hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Pages: 1, 2
Killaloop
QUOTE (996633 @ Mar 11 2004, 04:35 PM)
Hi!
Sorry.
But what can I do if I am a total Beginner in hacking, but not in Computing.
When I haven't installed a Backdoor on the Server and i can't go to the server and install it, how do I install it from a Computer in the Same Network based on this Server?
Do you know any tutorials about this?
(German would be great)

makes no sense to me. How would you install a backdoor if you don't have access to the machine?
well, I will only give you one advice for now:
Learn English if you want to get serious. you will need it
dotcom
QUOTE (996633 @ Mar 11 2004, 04:35 PM)
Hi!
Sorry.
But what can I do if I am a total Beginner in hacking, but not in Computing.
When I haven't installed a Backdoor on the Server and i can't go to the server and install it, how do I install it from a Computer in the Same Network based on this Server?
Do you know any tutorials about this?
(German would be great)

No tut here sorry but since it's on the same LAN maybe try ipcscanning the server?

You need to find the key before you can open the door..or is it... you need to find the door before you can know where the key goes?? laugh.gif

meaning: You need to know how you'd exploit this server before your able to just upload something...

Being new to hacking you probably (I am guessing here) thought that by a topic of backdoor you thought this was about how to enter the system...well it is----sort of heh. This topic was mostly about a backdoor to get in if the frondoor you made was found, and locked by the admin...you hope he doesnt find all your doors, you see? Hope that helped more than it confused 996633
EzMe
QUOTE (996633 @ Mar 3 2004, 03:51 PM)

Radmin I really understand well, but I don't know, how to upload it to the Server when I have got just user Rights, also I have to run it, but how and with wihich programm.


Just exploit a local service wich has admin rights. Then goto the dir where u have placed radmin.exe, then "net start radmin"

Oh.. and for all those ppl who don't know how to use nc... It has been said, what..about 5 times..? If u don't get it, just use google plz... There is a lot of documentation out there, also about nc!
Shadower
QUOTE (996633 @ Mar 3 2004, 03:51 PM)

@all: Radmin I really understand well, but I don't know, how to upload it to the Server when I have got just user Rights, also I have to run it, but how and with wihich programm.
NetCat must be great, but can anybody say me the NetCat command's in the rigt order? (Where I have to copy the r_server, and the 2 dll's, then, what I have to say NetCat, to upload radmin and run it)

If you have user rights on the remote machine and the remote machine has shared drives you can copy the file to the server through explorer. Tools>Map Network Drive.

As you have a login to the remote machine you can use PSExec in DOS to run a program on the remote machine.


Info + Download of psexec > www.sysinternals.com/ntw2k/freeware/psexec.shtml
996633
Hi!

@ EzMe, no I know, what this topic is about, but I'm trial meber, so I can't open my own Topics. So I wrote this into this Topic. I know, what backdoors are good for. I also scanned the server. There are for example the ports 139 135 80 5001 and many many others opened. Can anybody say me, which are the best exploitable? and How?

@Shadow, thank you, I'll try this. i can upload files throug the explorer. And I'ss try the programm you named me.
guufa
He he, there are two dangerous ports opened : 139 and 135.

139 is the netbios port, you can test with this port a brute-force users/pass scanning and next if they are IPC$ shares. Try an IPC-Scanner like Fxscanner, xcan, ipcscan.

135 is the RPC port but this port is now much known with Msblaster, DCOM, webdav... But you can try scan RPC exploit.
Cyrus
QUOTE (night^man @ Feb 23 2004, 03:59 PM)
im looking 4 somthing that open shell on some port
smile.gif help here

Hmm
Then take a look at this homepage http://dycon.clawz.com/
Its seems to be a simple telnet shell but it isnt detected by avs yet.
toost
Nice backdoor info here, ill take a look at that thnx
996633
Hi!

I tested PSTools on my Network, but when I try to remotly start the Programm, I've copied it before. I logged in without Password and one time with userpassword. But everytime I get "Zugriff verweigert" (Acces Denied).

What should I do?
Cyrus
QUOTE (996633 @ Mar 13 2004, 05:30 PM)
Hi!

I tested PSTools on my Network, but when I try to remotly start the Programm, I've copied it before. I logged in without Password and one time with userpassword. But everytime I get "Zugriff verweigert" (Acces Denied).

What should I do?

Hmm, i think you have a windows xp?
You cant access the windows xp admin shares even if you have the password...Works only on windows 2000
996633
Hi!

Great, That's great, I yust tested it under Win XP, and it didn't work.
But I wanted this programm to Start it under a Win 2000 computer.
Great, that it works under win 2000, I got shocked, when the programm didn't work. Thank you. Do I have to give the Programm the username or does it work without it?
996633
Hi!
I tested now, to upload radmin and start it, but then, my Firewall started and blocked Radmin. Is there A programm to control the remote desktop, that can open a port that isn't noticed by the firewall?
bubilla
I really like this tool, it gives you a shell plus many other usefull stuff. Its called wollf-v1.4

hxxp://www.xfocus.org/programs/
DumpZ
Wollf is really good only it's detected bij AV's
996633
HI!

Thank You, but I'm searching for a programm, that disables the Firewall.
Is Optix good?
On my Firewall it worked, but is it up to Date?
Then I want to upload Radmin with it. And I want to give Radmin Rights to get through the Firewall and then Enable the Firewall. Is this Possible?
Nexus1155
I Recomend Cruel Intentions Administrator
Chunks
I use pingdoor a lot... it's a sexy little program.

It hides in the background and doesn't become actively listening until you ping the machine with a specified size of packet smile.gif
Train25
QUOTE (Chunks @ Mar 16 2004, 09:47 PM)
I use pingdoor a lot... it's a sexy little program.

It hides in the background and doesn't become actively listening until you ping the machine with a specified size of packet smile.gif

Do you have a URL where we can find it and more information on it?
996633
Now I tested PStools on a Win 2000 Lan.
But If I tried to start a programm remotly that i've copied before I just gained Access Denied.
What can I do?
pollo
NTbindshell r0xxx!
996633
Hi!
I cracked now the Admin Password of the Server.
Now, I want to Add me to the Admin Group.
I think, there was a method like net user add... or somethng in MSDos.
Can anybody tell me how to add a user to a group and how to make a new user?

Marius
dont-staY
QUOTE (996633 @ Mar 24 2004, 03:35 PM)
Hi!
I cracked now the Admin Password of the Server.
Now, I want to Add me to the Admin Group.
I think, there was a method like net user add... or somethng in MSDos.
Can anybody tell me how to add a user to a group and how to make a new user?

Marius

net user <username> <password> /add
net localgroup administrators <username> /add
Alex Trust
just use RADMIN and change the reg values biggrin.gif cool.gif It's very nice

upload/download interface
remote desktop
and the best thing of a A GUD WORKING SHELL!!!

greetz
Cyrus
or use this little programm http://dycon.clawz.com/, it adds a user:dycon with the pass:lol and hides the user from the win xp login screen so the admin wont get it wink.gif + enables a telnet server.
studnikov
QUOTE
or use this little programm http://dycon.clawz.com/, it adds a user:dycon with the pass:lol and hides the user from the win xp login screen so the admin wont get it  + enables a telnet server


that application should have been made where the user can specify user / pass. All someone would have to to is scan ranges for that port listening and use the user n pass givin with the backdoor.
Cyrus
QUOTE (studnikov @ Mar 25 2004, 12:13 PM)
QUOTE
or use this little programm http://dycon.clawz.com/, it adds a user:dycon with the pass:lol and hides the user from the win xp login screen so the admin wont get it  + enables a telnet server


that application should have been made where the user can specify user / pass. All someone would have to to is scan ranges for that port listening and use the user n pass givin with the backdoor.

Maybe ill try to add this, but actually i havent an idea how to do this :/
996633
Hi!

Ok, it can hide the user from the win XP Logon Screen, but I know, that there is Win 2000 installed, how can I add a user add it to the admin group and hide the user, when somebody looks under users in the Admin group?
Cyrus
QUOTE (996633 @ Mar 26 2004, 02:30 PM)
Hi!

Ok, it can hide the user from the win XP Logon Screen, but I know, that there is Win 2000 installed, how can I add a user add it to the admin group and hide the user, when somebody looks under users in the Admin group?

net user /add Admin axx
net localgroup administrators /add Admin

But i dont know how to hide users on windows 2000 :/
996633
Thank you, it was only because of, threr are only 9 Admins or something, and I don't wanted to be noticed.

______
PS: When can I start a new Topic in this Forum?
Because I wanted to start a new in the Beginners section.
Can I first start one with 50 Replies?
bwc
you can find ones here!
http://www.wineggdrop.com
l0c0
QUOTE (bwc @ Apr 15 2004, 07:51 AM)
you can find ones here!
http://www.wineggdrop.com

10x 4 the link bwc biggrin.gif
Masterace
I found an trojaner named beast 2.06 it seems to have very good possibilities
to use.You can standartly bind it to other progs.It can be found here @ Fearless
sfzhi
i use WinEggDrop Shell Eternity Version
its great
8XyuVmUB
netcat is the best backdoor you can have. It is not picked up by AV and you can make the connection through many clients. That is to say I can connect computer A to B via C.
bdark
yes, netcat is good, but always appear in the process list, so it's very easy to be found. But i guess almost all backdoors show up in the process list
F34R
yeah winshell kicks ass... its saved my ass quite a few times in the past when FTPs, etc died on me.
tongue.gif
147111
http://www.twd-industries.com/en/downloads.htm
This is not a virus - not a backdoor but still if u use that u will get the full GUI of the slave and do what ever u want - as if ur sitting on the slave computer itself - it will be a bit slow over the internet if using dialup - trial version allows connection for 5 mins - i have tested it on Win2000 98 XP over the LAN - nice to play around - enjoy

Why under my name a warning sign is coming - what i have done?? I don't want to make junk posts to gain Member status - i just want to be here - i don't mind if I am kept as trial member as long as my interest to know is fulfilled
fox
Based on a stuborn newbie, this thread has one of the best intros to backdoors.

I'm happy now!
tibbar
QUOTE(fox @ May 26 2005, 05:13 AM)
Based on a stuborn newbie, this thread has one of the best intros to backdoors.

I'm happy now!
*



In future only post if you have something useful to say. We don't allow "thanx" posts.
toe
if you are trying to connect to the network remotely you mite have to go through the gateway computer to get to the other computers in the network. Also that would be the most likely place the firewall would be installed as all connections would be passing through it.

And for a netcat tutorial read the attached file.

-toe
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.