![havij 1.15](http://hackingtricks.in/wp-content/uploads/2011/12/havij-1.15.jpg)
If you do not have Havij, then download fromthe given link.
http://hackingtricks.in/2011/09/download-havij-1-1-5.html
http://www.itsecteam.com/en/projects/project1_page2.htm
http://www.itsecteam.com/en/projects/project1_page2.htm
It was my older post. And if the link is dead. then try to Google it.
Now run the tool in your system. I am not including the detailed snapshots because i do not want to target on a website at a public post.
Enter the target URL with a query string as a get parameter. http://targetwebsite.com/index.aspx?id=12
Then click on analyze.
The tool will scan the website and will give the details about the server and technology it is using.
After the tool had done with its work and found the name of the database.
Now click on Tables to fetch the tables of the database. After the tables have been retrieved by the tool, you can easily fetch the data inside the tables.
Tool also has the cmd shell to execute the cmd commands on the server and MD5 tool to ctrack the passwords stored in the MD5 hash.
Comment below if found any problem with the tool
0 comments:
Post a Comment