Warning : Use this only for FOR EDUCATIONAL PURPOSES ONLY!

UPDATE WITH CLEAN TOOL (7-June-2010)

1. Download and Extract SQLi Helper. (Donet Framework 2 is required)
2. Find vulnerable site for SQL injection.
3. Open SQLiHelper and paste site URL into Target box.

ss1 (Small)

4. Click “Inject” Button.
5. After Injection is finished. It will show you sever info in a box of right side top corner.
6. Next Click “Get Tables” button.

ss2 (Small)

7. After clicking “Get Database” button It will list avalable databases on server.

ss3 (Small)

8.  Select database you want and click “Get Tables” button. Then it will display Table list of database.

ss4 (Small)

9. After table listing is completed select table you want and click “Get Columns” button.

ss5 (Small)

10. Now you can select columns and click “Dump now” button. It dump all data stored in selected columns….
11. Congratz. you have successfully done a SQL Injection.

(Leave a message If you have any problem)

UPDATED (7-June-2010)

  1. Download SQLi/XSS/LFI/RFI Scanner from here.
  2. Extract RAR file.
  3. Download and Install Dotnet Framework If you haven’t.
  4. Run ExploitScanner.exescr0 (Small)
  5. Put search string you want to search, as dork. (for example i’ll use details.php?id)index.php?id=trainers.php?id=buy.php?category=

    article.php?ID=

    play_old.php?id=

    newsitem.php?num=

    readnews.php?id=

    top10.php?cat=

    historialeer.php?num=

    reagir.php?num=

    Stray-Questions-View.php?num=

    forum_bds.php?num=

    game.php?id=

    view_product.php?id=

    newsone.php?id=

    sw_comment.php?id=

    news.php?id=

    avd_start.php?avd=

    event.php?id=

    product-item.php?id=

    sql.php?id=

    news_view.php?id=

    select_biblio.php?id=

    humor.php?id=

    aboutbook.php?id=

    ogl_inet.php?ogl_id=

    fiche_spectacle.php?id=

    communique_detail.php?id=

    sem.php3?id=

    kategorie.php4?id=

    news.php?id=

    index.php?id=

    faq2.php?id=

    show_an.php?id=

    preview.php?id=

    loadpsb.php?id=

    opinions.php?id=

    spr.php?id=

    pages.php?id=

    announce.php?id=

    clanek.php4?id=

    participant.php?id=

    download.php?id=

    main.php?id=

    review.php?id=

    chappies.php?id=

    read.php?id=

    prod_detail.php?id=

    viewphoto.php?id=

    article.php?id=

    person.php?id=

    productinfo.php?id=

    showimg.php?id=

    view.php?id=

    website.php?id=

    hosting_info.php?id=

    gallery.php?id=

    rub.php?idr=

    view_faq.php?id=

    artikelinfo.php?id=

    detail.php?ID=

    index.php?=

    profile_view.php?id=

    category.php?id=

    publications.php?id=

    fellows.php?id=

    downloads_info.php?id=

    prod_info.php?id=

    shop.php?do=part&id=

    productinfo.php?id=

    collectionitem.php?id=

    band_info.php?id=

    product.php?id=

    releases.php?id=

    ray.php?id=

    produit.php?id=

    pop.php?id=

    shopping.php?id=

    productdetail.php?id=

    post.php?id=

    viewshowdetail.php?id=

    clubpage.php?id=

    memberInfo.php?id=

    section.php?id=

    theme.php?id=

    page.php?id=

    shredder-categories.php?id=

    tradeCategory.php?id=

    product_ranges_view.php?ID=

    shop_category.php?id=

    transcript.php?id=

    channel_id=

    item_id=

    newsid=

    trainers.php?id=

    news-full.php?id=

    news_display.php?getid=

    index2.php?option=

    readnews.php?id=

    top10.php?cat=

    newsone.php?id=

    event.php?id=

    product-item.php?id=

    sql.php?id=

    aboutbook.php?id=

    preview.php?id=

    loadpsb.php?id=

    pages.php?id=

    clanek.php4?id=

    announce.php?id=

    chappies.php?id=

    read.php?id=

    viewapp.php?id=

    viewphoto.php?id=

    rub.php?idr=

    galeri_info.php?l=

    review.php?id=

    iniziativa.php?in=

    curriculum.php?id=

    labels.php?id=

    story.php?id=

    look.php?ID=

    newsone.php?id=

    aboutbook.php?id=

    scr2 (Small)

  6. Change Max Url and Thread count If you want (not necessary, i’ll leave it as 100 and 5)
  7. Keep SQLi Error Based checked.
  8. That’s all, now click “Scan Sites” button. It will search through internet and find sites with given dork.
  9. After the search is completed it will show list of sites.
  10. Then click “Test Sites” button. it will scan sites from the list and show you which are vulnerable.
  11. Finaly you can see vulnerable site list on right side box.scr1 (Small)

Please also note that you run this procedure at your own risk; although I have performed this with perfect results there is always the possibility when flashing your phone that you may damage it.

1. Install Nokia PC Suite with all Drivers (Make sure Nokia PC Suite woking well when your Mobile plugged in PC Suie Mode)
2. Download and Install Nemesis Service Suite and Nokia Software Updater
3. Plug your Mobile phone in “PC Suite” Mode
4. Open Nemesis Service Suite

5. Click “Scan for New Device Button”

if you done all correctly.. you will get this.. (blinking “Ready”)

6. Click and goto “Phone Info”

7. Then Click “Scan” button
8. Put Generic Nokia code (UK – 0534841) in product code box and check enabled infront of it..

9. Next Click “Write” button.. and wait until it complete… then click “Read” and check code saved there….

10. Now All are ok.. You have made debrand code but not the os. now use Nokia Software Updater and Install latest firmwire on mobile…

1. Download Data.zip from here. It is Pre-configed Windows 3.1 Installation, that means you have no need to do complex configurations.

data

2. Extract Data.zip to your Phone Memory Card

dir

(As you can see in above image, you must put Data folder into Memory Card Root)

3. Download Install.zip from here. Inside that you can see some Symbian Applications. Install all those into your Mobile phone one by one.

inst

4. Next you have to Install DOSBox into Mobile Phone.

Download : dosbox_s60_20090623.zip

Install :

Now Its Time to Boot your Windows, Run DOSBox Application. Have Fun

DSC04443 (Small)

Keys :

Receive Call (Green) – Switching Mode (switch between the mouse and the keyboard)
End Call (Red) – Exit from DOSBox
Pen Key – Shift
Delete (C) – Backspace
Thumb Pad – Arrow Keys, Enter
Right Key – Escape
Left Key – Space

Mode 1:

First line keys = a d g j m p t w space
First line keys + Pen =: A D G J M P T W space
Second line keys + * = b e h k n q u x .
Second line keys + * = Pen + * B E H K N Q U X
Third line keys + # = c f i l o r v y \
Third line keys + Pen + # = C F I L O R V Y |
Fourth line keys + 1 = s z
Fourth line keys + Pen + 1 = S Z

Mode 2:

Numbers = 1 2 3 4 5 6 7 8 9 0
Numbers + Pen = ! @ # $ % ^ & * ( )

Mode 3:

Thumb Pad – Moving mouse
* = Right mouse button
# = Left mouse button

Configurations :

1. To change DOSBox allocated 8MB RAM edit line ‘memsize=8′ in file ‘e:\Data\dosbox.conf’.
2. If your mobile phone have enough RAM memory you can install Sound Blaster 16 driver:
Control Panel -> Drivers -> Add -> Creative Lab Sound Blaster 1.5 -> Restart

I have tested this on N95-1 without any errors, If you have any problems just leave a comment below.