Showing posts with label hacking security. Show all posts
Showing posts with label hacking security. Show all posts

Ransomware : A new kind of Maleware

Ransomware is a kind of malware (malicious software) that criminals install on your computer so they can lock it from a remote location. 
Ransomware generates a pop-up window, webpage, or email warning from what looks like an official authority. It explains that your computer has been locked because of possible illegal activities on it and demands payment before you can access your files and programs again.
e.g.

How do criminals install ransomware?

Ransomware is usually installed when you open a malicious email attachment or when you click a malicious link in an email message or instant message or on a social networking site or other website. Ransomware can even be installed when you visit a malicious website.

How do I avoid ransomware?

There are several free ways to help protect your computer against ransomware and other malware:
  • Keep all of the software on your computer up to date. Make sure automatic updating is turned on to get all the latest Microsoft security updates.
  • Keep your firewall turned on.
  • How do I remove a ransomware infection from my computer?
    Here are two methods on how you may be able to remove a ransomware infection from your computer.
    Method 1: Use the Microsoft Safety Scanner

    Before you begin, you will need to have access to a computer that is not infected and is connected to the Internet, so you can download a copy of the Microsoft Safety Scanner.

    Try to restart your computer in safe mode. Here's how:
    In Windows 7
    In Windows Vista
    In Windows XP
    If you are able to restart your computer in safe mode, run the Microsoft Safety Scanner in your computer.
    Restart your computer after running the Microsoft Safety Scanner.
    If this resolves your ransomware infection, follow these steps to take once your computer has been cleaned.
    If this does not resolve your ransomware infection, follow Method 2.
    Method 2: Use Windows Defender Offline

    Before you begin: you will need to have access to a computer that is not infected and is connected to the Internet, so you can download a copy of Windows Defender Offline.

    The way Windows Defender Offline works, is by allowing you to:

    Download a copy of the tool from a computer that has access to the Internet
    Save a copy of the recovery tool to a removable drive, in order to create bootable media
    Run the recovery tool on a compromised computer
    Note: Windows Defender Offline is not a replacement for a full antivirus solution providing ongoing protection. It is meant to be used in situations where you cannot start or scan your infected computer due to a virus or other malware actively running on the computer and impeding antimalware software.

    Here's how to use Windows Defender Offline:

    Determine if you require the 32-bit or 64-bit download. See the Microsoft Help and Support article for instructions on how to check if your infected computer is running a 32- or 64-bit version of Windows.
    Using a computer that can connect to the Internet, download the version of the Windows Defender Offline that applies to your infected computer.

    If your computer is a: 

    - 32-bit computer, then download the 32-bit version here. 
    - 64-bit computer, then download the 64-bit version here.

    Note: For the recovery tool to be effective, make sure you download the version that matches your infected computer. For example, if your 64-bit desktop is affected, you will need to download the 64-bit version of Windows Defender Offline and save it to a removable drive.
    Save the downloaded file to a local drive on your computer.
    Launch the downloaded file, and create a bootable device by following the instructions on the wizard. We recommend creating a bootable USB or CD; if you create a bootable USB, this can be updated for future use.
    From the infected computer, boot from the USB or CD you created in step 4. You may need to set the boot order in the BIOS to do this. This is device specific, so if you are unsure, refer to your system manual or manufacturer.
    Follow the prompts to run a full system scan. Depending on the outcome of the scan, your next steps will vary. Follow the prompts from Windows Defender Offline to manage any threat detections.
    If this resolves your ransomware infection, follow these steps to take once your computer has been cleaned.

Hackers attack two Israeli websites

STORY HIGHLIGHTS
  • Saudi hackers say in an e-mail they attacked the sites
  • Earlier Saudi hackers had exposed thousands of Israeli credit card numbers
  • Deputy foreign minister has his website hacked
Jerusalem (CNN) -- The websites of the Tel Aviv Stock Exchange and of El Al, the Israeli airline, were brought down Monday morning by an apparent hacking attack. An internet hacker who calls himself Ox Omar sent an e-mail to the Jerusalem Post Monday in which he claims that together with a hacking group calling themselves "Nightmare" that the websites of the Tel Aviv Stock Exchange and that of El Al would be brought down.
Idit Yaaron, the spokeswoman for the Tel Aviv Stock Exchange, told CNN that the main site of the stock exchange where the trading takes place was not harmed and operates on a very high level of Internet security. Trading has continued unaffected, she said. A secondary internet web site was affected for a short period of time.
El Al spokesman, Ran Rahav, released a statement saying, "El Al is aware that for the past two weeks a cyber war is raging against Israel. The company is closely monitoring the Saudi hacker activity. El Al is taking precautions regarding its website and as a result there may be disruptions in the activity of the website."
The "cyber war" started at the beginning of the month when a group claiming to be Saudi Arabian hackers posted the credit card information and other identifying data of thousands of Israelis on line, prompting an international investigation.
"Hi, It's Ox Omar from the group xp, largest Wahhabi group of Saudi Arabia" read a statement posted on an Israeli sports web site the group hacked into. "We are anonymous Saudi Arabian hackers. We decided to release (the) first part of our data about Israel." Wahhabism is an Islamic religious movement.
The Bank of Israel released a statement last Tuesday saying that, based on information from credit card companies, only around 15,000 credit card numbers were exposed and those credit cards were blocked for use in Internet and phone purchases.
Yoram Hacohen, who heads the Israeli Law, Information and Technology Authority at the Israeli Ministry of Justice, told CNN in a phone interview on Friday that he is more concerned about the private information that was released than the actual credit card numbers; he fears that the publishing of e-mail addresses, phone numbers and home addresses could lead to identification theft.
Hacohen said that hacking is a criminal act against citizens and the Israeli authorities have begun a criminal investigation, including a computer forensic probe to search for electronic evidence in an attempt to locate the group. The theft of personal information is a criminal act under Israel's Privacy Protection law.
Hacohen acknowledged that in the digital world, offenders are difficult to track and authorities are asking for international help in the matter.
Israeli Deputy Foreign Minister Danny Ayalon, speaking at a public event, called the Saudi hackers attack "a breach of sovereignty comparable to a terrorist operation and (it) must be treated as such." A few days later his own website was targeted in a cyber attack. In a statement on his Facebook page, Ayalon wrote that "Muslim extremists" hacked into his website "to try and prevent me from continuing to do my work on behalf of the State of Israel, especially my online public diplomacy.
Prime Minister Benjamin Netanyahu created a National Cyber Directorate in 2011, noting the emergence of cyber attacks that could "potentially paralyze life systems -- electricity, communications, credit cards, water, transportation, traffic lights."
He said in December that the new agency -- along with a rocket defense system and a physical fence -- would help protect Israel against its enemies.
http://edition.cnn.com/2012/01/16/world/meast/israel-hacking-attack/?hpt=wo_bn8

Orkut Virus(BOM SABADO)

 Now a days orkut became a soft target of hackers and virus(like BOM SABADO) this is because orkut has huge network where he(virus(BOM SABADO),hackers) can spread easily.One more thing why orkut,this is because orkut members belongs to each section of society like professionals and non-professionals,young guys and child(from 8 to15).business man and technical expert behined this lot of guys dont know how set security and privacy on profile,some guys yet dint know why  they will set security level,they came on orkut for enjoyment or nothing else what ever you will post his scarpbook they will click what they will get or lost on click this not matter for him,hackers and virus(BOM SABADO) make him target first after that they spreading his infected content on network.BOM SABADO is one of the virus.Here sintuhack try to expalin about---.
  1.What is Bom Sabado
   2.How Bom Sabado virus attacked or Hacked Orukt users?
   3.What to do if my Orkut account has been hacked by Bom Sabado Virus?                                                                        
What is Bom Sabado?
In Portuguese language Bom Sabado means ‘Good Saturday’. But it was really a very bad Saturday for most of the Orkut users as this Bom Sabado virus hacked the user accounts of many Orkut users, mostly of India and Brazil. Portuguese is the also the official language of Brazil. So the Virus was mostly targeted on Brazilian users.
How Bom Sabado virus attacked or Hacked Orukt users?
Orkut users affected by Bom Sabado virus are automatically posting virus scraps on the other orkut users’ scrapbook and also adding them to new Orkut groups. Within a short period of time this virus was spread to the accounts of many Orkut users. You don’t need to click any links to be infected by this Virus, but a near watching of an infected orkut profile or scrapbook with Bom Sabado virus is more than enough to get your account hacked.
What to do if my Orkut account has been hacked by Bom Sabado Virus?
If you found that your Orkut account has been hacked:---
Do not login Orkut from PC at this time.
Clear cache, cookies and history from web browser
Login Orkut by visiting http://m.orkut.com/ only from your mobile phone.
Revert your theme/style back to the old Orkut layout
Delete all the scraps with the message ‘Bom Sabado’
Un-join from Brazilian communities if you have any doubts on them.
Change your Orkut account password
Logout from Orkut
Have a coffee and relax
How to stay safe from Bom Sabado Orkut Virus?
The best thing to be stay safe from this new orkut virus Bom Sabado is not to login orkut, till Orkut team has fixed this security loophole.
Do not tell your friends to login orkut till Orkut team has fixed this.
Spread this article to all your Orkut friends through email, facebook, twitter etc and help them to be stay safe from this new Orkut vulnerability.

How to Get Rid of a Computer Virus

Computer viruses come in many forms and can cause various kinds of damage to your system. Fortunately, most viruses are easily dealt with and effective methods for eliminating them are often developed as soon as the viruses are discovered. If you think your computer may be infected, take any necessary steps to clear your system and avoid infecting other computers.
Instructions
1.Visit your virus-scan software manufacturer's Web site and install any virus updates that are available. Then run the software. The software may not be able to delete the virus, but it may be able to identify it.
2.Search the Web for information regarding your specific virus by typing the name of the virus or its associated file into a search engine followed by the word "virus." For example, "Melissa virus," "BubbleBoy virus," etc.
3.Download and install any patches or other programs that will help you eliminate the virus. Or follow any instructions you find on deleting the virus manually.
4.Run another virus scan to make sure the virus has been dealt with properly.
Tips & Warnings
If you think your computer was affected with an e-mail virus that mails itself to people in your e-mail address book, contact those people and tell them not to open the messages or attachments.


-Web based email usually has built in virus scanning so viruses never reach your machine.


-Generally, deleting the file that caused the virus isn't sufficient to eliminate the problem, since many viruses can create new files or corrupt existing files. Your best bet is to use anti-virus software or specific online instructions.


-Avoid sending out any e-mails until you have properly eliminated the virus. Many viruses can attach themselves to outgoing messages without your knowledge, causing you to unwittingly infect the computers of your friends and colleagues