Frontpage snoop (developed by me) nice hack tool


0

Image

FrontPage snoop v 1.2:

This tool takes advantage of frontpage enabled web servers by checking for weaknesses in an automated fashion. It will firstly attempt to get the “service.pwd” file from the target website which will hold the username(s) and password(s) for that site in a user:h45h fashion, were the password will have the DES hash that is relatively easily cracked - which will enable an attacker full admin access to the site. It lists all the /vti_pvt/ files which divulges a lot of info, it then tries the /vti_inf.html file which, when you view the source code of that page, shows in the comments the servers configuration and settings. And lastly it attempts to check if FTP is enabled as an upload access point (if not it’ll likely be webdav or fp extensions). As you can see this can lead to the entire compromise of a vulnerable server in an easy to use automated fashion. Coded in VC++ required the .NET framework 3.5 or above.

DOWNLOAD

8replies
7voices
223views
1image
aizen2010
11 years ago

0

one question : how can we trust you?

DaGr8Kornolio
11 years ago

0

Trust no one… No offence @Dreamwalker!


0

looks interesting, have you tested it? and what results did you get? and is it traceable?


0

If you don’t trust me then don’t use it, use a sandbox or whatever, I’ve provided a virus scan.

@hazors, yes I’ve tested it, I coded it and the results work as stated (the screenshot for instance was one of the many servers I tested it on) and as far as traceability goes, you’ll need to use a proxy, VPN, spoofed IP or something because it doesn’t have that feature.

jayssj11
11 years ago

0

i will like to try it .

Alien [StRe1cHeR]
11 years ago

0

try it. thank u guy

dlogical
11 years ago

0

very cool … so does it pick up as a crawler ?

You must be logged in to reply to this discussion. Login
1 of 9

This site only uses cookies that are essential for the functionality of this website. Cookies are not used for tracking or marketing purposes.

By using our site, you acknowledge that you have read and understand our Privacy Policy, and Terms of Service.

Dismiss