Steps For IIS Hacking:
STEP 1: Click on Start button and open "RUN".(windows+R)STEP 2: Now Type this in RUN
%WINDIR%\EXPLORER.EXE ,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}\::{BDEADF00-C265-11d0-BCED-00A0C90AB50F}
Now A Folder named "Web Folders" will open.
STEP 3: Now "Right-Click" in the folder and Goto "New" and then "Web Folder".
STEP 4: Now type the name of the Vulnerable site in this case i have taken e.g." http://autoqingdao.com/ " and click "Next".
STEP 5: Now Click on "Finish"
STEP 6: Now the folder will appear. You can open it and put any deface page or anything.
STEP 7: I put text file in that folder. Named "securityalert.txt" (you can put a shell or HTML file also). If the file appear in the folder then the Hack is successful but if it don't then the site is not Vulnerable.
Now to view the uploaded site i will go to "http://autoqingdao.com/securityalert.txt"
In your case it will be " www.[sitename].com/[file name that you uploaded] "
Some IIS Exploit Websites For Practise
http://www.huayujt.com/
http://www.dns860.com/
http://www.hnhaoji.com/
http://www.dlzq158.com/
http://www.kia.com.np/
http://www.dz365.com
http://www.dy1905.net/
http://www.dycit.com/
Try Them All Have Fun I must this is one of the easy way to hack website :) Stay Tuned for many more hacking tutorials
Web folder is not opening I am using windows 7 !
ReplyDeleteIt Should Open Try And follow it properly :)
ReplyDelete