Monday, January 14, 2008

HOW TO INFECT PPL WITH TROJANS

Since there has been so many posts about this, I decided to create this topic.

Getting victims is the hard part of using trojans, in order to get a victim, you need him or her to execute the server. Heres some methods on how to infect totally random people, or just the person you choose:

[[ Infecting many people ]]
First of all you need to upload your server on a webhost, try www.redrival.com. Once your server is on the web (www.sitename.com/server.exe) you can begin.

Method 1: Go to a forum (any forum) and advertise your server as a game cheat/game/hacking program/screensaver etc. Make a new topic about it in the most visited forum.

Method 2: Create a site (in HTML, wich is an extremely simple programming language for web sites) and make it about a game cheat/game/hacking program etc. Now log on a game/chat/forum and advertise that site.

Method 3: Get a vulnerability scanner (The best scanner is "retina" from eeye.com, but its not public), now scan a range of IP adresses for exploits that would let you execute a program on someones computer.

Method 4: Once trojaning someone, get a list of his or her e-mail and chat contacts, and send your server to all of them.

Method 5: Infecting people with P2P programs is a way to get victims. Create a prorat server, then change the name to something like halo_2_keygen.exe or a catchy name that you would think someone would download. You can also make it a .zip or .rar file. Place renamed server file in the "My Shared folder". It will be where the P2P program is installed. Make sure you enable the "Allow people to download from me" option. Some p2p programs doesnt let you seach for files you allready have, so dont worry if you dont find it. (p2p = peer to peer, filesharing program like Kazaa, DC++, emule, warez p2p, etc.)

*Binding the server to a real file also helps.*
*Making sites: Make a file named "index.html", learn html and put some nice html code in it, then upload "index.html" to a webhost (www.redrival.com or www.web1000.com), now your site is at "wvw.web1000.com/name/index.html" or something similar, now go to www.dot.tk and create a .tk adress for it. Now your site will be wvw.name.tk .*

[[ Infecting certain people ]]
Infecting a certain person depends on that persons (and your) intellect and computer skills. The most important thing is: Think 3 times before you do ANYTHING.

Method 1: Tell the victim that you want to send him or her a game/game cheat/screensaver/other program etc. If the victim has anti-virus programs, youll have to say its something the anti-virus program would detect (say its a mailbomber or private trojan creator etc).

Method 2: Get to know one of the victim's friend's e-mail adress (lets say its "boohoo@hotmail.com"). Go to www.hotmail.com or www.passport.com and create an account that looks just like his friends e-mail adress (like "boohooo@hotmail.com".

Method 3: Create an account like "support2834@microsoft.com" at www.passport.com, or use an "mail bomber" to send him or her the server (hotmail will detect the public server as a trojan, buy the SE)

Method 4: Get the victims IP (getting IPs though MSN tutorial in the FAQ at www.proratfaq.tk), now get a vulnerability scanner and check if the victim is vulnerable to some exploit that lets you execute your server on his computer, then read the "hacking using exploits" tutorial by outlaws (in tutorials section).

Method 5: Make a website that would intrest the victim, tell him to go there.

Method 6: Send it though an instant messaging program like MSN messanger.

Method 7: Put your server on a floopy disk or CD, go to someones computer and launch the server from there.

Use your imagination!!


Heres a great way of hiding the .exe extention:
1: Open the Wordpad (Start -> run -> wordpad)
2: Then you use drag`n drop and pull a file (trojan) into the new wordpad file.
3: Now we see the icon of the server on this white background. Now you move your mouse over it and then you go into the context menu (right click).
4: Here you select 'package-object' and then 'edit package'. A new window opened on the left side.
5: In this new window you choose in the top of the menu 'Edit' and select then 'copy package'.
6: Close wordpad and the new window.
7: Now move your mouse to your desktop and go there to the context menu (right click). Here you must choose 'paste'.
If you have done all things right to this moment, you will now see a new file with an new icon and filename on your desctop. This file should be named "OLE-clip", it has no extention so you can rename it to "password.txt" if you want to. When someone executes this file, the server will be executed on his computer!


Happy hacking from ghostdog.

2 comments:

Nero said...

Well after you've infected someone, how do find out their IP addresses?

Anonymous said...

You need a ip scanner, like place it on a html page and tell the victim to go there, then check your logs for traced ip's