If you are a long term user of BSNL broadband then you all must have tried to hack bsnl accounts many a times by now. In this post I am only going to repeat the famous ip scanning trick, but I am adding few updates from my own experience.
The IP scanning trick works and I have tested it myself.
Newcomers may refer to this good old trick here
http://www.binarytides.com/blog/hack-bsnl-broadband-accounts/
My additional updates will be -
1. Use angry IP Scanner to directly get your own IP (run as admin).
Download it from this link
http://www.mediafire.com/?kej7xt37i50sp6r
2. Set both the ports 80 and 23 for scanning and manual checking.
3. Default username,password for most routers is (admin,admin).
For "iBall Baton 150M Wireless-N" router, the credentials are (support,support).
4. Now go in "Advanced Setup/WAN" section and edit the WAN interface having VPI/VCI value as 0/35. Keep clicking on next to get to the password page. Password will be available only for "
PPP over Ethernet (PPPoE)" mode and NOT for "Bridging" mode. If it says bridging mode then exit and go to next router IP.
5. For getting password, use manual technique of viewing frame source code, searching for the word "password" in the HTML code and noting down the string in the "value" field.
6. For D-Link ADSL Router, the password is not directly available. First, go to Internet Setup, edit connection with vpi/vci as 0/35. After this, view frame source will give you username.
For password go to the link http://<victim's IP>/internet_js.html. In this page, search for password and you will find it.
7. After all this, the main part is to repeat the above steps for the entire set of hosts found by Angry IP Scanner in one go. Collect as many usernames as possible and try your luck with each one, you will definitely get lucky with atleast 1-2 passwords among the 30-40 IPs found by scanner. Keep on putting the usernames on your BSNL dial-up box till it gets connected successfully. Most of them will be port binded, but believe me when I say that some are still left unsecured.
8. Avoid the usernames ending with "_wcdr"; they wont work.
9. After getting the usernames, you may also access their mailboxes at
http://mail.bsnl.in.
10. Please don't misuse or overuse the connection. Trick for educational purpose only.