0 Comments

Three Working Methods To Hack Whats App - [Updated] [By Digi Hackers]

Hello Friends , Welcome back to Digi Hackers.
Due to Some Reasons Digi Hackers is not that much active as our lovely users expect from it , Sorry For The Inconvenience

Today I want to introduce you to Hacking WHATS APP with not one method but three!!



 After A Lot of Search On Whats app , finally found and i came with three working tricks of hacking whats app and through this article i would also like to clear some basic misconceptions which will often happen when trying to hack whats app. 
Well Guys What app is a very famous social networking app but it doesn't mean that its an app so can't be hacked.


Said by Someone once- "Every positive thing has a equivalent negative thing or vice-versa" 
Lets Move to Whatsapp Hacking:-


1) Whats App Sniffer

WhatsApp Sniffer is a tool for root terminals to read WhatsApp conversations of a WIFI network (Open, WEP, WPA/WPA2). It captures the conversations, pictures / videos and coordinates that aresent or received by an Android phone, iPhone or Nokia on the same WIFI network.
It has not been tested with Windows Phone terminals. 
It can't read the messages written or received by the BlackBerry's, as they use their own servers and not WhatsApp's.

This application is designed to demonstrate that the security of WhatsApp's communications is null. 
WhatsApp Sniffer just use the TCP Dump program which reads all the WIFI network packets and filters those which has origin or destination WhatsApp's servers. 
All messages are in plain text, so it does not decrypt anything, complying fully with the legal terms of WhatsApp 
(3.C: "While we do not disallow the use of sniffers Such as Ethereal, tcpdump or HttpWatch in general, Any we do going efforts to disallow reverse-engineer our system, our protocols, or explore 
outside the boundaries of the ordinary requests made by clients WhatsApp .... ") 
For WPA/WPA2 encrypted networks, if uses the tool ARPSpoof (optional).


Things You Will Need:-

  1. A Rooted Android Device
  2. Your victim should use the same wi-fi through which you are connected
  3. Whats App Sniffer Root v1.03



2) Decrypting The Conversation

Have your victim locked his whatsapp? or you want all his conversation on your PC. 
Well Generally for security reasons WhatsApp encrypt Conversation while taking backup in SD Card or Phone Memory.
But i have found a tool on XDA that claims to decrypt all the whatsapp conversation down to your PC.
If you have some access over his device you can also send files from Bluetooth to your device and later read all the conversations.

This tool is called WhatsApp Xtract and for this all credits goes to ztedd

Some general advice on how to backup Whatsapp and get the database file:

Android:-

- In Whatsapp go to settings - more - Backup Chats
- Copy the folder "Whatsapp" on the SD card to your backup location (e.g., PC)
- (ideally also) use the app Titanium Backup to backup the full whatsapp application together with its data, copy the backup from the folder "TitaniumBackup" on the SD card to your backup location (e.g., PC)
- Use this tool Whatsapp Backup Extractor (download in this thread) to show the chats in a friendly readable format. The necessary files "wa.db" and "msgstore.db" you will find inside the Titanium Backup archive "com.whatsapp-[Date]-[some digits].tar.gz", alternatively (without Titanium Backup) you can use the msgstore.db.crypt file from the folder Whatsapp/Databases on the SD card.


iPhone


- use Itunes to create an unencrypted Backup
- use an Iphone Backup Tool to get the file net.whatsapp.WhatsApp/Documents/ChatStorage.sqlite, e.g. I-Twin or Iphone Backup Extractor. Make sure to create an unencrypted backup with Itunes, as these tools can't handle encrypted backups. Another possibility are forensic tools like UFED Physical Analyzer.)

Blackberry
- sync your blackberry with desktop manager and then copy the messagestore.db file from SD
- however, it seems that this file is encrypted? Currently we don't know how to get the unencrypted messagestore.db file
- Blackberry not supported yet!


Nokia
 - not known yet
- Nokia not supported yet! 
For Further Detail about this Method you can move to this Forum of XDA.


3) Using Spywares

Using 3rd Party Spywares can be very useful for spying not only WhatsApp Conversation but also many things like, you can able to Track GPS Location, you can capture the lock screen passwords and they can be also used for monitoring Websites. there are many spywares in the market but i recommend is BOSSPY
Because it's free :)
or you can Spy configuring BusyBox and Steps to do that are here.


Read Full »

Tuesday, May 13, 2014

MAKING A TIMER IN NOTEPAD

Tuesday, May 13, 2014 - 0 Comments

How To Make Simple Timer Using Notepad


With Notepad you can make a simple timer, just copy and paste this simple code below to
the Notepad, save as a *.bat file, then the timer is ready.

@echo off
color 0a
:1
pause
timeout 60
goto 1

Set /change the time what you need in second unit (red number on the code).
Open Notepad, copy and paste code/script above

Save as a bat file, on example I give the name : timer.bat
To run the timer, double-click on the bat file you saved.

Wednesday, April 09, 2014

SECURITY TIPS AND COUNTERMEASURES AGAINST MOST OF THE HACKING TECHNIQUES [DIGI]

Wednesday, April 09, 2014 - 0 Comments

SECURITY TIPS AND COUNTERMEASURES AGAINST MOST OF THE HACKING TECHNIQUES 











Hello friends, Well as you all know that this page is for Ethical hacking purpose too and most of our viewers are also good CEH 



But If any one hurts someone by hacking them for their enjoyment and to show their power , then it totally **WRONG**

HACKERS ALWAYS KEEP AN EYE ON YOU (VICTIM)
Well My this post is for those who are not aware of hacking and sometime get trapped in hacking..,

Today I will give some Security Tips against various hacking techniques by which you can protect your self from bad -black hats....





Password Hacking
  • Guessing the password 
To avoid password guessing attack do not keep your password such as your date of
birth, your fathers name etc.

  • Guessing the Secret answer 
Don’t keep your secret answer too simple. 
For example if your secret question is
“What's your Mother's birth place?” Now if the has some information about you
he can easily guess it. I recommend you keep the your secret answer as complicated
as possible.


  • Social Engineering 
Social Engineering attacks are really difficult to avoid, but however there are several
methods to avoid it.
1. Never give your password or your personal information to any company
representative unless and until your are sure about his/her identity.

2. Employees from companies from like Google , youtube, Hotmail etc will never ask
for your password.

3. Never assume that Phone call which appears to come from an organization is
original

4. If you are unsure that Email is original verify it by contacting the company.


  • Phishing 
Almost 80% of email accounts are hacked by this method the below steps
will help you to successfully avoid being victim of Phishing attack.

1. If you are an Internet explorer use I recommend you to use a Phishing filter it will
alert you every time you come across a Fake login page or Phisher site.

2. If you are a firefox user I recommend you using a firefox addon Secure login
What secure login does is it automatically skips the fake pages and hence securing
you from all kinds of Phishing Attacks.

3. Remember If on a secure page, look for “https” at the beginning of the URL and
the padlock icon in the browser.

4. Sites like paypal, Alertpay, Money Bookers will always call you with name instead
of “Dear Paypal user”, “Dear Valued customer” or other names like that.
Here are a few phrases to look for if you think an e-mail message is a phishing scam
1. Verify or update your account.
2. You have won a lottery.
3. If you don’t respond or update your information your account will be
closed in 24 hours.

  • Link Manipulation
To avoid being a victim of a Link manipulation attack always check the url of the
page before logging.

For example if you are logging into a Facebook account firstly check the url of the
phisher site may look like www.facebok.com or www.facebuk.com or something
like that. 
Alternatively you can use Phishing filter or Secure logging to protect your
self from a Link manipulation attack.


  • Desktop Phishing
To protect your self from being a victim of Desktop Phishing I recommend you using
the a program called Macros

As you know that In desktop Phishing the hackers
replace your Windows/System32/drivers/etc/hosts

What Macros does is it protects your host files, which prevents the desktop
phishing attack.



  • Tab Nabbing

The easiest way to avoid a tabnabbing attack is using firefox or chrome secure login and 

Phishing filter.


  • Keylogging
Keylogging is a easy to avoid if you have a good antivirus program installed.
However some skilled hackers use some methods like Crypting, Hexing,
Filepumping etc to make it hard for antivirus programs to detect it. 

So Antivirus alone 
wont protect you from keylogging you need a good antispyware program such as 
Spyware cease or Noadware. You can also use some anti logging programs such as 

For Firefox users I recommend you using Keyscrambler.
Keyscrambler is a unique antilogging program which scrambles your keystrokes so
the attacker will get the wrong keystrokes.


Password Cracking

  • Brute force and Rainbow tables

Brute force attacks and Rainbow tables attacks can be avoided by keeping a very long
and strong password. A strong password contains both lower case and upper case
alphabets also numbers and special characters. 
However there is a website
www.strongpasswordgenerator.com which automatically generates a strong
password for you.


  • Dictionary Attacks

In order to avoid a Dictionary attacks avoid keeping passwords which are already
present in dictionary such as immortal, cash, book etc.


Windows Hacking
  • Netbios Hacking 
To keep your computer safe from Netbios attacks make sure that File and Printer
sharing is disabled. In windows vista and latest versions the File and Printer sharing is disabled by
default, but in windows xp you need to disable it manually.

Follow the below steps to protect your computer from Netbios attacks:
1. Goto Start → Control panel → Network Connections

2. Double Click on the active connection

3. Click on Properties

4. Uncheck the “File and Printer sharing sharing for Microsoft
Networks” option.


Wireless(Wi-Fi) Hacking

  • ARP Poisoning Attack
Arpon (Arp Handler Inspection) is a portable handler daemon which protects that
makes ARP secure to avoid ARP Poisoning attacks. 

You also need to you a strong 
firewall such as zonealaram and commodo I personally recommend you using 
commodo firewall because it works best with ARP attacks by default ARP protection 
is disabled in commodo firewall you need to enable it, to enable it:-


Click on Firewall at 
the top bar and then 
Click Advanced button at the left pane. 



Go to Attack Detection Settings and 

check “Protect the ARP Cache”




  • Packet Sniffing
To prevent packet sniffing attack make sure that the sites important to you use SSL
Encryption. If SSL encryption is enabled the url will begin with https:// instead of
http://.


Website Hacking

  • SQL Injection
SQL Injection occurs when your web form accept special characters. 
The best way to 
avoid SQL Injection attack is to disallow spaces and special characters.


  • Cross Site Scripting
A Cross Site scripting attack can be prevented by following the steps below:-

1. Encode output based on input parameters.

2. Filter input parameters for special characters.

3. Filter output based on input parameters for special characters.



  • Remote File Inclusion
A Remote File Inclusion attack can be avoided by disabling register_globals and
allow_url_open in your sever php.ini file.



  • Local File Inclusion
Local File Inclusion attacks can be avoided by good coding practices and also by
disallowing any scripts to be uploaded on your server.



  • DDOS Attacks
Its truly very difficult to avoid a DDOS attacks web giants like Google , Yahoo and
Twitter have also been the victim of this attack. 
I suggest you to look for some 

services which could help you fight with this attack.


Malware and Rats
The easiest way to avoid getting infected with Malware you need to install a good
Antivirus and a good firewou all. 
For PC's with low configuration I recommend you 
using Avira or AVG antivirus and for computers with high configuration I 
recommend you using Avast , Norton, kaspersky or Mcafee Antivirus.



So Friends , Hope you liked this post and thank you for reading this 


BE COOL
BE SAFE!!



Sunday, April 06, 2014

INSIDE GOoGLE [ A COLLECTION OF 20+ STRANGE LINKS ]

Sunday, April 06, 2014 - 0 Comments

INSIDE gOoGLe

[ A COLLECTION OF 20+ STRANGE LINKS ]



Hello Friends , Hope You all are satisfied with Digi Hackers 
Well I think that 90% of You use Google and even download the stuffs. But friends have ever wondered something unusual things which yo can find in google.com ???
Well Today , This post of mine belongs to some strange Google Links...

Although Google is a search engine,it’s also a website.It has millions of it’s own pages indexed in it.When i was digging deep inside Google i found some strange links inside it.So I decided to compile a list of strange Google links. Enjoy!


So Friends , Lets Start...

1.If you ever wondered all the misspellings of Britney Spears and their volume, you must Check This Out


2.These two links are to fun Google games




3.Quench your thirst for knowledge with Google Gulp

4.Check out Google’s latest ideas Here

5.If you are fond of puzzles, Then you should  Check This Out

6.Tribute to Moms Only here

7.Google Mobile maps Is here

8. A Strange Link with no Description http://www.google.com/tofc/

9.Are you scary smart? Then Check This


10.Google press center is here

11.Check Out Google apps Here

12 Mind-racing problems. Then This One is Good

13.Doodle 4 Google Here

14.The virgle Check Complete here

15.Google Alerts Here

16.Urchin Software from Google Here

17.Google dictionary Check Here

18.Inside Google Should Check Here

19.Movie reviews Are Here

20.GOOGLE MARS Is Here

21.GOOGLE SKY Check Out here

22.Google’s next Coding Competition site Then Go here



28.Microsoft on google
 http://www.google.com/microsoft

29.GOOGLE MOON
 http://www.google.com/moon/

30.Google Linux
 http://www.google.com/linux






35.Google 3d warehouse
 http://www.google.com/sketchup/3dwh/

36.Google Adult content
 http://www.google.com/Top/Adult/

37.Google & Dilbert Doodle
 http://www.google.com/dilbert.html

38.Google in Kannada
 www.google.com/intl/kn/

29.Google strange logos
 http://www.google.com/doodle8.html
 

30.Win Registry files in google
 www.google.com/google_rsearch.reg

31.Google Universities Search
 http://www.google.com/options/universities.html

Subscribe

Donec sed odio dui. Duis mollis, est non commodo luctus, nisi erat porttitor ligula, eget lacinia odio. Duis mollis

© 2013 Old is Gold. All rights reserved.
Designed by SpicyTricks