Hacking Computers (keyloggers, webcam snap, desktop capture, and more) using Backtrack 5 R1

Loading...

Sign in or sign up now!
Alert icon
Upgrade to the latest Flash Player for improved playback performance. Upgrade now or more info.
16,703
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Dec 18, 2011

This is a tutorial on how to use Backtrack 5 R1 in order to gain remote access to another computer on the network. Specifically, we'll be using the Java Applet attack along with ettercap's DNS spoofing attack to spawn a Meterpreter shell on the victim.

You must have backtrack 5 R1. All my subsequent tutorials will be using Backtrack 5, so if you really want to be a true hacker, start using Backtrack 5.

At around 11 minutes, my microphone stops working, but don't worry, I don't say anything important.

Please subscribe! I'll continue to upload more effective and powerful hacking techniques!

DON'T WORRY ABOUT MY BACKGROUND, BACKTRACK 5 R1 BY DEFAULT DOES NOT HAVE THE SAME WALLPAPER AS I DO. I GOT MINE OFF THE INTERNET.

If you're having troubles with this, and you've followed all the directions, try giving Backtrack an update. Do this by...

apt-get update
apt-get upgrade
apt-get dist-upgrade

If you want to allow the victim to browse their sites again, first migrate to explorer.exe, then type "shell" without quotes, then type the command without quotes: "ipconfig /flushdns"
Also make sure to stop ettercap by clicking in the ettercap terminal, then pressing "q" without quotes.

Also, I've been getting tons of questions on how to perform this OUTSIDE your LAN. This is very possible, but you can't do the DNS spoofing part. NOTE. PLEASE WATCH THIS TUTORIAL BEFORE READING THIS, BECAUSE YOU WILL GET CONFUSED. Now here's how:

This isn't too difficult, but you're gonna need to some extra work. First, you'll need to port forward traffic to your computer. You can do this by going to your router configuration settings and forwarding a port to your computer. That port can be any port number, I suggest something like 4444, or something like that.

Also, you'll need to know your external IP address. Go to www.whatismyip.com to find it out, and copy that somewhere. Go to the set_config file located at
/pentest/exploits/set/config/set_config and look till you see something like "auto detection of your ip address" and make sure that is set to OFF.

From there, I believe you should be ready to go. When you are following my video, after selecting the Java Web Template, it will ask you if you are using NAT or port forwarding. Say yes. Then it will prompt you for an IP address. Enter your EXTERNAL IP ADDRESS in. It's the one you copied down from that site.

After that, continue like normal. After everything is set up, just send someone that ip address and have them visit it, and when they click run on the java applet, everything should work just fine. If you want to make the attack more believable, put the IP address in a URL shortening service, like tinyurl, then send that link to somebody.

  • likes, 4 dislikes

Link to this comment:

Share to:

Uploader Comments (thewariomanofdoom)

  • what is the differince on backtrack 5 and backtrack R1?.can i do the same in just backtrack5?

  • @thedingalingz The repositories on Backtrack 5 are not up to date, and thus you won't be able to get the latest version of SET unless you manually install it.

  • what if they're not in my connection?

  • @FenrisVermillion Then you PM me and I'll tell you.

  • ARP poisening needs a non empty hosts list.

    what do i do ?

    nice video though!

  • @pepijn1231 You typed the command wrong. Look again and type it correctly.

see all

All Comments (178)

Sign In or Sign Up now to post a comment!
  • @killacam5362465 Yeah I am booting off of a usb also and the msf loader sends me right back to the main SET page as well. Im not sure how to fix it and ive looked through numerous forums and goteen nowhere, its really getting annoying. Can anybody help us with this?!

  • nvm, found out already

  • ehm, is backtrack a operating system?? or just a program?

  • please help

    

  • after it says Web Server Launched. Welcome to the SET Web Attack. and the msf listener is loading it sends me back to the main page where it says set web attack. also im using backtrack 5 r1 off of a Bootable usb and when i type route my gateway says desktop.domain

  • Let's say that I did it and it worked. Every time that I want to hack the same computer again I'll have to do everthing in this tutorial again? There is no way to connect easily to the same computer?

    Nice tutorial!

    Thx

  • @unseenpunk4u i i know derp typed it wrong lol

  • @somejarhead I found that to be true except its still -q not -p, * note to all type ifconfig and what ever the heading is next to your IP info use that i.e. wlan0, wlan1, eth0

  • 1 word wow am ur new fan keep up the good vids

  • for those of you on desktops the wlan0 didnt work heres my code if you get error 99 and the ipv4 adress is not found\

    ettercap -T -i eth0 -p -M arp:remote /192.168.0.0/ /192.168.0.0/ -P dns_spoof that will get it working over ethernet :D video guy you should put that in description cause i kept trying all your codes and was confused as hell until i tried some custom coding

    

Loading...

Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more