Gooogle Hacking at Your Finger Tips
Gooogle Hacking at Your Finger Tips
Gooogle Hacking at Your Finger Tips
Needs
Intelligence
[email protected]
Gooogle
Hacking
at your
finger tips
By: Er.Rishi Aggarwal
Preface
In the late nineteenth century there was a drastic change in the way
people worked. The credit of this change in the lives goes to the
introduction of computer technology in India. Everything, which was
done manually, was now on computers. Be it education,
entertainment or vital sectors like banking computers soon was the
lifeline of these sectors. As it made the life as easy as anything people
not only adopted this technology but they become addicted to it.
Second revolution came in the form of Internet, which was welcomed
by people whole-heartedly. Not knowing about the disadvantages of
Internet people made it an integral part of their lives. But soon this
boon was used for some anti social elements for wrong use and
disturbing people in the form of computer hacking.
Computer hacking is a process when somebody breaks into a
computer system, usually without permission. This tactic is
sometimes employed by identity thieves to steal personal information
such as social security numbers, account numbers, and more--to
further their pursuits of stealing identities. The only way to tackle the
situation is to have knowledge about the computer hacking.
Contents
1. Redefining the hacking
2. Introduction to Google
3. Google Company Information
4. Google products
5. Google search engine
6. Google operators
· intitle, allintitle
· inurl, allinurl
· Filetype
· Allintext
· Site
· Link
· Inanchor
· Daterange
· Cache
· Info
· Related
· Phonebook
· Rphonebook
· Bphonebook
· Author
· Group
· Msgid
· Insubject
· Stocks
· Define
· Few examples
· Tricks
7. Orkut
· Loophole regarding the orkut password.
· Tricks
· Orkut Softwares
8. Google Talk
· Registry Tweaks
· Tricks
· Keyboard Shortcuts
· Command Line stuff
9. Gmail
· A Summary of the Login Procedure
· Tricks
· Keyboard Shortcuts
· Combo shortcut keys
10. Google Domains
11. Google Cheats links
grasp the tricks and tips to work with Google more effectively.
(www.bytestart.co.uk/content/promotion/7_5/an-introduction-to-g
oogle.shtml)
Google.com gets its name from "Googol", the mathematical term for
a 1 followed by 100 zeros (i.e. a very large number). Larry Page and
Sergey Brin who met first as Stanford University students founded it.
The Company opened for business in 1998. With over 3 billion web
pages indexed, alongside regular new products such as News feeds,
its simple design and ease of use (together with accuracy of course)
makes it an essential search engine to be listed on. Most sites now
derive the majority of their traffic from Google.
CHAPTER 3: Google Company Information
Public (NASDAQ: GOOG) and
(LSE: GGEA)
Founded
Menlo Park, California (1998)
Location
Mountain View, California, USA
Key people
Eric E. Schmidt
Sergey Brin
Larry E. Page
George Reyes
Revenue
$6.138 Billion USD (2005)
Net Income
$1.465 Billion USD (2005)
Employees
5,680 (2005)
Contact Address
2400 E. Bayshore Parkway
Mountain View, CA 94043
Contact Phone
+1 650 318 0200 (US)
+1 650 618 1499 (US)
[email protected]
· Alerts
· Blog search
· Book search
· Desktop
· Directory
· Images news
· Note book
· Scholar
· Gmail
· Gtalk
· Calendar
· And many more…
help users of the Internet locate information on the World Wide Web.
system allowing the user to identify and retrieve resources. The most
important thing to note about Google is that it shares each and every
Advanced operators:
· intitle, allintitle
· inurl, allinurl
· Filetype
· Allintext
· Site
· Link
· Inanchor
· Daterange
· Cache
· Info
· Related
· Phonebook
· Rphonebook
· Bphonebook
· Author
· Group
· Msgid
· Insubject
· Stocks
· Define
Intitle:
intitle: restricts your search to the titles of web pages. The variation,
allintitle: finds pages wherein all the words specified make up the
title of the web page. It's probably best to avoid the allintitle:
variation, because it doesn't mix well with some of the other
syntaxes.
intitle:"george bush"
allintitle:"money supply" economics
Inurl:
inurl: restricts your search to the URLs of web pages. This syntax
tends to work well for finding search and help pages, because they
tend to be rather regular in composition.
An allinurl: variation finds all the words listed in a URL but doesn't
mix well with some other special syntaxes.
inurl:help
allinurl:search help
Intext:
intext: searches only body text (i.e., ignores link text, URLs, and
titles). There's an allintext: variation, but again, this doesn't play well
with others. While its uses are Limited, it's perfect for finding query
words that might be too common in URLs or link Titles.
intext:"yahoo.com"
intext:html
Inanchor:
inanchor: searches for text in a page's link anchors. A link anchor is
the descriptive text of a link. For example, the link anchor in the
HTML code <ahref=”http://www.google.com>smith and
associate</a> is "Rishi Aggarwal "
inanchor:"tom peters"
Site:
Site: allows you to narrow your search by either a site or a top-level
domain. AltaVista, for example, has two syntaxes for this function
(host: and domain:), but Google has only the one.
site:loc.gov
site:thomas.loc.gov
site:edu
site:nc.us
Link:
link: returns a list of pages linking to the specified URL. Enter link:
www.google.com and you'll be returned a list of pages that link to
Google.
Cache:
cache: finds a copy of the page that Google indexed even if that page
is no longer available at its original URL or has since changed its
content completely. This is particularly useful for pages that change
often. If Google returns a result that appears to have little to do with
your query, you're almost sure to find what you're looking for in the
latest cached version of the page at Google.
cache:www.yahoo.com
Daterange:
daterange: limits your search to a particular date or range of dates
that a page was indexed. It's important to note that the search is not
limited to when a page was created, but when Google indexed it. So a
page created on February 2 and not indexed by Google until April 11
could be found with date range: search on April 11.
Filetype:
filetype: searches the suffixes or filename extensions. These are
usually, but not necessarily, different file types. I like to make this
distinction, because searching for filetype: htm and filetype: html will
give you different result counts, even though they're the same file
type. You can even search for different page generators, such as ASP,
PHP, CGI, and so forth—presuming the site isn't hiding them behind
redirection and proxying. Google indexes several different Microsoft
formats, including: PowerPoint (PPT), Excel (XLS), and Word
(DOC).
homeschooling filetype:pdf
"leading economic indicators" filetype:ppt
Related:
related: as you might expect, finds pages that are related to the
specified page. Not all pages are related to other pages. This is a good
way to find categories of pages; a search for related: google.com
would return a variety of search engines, including HotBot, Yahoo!,
and Northern Light.
related:www.yahoo.com
related:www.cnn.com
Info:
info: provides a page of links to more information about a specified
URL. Information includes a link to the URL's cache, a list of pages
that link to that URL, pages that are related to that URL, and pages
that contain that URL. Note that this information is dependent on
whether Google has indexed that URL or not. If Google hasn't
indexed that
Phonebook:
phonebook: as you might expect, looks up phone numbers.
phonebook:John Doe CA
phonebook:(510) 555-1212
Few examples
· inurl:microsoft filetype:iso
You can change the string to watever you want, ex. microsoft to
adobe, iso to zip etc…
· "# -FrontPage-" inurl:service.pwd
Frontpage passwords. Very nice clean search results listing!!
· "AutoCreate=TRUE password=*"
This searches the password for "Website Access Analyzer", Japanese
software that creates web statistics. For those who can read Japanese,
check out the author's site at: http://www.coara.or.jp/~passy/
· "http://*:*@www" domainname
This is a query to get inline passwords from search engines (not just
Google), you must type in the query followed with the domain name
without the .com or .net
· allinurl:auth_user_file.txt
DCForum's password file. This file gives a list of (crackable)
passwords, usernames and email addresses for DCForum and for
DCShop (a shoppingcart program(!!!). Some lists are bigger than
others, all are fun, and all belong to googledorks. =)
· intitle:index.of.etc
This search gets you access to the etc directory, where many types of
password files can be found. This link is not as reliable, but crawling
etc directories can be really fun!
· filetype:bak inurl:"htaccess|passwd|shadow|htusers"
This will search for backup files (*.bak) created by some editors or
even by the administrator himself (before activating a new version).
Every attacker knows that changing the extension of a file on a
web-server can have ugly consequences.
Let's pretend you need a serial number for Windows Xp pro. In the
google search bar type in just like this –
The key is the 94FBR code. It was included with many MS Office
registration codes so this will help you dramatically reduce the
amount of 'fake' porn sites that trick you
Now you can access the power of Google using sms without the
Internet. Send all your Google SMS messages to 46645 (this
corresponds to GOOGL on your phone.) The text that is in this
message will determine what information you get in return. Google
doesn't care about case so you can type in upper or lower case. For
general help information about the service send help
to find out prices for a product send F, price, or prices and then the
product name. Examples:
F hp photosmart 1215
Roland Ma-8 prices
Adobe Photoshop price
D bronchoscopy
define fizzle
To find local businesses, type the store name and either the state/city
or the zip code. Use a period between the business name and location.
Examples...
starbucks.27713
Will show you the Starbucks in the 27713 zip code
hospital.durham nc will tell you the hospitals near durham, nc. If
you want to do a google search and see what google returns, you can
preface a search with G. You will not be able to follow links but you
can often find your answer just from the short information google
returns. For example, this will likely give you what you need.
G default linksys router password admin
Google will also do calculations i.e. half a cup in teaspoons 34/6
3. Google Does Translations
Google Maps do not display latitude and longitude values, but there
is an easy trick to get these numbers. This technique will provide the
latitude and longitude coordinates of the center of the map displayed
by Google Maps. Looking up an address in Google Maps will center
the map on that address if it was found. Because this trick provides
the latitude and longitude of the center of the map, moving the map
around manually after that will change the center position and this
technique will not work accurately.
When the location, you want is in the center of the map, copy and
paste this code into the location bar of your browser and press enter:
javascript:void(prompt('',gApplication.getMap().getCenter()));
A little dialog box will pop up displaying the coordinates which can
be copied and pasted for use elsewhere. This code can be bookmarked
and then used in the future by selecting the bookmark.
There are number of tricks that take a user to the highest extent of
fun, to play around. These tricks may be of
· Simple tricks
· JavaScript tricks
· Mozilla scripts
· Tricky softwares
Tricks
1) Blank Scrap
· Place the cursor in the text field.
· Delete everything in the field.
· Now, HOLD (Keep pressed) ALT key and press 0 1 7 3
(Press the numbers one after another. Do not keep them
pressed) on the NUMBER PAD (on the right side of the
keyboard).
· If you are using a laptop, just press [i] in the text box.
· click submit
In MS Paint, create the smallest image possible of 1X1 pixel and then
upload it Virtually unclickable! And you are invisible now!!
information!!!
15) Write scraps in Hindi
Go to www.Quillpad.com for Hindi, Telugu, Tamil, Kannada,
Malayalam and Marathi.
· Hit ENTER
17) Make ASCII pictures
Heart
There are many more pictures to make your scrap, awesome find
more at www.ascii-art.net
Orkut Softwares
Scrapboy
Scrapboy enables you to send and receive instant scraps in the Orkut
website without a web browser. It gives you more Convenience and
speed while scrapping.Scrapboy is popularly called as Orkut
Messenger. You can send your scraps instantly, just like chatting!!
http://scrapboydigitalmedia.com/setup/scrapboy/en/ScrapboySetup
.exe
Orkut Cute
Orkut cute is software by which you can browse orkut.
This is awesome software with which you can do many tricks like:
· Send a same scrap to all your friends (Best thing is along with
hyperlink. Yes, This software can bypass the word check).
http://www.orkut.com/Profile.aspx?uid=12262811441151591535
i.e., my profile id is 12262811441151591535)
Note: There are few controversies on this software that this software
hack cookies! So use it at your own risk
http://www.softscyber.com/programas/CyberFloodScraps.rar
http://fm1729.googlepages.com/friendadder.exe
TIO Scrap Formatter
TIO Scrap-Formatter is software used to format your scraps easily!
Just bored of pasting those scripts inbrowser to achieve new colour
and fonts. Just try out the TIO scrap-formatter made with an incentive
of eliminating the need of using those hefty scripts.
http://www.freewebs.com/hackinfinite/scrapformatter.rar
http://orkutrix.googlepages.com/AutoRefresher.zip
Accounts:
This one has sub-keys for each different account that has logged in
on the client. These keys have different values that store the
username, password and connection options.
Auto-update:
Stores the current version information. When the client checks for
updates it compares Google's response with these values. If an update
is needed, it will download and update the new version.
Options:
This is the most interesting part, where most of the current hacks
should be used (keep reading).
Process:
Stores the process ID. Probably used by Google Talk to detect if it's
already running or not.
· HKEY_CURRENT_USER\Software\Google\Google
Talk\Options\view_show_taskbutton
If 0, hides the taskbar button, and leaves the tray icon only, when the
window is shown
· HKEY_CURRENT_USER\Software\Google\Google
Talk\Options\away_inactive
· HKEY_CURRENT_USER\Software\Google\Google
Talk\Options\away_screensaver
· HKEY_CURRENT_USER\Software\Google\Google
Talk\Options\inactive_minutes
Tricks
Change the font size - While holding the control key, move the
scroll wheel on your mouse either up or down. This trick works
while being focused in either the read or write area.
Insert line breaks - If you want to have a message that spans multiple
paragraphs, just hold shift and hit enter. You can add as many new
lines as you want to create.
Bold Text - To write something bold, you can use an asterisk before
and after the word, like *this*. Italic Text - To use italics, use an
underscore before an after the word, like this.
Contacts :
You don't need to say Yes or No when someone wants to add you as
a friend; you can simply ignore it, the request will go away. (On the
other hand, someone with whom you chat often will automatically
turn to be your friend, unless you disable this).
The Gmail account '[email protected]' can't be invited as your friend.
Play Music :
It's possible to broadcast music, MP3, etc through Google Talk.
Unplug your microphone. Double click on the speaker icon in the
lower right corner. This will open up "Volume Control". Select
"Options" and then "Properties". Then check the button next to
"Recording" then click OK. You may also have to change your
setting under Mixer Device. Now the Recording Control screen
should be up. On my computer I selected "Wave out Mix". Click on
the green phone in Google Talk and call your friend.
There are a few secret parameters you can add to Google Talk and
make it function differently. The most important, I think, is
Ctrl + L - It justifies to the left the selected text, or the current line.
Trick
Multiple Signatures
Documentation: http://userscripts.org/scripts/show/1592
Userscript: http://userscripts.org/scripts/source/1592.user.js
This is a very smart script indeed. Using the ability to change the
reply-to: address within Gmail, it allows the user to change both
their e-mail signature.
Hide Invites
Documentation: http://userscripts.org/scripts/show/673
Userscript: http://userscripts.org/scripts/source/673.user.js
A very simple use of Greasemonkey. This userscript simply hides the
box that holds the facility to send Gmail invitations to your friends.
As you have already looked at the way Gmail is constructed, you can
modify this userscript yourself to stop the display of any section of
the interface.
Random Signatures
Documentation: http://userscripts.org/scripts/show/1704
Userscript: http://userscripts.org/scripts/source/1704.user.js
The first thing to remember is that Gmail provides its own SMTP
server. This offers two major features. First, you can use the SMTP
server from your own e-mail application, which is a great help if
you’re traveling and your usual e-mail provider is unreachable. The
second use is that every single scripting language you might have a
desire to use has standard SMTP support available as a library, and
the support for TLS encryption, which you need to connect to Gmail,
is being added apace. First, though, the settings you’ll need:
_ Server name: smtp.google.com
_ Username: [email protected]
_ Password: Your Gmail password
_ Security: Yes, using TLS
One thing to note about this technique is that Gmail will rewrite your
e-mail headers. It replaces the From: and Reply-to: lines with your
Gmail address because Gmail also automatically adds the so-called
Domain Keys to their outgoing e-mails, allowing spam-hit system
administrators to block fake Gmail mail from their servers.Without
the Domain Keys this wouldn’t work, but Gmail can’t send mail with
a different From: or Reply-to: address without breaking the Domain
Key.
· Click Finish.
· Click Properties.
· Click OK.
· Click Close.
How to Access a Gmail Account with any Email Client via POP
With the sheer size available in my Gmail account and the ubiquity,
speed and efficiency of its web interface, I am inclined to move all my
emails to Gmail. But it is good to know that the mail transfer can
happen in the other direction as well. If you want to consolidate all
your email addresses at once place, you can have all messages
arriving at Gmail be forwarded to another email address
automatically. The more direct route is available, too.
· Make sure either Enable POP for all mail or Enable POP only
for mail that arrives from now on is selected.
· Choose Enable POP for all mail if you want to
download mail previously received at your Gmail
account. Otherwise, select Enable POP only for mail
that arrives from now on.
· Select the action you want applied to mail after you have
downloaded it to your email client under when messages are
accessed with POP.
· Mac OS X Mail
· Outlook 2007
· Outlook Express
· Port: 995.
· Port: 465.
Gmail will display little RSS feed sniplets above your gmail content.
I personally do not like it. It seems very ad-like to me. If you want
them removed, Google has supplied an easy way to turn it off. I like
my RSS feeds in my RSS feed reader, thank you. I'll keep them out of
my email client for now.
Here is how to turn off the RSS web clippie thing in Gmail:
1. Log into Gmail
2. Click the Settings link in the upper right-hand corner
3. Click the Web Clips link
4. Uncheck Show my web clips above the Inbox
5. Click the big Gmail icon to take you back to the main gmail
screen. The web clips should be gone.
you.
Do not use this service from your main gmail account. Eventually
this trick will stop working, and your account will be flooded with
spam. You've got to do something with all those gmail invites, right?
How many services use email and email validation to use?
Forums, free i-tunes, free magazines, free this, and free that.
You know many of these services make money off selling your email
address; therefore, you certainly do not want to give them your main
email address. Thus the need for throw-away or disposable email
addresses. Although many services out there offer this service, gmail
is an especially useful tool.
Gmail also supports "plus-addressing" of emails. Messages can be
sent to addresses in the form: [email protected]
where extra text can be any string. Plus-addressing allows users to
sign up for different services with different aliases and then easily
filter all e-mails from those services. It does not appear, however,
that the +string feature works when sending email from a gmail
account to itself. Additionally (in some cases) the string appended to
the e-mail address may not be longer than six characters.
If you gmail account is [email protected] then you can generate
additional email accounts by adding text after the plus…
Original Account:
t h r o w a w a y @ g m a i l . c o m
New Accounts:
- [email protected]
- [email protected]
- etc.
By using gmail's filtering function with your unique text (dumpa,
dumpb, etc.), you can automatically archive these messages if they
start getting spammy.
This likely will not work forever. Spammer and websites will soon
learn to filter and remove this plus-addressing text. That's one of the
advantages of gmail... you can always sign up for another account.
Keyboard Shortcuts
The keyboard shortcuts available within Gmail are, without any
doubt, the quickest route to speedy productivity within the
application. The time investment in learning the keyboard shortcuts
of all of your computer’s applications always pays off, as you are
able to navigate your system much more quickly than before. Instead
of reaching off the keyboard, grasping the mouse, moving it to the
right place and clicking, keyboard shortcuts allow you to press just
one button. You don’t lift your hands off the keyboard, and when
you’re really good at typing, you don’t even need to look at the
screen. Activating the keyboard shortcuts is simple. Go to the
Settings page and turn them on there, as shown in Figure.
Save the settings, and you will find that the bottom of your Inbox
screen has changed to show some of the keyboard shortcut
commands, as shown in Figure.
To see what keyboard shortcuts are about, press the c key now.
Immediately, the page changes to the Compose Message window,
with your cursor in the To: addressing area. Type an e-mail address,
and then press Tab. Your cursor moves to the Subject line. Type
something, and hit Tab again, and you’re in the message box. Now a
snag. Hit Tab again, and then Enter, and in Internet Explorer your
message is sent. The keyboard shortcuts are many and various, and
are all good to know about. But they’re also very simple.
Action
Key Definition
! Report spam Marks a message as spam
and remove it from your
conversation list.
R Reply Reply to the message sender.
Shift + r allows you to reply
to a message in a new
window. (Application only
in conversation view.)
A Reply all Reply to all message
recipients. Shift +a allows
you to reply to all message
recipients in a new window.
(Application only in
conversation view.)
F Forward Forward a message. Shift +f
allows you to forward a
message in a new window.
(Application only in
conversation view.)
Esc Escape from input field Remove the cursor from
your current input field.
Name:
Home Address:
City Pin-code:
Home Phone ( )
Mobile: ( ) Email:
Agreement:
I understand that the HANS “the Programme” is a private and personal experience for each
participate. As such, I agree to respect the confidentiality of all participants and their remarks
and actions, and I agree to keep all such information private and confidential. I am self
responsible for any activity in hacking due to me after participating in this programme course.
Place:
Dated: (Signature)
For further details : please contact Er.Rishi Aggarwal, Ph. 09888522813