Saturday, January 03, 2009

Simple rules of internet safety

Nobody can ensure you that your network and computer is 100% safe even though you have installed the most advanced and updated firewall, antivirus software or even with the assistance of some hardware/electronic gadgets. As a user, you need to have some fundamental knowledge to minimize the risk of your private information being stolen and to make sure that your networking system is safe to use.

If you are not an IT technical personnel, perhaps the following rules can assist you: -

  • Do not use simple information such as your son’s name, your birthday, etc for your password. Use more complicated passwords. You can use the combination of small and big capital letter; add in special character such as $, %, &, etc.
  • Do not simply click on any links that appears on the email received. Don’t reveal your private and personal information to any company if required via email.
  • Do not place confidential printouts on your working desk. Keep them properly as the information might reveal some sensitive data. Lock your PC or set a password on the screen server if you leave your desk.
  • Sometime you might receive some email from friends or relatives requesting you to forward some information. Be careful as this email might be a trap and carries spam. To verify the information, you can go to websites such as www.snopes.com to check.
  • Do not simply open any attachment provided you 100% know the sender and the attachment’s content.
  • Make sure your antivirus software’s scanning machine is running all the time. Do not simply switch off your scanning machine.
  • Do not simply install software even though it is free. A lot of software that is free for downloading from the internet always carries virus or spam.
  • Seek help from your MIS people if you are having any difficulty.

Guidelines to prevent computer-related stress injuries

Many guidelines have been published about computer-related stress injuries. This page summarizes some of my favorite suggestions.

  1. Stretch while seated at your desk in order to prevent some injuries.
  2. The target field (the size and point on the screen that you look at) should be set so that it can be seen conveniently without shifting or tilting your your head. You should be able to see the top of the target field. An adjustable monitor stand may help. Your head should face in a straight, neutral position - not facing either upward or downward.
  3. Exercise while at your desk. Drop your head gently forward. Slowly rotate it clockwise and counterclockwise. Blink frequently to moisten your eyes so that they feel less tired. You may need to use use eye drops to moisten them still more if you stare at the screen too long.
  4. Stare at a distant object from time to time. You may want to look out the window at a fixed object and then look at something else nearby, like your phone. Keep shifting your point of vision.
  5. Adjust your chair so that your neck is always straight while facing the screen. Don’t hold the phone between your neck and shoulder. If you use the phone a great deal, buy a telephone headset.
  6. Use your right hand to hold on to the seat of your chair. Move your head forward, and then turn and lean to your left. You will feel a stretch from the neck to the top of the shoulder blade. Keep stretching for fifteen seconds. Reverse - do it with your left hand and lean to the right.
  7. If you feel that your shoulders are beginning to be rounded after an extended period of time in the same position, correct it by sitting up with a straight back.
  8. Slowly move your shoulders up and down. Let your arms hang down next to you, and then rotate your shoulders clockwise and counter-clockwise.
  9. Adjust the height of your keyboard and chair so that your arms and elbows are close to your body, and so that your elbow is at a right angle.
  10. Raise your right arm as if to throw an object. Keep stretching back a bit further. Gradually straighten your arm at the elbow. Your arm will then be behind and next to you. Slowly turn your palm upward. Gradually extend your fingers until you feel your muscles stretching at your forearm and wrist. Do it again, this time with your left arm.
  11. Straighten your back. Your arms should be next to you with your elbows bent at a 90-degree angle. Make fists with both hands. Rotate your elbows forward, but keep your fists in front of your waist. Straighten your elbows. Stretch your arms back behind your body. You’ll feel your forearm and wrist muscles stretching.
  12. Your wrists should remain straight as you type. Adjust your keyboard shelf or seat so that they do not go up or down. You may want to put down your keyboard’s little folding “feet”. You may want to consider a foam wrist pad for support if your arms get tired from too much typing.
  13. Look for a comfortable mouse. There are special mouses (yes, that’s the plural form for a computer mouse) for lefties and righties, and for small or large hands.
  14. Hold both hands in a clapping position. Use the palm of one hand to press back the wrist and fingers of the other hand. After three seconds, rest and then repeat this stretch for your other hand. Do this procedure five times for each hand.
  15. Keep your fingernails short, so that you don’t have to use the pads of your fingers. Your fingers should be relaxed and slightly curved when typing.
  16. While keeping your wrists straight, stretch the fingers of both hands apart as widely as you can for three seconds. Relax. Do it again and again, for a total of five times.
  17. Sit straight. Keep your supplies handy so that you don’t have to stretch for them.
  18. This exercise and the following one may be dangerous for those who suffer from back problems: Touch your shoulders with your fingertips while sitting at the edge of your chair. Gradually twist and stretch right to left.
  19. Lock the fingers of your hands together behind your head. Slowly tilt and stretch your body from side to side.
  20. Your lap and your feet should rest comfortably. They should be parallel to the floor. Either adjust your seat or use a footrest with a nonslip surface. Be sure there is enough room under your desk to stretch your legs.
  21. Take frequent but short walks. Handle small errands in the office yourself, as an excuse to get up and walk around. It’s best to get up every twenty to thirty minutes, and you should never sit in the same position for more than 2 hours. From time to time, take a fast-paced walk around the neighborhood. Unless your neighborhood is even more dangerous than the effects of repetitive stress injuries.

Disk Cleanup Freeze?

It’s a very common problem that many newbies almost always ignore to correct; that when you try to the Disk Cleanup tool, it may stop responding and you may receive the following message:

Disk Cleanup is calculating how much space you will be able to free on (C:).
This may take a few minutes to complete.
Scanning: Compress old files

This problem happens when there is an incorrect entry in the registry that is used by the Disk Cleanup utility to locate compressed files. In my view, I’ve noticed it happening to clean formatted computers as well, so I would suppose that the problem in the registry too is probably a faulty of M$ programming.

But here is a good little trick to follow if this happens to you:

1. Create a registry file by “right clicking” on the desktop > New > Text Document.
2. Name it anything you want with .reg extension. For example: diskcleanup.reg
3. Right click this file > Edit.
4. Type in the following code, then save and close:

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\Compress old files]

That’s it! It should have done it. Try running the Disk Cleanup now and see if it is any faster than before.

How to remove Winzip123 or Bar311

Here's how to remove it:

Step 1: run the task manager or simply press CTRL+ALT+DEL

Step 2: End the following process:

password_viewer.exe or bar311.exe or photos.zip.exe

Step 3: The Virus have an entry in the registry, we should modify the entry in order to delete the virus. We will use regedit, Click on START then RUN then type regedit... *if regedit is disabled click here to solve...

Step 4: Now that regedit is popout, we will start to modify. Go to

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\

WindowsNT\CurrentVersion\Winlogon

Step 5: In the userinit entry right click and modify

you will notice the value, userinit.exe,bar311.exe

remove the ,bar311.exe. "DO NOT DELETE userinit.exe"

Step 6: Go to:

HKEY_CURRENT_USER\Software\Microsoft\Windows\ CurrentVersion\Explorer\Advanced

delete the ff. entries

"Hidden"=dword:00000001

"HideFileExt"=dword:00000000

"ShowSuperHidden"=dword:00000001

Step 7: Go to:

HKEY_CURRENT_USER\Software\Microsoft\Command Processor

in the autorun entry,

delete "c:\Windows\pc-off.bat" or delete the autorun key

Step 8: Now we will remove the autorun.inf, heres how...

Open a notepad then paste this codes

@echo off

c:

attrib autorun.inf -h -r -s

del autorun.inf -h -r -s

d:

attrib autorun.inf -h -r -s

del autorun.inf -h -r -s

del /a /f c:\Windows\bar311.exe

del /a /f c:\Windows\password_viewer.exe

del /a /f c:\Windows\photos.zip.exe del /a /f c:\Windows\pc-off.bat

Save the file as removezip.bat then run, this will remove the virus

Friday, August 01, 2008

Manual and Clean Uninstall Oracle for Windows

If you facing problems trying to uninstall Oracle from your Windows workstation, or unable to uninstall Oracle installations cleanly and properly, the following steps may be used to uninstall all Oracle products currently install on the workstation:

  1. Uninstall all Oracle components using the Oracle Universal Installer (OUI).
  2. Delete the HKEY_LOCAL_MACHINE/SOFTWARE/ORACLE key which contains registry entries for all Oracle products by using regedit.
  3. Delete any references to Oracle services/components in the following registry location: HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/. Looks for key entries that starts with “Ora” which are obviously related to Oracle.
  4. Reboot the workstation.
  5. Delete the ORACLE_BASE directory. (i.e C:\Oracle)
  6. Delete the C:\Program Files\Oracle directory.
  7. Empty the temp directory.
  8. Empty the recycle bin.

Warning: Editing registry may cause problems to your PC.

Five common Web application vulnerabilities

Five common Web application vulnerabilities
Sumit Siddharth, Pratiksha Doshi 2006-04-28

1. Introduction

"No language can prevent insecure code, although there are language features which could aid or hinder a security-conscious developer."
-Chris Shiflett

This article looks at five common Web application attacks, primarily for PHP applications, and then presents a case study of a vulnerable Website that was found through Google and easily exploited. Each of the attacks we'll cover are part of a wide field of study, and readers are advised to follow the references listed in each section for further reading. It is important for Web developers and administrators to have a thorough knowledge of these attacks. It should also be noted that that Web applications can be subjected to many more attacks than just those listed here.

While most of the illustrated examples in this article will discuss PHP coding due to its overwhelming popularity on the Web, the concepts also apply to any programming language. The attacks explained in this article are:

1. Remote code execution
2. SQL injection
3. Format string vulnerabilities
4. Cross Site Scripting (XSS)
5. Username enumeration

Considering the somewhat poor programming approach which leads to these attacks, the article provides some real examples of popular products that have had these same vulnerabilities in the past. Some countermeasures are offered with each example to help prevent future vulnerabilities and subsequent attacks.

This article integrates some of the critical points found in a number of whitepapers and articles on common Web application vulnerabilities. The goal is to provide an overview of these problems within one short article.
2. Vulnerabilities
2.1 Remote code execution
As the name suggests, this vulnerability allows an attacker to run arbitrary, system level code on the vulnerable server and retrieve any desired information contained therein. Improper coding errors lead to this vulnerability.

At times, it is difficult to discover this vulnerability during penetration testing assignments but such problems are often revealed while doing a source code review. However, when testing Web applications is is important to remember that exploitation of this vulnerability can lead to total system compromise with the same rights as the Web server itself.

Click here for further reading

Introducing Microsoft LINQ Free Digital E-Book Download

LINQ (Language Integrated Query) is a Microsoft .NET Framework extension component that adds native data querying capabilities to .NET C# and Visual Basic programming languages using a native syntax reminiscent of SQL, and provides class libraries to take advantage of these capabilities. LINQ defines a set of query operators that can be used to query, set, transform, project and filter data in arrays, enumerable classes, XML, relational database, and third party data sources.

LINQ was officially released as a part of .NET Framework 3.5 on November 19, 2007. For anyone who wants to learn and master LINQ technology, Microsoft Press, the publishing arm of Microsoft, has published Introducing Microsoft LINQ, written by Paolo Pialorsi and Marco Russo (ISBN: 9780735623910).

As part of Visual Studio 2008 Free E-Book Offer, full complete book of Introducing Microsoft LINQ is available for free download without payment or credit card required in digital PDF format.

Entire contents with all chapters for Introducing Microsoft LINQ print book is included in the free ebook downloaded, including:

* Chapter 1: LINQ Introduction
* Chapter 2: C# Language Features
* Chapter 3: Visual Basic 9.0 Language Features
* Chapter 4: LINQ Syntax Fundamentals
* Chapter 5: LINQ to ADO.NET
* Chapter 6: LINQ to XML

Everyone can sign up to receive the free e-book offer at by libredigital.com, or go direct straight to the Introducing Microsoft LINQ PDF e-book download or view chapter page here. Windows Live ID sign in is required.

Other than full complete book of Introducing Microsoft LINQ on offer for free download, partial contents with selected chapters for Introducing Microsoft ASP.NET AJAX by Dino Esposito (ISBN: 9780735624139) and Introducing Microsoft Silverlight 1.0 by Laurence Moroney (ISBN: 9780735625396) is also available for free download.

Introducing Microsoft ASP.NET AJAX
Direct Link (Only Chapter 1: The AJAX Revolution and Chapter 5: The AJAX Control Toolkit are included, representing 113 pages out of 300 pages)

Introducing Microsoft Silverlight 1.0
Direct Link (Only Chapter 1: Silverlight and User Experience and Chapter 5: Programming Silverlight with JavaScript are included, representing 68 Pages out of 200 pages)



BitLocker, FileVault, dm-crypt, and TrueCrypt Encryption Key Crack via DRAM Cold Boot Attack with Program Source Code Download

A group of researchers in Princeton University have managed to prove and demonstrate that disk encryption mechanism used by BitLocker of Windows Vista; FileVault of MacOS X; dm-crypt of Linux, TrueCrypt and possibly other secure encryption software, can be cracked, hacked and defeated by imaging state of physical memory (DRAM modules) which still carry and retain traces of code bits, in what hackers called cold boot attack by dumping all data in memory to disk.


Princeton University Center for Information Technology Policy website describes how the attack is possible:

Contrary to popular assumption, DRAMs used in most modern computers retain their contents for seconds to minutes after power is lost, even at operating temperatures and even if removed from a motherboard. Although DRAMs become less reliable when they are not refreshed, they are not immediately erased, and their contents persist sufficiently for malicious (or forensic) acquisition of usable full-system memory images. We show that this phenomenon limits the ability of an operating system to protect cryptographic key material from an attacker with physical access. We use cold reboots to mount attacks on popular disk encryption systems - BitLocker, FileVault, dm-crypt, and TrueCrypt - using no special devices or materials. We experimentally characterize the extent and predictability of memory remanence and report that remanence times can be increased dramatically with simple techniques. We offer new algorithms for finding cryptographic keys in memory images and for correcting errors caused by bit decay. Though we discuss several strategies for partially mitigating these risks, we know of no simple remedy that would eliminate them.

Video clip published by the team shows that it’s possible to remove a DIMM from one computer after power loss, transport and traffic the RAM module to another PC, aiding by a typical canned-air spray to lower its temperature to lengthen the time which the DIMM will keep the data, and then boot the computer unit using a specially designed microkernel, and finally dump all data on the RAM chip to physical disk. The amount of bad (decayed) data depended on both the time a DIMM spent unpowered and the temperature at which it was kept. Nonetheless, the researchers managed to successfully reconstruct 128-bit AES encryption keys within seconds, even if 10 percent of the key had already decayed out of memory.

The Princeton University team has also released the source code for some of the software utilities that is developed in the course of this research. These prototype applications are intended to illustrate the techniques described in the encryption keys cool boot attack research paper, and should not be used for malicious or hacking attempt.

The source code for applications released for free download include USB / PXE (bios_memimage-1.0.tar.gz) and EFI Netboot (efi_memimage-1.0.tar.gz) memory imaging tools, AESKeyFinder (aeskeyfind-1.0.tar.gz) and RSAKeyFinder (rsakeyfind-1.0.tar.gz) automatic key-finder tools, and AESFix (aesfix-1.0.1.tar.gz) error-correction utility for AES key schedules.

Mastering Wget

by Gina Trapani

Your browser does a good job of fetching web documents and displaying them, but there are times when you need an extra strength download manager to get those tougher HTTP jobs done.

A versatile, old school Unix program called Wget is a highly hackable, handy little tool that can take care of all your downloading needs. Whether you want to mirror an entire web site, automatically download music or movies from a set of favorite weblogs, or transfer huge files painlessly on a slow or intermittent network connection, Wget's for you.

Wget, the "non-interactive network retriever," is called at the command line. The format of a Wget command is:

wget [option]... [URL]...

The URL is the address of the file(s) you want Wget to download. The magic in this little tool is the long menu of options available that make some really neat downloading tasks possible. Here are some examples of what you can do with Wget and a few dashes and letters in the [option] part of the command.

Mirror an entire web site

Say you want to backup your blog or create a local copy of an entire directory of a web site for archiving or reading later. The command:

wget -m http://ginatrapani.googlepages.com

Will save the two pages that exist on the ginatrapani.googlepages.com site in a folder named just that on your computer. The -m in the command stands for "mirror this site."

Say you want to retrieve all the pages in a site PLUS the pages that site links to. You'd go with:

wget -H -r --level=1 -k -p http://ginatrapani.googlepages.com

This command says, "Download all the pages (-r, recursive) on http://ginatrapani.googlepages.com plus one level (—level=1) into any other sites it links to (-H, span hosts), and convert the links in the downloaded version to point to the other sites' downloaded version (-k). Oh yeah, and get all the components like images that make up each page (-p)."

Warning: Beware, those with small hard drives! This type of command will download a LOT of data from sites that link out a lot (like blogs)! Don't try to backup the Internet, because you'll run out of disk space!

Resume large file downloads on a flaky connection

Say you're piggybacking the neighbor's wifi and every time someone microwaves popcorn you lose the connection, and your video download (naughty you!) keeps crapping out halfway through. Direct Wget to resume partial downloads for big files on intermittent connections.

To set Wget to resume an interrupted download of this 16MB "Mavericks Surf Highlights 2006: Wipeouts" short from Google Video, use:

wget -c --output-document=mavericks.avi "http://vp.video.google.com/videodownload?version=0&secureurl=qgAAAJCWpcRd5eI2k3sm3LWJZMjLyLFiTxk_KqUrRYbrzLTEw8hwMV30m3MRz6rYMTxGqWIfWMQjNJsP0fNXUMc34jzoPcy6z-qHde5UVD29Po6_9b_-d3J5AQpVROUPRqzkJriangEl2IMkKBJd08Q7TTJIAC_r6XID-fNYPLKHm1KRvx0smOslivNLGmyZsCsZmVNVN0jaw5-dloWtzPlI86zIubh1XvJsTg2u_YaHcaAB&sigh=-BbV2h_bIFVuVg4D-h6MUTxuErM&begin=0&len=139433&docid=6059494448346363884"

(Apologies for the humungous, non-wrapping URL.)

The -c ("continue") option sets Wget to resume a partial download if the transfer is interrupted. You'll also notice the URL is in quotes, necessary for any address with &'s in it. Also, since that URL is so long, you can specify the name of the output file explicitly - in this case, mavericks.avi.

Schedule hourly downloads of a file

The nice thing about any command line script is that it's very easy to automate. For instance, if there was a constantly-changing file that you wanted to download every hour, say, you could use cron or Windows Task Scheduler and Wget to do just that, or if there was a very large file you wanted your computer to fetch in the middle of the night while you slept instead of right this moment when you need all your bandwidth to get other work done. You could easily schedule the Wget command to run at a later time.

As proof of concept, yesterday I scheduled an hourly download of Lifehacker's daily traffic chart to run automatically. The command looked like this:

wget --output-document=traffic_$(date +\%Y\%m\%d\%H).gif "http://sm3.sitemeter.com/rpc/v6/server.asp?a=GetChart&n=9&p1=sm3lifehacker&p2=&p3=3&p4=0&p5=64\%2E249\%2E116\%2E138&p6=HTML&p7=1&p8=\%2E\%3Fa\%3Dstatistics&p9=&rnd=7209"

Notice the use of %Y and %m datetime parameters which result in unique filenames, so each hour the command wouldn't overwrite the file with the same name generated the hour before. Note also that the %'s have to be escaped with a backslash.

Just for fun I threw together a little animated gif of the hourly chart image, that displays the movement of Lifehacker's traffic yesterday from 2PM to midnight:

animated-traffic-chart.gif

Automatically download music

This last technique, suggested by Jeff Veen, is by far my favorite use of Wget. These days there are tons of directories, aggregators, filters and weblogs that point off to interesting types of media. Using Wget, you can create a text file list of your favorite sites that say, link to MP3 files, and schedule it to automatically download any newly-added MP3's from those sites each day or week.

First, create a text file called mp3_sites.txt, and list URLs of your favorite sources of music online one per line (like http://del.icio.us/tag/system:filetype:mp3 or stereogum.com). Be sure to check out my previous feature on how to find free music on the web for more ideas.

Then use the following Wget command to go out and fetch those MP3's:

wget -r -l1 -H -t1 -nd -N -np -A.mp3 -erobots=off -i mp3_sites.txt

That Wget recipe recursively downloads only MP3 files linked from the sites listed in mp3_sites.txt that are newer than any you've already downloaded. There are a few other specifications in there - like to not create a new directory for every music file, to ignore robots.txt and to not crawl up to the parent directory of a link. Jeff breaks it all down in his original post.

The great thing about this technique is that once this command is scheduled, you get an ever-rotating jukebox of new music Wget fetches for you while you sleep. With a good set of trusted sources, you'll never have to go looking for new music again - Wget will do all the work for you.

Install Wget

Wanna give all this a try? Windows users, you can download Wget here; Mac users, go here. An alternative for Windows users interested in more Linuxy goodness is to download and install the Unix emulator Cygwin which includes Wget and a whole slew of other 'nixy utilities, too.

For the full take on all of Wget's secret options sauce, type wget --help or check out the full-on Wget manual online. No matter what your downloading task may be, some combination of Wget's extensive options will get the job done just right.

Any Lifehacker readers fans of Wget? What do you use this versatile tool for? Let us know in the comments or at tips at lifehacker.com.

Gina Trapani, the editor of Lifehacker, spends way too much time testing out various Wget option recipes. Her semi-weekly feature, Geek to Live, appears every Wednesday and Friday on Lifehacker. Subscribe to the Geek to Live feed to get new installments in your newsreader.

come back with e-book

after a long vacation ..here some e-books that we all can share

Linux for beginner
hacking for dummies
101 nice romantic ideas
cuckoo egg?

have a nice reading

Tuesday, December 25, 2007

How to Delete Your Friendster Account

Simply log on to Friendster under your existing account, click on the link that says "My Settings" on the top right hand corner of the screen.
The next screen you're brought to will have an option that says "Cancel Account" so go ahead and click that and you'll have another confirmation screen after that.



Do remember that deleting your account is permanent and there's no way you can get any of it back!

Sunday, November 18, 2007

Remove Fake Windows Security Alert (Spyware)

Its a very annoying spyware, and maybe some antispyware cannot remove it. Try SmitfraudFix.
It will do the job.






Download here

Tuesday, November 13, 2007

Best Technology Bling

Its name is Key. IronKey.



And it's the world's most secure flash drive. Designed so you can safely browse the Web and transport data, this James Bond-worthy flash drive also protects against phishing and pharming attacks, ID theft and keystroke loggers. Forgot your password? You've got 10 consecutive tries before—yup, you guessed it—the device (internally) self-destructs, wiping everything on its drive clean as a whistle. $79-$149. If more glam is what you seek, check out Swarovski's crystal-encrusted USB Memory Key. $178.

Thursday, November 08, 2007

Flash.10.exe remover

ues these remover to clean your infected PC. Its also fix all the registry error causes by the virus.
It also remove other variant of Flash.10.exe

Download here

Saturday, October 20, 2007

Yahoo! Connection Problems

Yahoo! on a Router, Firewall or Proxy!

People using Routers, Firewalls and Proxies often experience Yahoo! Messenger connection problems. The official Yahoo! support lacks detailed information, and misses some important facts! The following aims to break the information down, and explain easily in sufficient detail.

Connection Options

There are 4 connection Options.
These may be found from the Messenger menu, choose Perferences, and click Connection.

Connection When to use
No Proxies This is the default option for those who dont have any security issues, such as firewalls or connection through proxies.
Firewall, No Proxies This option is selected if a firewall is detected. This method forbids voice chat, super webcam, and p2p IM. This option is not recommended, unless you have no control over your firewall.
Use Proxies Use this when you have to connect through a proxy, HTTP (basic and slow) or SOCKS4 or SOCKS5(with authentication). Common in the workplace, or advanced security.
No Network Detection Recommended for everyone who doesn't require a proxy server, and has firewall control. The firewall option doesn't care that you open ports, it automatically blocks, this option does not perform any detection of your network type.

Ports Yahoo! Messenger uses!

Yahoo! Messenger services uses a variety of ports.

Service Ports
Chat & Messenger TCP Port 5050: Client Access only
Insider/Room Lists TCP Port 80: Client Access only
File Transfer TCP Port 80: Server Access.
Your ISP may block this port, as its used for web hosting.
You can change port in Messenger, Preferences, File Transfer.
Voice Chat UDP 5000-5010
TCP 5000-5001: Client Access
If UDP Fails, TCP will be used instead, see below.
WebCam TCP Port 5100: Client Access
Super Webcam TCP Port 5100: Server Access
P2P Instant Messages TCP Port 5101: Server Access
PMs between Buddys may not use the Yahoo! Server, but this is not a requirement.

TCP versus UDP

TCP is a reliable protocol, and all data sent has a number of extra fields that guarantee delivery. This creates large overhead, and can make the stream slower.

UDP does not carry the same overhead, the data is transmitted much faster, but some data may not be delivered.

If you use a firewall

You need to enable the application Yahoo! Messenger, filename ypager.exe to access the internet, in most personal firewalls, this will give Yahoo! Messenger access to anything it desires, in client mode.

For server mode, you will most likely be prompted.

Proxy Users

HTTP Proxy is slow and unreliable, you cannot access voice chat, or webcam, or any of the advanced interactive services.

SOCKS4 and SOCKS5 are common in the workplace, as they allow more ports to be closed. SOCKS5 requires authentication available from your administrator.

Routers

If you use a router, client access to the Yahoo! Services will be as simple as if you did not use a router.

Where server access is required, you will need to use port forwarding or port triggering.

Port Forwarding/Virtual Server/Forwarding

You need to tell your router which computer on your network to forward the server packets too. This usually follows the form of specifying the computers IP, such as 192.168.1.2, the start port, and end port (from the table above, such as start 80 end 80 for file transfer, 5100 and 5100 for super webcam), and a map port (the same as the start and end).

WebHazard has a graphical tutoral on how for the D-Link routers for Yahoo! Voice Chat. View that here.

Port Triggering (LinkSys) - Super Webcam/UDP Voice

LinkSys routers allow a dynamic form of port forwarding, called port triggering. They maintain a connection tracking, when messenger makes a specific connection, the router is notified that an incoming server connection may follow

For UDP voice, a packet outgoing on port 5000 may cause a response to arrive on another port, say 5001. Linksys routers may be told to expect this, by setting the triggering range to 5000-5010, and the incoming range to 5000-5010.

For webcam, a packet outgoing on port 5100 will tell the router a server connection may come in on port 5100, setting the same ranges.

Saturday, October 13, 2007

Linux Transformation v1.1



The Power DeskMod Linux Transformation had an installation in the format RAR, more easy!
In pack it comes:
Tema of the Ubuntu and Debian
Icones and cursors for IconPackager
Fontes _Wallpapers
Yod'm 3D (desktop in cube)

Download

Sunday, October 07, 2007



Default router password

Default router password here

very funny -Theres no place like 127.0.0.1

funny .. very funny ... never thinked like this before. That's must be cool to trick non techie people especially the script kiddies :lol:

chatlog 1

#60852
Numi: hey, can you guys just check a site out and tell me if it's up?
Haddock: depends, what is it?
Numi: just my apache server, it works for me but seems to be down for anyone else
Haddock:alright, what's the address?
Numi: http://127.0.0.1
Haddock: ......
Haddock: ...Yeah, it's up.


chatlog 2

#38640
Myren:someone ping flood this bastard please: 127.0.0.1
darthv: ok
*** darthv has quit IRC (Ping timeout)

chatlog 3

#742386
HaX.1337: U're all lame as hell here!!!!! I can hack u all in no time! just tell me your ip and u're dead!
Maler.home: try mine
Maler.home: 127.0.0.1
*** Signoff: HaX.1337 (Connection reset by peer)
Damz|dispute: wow. never thought such a retard nick can get his hands on something actually working xD


chatlog 4

#742386
* bitchchecker (~java@euirc-a97f9137.dip.t-dialin.net) Quit (Ping timeout#)
* bitchchecker (~java@euirc-61a2169c.dip.t-dialin.net) has joined #stopHipHop
bitchchecker: why do you kick me
bitchchecker: can't you discus normally
bitchchecker: answer!
Elch: we didn't kick you
Elch: you had a ping timeout: * bitchchecker (~java@euirc-a97f9137.dip.t-dialin.net) Quit (Ping timeout#)
bitchchecker: what ping man
bitchchecker: the timing of my pc is right
bitchchecker: i even have dst
bitchchecker: you banned me
bitchchecker: amit it you son of a bitch
HopperHunter|afk: LOL
HopperHunter|afk: shit you're stupid, DST^^
bitchchecker: shut your mouth WE HAVE DST!
bitchchecker: for two weaks already
bitchchecker: when you start your pc there is a message from windows that DST is applied.
Elch: You're a real computer expert
bitchchecker: shut up i hack you
Elch: ok, i'm quiet, hope you don't show us how good a hacker you are ^^
bitchchecker: tell me your network number man then you're dead
Elch: Eh, it's 129.0.0.1
Elch: or maybe 127.0.0.1
Elch: yes exactly that's it: 127.0.0.1 I'm waiting for you great attack
bitchchecker: in five minutes your hard drive is deleted
Elch: Now I'm frightened
bitchchecker: shut up you'll be gone
bitchchecker: i have a program where i enter your ip and you're dead
bitchchecker: say goodbye
Elch: to whom?
bitchchecker: to you man
bitchchecker: buy buy
Elch: I'm shivering thinking about such great Hack0rs like you
* bitchchecker (~java@euirc-61a2169c.dip.t-dialin.net) Quit (Ping timeout#)