Showing posts with label hacking stuff. Show all posts
Showing posts with label hacking stuff. Show all posts

Ransomware : A new kind of Maleware

Ransomware is a kind of malware (malicious software) that criminals install on your computer so they can lock it from a remote location. 
Ransomware generates a pop-up window, webpage, or email warning from what looks like an official authority. It explains that your computer has been locked because of possible illegal activities on it and demands payment before you can access your files and programs again.
e.g.

How do criminals install ransomware?

Ransomware is usually installed when you open a malicious email attachment or when you click a malicious link in an email message or instant message or on a social networking site or other website. Ransomware can even be installed when you visit a malicious website.

How do I avoid ransomware?

There are several free ways to help protect your computer against ransomware and other malware:
  • Keep all of the software on your computer up to date. Make sure automatic updating is turned on to get all the latest Microsoft security updates.
  • Keep your firewall turned on.
  • How do I remove a ransomware infection from my computer?
    Here are two methods on how you may be able to remove a ransomware infection from your computer.
    Method 1: Use the Microsoft Safety Scanner

    Before you begin, you will need to have access to a computer that is not infected and is connected to the Internet, so you can download a copy of the Microsoft Safety Scanner.

    Try to restart your computer in safe mode. Here's how:
    In Windows 7
    In Windows Vista
    In Windows XP
    If you are able to restart your computer in safe mode, run the Microsoft Safety Scanner in your computer.
    Restart your computer after running the Microsoft Safety Scanner.
    If this resolves your ransomware infection, follow these steps to take once your computer has been cleaned.
    If this does not resolve your ransomware infection, follow Method 2.
    Method 2: Use Windows Defender Offline

    Before you begin: you will need to have access to a computer that is not infected and is connected to the Internet, so you can download a copy of Windows Defender Offline.

    The way Windows Defender Offline works, is by allowing you to:

    Download a copy of the tool from a computer that has access to the Internet
    Save a copy of the recovery tool to a removable drive, in order to create bootable media
    Run the recovery tool on a compromised computer
    Note: Windows Defender Offline is not a replacement for a full antivirus solution providing ongoing protection. It is meant to be used in situations where you cannot start or scan your infected computer due to a virus or other malware actively running on the computer and impeding antimalware software.

    Here's how to use Windows Defender Offline:

    Determine if you require the 32-bit or 64-bit download. See the Microsoft Help and Support article for instructions on how to check if your infected computer is running a 32- or 64-bit version of Windows.
    Using a computer that can connect to the Internet, download the version of the Windows Defender Offline that applies to your infected computer.

    If your computer is a: 

    - 32-bit computer, then download the 32-bit version here. 
    - 64-bit computer, then download the 64-bit version here.

    Note: For the recovery tool to be effective, make sure you download the version that matches your infected computer. For example, if your 64-bit desktop is affected, you will need to download the 64-bit version of Windows Defender Offline and save it to a removable drive.
    Save the downloaded file to a local drive on your computer.
    Launch the downloaded file, and create a bootable device by following the instructions on the wizard. We recommend creating a bootable USB or CD; if you create a bootable USB, this can be updated for future use.
    From the infected computer, boot from the USB or CD you created in step 4. You may need to set the boot order in the BIOS to do this. This is device specific, so if you are unsure, refer to your system manual or manufacturer.
    Follow the prompts to run a full system scan. Depending on the outcome of the scan, your next steps will vary. Follow the prompts from Windows Defender Offline to manage any threat detections.
    If this resolves your ransomware infection, follow these steps to take once your computer has been cleaned.

Computer Hackers and Predators


How computer hackers and predators are threat for your computer security?

People with bad mind, not the computers, create computer threats. Computer predators victimize unaware people for their gain.  A predator having access to the Internet is exponentially bigger threat to your PC than the others. Computer hackers and predators are unauthorized users who break into others computer systems to steal, change or destroy valuable information, often by installing dangerous and harmful malware without your knowledge. The use of clever tactics and detailed technical knowledge help them to access the information you really don’t want to let them know.
What computer hackers and predators do to find you?
Everyone who uses a computer with a Internet connection is susceptible by the threats of computer hackers and predators. These online demons mainly use spam emails or instant messages, phishing scams, and bogus Web sites (fake or duplicate webpage which almost look like the original) to deliver dangerous and harmful malware to the computer and disable your computer security. They will also try to access your computer and thus your private information directly if you had not taken protection by configuring your firewall. They can also peruse your personal Web page or monitor your chat room conversations. Generally by using a fake identity, predators can fool you and make you into revealing sensitive personal and financial information.
Be aware: computer hackers and predators can do the following things to you.
With the help of malware transmitted by the hacker, he can get your personal as well as financial information without your knowledge. Then he can use this information for his benefit and it will harm you in the aspect of loss of money as well as private information and data. In either case, they may:
•    Know your usernames and passwords and will change it or use it according to him.
•    Using your info they can open credit card and bank accounts in your name
•    Steal your money and Ruin your credit
•    additional credit cards  or Request new account Personal Identification Numbers (PINs) o
•    Make purchases form offline stores.
•    Add themselves or an alias that they control as an authorized user so it’s easier to use your credit
•    Obtain cash advances from your credit card
•     Abuse your Social Security number
•    Sell your information to such person who will use it for illegal purposes
Especially predators can pose a serious physical threat. Be extremely cautious when agreeing to meet an online “friend” or acquaintance in person.
Ways to know that are you in the net or not?
Regularly check the accuracy of your personal accounts, credit cards bills and other documents. Are there any unexplained transactions?
Questionable or unauthorized changes?
 If so, the dangerous and harmful malware is already installed by predators or hackers in your computer.
What can I do about computer hackers and predators?
Read as much as possible about the articles on computer security threats on this blog and increase our knowledge about this. Although Hackers and predators pose equally serious and but very different threats you will wiser enough to avoid their tricks.
To protect your computer from hackers and predators:
•    Regularly check the accuracy of your personal accounts and deal with any discrepancies instantly.
•    Use extreme caution when entering any chat rooms or posting on personal Web pages
•    Put a limit on the personal information you post on a personal Web pages
•    Carefully monitor requests  on social networking sites by online “friends” or acquaintances for predatory behavior
•    Keep personal and financial information out of any type of online conversations
Take these steps to protect your computer from hackers right away:
•    Switch to 2 way firewall.
•    Update your operating system on regular basis.
•    Increase your browser security settings.
•    Only download software from trusted sites you trust.
•    First carefully evaluate free software then use and do same in the case of file-sharing applications before downloading them.
•    Practice safe email protocol.
•    Don't respond messages from unknown senders, even don’t open it.
•    Immediately delete messages you suspect to be spam.
•    Make sure that you have the best internet security products installed on your computer.
•    Always use antivirus protection
•    Also Get antispyware software protection
An unprotected computer is a like a free gift for computer hackers and predators. To protect your computer from hackers and predators also use a spam filter or gateway to scan inbound email or IM messages. While free anti-spyware and antivirus downloads are widely available, they just can’t keep up with the continuous onslaught of new malware strains due to their limited functionality. Previously undetected forms of malware can often do the most damage, so it’s necessary to have up-to-the-minute updated and guaranteed protection.

Email Security...some Basic point

In today’s electronic world, email is critical to any business being competitive. In most cases it now forms the backbone of most organisations’ day-to-day activities, and its use will continue to grow. According to the The Radicati Group’s study, “Microsoft Exchange and Outlook Analysis, 2005-2009,” the worldwide email market will grow from 1.2 billion mailboxes in 2005 to 1.8 billion mailboxes in 2009.[sintuhack]
As email becomes more prevalent in the market, the importance of email security becomes more significant. In particular, the security implications associated with the management of email storage, policy enforcement, auditing, archiving and data recovery. Managing large, active stores of information takes time and effort in order to avoid failures – failures that will impact the users and therefore the business, undoubtedly leading to lost productivity. For secure and effective storage management, organisations must take a proactive approach and invest wisely in a comprehensive solution.When considering a secure email storage management solution, a layered approach, combining both business processes and applications makes sense. By considering the service email provides to the business, email management can be broken down into a number of components: mail flow, storage, and user access – both at the server and user levels. Whilst each one of these components should be addressed separately, they must be viewed as part of a total security agenda.[sintuhack]
Mail flow can encompass many aspects of an email system. However, the security of mail flow is for the large part focused around the auditing and tracking of mails into and out of the organisation. Monitoring the content and ensuring that any email that has been sent and received complies with business policy is fundamental.
[sintuhack].Proving who has sent or received email is a lawful requirement for many industries and email can often be used as evidence in fraud and human resource court cases.[sintuhack],Another key aspect of the management of mail flow security is the protection of the business from malicious or unlawful attacks. It is at the gateway into the mail system where a business must protect itself via a variety of methods including hardware and software protection systems, such as spam filters and virus scanner[sintuhack].

Bluesnarfing:Mobile Security Breach

Bluesnarfing refers to a the method in which one has gained access to data, which is stored on a Bluetooth enabled phone of other people.
Literally Bluesnarfing can be described as unauthorized access of information from a wireless device through a Bluetooth connection. The level of access depends from case to case, but, in general, it involves pretty much anything that's stored on the user's mobile device.
Bluesnarfing allows the using person to make phone calls, send and receive text messages, read and write phonebook contacts, eavesdrop on phone conversations, and connect to the Internet. he can also download the material in his mobile from the victim mobile.
The good news is, bluesnarfing requires advanced equipment and much advanace expertise


In this field. As bluejacking can be done at the range of 10 meters, in bluesnarfing the intruder must be present within a 30 ft. range.
If the phone is in non-discoverable mode, then its not true that you cant be a victim of this.
Its adds only some problem and makes it little bit more difficult for intruders to bluesnarf your phone.


It can be possible from phone and laptop both to bluesnarf a mobile. By just using some bluesnarfing tools (Bluesnarfer, Blooover)

on mobile phone or laptop, anyone can detect and access those vulnerable mobile phones to view and download entire phonebook, calendar, real time clock, business card and other important private data without alerting the phone owner(you).




There's little info on whether Bluesnarfing is possible without the targeted phone being paired with the computer running the aforementioned software application, but anyone cannot completely rule out this possibility, either.


So that’s all about bluesnarfing. Wait till next post to know about other mobile security breach methods………….

Mobile hacking via blutooth

In this post i will tell  you how actually  mobile phones are get hacked  . i will describe it step by step that how mobile get hacke but plz don’t utilize it and try . If you will try then it will your responsibility.


I mainly describe the process  of Bluejacking .
  
Friends there is a bluetooth hacking software , using bluetooth hacking software anyone can “hack any cell phones”
 the latest version of this software is Bluetooth Hack v 1.07.
anyone can easly download it from any file sharing site.
Like  Download via RapidSahre: http://rapidshare.com/files/XXXXXXX/Superbluetoothhack.zip






Disadvantages of this software.


if  anyone get connected to your phone via bluetooth :
- he can read your messagess
- he can read your contactss
-he can play your songs from your mobile 

- he can also play his/her ringtones even your phone is in silent
- he can switch off your mobile –

-he can change your profile
-he can restart his/her mobile
-he can restore your factory setings
- he can also change ringing volume of your mobile..

  - the worst  part of it is he can call from your mobile which also includes all call functions like hold on etc etc..



Mobile phone hacking work according to following   steps .
  • He will Go to Contacts.
  •  And will Create a new contact.
  • He will Write the short message he want to send on the line next to 'Last name'
  • And Save this contact.
  • Now he will Select your contact and send via Bluetooth because your bluetooth is on and you donot know about it.
  • His  phone will search for devices and that software will found your mobile.
  • He will Select any one  like you  and will  send.
  • Now Your phone  have been  bluejacked by someone.


This software is very much suitable for sony ericcsson and few Nokia mobiles.
So user of it be aware..
Warning this is only For educational purposesif any one use it it will totaly his resposiblity.




In next post i will describe others methods of  bluethooth hacking.

MOBILE HACKING:BLUTOOTH HACKING

Bluetooth is a very common thing for mobile technology and used frequntly by user to tranfer data. But as frequent they transfer the data , less they put attention on security . Even most of them donot think about  that their mobile can be hacked via blutooth.
So now from today i am going to describe about blutooth hackings and security and it will continue in upcoming post.

Bluejacking, Bluesnarfing, Bluebugging and Bluetoothing are the main type of bluetooth hacks.


Bluejacking is the simplest of the four.  It is an attempt to send a phone contact or business card to another nearby phone. The ‘name' field of the contact can be misused by replacing it with a suggestive text so that the target device reads it as a part of intimation query displayed on its screen. Tis is somewhat equivalent to spam e-mail because both are unsolicited messages displayed on recipients' end without consent, and by exploiting the inherent nature of communication.
These are the softwares available in the market which help in bluetooth hacking.


BlueScanner - It hunts out for Bluetooth devices and dig out much amount of information of the newly discovered device.

BlueSniff - Utility for discovering hidden Bluetooth devices.

BlueBugger -It simply exploits the BlueBug vulnerability of the bluetooth enabled devices. By exploiting these vulnerabilities and leakes, you can gain access to the phone-book, calls lists and other information of the bluetooth device.

BTBrowser - Is a Bluetooth Browser is a J2ME app. which can browse and explore all the surrounding Bluetooth devices.

BTCrawler -It is a Bluetooth scanner for Windows Mobile based devices. It can implement BlueJacking and BlueSnarfing attacks.


In the next post i will describe how hackers actually  use these softwares for the hacking..........

We can Trace a Stolen SIM Card of any mobile phone....

All information about your cell phone is stored on a SIM card inside your phone. This is the card cell phone companies
program when you first activate your cell phone. When your cell phone is stolen, the SIM card is often the only way to trace the phone’s location.

Tracking your stolen cell phone through the SIM card is mainly done through your cell phone provider. As soon as you realize the phone has been stolen, call your cell phone provider. Provide them with your account number, cell phone number and approximate time the phone was stolen. They can then track the phone’s activity. If the SIM card has not been changed out, this will help the cell phone company lead authorities to your phone’s location.

If GPS is enabled on your cell phone, you may be able to monitor your cell phone’s location from home. This will require the cell phone to be turned on and the SIM card active. Open the web page you use to access the GPS locator on your phone. Call authorities as soon as you have a set location.

Try calling your cell phone. Some thieves will actually answer the phone. The call will provide a way for your cell phone provider to track the last known location. Authorities may also be able to provide this service as well.

If the SIM card has already been changed out, finding the cell phone itself may be impossible. However, your cell phone provider can still attempt to trace the location of the SIM card. When the cell phone number assigned to the SIM card’s serial number no longer match, this alerts the provider to the theft. They will then be able to trace the stolen SIM card through the new cell phone number.

New applications are being created that work silently to track the SIM card and cell phone. These applications run quietly to prevent alerting the thief to their presence. One such application is Smart Phone Guard. The application hides itself the moment the SIM card is replaced. A message is then sent to friends’ numbers. The numbers are determined at the time the application is installed. The application also allows you to remotely delete any personal information such as photos and videos remotely through one of the friend’s numbers.

Check with your cell phone provider for other applications that may be able to trace the location of stolen SIM cards. These applications will give you peace of mind that no matter what happens to your phone, you’ll still have control. For older phones, newer applications may not be compatible.

In the event your SIM card or cell phone is stolen, report the incident immediately to your cell phone provider. This will prevent unauthorized calls and charges to your account. For many thieves, once the phone is deactivated, they simply discard the phone. Ask your provider to trace the SIM card if possible. GPS enabled phones can also be tracked through the SIM card and phone number. There are several different ways to trace a stolen SIM card with new methods being developed daily.

World of Warcraft Attacked by Phishers

World of Warcraft players desperate for a new mount to traverse the online role-playing game's fantasy world are getting a reality check from hackers who have devised a clever pop-up phishing scam to spread malware.

Security technicians at F-Secure Security Lab on Tuesday posted a blog entry Tuesday detailing the latest scam making its way through the world's most popular massively multiplayer online role-playing game (MMORPG).

With more than 11.5 million monthly subscribers, Blizzard Entertainment's World of Warcraft is not only the most successful MMORPG in history, but also a very popular environment for hackers, phishers and assorted click-fraud scam artists.

This latest hoax preys on players' desire to add mounts for their online avatars to ride. After clicking on a link to get a new trial mount, players are redirected to a malicious phishing Web site that mimics an official WoW page.

Those players who are still hard up for a mount are then prompted to enter their WoW log-in details.

"Apart from losing all the gold and items saved, a compromised account could also be used to send out the malicious messages to other victims, adding insult to injury," the researchers warned in their blog post. "An interesting detail about this particular site is that a reverse-IP check on its IP address turned up over a dozen other WoW phishing sites."

F-Secure officials remind players that phishing sites like the one identified today are blocked by the security firm's browser protection software.

World of Warcraft holds an estimated 62 percent of the MMORPG market. The third expansion set, Cataclysm, was announced at the BlizzCon conference earlier this year.

Five rules for protecting Windows with antivirus software

Good antivirus software is a critical part of any Microsoft Windows system that communicates with other computers, particularly if it is connected to the Internet and deals with browser, email, or instant messenger traffic. It seems like everybody has his or her favorite antivirus solution and it is different from everyone else’s. For personal desktop systems, however, there are some rules of thumb that seem to be fairly universal among security experts:
  1. Install your AV software before connecting to the Internet. Any MS Windows computer should have antivirus software installed before connecting to the Internet. I have seen malware insinuate itself onto a computer in less time than it took to download antivirus software to use on the computer. If you have not seen that, and you use that as evidence you do not need to worry about antivirus until after you have opened a browser and navigated to a Website where you can download AV software, you are just playing Russian roulette with your computer’s security.
  2. Don’t use default AV software. Norton and McAfee, once among the most trusted brands for home antivirus, have taken significant damage to their reputations. These days, most home desktop security experts recommend that any computer that comes with either of these brands of antivirus software get something else installed instead, as quickly as possible. Regardless of what you think of Trend Micro’s enterprise antivirus offerings, the free AV software from Trend Micro that comes with some new computers has never been regarded by many as good enough on its own. In general, the “free” antivirus software you get with your computer will come from a big-name vendor that has more money for marketing than any of the others, and is not the best option for your purposes.
  3. Get AV with a real-time scanner. You need an on-access, real-time scanner to ensure that some of the most common infection vectors for viruses and worms are checked “live”, to prevent an infection from spreading when your computer first encounters the virus or worm. Real-time scanning can be a real burden on system performance, and there may be times when you will want to turn it off to get your performance back, but be very careful about that. Browsing the Web and checking email are not the times to turn off your antivirus real-time scanner for extra performance.
  4. Perform regular full-system scans. A real-time scanner is not enough. You should also make sure you perform full-system scans often, and automate the process with a scheduled nightly scan if possible. Real-time scanners only detect an incoming virus before it infects your system if it happens to pass through a point of access that the scanner can effectively protect, and even then sometimes something might get through before there is a virus signature available for your AV software.
  5. Don’t use two AV programs. Using two antivirus programs at the same time is just asking for trouble. Whether it is because their real-time scanners fight over access and between the two of them can slow your computer to a crawl, or because one might misidentify virus signature files maintained by the other as actual virus infections, many problems can crop up that make using two desktop antivirus applications effectively incompatible with each other.

How to Enable the Windows Task Manager?

Windows Task Manager is used to view the status of running applications, active processes, CPU and Page file usage history and active user in windows environment. As a system administrator you can mange the all features of Windows Task Manager, you can end task any running application and set the priority of any running process according to application importance.


By default Windows Task Manager Status is enabled, but a user can also disable or enable it manually. But some time a registry hack applies on windows task manager to disable it and your system give you a message” Task Manager has been disabled by your administrator.” then you should enable it with editing the system registry or using Group Policy Editor.

Before proceeding further, first scan your system with up-to-date antivirus, and then follow the given steps to enable it using group policy editor.




To enable this feature, you will need to be logged into your computer with administrative rights.


Now click on Start button and type “Gpedit.msc” in Run option then press OK.


In Group Policy Editor, expand the “Administrative Templates” > “System” then “Ctrl+Alt+Del Options”, under the User Configuration option.


Now in right side of panel “Ctrl+Alt+Del Options” double click on “Remove Task Manager” to change it setting. Here set the option “Disable” to “Enable” or “Not configured” and your task manager is available once again.

how to run your computer faster


A stitch in time saves nine! Believe it or not, but this adage works brilliantly for your computer too. Not only will keeping your computer clean help you save on maintenance cost, but it will also keep you stress free so that you can focus on your work and nothing else! So, why is cleaning your computer so important? Well, basically because dust and debris collect in your system, causing your computer to heat up, which can eventually lead to hardware failure.

Here are a few simple tips that will keep you in the clear. Read on!

1.) To clean your computer case, first unplug your system power from the electrical outlet. Remove all the cables and connectors from the back side of your computer. The computer will require the fans to be blown out as well. Some PCs have multiple fans: one on the processor and one or two on the power supply. Make sure you clean them all. The best thing to use is probably compressed air. Just blow that air all around the hardware components, while keeping the nozzle at least four to five inches away from the main board components.

2.) Another good alternative to compressed air is to use a portable battery powered vacuum that can effectively remove the dust, dirt and hair from the motherboard and prevent it from getting trapped within the case. However, do not use a standard electricity powered vacuum, as it can cause a lot of static electricity that can damage your computer. When using the vacuum, it is vital that you stay a couple inches away from the motherboard and all the other components to help prevent contact, as well as, to help prevent anything from being sucked into the vacuum. Ensure that you do not remove any small components with the vacuum, such as jumpers.

3.) To clean your keyboard, pick up a can of compressed air at your local office supply store. In case you're not sure, compressed air is a handy invention that forces air from a can out through a long thin straw. You can use it to clean out dust and debris on your keyboard, without having to take the whole thing apart. Be careful not to blow dust into your hard drive though, as that may cause damage to your machine. It's a good idea to turn the keyboard upside down and give it a few good shakes before you use it again. If you're brave, you can pop off the keys and soak them in a solution of ammonia and water, but be careful, because not all the keys come off easily. If you feel resistance, stop!

4.) If you feel the need to test fate, you can pull out the memory and other cards from your computer and gently rub a pencil eraser on the contacts before putting them back in. However, don't pull any cards out unless you're having problems reaching certain areas.

5.) Remember, never open a CRT monitor. Even when it's unplugged, they retain enough current to seriously harm you.

6.) When cleaning the inside of your computer (motherboard, etc.), make sure your computer is off. Also, never place your computer on the ground. You should always use a computer table or shelf while you're cleaning.

7.) Only use an air duster/canned air to remove dust from your computer's components. It's best to do it outside as well so that it doesn’t end up all over your house!

8.) When cleaning your monitor, make sure you do so with a clean rag and only use cleaning agents designed for electronics.

9.) When you're finished with the inside, use a lightly dampened cloth or paper towel to wipe off the outside of your computer case. Gently wipe down the casing using Q-Tips to clean small places like vent holes and disk drive openings.

10.) Never clean the inside computer components or other circuit boards with a damp or wet cloth.

11.) Wipe down the outside of your mouse with a slightly damp cloth. Next, unscrew the ring from the bottom of your mouse and remove the ball. Dust off the ball with a soft cloth and look inside the cavity of your mouse. There will probably be some dust clinging to the rollers that move the ball and you can just scrape that out with a Q-Tip. When you're finished, replace the ball and ring. Optical mice will require little maintenance, but ball mice can be disassembled. Clean the ball itself, as well as, the X and Y axis rollers.

12.) To keep your computer looking clean longer, purchase an inexpensive plastic covering for your equipment!

If you follow all of these guidelines, your computer and all of its equipment will shine like new!

Fix your 10 common Wi-Fi problems(last five)

6. Which wireless channel should I use?
Wireless 802.11b and 802.11g routers have at least 11 channels, and most routers come set to channel 6 as the default. If you experience interference--from a neighbor's router, for instance--you can change your channel to solve the problem. Channels 1, 6, and 11 are non-overlapping channels; other channels overlap a bit. So if your neighbor's network uses channel 6, change your router to 1 or 11. You'll typically find channel settings on the router's basic wireless settings page. Just click the drop-down menu and select an alternate channel, then save the settings.

7. How do I share files on a wireless network?
First, you'll need to set up a workgroup and make sure that all PCs are assigned to the same workgroup. Next, enable file sharing in Windows. First, right-click on the folder you want to share, choose Sharing and Security from the right-click context menu, then click the Sharing tab. Put checks in the boxes labeled "Share this folder on a network" and "Allow network users to change my files" to enable others to modify the documents. Finally, click OK.

8. Should I allow other people to access my Wi-Fi service? What are the dangers?
Some users see no harm in sharing the Wi-Fi love, giving neighbors and even total strangers free access to the Internet. Others maintain that piggybacking can open their networks to potential danger. The decision is yours, but if you choose not to encrypt, make sure to disable file sharing. Assuming you have your hardware firewall turned on, the worst that probably will happen is that your throughput will drop if your piggybacking neighbors crank up BitTorrent every evening. If you want to determine whether others are using your unsecured network, most routers have a page that lists all the wireless clients currently connected.

Most people, however, are not comfortable with the idea of allowing just anyone to use their wireless service. In theory, the practice can make your network vulnerable to hackers, since anyone who uses your wireless signal is on your home network. Malevolent users, for instance, could release nasty viruses or hijack your PC. That's not terribly likely, but you should avoid the possibility by using WPA to protect yourself and keep others off your network.

9. Should I worry about packet sniffers grabbing my information when I browse the Web at public hotspots?
Yes, you should at least consider this possibility, although whether you do anything about it depends on the sensitivity of your data and your level of paranoia. Anyone can install packet-sniffing software that will enable him or her to eavesdrop on what you do at a public hotspot. These snoops can read your emails and see what Web sites you visit, but they will not have access to the files on your laptop, unless you have file sharing enabled. Also, they cannot see any messages or Web pages sent over the secure server connections typically used by banks and e-commerce sites. (Look for https:// in the URL.)

If you use a VPN to access your corporate network, you can use it at hotspots to encrypt all transmissions and shield them from packet sniffers. If you don't have a corporate VPN but frequently use public hotspots, you might consider a consumer VPN service such as the PersonalVPN from Witopia (US$39.99 per year, www.witopia.net) or BlowFish from HotSpotVPN (US$10.88 to US$13.88 per month, www.hotspotvpn.com). These employ powerful 128-bit encryption to protect your data as it is transmitted.

10. What is a hardware firewall? If my router has one, do I need to run the Windows firewall or other third-party firewall software?
Most wireless routers have a hardware firewall that safeguards the network by providing both incoming and outgoing protection. A hardware firewall will include network address translation (NAT) capabilities that make your PC invisible to anyone trying to attack it. If you enable the hardware firewall, you probably don't need a third-party software firewall. You should still run the Windows firewall, however, because it keeps a low profile and will stop basic worms if your PC gets hit by a drive-by downloader.

Fix your 10 common Wi-Fi problems

1. I cannot connect to my router. How do I resolve this?
This is a wide-open problem with an almost limitless range of causes and solutions, but here are several actions that might do the trick. First, make sure your router is configured for Dynamic Host Configuration Protocol (DHCP). If it is, try disabling and re-enabling the DHCP function. If that doesn't work, disable wireless security and see if you get a connection; sometimes a mismatched Wired Equivalent Privacy (WEP) key can drop the IP address. You should also check for electrical interference from competing devices such as cordless phones, baby monitors, alarm systems, and microwave ovens. Disable all suspect devices, then recheck your Wi-Fi connection. If all else fails, reboot the router and all computers on your network.

2. What steps should I take to secure my Wi-Fi network?
Routers typically offer at least two common forms of security: WEP, and Wi-Fi Protected Access (WPA) encryption. Both are easy to enable, although you'll get maximum protection from WPA. To activate security, go to your router's browser-based administration tool (the default address for most routers is http://192.168.0.1 or http://192.168.1.1) and look for the wireless security area. WPA requires you to enter a simple security phrase (eight to 63 characters), or, with some routers, a more secure (but much harder to remember) 64-digit key. Similarly, WEP demands that you choose from 64-bit or 128-bit encryption, and enter an alphanumeric hex phrase, with some routers giving you the option to enter a simpler ASCII phrase. In addition to enabling wireless security, you can also disable the broadcasting of the Service Set Identifier (SSID, or network name). Doing so can make the network more difficult for hackers to see. Also, make sure to enable the router's hardware firewall (more on that later), and change the router's default password. And do not enable file sharing, unless you really use it. This will safeguard your personal files from interlopers.

3. How do I open ports on my router?
Certain functions and applications--personal Web servers, IP Webcams, home FTP servers, and online games--require that you open ports on your router to allow outside requests to be sent to an internal computer on a home network. This procedure, called port forwarding, is pretty straightforward. First, you'll need to find out which ports you need to open for your particular application or service. Then, you'll open those ports on the router. All models vary slightly, but the process is similar. Open your router's configuration tool, and find a tab labeled Port Forwarding. Enter the service or software name, then type the Start Port and End Port numbers. If you're opening one port, enter the same number in both fields. Select TCP as the protocol, then click OK. Check your router's Web site for instructions for your specific brand or take a look at Port Forward, for help.

4. How do I extend the range of my wireless signal?
Improving a wireless signal is an inexact science that's part voodoo, part trial and error. No two homes are alike, and no two solutions will work for everyone, but here are some common guidelines. First, position your antenna on a high perch clear of obstructions. (The wireless signal radiates down.) Keep in mind that certain things will interfere with the signal: Objects with high water content, metal, and dense building materials such as brick, stucco, and concrete. So avoid blocks of liquid (fish tanks and water coolers), and metal pipes and construction.

If antenna positioning doesn't help, you can get an extender (or "repeater"), such as the Linksys Wireless-G Range Expander WRE54G. Devices like this will boost your range from 50 to 75ft, but they can be tricky because they require setup and configuration. A somewhat easier (if visually less elegant) approach is Wireless Garden's Super Cantenna. This tripod-mounted, high-gain antenna connects to your router and can be pointed at a specific area to amplify the signal. It's easy to set up, but it ain't pretty.

5. How do I automatically connect to a Wi-Fi network without having to manually connect the first time?
If you just want to connect fast to any available network, you can set your notebook to do so automatically. Go to Control Panel > Network Connections and right-click your current wireless network. Then click Properties > Wireless Networks > Advanced. Make sure the radio button next to "Any available network (access point preferred)" is on, then check the box "Automatically connect to non-preferred networks."

next five will be posted on next blog...

How To Find The IP Address Of The Sender In Yahoo-/Gmail





When you receive an email, you receive more than just the message. The email comes withheaders that carry important information that can tell where the email was sent from andpossibly who sent it. For that, you would need to find the IP address of the sender. Thetutorial below can help you find the IP address of the sender. Note that this will not workif the sender uses anonymous proxy servers.

Finding IP address in Yahoo! Mail :-

1. Log into your Yahoo! mail with your username and password.

2. Click on Inbox or whichever folder you have stored your mail.

3. Open the mail.

4. If you do not see the headers above the mail message, your headers are not displayed. Todisplay the headers,* Click on Options on the top-right corner* In the Mail Options page, click on General Preferences* Scroll down to Messages where you have the Headers option*Make sure that Show all headers on incoming messages is selected* Click on the Save button*Go back to the mails and open that mail.


5. You should see similar headers like this:Yahoo! headers : nameLook for Received: from followed by the IP address between square brackets [ ]. Here, it is 202.65.138.109.That isbe the IP address of the sender!


6. Track the IP address of the sender



IF gmail :-.

Find IP Address in GMail

1. Log into your Gmail account and open the mail.

2. To display the headers,

* Click on More options corresponding to that thread. You should get a bunch of links.
* Click on Show original

3. You should get headers like this:
Gmail headers : Varun
Look for Received: from followed by a few hostnames and an IP address between squarebrackets. That is be the IP address of the sender!

4. Track the IP address of the sender

Find IP address in Hotmail :-

1. Log into your Hotmail account with your username and password.

2. Click on the Mail tab on the top.

3. Open the mail.

4.If you do not see the headers above the mail message, your headers are not displayed.Todisplay the headers,

* Click on Options on the top-right corner
* In the Mail Options page, click on Mail Display Settings
* In Message Headers, make sure Advanced option is checked
* Click on Ok button

* Go back to the mails and open that mail

5. If you find a header with X-Originating-IP: followed by an IP address, that is thesender's IP address

Hotmail headers : *******(sender's name), followed by IP address within square brackets[].Jump to step 9.

6. If you find a header with Received: from followed by a Gmail proxy like thisHotmail headers :******(sender's name)

Look for Received: from followed by IP address within square brackets[].
Jump to step 9.

7. Or else if you have headers like this
Hotmail headers : *******(sender's name)
Look for Received: from followed by IP address within square brackets[]. Jump to step

8. * If you have multiple Received: from headers, eliminate the ones that haveproxy.anyknownserver.com.

9. Track the IP address of the sender.

Cyber Crime And Law Enforcement Agencies

Type of Crime
Appropriate federal investigative law enforcement agencies
Computer intrusion (i.e. hacking)
Password trafficking
Counterfeiting of currency
Child Pornography or Exploitation
Child Exploitation and Internet Fraud matters that have a mail nexus
Internet fraud and SPAM
Internet harassment
Internet bomb threats
Trafficking in explosive or incendiary devices or firearms over the Internet

Other Cybercrime Reporting Resources

  • The Internet Crime Complaint Center (IC3)

    The Internet Crime Complaint Center (IC3) is a partnership between the Federal Bureau of Investigation (FBI) and the National White Collar Crime Center (NW3C). IC3's mission is to serve as a vehicle to receive, develop, and refer criminal complaints regarding the rapidly expanding arena of cyber crime. The IC3 gives the victims of cyber crime a convenient and easy-to-use reporting mechanism that alerts authorities of suspected criminal or civil violations. For law enforcement and regulatory agencies at the federal, state, and local level, IC3 provides a central referral mechanism for complaints involving Internet related crimes.

  • Department of Homeland Security's National Infrastructure Coordinating Center: (202) 282-9201 (report incidents relating to national security and infrastructure issues)
  • cyber questions)

The first cyber Crime

The first recorded cyber crime took place in the year 1820! That is not surprising considering the fact that the abacus, which is thought to be the earliest form of a computer, has been around since 3500 B.C. in India, Japan and China. The era of modern computers, however, began with the analytical engine of Charles Babbage.

In 1820, Joseph-Marie Jacquard, a textile manufacturer in France, produced the loom. This device allowed the repetition of a series of steps in the weaving of special fabrics. This resulted in a fear amongst Jacquard's employees that their traditional employment and livelihood were being threatened. They committed acts of sabotage to discourage Jacquard from further use of the new technology. This is the first recorded cyber crime!

Tips to save your pc

  • Avoid giving out any information about yourself in a chat room.
  • Children should never arrange face-to-face meetings or send their photographs online without informing their parents.
  • Use the latest anti-virus software, operating systems, Web browsers and email programs.
  • Check out the site you are doing business with thoroughly. Send credit card information only to secure sites.
  • Use a security program that gives you control over cookies that send information back to Web sites. Letting all cookies in without monitoring them could be risky.
  • If you own a Web site, watch traffic and put host-based intrusion detection devices on your servers. Monitor activity and look for any irregularities.
  • Put in a firewall and develop your content off line.
  • Make sure web servers running your public site are physically separate and individually protected from your internal corporate network.
  • Protect your databases. If your Web site serves up dynamic content from a database, consider putting that database behind a second interface on your firewall, with tighter access rules than the interface to your server.
  • Back up your Web site after every update, so you can re-launch it immediately in case of a malicious defacement.

CYBER CIRME & INFOMATION SECURITY TRENDS


On 12th October 2008, French president “Mr. Nicolas Sarkozy” came to know that his bank account has been hacked and small sums of money have been withdrawn without his authorization. French Secretary of State for Consumer Affairs, Luc Chatel, confirmed the security breach.
The explosive growth of internet brought many good things but as we know everything in universe has pros as well as cons. As with most technological advances, there is also a dark side - in context of internet it’s cyber crime.
“Cybercrime is defined as the use of information technology infrastructure for crime which covers a huge range of illegal activities including illegal access, interception, data interference, system interference and electronic fraud that promote a racial hatred”.
“Who are cyber criminals”?
The cyber criminals constitutes of various groups/ category with different objectives in their mind:
1. Children and adolescents between the age group of 6 – 18 years :
The simple reason for this type of delinquent behaviour pattern in children is seen mostly:
Due to the inquisitiveness to know and explore the things. To prove themselves to be outstanding amongst other children in their group.
2. Organised hackers:
These kinds of hackers are mostly organised together to:
Fulfil certain objective such as shaping their political bias, fundamentalism etc.
A relevant example is the Pakistani hackers who are considered to be one of the best quality hackers in the world. They mainly target the Indian government sites with the purpose to fulfil their political objectives.

3. Professional hackers / crackers:
Motivated by the colour of money.
Mostly employed to hack the site of the rivals and get credible, reliable and valuable information.
Employed to crack the system of the employer basically as a measure to make it safer by detecting the loopholes.

4. Discontented employees:
To avenge their sack or their dissatisfaction with their employer, they normally hack the system of their employer.
Mode and manner of committing cyber crime:
1. Hacking: Hacking in simple terms means an illegal intrusion into a computer system or network. There is an equivalent term to hacking i.e. cracking. Every act committed towards breaking into a computer and/or network is hacking. Hackers write or use ready-made computer programs to attack the target computer. They possess the desire to destruct and they get the kick out of such destruction.

2. Denial of service Attack: This is an act by the criminal, who floods the bandwidth of the victim’s network or fills his e-mail box with spam mail depriving him of the services he is entitled to access or provide.

3. E-mail spoofing: A spoofed e-mail may be said to be one, which misrepresents its origin, different from one which actually it originates. Recently spoofed mails were sent by terrorist in context of Mumbai attack and that was completely fake mail sent from somewhere else.

4. Trojan attacks: This term has its origin in the word ‘Trojan horse’. In software field this means an unauthorized programme, which passively gains control over another’s system by representing itself as an authorised programme.

5. Web jacking: This term is derived from the term hi jacking. In these kinds of offences the hacker gains access and control over the website of another. This may be done for fulfilling political objectives or for money. E.g. recently the site of MIT (Ministry of Information Technology) was hacked by the hackers and some obscene matter was placed therein.

6. Salami attacks: This kind of crime is normally prevalent for the purpose of committing financial crimes. An important feature of this type of offence is that the alteration is so small that it would normally go unnoticed. E.g. The Ziegler case wherein a logic bomb was introduced in the bank’s system, which deducted 10 cents from every account and deposited it in a particular account.
As the evil consequence of cyber crime grew, the various systems and organisations demanded for security and protection measures of the database and systems. Security =prevention + detection + response.
Security is a social as well as a technical process, the by-product of a community of trust created by having appropriate systems properly set up to support stakeholders’ evolving needs and good operating procedures appropriately implemented in context of respectful interaction with and valued service to all stakeholders.
Therefore, different people across the world shown their interest towards this which includes:
1. IT experts from the industrial sector.
2. Professional hackers.
3. Law enforcement agencies.

These professionals implied the various techniques and methods for security measures which may be shortlisted as below:
1. Investing in antivirus, firewalls and SPAM blocking software.
2. Detecting secure websites when conducting transaction online.
3. Blocked response to e-mails and checking header of the information from unknown sources.

4. Constant supervision of our assets, careful scrutiny of payments or rewards, and discrimination when releasing personal information might help reduce the success of an attack by way of the salami technique
5. Data entry typically must be protected using manual controls. Manual controls include separation of duties or responsibilities, which force collusion among employees to perpetrate fraudulent acts.
6. Another common control is the use of check digits or characters or sequence numbers and time of arrival that can be associated with the embedded data on the basis of various characteristics of each field.
7. Secure SQL injection method opting and having new techniques in web certification
Innovative trends in security management:
More enterprises are turning to role-based access control and fine-grained authorization to enforce data and application restrictions and comply with a variety of regulations.
It emphasizes that security technologies must be deployed in accordance with a well thought information security architecture.
Enterprise technologists must look beyond the confusion to build an effective security control layer and to construct comprehensive information security architecture.
In a nut shell the cyber crime has emerged as one of the major and fastest growing criminal activities on the planet. The modern era wants secured network and system and the best road to protect our-self is “being aware”. Knowledge of the modern hacking techniques and staying on the top of current cyber crime trends can help to extract the best use of cyber world and move to a more progressive and meaningful life. After all there is a whole other world that exits in cyber space...