информационная безопасность
без паники и всерьез
 подробно о проектеRambler's Top100
За кого нас держат?Страшный баг в WindowsSpanning Tree Protocol: недокументированное применение
BugTraq.Ru
Русский BugTraq
 Анализ криптографических сетевых... 
 Модель надежности двухузлового... 
 Специальные марковские модели надежности... 
 Бэкдор в xz/liblzma, предназначенный... 
 Три миллиона электронных замков... 
 Doom на газонокосилках 
главная обзор RSN блог библиотека закон бред форум dnet о проекте
bugtraq.ru / форум / hacking
Имя Пароль
ФОРУМ
все доски
FAQ
IRC
новые сообщения
site updates
guestbook
beginners
sysadmin
programming
operating systems
theory
web building
software
hardware
networking
law
hacking
gadgets
job
dnet
humor
miscellaneous
scrap
регистрация





Легенда:
  новое сообщение
  закрытая нитка
  новое сообщение
  в закрытой нитке
  старое сообщение
  • Напоминаю, что масса вопросов по функционированию форума снимается после прочтения его описания.
  • Новичкам также крайне полезно ознакомиться с данным документом.
Walkthrough уровни 1-9 09.05.02 18:30  Число просмотров: 3031
Автор: :-) <:-)> Статус: Elderman
<"чистая" ссылка>

			       TRY2HACK WALKTHROUGH
	                                        
                                                                by TechnoWolf,  inSiDeR



Level 1: first go to the source code... then you should see the password...simple isnt it?

Level 2: go to notepad, make a html doc with the link to the flash program save it then 
open it in a web browser. Then right click the link -> save the target as. open the the
file you saved in notepad. there is the username and password.

Level 3: Ok go to the temporary internet files. and look for a
file called JavaScript.txt open that file.The password is inside.

Level 4: go to the temporary internet files again. copy the file called level4.txt and paste
it on your desktop then open it. The Password should be there

Level 5: download the file on the site and then find a vb3 decompiler. Once you get one, 
Decompile it and look at the source.

Level 6: download ethereal(a packet sniffer), if you are using windows you will need
WinPcap. Once you get that go to capture -> start change the interface to DLKRTS click ok
then try to login using the .exe file you downloaded with any username and password then
click stop on the packet sniffer. Find the file with the www.try2hack.nl in it the it should
say GET /p.lv6 on it some where go to http://www.try2hack.nl/p.lv6 and view the source. It
shows you the encrypted username and pass. you must decrypt it. this encryption type is
called baconian encryption.

       A =  aaaaa      I/J  = abaaa       R  = baaaa
       B =  aaaab       K   = abaab       S  = baaab
       C =  aaaba       L   = ababa       T  = baaba
       D =  aaabb       M   = ababb      U/V = baabb
       E =  aabaa       N   = abbaa       W  = babaa
       F =  aabab       O   = abbab       X  = babab
       G =  aabba       P   = abbba       Y  = babba
       H =  aabbb       Q   = abbbb       Z  = babbb
there you go. figure out the user name and password.

Level 7:download secureCRT.after u do that connect to www.try2hack.nl using it. then typein
the following:

GET /cgi-bin/level7.pl HTTP/1.1
Connection: Keep_Alive
User-agent: MSIE 6.72 (UNIX)
Accept:/Referer: http://www.microsoft.com/ms.htm
Host: www.try2hack.nl
(Hit enter)
there you go onto level 8.

Level 8: Here you gotta use the old PHF bug:
http://www.try2hack.nl/cgi-bin/phf.cgi?Qalias=x%0a/bin/cat%20/etc/passwd
Read instructions now and enjoy lvl 9

Level 9: use ROT 13 translator to decrypt the text and base 64 to decrypt password for the channel #try2hack.level9
now decrypt the binary and here is the solution:

/ctcpreply LEVEL9-539 PING [adduser inSiDeR-w00t *!*insmod@a-ms3-11.tin.it]
/ctcpreply LEVEL9-539 PING [setuser inSiDeR-w00t HOSTS *!*insmod@a-ms3-11.tin.it]
/ctcpreply LEVEL9-539 PING [setuser inSiDeR-w00t PASS insider]
/ctcpreply LEVEL9-539 PING [chattr inSiDeR-w00t +mn]

Just replace bot name and info with your own.


THANKS TO: Shyam, Technowolf, inSiDeR and all the other ones.


---
<hacking> Поиск 






Rambler's Top100
Рейтинг@Mail.ru


  Copyright © 2001-2024 Dmitry Leonov   Page build time: 0 s   Design: Vadim Derkach