Jump to content

How to hack your own website passes using Auto SQL I Helper V.2.7


Recommended Posts

Posted

Hello maxcheaters.com! I'm beginner on your forum. I don't know  some cool exploits in L2 , WOW etc.But what i know  much about web site cracking_) This is no my artikle , but if you have questions ,  write in this topic, i will answer ..

COPYPASTED( DON't remember the author )

I have been asked lately to write a tutorial on how to use

"SQL I Helper V.2.7" tool.

At the beggining "SQLIHelperV.2.7" is a tool that will hack vulnarable websites using SQL injection. You don't have to spend hours and hours trying to find your way in a website and trying hundreds of combinations and codes to hack a website.

This tool will do it all by itself. You only have to tell her what do and where to look.

You can download it from here:

http://rapid^share.com/files/270668589/SQL_Helper_by_Zuzun.rar.html   ( delete ^)

ps : this program is for penetrating and hacking webseites sql and may be seen by your anti virus as a hacking tool.But it is totally 100% harmless

Lets start.

first you need to find the potential website that you think it might be possible to hack it. Remember that some websites are simply unhackable.

After you find your website ( better to end with "article.php?id=[number]" ) example: "http://encycl.anthropology.ru/article.php?id=1"

 

I will explain my tut on how to hack this website.

 

Check if your website can be hacked by trying to go this address :

http://encycl.anthropology.ru/article.php?id='1 <------ notice the ' before the number 1.

 

you should get this message:

Code:

 

Query failedYou have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\'1 ORDER BY lastname' at line 1 SELECT * FROM person_old WHERE id=\'1 ORDER BY lastname

 

 

This mean that this website can be hacked because you get an error.

 

Now open your SQL I Helper V.2.7

and write the link :

http://encycl.anthropology.ru/article.php?id='1 <---- without the '

here

 

and press the inject button.

 

Now you should wait until the tool finish searching for columns . Time may vary depending on your connection speed , your pc speed , and the number of columns in the website.

So now you should have this:

 

 

then select "Get database" and you get this:

 

 

Now select any element from the "database name" box and press the "Get tables" button , I will select "anthropo_encycl":

 

 

 

then select any element from the "table name" box and press the "Get columns" button , I will select "user":

 

 

then select any elements you want from the "columns name" box and press "Dump Now" , i will select "usr_login" and "usr_pass"

 

 

After clicking "Dump Now" , you should see this new window

 

 

Now copy the hash on a peace of paper and go to this website:

md5Crack.com | online md5 cracker

 

enter the hash and press the button "Crack that hash baby!" and you should get the source of the hash.

hash:21232f297a57a5a743894a0e4a801fc3

username: admin

 

hash:202cb962ac59075b964b07152d234b70

pass: 123

 

 

COPYPASTED END.

 

P.S. I want to say that this  is  only a program  and without understendin what are SQL injections it will give you nothing...

 

One more link if smb have problems with rapid.... http://hotfi^le.com/dl/10737822/2540192/SQL_Helper_by_Zuzun.rar.html (delete ^)

  • 4 months later...

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now


  • Posts

    • Dear partners! At the moment we are in great need of the following positions: — Snapchat old and new accounts | With snapscores | Geo: Europe/USA | Full access via email/phone number — Reddit old (brute or hacked origin, self-registered) accounts with post and comment karma from 100 to 100,000+ | Full email access included — LinkedIn old accounts with real connections | Geo: Europe/USA | Full email access + active 2FA password — Instagram old accounts (2010–2023) | Full email access (possibly with active 2FA password) — Facebook old accounts (2010–2023) | Full email access (possibly with active 2FA password) | With friends or without friends | Geo: Europe/USA/Asia — Threads accounts | Full email access (possibly with active 2FA password) — TikTok/Facebook/Google ADS Agency advertising accounts — Email accounts: mail.ru, yahoo.com, gazeta.pl, gmx.ch / gmx.de / gmx.net (BUT NOT gmx.com) — Google ADS Manual Farm accounts (verified via email and phone number) | GEO: USA/Europe, mostly USA. — WhatsApp OLD Accounts — Twitter accounts with followers and posts (old accounts) Contact us via the details below. We will be glad to cooperate! We are also ready to consider other partnership and collaboration options. Active links to our projects: Digital goods store (Website): Go to Store Telegram bot: Go to – convenient access to the store via the Telegram messenger. Virtual numbers service: Go to Telegram bot for purchasing Telegram Stars: Go to – fast and profitable purchase of Stars in Telegram. SMM Panel: Go to – promotion of your social media accounts. Contacts and support: ➡ Telegram: https://t.me/socnet_support ➡ WhatsApp: https://wa.me/79051904467 ➡ Discord: socnet_support ➡ ✉ Email: solomonbog@socnet.store
    • Dear partners! At the moment we are in great need of the following positions: — Snapchat old and new accounts | With snapscores | Geo: Europe/USA | Full access via email/phone number — Reddit old (brute or hacked origin, self-registered) accounts with post and comment karma from 100 to 100,000+ | Full email access included — LinkedIn old accounts with real connections | Geo: Europe/USA | Full email access + active 2FA password — Instagram old accounts (2010–2023) | Full email access (possibly with active 2FA password) — Facebook old accounts (2010–2023) | Full email access (possibly with active 2FA password) | With friends or without friends | Geo: Europe/USA/Asia — Threads accounts | Full email access (possibly with active 2FA password) — TikTok/Facebook/Google ADS Agency advertising accounts — Email accounts: mail.ru, yahoo.com, gazeta.pl, gmx.ch / gmx.de / gmx.net (BUT NOT gmx.com) — Google ADS Manual Farm accounts (verified via email and phone number) | GEO: USA/Europe, mostly USA. — WhatsApp OLD Accounts — Twitter accounts with followers and posts (old accounts) Contact us via the details below. We will be glad to cooperate! We are also ready to consider other partnership and collaboration options. Active links to our projects: Digital goods store (Website): Go to Store Telegram bot: Go to – convenient access to the store via the Telegram messenger. Virtual numbers service: Go to Telegram bot for purchasing Telegram Stars: Go to – fast and profitable purchase of Stars in Telegram. SMM Panel: Go to – promotion of your social media accounts. Contacts and support: ➡ Telegram: https://t.me/socnet_support ➡ WhatsApp: https://wa.me/79051904467 ➡ Discord: socnet_support ➡ ✉ Email: solomonbog@socnet.store
    • 冬天是享受优惠、省钱的好时机。 首次下单时使用促销码 SOCNET 即可获得 15% 折扣 ,适用于全场商品! 前往商店(网站) 前往商店(Telegram 机器人)
    • Winter is the time to save with benefits. Activate the promo code SOCNET on your first order and get a 15% discount on the entire assortment! Go to the store (website) Go to the store (Telegram bot)
    • Winter is the time to save with benefits. Activate the promo code SOCNET on your first order and get a 15% discount on the entire assortment! Go to the store (website) Go to the store (Telegram bot)
  • Topics

×
×
  • Create New...

AdBlock Extension Detected!

Our website is made possible by displaying online advertisements to our members.

Please disable AdBlock browser extension first, to be able to use our community.

I've Disabled AdBlock