From: shyamta prasad on 18 Sep 2010 16:08 Hello everybody , since i started learning SQLi , i have collected lots of good tools ,tutorials and documents , m still collecting more and more day by day as my scope of knowledge is increasing . So thought of sharing what i have collected till now with everyone here, My tool pack includes the following things. 1) sqli scanner/automating injection pack : contains 5 softwares for scanning ,and automating the hacking process (a) Exploit scanner - for finding websites with dorks , and testing them for vulnerabilities.very famous (b) Turkish ARTA - same as exploit scanner but not as famous bcos its turkish . i find it better then exploit scanner. but that my personal opinion (a) Havij 1.12 free version : i guess everyone knows about it. it automates the process of performing sqli attack on any site. it is extremely famous and efficient. but still it a tool :) nothing compared to manual process (b) SQLI helper 2.7 : same like havij , but little fast . (e)sqlinj Version 2 - another nice sql injection tool . i will write a tut later how to use this tool 2) ADMIN Finder pack : After getting the logins from the database . one needs to get the admin finder page. for some sites its very easy while for smoe site its hellova tough here are some nice admin finder tools and lists tht u may use. but these tools are never enough .i will keep uploaing the amin finder lists as i get more (a)reiiuke admin finder ( u can upadt the original admin finder lists with the list i am providing) (b)5 perl and python admin finder tools/scripts. update them as per ur need (c) misc softwre : admin pass locater , to brute force admi pass if u cant find it YOU MIGHT ALSO LIKE THIS SITE http://th3-0utl4ws.com/tools/admin-finder/ 3) DORKS Pack : Contains many files contiaing more then 7000 dorks. 4) Shells : this pack contins many shells and source codes , like c99 ,c100 , jackel and hellova more ( many shells like c99 are identified as trojans by many antivirus. so u might find ur antivirus shouting about this pack. ) U might also wanna see this site : http://www.kinginfet.net/shells/ 5) MD5 cracking tools : although havij have md5 tool but for some reason it never worked for me . so this pack contains some tools . ASLO THESE SITES WILL PROVE YOU GREAT HELP http://www.md5decrypter.com/ http://www.md5decrypter.co.uk/ http://md5.rednoize.com/ http://md5decryption.com/ http://passcracking.com/ http://www.xmd5.org/ http://www.md5cracker.com/index.php http://md5.noisette.ch/index.php http://md5cracker.org 6) SQLI tutorials pack : This pack contain complete html pages of sqli tutorails that i found useful from various forums and websites like hackforum , elitesoft ,warex , outlaws etc etc. i bet every newbe will love this pack . u just need a firefox browser to open these html files. NOTE: this pack also contain 2 of my own created sqli help files which i created myself, serves me as a very useful docment wheneever i m on to hack some site. i will kep updating these packs as i learn and collect more and more . NOTE: Virus information All files are in winrar format so if u dont want to extract due to virus suspicion then dont extract that particular file 1) the sqli helper 2.7 is identified as some trojan.even if u download the tool formt th original site u will get that virus alert . so i guess its false postive .(onw extract if u dont want . i dont care 2)SHELL pack will definately alert you for virus, bcos it contains many shell that are considered as trojna, extract it or not, choice is urs.again i dont care 3)ADMIN FINDER pack : some antivirus treat them as hack tools. so might get alreat. false positives. TIP : before start learning sqli injection . get these three firefox addons 1) hackbar 2)tamper data 2)add and edit cookie DOWNLOADS : SQLI SCANNER PACK : http://adf.ly/6tth MD5 tools pack : http://adf.ly/6tuV ADMIN FINDR : http://adf.ly/6tuk SQLI TUTORIAL PACK : http://adf.ly/6tuw DORKS PACK : http://adf.ly/6tv7 SHELLS PACK : http://adf.ly/6tvD Hello everybody , since i started learning SQLi , i have collected lots of good tools and documents , m still collecting more and more day by day as my scope of knowledge is increasing . So thought of sharing what i have collected till now with everyone here, My tool pack includes the following things. 1) sqli scanner/automating injection pack : contains 5 softwares for scanning ,and automating the hacking process (a) Exploit scanner - for finding websites with dorks , and testing them for vulnerabilities.very famous (b) Turkish ARTA - same as exploit scanner but not as famous bcos its turkish . i find it better then exploit scanner. but that my personal opinion (a) Havij 1.12 free version : i guess everyone knows about it. it automates the process of performing sqli attack on any site. it is extremely famous and efficient. but still it a tool :) nothing compared to manual process (b) SQLI helper 2.7 : same like havij , but little fast . (e)sqlinj Version 2 - another nice sql injection tool . i will write a tut later how to use this tool 2) ADMIN Finder pack : After getting the logins from the database . one needs to get the admin finder page. for some sites its very easy while for smoe site its hellova tough here are some nice admin finder tools and lists tht u may use. but these tools are never enough .i will keep uploaing the amin finder lists as i get more (a)reiiuke admin finder ( u can upadt the original admin finder lists with the list i am providing) (b)5 perl and python admin finder tools/scripts. update them as per ur need (c) misc softwre : admin pass locater , to brute force admi pass if u cant find it YOU MIGHT ALSO LIKE THIS SITE http://th3-0utl4ws.com/tools/admin-finder/ 3) DORKS Pack : Contains many files contiaing more then 7000 dorks. 4) Shells : this pack contins many shells and source codes , like c99 ,c100 , jackel and hellova more ( many shells like c99 are identified as trojans by many antivirus. so u might find ur antivirus shouting about this pack. ) U might also wanna see this site : http://www.kinginfet.net/shells/ 5) MD5 cracking tools : although havij have md5 tool but for some reason it never worked for me . so this pack contains some tools . ASLO THESE SITES WILL PROVE YOU GREAT HELP http://www.md5decrypter.com/ http://www.md5decrypter.co.uk/ http://md5.rednoize.com/ http://md5decryption.com/ http://passcracking.com/ http://www.xmd5.org/ http://www.md5cracker.com/index.php http://md5.noisette.ch/index.php http://md5cracker.org 6) SQLI tutorials pack : This pack contain complete html pages of sqli tutorails that i found useful from various forums and websites like hackforum , elitesoft ,warex , outlaws etc etc. i bet every newbe will love this pack . u just need a firefox browser to open these html files. NOTE: this pack also contain 2 of my own created sqli help files which i created myself, serves me as a very useful docment wheneever i m on to hack some site. i will kep updating these packs as i learn and collect more and more . NOTE: Virus information All files are in winrar format so if u dont want to extract due to virus suspicion then dont extract that particular file 1) the sqli helper 2.7 is identified as some trojan.even if u download the tool formt th original site u will get that virus alert . so i guess its false postive .(onw extract if u dont want . i dont care 2)SHELL pack will definately alert you for virus, bcos it contains many shell that are considered as trojna, extract it or not, choice is urs.again i dont care 3)ADMIN FINDER pack : some antivirus treat them as hack tools. so might get alreat. false positives. TIP : before start learning sqli injection . get these three firefox addons 1) hackbar 2)tamper data 2)add and edit cookie DOWNLOADS : SQLI SCANNER PACK : http://adf.ly/6tth MD5 tools pack : http://adf.ly/6tuV ADMIN FINDR : http://adf.ly/6tuk SQLI TUTORIAL PACK : http://adf.ly/6tuw DORKS PACK : http://adf.ly/6tv7 SHELLS PACK : http://adf.ly/6tvD NOTE : IF YOU DONT LIKE SHARE CASH JUST PM ME > I WILL SEND DIRECT LINKS. But that will take some time as i am not always online, otherwise do me favour by using sharecash :)
|
Pages: 1 Prev: Barcode - How to capture data in Classic ASP page Next: ANSI WARNINGS and error object |