Thursday, October 23, 2014

10 east Steps to Hack Facebook Accounts with SET on Backtrack 5/ Kali linux




Step 1 : Open set Tool in Backtrack 5 : To open it follow the step shown above .


Step 2 : Time to set the Website Attack Vectors : Below Menu   enter yourchoice : 2.Website Attack Vectors and press Enter .


Step 3 : Select your Attacking Method , Here i choose 
3. Credential Harvester Attack Method.


Step 4 : Select Attack Vectors :write  2. Site Cloner and press enter as shown in the image . 

Step 5: Enter the Url: To make a clone to facebook login page I enteredhttps://www.facebook.com and press enter . As I press enter it will automatically generate a clone page .


Step 6 : To continue the process you have to put * sign and press enter.


Step 7 : Process will continue as shown in the image above .


Step 8: Open terminal and enter ifconfig command . It will shown your ip address . Now copy the ip address .



Step9 :Open Web Browser and  Paste the system ipaddress into Address bar and it will redirect to the facebook login page .
Now Enter your anything to check it will work or not . 
FOR EXAMPLE: Here I use 
Email : h4x00r
Password:hackingDNA.com

And Press Enter . Let see what happen on the Next step .


Step 10 : In step 7 the process start you remember now when you follow step 8 and step 9  ,then it will come up with  all the details of Username and Password . 

This is how we set a trap and hack victim facebook and password only onBacktrack 5 
check out the video 
https://www.youtube.com/watch?v=Q8kYuEDXZ2M

Tuesday, October 14, 2014

HACK REMOTE COMPUTERS WITH Dark Comet RAT


Dark Comet RAT [v5.3]








If you guys know a bit about this then you must know that the latest versions of DC ( Legacy Versions ) just screw you up because it doesn't has the "Build Server" option (!) shocking , isn't it ? Probably to make it legal .So I am giving you this older version of DC which has the option (as like in the image below ).I hope you know how to set it up.

Note : In order to use this rat you have to disable your antivirus or any other security program otherwise it will got deleted . Antiviruses must detect it because it is an hack tool .. ;) 



NOTE : This tutorial is just for educational purposes .I am not responsible for anything that you do with it . REMEMBER using a rat on  someone else computer without their permission is CRIME .


Tutorial Courtesy ultimatepeter 


Download it from above link.



  • TOS should show up.
    DarkComet-RAT-09
    Tick the box saying ‘Do not display again the EULA‘ that is located at the bottom left. DarkComet-RAT-10
    Click ‘I accept‘  DarkComet-RAT-11

    • At the bottom left, it will show up a Help Screen, tick ‘Do not show at startup‘ then click ‘FineDarkComet-RAT-12
    • Click DarkComet-RAT at the top left.
      DarkComet-RAT-13

    • Click ‘Listen to new port (+Listen)
      DarkComet-RAT-14
      A new window should open, put in your Port then tick ‘Try to forward automaticaly (UPNP)
      DarkComet-RAT-14.5
      IN this case, I will do port 70 so I put that in, tick ‘Try to forward automatically (UpNP)‘ and click Listen.
    • Move over to ‘Socket / Net‘ located at the very end of the top left border.
      DarkComet-RAT-15
      You should see something like this:
      DarkComet-RAT-16
      70 may not be your port, your port that you added in ‘Listen to new port‘ will be displayed, not specifically 70.
    • Go to ‘www.canyouseeme.org
      DarkComet-RAT-17
    • Put in the port that you are listened on.
      If all went well, it should look like this:
      DarkComet-RAT-18
    • Now, click DarkComet-RAT again and click Server Module, then click Full Editor (Expert)
      DarkComet-RAT-19
    • Name your Security Password anything you like, then click the Mutex a few times. We then have the Main Settings done.
      DarkComet-RAT-20
      Make sure you untick FWB (Firewall Bypass)
    • Go to Network Settings.
      Now, go to http://www.no-ip.com and register
      Click Free DNS
      DarkComet-RAT-21
    • Put in whatever you want for it. Make sure the email is valid because we will need it to validate. (if you don’t want to give your email, get a temp email at 10minutemail.com)
      DarkComet-RAT-22
      Sign in now.
    • Now, at the Body you will see a list of options, click ‘Add Host’
      DarkComet-RAT-23
    • Copy the settings:
      DarkComet-RAT-24
      Leave IP Address, as that will show as Default your IP address.
    • Click Create Host.
    • Go back to your DarkComet and put in the Ip/DNS and Port (DNS for the NO-IP you made a second ago and Port for the one you listened on!)
      DarkComet-RAT-25
    • Then click ‘Add‘ and go to Module Startup.
      Tick the ‘Start the stub with windows (module startup)’
      Then leave everything but ‘Persistance installation ( always come back )
      Tick that.
      Now, it should look like this:
      DarkComet-RAT-27
    •  Now go to ‘Stub Finalization‘ at the end.
      If you are going to get it crypted then don’t tick UPX (Ultimate Packer Executable) but if you are, I would leave it off and just have it on No compression.
      DarkComet-RAT-28
    • Now tick the ‘Save the profile when stub succesfully generated’ and Build the Stub.
      Now there is one last thing.
    • Go to the Client Settings in DarkComet-RAT and then Click NO-IP Updater
      DarkComet-RAT-29
    • Then put in the NO-IP host, Username and Password, then tick ‘Auto update your no-ip dns when your IP change
      DarkComet-RAT-30
    • Now, run the stub that you generated in a Sandbox to test, and you should show up!

    • Here now, we have run through the entire thorough setup for DarkComet. Even your kid brother could follow this tutorial. 

    AndroRAT + apk builder : Hack any Android mobile with it LIKE AND TWEET



    AndroRAT is a composite name of Android and RAT ( Remote Administrative Tool )

    The things you can do with it :


    • Get contacts (and all theirs informations)
    • Get call logs
    • Get all messages
    • Location by GPS/Network
    • Monitoring received messages in live
    • Monitoring phone state in live (call received, call sent, call missed..)
    • Take a picture from the camera
    • Stream sound from microphone (or other sources..)
    • Streaming video (for activity based client only)
    • Do a toast
    • Send a text message
    • Give call
    • Open an URL in the default browser
    • Do vibrate the phone
    Before you download it,please check that you must temporarily disable your antivirus.These files are clean but antivirus must detect it cause its Hacktool .

    If you like my tutorial also like my FB page


    DOWNLOAD

    Stuffs you'll need :

    1. no-ip DUC  click here

    2. androrat + apk binder (of course!) 

    3. Simple port forwarder Click here . Download its portable version  
    Many noobs having problem with port forwarding i have found this application while googling this one of simplest apps i have ever seen for port forwarding.Many port forwarding tutorial doesn't simply work because every modem company has its own way to open port

    4.Latest JAVA from here


    Get Started  :

    Step 1 :

    Go to http://www.noip.com/ and get registered .Login to your account in website you'll see "manage domains " " add domains " something like that ignore that and find "Add Host". Click on it. Now you'll see that there is "host name " add  name which you like and also the extension "zapto.org"or "no-ip.biz".Don't change remaining settings now click on orange coloured "add host "  and create a host 

    Step 2 :

    Now install the DUC.exe that you have downloaded earlier. open it and login with the info that you have created .Once you have successfully logged in click on select host like in the picture below Finally click on "refresh Now ".If you have done till this you are half of way .






    Step 3 :

    Now i hope you have downloaded the portable version of Simple port forwarding . Open it select your router and right click on the empty white space and add ports ....a new window will open with list of programs there is another tab called add custom click on that and add any name you want to give add the range of ports you want to open like 1600 to 1610 or 5000 to 5010 etc ...
    Don't forget to click on update router . You must know the default password if you haven't changed it you can google for it .


    Go to canyouseeme.org and check any port within the range that you have entered . If it says the ports are open then you are going right . 


    Step 4 :

    Download any apk file that you want like Temple Run 2 or something . Keep it in the androrat folder 


    Now open androrat apk binder now in the first tab in the place of ip address just put the name of the host AS IT IS ,that you have created in step 1. Enter any port within the range .Remember just put single port . for example if you have put the range of 1600 to 1610 then put any number between this like 1604 OR 1605 . Now click on "Browse " and select the file in my case temple run.

    And finally click on "GO" Now if everything is correct then you'll see "Completed" like message in the empty field. 


    The server binded file will be created in the same folder and its name will be "Framework.apk" Now change its name to anything and send it to victim now as soon as victim clicks on that file his android device will be in your hand .. TURN Evil ;)




    Go to androrat folder and click on androrat.jar file it will open a graphical user interface with which you can do all of the above things ( like in the image )






    TIP : Once you have opened this for first time use click on Server >  Select port > add the same port from last step close it and open it again then it will start to listen to the port 

    Browse Facebook on mobile witthout Internet Connection


    Singapore—based software applications developer U2opia Mobile has developed a new application for mobile phones that will allow users to access Facebook on all types of handsets without paying for a data connection.

    “We are using USSD technology, which will enable users to access Facebook without having a GPRS connection on their phones,” said Sumesh Menon, the co-founder and chief executive officer of U2Opia Mobile.



    Unstructured Supplementary Data (USSD) is the technology used by telecom players to send alerts to their users that inform them about their balance at the end of a call or for sending missed call alerts.

    Mr. Menon mentioned that though the technology will not provide access to graphics, it will help users send and view updates on their friends' Facebook walls.

    “It is like SMS and hence, the load on the network is negligible. We have built some commands through which a user can receive alerts on activity happening on his wall as well post an update,” said Mr. Menon.

    U2opia launched this application on Tuesday with Indian telecom major Bharti Airtel.

    While Airtel customers can update their Facebook status through this USSD service free of cost, Re.1 per day will be applicable for accessing the full-feature application, which enables viewing news feeds, commenting on or ‘liking' news feed stories, posting on friends' walls, confirming friend requests, viewing notifications and findingand adding friends.

    Airtel users can dial *325# and *fbk# for non-qwerty mobile handsets to access Facebook without subscribing to data plans, the statement said. — PTI

    source:www.thehindu.com

    No Registration - send Anonymous Sms

    Some of websites that will allow to send anonymous sms without registration


    1.  Smsti.in
    2.  Seasms.com
    3.  Spicesms.com
    4.  Bollywoodmotion



    if you know some other sites,comment here

    Keylogger for Mobile Phones-Mobile Spy

    MobileSpy

    So far we have seen lot of keyloggers for computer.  Now  i am going to introduce mobile spy software to my blog visitors.

    Mobile Spy is the next generation of smartphone spy software. Do you suspect that your child or employee is abusing their SMS or vehicle privileges? If yes, then this software is ideal for you. Install this small program directly onto your compatible smartphone you want to monitor to begin recording.



    Using the Internet capabilities of your phone, recorded activities, logs and GPS locations are quickly uploaded to your Mobile Spy account. To view the results, you simply login to your secure account at the Mobile Spy web site. Logs are displayed by categories and sorted for easy browsing.

    The software is completely stealth and works independently. Mobile Spy does not rely on the phone's call and message logs to record activities. So even if the user tries to delete their tracks, the data will still be retained and uploaded. Compatible with most models of iPhone, BlackBerry or Android phones! Also compatible with Windows Mobile, Symbian OS and iPad.

    Features:

    Call Log: Each incoming and outgoing number is logged along with duration and time stamp.

    SMS (Text Messages) Log:Every text message is logged even if the phone's logs are deleted. Includes full text.

    GPS Locations Log:  GPS postions are uploaded every thirty minutes with a link to a map.

    Contacts: Every contact on the phone is logged. New contacts added are also recorded.

    Tasks: All personal tasks that are created are logged and viewable.

    Memos:  Every memo input into the phone is logged and viewable.

    Cell ID Locations:

    ID information on all cell towers that the device enters into range of is recorded.

    E-Mail Log:

    All inbound & outbound email activity from the primary email account is recorded.
      
    Calendar Events

    Every calendar event is logged. Date, time, and locations are recorded.

    URL (Website) Log

    All URL website addresses visited using the phone's browser are logged.

    Photo & Video Log

    All photos & videos taken by the phone are recorded & are viewable.



    For More Details Visit: