Showing posts with label Password Crackers. Show all posts
Showing posts with label Password Crackers. Show all posts

Wednesday, May 18, 2022

How to crack IIS FTP password using Brute-Force

How to crack IIS FTP password using Brute-Force

FTP is an application or service or protocol  which can be used to transfer files from one place to another  place ,it really comes very handy  during transfer of files from a local box to a remote one .Suppose someone get access to your FTP then he/she can cause nightmare for you by uploading  unappropriate images or files etc.Here we will discuss how we can crack the password of IIS installed FTP service in Windows.


What is Brute-Force?

Brute-force is a type of attack in which every  possible combination of letters, digits and special characters are  tried until the right password is matched  with the username. The main limitation of this attack is its time factor. The time it takes to find the proper match mainly depends on the length and complexity of the password.Here I will be using this attack to crack the password.So,lets start….
Requirements:
  1. The tool we will be using  ” BrutusA2”(Download: http://www.hoobie.net/brutus/)
  2. You need to know the target suppose “ftp://123.123.xx.xxx”

Procedure:

Step 1.Here I have shown an authentication page of an FTP service in the image below and in the following steps we will crack its password using brutus.

Step 2.Now open up “Brutus” and type  your desire target ,select wordlist and select “FTP” from the drop down menu  and click start. If you are confused then follow the image below.


Step 3.The time it takes as I mentioned above depends on the complexity and length of the password.So after clicking the start button wait for the time as mentioned in the tool.The password will be displayed as shown above.
Recommendation: I would recommend the readers to try it in a virtual environment as I did and enjoy the trick.It is not advisable to try it on some unknown user without prior permission.

Hacking Cell Phones


Most people know about that nice little menu on Nokia cellies, the
*3001#12345# menu. You have access to cool menus, the setup of the phone, and the coolest, the field test. That without a doubt in my
mind is one of the coolest things I have seen on a cell. Sure, those
bars on the side of the LCD are useful, but i want to know the exact
Db level. Anyways, go up to NAM 1. Theres a bunch of lists there,
which I wouldn't recommend fuckin' with. Going down further, you see
something called P/RSID lists. Open it up, and go down to alpha tag.
Entering stuff in this tag will allow you to put text on the front
of the phone! Of course, you have to enter in the info for your
provider in the other spaces provided, but that won't take too long.
On some companies, this won't work, so tough luck if it doesn't.

Security (or lack there of)

Go find a friend's phone. Is it "locked"? Not any more. Go back to
the *3001 menu, which is accessible even if the phone is locked, and
go to the security menu. Using the number provided, you can get into
the phone. Simple enough.

Call Forwarding

First I must give props to Vicious for giving me the idea.
Call forwarding, if your brain dead, allows you to forward your cell
number to any other number you want, well, at least I would believe
so. The code for forwarding can be found from the friendly operator,
or even in some spam the company sent ya trying to hype new services
you don't need. There are two types of forwarding, call waiting and
constant. Call waiting only forwards when you your on the phone, so
you can send it to a vmail box, and constant is self-explainatiory.
So, why not get two phones, and call forward them two each other! I
have tried this, with interesting results. If you call forward two
cells on the same provider, the cell site figures this out and the
call is stopped almost immideately. But, if you use two different
providers, then it will last forever in a loop. Granted, the call
won't go anywhere, and I didn't hear anything cool when I did it,
but still fun.

So go out there and have some fun with one of the most useful and
annoying devices on this planet!

PS: If the phone is locked out, or you haven't been paying the bills,
then the only two numbers to dial are 911 and *611. *611 is tech
support, so it might be different for you. And props to Tripp for
http://www.cellularsecrets.net.

Nokia Phone Secrets


First things first, Nokia is a worldwide Corporation which owns 36% of the market share. So no doubt alot of you own a Nokia mobile, whether it be CDMA or GSM.

CDMA : Is a phone which does not need a sim card to run, it just stores everything on the phone.
GSM : Is a phone which has a SIM card (like Vodafone)

There are several codes that you can use on Nokia's, i will run through these in this article.
(Stand-by mode is the main/home screen which displays your battery charge and signal)

(NOTE: The Service Programming Menu only works on CDMA phones)
----------------------------------------------------------------------------------------------

1. Service Programming Menu - *3001#12345#

This menu is the mother of all Nokia codes, you can edit your phone like mad here, most of these menus your service provider probably doesn't want you to have the ability to do. So here we go.

On stand-by mode, type in *3001#12345# and wait a few seconds for it to load up. Once the screen comes up you will have several options, all with different functions. (NOTE: this menu differs on different phones.)

1. NAM 1
2. Change SPC
3. Security
4. Server addr.
5. SW version
6. Serial number
7. Programmed
8. Field test

----------------------------------------------------------------------------------------------

1. NAM 1 (* means explained below)

This is the most useful menu your phone has, it allows you to edit the heck out of your phone! inside NAM 1 there are these different menus:

Own number*
Mobile ID number
A-key code
Alpha tag*
Emergency*
Service No.
CDMA settings
NAM status

Own number:
Self explanitory, but if you want a new number then this is where you want to go. Just enter this menu followed by the SPC (see Change SPC) then change your number. This DOES work, but the new phone number you want must not already be in use.

Alpha tag:
You know on the standby screen, there's the "Vodafone" or "Telecom" or "T-Mobile" that appears? well now you can get rid of that annoying tag. Change this to whatever you please, just to make your phone more personalised.

Emergency:
This menu is basically a menu which displays all the numbers that will divert to the emergency number of your area. For example, if you live in USA and your emergency number is 911, in this menu there will be "911","811", "991" and the obvious numbers that you may type in while trying to reach 911. It's smart not to mess with these, because you never know when you'll be in an emergency. There should be some free slots so why not add in a couple more numbers that you want to divert to your emergency?
Some people think "Wow! emergency number! that calls for free, so maybe if i put in my friends number then it will give me free calls to him/her!" WRONG. This menu can NOT give you free calls. If you were to put in your friends number, then whenever you called them you would end up calling the emergency line - as that's what you're diverted to! REMEMBER THIS!

----------------------------------------------------------------------------------------------

2. Change SPC

The SPC is the Service Programming Code. This code is rather hard to come across, as the service providers try to hide it from the public so they can't access these places on their phones. But luckily enough if you live in New Zealand then here is the code :)

147359 - Is the default code that will let you into 'almost' anything
665*** - Is the 'master' code, that will let you into anything you like.

(The *** is the last 3 digits of your Nokia model, for example: If your Nokia was model number '8734', then your master code will be '665734'. The 665 is the default number for the Nokia company.)

So, this menu just means you can change the code. NOTE: Some mean stores when you buy the phone tend to access this menu and change it so that the owner can't access it :( that is not always the case though, so try it out!

----------------------------------------------------------------------------------------------

3. Security

This menu just shows you the security code that is installed on your phone, couldn't be more bland.
FUN TRICK: why not have a look at your friend/work mates' phone and access this menu, you could then see their security code or change it just for fun :) But we're nice people and that's naughty, so we arn't going to do that are we..

----------------------------------------------------------------------------------------------

4. Server addr.

This is the server address of your service provider. Nothing you can do here.

----------------------------------------------------------------------------------------------

5. SW version

Once again, another menu with not alot of meaning. All you can do in here is check out when your phone was activated, and what version software it is running. This can also be accessed on GSM phones (see below)

----------------------------------------------------------------------------------------------

6. Serial number

This is your serial number. DUH.
It would be a wise idea to jot this down somewhere safe, because this could be useful. If your phone was ever lost or stolen then you could contact your service provider and give them this code. This would let them shut the phone down so that your robber couldn't use your phone - or access anything on it for that matter.

----------------------------------------------------------------------------------------------

7. Programmed

This is just a menu that you can only access once, which lets you type in when your phone was programmed.

Seem like the menus are getting lamer? Wait for the next one..

----------------------------------------------------------------------------------------------

8. Field Test

This is an option which is quite cool really. Go into Field test and change "Disabled" to "Enabled". Then get out of the whole service programming menu.
Now, turn your phone off, and back on again.
Once it loads up go to your normal menu and scroll to the bottom. Notice you have just added a new menu to your phone? It is called Net Monitor.
Net Monitor speaks for itself, with this option you can monitor your network to a small extent.
Enter Net Monitor and it will prompt you with "Group/display:" enter in 3101 and press OK.
It should take you back to your standby screen, nothing will have changed. But wait a few seconds and then all these numbers will appear on your screen. What do they mean?

There is only one number you can really understand in this menu. This number is located as the third number down, it will say something like "-50" (the 50 can range anywhere from 10 to 99). This is how strong the signal is.

For example : If your phone displayed -10 here then it's telling you that your neighbour is a cell site and your signal is really really good.

If your phone displayed -90 then it's basically telling you that where you live or where you are at that certain time has really bad signal.

You will notice that as you get closer/further away to a cell site this number will grow or decrease.

----------------------------------------------------------------------------------------------

That sums up the Service Programming Menu, and the extra things your service provider doesn't want you doing :}

There are many other codes that you can use on CDMA phones, just search around for them.

Extra Codes:

*#66767# - This code when spelt out is "NO-SMS", so shouldn't that mean no texting? well, yes. If you enter this code in on your phone then you will no longer have the ability to "Create Message" or "Reply". If you're really mean then enter it on your brother or sisters phone, that's sure to give you some laughs. You can bring them back again by re-entering the code.

*#639# - This brings you to the menu which just re-programs your phone faster. I wouldn't reccomend you doing this if you value your phone.

*#7780# - This takes you to a menu which says "Restore Factory Settings", i think you understand what will happen if you press yes :p

GSM Code:

This is the only GSM code i know from the top of my head, just search around for more as I'm sure they're out there.

*#0000# - This is probably the most useless code you can find, but anyway it just gives you information on when your phone was activated. If your phone was sent in for repair, then this date will have changed to the date when it was fixed.
Read More

Tuesday, May 10, 2022

Top 5 Password Cracking Tools

Password cracking tools are often refereed to as password recovery tools used to guess or restore a password from a data transmission system. Security researchers and penetration testers also use these tools to check the security of an application.

It is an undeniable fact that in cyber security passwords are the most vulnerable security links. But if the password is too complicated the user might not remember it. These tools are useful when user forgets their passwords but hackers also use them to crack passwords of systems and stole data.


There are many type of password cracking tools. Some uses dictionaries of their own to crack a password, those tools have a combination of words but it will take hours or even days if the users password is complicated one. Plus the success rate of these tools are also not very high.

 Programmers in past few years has introduced different password cracking tools in the market, some of them are highly successful in terms of results. Here we shortlisted the top 5 most successful password cracking tools available in the market.

1. Medusa

Medusa is a highly rated password cracking tool which runs on Linux OS. It is highly rated among network administrators who keep checking their firms passwords time by time to ensure they cannot be cracked easily. This tools can provide you a result about how strong your organizations passwords are. It supports  NNTP, FTP, CVS, HTTP, IMAP,  MYSQL, NCP,AFP,  POP3, MS SQL, PostgreSQL, pcAnywhere, rlogin, SMB, rsh, SMTP, SNMP, SSH, SVN, VNC, VmAuthd and Telnet. While cracking the password, host, username and password can be flexible input while performing the attack.

2. Wfuzz

Wfuzz cracks passwords with brute forcing another famous password cracking tool. Wfuzz can be used to find unlinked resources like servelts,scripts and directories.Wfuzz is based on dictionaries and ranges, user just had to choose where he want to bruteforce just by changing the part of URL or the post by keyword Fuzz. Some top features of Wfuzz are; Recursion, Multiple Injection points capability with multiple dictionaries, Output to HTML and many more.

3. Brutus

Brutus is a popular password cracking tool which can be used remotely. Brutus is available in the market since 2000, but it only works in Windows OS. It supports HTTP (Basic Authentication), HTTP (HTML Form/CGI), POP3, FTP, SMB, Telnet and other types such as IMAP, NNTP, NetBus, etc. The latest version of Brutus contains features like; HTTP (Basic Authentication), HTTP (HTML Form/CGI), POP3, FTP, Telnet, SMB. Another feature in this tool is that user can create their own authentication types. The tool is old but still it is providing desired results. 

4. John the Ripper

John the Ripper is another widely used open source password cracking tool, works on Linux, Windows, Unix, and Mac OS X. Its basic purpose is to detect weak passwords in Unix. A pro version of this tool is also available in the market right now with additional features, and its pretty cheap.

5. Cain and Abel

This tool operates on Microsoft OS only but the sucess rate is very high. The tool operates as a sniffer in the network, it cracks the encrypted passwords through the dictionary attacks, recording VoIP conversations, brute force attacks, cryptanalysis attacks,  revealing password boxes, uncovering cached passwords, decoding scrambled passwords, and analyzing routing protocols.


Read More

Wednesday, May 4, 2022

Brute Wallets Metamask - Exodus - GUIDE

WE KILL BRUTERS AND TAKE 100% OF PROFIT / BRUTE METAMASK WALLETS VIA HASHCAT

Download hashcat from here


(scripts) throw everything into one folder
To run hashcat, you may need to install the CUDA SDK Toolkit

nvidia.com/cuda

Before you can brute, you need to get the hash from the vault:
1. Go to the directory:
ЛОГ/Wallets/*браузер*_Metamask

2. Open "000***.log" and copy the following line: 
You need to create a separate txt file
 and put the contents there, while deleting the "\'" character

3. Copy the text and throw it into the directory

[​IMG]


[​IMG]

hashcat/tools/
4. Open the metamask2hashcat.py file via CMD and write the following command:
metamask2hashcat.py --vault ТЕКСТОВИК С ВАУЛТОМ

and get the hash in the form: $metamask$
copy it and shove it into txt for convenience Next, return to the folder with the hash and open it via CMD and write the command: If there is a dictionary with passwords:

[​IMG]
hashcat -a 0 -m 26600 ХЕШ.txt CЛОВАРЬ С ПАРОЛЯМИ.txt

example:
hashcat -a 0 -m 26600 hash.txt passwords.txt


[​IMG]

-a 0 - type of brute force attack through a dictionary
-m 26600 - type of hash (metamask)


Password guessing through a mask:
hashcat -a 3 хеш.txt ?a?a?a?a?a?a?a?a

?a - password guessing by searching through all characters (letters, special characters, numbers, etc.)
the number of "?a" depends on the length of the password

if the first two letters of the password are known:
SI?a?a?a?a?a?a

if the last 6 characters in the password are digits:
SI?d?d?d?d?d?d

if the approximate length of the password is known (let's say from 5 to 10):
hashcat -a 3 -m 26600 хеш.txt-i --increment-min=5 --increment-max=10 SI?a?a?a?a?a?a?a?a

etc. everything can be found on the Internet or in the hashcat guide itself.


You can swipe any wallet if you wish. Specifically, this article is aimed at brute metamask wallet, if you want to figure out how to brute exodus (there is a script in the tools folder)
I don’t recommend killing your video card, so buy a dedicator and brute all questions on it, write to the topic, I rarely read a personal article aimed at beginners, who did not know how to do it (he was one himself and had to search in Google). I haven't seen a thread like this on the forum.

[​IMG]


Read More

Saturday, December 25, 2021

Tools For Hackers and Spammers

New Tools With 2021 Update - Discount Available


1st :- Linux/Unix IP SMTP Scanner Bruter


2nd :- Linux/Unix Python SMTP Mail Webmail Zimbra Bruter New V4 2021


3rd :- Linux/Unix Domain SMTP Scanner Bruter

 

4th :- Domain Url Exploiter 2021 - Aws - Nexmo - Paypal - Plivo - Razorpay - Shells - Smtps - Twillio 


5th :- Normal Domain Urls Exploit 2021


6th :- PayPal Valid Email Checker 2021 ( https://youtu.be/GL7Csp0O4uM )


7th :- Linux/Unix Highly Private Root Scanner Bruter :- (Hacked All type Linux Version 2016 2017 2018 2019 2020 2021) 

 

8th :- Linux/Unix Highly Private Automatic Cpanel Scanner Bruter - Work With IP Ranges - Automatic URL Grabber - (Crack All type of Cpanel Version)


9th :- Cpanel Cracker Method From Shell With New Symlink Method (Get More Cpanels From One Cpanel )


10th :- Windows Based Rdp Bruter - With Tutorial

--------------------

Private Cpanel Scanner Bruter 2021

1 :- Write in PHP + C++

2 :- Grab Username Automatic

3 :- Grab Domain List Automatic

4 :- Best Ip2Domain Grabber 2021

5 :- Support A, B, C Class Ip Ranges

6 :- Thread Support 100 to 5000


ICQ :- 711665165

Telegram :- @NakedPoets

Jabber :- HelloW0rld@exploit.im

Skype :- Nakedpoets0@gmail.com


Read More

Sunday, December 5, 2021

Wordpress Brute XML-RPC 2.11 - 2021


 2.11+ [10 macros]

Macros that the software supports at the moment!


[WPLOGIN] - macro for recognizing the admin login | for example - the admin login mike90 will substitute the same password

[DDOMAIN] - macro to the domain of the link | for example - https://www.google.com/ = google.com

[DOMAIN] - macro for the site name | for example - https://www.google.com/ = google

[UPPERALL] - converts all letters to upper case | for example - admin = ADMIN

[LOWERALL] - converts all letters to lower case | for example - ADMIN = admin

[UPPERONE] - converts the first letter to upper case | for example - admin = Admin

[LOWERONE] - converts the first letter to lower case | for example - ADMIN = aDMIN

[UPPERLOGIN] - a macro that substitutes the admin login in front of the password and makes the first letter uppercase

[AZDOMAIN] - removes all characters from the domain except letters and numbers

[REVERSE] - reverse - admin = nimda


OpenSSL v1.0.2u Precompiled Binaries for Win64


Add ssl dll for x64


DOWNLOAD LINK :- CLICK HERE


USE IN YOUR RDPS

Read More

Thursday, November 11, 2021


Features :

[+] Fast speed 

[+] Auto Check & Send valid smtp

[+] Auto Check twillio & nexmo

[+] Auto grab shell

[+] Most Accurate scanner with private method

[+] Customize Result

[+] Lifetime & free update

[+] Customize Speed thread with accurate result

[+] Auto Get Mailer

[+] Auto Get SSH

[+] Auto Log CC WooCommerce sites & Send valid CC to your email

[+] Auto Log PP WooCommerce sites & Send payment to your paypal

[+] Auto Get RDP/VPS

[+] Auto Get SMS Sender/Spammer

[+] Auto Get WHM root

[+] Auto Send Inbox

[+] Private ips scanner

[+] Reverse ip unlimited

[+] Auto Get SMTP Office365 & Get your Azure Portal

[+] Auto Get SMTP Gsuite & Get your Google Cloud Panel

[+] Auto Get cPanel

DOWNLOAD LINK

USE IN YOUR RDP FOR SAFETY


Read More

Thursday, March 4, 2021

Bitcoin Wallet Cracker - 2021


 

DOWNLOAD LINK :- http://bit.ly/BTCCracker

Read More

Monday, October 5, 2020

Monday, July 13, 2020

Monday, June 15, 2020

RDP Scanner Bruter 2020





Download Link :- Click Here

For Private Tutorial and how to run this tool contact with admin

My Contacts


My ICQ :- 711665165

My Jabber :- HelloW0rld@exploit.im
My SKype :- Nakedpoets0@gmail.com
My Email :- Nakedpoets0@gmail.com



Read More