bolsas femininas

SQl tutorials

Here is the tutorial for hacking website which is vulnerable to SQL injection

SQL injection Tool Havij1.52 pro

Here you can learn how to hack sql vulnerable site with the toll name " HAVIJ"

Full Cracked Antivirus

Here you can get all fully crackrd antivirus

If you are going [...]

Fully Cracked IDM all version

Her you get all the cracked Version Of Internet Download Manager

All Hacking E-Books

Download all hacking Ebooks for free... All network security and E|CEH book

Showing posts with label Hacking Books. Show all posts
Showing posts with label Hacking Books. Show all posts

Sunday, February 26, 2012

AFCEH Exam Question and Answer

AFCEH Exam Question and Answer

1.How can you protect your IP Address while Surfing?
Google Language Translator
Web Based Proxy
Proxy Chains
Any two of the above
All of the above
Ans -5. All of the above


2.You receive a phone call on your cell phone from another Indian cell phone number.How can you trace the number?
There are tools available on the internet that will tell you the state in india where the cell phone is registered.
You can use Trace Route Tool.
You can install a firewall on your cell phone,which will record the IP adress of teh other cell phone.
It depends upon whether you have a post paid or pre paid connection.
It depends on how faar you are from a cell phone tower.


Ans -1. There are tools available on the internet that will tell you the state in india where the cell phone is registered.


3.What is the countermeasure to Brute Force Password Cracking?
Ensure that password is long.
Ensure that password has symbols.
Ensure that SSL encryption us used for Web application accessing the password.
Ensure that CAPTCHA is implemented.
Ensure that digital signature are using.




Ans -4. Ensure that CAPTCHA is implemented.
4.How can you steal files from a local machine when you don't know the Windows login password of that machine? Suggest a technique that will attract the least attention from the victim.
Password cracking tool.
Keylogger.
Data Sniffer.
Linux LIVE CD.
Serial Numbers.
Ans -4. Linux LIVE CD.


5.Let us assume you are communicating with two different people A and B.Both A and B on the same remote network.When you try to find out their IP address on your system,can they have the same IP address?
Yes
No.
Maybe
Only if they are using a proxy server.
Ans -1. Yes


6.How can an email server detect spoofed emails?
Reverse DNS lookup of the Sender's IP address.
Map Sender's IP address to domain.


Blacklist certain sender IP addresses.
Email header analysis.
Keyword based filtering.
Ans -2. Map Sender's IP address to domain.


7.What makes the Stacheldraht attack tool so difficult to counter?
It uses single key encryption.
It communicates using ICMP.
Its default port numbers can be changed.
It uses a very large number of simultaneous attackers.
All of the above.
Ans -5. All of the above.


8.What is HTTP tunneling?
A secure way of communication.
Working with any protocol transmitting it through http.
VPN
None of the above.
Ans -2. Working with any protocol transmitting it through http.


9.How to prevent infection by virus through Facebook?
When an unknown person adds you,do not accept request.
When an unknown person sends you a private message,do not open it.
When you are prompted to downlod something,do not accept it.
When you are to join a group,do not accept it.


When you are prompted to enter your personal details.
Ans -3. When you are prompted to download something,do not accept it.


10.Are switching networks vulnerable to sniffers?
No since only those data packets meant for a host reach the NIC.
Yes.
Don't know.
Depends upon the operating system.
I searched on Google but could not find the answer.
Ans -2. Yes


11.Whenever you create a new email account or social networking website account or any other online account,why are you asked to re-type some characters that are shown as an image on the website?
To fight piracy.
to fight viruses,worms and trojans.
To prevent users from creating multiple accounts.
To fight spammers and automatic scripts.
To ensure that the user can type properly.
Ans -4. To fight spammers and automatic scripts.


12.Decode DOCT to its plaintext format:
COAT
BOAT
DAFT
MEAT
SEAT
Ans -2. BOAT


13.While trying to change the signature of a Trojan you ended increasing few bytes in the hex file. What will be the result?
The Trojan file will crash altogether.
The Trojan will work and get undetected by the antivirus.
Addition of few bytes won't make much difference
Nothing will happen.It will ignore those bytes.
Ans -1. The Trojan file will crash altogether.


14.When you use the ipconfig command then your IP address is shown to be X,while when you visit www.whatismyip.com then your Ip address is shown to be Y.Which is your internal IP address and which is your external IP address?
X is Internal,Y is External.


Y is Internal,X is External.
Both are External.
Depends on whether proxy server is being used or not.
Depends on whether there is a firewall or not.
Ans -1. X is Internal,Y is External.


15.Convert ZEBDG into plaintext
Big Guy Dog Fun India
AFCEH
ANKIT
FADIA
YOURS
Ans -2. AFCEH


16.If you are the system administrator of a college and want to block use of peer to peer file sharing software,then what do you need to do?
Prevent use of cookies.
Block certain ports.
Block certain IP addresses.
Block certain protocols.
Block certain keywords.
Ans -2. Block certain ports.


17.What is most important from below for a sucessful Man in Middle attack?
Hijack one of the computers.
Data must pass through your computer.
Sniffed Session ID.


Sequence Number Prediction.
Time out should take place.
Ans -3. Sniffed Session ID.


18.What is a good countermeasure against Land attacks?
Patch your Operating System.
Disable all fake data packets.
Disable all ports.
Disable trust relationship based connections.
All of the above.
Ans -1. Patch your Operating System.


19.Which of the below is the most foolproof technique for regulating access to a file on a local system?
Password protected file.
Encrypted file.
Mounted Virtual Encrypted Drive.
USB Dongle.
Virtual Keyboard.
Ans -4. USB Dongle.


20.What is the main difference between Ophcrack and Offline NTPassword and Registry Editor?
Ophcrack is slow,Offline is fast
Ophcrack changes the password,Offline resets the password.
Ophcrack cracks the password,Offline resets the password.
Ophcrack resets the password,Offline cracks the password.


Ophcrack changes the password,Offline cracks the password
Ans -3. Ophcrack cracks the password,Offline resets the password.


21.Decode CNRJG to its plaintext format:
AFCEH
ANKIT
FADIA
APPLE
ALONE
Ans - 4. APPLE


22.How is connection terminated in TCP/IP?
A sends FIN/ACK to B.B sends a FIN/ACK to A.A sends an ACK to B.
A sends FIN to B.B sends a FIN/ACK to A.A sends an ACK to B.
A sends FIN to B.B sends a FIN to A.A sends an ACK to B.
A sends FIN to B.B sends an ACK to A.A sends an ACK to B.
A sends FIN/ACK to B.B sends an ACK to A.A sends an ACK to B.
Ans -2. A sends FIN to B.B sends a FIN/ACK to A.A sends an ACK to B.


23.Convert the following text Base64 into its equivalent Base64 Encoded text:
QmFzZTY0
QmFzZTY1
QmFzZTY2
QmFzZTY3
QmFzZTY5
Ans -1. QmFzZTY0


24.Why is it important to password protect the BIOS?
To prevent data theft.
To prevent passwords getting cracked.
To prevent systems settings from being changed
To prevent virus infection.
All of the above.
Ans -5. All of the above.


25.If you want to steal the data from a password protected computer,what is the best technique?
Brute Force.
InstallData Sniffer on another computer on same network.
War Driving.
Live CD.
Trojans.
Ans -4. Live CD.


26.How can you find whether the target computer is a Honeypot or not?
Nmap
ICMP Scanning
Ping Sweeping
Manual Hit & Trial
Honeypotscan.pl
Ans -4. Manual Hit & Trial


27.Usually when you port scan your home computer,you will find that some ports are open?Why?
There are daemons running on these open ports.
There are Trojans,spyware and keyloggers installed on these open ports.
The applications running o your system are using these open ports.
An attacker might be connecting to your system.
I don't know.
Ans -3. The applications running o your system are using these open ports.


28.How can you find out a remote computer's MAC address?
Windows Registry.
Netstat.
Data Sniffer.
Etherchange tool.
Ping.
Ans -3. Data Sniffer.


29.If your company or college is using software to monitor all your activities on your desktop computer,then what can you do to stop the monitoring?
Disable the Firewall
Disable the Sniffer.
Disable the Trojan.
Use Encryption.
HTTP Tunnelling
Ans -5. HTTP Tunnelling


30.In the CAPTCHA system,why are backgrounds of different colors?
To prevent Brute Force cracking.
To prevent spam.
To prevent spoofing.
To prevent sniffing tools.
To prevent OCR tools from working.
Ans -5. To prevent OCR tools from working.


31.You have Norton antivirus installed on your system. You scanned a trojan file and after altering the signature found that it is not being detected by Norton Now you send it to the victim where where it was caught by the antivirus what could be the possible explaination?
Your antivirus is not workng properly.
Your antivirus is not properly updated.
The victim is using some other antivirus.
There has been a binary editor in teh transit making teh fiel detectable again.
Ans -3. The victim is using some other antivirus.


32.Analyze the below email headers and determine the source IP address of the system that was used to send the email :
69.147.64.132
66.218.66.82
216.252.122.217
61.1.127.224
66.218.66.82
Ans -1. 69.147.64.132


33.Convert BGDFI into correct plaintext:
Big Guy Dog Fun India
AFCEH
ANKIT
FADIA
YOURS
Ans -2. AFCEH


34.What are persistent XSS attacks?
When the XSS attack continues for a long period of time.
When the XSS attack continues on multiple servers.
When the data entered by the attacker gets stored on the target and can be accessed later as well.
When the data by the attacker infects other computers on the same network
Ans -4. When the data by the attacker infects other computers on the same network.


35.If you want to prevent malicious attacks (that originate inside your network) from leaving your network,then what would you recommend?
Software based Firewall.
Hardware based Firewall.
Data Sniffer.
Reverse DNS Trace.
Proxy Server
Ans -1. Software based Firewall.


36.Imagine that you are working in an organization.You use Endora Pro to acess your email.If you are quitting you job nad want a copy of all your emails,then what is teh best thing to do?
Forward all emails to your personal account.
Copy and paste the tect from your email sto a word file.
Connect your personal computer to the mail server and download all emails to it.
Copy the Eudora Pro folder.
Copy the Systems folder.
Ans -4. Copy the Eudora Pro folder.


37.What is a good countermeasure to phishing?
Firewall
URL ANalysis
Hardware Device.
Awarness.
Digital Certificate of the page.
Ans -3. Hardware Device.


38.Whats is the correct way to use p0f when target system is www.abc.com?
Run p0f and the visit www.hotmail.com.
Run p0f and then trace route to www.abc.com.
Run p0f and then ping www.abc.com.
Visit www.abc.com and then run p0f.
Ping www.abc.xom and then run p0f.
Ans -3. Run p0f and then ping www.abc.com.


39.If you wish to commit a perfect a cyber crime,then which of the following would do?
Spoof your MAC address.
Connect to a proxy server.
Use an Internet Cafe.
All of the above.
Any two of the first three options.
Ans -4. All of the above.


40.A criminal sends you an email.You use email header analysis and traceroute to trace the IP address of the criminal.Which of the following statements is true?
The IP address is registered to the criminal.
The IP address is registered to the ISP of the criminal.
The IP address is registered to the company where the criminal works.
All of the above could be true.
Any two from the first three options could be true.
Ans -4. All of the above could be true.


41.How can you detect that a SYN Flood attack is taking place?
netstat
ipconfig
firewall
fport
Honeypot
Ans -1. netstat


42.Convert 101001101100100001 into plaintext form:
170785


240585
160685
121285
01018
Ans -1. 170785


43.If you have physical access to a Windows system which has a login password,then what is the fastest & most efficient way to steal data from the local hard drive?
Crack the Windows login password.
Do a security audit&hack into system from internal network.
Boot into Unix Live CD.
Use Biometric Cracks.


Steal HDD physically.
Ans -3. Boot into Unix Live CD.


44.How can you protect yourself against Clipboard theft while visiting websites?
Zone Alarm Firewall.
Update your browser.
Disable Scripting Languages.
Update Microsoft Windows.
Use a good Antivirus.
Ans -3. Disable Scripting Languages.


45.Why do you think array bound checking on input is an important aspect of secure programming?
Protects against Integer Overflows.
Protects against Format String Overflow.
Protects against Cross Site Scripting Attack.
Protects against SQL Injection.
Protects against piracy.
Ans -1. Protects against Integer Overflows.


46.For a website,what is the best way to protect their visitors from key loggers?
Antivirus Software.
Highest Browser Security Settings.
Antispyware software.
Secure Auditing.
Virtual Key-logger.
Ans -5. Virtual Key-logger.


47.When you telnet to the POP port on the target computer,which port you could be connecting to?
Port 110 or Port 25
Port 80 or Prot 1110
Port 8080 or Port 1234
One of the above.
All of the above.
Ans -5. All of the above.


48.How can you find the most visited websites on the network?
Untangle
Zone Alarm
www.anonymizer.com
Snort
Tripwire
Ans -1. Untangle


49.Which of the below is the most foolproof technique of detecting a cookie tracker?
Antivirus
PrevX
Tripwire
Mozilla
Firewall
Ans -3. Tripwire


50.When you port scan a target system,the port scanner shows that the ports:15,79,110,443 are open.What does that mean?
Port 15,79,110 and 443 are open.
Port 15,79,110 and 443 are closed.
Other ports could be open too.
Target system is running a Windows based platform.
Ans -3. Other ports could be open too.

By Blog Admin with 2 comments

Tuesday, February 21, 2012

Gray Hat Hacking

Gray Hat Hacking


This book is very useful for both beginners and professionals. It gives the reader detailed knowledge on penetration testing. It also has chapters on Linux and windows exploits.
Part I: Introduction to Ethical Disclosure,
Part II: Penetration Testing and Tools ,
Part III: Exploits 101,
Part IV: Vulnerability Analysis,
Part V: Malware Analysis


Here you can Download the book for free.....
DOWNLOAD

By Blog Admin with No comments

Web Hacking-Attacks & Defense

Web Hacking-Attacks & Defense


the book gives you information about how Web hacking occurs and teaches you enhanced skill at developing defenses against such Web attacks. Technologies covered in the book include Web languages and protocols, Web and database servers, payment systems and shopping carts, and critical vulnerabilities associated with URLs. This book is a virtual battle plan that will help you identify and eliminate threats that could take your Web site off line.
Whether it's petty defacing or full-scale cyber robbery, hackers are moving to the Web along with everyone else. Organizations using Web-based business applications are increasingly at risk. Web Hacking: Attacks and Defense is a powerful guide to the latest information on Web attacks and defense. Security experts Stuart McClure (lead author of Hacking Exposed), Saumil Shah, and Shreeraj Shah present a broad range of Web attacks and defense.
Features include:
• Overview of the Web and what hackers go after
• Complete Web application security methodologies
• Detailed analysis of hack techniques
• Countermeasures
What to do at development time to eliminate vulnerabilities New case studies and eye-opening attack scenarios Advanced Web hacking concepts, methodologies, and tools "How Do They Do It?" sections show how and why different attacks succeed, including:
• Cyber graffiti and Web site defacements
• e-Shoplifting
• Database access and Web applications
• Java™ application servers; how to harden your Java™ Web Server
• Impersonation and session hijacking
• Buffer overflows, the most wicked of attacks
• Automated attack tools and worms
Appendices include a listing of Web and database ports, cheat sheets for remote command execution, and source code disclosure techniques. etc


Here you can Download this book fro free....


By Blog Admin with No comments

Hacking Wireless Networks for Dummies


Hacking Wireless Networks for Dummies 



Today wireless networks are everywhere. In this book


Perform ethical hacks without compromising a system
Combat denial of service and WEP attacks
Understand how invaders think
Recognize the effects of different hacks
Protect against war drivers and rogue devices



Here you can Download the book for free.....

By Blog Admin with No comments

Official Certified Ethical Hacker Study Guide

Official Certified Ethical Hacker Study Guide

 Kimberly Graves, CEH, CWSP, CWNP, CWNA, has over 15 years of IT experience. She is founder of Techsource Network Solutions, a network and security consulting organization located in the Washington, DC area. She has served as subject matter expert for several certification programs-including the Certified Wireless Network Professional (CWNP) and Intel Certified Network Engineer programs-and has developed course materials for the Department of Veteran Affairs, USAF, and the NSA.The Certified Ethical Hacker exam is quickly becoming one of the most popular security certifications offered today. Candidates much prove their ability in not only identifying security risks from all levels, but also how to address those risks. This book provides a concise, easy to follow approach to this difficult exam.

the contents are as follow..


Chapter 1:     Introduction to Ethical Hacking, Ethics, and Legality
Chapter 2:     Footprinting and Social Engineering
Chapter 3:     Scanning and Enumeration
Chapter 4:     System Hacking
Chapter 5:     Trojans, Backdoors, Viruses, and Worms
Chapter 6:     Sniffers
Chapter 7:     Denial of Service and Session Hijacking
Chapter 8:     Hacking Web Servers, Web Application Vulnerabilities,and Web-Based Password Cracking Techniques
Chapter 9:     SQL Injection and Buffer Overflows
Chapter 10:   Wireless Hacking
Chapter 11:   Physical Security
Chapter 12:   Linux Hacking 177
Chapter 13:   Evading IDSs, Honeypots, and Firewalls
Chapter 14:   Cryptography
Chapter 15:   Penetration Testing Methodologies

DOWNLOAD (torrent link)

By Blog Admin with No comments

HACKING WINDOWS XP

HACKING WINDOWS XP


This is great book on windows xp hacking. from this book you can learn very interesting xp hacks like increasing its speed, customizing it, protecting it better. 



Here you can Download this Book ....

DOWNLOAD

By Blog Admin with No comments

HACKING FOR DUMMIES


HACKING FOR DUMMIES

Description

There is certainly no shortage of books in this genre- Counter Hack, Hack Attacks Revealed and the best-selling Hacking Exposed (and all of its spin-offs) have covered this information in grueling detail. What sets this book apart is that it does not assume you are already a CISSP or network security guru. Being a "For Dummies" book means that it is written from the assumption that you don't know anything and the information is written in plain English and in terms that even a child could often understand.


DOWNLOAD


By Blog Admin with No comments

Thursday, February 2, 2012

A Beginner’s Guide to Ethical Hacking Ebook download


A Beginner’s Guide to Ethical Hacking Ebook download


Any one running a website related to Hacking gets this question asked daily “How to Hack?”Most of us are curious to learn hacking but dont know where to start,so I am writing this article for all those people who want to Learn Hacking and dont know where to start or want to Learn Hacking from Basics

While surfing on web I came across a Book “A Beginners Guide To Ethical Hacking”, The book was so simple that even a D-Grade Script kiddie can become a master Hacker




What things will I learn In this book?
* You will learn All Ethical hacking techniques and also you will learn to apply them in real world situation
* You will start to think like hackers
* Secure your computer from trojans, worms, Adwares, etc.
* Amaze your friends with your newly learned tricks
* You will be able to protect your self from future hack attacks
* And Much more…
This book will take you from the core to the top. It will tell you how to hack, and how to defend yourself from malicious hack attacks in simple steps. It’s a great source for the beginner who want to become a Hacker. This will install a Hacker’s Mindset on you.
Special Offers for you
Along with this E-book you will get 2 bonus packs for free.
* 1000 Hacking Tutorial : Hacking Tutorials contains1000 of the best hacking tutorials of 2010 leaked on the internet!
* Set of Phishers : You will also get a set of 30+ phishers(Fake login page) created by Rafay Baloch

By Blog Admin with No comments

    • Popular
    • Categories
    • Archives

     
    Blogger Wordpress Gadgets Twitter Bird Gadget