Monday, October 11, 2010

UNLOCK THE SUPERSECRECT ADMINISTRATOR ACCOUNT FOR VISTA


Deep inside the bowels of Windows Vista, there’s a secret Administrator account, and it’s different from the normal administrator account you most likely have set up on your PC. This Administrator account is not part of the Administrator group. (Confused yet? You should be.) It’s a kind of superadministrator, akin to the root account in Unix, and by default it’s turned off and hidden. (In describing this tut, i’ll always use the capital “A” for the secret Administrator account, and a lowercase “a” for a normal administrator account.)

In versions of Windows before Windows Vista, the Administrator account wasn’t hidden, and many people used it as their main or only account. This Administrator account had full rights over the computer.

In Windows Vista, Microsoft changed that. In Vista, the Administrator account is not subject to UAC, but normal administrator accounts are. So the Administrator can make any changes to the system and will see no UAC prompts.
Turning on the Administrator account is straightforward. First, open command prompt by typing cmd into the run box on the Start menu, or by right-clicking the command prompt icon that appears at the top of the Start menu, then selecting Run as administrator.
Then enter this command and press Enter:
Net user administrator /active:yes
From now on, the Administrator account will appear as an option on the Welcome screen, along with any user accounts you may have set up. Use it like any other account. Be aware that it won’t have a password yet, so it’s a good idea to set a password for it.
If you want to disable the account and hide it, enter this command at an elevated command prompt and press Enter:
Net user administrator /active:no

ASSIGN A PERMANENT DRIVE LETTERS TO USB DRIVE

If you have multiple pen drives you might have noticed that every time you put in your drive it will be assigned a different drive letter. This can be very annoying, when you trying to open files of pendrive from some software as recent drive letter is changed you have to change address again. So now here is one solution for this problem assign permanent letter to your USB pendrive. Its very simple just follow given steps:


1]- Go to Start and then Run.

2]- Type Compmgmt.msc and hit Enter. Computer Management console will open up.

3]- In the menu on the left select Disk Management under the storage tab. You will now see all of your drives/partitions in the right hand side panel.

4]- Right click the USB drive you want to assign a permanent letter to and select Change Drive Letter and Paths.

5]- Click on Change.

6]- Assign any drive letter you want and click OK

7]- It will give a warning-you can ignore it since there are hardly any programs that depend on USB drive letters. But at the end of the day its your call, whether to go for it or not.

8]- The final step is to select File > Save and save the file in the default directory. Close the Console and you are done.

GTALK AS A FM RECEIVER AND VOIP PHONE



What is Gtalk 2 Voip ?
GTalk2VoIP is a free and publicly open voice gateway
for major Instant Messenger clients. It makes possible voice
interoperability between Google Talk, MSN/Live Messenger, Yahoo!
Messenger and SIP phones without any additional software installation.
How can I hear FM in Gtalk?
Teen Taal 110 a hindi Fm station which aims at delivering new hindi songs can now be heard right away from your google talk.
All you have to do is to follow the steps below:

* Open your Google talk and Sign in
* After Signing In, click the add button and add this id service@gtalk2voip.com
* After adding, add the second Id 110@radio.gtalk2voip.com
* After completion of the steps above, make a call to the second id i.e call to 110@radio.gtalk2voip.com
* Now you will directly be connected to Teen Taal Fm Station. (voice quality is average)

The first step of adding id would make you register the gtalk2voip service!
Other features of Gtalk2Voip:
* Make calls from Google Talk, Yahoo or MSN to any mobile or landline phone (PSTN)
* Make calls to other Google Talk, Yahoo! and MSN/Live Messenger users or SIP phones (SIP URI)
* Create voice conferences with other Google Talk, Yahoo! or MSN/Live Messenger users
* Send or receive voicemail from/to Google Talk, Yahoo! or MSN/Live Messenger users
* Receive calls to your Google Talk, Yahoo! or MSN/Live Messenger
from mobile or landline phones (PSTN) by using DIDs or via SIP Broker
service
* Receive calls from SIP phones, including Gizmo Project, InPhonex, SJPhone and others
* Send SIP/SIMPLE instant messages to SIP phones
How it works?
Some of the services I mentioned above may be chargeable while they
offer free incoming calls from sip phones to your gtalk, incoming call
from PSTN to your gtalk, making calls to other IMs etc.
So now you get a free incoming SIP number, PSTN access number for Gtalk etc which you can add on to build your business widely.
Gtalk 2 voip also provides support for mobile platform with their specially designed application called Talkonaut which helps them to access and enjoy their voip services from their handheld.

Tuesday, October 5, 2010

VLC PLAYER AND ITS POWER

For most people, VLC is the favorite media player because it plays everything they throw at it without hiccups. No hunting for codec. But VLC can do a lot of other things as well. Find out how many of these listed below you knew, and how many you did not.
1]- Rip DVDs: VLC includes a basic DVD ripper. You probably would never use it when there are better DVD rippers available, but it helps to know that you can in fact, get a decent quality DVD rip with VLC. To rip a movie follow these steps: Go to the Media menu and choose Convert/Save. Click on the Disc tab.
* Here you can adjust the Starting Position and rip only specific titles or chapters.
* Enter file name making sure to end with .MPG, and start ripping.
* Click Save.
2]- Record videos: With the new VLC, you can record videos during playback. The record button is hidden by default. To see it, click on View>Advanced Control. The record button will now appear. Clicking on the button while playing a movie or video will start recording. Clicking again will stop recording.
3]- Play RAR files: Do you know VLC can play videos zipped inside RAR files? They play like normal video files and you can even use the seek bar. If the RAR file is split into several files, no problem. Just load the first part (.part001.rar ) and it will automatically take the rest of the parts and play the whole file.
4]- Play in ASCII mode: VLC media player has an amusing ability, to playback movies in ASCII art. To enable ASCII mode, open VLC media player and click on Tools>Preferences. Open the section “Video” section and under “Output” select “Color ASCII art video output” from the drop down menu. Save it. Now play any video file to enjoy the ASCII art.
5]- Listen to online radio: VLC includes hundreds of Shoutcast radio stations. You just need to enable it through Media>Services Discovery>Shoutcast radio listings. Now, open the Playlist and browse through the stations.
6]- Convert Audio and Video formats: In VLC you can convert video and audio files from one format to another. Several different formats are supported like MP4, WMV, AVI, OGG, MP3 etc. To access the converter:
* Go to Media>Convert/Save.
* Load the file you want to convert using the Add button and click Convert.
* Now choose the output format and output file location.
7]- Download YouTube and other online videos: First grab the URL of the YouTube video page. Now click on Media>Open Network stream. Paste the URL and click Play.
Once VLC starts streaming the video, click Tools>Codec Information and at the bottom of the window you will see a Location box. Copy the URL and paste it on your browser’s address bar. The browser will now download the file which you can save it to your hard disk. Alternatively, you can record the video.

MAKE AN UNDELETEABLE FOLDER IN WINDOWS

It often happens that some of your folders contain very important data and you delete those folders by mistake. So why not make such folders UNDELETEABLE & avoid such mistakes..! [Works with Windows XP|Vista|Seven]
1]- Open CMD ( Type in Run option, the command ‘cmd’ or navigate to All Programs->Accessories-> Command Prompt)

2]- Change the directory to where you want to create the folder.Type ‘cd..’ to exit the current directory. As an example i will be creating the folder in C:, so i will use the ‘cd..’ command twice to navigate to C:
3]- Type md\lpt1\\ and press enter, the folder now will be in your C:

4]- If you try to delete it, it wont delete. This works on all version of windows.
5]- If you want to delete it just go to ‘CMD’, navigate to the directory and type
rd\lpt1\\ and press Enter.

GOD FOLDER IN WINDOWS 7


What is GOD Mode Folder?
It’s a folder packed with shortcuts to just about every settings change and administrative function in Windows 7. Everything you’ll find in the Action Center, Backup and Restore, Autorun, Desktop Gadgets, Devices and Printers — it’s all there. All dumped in one central location for easy access. Learn how to do it:


1]- Create a New Folder anywhere in the drive your Windows is installed(You can create a new folder in My Documents or Desktop..anywhere its your wish).
2]- After creating the New Folder, right click on it and rename it to-
GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
3]- You are done, you now have the GODMODE Folder with you. Enjoy all your powers!!
PS- It works with all versions of Windows 7, Works with Vista 32 bit as well, though I have heard that Vista 64 bit crashes on attempting this. So 64 Bitters with Vista Beware!

WHAT IS A CAPTCHA AND HOW IT WORKS?

CAPTCHA or Captcha (pronounced as cap-ch-uh) which stands for “Completely Automated Public Turing test to tell Computers and Humans Apart” is a type of challenge-response test to ensure that the response is only generated by humans and not by a computer. In simple words, CAPTCHA is the word verification test that you will come across the end of a sign-up form while signing up for Gmail or Yahoo account. The following image shows the typical samples of CAPTCHA.
 
Captcha
 
Almost every Internet user will have an experience of CAPTCHA in their daily Internet usage, but only a few are aware of what it is and why they are used. So in this post you will find a detailed information on how CAPTCHA works and why they are used.
 

What Purpose does CAPTCHA Exactly Serve?

CAPTCPA is mainly used to prevent automated software (bots) from performing actions on behalf of actual humans. For example while signing up for a new email account, you will come across a CAPTCHA at the end of the sign-up form so as to ensure that the form is filled out only by a legitimate human and not by any of the automated software or a computer bot. The main goal of CAPTCHA is to put forth a test which is simple and straight forward for any human to answer but for a computer, it is almost impossible to solve.
 

What is the Need to Create a Test that Can Tell Computers and Humans Apart?

For many the CAPTCHA may seem to be silly and annoying, but in fact it has the ability to protect systems from malicious attacks where people try to game the system. Attackers can make use of automated softwares to generate a huge quantity of requests thereby causing a high load on the target server which would degrade the quality of service of a given system, whether due to abuse or resource expenditure. This can affect millions of legitimate users and their requests. CAPTCHAs can be deployed to protect systems that are vulnerable to email spam, such as the services from Gmail, Yahoo and Hotmail.
 

Who Uses CAPTCHA?

CAPTCHAs are mainly used by websites that offer services like online polls and registration forms. For example, Web-based email services like Gmail, Yahoo and Hotmail offer free email accounts for their users. However upon each sign-up process, CAPTCHAs are used to prevent spammers from using a bot to generate hundreds of spam mail accounts.
 

Designing a CAPTCHA System

CAPTCHAs are designed on the fact that computers lack the ability that human beings have when it comes to processing visual data. It is more easily possible for humans to look at an image and pick out the patterns than a computer. This is because computers lack the real intelligence that humans have by default. CAPTCHAs are implemented by presenting users with an image which contains distorted or randomly stretched characters which only humans should be able to identify. Sometimes characters are striked out or presented with a noisy background to make it even more harder for computers to figure out the patterns.
Most, but not all, CAPTCHAs rely on a visual test. Some Websites implement a totally different CAPTCHA system to tell humans and computers apart. For example, a user is presented with 4 images in which 3 contains picture of animals and one contain a flower. The user is asked to select only those images which contain animals in them. This Turing test can easily be solved by any human, but almost impossible for a computer.
 

Breaking the CAPTCHA

The challenge in breaking the CAPTCHA lies in real hard task of teaching a computer how to process information in a way similar to how humans think. Algorithms with artificial intelligence (AI) will have to be designed in order to make the computer think like humans when it comes to recognizing the patterns in images. However there is no universal algorithm that could pass through and break any CAPTCHA system and hence each CAPTCHA algorithm must have to be tackled individually. It might not work 100 percent of the time, but it can work often enough to be worthwhile to spammers.

Monday, October 4, 2010

HOW TO USE WINDOWS 7 WITHOUT ACTIVATION

Most of you might be aware of the fact that it is possible to use Windows 7 and Vista for 120 days without activation. This is actually possible using the slmgr -rearm command which will extend the grace period from 30 days to 120 days. However in this post I will show you a small trick using which it is possible to use Windows 7 without activation for approximately an year! Here is a way to do that.
1. Goto “Start Menu -> All Programs -> Accessories” . Right click on “Command Prompt” and select “Run as Administrator“. If you are not the administrator then you are prompted to enter the password, or else you can proceed to step-2.
2. Now type the following command and hit enter slmgr -rearm
3. You will be prompted to restart the computer. Once restarted the trial period will be once again reset to 30 days. You can use the above command for up to 3 times by which you can extend the trial period to 120 days without activation.
4. Now comes the actual trick by which you can extend the trial period for another 240 days. Open Registry Editor (type regedit in “Run” and hit Enter) and navigate to the following location

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform

5. In right-side pane, change value of SkipRearm to 1. 6. Now you will be able to use the slmgr -rearm command for another 8 times so that you can skip activation process for another 240 days. So you will get 120 + 240 = 360 days of free Windows 7 usage.
120 days using “slmgr -rearm” command before registry edit +                                                                                                                                                                 
240 days using “slmgr -rearm” command after registry edit
 =      360 Days

HOW WINDOWS PRODUCT ACTIVATION (WAP) WORKS

Windows Product Activation

Windows Product Activation or WPA is a license validation procedure introduced by Microsoft Corporation in all versions of it’s Windows operating system. WPA was first introduced in Windows XP and continues to exist in Windows Server 2003, Windows Vista, Windows Server 2008 and Windows 7 as well. WPA enforces each end user to activate their copy of Windows so as to prevent unauthorized usage beyond the specific period of time until it is verified as genuine by Microsoft. How WPA really works was a closely guarded secret until GmbH analyzed WPA using a copy of Windows XP RC1 and published a paper on their findings.In this post you will find answers to some of the      most frequently asked questions about Windows Product Activation.
 

Why activation?

Microsoft’s intention behind the activation is to limit the usage of it’s Windows operating system to only one machine for which the retail license is issued. Any other computer which runs on the same license must be disallowed from using the software. Thus WPA demands for activation of the product within 30 days of it’s installation so as to ensure that it is genuine.
 

What does “Genuine Windows” means?

The copy of Windows is said to be genuine only if the product key used during the installation is genuine. It means that a given product key (retail license) must be used to install Windows only on one computer for which the license was purchased. Thus if the same key is used for the installation on another computer, then it is said to be a pirated copy.
 

Exactly what information is transmitted during the activation?

When you activate your copy of Windows you are transmitting an Installation ID code to the Microsoft either by phone or Internet depending on the method you choose to activate. Based on this, the Microsoft’s licensing system can determine whether or not the installed OS is genuine. If it is said to be genuine, then the system will receive the Activation ID which completes the activation process. If the activation is done via telephone then the Activation ID needs to be entered manually to complete the activation process.
 

What information does the Installation ID contain?

This Installation ID is a 50-digit number which is derived from the following two data.
1. Product ID – It is actually derived from the 25-digit product key (the alphanumeric value that is printed on the sticker over the Windows CD/DVD case) that is entered during the installation of the operating system. The Product ID is used to uniquely identify your copy of Windows.
2. Hardware ID – This value is derived based on the hardware configuration of your computer.
The WPA system checks the following 10 categories of the computer hardware to derive the Hardware ID:
  • Display Adapter
  • SCSI Adapter
  • IDE Adapter (effectively the motherboard)
  • Network Adapter (NIC) and its MAC Address
  • RAM Amount Range (i.e., 0-64mb, 64-128mb, etc.)
  • Processor Type
  • Processor Serial Number
  • Hard Drive Device
  • Hard Drive Volume Serial Number (VSN)
  • CD-ROM / CD-RW / DVD-ROM
Thus the Installation ID which is a combination of Product ID and Hardware ID is finally derived and sent to Microsoft during the activation process.
 

How is the Installation ID validated?

The Installation ID needs to be validated to confirm the authenticity of the installed copy of Windows. So after the Installation ID is received by Microsoft, it is decoded back so as to obtain the actual product key and the hardware details of the computer involved in the activation process.
The Microsoft’s system will now look to see if this is the first time the product key is being used for the activation. This happens when the user is trying to activate his Windows for the first time after purchase. If this is the case then the Installation ID is validated and the corresponding Activation ID is issued which completes the activation process.
However Microsoft system will now associate this product key with the hardware ID of the computer and stores this information on their servers. In simple words, during the first use of the product key, it is paired together with the Hardware ID and this information is stored up on the Microsoft servers.
 

What if a computer running a pirated copy of Windows attempts to activate?

 The activation fails whenever the copy of Windows installed is not said to be genuine. This usually happens when the product key used for the installation is said to have been used earlier on a different computer. This is determined during the activation process as follows:
During the validation of the Installation ID, the Microsoft’s system checks to see if the same product key was used in any of the previous activation processes. If yes then it looks to see the Hardware ID associated with it. The computer running a pirated copy of Windows will obviously have a different hardware configuration and hence the Hardware ID will mismatch. In this case the activation process will fail.
Thus for a successful activation, either of the following two cases must be satisfied:
  1. The product key must have been used for the first time. ie: The product key should not have been used for earlier activations on any other computer.
  2. If the product key is said to have been used earlier, then the Hardware ID should match. This happens only if the same computer for which the license was genuinely purchased is attempting for subsequent activation.
 

What about formatting the hard disk?

Each time the hard disk is reformatted and Windows is re-installed, it needs to be re-activated. However the activation process will be completed smoothly since the same computer is attempting for subsequent activation. In this case both the product key and the Hardware ID will match and hence the activation becomes successful.
 

What is I upgrade or make changes to my hardware?

In the above mentioned 10 categories of hardware, at least 7 should be the same. Thus you are allowed to make changes to not more than 3 categories of hardware. If you make too many changes then your activation will fail. In this case, it is necessary to contact the customer service representative via phone and explain about your problem. If he is convinced he may re-issue a new product key for your computer using which you can re-activate your Windows.
 

Some things WPA does not do

  • WPA does not send any personal information at all about you to Microsoft. There is still an option to register the product with Microsoft, but that is separate and entirely voluntary.
  • If you prefer to activate via phone, you are not required to give any personal information to Microsoft.
  • WPA does not provide a means for Microsoft to turn off your machine or damage your data/hardware. (Nor do they even have access to your data). This is a common myth that many people have about Microsoft products.
  • WPA is not a “lease” system requiring more payments after two years or any other period. You may use the product as licensed in perpetuity.
I have tried my best to uncover the secret behind the WPA. For further details and more technical information you can read the actual paper by Fully Licensed GmbH at http://www.licenturion.com/xp/fully-licensed-wpa.txt.

Tuesday, April 13, 2010

THINGS THAT FIREFOX CAN DO FOR YOU.

There are hundreds of things that Firefox can do. Extensions can enhance your Firefox, but browsing through hundreds of extensions can be time consuming and some of them are useless.
What are the most popular and most functional Firefox extenstions ?
  1. Block ads on webpages : Adblock Plus
  2. Use mouse gestures (powersurfing) : All-in-One Gestures
  3. Download manager in a statusbar : Download Statusbar
  4. Customize Google pages; remove ads : CustomizeGoogle
  5. Discover interesting sites being recommended by others : StumbleUpon
  6. Manage tabs (multiple links/duplicate/close etc ) : Tab Mix Plus
  7. Look up any word in dictionary : Answers
  8. Translate pages : Translator
  9. Download videos : Video DownloadHelper
  10. Block Flash ads or content : Flashblock
  11. Blog about the current page : Performancing for Firefox
  12. Clear the cache with one click on the toolbar : Clear Cache Button
  13. Surf the web without leaving a trace in my computer : Stealther
  14. View an Internet-Explorer-only webpage in Firefox : IE Tab
  15. See weather information : ForecastFox
  16. Download/upload files using ftp : FireFTP
  17. Speed up Firefox : Fasterfox
  18. Blog to Blogger service : BlogThis
  19. Synchronize Firefox bookmarks on different computers : Bookmarks Synchronizer
  20. Bypass mandatory registration of username and password for sites : BugMeNot
  21. Be notified when new mail arrives at Gmail account : Gmail Notifier
  22. See thumbnails of pages in session history : Reveal
  23. Store and sync bookmarks online : Chipmark
  24. Chat on the Internet Relay Chat (IRC) : ChatZilla
  25. Minimize Firefox to system tray : MinimizeToTray
  26. Use Gmail for space : Gmail Space
  27. Add/remove/change some features for sites : GreaseMonkey
  28. Block phishing sites : NetcraftToolbar
  29. Control iTunes using Firefox : FoxyTunes
  30. Use a sidebar to control multiple functions : All-in-One Sidebar
  31. Open PDF files in a new tab : PDF Download
  32. Save all the images/media on a page : Magpie
  33. Zoom in/out on an image : Image Zoom
  34. Search the bookmarks : Locate in Bookmark Folders
  35. Manage user styles for sites : Stylish
  36. Edit bookmarks easily : Flat Bookmark Editing
  37. Download/open all/selected links on a page : Linky
  38. Add a powerful multi-functional preference bar : PrefBar
  39. Add more search engines to Firefox search box : Mycroft
  40. Create a tiny url : TinyUrl Creator
  41. Track time spent browsing / on a project : TimeTracker
  42. Add RSS feeds to web-based/desktop readers or reader extensions : LiveLines
  43. Search up to 25 custom chosen sites : Roll your Own Search for Firefox
  44. See Alexa information, search engine backlinks for a page : SearchStatus
  45. Fill web forms with name/address/email etc : Autofill
  46. See all tabs in one window : Viamatic foXpose
  47. Automatically copy the selected text to clipboard : AutoCopy
  48. Change user agent for certain sites : User Agent Switcher
  49. Find the meaning of selected word in a dictionary : DictionarySearch
  50. Create new different passwords for different sites : PasswordMaker

Wednesday, December 9, 2009

PASSWORD HACKING


Password cracking is the process of recovering secret passwords from data that has been stored in or transmitted by a computer system. A common approach is to repeatedly try guesses for the password.
Most passwords can be cracked by using following techniques :

1) Hashing :- Here we will refer to the one way function (which may be either an encryption function or cryptographic hash) employed as a hash and its output as a hashed password.
If a system uses a reversible function to obscure stored passwords, exploiting that weakness can recover even 'well-chosen' passwords.
One example is the LM hash that Microsoft Windows uses by default to store user passwords that are less than 15 characters in length.
LM hash breaks the password into two 7-character fields which are then hashed separately, allowing each half to be attacked separately.


Hash functions like SHA-512, SHA-1, and MD5 are considered difficult  to invert when used correctly.



2) Guessing :- Many passwords can be guessed either by humans or by sophisticated cracking programs armed with dictionaries (dictionary based) and the user's personal information. Not surprisingly, many users choose weak passwords, usually one related to themselves in some way. Repeated research over some 40 years has demonstrated that around 40% of user-chosen passwords are readily guessable by programs. Examples of insecure choices include:
* blank (none)
* the word "password", "passcode", "admin" and their derivatives
* the user's name or login name
* the name of their significant other or another person (loved one)
* their birthplace or date of birth
* a pet's name
* a dictionary word in any language
* automobile licence plate number
* a row of letters from a standard keyboard layout (eg, the qwerty keyboard -- qwerty itself, asdf, or qwertyuiop)
* a simple modification of one of the preceding, such as suffixing a digit or reversing the order of the letters.
and so on....
In one survery of MySpace passwords which had been phished, 3.8 percent of passwords were a single word found in a dictionary, and another 12 percent were a word plus a final digit; two-thirds of the time that digit was.

A password containing both uppercase &  lowercase characters, numbers and special characters too; is a strong password difficult  to guessed.



3) Default Passwords :- A moderately high number of local and online applications have inbuilt default passwords that have been configured by programmers during development stages of software. There are lots of applications running on the internet on which default passwords are enabled. So, it is quite easy for an attacker to enter default password and gain access to sensitive information. A list containing default passwords of some of the most popular applications is available on the internet.


Always disable or change the applications' (both online and offline) default username-password pairs.

4) Brute Force :- If all other techniques failed, then attackers uses brute force password cracking technique. Here an automatic tool is used which tries all possible combinations of available keys on the keyboard. As soon as correct password is reached it displays on the screen.This techniques takes extremely long time to complete, but password will surely cracked.


Long is the password, large is the time taken to brute force it.

5) Phishing :- This is the most effective and easily executable password cracking technique which is generally used to crack the passwords of e-mail accounts, and all those accounts where secret information or sensitive personal information is stored by user such as social networking websites, matrimonial websites, etc.
Phishing is a technique in which the attacker creates the fake login screen and send it to the victim, hoping that the victim gets fooled into entering the account username and password. As soon as victim click on "enter" or "login" login button this information reaches to the attacker using scripts or online form processors while the user(victim) is redirected to home page of e-mail service provider.


Never give reply to the messages which are demanding for your username-password, urging to be e-mail service provider.

It is possible to try to obtain the passwords through other different methods, such as social engineering, wiretapping, keystroke logging, login spoofing, dumpster diving, phishing, shoulder surfing, timing attack, acoustic cryptanalysis, using a Trojan Horse or virus, identity management system attacks (such as abuse of Self-service password reset) and compromising host security.
However, cracking usually designates a guessing attack.

REAL TIME SEARCH

Google just revealed real-time search.


If you’re wondering how to enable it, well… Real time search will be available for everyone in a few days. If it’s still not active for you, just do the following:
  • Go to www.google.com
  • Search for something
  • Edit the URL so it contains: &esrch=RTSearch&tbs=rltm%3A1. For example, if the URL you’re getting is something like:
http://www.google.com/search?q=apple
Just change it to:
http://www.google.com/search?q=apple&esrch=RTSearch&tbs=rltm%3A1
As you can easily notice, the trick is just to set a couple of GET parameters. If you use Firefox, you can add these parameters automatically for every search. Just:
  • Open Firefox
  • Go to: Bookmarks -> Organise Bookmarks…
  • Double click on Bookmarks Menu
  • Organise -> New Bookmark…
  • Name: Google
  • Location: http://www.google.com/search?q=%s&esrch=RTSearch&tbs=rltm%3A1
  • Keyword: g
That’s it. Now simply go to your Firefox main window and simply type:
g apple
as the URL, where apple is what you’re searching for.
Enjoy!

Tuesday, December 8, 2009

WINDOWS XP PASSWORD CRACKING

Here we use the tool "Cain and Abel" for cracking passwords of any local user/administrator.
First download cain and abel from "http://www.oxid.it/cain.html" and install it on your system.

Make sure that you have disabled the antivirus/firewall running on your system before installing and throughout this process.

Two most effective techniques used here are "Brute-Force" and "Cryptanalysis".

Brute-Force:- As this techniques takes more time to complete, the attacker prefer this technique only when there is a hope that the password contain same type of characters or may be two. i.e only loweralpha, only alpha, only numeric or may be loweralpha-numeric, also it should contain less than 7 characters. Otherwise it takes more time to crack password, which may be the mixture of all types of characters along with special symbols.
The step-by-step explaination for this technique is given below-

1) Open the tool "Cain and Abel"  


















2) Go into the category "Cracker"     it displays all sub-categories under "Cracker" in left panel.

















3) Select "LM & NTLM Hashes" from left panel and then click on     symbol, you will be greeted by a window as shown.

















4) Check "import hashes from local system" and then click "Next". This shows all the active accounts on local system like administrator, guest, etc. along with LM and NT hashed values of their respective passwords, as shown below.

















5) Right clicking on any username shows all available options using which we can crack it's password.

















6) Here we select "Brute-Force Attack" and then "NTLM Hashes", since windows uses NTLM hashes to store local users' passwords.

7) You will be greeted by a window where you can modify properties for brute-force attack such as password length, character set, etc.

















8) Click on "Start" button.


















9) On completion it will reveal the exact password.





Cryptanalisys :- Basically, Cryptanalisys means Operations performed in converting encrypted messages to plain text without initial knowledge of the crypto-algorithm and/or key employed in the encryption.
This is the fastest technique of password cracking possible due to "Rainbow Tables".
A rainbow table is a file that is used to lookup an unknown plaintext from a known hash for an algorithm that does not usually permit this operation.
Steps 1 to 4 i.e upto importing hashes from local system, are similar to previous technique (i.e brute-force). The steps coming after that are as follows-

5) Here, select "cryptanalisys attack" then "NTLM hashes" and then select "via rainbow tables". Here we can choose either OphCrack or RainbowCrack formats of tables. The rainbow tables are available free to download on internet.
Due to large file size of rainbow tables (350MB - 3GB); instead of downloading we can also create at own just by downloading rainbow table generator (winrtgen.zip of 181KB) free download at "http://www.oxid.it/downloads/winrtgen.zip"


















6) Click on "Add Table"

















7) Browse for the location of rainbow table on your system, select proper table and click "open".

















 8) Select the loaded table and then click on "Start" button.






 9) On completetion it will show the
exact password.





















To learn windows password cracking techniques properly, one must understand "LM" & "NTLM" algorithms, SAM File, Dumping NTLM hashes from local SAM, Rainbow Tables, etc.......!

INTRUSION DETECTION SYSTEM (IDS)

An intrusion detection system (IDS) is software and/or hardware based system that monitors network traffic and monitors for suspicious activity and alerts the system or network administrator. In some cases the IDS may also respond to anomalous or malicious traffic by taking action such as blocking the user or source IP address from accessing the network.

Typical locations for an intrusion detection system is as shown in the following figure -

ids


Following are the types of intrusion detection systems :-

1) Host-Based Intrusion Detection System (HIDS) :- Host-based intrusion detection systems or HIDS are installed as agents on a host. These intrusion detection systems can look into system and application log files to detect any intruder activity.

2) Network-Based Intrusion Detection System (NIDS) :- These IDSs detect attacks by capturing and analyzing network packets. Listening on a network segment or switch, one network-based IDS can monitor the network traffic affecting multiple hosts that are connected to the network segment, thereby protecting those hosts. Network-based IDSs often consist of a set of single-purpose sensors or hosts placed at various points in a network. These units monitor network traffic, performing local analysis of that traffic and reporting attacks to a central management console.

Some important topics comes under intrusion detection are as follows :-

1) Signatures - Signature is the pattern that you look for inside a data packet. A signature is used to detect one or multiple types of attacks. For example, the presence of “scripts/iisadmin” in a packet going to your web server may indicate an intruder activity. Signatures may be present in different parts of a data packet depending upon the nature of the attack.

2) Alerts - Alerts are any sort of user notification of an intruder activity. When an IDS detects an intruder, it has to inform security administrator about this using alerts. Alerts may be in the form of pop-up windows, logging to a console, sending e-mail and so on. Alerts are also stored in log files or databases where they can be viewed later on by security experts.

3) Logs - The log messages are usually saved in file.Log messages can be saved either in text or binary format.

4) False Alarms - False alarms are alerts generated due to an indication that is not an intruder activity. For example, misconfigured internal hosts may sometimes broadcast messages that trigger a rule resulting in generation of a false alert. Some routers, like Linksys home routers, generate lots of UPnP related alerts. To avoid false alarms, you have to modify and tune different default rules. In some cases you may need to disable some of the rules to avoid false alarms.

5) Sensor - The machine on which an intrusion detection system is running is also called the sensor in the literature because it is used to “sense” the network.

Snort :- Snort is a very flexible network intrusion detection system that has a large set of pre-configured rules. Snort also allows you to write your own rule set. There are several mailing lists on the internet where people share new snort rules that can counter the latest attacks.

Snort is a modern security application that can perform the following three functions :

* It can serve as a packet sniffer.
* It can work as a packet logger.
* It can work as a Network-Based Intrusion Detection System (NIDS).

Further details and downloads can be obtained from it's home- http://www.snort.org

HIDE ENTIRE DRIVES PARTITON WITHOUT REGISTRY

Here is a cool technique which hides entire hard disk drives by a simple procedure.
This is the best security tip to be employ against unauthorised users.

1) Go to Start > Run > type "diskpart".
A DOS window will appear with following description.

DISKPART>

2) Then type "list volume"
The result will look something like one as shown below-


3) Suppose you want to hide drive E then type "select volume 3"
Then a message will appear in same window { Volume 3 is the selected volume}

4) Now type "remove letter E"
Now a message will come { Diskpart Removed the Drive letter }

sometime it requires to reboot the computer.
Diskpart will remove the letter.

Windows XP is not having capabilty to identify the unknown volume.
Your Data is now safe from unauthorised users.

To access the content of hidden Drive repeat the process mentioned above. But in 4th step replace " remove" by "assign".
It means type "assign letter E".

HACKING MINESWEEPER BY DLL INJECTION

You can hack Microsoft Minesweeper by DLL Injection Technique.
Dynamic DLL Injection is nothing but the injection that occurs after the program is executed. This technique is used by trojans & virus. When an attacker attempts to load code in process memory, then he is using Dynamic Injection.
It is working in Windows XP Service Pack 2.

Tools Required:
1) Hack.dll [Download]
2) Advance Process Manipulation [Download]

Steps to Hack Minesweeper:
  • Start Minesweeper (Start->All Programs->Games->Minesweeper)
  • Start APM (Advance Process Manipulation)
  • Select "c:\windows\system32\winmine.exe"



  • Right click on the module window in the lower half



  • Then select "Load DLL" and select the Hack.dll, from where you have saved it in your computer.
  • If you have done every thing right, you will get this window "Dll Injection, Sucessfull" Click OK there.



  • After that you will get a window "Success, C:\Hack.dll has been loaded". Click OK.



  • Now, start playing Minesweeper.
  • Now you can close Advance Process Manipulation Software otherwise you can continue also.
  • Wow you have hacked minesweeper sucessfully. You will notice the timer has stopped after 01 seconds. Take as much time you need to complete the game.

     
    After finishing your game . Select Hack.dll from the modules window and unload it. Otherwise close Advance Process Manipulation Software.

Monday, December 7, 2009

CLICKJACKING

Definition :-
"Clickjacking is a malicious technique of tricking web users into revealing confidential information or taking control of their computer while clicking on seemingly innocuous web pages." - Wikipedia

Introduction :-
A vulnerability across a variety of browsers and platforms, a clickjacking takes the form of embedded code or script that can execute without the user's knowledge, such as clicking on a button that appears to perform another function.
The long list of vulnerabilities involves browsers, Web sites and plug-ins like Flash.

How It Works? :-
ClickJacking is a little bit difficult to explain however try to imagine any button that you see in your browser from the Wire Transfer Button on your Bank, Post Blog button on your blog, Add user button on your web-site, Google Gadgets etc.
ClickJacking gives the attacker to ability to invisibly float these buttons on-top of other innocent looking objects in your browser.
So when you try to click on the innocent object, you are actually clicking on the malicious button that is floating on top invisibly.

In other words, the attack is thrown by a malicious web page embedding objects, possibly from a different site, such as framed documents or plugin content (Flash, Silverlight, Java…) which may lead to unwanted results if clicked by the current user (e.g. a “Delete all messages” button in your webmail or an advertisement banner in a click fraud scheme). Using DHTML, and especially CSS, the attacker can disguise or hide the click target in several ways which go completely undetected by the user, who’s easily tricked into clicking it in a more or less blind way.

JavaScript increases the effectiveness of these attacks hugely, because it can make our invisible target constantly follow the mouse pointer, intercepting user’s first click with no failure.
We can however imagine a few less effective but still feasible scriptless scenarios, e.g. covering the whole window with hidden duplicates of the target or overlaying an attractive element of the page, likely to be clicked (e.g. a game or a porn image link), with a transparent target instance.

Examples :-
1) Malicious camera spying using Adobe's Flash.
2) Flash, Java, SilverLight, DHTML Game or Application used to Spy on your Webcam and/or Microphone.




The best defense against ClickJacking attacks is to use Firefox with the NoScript add-on installed.


 NoScript 1.8.9.2
Allow active content to run only from sites you trust,
and protect yourself against XSS and Clickjacking attacks...!

Saturday, September 5, 2009

HIDE YOUR HDD PARTITIONS

Hide your HDD partitions
1. Go to Start ,go to run type “diskpart”.
a dos window will appear with following like that
DISKPART

2. Then type “list volume” without quote
It will look like this.

Volume### Ltr Label Fs Type Size Status Info
————– —- —— — —– —- ——- —–

Volume 0 F CD-ROM
Volume 1 C NTFS Partition 7000MB Healthy
Volume 2 D soft NTFS Partition 8000MB Healthy
Volume 3 E ---- NTFS Partition 8000MB Healthy

3. If u want to hide drive E then type “select volume 3″ without quote

then a message will appear in same winwods { Volume 3 is the selected volume}

4.now type ” remove letter E” without quote
now a message will come { Diskpart Removed the Drive letter }
sometime it requires the reboot the computer .

Diskpart will remove the letter .Windows XP is not having capabilty to
identify the unkown volume.

Don’t afraid ur Data will ramin same .To Come back the Drive
repeat the process .But in 4th step which is shown in this
post replace ” remove” to “assign” means type ” assign letter E”
without quote The above method won’t work for the drive containing
Operating System and it can also be done using
System Manager;Storage Manager.

Friday, September 4, 2009

SHELLCODES - A QUICK REFERENCE FOR BEGINNERS

SHELLCODE :

Shellcode is a snippet of machine code used as a payload during the exploitation of a software bug. During the modification of a particular program’s stream or flow rate, shellcodes become the protraction of the program. Shellcodes are commonly used during the implementation of software vulnerabilities like Stack Overflows, Heap Overflows, Integer Array Overflows, File Stream Overflows and Format String Attacks.

Shellcodes are really handy during the exploitation of local application bug. Basically, it helps the attacker in getting access to the victim’s box. Accession to the system is provided by the following ways:

By spawning victim’s local shell (either /bin/sh or cmd.exe)
By binding a shell to a specific remote shell
By adding a user with root privileges to the victim’s box

DEFENSE AGAINST SHELLCODES :

To defend a particular system from the effectuation of shellcodes, vendors have initiated developed several strong defenses against shellcode. Let enlist the most common defenses adopted by the white hats to counter shellcodes:

1)Intrusion Detection Systems: Mainly three different types of Intrusion Detection System:

 NIDS: Network IDS grabs network datagrams from the ongoing network traffic and analyzes attack patterns. It uses the Wire Diagnosing method. Let me elucidate this part.

Wire Diagnose scrutinizes ongoing network traffic before reaching the source destination.
It scrutinizes for known attack patterns.
Intensity of this method depends on the nature of the rules amassed by the administrator.

NIDS also utilizes method called Runtime Diagnose. A bit explanation about this method:

Assesses the output generated after the execution of a particular code.
Usually checks the output for known attack patterns.

HIDS: Host IDS analyzes attack patterns in actions committed by the local user.


AIDS: Application IDS analyzes all types of input data diffused into an application

2)Intrusion Prevention System: Sandbox

3) Different Buffer Size: Protocol enforces different buffer sizes.

4) Standard Path Transfer: Transfer of important file paths. *nix variants and BSD allows users to reorganize the system layout.
An obstruction a restriction that bars the implementation of shellcodes is the size limitation.

How Shellcodes break these defenses

Shellcodes allow the attacker to execute almost anything they wish to do. The attacker only has to concentrate on the coding part. Anyway, let enlist some steps used by attackers to counter the defenses I mentioned in the previous section:

1) Wire Diagnosing Method: This method can be easily compromised by the following techniques:

Polymorphism aka Shellcode Encoding: Masquerades the bytes by Shellcode Encoding. The encoding can     later be decoded.

Tunneling through VPN/SSL: This technique makes the payload almost impossible to decode.


2) Runtime Diagnose Method: This method can be easily compromised by the following technique:

Anti-Debug: Emplaces Anti-debug tricks into the shellcode to counter debugging options.

3) Countering Size Limitations: Partitioning special operations into smaller segments that permit you to create a program channel.

2 HIDDEN WAYS TO GET MORE FROM GMAIL ADDRESS

Some little known ways to use your Gmail address that can give you greater control over your inbox and save your some time and headache. When you choose a Gmail address, you actually get more than just "yourusername@gmail.com." Here are two different ways you can modify your Gmail address and still get your mail.


Append a plus ("+") sign and any combination of words or numbers after your email address. For example, if your name was piyushfan@gmail.com, you could send mail to piyushfan+friends@gmail.com or piyushfan+mailinglists@gmail.com.

Insert one or several dots (".") anywhere in your email address. Gmail doesn't recognize periods as characters in addresses -- we just ignore them. For example, you could tell people your address was piyush.fan@gmail.com, piyush.fan@gmail.com or pi.yu.shfan@gmail.com.

The real value in being able to manipulate your email address is that it makes it really easy to filter on those variants. For example you could use piyushfan+bank@gmail.com when you sign up for online banking and then set up a filter to automatically star, archive or label emails addressed to piyushfan+bank. You can also use this when you register for a service and think they might share your information.