border: 1px solid #d2d2d2; padding: 0px 8px 0px 8px; color: #a19999; font-size: 12px; height: 25px; width: 165px; border-radius: 5px; -moz-border-radius: 5px; -webkit-border-radius: 5px; margin:0px; } .submitbutton{ background:#F66303; border: 1px solid #F66303; text-shadow: 1px 1px 1px #333; box-shadow: 3px 3px 3px #666; font:bold 12px Arial, sans-serif; color: #fff; height: 25px; padding: 0 12px 0 12px; margin: 0 0 0 5px; border-radius: 5px; -moz-border-radius: 5px; -webkit-border-radius: 5px; cursor:pointer;}

Receive all updates via Facebook. Just Click the Like Button Below

You can also receive Free Email Updates:

Powered By Blogger Widgets

Related Posts Plugin for WordPress, Blogger...

Sunday, May 29, 2011

Website Hacking Method – IIS EXPLOIT Hacking

This Method only works on sites being hosted on Ms-IIS server. Now a days many boxes are patched so it will not work on them !!!

Steps for Xp User
!- Click on START and click on RUN then enter the below code and then press Enter
%WINDIR%EXPLORER.EXE ,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}::{BDEADF00-C265-11d0-BCED-00A0C90AB50F}
2- A new window name “WEB FOLDER” gets open
3-Right click and click on NewAdd Web Folder then enter your vulnerable website address
4- Click on Next , Next , Finish.
5- Double click on that folder to open it
Now u can insert your deface page on that site by simply Copy & Paste in that folder you deface page will be avaliable at defacepagename.html
Note- Also after getting access to the website…Many websites don’t allows you to add/edit your deface page ( Because Microsoft has already fixed this vulnerability in many website ).
For windows 7 user
1Click Start.
2- Click Computer.
3- In the following dialog click Map Network Drive.
4- On the Map Network Drive dialog, click “Connect to a Web site that you can use to store your documents and Pictures this will pop up the “Welcome to the Add Network Location Wizard.
5-  Click on Next.
6 – Click on ”Choose a custom network location.
7-  Click on Next.
8-  Now type the web folder address that you want to access.

9-  Enter a NAME to help you identify the web folder and click Next.
10- Place a checkmark on ‘Open this network location when I click finish.
11- Click Finish.
12- To open the web folder next time, just double click on the one you want to open from the My Network Places list.
Note:Remeber Some sites you might get an error while uploading xyz.html file that time just change the extension to xyz.htm and you can also deface some of the websites  using Shell.
Dork- “Powered by IIS” or use your own unique dork.

No comments:

Post a Comment


Twitter Delicious Facebook Digg Stumbleupon Favorites More