Wednesday, 21 August 2013

Certified Ethical Hacking - CEH v8 in Pakistan

Course DescriptionThis class will immerse the students into an interactive environment where they will be shown how to scan, test, hack and secure their own systems. The lab intensive environment gives each student in-depth knowledge and practical experience with the current essential security systems. Students will begin by understanding how perimeter defenses work and then be lead into scanning and attacking their own networks, no real network is harmed. Students then learn how intruders escalate privileges and what steps can be taken to secure a system.
Students will also learn about Intrusion Detection, Policy Creation, Social Engineering, DDoS Attacks, Buffer Overflows and Virus Creation. When a student leaves this intensive 100hrs class they will have hands on understanding and experience in Ethical Hacking. This course prepares you for EC-Council Certified Ethical Hacker exam 312-50

Who Should Attend

This course will significantly benefit security officers, auditors, security professionals, site administrators, and anyone who is concerned about the integrity of the network infrastructure.

Duration

40 hrs
Dates : Sep 04 to Sep 08 2013

Certification

The Certified Ethical Hacker exam 312-50 may be taken on the last day of the training (optional). Students need to pass the online Prometric exam to receive CEH certification

Friday, 16 August 2013

XML Sitemap for Blogger Blogs-How to Generate and Add XML Sitemap?

An XML, also called Google sitemap, is necessary for a blog or website which helps search engine crawlers to crawl and index content on your blog easily. Blogger blogs with .blogspot sub-domains contain an xml sitemap on them which is generated automatically and kept updated with your latest content. The sitemap of blogs with .blogspot sub-domain can be accessed at http://yourblog.blogspot.com/sitemap.xml and you can submit it directly to Google Webmaster Tools or anywhere else, but when you add your custom domain to your Blogger blog, the xml sitemap couldn’t be accessed anymore and thus you need to manually configure XML/Google sitemap for your Blogger blog. To do so, follow below simple steps:
1. Visit http://ctrlq.org/blogger/ and generate XML sitemap for your Blogger blog by entering your blog URL there
sitemap-generator-blogger
2. After the generator generates sitemap for your blog, copy the generated text from the box
add-xml-blogger-sitemap
3. Now go to Blogger dashboard, select your blog and then go to Search Preference section in Settings
blogger-search-preference
4. In search preference, select Yes in front of Enable custom robots.txt content? and paste the sitemap content in the box which you have generated in first step
custom-robots-blogger
5. After pasting the content, Save changes.
You are all done! Now whenever Google will crawl your blog, it will first look robots.txt file on your blog as it always do and then will crawl your entire blog. This XML sitemap doesn’t need to be submitted in Google Webmaster Tools also and you don’t need to update it after you generate and add it to your blog. All latest posts are fetched via atom.xml on your blog and your latest content is automatically suggested to Google bot. Thus your blog content will get indexed easily. Enjoy!
Additional: You can also use this free XML Sitemap Generator for sitemap generation.

Adsense Account In Pakistan for earning ONLINE

Now you every one can get Adsense Account free In Pakistan Make Money, Adsense Account is Online free tool for website to earn money by showing ads provided by google on their websites. You can earn money by showing google ads on your website. For more information, please visit www.google.com/adsense


Building A Blog

A Blog is an online journal about most recent happenings about something.

I highly recommend starting a blog it is the easiest and cheapest way to start making money online.

You can start a blog free. You can easily learn how to make a blog, but first you need to know what your blog is going to be about.

Topic selection is most important part of Blog marketing because this is going to determine your earning, I will talk about that later.

A Blog is an online journal about most recent happenings about something.

I highly recommend starting a website because blog is the easiest and cheapest way to start making money online.

You can start a blog free. You can easily learn how to make a blog, but first you need to know what your blog is going to be about.

Topic selection is most important part of Blog marketing because this is going to determine your earning, I will talk about that later.


In very simple words, blogging is just about writing about any topic. Its just like article writing. Just select a topic of your choice and start writing about it. You can register your free here, http://www.blogger.com. The users over the internet will use your blog as learning source or to get knowledge about the topic.



Q: How can I earn money by blogging?



A: Blogger allows you to place google ads on your website. Once you have start writing and have wrote about 10 posts then do the following Start attracting readers towards your blog. You can always use your facebook/twitter account to share the link of your blog with your friends and they will start visiting. Do this activity regularly to make sure your friends are visiting your blog to get some initial traffic.

Adsense
Apply for adsense account using Monetize options available in your settings. Google will analyze your content and if they found your content is fresh, they will approve your Google Adsense account. Once approved, google ads will become available on your blog and whenever a user click an ad through your blog, you earn money there are many ads available that pay on impressions as well i-e you earn money even if user doesn't click on the ad



Q: How will they Pay me?

A: Well, there are number of options available to receive payment from Google. When your Adsense account is approved you can set your payment mode from you Adsense account. The best option available for bloggers in Pakistan is Western Union money transfer.

Wednesday, 7 August 2013

CISSP CBK 3rd edition

How to Search sensitive financial information via google search query

Search Query : KEYWWORD TO BE SEARCHED site:blogspot.com

 

How to ByPass Antivirus by making keylogger undetectable


Welcome readers, In this tutorial we are going to show you how to make an undetectable keylogger to most antivirus programs (AVG,AVAST,KASPERSKY).Already we had showed you how to make an key logger in our previous tutorial, if you do not know about it first read that here






Tools required:



*Xenocode post build 2009 for .NET beta

*Hex workshop HEX editor



Step 1: Initially disable your antivirus protection (Here I am using AVG antivirus Right click on AVG and click “Temporarily disable AVG protection” and select ” Until I restart next time”




Step 2: Install Xenocode post build 2009 for .NET beta & Hex workshop HEX editor.Also don’t forget to use the crack


Step 3: Open Xenocode post build 2009 for .NET beta from program files and go to Application tab and click “ADD” option from that and add your keylogger file (ie, already prepared through NEPTUNE keylogger or any other.Here)






Step 4: Now go to “VIRTUALIZE” tab and click “ENABLE” check box at left side. Then go to “GENERAL” tab there. Uncheck the “INHERIT PROPERTIES” tick box at right corner. Then change the product title, publisher, description, website, version to your desired (Here I use AVG v11.3.4, AVG corporation, AVG , www.avg.com ,AVG.(Optional:If you want to change the icon click “BROWSE “ option and select the required application and automatically it will change to that app icon.)





Step 5:Now click “XENOCODE APPLICATION “and save it.




Step 6: Now your keylogger file will appear as shown(With avg icon making it undetectable to victim)


Step 7: Now go to “Hex workshop HEX editor (32 bit)” from “All programs”


Step 8: click “File->open->your keylogger file


Step 9: Press “Ctrl+F” which opens Find dialog box change type to “TEXT STRING” and search for “COPYRIGHT”


Step 10: It will show the result as follows


Step 11: Now select these codes as shown in fig(....... inflate 1.2.3 copyright)





Step 12: Now right click on the selected area and click “FILL” option from that,then click OK.





Step 13: Result will change all binary codes to 00 as shown


Step 14: Then manually search for “X.e.n.o.c.o.d.e. .V.i.r.t.u.a.l. .A.p.p.l.i.a.n.c.e. .R.u.n.t.i.m.e”(Ctrl+F feature cannot be used here, if required use Ctrl+F and search for letter X and find X.e.n.o.c.o.d.e)




Step 15: again as step 12 right click on the selected area and click “FILL” option from that, and then click OK.


Then it will look as


Step 16: click save option from File->save.


On that dialog box click Yes. Then it will be automatically saved to your key logger file.

Step 17:Turn back the antivirus and scan that key logger file.


Hurrah!!!! Yes you made it ,an undetectable key logger J !!!This file is not detected by most antivirus (AVG,AVST,KASPERSKY)which is used by most of our friends. You cancheck it through online scanners as shown


Now send that keylogger file to your victim which would not be detected by his antivirus.
If you have any clarifications comment on these post and we will try to solve it at best

Sunday, 4 August 2013

To search for a specific file, use these searches:


Method 01:

·         intitle:"Index of" yourfilehere.extension

This search is the best while looking for mp3’s avi’s and all downloads…

Method 02:

·         “parent directory “ /appz/ -xxx –html –htm –php –shtml –opendivx –md5 –md5sums

·         “parent directory “ DVDRip –xxx –html –htm –php –shtml –opendivx –md5 –md5sums

·         “parent directory “Xvid –xxx –html –htm –php –shtml –opendivx –md5 –md5sums

·         “parent directory “ Gamez –xxx –html –htm –php –shtml –opendivx –md5 –md5sums

·         “parent directory “ MP3 –xxx –html –htm –php –shtml –opendivx –md5 –md5sums

·         “parent directory “ Name of Singer or album –xxx –html –htm –php –shtml –opendivx –md5 –md5sums

Notice that I am only changing the word after the parent directory, change it to what you want and you will get a lot of stuff.

Method 03:

Put this string in google.com search:

·         ?intitle:index.of? mp3

You only need add the name of the song/artist/singer.

Example: ?intitle:index.of? mp3 jackson

Method 4

·         inurl:microsoft filetype:iso

You can change the string to whatever you want, ex. Microsoft to adobe, iso to zip etc…

 

 

 

How to search for a passwords, password files, forum passwords, users use these searches:


METHOD 01:


·         intitle:"Index of" passwords modified

·         allinurl:auth_user_file.txt

·         "access denied for user" "using password"

·         "A syntax error has occurred" filetype:ihtml

·         allinurl: admin mdb

·         "ORA-00921: unexpected end of SQL command"

·         inurl <!--[if !vml]--> <!--[endif]-->asslist.txt

·         "Index of /backup"

·         "Chatologica MetaSearch" "stack tracking:"

·         Amex Numbers: 300000000000000..399999999999999

·         MC Numbers: 5178000000000000..5178999999999999

·         visa 4356000000000000..4356999999999999

How to find and watch web-cameras:


Type in one of the codes bellow into google.com search engine and sit back with cup of coffee and enjoy live cameras:


·         inurl:ViewerFrame?Mode=

·         inurl:ViewerFrame?Mode=Refresh

·         inurl:axis-cgi/jpg

·         inurl:axis-cgi/mjpg

·         inurl:view/indexFrame.shtml

·         inurl:view/index.shtml

·         inurl:view/view.shtml

·         liveapplet

·         intitle:”live view” intitle:axis

·         intitle:liveapplet

·         allintitle:”Network Camera NetworkCamera”

·         intitle:axis intitle:”video server”

·         intitle:liveapplet inurl:LvAppl

·         intitle:”EvoCam” inurl:”webcam.html”

·         intitle:”Live NetSnap Cam-Server feed”

·         intitle:”Live View / - AXIS”

·         intitle:”Live View / - AXIS 206M”

·         intitle:”Live View / - AXIS 206W”

·         intitle:”Live View / - AXIS 210”

·         inurl:indexFrame.shtml Axis

·         inurl:”MultiCameraFrame?Mode=Motion”

·         intitle:start inurl:cgistart

·         intitle:”WJ-NT104 Main Page”

·         intext:”MOBOTIX M1” intext:”Open Menu”

·         intext:”MOBOTIX M10” intext:”Open Menu”

·         intext:”MOBOTIX D10” intext:”Open Menu”

·         intitle:snc-z20 inurl:home/

·         intitle:snc-cs3 inurl:home/

·         intitle:snc-rz30 inurl:home/

·         intitle:”sony network camera snc-p1”

·         intitle:”sony network camera snc-m1”

·         site:.viewnetcam.com -www.viewnetcam.com

·         intitle:”Toshiba Network Camera” user login

·         intitle:”netcam live image”

·         intitle:”i-Catcher Console - Web Monitor”

Email Phishing

Electronic Social Engineering

Need to know priciple

Need to know information far less than nice to know information which leads to more sophisticated security attacks.

Knowing the information is half of the battle.

Principle of Least Prilege


Shoulder Surfing Poster



 
How to safegaurd Shouder Surfing

Web Application Security simulation videos for Webgoat

Sql Injection Via Tamper Data plugin of firefox

Session Hijacking with Tamper data