Jun 18, 2008
[Tutorial] Hacking Password Protected Website's
[ctl-alt-del ]when the password box is displayed, to simply turning offjava capability, which will dump you into the default page.You can try manually searching for other directories, by typing the directory name into the url address box of your browser, ie: you want access to www.target.com .
Try typing www.target.com/images .(almost ever y web site has an images directory) This will put you into the images directory,and give you a text list of all the images located there. Often, the title of an image will give you a clue to the name of another directory. ie: in www.target.com/images, there is a .gif named gamestitle.gif . There is a good chance then, that there is a 'games' directory on the site,so you would then type in www.target.com/games, and if it isa valid directory, you again get a text listing of all the files available there.
For a more automated approach, use a program like WEB SNAKE from anawave, or Web Wacker. These programs will create a mirror image of an entire web site, showing all director ies,or even mirror a complete server. They are indispensable for locating hidden files and directories.What do you do if you can't get past an opening "PasswordRequired" box? . First do an WHOIS Lookup for the site. In our example, www.target.com . We find it's hosted by www.host.com at 100.100.100. 1.
We then go to 100.100.100.1, and then launch \Web Snake, and mirror the entire server. Set Web Snake to NOT download anything over about 20K. (not many HTML pages are bigger than this) This speeds things up some, and keeps you from getting a lot of files and images you don't care about. This can take a long time, so consider running it right before bed time. Once you have an image of the entire server, you look through the directories listed, and find /target. When we open that directory, we find its contents, and all of its sub-directories listed. Let's say we find /target/games/zip/zipindex.html . This would be the index page that would be displayed had you gone through the password procedure, and allowed it to redirect you here.By simply typing in the url www.target.com/games/zip/zipindex.html you will be onthe index page and ready to follow the links for downloading.
Jun 16, 2008
[Tutorial] Intel Pentium 5.... out now!!!!

You can edit:
regedit > HKLM > Hardware > description > System > CentralProcessor > ProcessorNameString
[Review] 100 Things You Need to Know About Microsoft® Windows Vista™

100 Things You Need to Know About Microsoft® Windows Vista™
by Eric Geier
--------------------------------------------------------------------------------
Publisher: Que
Pub Date: November 21, 2007
Print ISBN-10: 0-7897-3727-2
Print ISBN-13: 978-0-7897-3727-4
Pages: 216
Overview
Tired of clawing your way through computer books that start at the beginning of recorded history just to find one tiny nugget of information you need? Tired of wrenching your back to pull that massive Windows tome off your bookshelf? Tired of wishing you could find a simple answer to what should be a simple problem? If you answered yes to any of these questions, then 100 Things You Need to Know about Microsoft® Windows Vista™ is just the book you've been looking for. Chock full of timesaving tips, heady solutions, and expert know-how, this book doesn't break the bank nor does it require a Bowflex body to hoist it around. Inside you'll find step-by-step help for the 100 things every Windows user needs to know when making the big switch between Windows XP and Vista. Even if you're brand new to Windows (meaning Vista is your first-ever operating system), you'll find the advice here indispensable. In this book, we assume, for instance, that you really don't give a hoot about what TCP/IP is. We're betting you just want to get your Internet connection up and running, and leave the techy muck to the propeller heads.
• Want all the cool new cutting-edge features and interface Windows Vista offers? Well, before you run out and buy the software, you need to ensure your system will support it! We walk you through, step-by-step, how to manually check if your PC and other hardware and software are supported for use with Windows Vista. We show you how to perform common upgrade tasks, if needed, before you install Vista. In addition, we provide tips and procedures on backing up your data.
• Having to choose between five different versions (yes, Vista comes in FIVE flavors!) can be confusing! Don't sweat it, though--we've got you covered. We show you how to decide which flavor of Vista is best suited to you! Then we walk you through installing and setting up Vista for the very first time.
• Next we dig into the new Vista interface, which is quite a change from the old XP! Then we give you a tour of the many new and enhanced features. While you might fancy yourself a wicked-smart Windows user, don't skip this section! We're positive you'll find things you didn't know that will help you make Vista do thy bidding.
• Don't like the slick new Vista interface? (Macintosh, anyone?) We show you how to harness the power of Vista while keeping the look and feel of your XP. Who says change has to be painful?
• After you have the basics nailed, we then show you some of the cool things you can do with Vista, from customizing its performance, to disabling annoying security controls, to connecting to a wireless network.
You can buy in local book store or online book store
[tutorial] How to entering another modem connection
Has 2 Way :
1. Long way : scan c-net using software ip/port scanner, scan port 80
2. Short way : using online tools www . robtex . com and browser
and I'm using second way or short way...
First, open robtex website
www.robtex.com
more good if you login first...
That our ip will be showing in colomn in right place... this capture only for example..

For example if we want scan IP our "neighbour" , you can click C-net checks an entire c-network
and will be open listing ip which is same 1 subnet with our ip....

OK... Now,from listing ip, you can look at HTTP server which is you using :
for example HTTP:Nucleus/4.3 UPnP/1.0 Virata-EmWeb/R6_2_0 meaning modem in router mode, OK... The target like this which is we entered....
FYI : HTTP server every modem may be is different
ok now we must looking our ip browse... EXAMPLE.. :

OK... Now we must trying default password from every modem :
Example
admin : admin
admin : password
admin : manager
manager : manager
If we lucky, we can login to that modem..

woooppsss....!!!! Who has this modem....
ok... after success entering "neighbour" modem... we search and play again... search again username and password from their ISP...
open their configurasion....

now right click => view source...

biinnggoooooo....!!!!!! gothca..
Finish, please dont change that host which I using for tutorial
notes :
- for educational porpose only
- always change your default modem password
Jun 11, 2008
Jun 10, 2008
Static EMail Backup v2.5d
Email Backup Software (Can Backup 6 Email Clients)
Static EMail Backup is an easy-to-use powerful backup tool. This backup tool can backup Outlook Express, Outlook, Windows Mail, Windows Live Mail, Thunderbird, Incredimail messages and settings into an archive file. Static EMail Backup allows you to compress your archive using a high compress ratio.
An encryptor has already built-in, you can encrypt output archive with password protect, make sure you have remember your password before you use encryptor to encrypt your archive. Static EMail Backup contains CD/DVD burner, FTP uploader, you can burn your archive into a CD/DVD writable device or upload your archive to custom FTP server.
Static EMail Backup also contains an output filename generator, the output archive filename can be generated with timestamp.
Support Outlook Express
Static EMail Backup can backup Outlook Express messages and settings
Support Outlook
Static EMail Backup can backup Outlook messages and settings
Support Windows Mail
Static EMail Backup can backup Windows Mail messages and
settings
Support Windows Live Mail
Static EMail Backup can backup Windows Live Mail messages and settings
Support Thunderbird
Static EMail Backup can backup Thunderbird messages and settings
Support IncrediMail
Static EMail Backup can backup IncrediMail messages and settings
Easy to use interface
You just need few clicks to backup all your email data into an archive, to restore your archive, just double-click archive file in Windows Explorer, all email data will be restored quickly
Compress your archive
IncrediMail Backup can compress your archive with high compress ratio
Encrypt your archive with password
IncrediMail Backup also can encrypt your archive, before you encrypt your archive, you need enter a password for your archive, please remember your password. On next time you restore your archive, you will be asked for the password
Double-click backup archive (*.imb) to restore
You just need double click on your archive file, the restore wizard will be started automatically, and the archive filename edit-box will fill your archive filename automatically
Backup My Documents folder
Backp your music, pictures and other files in My Documents folder
Backup Internet Explorer settings
IncrediMail Backup also can backup your Internet Explorer settings
Backup Favorites
IncrediMail Backup also can backup your Favorites
Archive filename generator
Use the filename generator, you can generate your filename with time stamp, using this function, you don't need to choose the archive folder and enter the filename on each backup
FTP uploader
You can upload your archive file onto a FTP server automatically
CD/DVD burner
You can burn the archive file to a writable CD/DVD device
More than 4GB
IncrediMail Backup supports more than 4GB file storage
Scheduler
You can schedule your backup process and don't need to start the backup process by your self
FileMerlin™ v1.71
Advanced File Conversion Software
FileMerlin™ accurately converts word processing, spreadsheet, presentation and data base files between a very wide range of file formats. Widely regarded as the premier document conversion product, it is suitable for straightforward as well as complex documents, and is the most accurate, complete and flexible such solution we know of.
Homepage:
http://www.file-convert.com/fmn.htm
- Legal documents demanding critical conversion accuracy
- Technical documents
- Documents with embedded functionality (mail-merge, field codes, etc)
- Financial documents with complex tables, embedded spreadsheets, charts, etc.
- Many other kinds of word processing, spreadsheet and data files
Converts Practically All Popular File Formats
- All popular old and new file formats in their native form
- Handles native Microsoft Office 2007 .docx and .docm files
- Converts full-saved and fast-saved Word documents
- Supports all commonly used text coding (ASCII, ANSI, Unicode, Dos code pages, etc.)
- Converts plain-text ASCII, ANSI and Unicode (8- and 16-bit) files
- Last-resort text recovery from any kind of file (even corrupted files)
High Conversion Accuracy and Completeness
- Very accurate and complete conversions
- Handles advanced formatting and layout
- Preserves document logic
- Excellent conversion of tables
- Converts spreadsheets and workbooks (stand-alone, embedded or linked)
- Converts PowerPoint (slides and/or notes, stand-alone, embedded or linked)
- Handles special characters and symbols, including Unicode.
- Converts embedded and linked graphics
- Many options for handling revision markings and "track changes" codes
- Conversion log lists exceptions if any (e.g., due to destination format limitations)
- Option to preserve file date and time
- In general, far better conversion than built-in filters provided with word processors
No Special Hardware/Software Requirements
- Runs under all Windows versions 95 or higher, including Vista
- Stand-alone, does not require source or destination applications to operate
- True utility, not a printer driver
- Easy to install and uninstall
Intuitive, Flexible, and Easy to Use
- Interactive and batch mode operation
- Convert several thousand files in one operation
- Many automatic destination file naming options
- Conversion speed as high as 50 pages per second
- Converts nested folders and automatically creates destination directory structure
- Option to ignore non-qualifying files during bulk conversion
- Complete Windows integration for ease of use
- Option to automatically convert files as they arrive in specific folders
- API available for developers and programmers
- Extensive one-click quick-help, and detailed on-line help, for maximum ease of use
Embellish your files automatically with no effort
- Automatically produce hyperlinked table of contents and hyperlinked index
- Automatic two-way hyperlinking of footnotes and endnotes
- Automatically add color and background textures to HTML web pages
Customizable for Special Requirements
- Automatic Font Translation to use fonts available in newer programs
- Translate text enhancements to automatically use features of new programs
- Easy customization with tabbed dialog boxes, without scripts or programming
- Advanced users may customize 1000+ parameters for very exacting requirements
Able2Extract v5.0
Convert PDF to Excel, Word & More
Get quick, accurate, transfer of native PDFs into formatted MS Excel spreadsheets and editable MS Word for editing, analysis and other reversioning. Conversion from PDF to PowerPoint (PPT), HTML, Text and more is included.
Homepage:
http://www.investintech.com/prod_a2e.htm
Edit Text
Once converted into Word or PowerPoint, PDF text can be edited and repurposed as required.
Perform Data Analysis Within Excel
Tabular data in PDF becomes accessible and formatted in an Excel spreadsheet. Column structure is preserved in Excel.
Preserve Formatting and Layout
The look and feel of the PDF is replicated in Word.
Fill out PDF Forms in Word
Fillable form fields in PDF became useable in Word.
XPS Conversion
In addition to PDF, Able2Extract now also converts XPS, a new Electronic PDF Format.
- Convert PDF to Excel and retain the row/column structure of the PDF table within Excel.
- One click of a button converts PDF files into formatted excel spreadsheets quickly and easily.
- The PDF to Excel conversion options supports a variety of different languages, including English, French, Spanish and German, to name just a few.
- The PDF to Excel conversion is done effortlessly through our easy to use user interface.
- Converting from PDF to Excel will preserve your page layout. You can view all the PDF pages in one Excel workbook or, in the alternative, one PDF page per Excel workbook.
- The PDF to Excel conversion feature of Able2Extract is not a plug-in. It does not require any Adobe® software product, such as Acrobat® Reader, to view and convert the PDF.
- The PDF to Excel conversion has a custom feature that lets a user designate column structure
- The PDF to Excel contains a templating feature that lets you save custom conversion templates
- The PDF to Excel conversion output supports most Windows and Office platforms, including - 98/ME/NT/2000/XP and Vista.
- Able2Extract is compatible with Office 2007
- An option in the PDF to Excel conversion lets users select whether to replicate the font of the PDF or not.
- Our PDF viewer is included so you can see what you are converting from PDF to Excel!
- Convert to Excel and it will be saved as .XLS file (PDF to XLS conversion).
- Get more control from the PDF to Excel custom conversion option.
- Convert PDF to Word and preserve the original layout of your PDF in an editable Word document.
- Several PDF to Word conversion options are available. The "Standard" option lets users convert their PDF to Word and place text directly on the PDF page while retaining the PDF images in the Word document. The "Standard" option is recommended since it preserves the originality of converted the PDF to Word by identifying paragraphs, text labels, graphics, tables, and flow of columns etc. and then replicating it within Microsoft Word. The "Frames" conversion option places text into frames within Word and preserves the background images. The "Text Only" conversion option lets users convert text directly onto the MS Word page without the background images.
- Convert PDF to forms to Word Forms. This lets you fill out your PDF form in a Word document.
- Choose your PDF to Word output format – Both .Doc and .RTF output formats are supported! The PDF to RTF feature allows users to convert large documents faster than the PDF to Word option.
- PDF to Word efficiency and selectivity. Pinpoint selection ability. Since you can see what you select, there is no need to transfer whole documents or even whole pages at a time. Take one line of text if you want!
- The PDF to Word conversion is processed at a very high speed.
- PDF to Word conversion size options – Convert the whole document, a range of pages, one page or a portion of a page – it is your choice!
- PDF to Word output supports most MS Windows and MS Office platforms, including 98/ME/NT/2000/XP.
- Our PDF viewer is included so you can see what you pages or portions of a page you are converting from PDF to Word!
- See what you are converting. Our proprietary PDF viewer lets you view your PDFs just as you would with Adobe Acrobat Reader.
- Our PDF viewer lets you view your PDF documents at different sizes by zooming in and zooming out.
- Rotate landscaped PDFs to portrait view for easier viewing and converting with our PDF viewer.
- Convert PDF to PowerPoint and improve your presentations.
- Retain PDF graphics in HTML.
- Text from PDF is made available in HTML.
- Convert HTML pages into Excel spreadsheets for easy data analysis.
- Convert HTML to editable Word documents.
- HTML can be converted to Text with Able2Extract Professional.
- Convert Text documents into into formatted Excel spreadsheets.
- Convert Text documents to .doc and .rtf format.
- Text files can be transported into HTML files.
- Simple PDF to formatted Text (.txt) file conversion comes included.
- PDF to HTML conversion for use on web pages comes included.
- Convert PDF to popular image formats.
- Convert PDF to TIFF
- Convert PDF to JPEG
- Convert PDF to GIF
- Convert PDF to BMP
- Convert PDF to PNG
- Select your PDF using a variety of options, including: using the mouse, by selecting all on page, by selecting a page range.
- Control over image based and non-image based conversions. Perfect for situations in which the PDF for conversion is a blend of image PDF and native PDF pages.
- Get pinpoint conversion accuracy that allows you to convert any portion of a page that your require. No need to convert a whole page at a time if it is not required.
- Able2Extract now has XPS Conversion capabilities as well. This lets you convert XPS to Word, Excel, Powerpoint and more. XPS is Microsofts new electronic paper format that is similar to PDF.
Tube Increaser
The #1 software for increasing YouTube video views!
Homepage:
http://www.tubeincreaser.com/
There is no need for long and frustrating hours of promoting your videos.
Get famous by increasing your video views! The opportunities are endless! Increase your views and get more comments, honors, subscriptions AND much more!!
With millions of YouTube users uploading their videos each day, it is almost impossible for your videos to get the exposure it deserves.
Without the right promotional techniques and marketing, your videos on YouTube could and will eventually disappear along with the million other YouTube videos.
Thanks to Turbo Tube, we now have an easy solution to give your YouTube videos the exposure it deserves!
By using Tube Increaser, users will be able to create any amount of views onto your YouTube videos instantly! So what are you waiting for?
Get Tube Increaser now and get famous!
[TIPS] Create your own Folder Lock
-Open notepad
-paste this coding
cls
@ECHO OFF
title Folder Locker
if EXIST "Control Panel.{21EC2020-3AEA-1069-A2DD-08002B30309D}" goto UNLOCK
if NOT EXIST Locker goto MDLOCKER
:CONFIRM
echo Are you sure u want to Lock the folder(Y/N)
set/p "cho=>"
if %cho%==Y goto LOCK
if %cho%==y goto LOCK
if %cho%==n goto END
if %cho%==N goto END
echo Invalid choice.
goto CONFIRM
:LOCK
ren Locker "Control Panel.{21EC2020-3AEA-1069-A2DD-08002B30309D}"
attrib +h +s "Control Panel.{21EC2020-3AEA-1069-A2DD-08002B30309D}"
echo Folder locked
goto End
:UNLOCK
echo Enter password to Unlock folder
set/p "pass=>"
if NOT %pass%==cendol here goto FAIL
attrib -h -s "Control Panel.{21EC2020-3AEA-1069-A2DD-08002B30309D}"
ren "Control Panel.{21EC2020-3AEA-1069-A2DD-08002B30309D}" Locker
echo Folder Unlocked successfully
goto End
:FAIL
echo Invalid password
goto end
:MDLOCKER
md Locker
echo Locker created successfully
goto End
:End
-save as file in extension .bat at drive what do you want (file .bat can copast in another drive)
-double click file .bat which is you creating, after that will be showing folder with name "locker"
-After that put in file which is you want locked in folder "locker"
-double click again file .bat to confirm for locked folder (will be showed Y/N question)
-If youwant open folder which is get locking, double click file .bat (will be showing question to confirm password)
-Entering password (first password is cendol, search the word cendol in coding. And then change it like what do you want)
Have nice try
[TUT] Destroyed Pass Win XP Using Flash Disk
2. Move all of your data in UFB (USB Flash Disk) in save place (Ex: External HDD) because we must formating that UFB
3. Extract RAR file after download, So will out folder "Jebol Pass XP"
4. Step to format UFD + how to fill that system,there is with execution HPUSBFW.exe file, so it will out new dialog box.
There is some Settingan which is you must do:
- Choose File System = FAT32.
- Check "Create a DOS startup disk".
- In value "Using DOS system files located at:" browse to folder after you extract (I mean folder "Jebol Pass XP")
5. Press Start, You must waiting until the prograss finish, after that press Close.
6. After formating UFD step is finish, now we must try it that UFB is success to booting or not. ( This step will giving in step 7)
7. Shutdown your PC, after that turn ON again and you must setting yout BIOS to booting from UFD. After booting succesly, it will out prompt C>
If failed, repearedly step 4 but file you must executed is SP27213.exe
8. Turn OFF PC abd Turn On again with booting from os windows like usual, after that copy file P.exe and AUTOEXCEC.BAT (both of them has in folder "Jebol Pass XP") to UFD.
9. Finish
How To Used :
This game only for PC which has password and that password will be deleted (PC target) must can booting from UFD.
1. Turn ON PC target and enter to bios (Usually press 'DEL' or 'delete' or F2, usually depend on mobo brand or that PC. Choose boot priority = USB.
2. Wait until booting finish. after out prompt c> plus 3 prescription choosing.
3. Choose recipe no 2, After that let them worked to search Account which has in PC target. (Usually has pic proppeller which rotating)
4. It will be found, all account which has in PC target. You can choose account whos account you will be destroyed. And the one of way to choose you can using number... like example want collapsed and drifted away account number 5, so you must press number 5 in keyboard.
5. After determined your choosen, you can move your cursor to 'remove Password' and then press ENTER. Viola.... account nomber 5 will be deleted
6. Out from there using 'Esc' and than booting again from Windows and login using acc numberr 5.
TIPS:
Dont said to your target about this, because if you said this, I iresponsibility about that...
He.....
Have fun all.
Jun 3, 2008
Hacking Glossary
Anonymous FTP – A method by which computer files are made available for downloading bythe general public
awk – A programming language designed for working with strings.
backdoors – An undocumented way of gaining access to a program, online service or an
Baud – bits per second, used to describe the rate at which computers exchange information.
BIOS – basic input/output system. The built-in software that determines what a computer can do without accessing programs from a disk. On PCs, the BIOS contains all the code required to control the keyboard, display screen, disk drives, serial communications, and a number of miscellaneous functions. The BIOS is typically placed in a ROM chip that comes with the computer.
blog (weblogs) – Web page that serves as a publicly accessible personal journal for an individual.
Boolean logic – Boolean logic is a form of algebra in which all values are reduced to either TRUE or FALSE. Boolean logic is especially important for computer science because it fits nicely with the binary numbering system, in which each bit has a value of either 1 or 0. Another way of looking at it is that each bit has a value of either TRUE or FALSE.
Boot sector – The first sector of the hard disk where the master boot records resides, which is a small program that is executed when a computer boots up.
cache – Pronounced cash, a special high-speed storage mechanism. It can be either a reserved section of main memory or an independent high-speed storage device. Two types of caching are commonly used in personal computers: memory caching and disk caching.
Client – a program on a local computer that is used to exchange data with a remote computer, see server.
cluster / allocation unit – A group of disk sectors. The operating system assigns a unique number to each cluster and then keeps track of files according to which clusters they use
cookies – A message given to a Web browser by a Web server. The browser stores the message in a text file. The message is then sent back to the server each time the browser requests a page from the server.
CRC – Cyclical redundancy check.
cyclical redundancy check (CRC) – a common technique for detecting data transmission errors. Transmitted messages are divided into predetermined lengths that are divided by a fixed divisor. According to the calculation, the remainder number is appended onto and sent with the message. When the message is received, the computer recalculates the remainder and compares it to the transmitted remainder. If the numbers do not match, an error is detected.
DHCP – Dynamic Host Configuration Protocol.
Digital Subscriber Line (DSL) – A technology that allows the simultaneous transmission of voice and high-speed data using traditional telephone lines.
DNS – Domain Name Server.
Domain Name Server (DNS) – A service that translates domain names into IP addresses.
domain names – A name that identifies one or more IP addresses. For example, the domain name microsoft.com represents about a dozen IP addresses. Domain names are used in URLs to identify particular Web pages. For example, in the URL http://www.pcwebopedia.com/index.html, the domain name is pcwebopedia.com. Every domain name has a suffix that indicates which top level domain (TLD) it belongs to. There are only a limited number of such domains. For example: .gov - Government agencies. .edu - Educational institutions. .org - Organizations (nonprofit). .com - Commercial Business. .net - Network organizations. Because the Internet is based on IP addresses, not domain names, every Web server requires a Domain Name System (DNS) server to translate domain names into IP addresses.
DSL – Digital Subscriber Line.
Dynamic Host Configuration Protocol (DHCP) – A protocol used to allow for the dynamic configuration of networks.
E-mail – A service with allows for the transmission of simple messages across networks.
ethereal – a packet sniffer that records traffic on your computer.
ethernet – A local-area network (LAN) architecture developed by Xerox Corporation in cooperation with DEC and Intel in 1976. It is one of the most widely implemented LAN standards.
file signature – Small 6-byte signature at the start of the file which identifies what kind of file it is.
file transfer protocol (FTP) – Used to allow local computers to download files from remote computers.
filtered (ports) – ports for which a firewall examines the header of a packet that is directed to that port and determines whether or not to let it through (see open ports).
firewall – A system designed to prevent unauthorized access to or from a private network. Firewalls can be implemented in both hardware and software, or a combination of both.
forums – An online discussion group. Online services and bulletin board services (BBS's) provide a variety of forums, in which participants with common interests can exchange open messages
FTP – File transfer protocol.
GCHQ – Government Communications Headquarters, is an intelligence and security organization in the UK.
grep – Short for global-regular-expression-print, a UNIX utility that allows the user to search one or more files for a specific string of text and outputs all the lines that contain the string. The user also has the option to replace the string with another.
HIDS – a host based intrusion detection. An intrusion detection system.
honeypot – An Internet-attached server that acts as a decoy, luring in potential hackers in order to study their activities and monitor how they are able to break into a system.
http – hypertext transfer protocol
hub – A common connection point for devices in a network. Hubs are commonly used to connect segments of a LAN.
Hypertext – a method of organizing and presenting data that allows the user to easily move between related items.
hypertext transfer protocol (http) – The underlying protocol used by the World Wide Web, HTTP defines how messages are formatted and transmitted, and what actions Web servers and browsers should take in response to various commands.
IANA – Internet Assigned Numbers Authority.
ICMP – Internet Control Message Protocol.
IM – Instant messaging.
Instant messaging (IM) – a type of communications service that enables you to create a kind of private chat room with another individual in order to communicate in real time over the Internet, analogous to a telephone conversation but using text-based, not voice-based, communication.
interfaces – A boundary across which two independent systems meet and act on or communicate with each other.
Internet Assigned Numbers Authority (IANA) – An organization working under the auspices of the Internet Architecture Board (IAB) that is responsible for assigning new Internet-wide IP addresses.
Internet Control Message Protocol (ICMP) – An extension to the Internet Protocol (IP) defined by RFC 792. ICMP supports packets containing error, control, and informational messages. The PING command, for example, uses ICMP to test an Internet connection.
internet protocol (IP) – IP specifies the format of packets, also called datagrams, and the addressing scheme. Most networks combine IP with a higher-level protocol called Transmission Control Protocol (TCP), which establishes a virtual connection between a destination and a source.
Internet Relay Chat (IRC) – A service which allows for real-time, text-based communication between Internet users.
Internet Service Provider (ISP) – A company which provides users with access to the Internet
IP – Internet protocol.
IP address – An identifier for a computer in the internet or on a TCP/IP network. The format of an IP address is a 32-bit numeric address written as four numbers separated by periods. Each number can be zero to 255. For example, 61.160.10.240 could be an IP address.
ipconfig – Tool to display information on the active interfaces on a computer.
IRC – Internet Relay Chat.
ISP – Internet Service Provider, a company which provides users with access to the Internet
logicbombs – code designed to execute when a specific activity occurs on a network or computer.
loopback – when a computer refers to itself. Loopback address is a special IP number (127.0.0.1) that is designated for the software loopback interface of a machine. The loopback interface has no hardware associated with it, and it is not physically connected to a network.
MAC – Media access control .
MD5 hash – An algorithm used to create digital signatures. It is intended for use with 32 bit machines and is safer than the MD4 algorithm, which has been broken. MD5 is a one-way hash function, meaning that it takes a message and converts it into a fixed string of digits, also called a message digest.
media access control (MAC) – A hardware address that uniquely identifies each node of a network.
Modem – Modulator/Demodulator, a device which translates digital signals into analog signals, and analog signals back into digital signals, allowing computers to communicate with each other through analog telephone lines.
MS-DOS (Microsoft Disk Operating System) – MS-DOS is an Operating System. Mainly it allows the communication between users and PC hardware, and it also manages available resources, such as memory and CPU usage.
netstat – command which displays the status of a network.
network intrusion detection (NIDS) – Intrusion detection system in which the individual packets flowing through a network are analyzed.
newsgroups – Same as forum, an on-line discussion group.
NIDS – Network intrusion detection.
nmap – a program which conducts a probe of your computer for open ports.
NSA – The National Security Agency is the United States' cryptologic organization. It coordinates, directs, and performs highly specialized activities to protect US information systems and produce foreign intelligence information.
open (ports) – ports for which all packets that is directed to that port are allowed through (see filtered ports).
operating system – The underlying program that runs on a computer. Every general-purpose computer must have an operating system to run other programs. Operating systems perform basic tasks, such as recognizing input from the keyboard, sending output to the display screen, keeping track of files and directories on the disk, and controlling peripheral devices such as disk drives and printers. Some Operating Systems are Windows, Linux and UNIX.
P2P – Peer-to-peer.
packet sniffer – A program and/or device that monitors data traveling over a network.
packets – A piece of a message transmitted over a packet-switching network.
password cracking – the process of attempting to determine an unknown password.
peer-to-peer (P2P) – a type of network in which each workstation has equivalent capabilities and responsibilities.
ping – A utility to determine whether a specific IP address is accessible. It works by sending a packet to the specified address and waiting for a reply.
Plain Old Telephone Service (POTS) – Used to describe basic, old-fashioned telephone service.
POP – Post Office Protocol, a protocol used to retrieve e-mail from a mail server. Most e-mail applications (sometimes called an e-mail client) use the POP protocol, although some can use the newer IMAP (Internet Message Access Protocol).
ports – An interface on a computer to which you can connect a device. Personal computers have various types of ports. Internally, there are several ports for connecting disk drives, display screens, and keyboards. Externally, personal computers have ports for connecting modems, printers, mice, and other peripheral devices.
POTS – Plain old telephone service.
ppp – Point-to-Point Protocol, a method of connecting a computer to the Internet. PPP is more stable than the older SLIP protocol and provides error checking features.
privileged access – A privilege to use computer information in some manner. For example, a user might be granted read access to a file, meaning that the user can read the file but cannot modify or delete it. Most operating systems have several different types of access privileges that can be granted or denied to specific users or groups of users.
protocol – An agreed-upon format for transmitting data between two devices.
RAM (Random Access Memory) – a type of computer memory that can be accessed randomly; that is, any byte of memory can be accessed without touching the preceding bytes.
rootkits – malware that creates a method to retain access to a machine.
router – A device that forwards data packets along networks. A router is connected to at least two networks, commonly two LANs or WANs or a LAN and its ISP’s network. Routers are located at gateways, the places where two or more networks connect. Routers use headers and forwarding tables to determine the best path for forwarding the packets, and they use protocols such as ICMP to communicate with each other and configure the best route between any two hosts.
routing table – In internet working, the process of moving a packet of data from source to destination. Routing is usually performed by a dedicated device called a router.
sandbox – A security measure in the Java development environment. The sandbox is a set of rules that are used when creating an applet that prevents certain functions when the applet is sent as part of a Web page.
script kiddie – A person who runs hacking tools without knowing how or why they work.
sectors – The smallest unit that can be accessed on a disk.
Secure Shell – A protocol designed as a more secure replacement for telnet.
Server – A program on a remote computer that is used to provide data to a local computer, see client.
Services - Network services allow local computers to exchange information with remote computers.
SMTP – Simple Mail Transfer Protocol, a protocol for sending e-mail messages between servers. Most e-mail systems that send mail over the Internet use SMTP
social engineering – The act of obtaining or attempting to obtain otherwise secure data by conning an individual into revealing secure information.
spyware – Any software that covertly gathers user information through the user's Internet connection without his or her knowledge
SSH – Secure Shell, a program to log into another computer over a network, to execute commands in a remote machine, and to move files from one machine to another.
switch – In networks, a device that filters and forwards packets between LAN segments.
TCP – Transmission Control Protocol. Whereas the IP protocol deals only with packets, TCP enables two hosts to establish a connection and exchange streams of data. TCP guarantees delivery of data and also guarantees that packets will be delivered in the same order in which they were sent.
TCP/IP – Transmission Control Protocol/Internet Protocol. The suite of communications protocols used to connect hosts on the Internet.
tcpdump – a packet sniffer that records traffic on your computer.
Telnet – a protocol that allows a local user to connect to a remote computer and access its resources.
timebombs – code designed to execute at a specific time on a network or computer, for example when the expiration date is reached on a trial software.
topologies – The shape of a local-area network (LAN) or other communications system.
tracert – A utility that traces a packet from your computer to an Internet host, showing how many hops the packet requires to reach the host and how long each hop takes.
tracks – A ring on a disk where data can be written. A typical floppy disk has 80 (doubledensity) or 160 (high-density) tracks. For hard disks, each platter is divided into tracks, and a single track location that cuts through all platters (and both sides of each platter) is called a cylinder. Hard disks have many thousands of cylinders.
trojans – A destructive program that masquerades as a benign application. Unlike viruses, Trojans do not replicate themselves but they can be just as destructive.
Web Browser – a program that allows users to connect to web servers and view the pages stored on them.
Web Server – A computer where web pages are kept to be accessed by other computers.
weblogs (blogs) – Web page that serves as a publicly accessible personal journal for an individual.
Whois – An Internet utility that returns information about a domain name or IP address.
World Wide Web (www)– A service for the transmission and presentation of hypertext.
worms – A program or algorithm that replicates itself over a computer network and usually performs malicious actions, such as using up the computer's resources and possibly shutting the system down.
zine – Small, often free magazine, usually produced by hobbyists and amateur journalists.
[Tutorial] Tips and Trick How to Make Unlimited browsing and Download
Your very mad to your administrator because get limited access ?
You want free browsing?
You want unlimited download?
Learn from this trick:
Step 1:
1. Software 3rd party like http-tunnel you can download from h++p://http-tunnel.com or another alternative software which is you can search it from uncle google using keyword “http proxy”.
2. some snack, hot coffee or hot tea to accompany to download that software. (he...)
Step 2 :
1. Install software http-tunnel and let them installing with default option.
2. After finish installation, run that program. When you run it you will get question to serial key, but you can using use free service.
3. a. If you want free browsing, configure your browser.
*. Firefox 2.xx : Tools -> Option -> Advanced -> Network -> Settings.
Choose Manual proxy configuration, wrote that field like this :
HTTP Proxy = localhost
Port = 1080
Check option “Use this proxy server for all protocols”
choose “SOCKS v5?
No Proxy for = dont wrote thats
*. Opera 9.xx : Tools -> Preferences -> Advanced -> Network -> Proxy Server
Check protokol http, wrote that field like this :
HTTP = localhost
Port = 1080
*. IE 7.xx : Tools -> Internet Options -> Connections -> LAN settings
Check “Use a proxy server for your LAN”
Wrote that field like this :
Address = localhost
Port = 1080
Check “Bypass proxy server for local address”
3. b. If you want download unlimited, configure your download manager.
*. Getright 5.xx : GetRight Configuration -> Internet -> Proxy
In tab HTTP Proxy :
Check “Use PASV mode”
Check“Use proxy servers”
Wrote that field like this :
server : port = localhost : 1080
check option “use HTTP Proxy for FTP address”
check option “Tell HTTP Proxy server to not use caches”
In tab SOCKS Proxy :
Centang “Use PASV mode”
Check “Use proxy servers”
wrote that field like this:
server : port = localhost : 1080
Choose SOCKS Proxy type = SOCKS 5
check option “use SOCKS Proxy with HTTP connection”
check option “use SOCKS Proxy with FTP connection”
Hacking Lesson for Teen (Part2)
2. Legalities and Ethics
2.1. Introduction
New technologies, while building a new paradigm that invades every human activity, also influence the dark side of these activities: criminal behavior of individuals and of organized groups.
For this reason, I have reserved to analyze some aspects related to Legality and Ethics, analyzing several behaviors that could end in crimes and the consequences of these crimes.
2.2. Foreign crimes versus local rights
As noted above, the introduction of new technologies can result in the creation of new dark sides of activities: criminal behavior of individuals or organized groups. There are two main characteristics through which Information Technology and Communications (TIC’s) are related to crime:
1. Technologies can give the possibility of renewing traditional ways of breaking the law. These are illegal activities which traditionally appear in the penal codes, but are now being attempted in new ways. Examples include money laundering and illegal types of pornography.
2. In addition, because of their own innovation, TIC’s are resulting in the appearance of new types of criminal activities, and because of their nature, these new crimes are in the process of being added to the legislation of several countries. Examples include the distribution of spam and virus attacks.
Another characteristic of the TICs which must be emphasized is their territorial displacement, which affects the general surroundings but without any doubt affects other countries as well. Previously, areas of 'law' always had a clear territory regarding the judicial authority judging (COMPETENT JURISDICTION) and also regarding the law to be applied in the judging (APPLICABLE LAW). Both concepts are still noticeably geographic.
In summary, we can say that the TICs are global and essentially multi-border, while the law and the courts are limited to a specific state or territory. In addition, this disorientation is even more confusing than it initially appears. Although we are not aware of it, a bidirectional online communication between a user in Barcelona and a Web site hosted in an ISP in California can pass through more than 10 ISPs, hosted in a variety of remote points around the world.
Facing this diversity of addresses and nationalities, it becomes necessary to ask What laws of which country will be applied in case of litigation? Which of the possible countries will be the suitable court to adjudicate the case?
The relatively recent European Council's agreement on cyber-crime was signed in November 2001 in Budapest by almost 30 countries, including the 15 partners of the European Union, the United States, Canada, Japan and South Africa. This agreement intends to restore the TERRITORIAL PRINCIPLE to define competent jurisdiction. The signing of this agreement is the culmination of four years of work that have resulted in a document containing 48 articles that
are organized into four categories:
1. Infractions against confidentiality
2. Falsification and computer science fraud
3. Infractions relative to contents
4. Violations of intellectual property
Once the especially complex regulations and sanctions on criminal activity on the Internet have been described, consensus must to reached on three main areas of concerns or difficulties:
1st DIFFICULTY: JURISDICTION CONFLICT. Election of the most competent court for judging multinational and multi-border crimes. This problem is not definitively solved by any of the known judicial systems.
2nd DIFFICULTY: CONFLICT OF LAWS. Once the court has been chosen, the first obstacle that the court will encounter is choosing the law applicable for the case to be judged. Again we are forced to conclude that traditional legal criteria are not designed for the virtual surroundings.
3rd DIFFICULTY: EXECUTION OF SENTENCE. Once the competent court has determined a sentence, the sentence must be carried out, possibly by a different country than the country which dictated the sentence. Therefore, it is necessary to have an international commitment to recognition and acceptance of any sentences imposed. This problematic issue is even more complicated to solve than the two previous ones.
These complications were clearly demonstrated in the recent case of a hacker in Russia, who had hacked several US systems, and was invited to a phony US company for an interview. During the interview, he demonstrated his skills by hacking into his own network in Russia. It turned out that the interview was actually conducted by the FBI, and he was arrested. The FBI used sniffers placed on the interview computer to raid the hacker's computer in Russia and download evidence that was used to convict him. But there are many unresolved issues:
· Was it legal for the FBI to examine the contents of a computer in Russian, without obtaining permission from the Russian government?
· By inviting the hacker to the US, the FBI did not have to arrange for his extradition to the US. Was this legal?
· Could the US convict a person for crimes that were technically committed on Russian soil?
Finally, he was convicted in the US, because he had used a proxy server in the US to conduct some of the attacks. He served just under 4 years in prison and now lives and works in the US.
2.3. Crimes related to the TICs
The classification of the criminal behaviors is one of the essential principles in the penal systems. For this reason, several countries must think of changes to their penal codes, such as Spain, where the effective Penal Code was promulgated relatively recently. The well known Belloch Penal Code was approved on November 23rd 1995 (Organic Law from the Penal Code 10/1995) and it recognizes the need to adapt the penal criteria to the present social reality.
Among others, we can classify potential criminal actions into the following six sections.
1. Manipulation of data and information contained in files or on other computer devices.
2. Access to data or use of data without authorization.
3. Insertion of programs/routines in other computers to destroy or modify information, data or applications.
4. Use of other people's computers or applications without explicit authorization, with the purpose of obtaining benefits for oneself and/or harming others.
5. Use of the computer with fraudulent intentions.
6. Attacks on privacy, by means of the use and processing of personal data with a different purpose from the authorized one.
The technological crime is characterized by the difficulties involved in discovering it, proving it and prosecuting it. The victims prefer to undergo the consequences of the crime and to try to prevent it in the future rather than initiate a judicial procedure. This situation makes is very difficult to calculate the number of such crimes committed and to plan for preventive legal measures.
This is complicated by the constantly changing technologies. However, laws are changing to increasingly add legal tools of great value to judges, jurists and lawyers punish crimes related to the TICs.
Next we will analyze some specific crimes related to the TIC's.
1. Misrepresentation: The anonymity of the internet allows users to pretend to be anyone that they want to be. As a result, crimes can be committed when users pretend to be someone else to gain information, or to gain the trust of other individuals.
2. Interception of communications: Interceptions of secrets or private communications, such as emails, or cell phone transmissions, using listening devices, recording, or reproduction of sounds and or images.
3. Discovery and revelation of secrets: Discovering company secrets by illegally examining data, or electronic documents. In some cases, the legal sentences are extended if the secrets are disclosed to a third party.
4. Unauthorized access to computers: Illegal access to accounts and information, with the intent of profiting. This includes identify theft.
5. Damaging computer files: Destroying, altering, making unusable of in any other way, damaging electronic data, programs, or document on other computers, networks or systems.
6. Illegal copying: Illegal copying of copy-righted materials, literary, artistic, scientific works through any means without the authorization of the owners of the intellectual property or its assignees.
2.4. Prevention of Crimes and Technologies of double use
The only reliable way to be prepared for criminal aggression in the area of the TICs is to reasonably apply the safety measures that have been explained throughout next chapter. Also it is extremely important for the application of these measures to be done in a way that it becomes practically impossible to commit any criminal or doubtful behaviors. It is important to note that technologies can have multiple uses and the same technique used for security can, simultaneously, result in criminal activity. This is called TECHNOLOGIES OF DOUBLE USE, whose biggest components are cryptography and technologies used to intercept electronic communications. This section discusses the reality of this phenomenon and its alarming consequences at all levels of the human activity including policy, social, economic and research.
2.4.1. The global systems of monitoring: concept "COMINT"
The term COMINT was created recently as a result of the integration of the terms "COMmunications INTelligence" and refers to the interception of communications that has resulted from the development and the massive implementation of the TIC's. Nowadays, COMINT represents a lucrative economic activity providing clients, both private and public, with intelligent contents on demand, especially in the areas of diplomacy, economy and research. This has resulted in the displacement of the obsolete scheme of military espionage with the more or less open implementation of new technologies for the examination and collection of data.
The most representative examples of COMINT technologies are the systems "ECHELON" and "CARNIVORE" which are discussed next.
2.4.2. "ECHELON" System
The system has its origins in 1947, just after World War II, in an agreement between the UK and USA with clear military and security purposes. The details of this agreement are still not completely known. Later, countries like Canada, Australia and New Zealand joined the agreement, working as information providers and subordinates.
The system works by indiscriminately intercepting enormous amounts of communications, no matter what means is used for transport and storage, mainly emphasizing the following listening areas:
· Broadband transmissions (wideband and Internet)
· Facsimile and telephone communications by cable: interception of cables, and submarines by means of ships equipped for this
· Cell phone communications
· Voice Recognition Systems
· Biometric System Recognition such as facial recognition via anonymous filming Later, the valuable information is selected according to the directives in the Echelon System, with the help of several methods of Artificial Intelligence (AI) to define and apply KEY WORDS.
Each one of the five member countries provides "KEY WORD DICTIONARIES" which are introduced in the communication interception devices and act as an "automatic filter". Logically, the "words" and the "dictionaries" change over time according to the particular interests of the member countries of the System. At first, ECHELON had clear military and security purposes. Later, it became a dual system officially working for the prevention of the international organized crime (terrorism, mobs, trafficking in arms and drugs, dictatorships, etc.) but with an influence reaching Global Economy and Commercial Policies in companies.
Lately, ECHELON has been operating with a five-point star structure around two main areas. Both are structures of the NSA (National Security Agency): one in the United States, coinciding with their headquarters in Fort Meade (Maryland), and another one in England, to the north of Yorkshire, known like Meanwith Hill. The points of the star are occupied by the tracking stations of the collaborating partners:
· The USA (2): Sugar Grove and Yakima.
· New Zealand (1): Wai Pai.
· Australia (1): Geraldtown.
· UK (1): Morwenstow (Cornwell).
· There was another one in Hong Kong before the territory was returned to China.
2.4.3. The "CARNIVORE" system
The second great global systems of interception and espionage is the one sponsored by the US FBI and is known as CARNIVORE, with a stated purpose of fighting organized crime and reinforcing the security of the US. Because of its potent technology and its versatility to apply its listening and attention areas, CARNIVORE has caused the head-on collision between this state of the art system, political organizations (US Congress) and mass media.
CARNIVORE was developed in 2000, and is an automatic system, intercepting internet communications by taking advantage of one of the fundamental principles of the net: the dissemination of information in "packages" or groups of uniform data. CARNIVORE is able to detect and to identify these "packages of information". This is supposedly done in defense of national security and to reinforce the fight against organized and technological crime.
The American civil rights organizations immediately protested this as a new attack on privacy and confidentiality of electronic information transactions. One group, the Electronic Privacy Information Center (EPIC) has requested that a federal judge order the FBI to allow access by the ISP'S to the monitoring system – to ensure that this system is not going to be used beyond the limits of the law.
In the beginning of August 2000, the Appeals Court of the District of Columbia rejected a law allowing the FBI to intercept telecommunications (specifically cell phones) without the need to ask for previous judicial permission, through a Federal Commission of Telecommunications project that tried to force mobile telephone companies to install tracking devices in all phones and thus obtain the automatic location of the calls. It would have increased the cost of manufacturing equipment by 45%.
With these two examples, we see the intentions of the FBI to generate a domestic Echelon system, centering on the internet and cell phones, known as CARNIVORE. The project has been widely rejected by different judicial courts in the US and by Congress, as there is no doubt it means an aggression to American civil rights, at least in this initial version.
The project is being rethought, at least formally, including the previous judicial authorization (such as a search warrant) as a requirement for any data obtained to be accepted as evidence in a trial.
2.5. Ethical Hacking
Besides talking about criminal behaviors, crimes, and their respective sanctions, we must make it very clear that being a hacker does not mean being a delinquent. Nowadays, companies are hiring services from “Ethical Hackers" to detect vulnerabilities of their computer science systems and therefore, improve their defense measures.
Ethical Hackers, with their knowledge, help to define the parameters of defense. They do "controlled" attacks, previously authorized by the organization, to verify the system's defenses. They create groups to learn new attack techniques, exploitations and vulnerabilities, among others. They work as researchers for the security field.
Sun Tzu said in his book "The Art of War", "Attack is the secret of defense; defense is the planning of an attack".
The methodology of ethical hacking is divided in several phases:
1. Attack Planning
2. Internet Access
3. Test and execution of an attack
4. Gathering information
5. Analysis
6. Assessment and Diagnosis
7. Final Report
One helpful tool that Ethical Hackers use is the OSSTMM methodology - Open Source Security Testing Methodology Manual. This methodology is for the testing of any security system, from guards and doors to mobile and satellite communications and satellites. At the moment it is applied and used by important organizations such as:
· Spanish Financial institutions
· the US Treasury Department for testing financial institutions
· US Navy & Air Force
2.6. The 10 most common internet frauds
Listed below is a summary from the US Federal Trade Commission of the most common crimes on the Internet as of 2005.
1. Internet Auctions: Shop in a "virtual marketplace" that offers a huge selection of products at great deals. After sending their money, consumers receive an item that is less valuable than promised, or, worse yet, nothing at all.
2. Internet Access Services: Free money, simply for cashing a check. Consumers are "trapped" into long-term contracts for Internet access or another web service, with substantial penalties for cancellation or early termination.
3. Credit Card Fraud: Surf the Internet and view adult images online for free, just for sharing your credit card number to prove you're over 18. Fraudulent promoters use their credit card numbers to run up charges on the cards.
4. International Modem Dialing: Get free access to adult material and pornography by downloading a "viewer" or "dialer" computer program. Consumers complained about exorbitant long-distance charges on their phone bill. Through the program, their modem is disconnected, then reconnected to the Internet through an international long-distance number.
5. Web Cramming: Get a free custom-designed website for a 30-day trial period, with no obligation to continue. Consumers are charged on their telephone bills or received a separate invoice, even if they never accepted the offer or agreed to continue the service after the trial period.
6. Multilevel Marketing Plans/ Pyramids: Make money through the products and services you sell as well as those sold by the people you recruit into the program. Consumers say that they've bought into plans and programs, but their customers are other distributors, not the general public.
7. Travel and Vacation: Get a luxurious trip with lots of "extras" at a bargain-basement price. Companies deliver lower-quality accommodations and services than they've advertised or no trip at all. Others impose hidden charges or additional requirements after consumers have paid.
8. Business Opportunities: Taken in by promises about potential earnings, many consumers have invested in a "biz op" that turned out to be a "biz flop." There was no evidence to back up the earnings claims.
9. Investments: Make an initial investment in a day trading system or service and you'll quickly realize huge returns. But big profits always mean big risk. Consumers have lost money to programs that claim to be able to predict the market with 100 percent accuracy.
10. Health Care Products/Services: Claims for "miracle" products and treatments convince consumers that their health problems can be cured. But people with serious illnesses who put their hopes in these offers might delay getting the health care they need.
