• Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office
AnonyViet - English Version
  • Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office
No Result
View All Result
  • Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office
No Result
View All Result
AnonyViet - English Version
No Result
View All Result

Attack the Bootrom system of the net shop

AnonyViet by AnonyViet
February 1, 2023
in Security
0

Today we will try to learn about how to hijack Server Bootrom, cash registers, Routers to redirect DNS, install spyware by TPress the Bootrom system of the net shop

Join the channel Telegram of the AnonyViet 👉 Link 👈

Tools needed:

  • 1 DDNS or No-ip account (Articles about DDNS, No-ip You can find a lot of tutorials on the website DDNS, NO-IP ).
  • Nmap (Download Nmap)
  • 1 thinking investment

Let’s start practicing:

Step 1:

First, you need to determine the IP range allocated to the workstation and its Gateway. To determine the IP range for workstations and Router’s Gateway, go to cmd and type the command ipconfig then Enter

first

IPv4 Address is the IP of my machine: 192.168.1.108

Default Gateway of the system is: 192.168.1.1

Usually, the focus will divide the system into 2 IP ranges

  • 1 series for Bootrom machines (192.168.1.2 -> 192.168.1.99)
  • 1 array of workstations. (192.168.1.100 -> 254)

Step 2:

Install Nmap software. Just click Next and you’re done.

After the installation is complete, open Nmap and scan the IP ranges and ports of the net shop

  • In the Target section: is the network range to be scanned: 192.168.1.0/24.
  • Under Profile: select Intense Scan, all TCP Port.
  • Then click Scan

2

Wait for the results to appear (a bit long)

3

In the result we have 10 hosts that are online:

  • 1 host can be Linux,
  • 8 hosts are Windows
  • What is an unknown host?

Shown above Getway of Router is 192.168.1.1, in the picture after scanning we see that it is a Linux host. Maybe this host is the Router because usually Router devices will run on Linux source code

In the results of Nmap, we see that the Router is opening 2 ports, 53 and 80 (web port).

We try to enter a web browser and type the router’s IP: 192.168.1.1

4

The user and password are often changed by the net shop owner because it will be troublesome if they do not have IT knowledge, and when the technical staff comes to handle the problem, it will be more complicated. So they usually leave the default user/password

Now we try user: admin, pass: admin.

Wow, so you can access the router’s configuration page. They use TotoLink equipment

5

We are already half way here. Should not continue at the net shop, now find a way to go home and still access this Router. So we use the DDNS function to assign the domain name to the static ip of the net shop through the Router

This is how I can remotely remote into the Router. Go to menu: Management -> DDNS.

Select No-IP, then type the domain name registered on No-ip. Login information then save and reboot Router

6

Finished 1 child: 192.168.1.1

The next time we see what is the IP 192.168.1.2 of the net shop? (it runs Windows operating system, open port 3389 (port remote desktop) So we can remote computer 192.168.1.2 according to speculation this will be Bootroom server

7

Try Remote Desktop.

  • Into the run type command mstsc.
  • Enter Computer: 192.168.1.2

A dialog box asking for a Remote account appears

8
Now we have to use the guessing method, usually simple passwords such as the owner’s name, password, 123456, 123@abc … Good luck

If successful, the image below will appear

9 ten

Remote can enter Bootrom, what to do next is up to you!

(Author: Darkcode – Shellsec)

The article achieved: 5/5 – (100 votes)

Tags: AttackBootromNETshopsystem
Previous Post

[Godot RPG] #3: Attack & Object

Next Post

How To Create Newest Free Spotify Premium Account 2020

AnonyViet

AnonyViet

Related Posts

How to use hackers use Splitfus to execute PowerShell malicious code
Security

How to use hackers use Splitfus to execute PowerShell malicious code

July 20, 2025
How to implement Shellcode Injection attack technique with Autoit
Security

How to implement Shellcode Injection attack technique with Autoit

March 14, 2025
How to exploit the holy hole of Hijacking on Windows
Security

How to exploit the holy hole of Hijacking on Windows

March 8, 2025
Hamamal: Shellcode execution technique from afar to overcome Antivirus's discovery
Security

Hamamal: Shellcode execution technique from afar to overcome Antivirus's discovery

February 10, 2025
Snov.io Email Finder: Search emails with only company name/domain name/LinkedIn profile
Security

Snov.io Email Finder: Search emails with only company name/domain name/LinkedIn profile

December 14, 2024
Capsolver: Automatic solution solution for business
Security

Capsolver: Automatic solution solution for business

December 12, 2024
Next Post
How To Create Newest Free Spotify Premium Account 2020

How To Create Newest Free Spotify Premium Account 2020

0 0 votes
Article Rating
Subscribe
Login
Notify of
guest

guest

0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Recent News

How to add application to your favorite bar

How to add application to your favorite bar

August 14, 2025
Wowhay.com – The door opens the world of modern knowledge and network culture

Wowhay.com – The door opens the world of modern knowledge and network culture

August 13, 2025
Instructions on how to fix Screen Time Limited Reached on RoBlox

Instructions on how to fix Screen Time Limited Reached on RoBlox

August 13, 2025
How to install GPT-suns on who do not need the Internet

How to install GPT-suns on who do not need the Internet

August 12, 2025
How to add application to your favorite bar

How to add application to your favorite bar

August 14, 2025
Wowhay.com – The door opens the world of modern knowledge and network culture

Wowhay.com – The door opens the world of modern knowledge and network culture

August 13, 2025
Instructions on how to fix Screen Time Limited Reached on RoBlox

Instructions on how to fix Screen Time Limited Reached on RoBlox

August 13, 2025
AnonyViet - English Version

AnonyViet

AnonyViet is a website share knowledge that you have never learned in school!

We are ready to welcome your comments, as well as your articles sent to AnonyViet.

Follow Us

Contact:

Email: anonyviet.com[@]gmail.com

Main Website: https://anonyviet.com

Recent News

How to add application to your favorite bar

How to add application to your favorite bar

August 14, 2025
Wowhay.com – The door opens the world of modern knowledge and network culture

Wowhay.com – The door opens the world of modern knowledge and network culture

August 13, 2025
  • Home
  • Home 2
  • Home 3
  • Home 4
  • Home 5
  • Home 6
  • Next Dest Page
  • Sample Page

©2024 AnonyVietFor Knowledge kqxs hôm nay xem phim miễn phí mm88 8XBET mm88 trang chủ new88

No Result
View All Result
  • Home
  • News
  • Software
  • Knowledge
  • MMO
  • Tips
  • Security
  • Network
  • Office

©2024 AnonyVietFor Knowledge kqxs hôm nay xem phim miễn phí mm88 8XBET mm88 trang chủ new88

wpDiscuz
0
0
Would love your thoughts, please comment.x
()
x
| Reply