Welcome to HBH! If you have tried to register and didn't get a verification email, please using the following link to resend the verification email.

Realistic 5 - Please read and help


Uber0n's Avatar
Member
0 0

I've found ONE of the e-mails by creating a cookie; the one where sanderson asks how to browse their web folders and the reply is "the folders are not updated". I've checked the email/BS*_f****/ directory where the mail is located, but I don't find anything significiant.

Where should I go now? Do I need the other mail? Am I in the correct directory? WTF?!? I've already read the article by wolfmankurd (good one ;)) but I still don't get it…

Hints apprecieted :) you can also PM me with help if you want. ^^

Peace B) //Uber0n


ghost's Avatar
0 0

Read closely the email and you will find the directory.


ghost's Avatar
0 0

look at key at key words in the email


Uber0n's Avatar
Member
0 0

[quote]jcqguill wrote: LOL I had mispelled a three letter word :p … I was just tired, that's all :)


Uber0n's Avatar
Member
0 0

OK, so I've found the dir, changed his permissions, changed the logs and now I want to report him. Problem is I don't know where to report, I've read something about executing a linux command but I don't know where…. More clues? Or am I just stupid? :p

Peace B)


ghost's Avatar
0 0

I've just started this mission and trying to crack the **.css hash. I've read that others have cracked it with cain. I'm trying cain using an MD5 but it won't crack.

Now either I'm using the wrong hash type or my wordlist.txt isn't big enough.. plse give me a pointer:)


ghost's Avatar
0 0

For Uber0n, just look the source in the dir you found.


Uber0n's Avatar
Member
0 0

Yes I've already seen the <!–?d********–> comment…. But I don't understand hot to use it :p… I've tried to inject it both in the dir and on the real5 main page (action= etc.)….

Awwwwh where to put it?? :(


ghost's Avatar
0 0

Well, think of where you found the hidden commands. You might want to try using them in the dir you found them in. Think - you want to add to those commands something that will help you travel back to the main dir…there is a specific command that will help you do that.


Uber0n's Avatar
Member
0 0

OK I've solved it now :D

Thing was I didn't use the command on i****.php but on mo***y.php :p Thx for all help ppl!

Peace B)


ghost's Avatar
0 0

sledge wrote: I've just started this mission and trying to crack the **.css hash. I've read that others have cracked it with cain. I'm trying cain using an MD5 but it won't crack.

Now either I'm using the wrong hash type or my wordlist.txt isn't big enough.. plse give me a pointer:)

EDIT I *use Cain & Abel using the wordlists from: http://gdataonline.com/

If you use the quick hash mode on this site you can easily solve the cracking step.

hope this helps :ninja: