IIS Exploit မွာ Vulnerable ရွိေနတဲ ့Server ေတြကို Shell Upload လုပ္တာတို ့ Deface page တင္တာတို ့စတာေတြ လုပ္ဖို ့အတြက္ အဲ ့ Server ေတြကို Login ၀င္စရာ မလိုပါဘူး။
ဒါကေတာ့ အလြယ္ကူဆံုး website တစ္ခုကို hacked လုပ္တဲ ့နည္းပဲျဖစ္ပါတယ္။
STEP 1: Click on Start button and open "RUN".
STEP 2: Now Type this in RUN
%WINDIR%\EXPLORER.EXE ,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}\::{BDEADF00-C265-11d0-BCED-00A0C90AB50F}
Now A Folder named "Web Folders" will open.
STEP 3: Now "Right-Click" in the folder and Goto "New" and then "Web Folder".
STEP 4: Now type the name of the Vulnerable site in this.
e.g." http://autoqingdao.com/ " and click "Next".
STEP 5: Now Click on "Finish"
STEP 6: Now the folder will appear. You can open it and put any deface page or anything.
STEP 7: I put text file in that folder. Named "c99.php" (you can put a txt or HTML file also). If the file appear in the folder then the Hack is successful but if it don't then the site is not Vulnerable.
ဒါဆိုရင္ေတာ့ Vulnerable ရွိတဲ ့ site မွာ shell upload လုပ္ပီးသြားျပီ ျဖစ္ပါတယ္။
ဥပမာ အားျဖင့္ေတာ့ "http://autoqingdao.com/c99.php" ဆိုတာမ်ိဳးေပါ့။
" www.[sitename].com/[file name that you uploaded] " ဆိုတဲ ့ format မ်ိဳးကို မွတ္သားထားရင္ေတာ့ ကိုယ္ upload လုပ္ထားတဲ ့shell ကို အလြယ္တကူ ျပန္ရွာႏုိင္မွာျဖစ္ပါတယ္။
.:: Note ::.
Window XP မွာပဲအသံုးျပဳလို ့ရတယ္ဆိုတာ သတိေပးပါရေစ။
ေအာက္မွာေတာ့ IIS အလုပ္လုပ္တဲ့ ဆိုဒ္ တစ္ခ်ိဳ ့ကို test လုပ္ခ်င္သူမ်ားအတြက္ ရွာေဖြ စုေဆာင္းေပးလိုက္ပါတယ္။
http://ayatolahkhamenae.parniansis.com/
http://ahic.com.cn/
Sunday, June 9, 2013
//
Labels:
Hacking Tutorial
//
0
comments
//
0 comments to "IIS Exploit - Easiest way to deface Website [Windows XP]"
Powered by Blogger.
Respect List
Blink Hacker Group
Myanmar Hacker Uniteam
Brotherhood of Myanmar Hackers
and All Myanmar Attackers & All Myanmar Black Hats.
Myanmar Hacker Uniteam
Brotherhood of Myanmar Hackers
and All Myanmar Attackers & All Myanmar Black Hats.
Categories
@Lph@ blog ကို Android Devices ေတြေပၚကဖတ္ခ်င္ရင္
Link list 1
- Application (1)
- E-book (2)
- Facebook Tips & Tricks (2)
- Hacking Tutorial (37)
- HTML (2)
- Kali Linux (6)
- Mobile Tips & Tricks (5)
- Myanmar Cyber Army (1)
Popular Posts
-
Introduction to Proxy အခုဒီ post မွာေတာ့ Proxy ဆိုတာဘာလဲ ဘယ္လိုအသံုး၀င္သလဲ ဆိုတာေတြကို ရွင္းျပေပးသြားပါမယ္။ Proxy ဆိုတာ user နဲ ့ serve...
-
ဒီတစ္ခါေတာ့ wireless network ရဲ ့ security ပိုင္းနဲ ့ပတ္သတ္ျပီး က်ေနာ္ တီးမိေခါက္မိ သေလာက္ေလး ကို share ေပးတဲ့သေဘာပါ။ Wireless Network ဆ...
Followers
စည္းလုံးျခင္းသံစဥ္ေရဒီယုိ
Blog Archive
-
▼
2013
(56)
-
▼
June
(26)
- Android Bot Maker
- How to get someone IP Address
- Linux Sever တစ္ခုကို ဘယ္လို Root လုပ္မလဲ
- USB drive အသံုးျပဳျပီး Password မ်ားခိုးယူျခင္း
- Rooting A Server
- Inserting Keylogger Code in Android SwiftKey Using...
- Android Keylogger
- Firewall ကို Back Door / Trojan Virus ႏွင့္ ခ်ိဳးေ...
- Basic Spreading Method
- WordPress ရဲ ့ Zer0 Day Exploit
- Website Admin Panel ကို အလြယ္ကူဆံုး hack နည္း
- Hacking Paypal Accounts
- Hacking Joomla Sites
- DNN Method - Website Hacking
- Protect your Facebook account from hackers with My...
- Hack Wordpress Blogs
- Hack Unsecured Webcams
- How to secure your server from PHP Shells!
- HTML ဆုိတာဘာလဲ ?
- HTML မိတ္ဆက္
- IIS Exploit - Easiest way to deface Website [Windo...
- Hack YAHOO IDs by Brute Force Attack
- SMS Spoffer
- Hack / Bypass .asp sites using SQL Injection
- Hacking 800 Collection
- Blog ရဲ ့ရည္ရြယ္ခ်က္
-
▼
June
(26)
Post a Comment
သင့္ရဲ ့ comment မ်ားက ကြ်န္ေတာ္တို႔လို blogger ေတြ အတြက္ အားေဆးတစ္ခြက္ပါ။
ေကာင္းသည္၊ ဆုိးသည္ ေရးႏုိင္ပါသည္။ လိုအပ္သည္မ်ားကိုလည္းေဝဖန္အၾကံေပးႏုိင္ပါသည္။