Wednesday, 21 December 2011

Jumping In Localhost Using Shell b374k Newbie3viLc063s

Assalamualaikum dan salam sejahtera otai2 semuanya yg ada disini, bsyukur kpd ilahi kita masih b'napas seperti biasa di muka bumi ciptaan tuhan ini kembalinya Joker disini utk mmbuat tutorial "Jumping In Localhost Using Shell b374k Newbie3viLc063s" Shell ini telah di edit oleh PK & Joker, dan shell ini amat sesuai utk para Jumper domain dlm 1 hosting :V pada dasarnya hosting tersebut, file config dan htaccess yg tidak di filter sepenuhnya sehingga para hacker bleh terus mencapai /etc/named.conf /etc/config /etc/domain :V Joker ni xtau sgt bab Sec ni hehe.. rosakkan reti la.. :V ok lgsung aja kita ikuti beberapa tut dibawah tapi Sebelum tu sediakan rokok sekotak (bg perokok), kopi kurang manis 1 dan backdoor PHP yg aktif dan bleh melakukan jumping..
Shell b374k Newbie3viLc063s -> http://tinypaste.com/5cc08750

Step 1
Login dlm Shell b374k Newbie3viLc063s, lalu klik kanan *Open Link in New tab dan
> LocalDomain (domain yg di baca)
> Readable (domain config yg dpt di baca)
Spoiler (Click to View)


Step 2
*Readable
Copy salah 1 domain yg dpt di baca config di dlm box Readable, cth Joker pilih /home/googlyma/public_html/ blik kpd home shell lalu paste di view file/folder > Go ! nah kite da jumping ke domain lain
Spoiler (Click to View)


Step 3
*LocalDomain
Perhatikan dgn teliti /home/googlyma/public_html/ copy googlyma lalu Ctrl+F cari nama tersebut "googlyma" utk mengetahui domain target /home/googlyma/public_html/ :V
Spoiler (Click to View)


Step 4
Pergi pada domain yg kita dpt jumping tadi, disini Joker jump ke web berasas GNU-GPLv2 (wordpress) nah sekarang masa nya
kita mencari config MySQL target *utk wordpress wp-config.php *utk joomla configuration.php, disini kita perhatikan

DATABASE
Code:
/** The name of the database for WordPress */
define('DB_NAME', 'googlyma_wrdp1');
USERNAME
Code:
/** MySQL database username */
define('DB_USER', 'googlyma_wrdp1');
PASSWORD
Code:
/** MySQL database password */
define('DB_PASSWORD', 'PHZ2hum6{{KE');

Lalu connect dlm MySQL yg ada di menu bar Shell b374k Newbie3viLc063s *wp_users <-- database admin terkandung di dalamnya username:password
Spoiler (Click to View)


Step 5
Untuk m'reset password admin kite perlu mengunakan query sql
Code:
UPDATE wp_users SET user_pass =md5( '123456') WHERE user_login = 'admin';
*wp_users <-- database yg kita sambungkan
*user_pass <-- password yg akan kita reset di dlm Shell b374k Newbie3viLc063s
*user_login <-- username target
Klik Go ! (klik hanya sekali!)
Spoiler (Click to View)


Step 6
Login dlm /wp-admin da tau kan ape username:password web yg kite dpt jump?
Spoiler (Click to View)


http://googlymania.com/wp-admin/

Cara upload shell di wp- rujuk pd tutorial Joker pnh bt sebelum ni :V
Wordpress
Joomla

Thank to PK, PDK & Joker dan semua warga NEC + h3x4Crew + RileksCrew

No comments:

Post a Comment

Updates Via E-Mail

Labels

007 Legends (1) 007 Legends repack (1) 007 Legends-Black Box (1) 007 Legends-Black Box repack (1) 2K Games (1) 2K Marin (1) Action (8) Action RPG (5) Activision Blizzard (3) Alan Wake American Nightmare (1) Alan Wake American Nightmare-Black Box (1) ANARCHY (5) Antara AES dan pemandu kereta perasan bijak (1) antivirus (6) ARTIKEL (90) Bethesda Softworks (2) Binary Domain (2) BioShock 2 (1) BioWare Corporation (1) bitComposer Games (1) Bugbear Entertainment (1) Call of Duty: Modern Warfare 3 (1) Call of Duty: Modern Warfare 3-Black Box (1) CARDING (3) CD Projekt Red Studio (1) CERITA (7) CRACKER (18) Crysis 2 (1) Crytek Studios (1) Dark Souls: Prepare to Die Edition (1) Dark Souls: Prepare to Die Edition-Black Box (1) Darksiders (1) Darksiders II (1) Deface (1) Devil's Details (2) Digital Extremes (1) Doom 3:BFG Edition (1) Doom 3:BFG Edition-Black Box (1) EA Sports (1) Electronic Arts Inc. (4) ENGLISH MOVIE (29) Eurocom Entertainment Software (1) event (1) Exploit (76) FABLE III (1) Facebook Game Hack (1) FIFA 13 (1) FIFA 13-Black Box (1) Flashing (1) Flying Wild Hog (1) From Dust (1) From Dust-Black Box (1) From Software (1) gba games (1) Global Ops: Commando Libya (1) Global Ops: Commando Libya-Black Box (1) GORE (1) Hard Reset (1) Hard Reset-Black Box (1) HIJACK (2) History (3) id Software (1) iklan. (4) Infinity Ward (1) INFO (35) iPhone Jailbreak (9) ISU SEMASA (33) JOB (1) JOOMLA (1) KILLUMINATI (7) Konami (1) Lain-Lain Trick (1) LionHead Studios (1) MAKE MONEY (1) MALAY MOVIE (15) Mass Effect 2 (1) Max Payne 3 (1) Max Payne 3-Black Box (1) Maxis (1) Microsoft Game Studios (1) misteri (4) MOBILE (1) MUJAHID (27) music album mp3 (20) n-gage (1) Namco Bandai Games (3) NDS (1) Notepad Trick (1) OS (5) OTHER MOVIE LANGUES (8) PC GAME (141) photo (5) political (2) Pro Evolution Soccer 2013 (1) Pro Evolution Soccer 2013-Black Box (1) Prototype 2 (1) Prototype 2-Black Box (1) PS VITA (4) PS3 GAME (32) PSN GAME (6) PSP (7) PSPGAMES (4) puisi (1) putlocker games (5) Racing (1) Radical Entertainment (1) religion (12) Remedy Entertainment (1) repack game (1) REVEAL (32) Ridge Racer Unbounded-Black Box (1) Rockstar Games (1) S60v2 (1) Samsung U1000 (1) SEGA (2) SEO (2) Shooter (2) Shooting (2) Soalan bocor SPM 2012 ada di sini (1) Soft Skills Guide (1) software (31) Spectral Games (1) Sport (2) Strategy (1) SYSTEME (3) The Darkness II (1) The Darkness II-Black Box (1) The Elder Scrolls V: Skyrim (1) The Elder Scrolls V: Skyrim-Black Box (1) The Sims 3 (1) The Sims 3 Complete (1) The Sims 3 Complete-Black Box (1) The Witcher 2: Assassins of Kings (1) THQ Inc (2) tips (1) TOKOH (1) tool (2) Tutorial (30) TWEAK (6) Ubisoft Studios (1) UNDERGROUND (4) video movie (1) video music (1) Vigil Games (2) Website Hack (1) wii (2) XBOX360 (7) xboxone (1)

Total Pageviews

Blog Archive

LIST