Showing posts with label You Must Know. Show all posts
Showing posts with label You Must Know. Show all posts

Monday, November 14, 2011

How To Write and lodge Complaint in Cyber Crime Cases

Dear Friends/Colleagues

Due to lack of time I could not reach to you with my next topics. So again I have come to you with an important topic on cyber crime investigation i.e:- how to write complaint as victim in cyber crime cases. I feel this topic important as most of the cases get hampered due to weak complaint.

Generally in regular life netizens become victim in cyber crime cases as a victim of cyber stalking ( Fake profile in any social networking site or adult site for more pl search this blog on cyber stalking), online cheating through lottery, uploading personal intimate videos by someone in the net or something else.

So, when you are victim of these type of cases or any type of cyber crime related cases, take the print screen of those pages and copy the exact link which shows your profile only and also link of that page which shows your profile with others. Take the printout of those print screens.

If it is through any email take the entire print out of that email with its header file and attach it with your complaint.

There after lodge your complaint with those evidences to the Cyber Crime Police Station or nearby police station, where cyber crime police station does not exist. So this is not tough to understand and this will also help my colleagues to take complaint from victims in right manner. But if the complainant comes after lodging complaint to the website service provider for deactivating the link without copying the link address and the link becomes inactive, it could not be traced and it becomes next to impossible for LEAs to trace out the perpetrator until and unless you get the cached copy from Google or any other search engine.

With Thanks

Sujit

Thursday, September 1, 2011

How To Identify 419 Scammers Phone

Hi Friends,
After long long and long interval I am again infront of you with a valuable information, which I have got from my friend of cyber crime investigation field, who gave me the link of "joewein.de", and I am bringing this in front of you as this will help you a lot for identifying the 419 spammers. So here is the details of that information as published by that website.

Scam phone numbers in the United Kingdom (+44):

If an email mentions a UK phone number starting with +4470, it usually means that the sender of that mail is not in the UK at all and it is almost guaranteed to be a scam.

Usually the presence of a +44 70 number in a 419 scam email means you're dealing with criminals based in Nigeria who are using these numbers to make people believe they're dealing with someone legitimate who is in the UK instead of a criminal in an Internet cafe on a different continent.

Do not reply to any emails that mention +4470 phone numbers!
Never call such numbers!
Break off all contact with these people!

The scammer most likely is NOT based in the UK. +44 70 numbers belong to international call forwarding services. Their whole point is that people can reach the user of the number when he's not in the UK. These services make it possible for scammers to hide the fact that they are based in Nigeria or other countries in Africa, while the scam victim will believe they're dealing with someone in the UK. Very few (if any) legitimate individuals use these numbers. Banks, law offices, UK immigration officials, etc. never use +44 70 numbers because, since their offices are based in the UK, they have no need to redirect calls to their offices to sohttp://www.blogger.com/img/blank.gifme mobile phone outside the UK. We have not come across any legitimate UK businesses yet that use +44 70 numbers. Their only visible user base are scammers in Nigeria, South Africa and elsewhere. It is a perfect mystery to us why the UK authorities allow these services to continue operating despite them being used almost exclusively by criminals.

UK phone numbers starting with '70' are "Personal numbering" in the "Find me anywhere" range. Charges for calls to these numbers are not distance-dependent. They can cost as much as UKL 0.50 (USD 0.90) per minute to call and can forward the call to virtually any phone number in the world. Forwarding numbers can be set up for free and completely anonymously via websites such as uknumbers.com.

So my friends be cautious about them and for more information in details about the spammers please visit here

With lots of love

Sujit

Tuesday, April 19, 2011

How To Trace/Search Stolen Laptop Part-3

Dear Friends,

In my earlier two parts (Part-1 and Part-2) I discussed about some important terms and logics behind my idea so that my friends can understand my point and they can enrich it with their valuable opinions. And in this third point I have started it as "How to find stolen laptop" as this will be helpful for law enforcing agencies and also other civilians.

So lets come to the original point.

I have already discussed in my earlier parts that laptop can't be traced like mobile phones by using its MAC number like IMEI in case of mobile but at the same time you have also learnt from there that MAC is an unique identifier and your duty is to note the MAC address in a separate place for your future need in case of laptop theft.

I think more or less 98% of laptop users go to internet and they use Antivirus for their Laptops and almost all the antivirus are updated through internet and not only that all the paid Antiviruses are either single user or a limited number of users, which means u can install that antivirus in either single machine or a limited number of machine and if the installation crosses the limit it stops to function in those systems/laptops. So I think now you have understood what I am going to say.
Yes my friend I am going to tell about the unique identifier of your laptop has already been registered in the server of your Antivirus during the time of activation and updatation in the net. There is another unique identifier in your laptop. That is hardware serial number and it can't be changed but you can't get it though any command except using tools/softwares like DEFT ,HELIX3 PRO and others and you can't get these easily. But your laptop manufacturer has this in their record. And I think this is also registered in the the server of your Antivirus.

So I want to say my Police friends that don't sent any request to the ISPs about searching of MAC of stolen Laptops in their network but you can send it to the Antivirus companies, who are running business in your country and in this case you must need support from your Government for passing legislation to compel Antivirus Companies to help police if they want to run their business in your Country and at the same time they must supply the hardware serial number of the laptop to their customers in the bill during selling the product.

And if this system is imposed in your state you need not to spend a single penny for using third party software like laptop tracker for tracking the stolen laptop as all the Govt. are liable to see the interest of their citizen and for this Govt. need not to pay a penny for you.

This was the technical part, which can help you but at the same time you can take help of this website. This is good effort of Quick Heal for the netizens.

Waiting for your comments and opinion on this.

Thanking you

Sujit

Monday, April 18, 2011

How to Find The Stolen Laptop Part-2

Dear Friends,

In my earlier post I discussed about IMEI and MAC, the unique identifiers in favour of Mobile phones and Laptops as these are badly needed for searching in case of stolen or missing. MAC has two other names such as Physical Address and Network Interface Card address. The names itself are indicating its function.

In case of mobile it is easy but in case of Laptop its not easy as during communication through internet the ISP receives the MAC address or physical address of last router (It has also MAC or Physical Address or Network Interface Card address) through which the laptop is connected in internet and this is hardly possible to be the MAC of laptop as most of the laptops are connected with internet through data card or company's router or something else like this. As this thing happens as per logic of TCP/IP and practically in networking so the Internet Service Providers can not keep the MAC of laptop and as a result they can't search us like IMEI searching in case of mobile phones.

So what should we do for searching our stolen laptop? Most of the persons will advice to go to police for reporting and police will try to find out through source engaging and the tech savvy persons will advice and take initiative to install laptop tracker softwares in their system by purchasing softwares and they will do their business.

But don't you think that police should also think through some innovative ideas for tracing the laptop by using technological common sense? Yes police should do and in this case Govt. should come forward for the sake of her citizen as Govt. can't force you to purchase 3rd party softwares as they are also liable for your safety and security and they have also some power to pass the legislation in their country. And what the legislation is? Will discuss you in next part after discussing the actual procedure for finding the laptop.

To be continued.....to Part-3..

With Thanks

Sujit

Sunday, April 17, 2011

How To Trace Stolen Laptop Part-1

My Dear Friends,

Hope all of you are well and were well for the last few moths when I was away from you due my other official jobs.
In my daily work I get different type of cyber crime related complaints and other complaints, which are related to daily life and there I used to get complaints like Mobile Phone theft and Laptop theft. In case of mobile theft its easy to trace out the mobiles than the Laptops.

Why easy?

The reason is the Mobile Phones are traced by us through IMEI numbers searching with the help of Mobile Service Providers and this is also possible if mobile phone tracker software is installed in that phone. During purchasing mobile phones the seller note on their bill the IMEI or ESN number of that mobile. But in case of Laptop/Notepad MAC address is needed for searching the laptop/notepad and here lies the problem as most of the laptop users don't know anything about MAC address and not only that the sellers of Laptop/Notepad does not note on their bill during purchase the MAC addresses of the laptop.

What is MAC address?

MAC address is the full form of Media Access Control. So it is the unique physical address of that part of laptop/notepad (i,e:- the media), which is used to for connecting the network. For knowing details about MAC address pl google it.

How to find MAC address?

Finding MAC address or Physical Address ( Another name of MAC address) is different on different operating systems so you are requested to visit here. and then note the MAC addresses in separate place as this will be required if your laptop is stolen.

Can MAC be Changed?

The answer is yes. So now you will definitely raise question to me that if it can be changed so why will you note this in separate place as the criminal may change it after stealing the laptop/notepad. There are many softwares who allow you to change the MAC address in upper layer but they cant change the original MAC address of the system and for doing a trial you pl use TMAC software as per your OS. They can change the MAC and even they can bring back the original MAC so original MAC cant be changed and thats my original point of discussion in Part-2

To be continued..............Part-2

Thanking you,

Sujit

Thursday, December 2, 2010

What are Different types of Phishing

Hi My Friends,

I had already discussed you a lot about phishing but I think I have made you clear about the meaning and style of phishing but now the time has come to tell you about different types of phishing. I think you are thinking about online lottery fraud, job offer fraud, and fund transfer fraud and so on but my friends it’s not like that. I am going to tell about “Old wine in new bottle”. What does it mean? It is the style of business men to bring their old product in new style and in some specific style. I did not mention it earlier as all of these are phishing but some of friends told me to write about these topics otherwise writing about phishing will be incomplete.
Initially all the experts in the cyber world called all these activities are phishing and as time moves the experts started to christen the name of style of phishing as follows:-

A) Spear Phishing: - This comes in the form email like updating banking password, email id password and so on but this kind of email comes to a specific group of persons like the employees of a company or a government organization or same group and so on. It seems that the mail has come from your employer for divulging important information.

B) Smishing: - This comes in the form of SMS message. Like your mobile number has won $5 bln in a lottery and you are requested to contact Mr. G…… in his email id a….@hotmail.com and so on. And you are trapped.

C) Vishing: - This style of phishing happens through VoIP i.e:- Voice over Internet Protocol . Actually this is a combination of ‘Voice’ and ‘Phishing’. You are getting a net call from someone, who is asking you about your personal important information in the name of a company, where you have stake or you are a stake holder, employee or some other style. You will see an example of vishing in this blog here.

D) Whale-Phishing: - I think all of you know about whale. Whale is a big fish in the sea. So if you consider the net is a sea where we all are fish then if the phisher catches the most important person by his technique, he is a whale phisher. So I think you have understood about whale phishing. It’s a style of phishing where phisher targets the most important person of the concern like CEO of a company.

So my friends now you are clear about the types of phishing which are used to catch the netizens. Be cautious and divulge your personal information to him only, whom you trust after proper verification.

For reading other case studies on cyber crime pl visit.

Best of luck.

Thanking you,

Urproblemmysolution Team

Wednesday, June 16, 2010

How to secure your wifi


How To Secure Your Wifi

Dear Friends,

I told you earlier that the final episode of my wifi series is yet to come and that is the most important part of this series as this will tell you how to secure the wifi connections of everybody.

So lets go to that part:-

Wi-fi implementations vary from one application area to another. Like Home to Enterprise to Public Hotspots.

The Above Table summarises the minimum requirements that need to meet in each case in order to ensure adequate security.

I shall explain the terms very briefly to make this table meaningful to the users. Interested users may google these terms to get further detail very easily.

MAC Binding: This technology is used to allow only MAC addresses of few known devices to associate with the Access Point. This is suitable for very small sized network and is not scalable. Also this is prone to MAC spoofing attack.

Hide SSID: SSID is the identification string of a wi-fi network. The default behaviour of any access point is to broadcast SSID in beacon. This helps the users to easily identify the networks available to them. Wireless best practice guidelines suggests to hide SSID so that it is not visible through casual attempts to locate a wi-fi network. However there are plenty of scanners available those can detect hidden SSIDs.

Captive Portal: This is an authentication portal which is kept captive either inside the access point or any user authentication system. If this is implemented, whenever a user tries to use the wi-fi network for internet browsing for the first time, he is challenged with this portal by automatically redirecting his URL request in browser to the authentication portal page. On successful authentication, the originally requested URL is returned to the user's browser and access to the network is granted. However on failure access to the network is denied.

WPA2-PSK: Discussed earlier.

WPA2-802.1x: Discussed earlier. 802.1x implementation would require a RADIUS server and optional directory databases like LDAP/Active Directory/NDS etc.

SSL: SSL in this context is a PKI mechanism clubbed with 802.1x. This will require the presence of one or more digital certificate servers. This is applicable to different variants of EAP authentication - EAP/TLS, PEAP,LEAP etc.

SMS Auth: TRAI has mandated that in any public hotspot the owner must architect the user authentication process to prove the identification of the user against a photo identity card. Now an indirect process of complying this is SMS Auth. In this process an access PIN is system generated and consequently system delivered to the User’s mobile phone number upon successful user authentication. Now this indirectly takes care of the user’s identity verification against any valid photo-identity proof because the same has been done before this mobile phone number was allotted against the user’s name by the service provider.

Logging: Logging is a Facility to generate data and record the same to identify who with what MAC address and IP address had associated with which access point when for what duration. Most of the access points would generate such data. It is not a good idea to store the log data in the device itself. This will allow a hacker to remove all the traces of work very easily. It is required that the logs be stored on a Syslog server.

LWAP: Light Weight Access Points are APs those do not store the configurations locally on the devices. Rather the configurations are done and maintained in a central device called Controller. These are particularly required in a large wi-fi network. Centralised configuration ensures tight security policy enforcement all across.

AAP: Autonomous access points store configurations locally. These should be used in homes and very small office networks only.

I think it will be very helpful for you and please don't forget to say thanks to my friend Sudipto.

Thanking you

Urproblemmysolution team

Monday, May 17, 2010

Unsecured wifi and we--------Part-6

What is MIC

Dear friends,

This is the second part of one of our readers, valuable comment for making the series more easily understandable and as this is valuable command I am publishing it in front page for all of you.

Sitanshu said...

Dear All,

This is second part of the previous article I posted. Consider is the next page of the same article.

TKIP Message Integrity Check (MIC)

Similar to TKIP, the Message Integrity Check (MIC) had also many versions before 802.11i defined it as a single standard. Once this was done, MIC became known as Michael although the acronym MIC still remains. Today with 802.11i, ratified MIC is Michael and vice versa. The protocol itself was created to help fight against the many message modification attacks that were prevalent in the WEP protocol. The IEEE 802.11i standard describes the need for MIC in the following quote: “Flaws in the IEEE 802.11 WEP design cause it to fail to meet its goal of protecting data traffic content from casual eavesdroppers. Among the most significant WEP flaws is the lack of a mechanism to defeat message forgeries and other active attacks. To defend against active attacks, TKIP includes a MIC, named Michael.” The MIC was created as a more secure method of handling integrity checking compared to the IVC in WEP.

The MIC is a hash that is calculated on a per-packet basis. This means a single MIC hash could span multiple frames and handle fragmentation. The MIC is also on a per-sender, per-receiver basis. This means that any given conversation has a MIC flowing from sender A to receiver B and a separate MIC flowing from sender B to receiver A.

The MIC is based on seed value, destination MAC, source MAC, priority, and payload. Unlike IC, MIC uses a hashing algorithm to stamp the packet, giving an attacker a much smaller chance to modify a packet and have it still pass the MIC. The seed value is similar to the WEP protocol’s IV. TKIP and MIC use the same IV space, although they have added an additional four octets to it. This was done to make the threat of using the same IV twice in a short time period less likely.

The MIC is also encrypted inside the data portion, which means it is not obtainable through a hacker’s wireless sniffer. To add to this, the TKIP also left the WEP IVC process, which then adds a second, less secure method of integrity checking on the entire frame. To combat message modification attacks, the TKIP and MIC went a step further and introduced the TKIP countermeasures procedures. This is a mechanism designed to protect against modification attacks. It works by having an access point shut down its communications if two MIC failures occur in 60 seconds. In this event, the access point would shut down for 60 seconds. When it comes back up, it would require that all clients trying to reconnect change their keys and undergo a re-keying. Some vendors allow one to define these thresholds, although the MIC standard calls out these values.

To prevent noise from triggering a TKIP countermeasure procedure, the MIC validation process is performed after a number of other validations. The validations performed before the MIC countermeasure validation are the frame check sum (FCS), integrity check sum (ICV), and TKIP sequence counter (TSC). If noise was to interfere with the packet and modify it, one of these other checks would be able to find it first, thus preventing the frame from incrementing the MIC countermeasure counter.

Pl keep in touch for more interesting articles on this topic.

Thanking you

Urproblemmysolution Team

Sunday, May 16, 2010

Unsecured Wifi and we---------Part-5

What is TKIP

Dear Friends,

The topic has become interesting here as one of my valuable reader has shared his valuable knowledge with us for explaining more easily about some codes which are used in Wi-fi. TKIP is one of them and for that I have decided to post that technical term in front page for all of us and making this topic more attractive. So lets have a look on that comment

Sitanshu said...

Dear Sujit/Sudipto,

Thank you for a fantastic article on WLAN Security.

I thought that our readers deserve a bit more. There are many advanced users who would like to know more about TKIP, MIC, WPA, WPA2.

I'm therefore posting this article to explain to our valuable advanced readers the inner details of TKIP and MIC.

TEMPORAL KEY INTEGRITY PROTOCOL (For upgrading a WEP based Wi-Fi Network)

The (TKIP) Temporal key Integrity Protocol was an interim solution developed to fix the key reuse problem of WEP. By key reuse we mean that a single key was used to encrypt all packets in the transmission. Once you examined enough packets as mentioned in an earlier posting you could build the key using XOR operations (WEP Key Builder uses that concept)
TKIP later became part of the 802.11i and subsequently part of WPA and WPA2 standards. I have mentioned in a previous posting that both WPA and WPA2 are interim steps towards moving to 802.11i.

TKIP was included in the 802.11i standards for backwards compatibility. The 802.11i standard did not want to use a cipher based RC4, so they chose AES (Advanced Encryption Standard). TKIP was put into 802.11i for the sole reason of helping older devices transition to 802.11i. To do this, 802.11i needed to support a protocol that could easily upgrade WEP to something safe enough to include in 802.11i.. WEP as we all know was weak and flawed. Using TKIP protected against attacks and reduced the overall risk of operating a wireless network.
Today, Cisco differentiates its versions of TKIP and the standard one by calling it the Cisco Key Integrity Protocol (CKIP).
The TKIP encryption portion works in a two-phase process. The first phase generates a session key from a temporal key, TKIP sequence counter (TSC), and the transmitter’s MAC address. The temporal key is made up of a 128-bit value similar to the base WEP key value. The TKIP sequence counter (TSC) is made up of the source address (SA), destination address (DA), priority, and the payload or data. Once this phase is completed, a value called the TKIP-mixed transmit address and key (TTAK) is created. This value is used as a session-based WEP key in the second phase.
In the second phase, the TTAK and the IV are used to produce a key that encrypts the data. This is similar to how WEP is processed. In WEP the first 24 bits of the IV are added in front of the WEP key and then used to create an encryption key that is applied to the data. Then the IV is inserted into the packet header.
The basis of TKIP came from the WEP protocol. In the 802.11i standard, TKIP is referred to as a cipher suite enhancing the WEP protocol on pre- RSNA hardware. This is espoused because RC4 is still used as a cipher, although the technique in which it is used has improved greatly.

The article continues.....

Thanking you

Urproblemmysolution Team

Unsecured Wifi and we---------Part-4

What is history behind 802.11 in wifi

Dear friends,

So far you have spent your time by reading the three parts of this topic and at this stage I should tell you an interesting history behind this wifi. You have seen some numbers in the articles of my friend Sudipta and some of my friends may have thought that why those numbers are used here. Now I will tell you that thing. So pl read it.

We often hear words, tongue twisting Acronyms for Terms and Terminologies in the world of Computers and other related Technologies. Often these words and numbers do not seem to have any meaning. But they ALWAYS DO…..

Since this series of postings are on the Topic of “Wi-Fi Networks” , you hear the read about the number and letter string 802.11x all the time. Here is the History behind it.

The first meeting that IEEE held for “Network Communication Standards” was in – February of 1980. Therefore, the Working Group Committee for Network Communication Standards was given the number 802. Thereafter, a Subgroup number 11 was assigned for “Wireless Network Communication Standards”. That is the history behind 802.11 naming standard.

After this there have been several Wi-Fi Network Communication Standards. These standards were assigned letters “a”, “b”, “c”, and so on all the way to “m”. That is how you get 802.11a, 802.11b, 802.11c …..802.11m

This is little trivia behind 802.11 xs.

Hope that was interesting reading for you.

Pl keep in touch with us for more interesting article on this topic.

Thanking you

Urproblemmysolution Team

Monday, March 8, 2010

How to trace email sender


My Dear Friends,
I discussed you earlier about many type of cyber crimes, where we become a victims, like phishing mail, spoof mail, threat mail, cyber stalking mail and so on. But my friends if we know the or trace out sender then we can take precautionary measures and at least we can help those police officers, who does not know any thing about finding the sender of the offensive mail.
So, let talk about that. Before finding out the sender we should find out the header file of the mail and I think you know to find out the header file of the mail. Then copy the header file of the mail and open the link www.ip2location.com/emailtracer.aspx
You will find a open box (Pl c the picture above) there and then paste that header file, which you copied earlier and now click on "Find Location" and now you will see the IP address of the sender and also the path through which it came to you.
Now you give the sender's IP to the Police for there enquiry or investigation. I think this will help you lot from the cyber criminals, specially those who make you fool by there phishing mails.

Here is Video Tutorial from other links and I thought it is helpful for everybody and thats why this for you.

http://www.metacafe.com/watch/1355889/how_to_trace_email_sender_and_locate_him_with_the_satellite/

Pl copy it and paste it on your browser and enjoy.

Thanking you,

Urproblemmysolution team

Thursday, February 25, 2010

A HI-Tech Crime with Bank ATMs



My Dear Friends,
Now I am going to tell you another true story about a hi-tech crime by low profile criminals with bank ATMs. Perhaps you are thinking that I am going to tell you about ATM hacking by using spy cam of skimmer. No my friends I will not tell you that but I will tell you how the low profile criminals have discovered the vulnerability of bank ATMs, where you take out your ATM card after swiping it in the card reader. Now I will request you to take a careful look at the above picture and Now you will see three rounded unmarked keys and the criminals are using vulnerabilities of these three keys. Mainly they are using two keys by the both sides of 0 (zero) in the key board. Perhaps you are thinking what can they do with these two keys as they they are not usable. But my friends here is the vulnerability of the Bank ATMs. I don't want to discuss much more than this here as this may be misused by criminals.

Now I will tell how you are victimised in this ATM counter.

Step 1:- You have entered in the ATM room for withdrawing your money.
Step 2:- You have swiped your ATM card and taken it out from card reader.
step 3:- You have been asked to put your PIN number.
step 4:- You have given your PIN number but the monitor is not showing you the cross mark on the screen its invisible.
Step 5:- You will see your screen is dark and then you will be perplexed and think that the ATM machine is not functioning so you will come out and someone may request you to come out from there quickly as he is in hurry.
step 6:- That person will be able to withdraw money from there and in the mean time you have left the place already.
step 7:- you will find another ATM for your urgent withdrawal and there you will find that your balance has been deducted by rs. 10000 or 20000.

Now you will be surprised and contact with your bank and they will tell you yes you withdrew this amount as the system was showing the successful transaction and bank ATM authority has checked their physical balance, which also show the successful withdrawal.

Now what will you do?

You will go to police station and police will not believe it as I think most of the police personnel are not aware of this crime.

So you will have to remain cautious for this for saving your own hard earned money. So what will you do? If this situation (Step 4 and 5) comes to you in any ATM counter don't come out from that room (ATM Counter) stay there at least 10 minutes as your session is still pending there otherwise the miscreants will utilize your session and withdraw money from your account.

How they are I will not tell you this thing is happening and be cautious.

This is not cyber crime but this is a computer related crime and thats why I have told you. So my friends be cautious about these type of criminals and this is happening in the crowded places, where there is a huge ATM withdrawl everyday.

Disclaimer:- This is for awarness purpose if anyone misuses it he will be completely liable for this.

Thanking you,

Urproblemmysolution Team

Monday, February 15, 2010

What is New in Phishing

My Dear Friends,

I already brought before you different types of phishing earlier and all my writings were on the basis of originals facts, which happen in daily life, and these are not from any books or from any lectures or from those who don't do anything but shows that they do everything. So what I am going to bring before you a new type of phishing, which I detected after getting a information from someone.

This is actually Phishing in the form of Extortion. These type of mail goes to the renowned persons in the society. He may be a Doctor, businessman or any big corporate personality and in the place of sender's email id it will be a email id of an extremist group.

Now just have a look on the email id. maoist.in@yahoo.com, maoist.in@gmail.com, alkaidaagent@yahoo.com and so on. Actually they are using the name of the extremist group of the target country for sending mail to their target persons and they are claiming money from them by telling that they had been appointed for killing him within a stipulated period and if he (the target) pays him a certain amount they will disclose him the name of that person and will not kill him but if the target does not pay they will kill him on that very day.

After getting the mail if the target person responses they will give him the account number and there after they will withdraw the money from their through ATM counter and the person in whose account the money will be deposited by the victim he is also a victim in this case as they are using his Bank Account like other phishing cases.

Now definitely you are thinking who is the culprit behind it. Yes my friend I think you are guessing about the right man. They are none other than the ...........
No no I don't want to tell the name of that Continent and that community people as they may say again we are. Really my cheat brothers I don't want to take your name here and thats why I am not telling. I hope one day you will come in the life of civilized society.

So my friends I will request you not to get affraid on these type of mails as these are phishing mails in the form of extortion and I will also request you to spread this news to all of your friends about this recent phishing mails.

Best of luck.

Thanking you,,

Urproblemmysolution team.

Saturday, February 13, 2010

How to Avoid Keylogger


My Dear Friends,
I think all off you have got a good lesson from my last case study and every one is anxious about their net banking and even using their mobile phone. I am telling you one thing that after detecting this case when my friends and others knew the mode of operation of hackers they got scared when their mobile phones were not responding even after seeing the full signal tower on their phone.
But now I will tell you how to bypass the keylogger, which steals all of your keystrokes and even screen shots, in your computer for doing any net transaction or opening your official and very personal email id. Keylogger can be installed by remotely also and thats why this is very very dangerous for all as sometimes you can't fell its presence in your computer. So you can only get relief from keylogger if you install KeyScrambler in your Mozilla Firefox browser and don't forget to use Mozilla as your browser in case of secured net banking or opening email id as mozilla has all the qualities to give you security. You should know that even Virtual keyboard is now a days not out of danger from Keylogger
Now I will tell you how to install this add on on your browser. Open Mozilla browser ->Tool->Add on->Get Add on->write KeyScrambler->Browse and now you follow the direction. And now your key board is secured from Keylogger.
Please do this and get the result. Don't forget to say thanks.

Thanking you

Urproblemmysolution Team

Wednesday, September 16, 2009

What are the signs of Identity Theft

What are the signs of Identity theft?

Dear Friends,

You have learnt so far that what is Identity theft and how your identity is theft by criminals and we requested to see two films namely “The Net” and “The Net 2” for knowing the original incident in the world as well as cyber world and now we are going to tell you the signs of Identity theft i.e.:- how your will start suspect that your identity might have been theft. So let give a look on the following points:-

• Accounts you didn't open and debts on your accounts that you can't explain.
• Fraudulent or inaccurate information on your credit reports, including accounts and personal information, like your Social Security number, address, name or initials, and employers.
• Failing to receive bills or other mail. Follow up with creditors if your bills don't arrive on time. A missing bill could mean an identity thief has taken over your account and changed your billing address to cover his tracks.
• Receiving credit cards that you didn't apply for.
• Being denied credit or being offered less favorable credit terms, like a high interest rate, for no apparent reason.
• Getting calls or letters from debt collectors or businesses about merchandise or services you didn't buy.

With Thanks

Urproblemmysolution Team

Friday, September 11, 2009

What is Identity Theft

What is Identity Theft?


Hallo Friends,

Sorry for being absent from you for a long period. We had already discussed most of the cyber crimes which occurs in cyber world to our personal life and as our motive is to make aware the netizens about the danger of cyber world and how to remain safe from them without knowing any good computer knowledge and just from applying the common sense so we will now bring before you another dangerous cyber crime which may make your life hell even you are not aware of anything about the complaint against you. Yes friend it is Identity theft.

So let us discuss you what does it mean? Suppose your name is Bill Clinton and you have your credit card, social security number, separate bank account, office identity card and so many things which will speak for your identity and someone has stolen all the data of your personal information and reaching all those places before you and taking all the advantages which you should get or doing crime in your name and in this situation cops has reached in your house for arresting you. What will you feel now? We think it will not be a good experience for you and your family. So we can tell that when someone steals someone’s identity that is called identity or ID theft. Let discuss in the voice of cyber world.

Identity theft is a phrase that is used to describe any kind of fraud that results in the loss of personal data, such as passwords, user names, banking information, social security numbers or credit card numbers.

There are two main types of identity theft – account takeover and true name theft. Account takeover identity theft refers to the type of situation where an imposter uses the stolen personal information to gain access to the person’s existing accounts. Often the identity thief will use the stolen identity to acquire even more credit products by changing your address so that you never see the credit card bills that the thief runs up.

True name identity theft means that the thief uses personal information to open new accounts. The thief might open a new credit card account, establish cellular phone service, or open a new checking account in order to obtain blank checks. The Internet has made it easier for an identity thief to use the information they've stolen because transactions can be made without any real verification of someone’s identity.

I would request you to see two great Hollywood movies over this for your better understanding. They are “The Net” and “The Net 2”.

With Thanks

Urproblemmysolution Team

How Identity is theft

How Identity is theft


Hallo Friends,

We have discussed about identity theft and now we will brief you how your identity is theft.

1) Social networking: - This is as good as bad for everybody in the net as most of the person who does not think for evil side of the net supplies their personal details to their new unknown friends.

2) Untrusted web form fill up and Job Sites, where we put our personal details for getting job.

3) Skimming:- This happens for Credit cards. (PL search for details about skimmer and skimming in this blog for)

4) Phishing:- All of you have already been discussed in this blog in details. So please search for it.

5) Old-Fashioned Stealing:- They steal wallets and purses; mail, including bank and credit card statements; pre-approved credit offers; and new checks or tax information. They steal personnel records, or bribe employees who have access.

6) Pretexting:- They use false pretenses to obtain your personal information from financial institutions, telephone companies, and other sources.

Again I would request to see the Hollywood Movies “The Net” and “The Net 2”

With Thanks

Urproblemmysolution Team

Wednesday, September 2, 2009

What is Infectious Website

What is Infectious Website

Dear Friends,

We have already discussed many topics in our blog and now we are going to tell you about infectious website. We think now you are thinking that is it possible? Website and that is infectious, its cant be possible. But my dear friends it’s possible. Now definitely a question has come to your mind that so what is infectious website.

A infectious website is that website which contains virus or harmful materials for your computer and when you run that website your computer will face problem and if you have strong antivirus or use good browser like Mozilla or IE or Google Chrome they will alert you that you are going to visit an infectious website which can cause problem to your computer. Now if you don’t visit its ok but if you continue there is every possibility of installing virus or Trojan in your computer even your antivirus can’t stop it to install it. So we think you have understood how danger it is. But there are also some websites for which browser will not alert you about its infectiousness but they are infectious. Now you should realize which is dangerous and which is not though it is infectious. The infection report which shows the containing about virus, Trojan and worm and other vulnerable software are dangerous but the others are not so vulnerable.

How the websites get infectious?

When a website is taken control by outsider and installs some hidden vulnerable software or Trojan in its content, it gets infectious or when the web administrator installs it with its content for attacking the target machine which visits its site and this happens in case when you visit some porn site or hackers own site and in this cases your browser even cant alert you about its vulnerability.
Even our experience says that one well known Management and Engineering College’s website is also vulnerable and if you visit you will be attacked by Trojan and virus and those will be installed automatically.

Now see the scan report of that website and we are not telling the name of that College.

Diagnostic page for thatverycollege.org

What is the current listing status for thatverycollege.org?

Site is listed as suspicious - visiting this web site may harm your computer.
Part of this site was listed for suspicious activity 5 time(s) over the past 90 days.
What happened when Google visited this site?

Of the 4 pages we tested on the site over the past 90 days, 3 page(s) resulted in malicious software being downloaded and installed without user consent. The last time Google visited this site was on 2009-08-19, and the last time suspicious content was found on this site was on 2009-08-18.

Malicious software includes 8 trojan(s), 2 scripting exploit(s), 2 virus. Successful infection resulted in an average of 1 new process(es) on the target machine.

Malicious software is hosted on 1 domain(s), including chura.pl/.

This site was hosted on 1 network(s) including AS32244 (LIQUID).

Has this site acted as an intermediary resulting in further distribution of malware?

Over the past 90 days, thatverycollege.org did not appear to function as an intermediary for the infection of any sites.

Has this site hosted malware?

No, this site has not hosted malicious software over the past 90 days.

How did this happen?

In some cases, third parties can add malicious code to legitimate sites, which would cause us to show the warning message.
This was the scan report of thatverycollege.org website

How to Scan a Website?

Now definitely you are very much eager to know what the easiest way to scan a website is. Google helps us to scan a website through their scan system and here is the tool of Google.
http://www.google.com/safebrowsing/diagnostic?site=www.example.com (replace www.example.com with your own site address). It will show whether Google found anything suspicious on your site.

Thanking you
Urproblemmysolution Team

Sunday, August 30, 2009

What Is Virtumonde

What is Virtumonde?

Dear Friends,

In our earlier posting we discussed about Fake Antivirus and it may be in case of Spyware i.e.: Fake Anti-Spyware but now we are going to discuss you who is the villain behind all these. We think now you have understood what its name is, yes it is Virtumonde. So let us make you clear what Virtumonde is? This is a Trojan which came in the world of internet I the year 2004 for playing a dangerous game with us i.e.: netizens.

What do they do?

If they are installed they come in the form of pop up by showing that your computer is infected and u need to scan it by a particular anti-virus or anti-spyware and the said pop-up will also come on your screen when you are offline and not only that they disable your automatic system update and the function of your original antivirus. Do you know if you are infected by this Trojan they don’t allow your browser to surf those sites which guides you to remove this Trojan, disable the registry editor, msconfig, task manager, Firewall? So we think now you have understood how danger this is.

Its Removal.

It is tough to remove this Trojan from computer if once infected but you can get help or try by reading the guidelines of www.bleepingcomputer.com but we are not sure about this when one of our friend’s computer was infected we advised him to format the computer after taking a backup of some important files and he did so. But mind it if your anti-virus is updated they will alert you that your system is infected with vundo or Virtumonde Trojan.

So friends take care keep on touch with us for some more cyber crime prevention awareness which you don’t know.

With Thanks

Urproblemmysolution team

Wednesday, August 26, 2009

Some steps to save your computer

Dear Friends,

After long interval again here are some tips for you for keeping your computers safe from hackers/crackers which is given to us by one of our readers for the sake of all netizens who has to visit internet for their works.


1. Install Anti-Virus Software - This should not even have to be listed, if you don’t have anti-virus software installed, you’re asking for trouble! And if your reason for not installing anti-virus software is because it’s too expensive, then that can reason can be shot down because there are several free anti-virus programs out there that are considered better than commercial software packages

2. Update All Software - Installing an anti-virus program by itself is not enough. There are hundreds of new threats that are found daily and the anti-virus programs release updates regularly to combat the new threats. Make sure you anti-virus program is set to update automatically so that you don’t have to rely on your memory to do it. Also, this goes for all the software on your computer. The most important software to keep up to date is your Windows operating system. It is essential to have Automatic Updates turned on and set to download and install updates automatically.

3. Install only Trusted Software - If you’re not sure what a piece of software does from it’s name, then don’t install it. Also, don’t install anything you didn’t intend to install in the first place. Sometimes programs will ask you to install other programs during the install of the first application. Be careful of that because it’s usually spyware. Install software from big names sites only, such as Microsoft or Adobe.

4. Avoid P2P File Sharing Software – If used with great caution, P2P software is quite useful for movies, songs and software, but if you’re not very technically savvy, you might end up downloading a song that has a keystroke logger attached to it that will send anything you type to some other computer over the Internet. It’s almost impossible to tell that this is occurring unless your anti-virus or anti-spyware programs pick it up in their scans.

5. Delete Unknown Emails – If you receive emails from random people’s names, do not bother to open the email, just delete it. If you have any doubts after reading the name and the subject, it’s probably not someone you know. Never download or open attachments unless you are sure it’s from someone you know. Give the person a call quickly and ask them if you’re not sure. Most large companies that you create online accounts with will not send you attachments unless you specifically ask for them through their web site. Also, be wary of any emails from sites pretending to be banks, auction sites, etc asking for you to verify bank account info or address info. No bank ever does that.

6. Do not click on Ads - Avoid clicking on ads if you can. Especially those ads where something is flying around and if you shoot the duck, you win some prize! Ads have become more sophisticated in that they try to make the ad interactive so that you’ll be tempted to play it like a game.

7. Run Virus Scans Regularly – If you’re not in the mood to scan every day, at least run a scan once a week. Actually, setup a schedule for your computer in your anti-virus software to run a scan late at night or whenever you don’t use your computer and that way you won’t be bothered with a slow computer.

8. Be careful what you attach to your computer – This is a more common way to transfer viruses than you might think. Everyone now has a USB flash stick that they carry around on their key chains, ready to snap into any computer. But who knows what your viruses are on your friends computers and what accidentally got transferred to their USB stick. A lot of virus programs will auto launch right when the USB stick is put into the computer, so you don’t even have to open or download any of the files to be infected.

9. Avoid Shady Web Sites – If you need to look at porn, then make sure you do it in a virtual environment. You are DEFINITELY going to get some virus or spyware if you browse porn sites on your computer. Virtualization basically allows you to run programs like Internet Explorer in a virtual environment that does not effect your current operating system. If you want to find out more, search for “Virtual PC” or “VM Ware” in Google. Otherwise, simply avoid going to shady web sites!

10. Turn On or Install a Firewall - If you’re running Windows XP, make sure Windows Firewall is turned on. A firewall prevents hackers from gaining access to your computer by limiting the number of ports that are open to the public. Also, when buying a wireless router, make sure it has a built in firewall. Having a software and hardware firewall is better than just having one or the other.

11. Secure Your Wireless Network – Most wireless routers are set to no security when you install them. Be sure to log into the router and at least set the basic security that requires a password. There are stronger encryption options, but if you don’t understand those, then simply set a password on the router, otherwise anyone can connect to your home network and access everything.

12. Use a Complex Password for Login – This means that you should already have a password to login to your computer. Not having a password at all is not a good idea. Create a password for all user accounts and make sure it’s complex. Complex means it should have numbers, upper case characters, lower case characters, and symbols. This makes it way more difficult for a hacker to get into your computer.


With Thanks

Urproblemmysolution team