SlideShare a Scribd company logo
I hear about this site www.hackertest.net from my friend, this site have puzzle
to solve to enter to the next level. So this is the answer of level i pass, but
i stuck at level 20. Is there level 21? The tool to pass all level only text
editor and GIMP, maybe above level 20 are the real hacker test :-)
————————
level 1 http://www.hackertest.net/
Password:null
From— view page source
<script language=JavaScript>
{
var a=—null—;
function check()
{
if (document.a.c.value == a)
{
document.location.href=—http://www.hackertest.net/—+document.a.c.va
lue+—.htm—;
.
.
.
————————
level 2 http://www.hackertest.net/null.htm
Password:l3l
From— view page source
<script language=—JavaScript— type=—text/javascript—>
var pass, i;
pass=prompt(—Please enter password!—,—");
if (pass==—l3l—) {
window.location.href=—http://www.hackertest.net/—+pass+—.htm—;
.
.
.
————————
level 3 http://www.hackertest.net/l3l.htm
Password:#000000
From— view page source
<body onload=javascript:pass(); alink=—#000000?>
<SCRIPT LANGUAGE=—JavaScript—>
function pass()
{
var pw, Eingabe;
pw=window.document.alinkColor;
Eingabe=prompt (—Please enter password—);
if (Eingabe==pw)
{
window.location.href=String.fromCharCode(97,98,114,97,101)+—.htm—;
.
.
.
————————
level 4 http://www.hackertest.net/abrae.htm
————————
level 5 http://www.hackertest.net/sdrawkcab.htm
Password:SAvE-as hELpS a lOt
From— view page source
<script language=JavaScript>
var pass, i;
pass=prompt(—Password: —,—");
if (pass==—SAvE-as hELpS a lOt—) {
window.location.href=—save_as.htm—;
.
.
.
————————
level 6 http://www.hackertest.net/save_as.htm
Password:hackertestz
From— view page source
<SCRIPT SRC=—psswd.js— LANGUAGE=—JavaScript—
type=—text/javascript—></script>
Open http://www.hackertest.net/psswd.js
<!—
var pass;
pass=prompt(—Password:—,—");
if (pass==—hackertestz—) {
window.location=—included.htm—;
.
.
.
————————
level 7 http://www.hackertest.net/included.htm
Username:phat
Password:jerkybar3
From— view page source
<body bg=—images/included.gif—>
Open http://www.hackertest.net/images/included.gif
————————
level 8 http://www.hackertest.net/pwd2.php
Username:zadmin
Password:stebbins
From— view page source
<form action=phat.php method=post>
Open http://www.hackertest.net/phat.php
<BODY BGCOLOR=—ffffff— TEXT=—000000? BG=—images/phat.gif—>
Open http://www.hackertest.net/images/phat.gif
the result is —Look for a .PhotoShopDocument!— => PSD
Download http://www.hackertest.net/images/phat.psd
Open phat.psd using photoshop or gimp
Hide another layers, only show Background and DEMO DEMO DEMO DEMO
————————
level 9 http://www.hackertest.net/phat.php
Form— view page source
<!—————————————————————-
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
—————— Password: Z2F6ZWJydWg= add a page extention to
that ————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
—————————— >
Decode Z2F6ZWJydWg= (base 64 to text), using online tools like:
- http://ostermiller.org/calc/encode.html
- http://webnet77.com/cgi-bin/helpers/base-64.pl
-
http://www.opinionatedgeek.com/dotnet/tools/Base64Decode/Default.as
px
- http://www.motobit.com/util/base64-decoder-encoder.asp
- etc.
The result : gazebruh
————————
level 10 http://www.hackertest.net/gazebruh.php
Password:shackithalf
From— view page source
<td width=—100%—><font size=—2? face=—Tahoma—><i>S</i>treet Korner
is your
own online <i>hack</i>er simulation. W<i>it</i>h over 100 levels
that require
different skills to get to another step of the game, this new
real-life immitation will <i>h</i>elp you advance your security
knowledge.
This site will help you improve your JavaScript, PHP, HTML and
graphic thinking in <i>a</i> fun way that will entertain any
visitor! Have
a spare minute? Log on! Each level wil<i>l</i> provide you with a
new,
harder clue to find a way to get to another level. Only <i>f</i>ew
people
have gotten to the end of the maze— Will you crack this
site?</font></td>
The italic tag S-hack-it-h-a-l-f = shackithalf
————————
level 11 http://www.hackertest.net/gazebruh.php
From— hidden text, using Ctrl+A you can find clue —Level 11:
rofl.php—
————————
level 12 http://www.hackertest.net/rofl.php
From— view page source
<meta name=—robots— content=—goto: clipart.php—>
————————
level 13 http://www.hackertest.net/clipart.php
From— view page source
<meta name=—clue— content=—use graphic software—>
.
.
.
<img border=—0? src=—images/logo.jpg— width=—300?
height=—145?></td>
.
.
.
View http://www.hackertest.net/images/logo.jpg, and zoom it, you
can find puta.php
View page source http://www.hackertest.net/puta.php
<meta name=—clue— content=—use graphic software—>
.
.
.
<td width=—100%— height=—267? valign=—top—><b><font size=—7?
face=—Arial—><img src=—images/lvl13.gif—></font></b><p>&nbsp;</p>
.
.
.
View http://www.hackertest.net/images/lvl13.gif, and zoom it, you
can find 4.xml
In http://www.hackertest.net/4.xml, you can find 4xml.php
————————
level 14 http://www.hackertest.net/4xml.php
From— view page source
<meta name=—clue— content=—use graphic software—>
.
.
.
<img src=—images/bidvertiser.gif—>
.
.
.
View http://www.hackertest.net/images/bidvertiser.gif using GIMP,
you can find text TOTALLY!!! php
————————
level 15 http://www.hackertest.net/totally.php
From— Since you still have your photoshop open, check this out:
images/pass2level16.jpg << good luck with it!
Open http://www.hackertest.net/images/pass2level16.jpg, nothing =>
unavailable
————————
level 16 http://www.hackertest.net/unavailable/
From— view page source
UNAVAILABLE
<!— level 17: /images— —>
Visit http://www.hackertest.net/unavailable/images
View page source
<body background=—bg.jpg—>
Download bp.jpg, open with text editor, you can find Ducky.php
————————
level 17 http://www.hackertest.net/unavailable/Ducky.php
Password: your IP address
You can find your IP address, using online tool, such as:
- http://whatismyipaddress.com/
- http://www.ip2location.com/
- etc.
After login then view page source—
<b>Warning</b>: Cannot modify header information — headers already
sent by (output started at
/home/hackert/public_html/unavailable/Ducky.php:11) in
<b>/home/hackert/public_html/unavailable/Ducky.php</b> on line
<b>58</b><br />
../level18.shtml
.
.
.
————————
level 18 http://www.hackertest.net/level18.shtml
Scroll to bottom of page, you can find —
$pass) { $errormsg=$msg; show_login_page($errormsg); exit(); } else
{ setmycookie(); } } else { if ($_COOKIE[$cookiename]<>$pass) {
show_login_page($errormsg); exit(); } else { // do nothing } } ?>
/level19.shtml << told ya to think like a n00b!!!
————————
level 19 http://www.hackertest.net/level19.shtml
From— view page source
.
.
.
<td width=—100%— background=—images/level20_pass.gif—>
.
.
.
View http://www.hackertest.net/images/level20_pass.gif using GIMP,
you can find text —gazebruh2?
————————
level 20 http://www.hackertest.net/gazebruh2.htm
In the page you can see
1. hex.gif contain:
—436f6e67726174756c6174696f6e732532312b596f752b686176652b7061737365
642b746f2b6c6576656c2b31302e2b486572652532432b7468696e67732b6265636
f6d652b6d7563682b6d6f72652b6469666663756c742b2533422d2532395b486f70
652b796f752b6765742b7468726f7567682532312b456e6a6f792e—
if you decode it, the message —Congratulations%
21+You+have+passed+to+level+10.+Here%
2C+things+become+much+more+diffcult+%3B-%29[Hope+you+get+through%
21+Enjoy.—
2. some character:
VldwSk5Gb3lVa2hQUjJSclRUSlJlbFJITlU5TlIwNTBWbTE0YTFJelVqSlpNakF4WWt
kT2NFNVlWbUZYUmtZeVYycEtTbG95U25SUFZFNU5Xbm93T1QwOT09
if you decode it (base 64) 4 times, the message —Go to
www.streetkorner.net/gb now.”
3. using Ctrl+A, you find ^^^^^^^^^^ Change domain, add ”22332? at
the end, reach it and then get hold of ” ^^^^^^^^^^
So my experiment end at http://www.hackertest.net/gb22332/ to reach
level 21, if it is exists :-)

More Related Content

What's hot

Hacking mail server
Hacking mail serverHacking mail server
Hacking mail server
FREDDY KEKANA
 
OpenID Security
OpenID SecurityOpenID Security
OpenID Security
eugenet
 
Client sidesec 2013-intro
Client sidesec 2013-introClient sidesec 2013-intro
Client sidesec 2013-intro
Tal Be'ery
 
Php 3 1
Php 3 1Php 3 1
Ethical hacking
Ethical hackingEthical hacking
Ethical hacking
Hritik Vijay
 
Client sidesec 2013 - non js
Client sidesec 2013 - non jsClient sidesec 2013 - non js
Client sidesec 2013 - non js
Tal Be'ery
 
Eeconf - EEeeeek - the most hacked website i've ever seen
Eeconf - EEeeeek - the most hacked website i've ever seenEeconf - EEeeeek - the most hacked website i've ever seen
Eeconf - EEeeeek - the most hacked website i've ever seen
Doug Black
 

What's hot (7)

Hacking mail server
Hacking mail serverHacking mail server
Hacking mail server
 
OpenID Security
OpenID SecurityOpenID Security
OpenID Security
 
Client sidesec 2013-intro
Client sidesec 2013-introClient sidesec 2013-intro
Client sidesec 2013-intro
 
Php 3 1
Php 3 1Php 3 1
Php 3 1
 
Ethical hacking
Ethical hackingEthical hacking
Ethical hacking
 
Client sidesec 2013 - non js
Client sidesec 2013 - non jsClient sidesec 2013 - non js
Client sidesec 2013 - non js
 
Eeconf - EEeeeek - the most hacked website i've ever seen
Eeconf - EEeeeek - the most hacked website i've ever seenEeconf - EEeeeek - the most hacked website i've ever seen
Eeconf - EEeeeek - the most hacked website i've ever seen
 

Viewers also liked

Parque de Cabárceno Cantabria
Parque de Cabárceno CantabriaParque de Cabárceno Cantabria
Parque de Cabárceno Cantabria
pocholinyabe
 
沒有人能讓我們痛苦
沒有人能讓我們痛苦沒有人能讓我們痛苦
沒有人能讓我們痛苦
He Yan
 
影响一生的哲理故事2
影响一生的哲理故事2影响一生的哲理故事2
影响一生的哲理故事2
He Yan
 
钱塘观潮:百余人被卷
钱塘观潮:百余人被卷钱塘观潮:百余人被卷
钱塘观潮:百余人被卷LINWEIYUAN
 
Camino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de CompostelaCamino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de Compostela
Carlos Colomer
 
New York city
New York cityNew York city
New York city
Carlos Colomer
 
Bilbao, Vizcaya
Bilbao, VizcayaBilbao, Vizcaya
Bilbao, Vizcaya
Carlos Colomer
 
Barcelona, Passeig de Gràcia
Barcelona, Passeig de GràciaBarcelona, Passeig de Gràcia
Barcelona, Passeig de Gràcia
Carlos Colomer
 
Parque Natural de Cabárceno
Parque Natural de CabárcenoParque Natural de Cabárceno
Parque Natural de Cabárceno
ClubCantabriaInfinita
 
Doctor zivago1
Doctor zivago1Doctor zivago1
Doctor zivago1
cristiandadypatria
 
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 232015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
vinhbinh2010
 
低潮時享受學習
低潮時享受學習低潮時享受學習
低潮時享受學習
He Yan
 
Littoral breton1
Littoral breton1Littoral breton1
Littoral breton1
Balcon60
 
Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)
maditabalnco
 
Noruega fiordos turismo extremo aventura
Noruega fiordos turismo extremo aventuraNoruega fiordos turismo extremo aventura
Noruega fiordos turismo extremo aventura
Promociones Mexico Marketing
 
El paisajista Martín Rico
El paisajista Martín RicoEl paisajista Martín Rico
El paisajista Martín Rico
Pilar Martin Espinosa
 
Las playas en China
Las playas en ChinaLas playas en China
Las playas en China
mocanos net
 
Lierganes, Cantabria
Lierganes, CantabriaLierganes, Cantabria
Lierganes, Cantabria
Carlos Colomer
 
Parque Cabarceno, Cantabria
Parque Cabarceno, CantabriaParque Cabarceno, Cantabria
Parque Cabarceno, Cantabria
Carlos Colomer
 

Viewers also liked (20)

Parque de Cabárceno Cantabria
Parque de Cabárceno CantabriaParque de Cabárceno Cantabria
Parque de Cabárceno Cantabria
 
沒有人能讓我們痛苦
沒有人能讓我們痛苦沒有人能讓我們痛苦
沒有人能讓我們痛苦
 
影响一生的哲理故事2
影响一生的哲理故事2影响一生的哲理故事2
影响一生的哲理故事2
 
钱塘观潮:百余人被卷
钱塘观潮:百余人被卷钱塘观潮:百余人被卷
钱塘观潮:百余人被卷
 
Camino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de CompostelaCamino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de Compostela
 
New York city
New York cityNew York city
New York city
 
Bilbao, Vizcaya
Bilbao, VizcayaBilbao, Vizcaya
Bilbao, Vizcaya
 
Barcelona, Passeig de Gràcia
Barcelona, Passeig de GràciaBarcelona, Passeig de Gràcia
Barcelona, Passeig de Gràcia
 
Emma maersk big bateau ha
Emma maersk big bateau haEmma maersk big bateau ha
Emma maersk big bateau ha
 
Parque Natural de Cabárceno
Parque Natural de CabárcenoParque Natural de Cabárceno
Parque Natural de Cabárceno
 
Doctor zivago1
Doctor zivago1Doctor zivago1
Doctor zivago1
 
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 232015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
 
低潮時享受學習
低潮時享受學習低潮時享受學習
低潮時享受學習
 
Littoral breton1
Littoral breton1Littoral breton1
Littoral breton1
 
Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)
 
Noruega fiordos turismo extremo aventura
Noruega fiordos turismo extremo aventuraNoruega fiordos turismo extremo aventura
Noruega fiordos turismo extremo aventura
 
El paisajista Martín Rico
El paisajista Martín RicoEl paisajista Martín Rico
El paisajista Martín Rico
 
Las playas en China
Las playas en ChinaLas playas en China
Las playas en China
 
Lierganes, Cantabria
Lierganes, CantabriaLierganes, Cantabria
Lierganes, Cantabria
 
Parque Cabarceno, Cantabria
Parque Cabarceno, CantabriaParque Cabarceno, Cantabria
Parque Cabarceno, Cantabria
 

Similar to Hackertest.net (done)

Flash Widget Tutorial
Flash Widget TutorialFlash Widget Tutorial
Flash Widget Tutorial
hussulinux
 
Website Hacking Oldie
Website Hacking OldieWebsite Hacking Oldie
Website Hacking Oldie
Aung Khant
 
Behat - Drupal South 2018
Behat  - Drupal South 2018Behat  - Drupal South 2018
Behat - Drupal South 2018
Berend de Boer
 
Seven Reasons for Code Bloat
Seven Reasons for Code BloatSeven Reasons for Code Bloat
Seven Reasons for Code Bloat
Christian Heilmann
 
Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017
Christian Heilmann
 
Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2
devninjabr
 
Malware analysis
Malware analysisMalware analysis
Malware analysis
Den Iir
 
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
William Chong
 
TryHackMe Overpass Writeup walkthrough.pdf
TryHackMe Overpass Writeup walkthrough.pdfTryHackMe Overpass Writeup walkthrough.pdf
TryHackMe Overpass Writeup walkthrough.pdf
mysticraganork66
 
AFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack EncoreAFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack Encore
Engineor
 
Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Damien Carbery
 
Kioptrix 2014 5
Kioptrix 2014 5Kioptrix 2014 5
Kioptrix 2014 5
Jayesh Patel
 
Ruby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start UpRuby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start Up
Prateek Saxena
 
PHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source ProjectPHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source Project
xsist10
 
Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)
Peter Sabev
 
What Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 AppsWhat Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 Apps
Doris Chen
 
Building a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profitBuilding a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profit
Ben Limmer
 
7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First Time7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First Time
Dmitry Mayorov
 
Intro to Php Security
Intro to Php SecurityIntro to Php Security
Intro to Php Security
Dave Ross
 
Client side
Client sideClient side

Similar to Hackertest.net (done) (20)

Flash Widget Tutorial
Flash Widget TutorialFlash Widget Tutorial
Flash Widget Tutorial
 
Website Hacking Oldie
Website Hacking OldieWebsite Hacking Oldie
Website Hacking Oldie
 
Behat - Drupal South 2018
Behat  - Drupal South 2018Behat  - Drupal South 2018
Behat - Drupal South 2018
 
Seven Reasons for Code Bloat
Seven Reasons for Code BloatSeven Reasons for Code Bloat
Seven Reasons for Code Bloat
 
Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017
 
Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2
 
Malware analysis
Malware analysisMalware analysis
Malware analysis
 
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
 
TryHackMe Overpass Writeup walkthrough.pdf
TryHackMe Overpass Writeup walkthrough.pdfTryHackMe Overpass Writeup walkthrough.pdf
TryHackMe Overpass Writeup walkthrough.pdf
 
AFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack EncoreAFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack Encore
 
Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)
 
Kioptrix 2014 5
Kioptrix 2014 5Kioptrix 2014 5
Kioptrix 2014 5
 
Ruby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start UpRuby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start Up
 
PHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source ProjectPHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source Project
 
Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)
 
What Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 AppsWhat Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 Apps
 
Building a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profitBuilding a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profit
 
7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First Time7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First Time
 
Intro to Php Security
Intro to Php SecurityIntro to Php Security
Intro to Php Security
 
Client side
Client sideClient side
Client side
 

More from Andi Master Hiyperterminal

Windows shutdown virus source code c++
Windows shutdown virus source code c++Windows shutdown virus source code c++
Windows shutdown virus source code c++
Andi Master Hiyperterminal
 
Program investasi (MUST READ)
Program investasi (MUST READ)Program investasi (MUST READ)
Program investasi (MUST READ)
Andi Master Hiyperterminal
 
Fiber optik
Fiber optikFiber optik
Dasar plc ( Ladder Language )
Dasar plc ( Ladder Language )Dasar plc ( Ladder Language )
Dasar plc ( Ladder Language )
Andi Master Hiyperterminal
 
Cover
CoverCover
Binahong
BinahongBinahong
Contoh Jual beli lelang
Contoh Jual beli lelangContoh Jual beli lelang
Contoh Jual beli lelang
Andi Master Hiyperterminal
 

More from Andi Master Hiyperterminal (7)

Windows shutdown virus source code c++
Windows shutdown virus source code c++Windows shutdown virus source code c++
Windows shutdown virus source code c++
 
Program investasi (MUST READ)
Program investasi (MUST READ)Program investasi (MUST READ)
Program investasi (MUST READ)
 
Fiber optik
Fiber optikFiber optik
Fiber optik
 
Dasar plc ( Ladder Language )
Dasar plc ( Ladder Language )Dasar plc ( Ladder Language )
Dasar plc ( Ladder Language )
 
Cover
CoverCover
Cover
 
Binahong
BinahongBinahong
Binahong
 
Contoh Jual beli lelang
Contoh Jual beli lelangContoh Jual beli lelang
Contoh Jual beli lelang
 

Recently uploaded

Pharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brubPharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brub
danielkiash986
 
HYPERTENSION - SLIDE SHARE PRESENTATION.
HYPERTENSION - SLIDE SHARE PRESENTATION.HYPERTENSION - SLIDE SHARE PRESENTATION.
HYPERTENSION - SLIDE SHARE PRESENTATION.
deepaannamalai16
 
Creative Restart 2024: Mike Martin - Finding a way around “no”
Creative Restart 2024: Mike Martin - Finding a way around “no”Creative Restart 2024: Mike Martin - Finding a way around “no”
Creative Restart 2024: Mike Martin - Finding a way around “no”
Taste
 
220711130083 SUBHASHREE RAKSHIT Internet resources for social science
220711130083 SUBHASHREE RAKSHIT  Internet resources for social science220711130083 SUBHASHREE RAKSHIT  Internet resources for social science
220711130083 SUBHASHREE RAKSHIT Internet resources for social science
Kalna College
 
Accounting for Restricted Grants When and How To Record Properly
Accounting for Restricted Grants  When and How To Record ProperlyAccounting for Restricted Grants  When and How To Record Properly
Accounting for Restricted Grants When and How To Record Properly
TechSoup
 
Diversity Quiz Prelims by Quiz Club, IIT Kanpur
Diversity Quiz Prelims by Quiz Club, IIT KanpurDiversity Quiz Prelims by Quiz Club, IIT Kanpur
Diversity Quiz Prelims by Quiz Club, IIT Kanpur
Quiz Club IIT Kanpur
 
INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION
INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION
INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION
ShwetaGawande8
 
KHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGH
KHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGHKHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGH
KHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGH
shreyassri1208
 
Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10
nitinpv4ai
 
adjectives.ppt for class 1 to 6, grammar
adjectives.ppt for class 1 to 6, grammaradjectives.ppt for class 1 to 6, grammar
adjectives.ppt for class 1 to 6, grammar
7DFarhanaMohammed
 
CIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdfCIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdf
blueshagoo1
 
Bonku-Babus-Friend by Sathyajith Ray (9)
Bonku-Babus-Friend by Sathyajith Ray  (9)Bonku-Babus-Friend by Sathyajith Ray  (9)
Bonku-Babus-Friend by Sathyajith Ray (9)
nitinpv4ai
 
Skimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S EliotSkimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S Eliot
nitinpv4ai
 
How to Download & Install Module From the Odoo App Store in Odoo 17
How to Download & Install Module From the Odoo App Store in Odoo 17How to Download & Install Module From the Odoo App Store in Odoo 17
How to Download & Install Module From the Odoo App Store in Odoo 17
Celine George
 
CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...
CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...
CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...
Nguyen Thanh Tu Collection
 
CapTechTalks Webinar Slides June 2024 Donovan Wright.pptx
CapTechTalks Webinar Slides June 2024 Donovan Wright.pptxCapTechTalks Webinar Slides June 2024 Donovan Wright.pptx
CapTechTalks Webinar Slides June 2024 Donovan Wright.pptx
CapitolTechU
 
SWOT analysis in the project Keeping the Memory @live.pptx
SWOT analysis in the project Keeping the Memory @live.pptxSWOT analysis in the project Keeping the Memory @live.pptx
SWOT analysis in the project Keeping the Memory @live.pptx
zuzanka
 
A Visual Guide to 1 Samuel | A Tale of Two Hearts
A Visual Guide to 1 Samuel | A Tale of Two HeartsA Visual Guide to 1 Samuel | A Tale of Two Hearts
A Visual Guide to 1 Samuel | A Tale of Two Hearts
Steve Thomason
 
Observational Learning
Observational Learning Observational Learning
Observational Learning
sanamushtaq922
 
مصحف القراءات العشر أعد أحرف الخلاف سمير بسيوني.pdf
مصحف القراءات العشر   أعد أحرف الخلاف سمير بسيوني.pdfمصحف القراءات العشر   أعد أحرف الخلاف سمير بسيوني.pdf
مصحف القراءات العشر أعد أحرف الخلاف سمير بسيوني.pdf
سمير بسيوني
 

Recently uploaded (20)

Pharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brubPharmaceutics Pharmaceuticals best of brub
Pharmaceutics Pharmaceuticals best of brub
 
HYPERTENSION - SLIDE SHARE PRESENTATION.
HYPERTENSION - SLIDE SHARE PRESENTATION.HYPERTENSION - SLIDE SHARE PRESENTATION.
HYPERTENSION - SLIDE SHARE PRESENTATION.
 
Creative Restart 2024: Mike Martin - Finding a way around “no”
Creative Restart 2024: Mike Martin - Finding a way around “no”Creative Restart 2024: Mike Martin - Finding a way around “no”
Creative Restart 2024: Mike Martin - Finding a way around “no”
 
220711130083 SUBHASHREE RAKSHIT Internet resources for social science
220711130083 SUBHASHREE RAKSHIT  Internet resources for social science220711130083 SUBHASHREE RAKSHIT  Internet resources for social science
220711130083 SUBHASHREE RAKSHIT Internet resources for social science
 
Accounting for Restricted Grants When and How To Record Properly
Accounting for Restricted Grants  When and How To Record ProperlyAccounting for Restricted Grants  When and How To Record Properly
Accounting for Restricted Grants When and How To Record Properly
 
Diversity Quiz Prelims by Quiz Club, IIT Kanpur
Diversity Quiz Prelims by Quiz Club, IIT KanpurDiversity Quiz Prelims by Quiz Club, IIT Kanpur
Diversity Quiz Prelims by Quiz Club, IIT Kanpur
 
INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION
INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION
INTRODUCTION TO HOSPITALS & AND ITS ORGANIZATION
 
KHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGH
KHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGHKHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGH
KHUSWANT SINGH.pptx ALL YOU NEED TO KNOW ABOUT KHUSHWANT SINGH
 
Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10Haunted Houses by H W Longfellow for class 10
Haunted Houses by H W Longfellow for class 10
 
adjectives.ppt for class 1 to 6, grammar
adjectives.ppt for class 1 to 6, grammaradjectives.ppt for class 1 to 6, grammar
adjectives.ppt for class 1 to 6, grammar
 
CIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdfCIS 4200-02 Group 1 Final Project Report (1).pdf
CIS 4200-02 Group 1 Final Project Report (1).pdf
 
Bonku-Babus-Friend by Sathyajith Ray (9)
Bonku-Babus-Friend by Sathyajith Ray  (9)Bonku-Babus-Friend by Sathyajith Ray  (9)
Bonku-Babus-Friend by Sathyajith Ray (9)
 
Skimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S EliotSkimbleshanks-The-Railway-Cat by T S Eliot
Skimbleshanks-The-Railway-Cat by T S Eliot
 
How to Download & Install Module From the Odoo App Store in Odoo 17
How to Download & Install Module From the Odoo App Store in Odoo 17How to Download & Install Module From the Odoo App Store in Odoo 17
How to Download & Install Module From the Odoo App Store in Odoo 17
 
CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...
CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...
CHUYÊN ĐỀ ÔN TẬP VÀ PHÁT TRIỂN CÂU HỎI TRONG ĐỀ MINH HỌA THI TỐT NGHIỆP THPT ...
 
CapTechTalks Webinar Slides June 2024 Donovan Wright.pptx
CapTechTalks Webinar Slides June 2024 Donovan Wright.pptxCapTechTalks Webinar Slides June 2024 Donovan Wright.pptx
CapTechTalks Webinar Slides June 2024 Donovan Wright.pptx
 
SWOT analysis in the project Keeping the Memory @live.pptx
SWOT analysis in the project Keeping the Memory @live.pptxSWOT analysis in the project Keeping the Memory @live.pptx
SWOT analysis in the project Keeping the Memory @live.pptx
 
A Visual Guide to 1 Samuel | A Tale of Two Hearts
A Visual Guide to 1 Samuel | A Tale of Two HeartsA Visual Guide to 1 Samuel | A Tale of Two Hearts
A Visual Guide to 1 Samuel | A Tale of Two Hearts
 
Observational Learning
Observational Learning Observational Learning
Observational Learning
 
مصحف القراءات العشر أعد أحرف الخلاف سمير بسيوني.pdf
مصحف القراءات العشر   أعد أحرف الخلاف سمير بسيوني.pdfمصحف القراءات العشر   أعد أحرف الخلاف سمير بسيوني.pdf
مصحف القراءات العشر أعد أحرف الخلاف سمير بسيوني.pdf
 

Hackertest.net (done)

  • 1. I hear about this site www.hackertest.net from my friend, this site have puzzle to solve to enter to the next level. So this is the answer of level i pass, but i stuck at level 20. Is there level 21? The tool to pass all level only text editor and GIMP, maybe above level 20 are the real hacker test :-) ———————— level 1 http://www.hackertest.net/ Password:null From— view page source <script language=JavaScript> { var a=—null—; function check() { if (document.a.c.value == a) { document.location.href=—http://www.hackertest.net/—+document.a.c.va lue+—.htm—; . . . ———————— level 2 http://www.hackertest.net/null.htm Password:l3l From— view page source <script language=—JavaScript— type=—text/javascript—> var pass, i; pass=prompt(—Please enter password!—,—"); if (pass==—l3l—) { window.location.href=—http://www.hackertest.net/—+pass+—.htm—; . . . ———————— level 3 http://www.hackertest.net/l3l.htm Password:#000000 From— view page source <body onload=javascript:pass(); alink=—#000000?> <SCRIPT LANGUAGE=—JavaScript—> function pass() { var pw, Eingabe; pw=window.document.alinkColor; Eingabe=prompt (—Please enter password—); if (Eingabe==pw) { window.location.href=String.fromCharCode(97,98,114,97,101)+—.htm—; . . . ———————— level 4 http://www.hackertest.net/abrae.htm ————————
  • 2. level 5 http://www.hackertest.net/sdrawkcab.htm Password:SAvE-as hELpS a lOt From— view page source <script language=JavaScript> var pass, i; pass=prompt(—Password: —,—"); if (pass==—SAvE-as hELpS a lOt—) { window.location.href=—save_as.htm—; . . . ———————— level 6 http://www.hackertest.net/save_as.htm Password:hackertestz From— view page source <SCRIPT SRC=—psswd.js— LANGUAGE=—JavaScript— type=—text/javascript—></script> Open http://www.hackertest.net/psswd.js <!— var pass; pass=prompt(—Password:—,—"); if (pass==—hackertestz—) { window.location=—included.htm—; . . . ———————— level 7 http://www.hackertest.net/included.htm Username:phat Password:jerkybar3 From— view page source <body bg=—images/included.gif—> Open http://www.hackertest.net/images/included.gif ———————— level 8 http://www.hackertest.net/pwd2.php Username:zadmin Password:stebbins From— view page source <form action=phat.php method=post> Open http://www.hackertest.net/phat.php <BODY BGCOLOR=—ffffff— TEXT=—000000? BG=—images/phat.gif—> Open http://www.hackertest.net/images/phat.gif the result is —Look for a .PhotoShopDocument!— => PSD Download http://www.hackertest.net/images/phat.psd Open phat.psd using photoshop or gimp
  • 3. Hide another layers, only show Background and DEMO DEMO DEMO DEMO ———————— level 9 http://www.hackertest.net/phat.php Form— view page source <!—————————————————————- —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————— Password: Z2F6ZWJydWg= add a page extention to that ———————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————— > Decode Z2F6ZWJydWg= (base 64 to text), using online tools like: - http://ostermiller.org/calc/encode.html - http://webnet77.com/cgi-bin/helpers/base-64.pl - http://www.opinionatedgeek.com/dotnet/tools/Base64Decode/Default.as px - http://www.motobit.com/util/base64-decoder-encoder.asp - etc. The result : gazebruh ———————— level 10 http://www.hackertest.net/gazebruh.php Password:shackithalf From— view page source <td width=—100%—><font size=—2? face=—Tahoma—><i>S</i>treet Korner is your own online <i>hack</i>er simulation. W<i>it</i>h over 100 levels that require
  • 4. different skills to get to another step of the game, this new real-life immitation will <i>h</i>elp you advance your security knowledge. This site will help you improve your JavaScript, PHP, HTML and graphic thinking in <i>a</i> fun way that will entertain any visitor! Have a spare minute? Log on! Each level wil<i>l</i> provide you with a new, harder clue to find a way to get to another level. Only <i>f</i>ew people have gotten to the end of the maze— Will you crack this site?</font></td> The italic tag S-hack-it-h-a-l-f = shackithalf ———————— level 11 http://www.hackertest.net/gazebruh.php From— hidden text, using Ctrl+A you can find clue —Level 11: rofl.php— ———————— level 12 http://www.hackertest.net/rofl.php From— view page source <meta name=—robots— content=—goto: clipart.php—> ———————— level 13 http://www.hackertest.net/clipart.php From— view page source <meta name=—clue— content=—use graphic software—> . . . <img border=—0? src=—images/logo.jpg— width=—300? height=—145?></td> . . . View http://www.hackertest.net/images/logo.jpg, and zoom it, you can find puta.php View page source http://www.hackertest.net/puta.php <meta name=—clue— content=—use graphic software—> . . . <td width=—100%— height=—267? valign=—top—><b><font size=—7? face=—Arial—><img src=—images/lvl13.gif—></font></b><p>&nbsp;</p> . . . View http://www.hackertest.net/images/lvl13.gif, and zoom it, you
  • 5. can find 4.xml In http://www.hackertest.net/4.xml, you can find 4xml.php ———————— level 14 http://www.hackertest.net/4xml.php From— view page source <meta name=—clue— content=—use graphic software—> . . . <img src=—images/bidvertiser.gif—> . . . View http://www.hackertest.net/images/bidvertiser.gif using GIMP, you can find text TOTALLY!!! php ———————— level 15 http://www.hackertest.net/totally.php From— Since you still have your photoshop open, check this out: images/pass2level16.jpg << good luck with it! Open http://www.hackertest.net/images/pass2level16.jpg, nothing => unavailable ———————— level 16 http://www.hackertest.net/unavailable/ From— view page source UNAVAILABLE <!— level 17: /images— —> Visit http://www.hackertest.net/unavailable/images View page source <body background=—bg.jpg—> Download bp.jpg, open with text editor, you can find Ducky.php ———————— level 17 http://www.hackertest.net/unavailable/Ducky.php Password: your IP address You can find your IP address, using online tool, such as: - http://whatismyipaddress.com/ - http://www.ip2location.com/ - etc. After login then view page source— <b>Warning</b>: Cannot modify header information — headers already sent by (output started at /home/hackert/public_html/unavailable/Ducky.php:11) in <b>/home/hackert/public_html/unavailable/Ducky.php</b> on line
  • 6. <b>58</b><br /> ../level18.shtml . . . ———————— level 18 http://www.hackertest.net/level18.shtml Scroll to bottom of page, you can find — $pass) { $errormsg=$msg; show_login_page($errormsg); exit(); } else { setmycookie(); } } else { if ($_COOKIE[$cookiename]<>$pass) { show_login_page($errormsg); exit(); } else { // do nothing } } ?> /level19.shtml << told ya to think like a n00b!!! ———————— level 19 http://www.hackertest.net/level19.shtml From— view page source . . . <td width=—100%— background=—images/level20_pass.gif—> . . . View http://www.hackertest.net/images/level20_pass.gif using GIMP, you can find text —gazebruh2? ———————— level 20 http://www.hackertest.net/gazebruh2.htm In the page you can see 1. hex.gif contain: —436f6e67726174756c6174696f6e732532312b596f752b686176652b7061737365 642b746f2b6c6576656c2b31302e2b486572652532432b7468696e67732b6265636 f6d652b6d7563682b6d6f72652b6469666663756c742b2533422d2532395b486f70 652b796f752b6765742b7468726f7567682532312b456e6a6f792e— if you decode it, the message —Congratulations% 21+You+have+passed+to+level+10.+Here% 2C+things+become+much+more+diffcult+%3B-%29[Hope+you+get+through% 21+Enjoy.— 2. some character: VldwSk5Gb3lVa2hQUjJSclRUSlJlbFJITlU5TlIwNTBWbTE0YTFJelVqSlpNakF4WWt kT2NFNVlWbUZYUmtZeVYycEtTbG95U25SUFZFNU5Xbm93T1QwOT09 if you decode it (base 64) 4 times, the message —Go to
  • 7. www.streetkorner.net/gb now.” 3. using Ctrl+A, you find ^^^^^^^^^^ Change domain, add ”22332? at the end, reach it and then get hold of ” ^^^^^^^^^^ So my experiment end at http://www.hackertest.net/gb22332/ to reach level 21, if it is exists :-)