By nexzus
________________________________________________________________________________
___



http://Astalavista.com/archive/ --- By nexzus

________________________________________________________________________________
___



xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

BACK ORIFICE 2000 GUIDE FOR BEGINNERS ---By nexzus

xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

This aticle is for the ABSOLUTE BEGINNERS who want to use BACK ORIFICE 2000. I'll

assume that you have completely no experience in this field at all. smile.gif More experience

user may also find this helpful. Take note that I shall not be responsible for

whatsoever that results from reading and practising any infomation in this article..

Here goes..

--------------------------------------------------------------------------------

Basics Back Orifice consist of 2 main parts. The "client" and the "server". The

client is the part of Bo2k that you use to control the other party's comp. By

defult, it's bo2kgui.exe The server is the file you install in the other party's

comp in order to control it. By defult, it's bo2k.exe. Never ever run bo2k.exe

on your own comp unless you know what you are doing. Another ipmortant component

is plugins. To put it simply, Plugins are addon for Bo2k. They enhance the power

of Bo2k.For a list of plugins for Bo2k, goto the Bo2k official Site. In order

to control the other party's comp, you must first sent the bo2k sever to the other

party, and once the other party runs it, you just start your bo2k client and using

it you can assert your control.

--------------------------------------------------------------------------------

Why Is BO2K so powerful? Well it's because it's very versitile . You can do almost

anything to the other's party comp with it, almost as if you were the one sitting

in front of it. You can even control the Webcameral on the other's party comp.

Another reason is beacuse of it's strong encryption. The encryption on Bo2k itself

is very lousy. However if combined with some of it's plugin, it can be extremely

hard or maybe even impossible to crack. Thus this provides a secure link between

you and the other party, ensuring that no one else other than you can control

the other party's comp.Another reason is because you can configure bo2k which

port to listen too. Thus it's very hard for others to detect if the person has

Bo2k on his/her system.

--------------------------------------------------------------------------------

How to use it? First you must configure both the client and the server. First

let's configure the server. D/l a copy of Bo2k and unzip it. Then run the file

bo2kcfg.exe. A window will appear welcoming you to the bo2k configuration wizard.

Click on next (For those experts, they dun use the wizard, they configure it manually.

But one thing at a time first.) Then the wizard will ask you for the bo2k server

file(that's bo2k.exe). By defult you just need to click next. However if you rename

it or kept it in another folder, go browse for it. Now it will ask you if you

want TCPIO connection or UDPIO Connection. I would recommand TCPIO. Now they will

ask you what port you want it to listen to. More popular ones are 6666, 54321,

33137, 31336 and 4444. Try to advoid these. Try putting a number that you can

remember easily. Avoid 12345, 1080, 8808. Now they will ask you for your encryption

type. Usually you get only to choose the XOR option. Do not choose 3DES if you

are not in US. Actually you might as well throw away both encryption. They are

lousy. I'll teach you how to get very much powerful ones later. Now they will

ask you what password you want to use.. Choose one and remember it. Then click

finished. The wizard will auto config the Client part for you. Be patient you

can use it soon...Now sent the server part(bo2k.exe ) to the other party and when

the other partyruns it, you will be able to connect to it. How do you do that?

Start bo2kgui.exe. Click on file, then new server. Type what ever name you want

to call it. Now type the ip address of the other party. If you don't know it,

then you are out of luck. If the other party ison irc, just goto irc and type

/dns and you will get the ip(plz dun include the <> when typing /dns). Now click

on connect. You should see a window saying "Retriving server capability. Please

wait.." However if you see "Cannot connect to Remote server" that means the other

party either did not run the Bo2k.exe or he is behind a firewall or maybe he has

gone offline. Then you are out of luck. smile.gif One you have connnect, on the right

window you should see some folders. Let me explain the functions inside the folder.

_____________________________________________________________________________

XXX Simple XXX ping:This function is to see the respond time between the other

party and you. query:Refresh your connection. Useful if you have adjust the server

settings of the other party. XXX system XXX Reboot:Restart his comp. lock up machine:

Disable all user input.(Simple english: Hang his comp) List pssword:Get the passwords

from the cache if he have them saved in his comp. Get system info:Self explainatory.

XXX Key logging XXX Log keystrokes:Keep a record of whatever he type. (Enter this

into the blank on the right c:\[filename].txt where [filename] is the name of

the file you want the keystroke to be recorded.) End Keystroke log: Self explaintory.

View keystroke log:View whatever he has type since keystroke logging has started.(Tkae

note that you must end keystroke logging B4 you can read it. In the right, enter

the full path of the log file. Delet Key log: Self explainatory. XXX GUI XXX System

message box:Sent a message window right to his screen.(Remember to fill in the

fields on the right.) XXX TCP/IP XXX Hey if you are reading this guide, you are

a beginner and beginners don't need to use this. Anyway here are some of it functions:

Connect to another comp on a certain port,Transfer file to comp,listen to a specific

port. If you dun understand what I'm saying, it doesn't matter. Beginners don't

need to know. XXX Process Control XXX List process: List the programs the other

party is running( You do not need to fill anything in the field on the right.)Something

like this should apprear:(0xFFFE5CF7) EXPLORER 5 threads. "0xFFFE5CF7" is the

process ID. "EXPLORER" is the process name."5 threads" is the number of threats

it's using. Kill Process: Shutdown a certain program. Fill in the Process ID on

the right. (remember "0xFFFE5CF7" just now? It's the process id.) Start process:

Start a certain program. You need to fill in the complete path on the right. Eg:

c:\windows\scandisk.exe XXX Registry XXX You are a beginner remember? Beginners

don't play with others registry. If you want, play with your own. XXX Multimedia

XXX Capture Vidio Still: If the other party has a cameral installed and it is

on, you can use it to capture a snap shot.You must list the device #. You can

find this out using the "Show capture devices" function. For the file name, you

must type the full path you want it to be stored to and it must be in bitmap formate(.btm).

Eg: c:\bo2kpic.btm As for the size, it's optional. Defaults are 640x480x16bpp

Capture AVI: USe the cameral and capture a movie. Fill in the device numder. Fill

in the full path name of the file you want it to storeda nd it must be in AVI

formate. c:\bo2kmovie.avi For Sec, Width, Height, BPP , It's optional. Defult

is 5 sec. Play Wave file: Play a music file. Type in full path name. Play Wave

file in loop:Same as above except in loop. Stop wave file: Stop the music plying.

List capture device: List the device number of caputring device. Capture Scree:

Take a screen shot of the other party's screen. It's in bitmap formate and you

must enter the full path name. EG: c:\bo2kscreen.btm (PLEASE THAT NOTE THAT WHEN

I REFERR TO THE FILE TO SAVE ALL THOSE FILES, I REFERL TO THE C:\ OF THE OTHER

PARTY NOT YOURS.SO ONCE YOU SAVE THE FILE, YOU WILL NEED TO TRANSFER THEM TO YOUR

H.D. AS FOR HOW TO DO THAT, Continue Reading) XXX FIle/Directory XXX Hey FILE

TRANSFERING is troublesome in BO2K. I recommand you to use BOtool Plugin for file

browsing and file transfer. XXX Compression XXX Freeze File:Compresses a single

file.Path name: Full pathname of the file to be compresed. Out Put Pathname: the

path name of the file that you want it to be compressed to. Melt file: Uncompress

a file. Full path name of file required. XXX DNS XXX If you use IRC, you should

know these functions, If not, you probably won't want to use theses functions

any way. XXX Server Control XXX Shutdown server: Shutdown Bo2k on the other party.

the field on the right is optional. If you type :delet" in it, Bo2k will not stat

forevenr on the other party system. Restart Server:Shuts down and restarts the

BO2K Server. Useful if you have made any configuration changes or if the BO2K

server has been corrupted or is behaving strangely due to poorly written plugins

or whatnot. The server will lose all connections but will remain responsive once

it comes back up Load Plugin:Dynamically loads an external BO2K plugin DLL. Runs

all of the plugin initialization code and registers new commands with the server.

--------------------------------------------------------------------------------

Yup that's about it.... You are now ready to rock. bELOW IS ON HOW TO LOAD PLUGINS

--------------------------------------------------------------------------------

XXXXXXXXXXXXXXXX Plugins XXXXXXXXXXXXXXXXXXXXXXXXX Bo2k on it's own is powerful

enought. Hoever, it's a little troublesome sometimes especially when you want

to transfer files or edit the other party's registry. How do we make it easiler?

Simple, using plugins. For a list of complete plugins, goto Bo2k official site

. Here, I shall thouch on serveral popular plugins that I feel everyone should

be using. But first of all, how do we load Plugins? XXXXX How to load Plugins?

XXXXX First let me explain. There are three types of pluings. Server, client and

both client and server plugin. Well sever plugins means that you have to load

it only in to the server (bo2k.exe) and client plugin means it needs to be loaded

into the client(Bo2kgui.exe). As for client and server plugin you probably know

what it is. First let us load a plugin into the server. Run bo2kcfg.exe and when

the wizard pops up, choose Exit(I assume that you have already config the server

earlier.) A new window should popup. Click on "open server" and go find your sever

file(bo2k.exe). After loading the server, you should see the option "insert" Click

on that. Now go search for the "Bo peep" plugin.(You hshould have it in the plugin

folder if you d/l the original Bo2k.) Now load it and then click on "save server".

Viola! You have loaded your first plugin. Easy rite? Well bo peep doesn't need

configuration, that's why it's easier.Now we have to load it into the client.

Run bo2kgui.exe once it starts up, goto plugins, then configure. Same thing, click

on insert then search for bo peep plugin again. Once loaded , click done. Viola

again. You have done it. smile.gif That should cover up the tutorial on how to load plugin.

Below is the list on how to use and load several more popular plugins that I personally

use. (plz take note that in this tutorial, Bo peep is a client and server plugin,

therefore I've loaded it in to the client and server. Take note that clinet plugin

is strictly for clinet and server plugin is strictly for server only. Do not attemp

to load into both.)

FINISHED-----------

****************************************************************************

copyright © nexzus 2000 nexzus@bigfoot.com May not be reproduced without the

permission of the author.

****************************************************************************

For more info or downloads on BO2K, visit http://home.cyberarmy.com/nexzus