Category: 资讯科技

黑客破解Email帐号常用的三种方法

By KcYeap, December 10, 2008 10:43 pm

电子邮件并不是安全的,在邮件的发送、传送和接收整个过程中的每个环节都可能存在薄弱环节,恶意用户如果利用其漏洞,就能够轻易的破解出账号,获得邮件内容。


一、利用邮件服务器操作系统的漏洞

邮件服务器软件是运行在特定的操作系统上的,如Linux、Windows NT/2000等。这些操作系统的默认安装和配置都是不安全的,黑客可以轻易入侵系统,获得所有用户名和密码。

1、 Windows服务器

如 果是基于Windows2000的Exchange Mail Server,系统本身未做任何安全配置,开放了若干服务。入侵者可以利用终端服务器结合中文输入法漏洞或者IIS的Buffer Overflow程序获得Administrator权限,用pwdump3导出Hash过的密码,再用L0pht挂接字典或者Brute Force就能破解出用户密码。根据经验,如果密码简单,几分钟之内就能破解出,长度在8位及以下的用Brute Force方式在一天内就能解出。

2、 Linux/UNIX服务器

UNIX类系统一般采用Sendmail作为邮件系统,在获得了系统的控制权之后,用John等软件就能从/etc/passwd或者/etc/shadow中破解出密码。如果采用了数据库方式来保存用户信息和密码,也是很容易被导出。

二、利用邮件服务器软件本身的漏洞

最常见的邮件服务器程序有Sendmail,Qmail等,在不同程度在都存在安全缺陷。以Sendmail为例,再以前的老版本中,telnet 到25端口,输入wiz,然后接着输入shell,就能获得一个rootshell,还有debug命令,也能获得root权限。Qmail相对 Sendmail 安全,但是Qpoper存在Buffer Overflow缺陷,能够远程得到rootshell,进而控制系统。

即使邮件服务器是安全 的,但是入侵者还能获得更多的信息,比如用户名。telnet到25端口,输入expn tom或者vrfy tom就能查询系统是否有tom用户。最新版本的Sendmail虽然禁用了这两个命令,但是可以通过伪造发信人然后用rcpt to来判断该用户是否存在。

得到了用户名,可以telnet到110端口,尝试简单密码的连接,或者套用字典破解。

所以,必须禁止非本域的中继利用(relay),或者采用现在很多ISP都采用的给SMTP加上发信认证的模块,这样能够增强邮件服务器的安全。

除了POP3方式收信之外,比较流行的是在WEB界面上处理邮件。这种方式也不无弱点,一般是通过CGI来接受用户传递的表单FORM参数,包括 username和password,如果正确,就可以进入处理邮件的页面。破解已知用户的密码,有很多套用字典或者暴力组合的软件可用,比较著名的是小 榕的《溯雪》,在密码简单的情况下,很快就有结果。

WEB邮件系统都有“忘记密码”的选项,如果能破解寄回密码的另外一个邮箱或者猜出提示问题的答案,也能成功。

三、在邮件的传输过程中窃听

在网络中安装Sniffer,指定监听往外部服务器110端口发送的数据包,从收集下来的信息中查看user和pass后的字符串就能看到用户名和相应的密码

最適合玩遊戲之PC機箱

By KcYeap, June 10, 2008 3:11 am

近日,Antec在Computex上展出了一款Skeleton骷髏機箱,或者更準確的說『骷髏DIY機架』。看過主機的外型及配置的風扇,我想每位遊 戲發燒友都想買這個機箱回家吧,超酷的外型+完美的散熱系統一定會讓你夏日通宵激戰大型3D遊戲而不必擔心機箱的散熱。

據介紹,Skeleton的主要外框架爲塑膠製品,而底部的設備框架則由金屬製成,可支援雙光碟機雙硬碟。頂部一 220mm大型風扇可爲整機提供充足的散熱氣流,風扇可三級調速並支援多色彩LED背光。

微软Windows 7!!! OS after Vista

By KcYeap, June 6, 2008 10:54 am

可能由于Vista的失败,windows 7特别受到期待,事实上在5月27日的时候,Crunchgear上就放出了Windows7的16个截图。

这些截图已经被确定是目前windows7的一些特性,但距离2010年windows 7正式发布还有3年,很多功能或UI可能会发生很大的变化。图片总是能说明一切的,让我们看看windows 7将具有什么特性。

这些截图给人的感觉是,Windows7很Mac很Vista。相信很多人期望版本7会比Vista优秀,别再“输给”XP。

没有感受过Vista?除了安装正版或盗版外,你还可以将Vista的优秀功能搬到XP上。

It will release on 2010…let wait and see

Most Popular Keyboard Shortcuts

By KcYeap, June 2, 2008 4:47 pm

Getting acclimated to application your keyboard alone and abrogation your abrasion abaft will accomplish you abundant added able at assuming any assignment on any Windows system.

Windows key + R = Run menu

This is usually followed by:

  • dhcpmgmt.msc = DHCP Management
  • dnsmgmt.msc = DNS Management
  • compmgmt.msc = Computer Management
  • Windows key + E = Explorer
  • dssite.msc = Active Directory Sites and Services
  • cmd = Command Prompt
  • eventvwr = Event Viewer
  • dsa.msc = Active Directory Users and Computers
  • iexplore + “web address” = Internet Explorer
  • services.msc = Services
  • ALT, Space, X = Maximize window
  • ALT + Tab = Switch between windows
  • CTRL + Shift + Esc = Task Manager
  • CTRL + C = copy
  • CTRL + X = cut
  • CTRL + V = paste
  • Windows key + F = Search
  • Windows key + D = Hide/Display all windows
  • Windows key + Break = System properties

Also don’t overlook about the “Right-click” key next to the appropriate Windows key on your keyboard. Using the arrows and that key can get just about annihilation done already you’ve opened up any program.

  • [Alt] and [F4] Quit active application or close current window
  • [Alt] and [-] Open Control menu for active document
  • [Alt] and [Esc] Switch between running applications
  • [Alt] and letter Select menu item by underlined letter
  • [Ctrl] and [F4] Close active document or group windows (does not work with some applications)
  • [Ctrl] and [Esc] Open Program Menu
  • [Ctrl] Lft., Rt. arrow Move cursor forward or back one word
  • [Ctrl] Up, Down arrow Move cursor forward or back one paragraph
  • Windows+M Minimize all open windows
  • Windows+F1 Open Windows Help
  • Windows+Tab Cycle through the Taskbar buttons
  • Windows+Break Open the System Properties dialog box
  • Shift+Windows+M Undo minimize all open windows
  • [F1] Open Help for active application
  • Right SHIFT for eight seconds…….. Switch FilterKeys on and off.
  • SHIFT……. five times Switch StickyKeys on and off.
  • NUM LOCK…… for five seconds Switch ToggleKeys on and off.
  • Left ALT +left SHIFT +PRINT SCREEN……. Switch High Contrast on and off.
  • Left ALT +left SHIFT +NUM LOCK……. Switch MouseKeys on and off.

Type the following commands in your Run Box (Windows Key + R) or Start Run

  • calc = Calculator
  • msmsgs = Windows Messenger
  • mspaint = Microsoft Paint
  • wmplayer = Windows Media Player
  • rstrui = System Restore
  • devmgmt.msc = Device Manager
  • powerpnt = Microsoft PowerPoint (If Installed)
  • winword = Microsoft Word (If Installed)
  • frontpg = Microsoft FrontPage (If Installed)
  • notepad = Notepad
  • msinfo32 = System Information
  • cleanmgr = Disk Cleanup
  • ntbackup = Backup or Restore Wizard (Windows Backup Utility)
  • mmc = Microsoft Management Console
  • excel = Microsoft Excel (If Installed)
  • waol = America Online
  • control = Opens the Control Panel
  • control printers = Opens the Printers Dialog
  • msaccess = Microsoft Access (If Installed)
  • wordpad = WordPad
  • netscp6 = Netscape 6.x
  • netscp = Netscape 7.x
  • netscape = Netscape 4.x
  • explorer shortcuts
  • NUM LOCK+MINUS SIGN……. on numeric keypad (-) Collapse the selected folder.
  • LEFT ARROW…… Collapse current selection if it’s expanded, or select parent folder.
  • RIGHT ARROW……. Display current selection if it’s collapsed, or select first subfolder.
  • END……. Display the bottom of the active window.
  • HOME……. Display the top of the active window.
  • NUM LOCK+ASTERISK……. on numeric keypad (*) Display all subfolders under the selected folder.
  • NUM LOCK+PLUS SIGN……. on numeric keypad (+) Display the contents of the selected folder.

For Windows XP:

  • Move the insertion point to the beginning of the previous paragraph. CTRL+UP ARROW
  • Move the insertion point to the beginning of the next paragraph. CTRL+DOWN ARROW
  • Move the insertion point to the beginning of the next word. CTRL+RIGHT ARROW
  • Move the insertion point to the beginning of the previous word. CTRL+LEFT ARROW
  • Highlight a block of text. CTRL+SHIFT with any of the arrow keys
  • Copy. CTRL+C
  • Cut. CTRL+X
  • Paste. CTRL+V
  • Undo. CTRL+Z
  • Delete. DELETE
  • Delete selected item permanently without placing the item in the Recycle Bin. SHIFT+DELETE
  • Copy selected item. CTRL while dragging an item
  • Display the Address bar list in My Computer or Windows Explorer. F4
  • View properties for the selected item. ALT+ENTER
  • Close the active item, or quit the active program. ALT+F4
  • Opens the shortcut menu for the active window. ALT+SPACEBAR
  • Create shortcut to selected item. CTRL+SHIFT while dragging an item
  • Rename selected item. F2
  • Select more than one item in a window or on the desktop, or select text within a document. SHIFT with any of the arrow keys
  • Select all. CTRL+A
  • Search for a file or folder. F3
  • SHIFT when you insert a CD into the CD-ROM drive Prevent the CD from automatically playing.
  • Cycle through items in the order they were opened. ALT+ESC
  • Cycle through screen elements in a window or on the desktop. F6
  • Close the active document in programs that allow you to have multiple documents open simultaneously. CTRL+F4
  • Switch between open items. ALT+TAB
  • Open the next menu to the right, or open a submenu. RIGHT ARROW
  • Cancel the current task. ESC
  • Display the shortcut menu for the selected item. SHIFT+F10
  • Display the System menu for the active window. ALT+SPACEBAR
  • Display the Start menu. CTRL+ESC
  • Display the corresponding menu. ALT+Underlined letter in a menu name
  • Open the next menu to the left, or close a submenu. LEFT ARROW
  • Refresh the active window. F5
  • View the folder one level up in My Computer or Windows Explorer. BACKSPACE
  • Carry out the corresponding command. Underlined letter in a command name on an open menu
  • Activate the menu bar in the active program. F10

If you accept a Microsoft Natural Keyboard, or any added accordant keyboard that includes the Windows logo key and the Application key , you can use these keyboard shortcuts:

  • Open Utility Manager. WIN Key+U
  • Restores minimized windows. WIN Key+Shift+M
  • Display Windows Help. WIN Key+F1
  • Lock your computer if you are connected to a network domain, or switch users if you are not connected to a network domain. WIN Key+ L
  • Open the Run dialog box. WIN Key+R
  • Open My Computer. WIN Key+E
  • Display or hide the Start menu. WIN Key
  • Display the System Properties dialog box. WIN Key+BREAK
  • Show the desktop. WIN Key+D
  • Minimize all windows. WIN Key+M
  • Search for a file or folder. WIN Key+F
  • Search for computers. CTRL+WIN Key+F

shortcuts you can use with Windows Explorer:

  • Display the contents of the selected folder. NUM LOCK+PLUS SIGN on numeric keypad (+)
  • Display current selection if it’s collapsed, or select first subfolder. RIGHT ARROW
  • Display the bottom of the active window. END
  • Collapse the selected folder. NUM LOCK+MINUS SIGN on numeric keypad (-)
  • Collapse current selection if it’s expanded, or select parent folder. LEFT ARROW
  • Display the top of the active window. HOME
  • Display all subfolders under the selected folder. NUM LOCK+ASTERISK on numeric keypad (*)

accessibility keyboard shortcuts:

  • Switch ToggleKeys on and off. NUM LOCK for five seconds
  • Open Utility Manager. WIN Key+U
  • Switch MouseKeys on and off. Left ALT +left SHIFT +NUM LOCK
  • Switch StickyKeys on and off. SHIFT five times
  • Switch FilterKeys on and off. Right SHIFT for eight seconds
  • Switch High Contrast on and off. Left ALT+left SHIFT+PRINT SCREEN

教你清除顽固病毒进程

By KcYeap, May 29, 2008 7:08 pm

杀毒的时候我们会遇到这种情况,有些病毒怎么杀也杀不掉。杀毒软件告诉我们重启后才能清除,结果重启后病毒依然如故。那么,怎么对付这种病毒呢?笔者在这里为大家提供两则小技巧,以便帮你强行杀死这种“顽固不化”的病毒进程。

根据进程名查杀

这种方法是通过WinXP系统下的taskkill命令来实现的,在使用该方法之前,首先需要打开系统的进程列表界面,找到病毒进程所对应的具体进程名。

接 着依次单击“开始→运行”命令,在弹出的系统运行框中,运行“cmd”命令;再在DOS命令行中输入“taskkill /im aaa”格式的字符串命令,单击回车键后,顽固的病毒进程“aaa”就被强行杀死了。比方说,要强行杀死“conime.exe”病毒进程,只要在命令提 示符下执行“taskkill /im conime.exe”命令,要不了多久,系统就会自动返回结果。

Best Anti virus (WEAR condom when connect to Internet)

根据进程号查杀

上 面的方法,只对部分病毒进程有效,遇到一些更“顽固”的病毒进程,可能就无济于事了。此时你可以通过Win2000以上系统的内置命令——ntsd,来强 行杀死一切病毒进程,因为该命令除System进程、SMSS.EXE进程、CSRSS.EXE进程不能“对付”外,基本可以对付其它一切进程。但是在使 用该命令杀死病毒进程之前,需要先查找到对应病毒进程的具体进程号。

考虑到系统进程列表界面在默认状态下,是不显示具体进程号的,因此你可 以首先打开系统任务管理器窗口,再单击“查看”菜单项下面的“选择列”命令,在弹出的设置框中,将“PID(进程标志符)”选项选中,单击“确定”按钮。 返回到系统进程列表页面中后,你就能查看到对应病毒进程的具体PID了。

接着打开系统运行对话框,在其中运行“cmd”命令,在命令提示符 状态下输入“ntsd -c q -p PID”命令,就可以强行将指定PID的病毒进程杀死了。例如,发现某个病毒进程的PID为“444”,那么可以执行“ntsd -c q -p 444”命令,来杀死这个病毒进程

Related Posts with Thumbnails