Saturday, 28 April 2018

How to check Spectre and Meltdown on Ubuntu/Debian ?

Debian/Linux with Spectre and Meltdown vulnerability
Using Terminal
   To check Spectre and Meltdown vulnerability by Terminal, enter that command. You will see information about security vulnerabilities on the CPU from Linux kernel developers:
      grep . /sys/devices/system/cpu/vulnerabilities/*

Using Spectre & Meltdown checker for Linux
   If you would like to know more about the Specter and Meltdown vulnerabilities, you can use the "Specter and Meltdown checker for Linux"

   First, enter the that command to download "Specter and Meltdown checker for Linux":
      git clone https://github.com/speed47/spectre-meltdown-checker
      cd spectre-meltdown-checker

   Next, to check and see details about the Specter and Meltdown vulnerabilities on your CPU, enter this command:
      sudo ./spectre-meltdown-checker.sh

   You will find detailed information about security vulnerabilities Meltdown, Specter Specter v1 and v2 on your CPU. And whether your computer is vulnerable to attacks via Specter and Meltdown vulnerabilities

How to patch vulnerabilities Specter and Meltdown ?
   Developers will release patches through the packages, so update your Linux distribution regularly

Read more: 
 * Spectre & Meltdown checker for Linux
 * Meltdown and Spectre - Two serious Security Holes in the CPU severely

Ransomnix ransomware variant encrypts websites



Ransomnix is a (supposedly Jigsaw, but not really) ransomware variant that holds websites for ransom, and encrypts any files associated with the website.

This ransomware was discovered in the second half of 2018, and there's a brief write-up by Amigo-A here as well: Ransomnix ransomware

In this blog post, we'll discuss a newer variant.


Analysis

Several encrypted websites were discovered, which display the following message:

Figure 1 - Ransom message, part 1

Figure 2 - Ransom message, part 2

The full message is as follows:


JIGSAW RANSOMNIX 2018
I WANT TO PLAY A GAME!
Now Pay 0.2 BTC
OR
Payment will increase by
0.1
BTC each day after
00:00:00
Your Key Will Be Deleted
Your Bill till now 2.4000000000000004 BTC
Dear manager, on
Fri Apr 06 2018 02:08:34 GMT+0100 (GMT Summer Time)
your database server has been locked, your databases files are encrypted
and you have unfortunately "lost" all your data, Encryption was produced using
unique public key RSA-2048 generated for this server.
To decrypt files you need to obtain the private key.
All encrypted files ends with .Crypt
Your reference number: 4027
To obtain the program for this server, which will decrypt all files,
you need to pay 0.2 bitcoin on our bitcoin address 1VirusnmipsYSA5jMv8NKstL8FkVjNB9o (today 1 bitcoin was around 15000 $).
After payment send us your number on our mail crypter@cyberservices.com and we will send you decryption tool (you need only run it and all files will be decrypted during a few hours depending on your content size).
Before payment you can send us one small file (100..500 kilobytes) and we will decrypt it!
It's your guarantee that we have decryption tool. (use your reference number as a subject to your message)
We don't know who are you, All what we need is some money.
Don't panic if we don't answer you during 24 hours. It means that we didn't received your letter and write us again.
You can use one of that bitcoin exchangers for transfering bitcoin.
https://localbitcoins.com
https://www.kraken.com
You dont need install bitcoin programs - you need only use one of this exchangers or other exchanger that you can find in www.google.com for your country.
Please use english language in your letters. If you don't speak english then use https://translate.google.com to translate your letter on english language.
You do not have enough time to think each day payment will increase by
0.1 BTC and after one week your privite key will be deleted and your files will be locked for ever.

People use cryptocurrency for bad choices,
 but today you will have to use it to pay for your files!
 It's your choice!

The following JavaScript is responsible for keeping track of the price, and increasing it:

Figure 3 - JS function

The starting price is set at 0.2 BTC, but will increase every day with 0.1 BTC thanks to two functions: inprice and startTimer.
The function for calculating the time and date, startTimer, is a copy/paste from the following StackOverflow answer: The simplest possible JavaScript countdown timer?

Note that the start_date variable, 1522976914000, is the epoch timestamp in milliseconds, which converted is indeed Friday 6 April 2018 01:08:34, as mentioned in the ransom note.

Ransomware message details:

BTC Wallet: 1VirusnmipsYSA5jMv8NKstL8FkVjNB9o
Email: crypter@cyberservices.com 
Extension: .Crypt

Files will be encrypted, as claimed by the cybercriminals, with RSA-2048.

Unfortunately, it appears several people have already paid for decryption: 1VirusnmipsYSA5jMv8NKstL8FkVjNB9o


Disinfection

If possible, restore the website from a backup, and consequently patch your website, this means: install all relevant and security patches for your CMS, and plugins where applicable.

Then, change all your passwords. Better be safe than sorry.

It is currently unknown if decryption is possible. If you have an example of an encrypted file, please do upload it to ID Ransomware and NoMoreRansom, to see if decryption is possible, or if a decryptor can be developed.


Prevention

For preventing ransomware that attacks your websites, you can follow my prevention tips here.

General ransomware prevention tips can be found here.


Conclusion

Ransomware can in theory be installed on everything; whether it's your machine, your website, or your IoT device. Follow the prevention tips above to stay safe.

Remember: create backups, regularly, and test them as well.



IOCs

[WARHOX] PHISHING INSTAGRAM HACKED WITH 1000% PROF💣




DISCLAIMER: This Channel DOES NOT Promote or encourage Any illegal activities , all contents provided by This Channel is meant for EDUCATIONAL PURPOSE only .

Copyright Disclaimer Under Section 107 of the Copyright Act 1976, allowance is made for "fair use" for purposes such as criticism, comment, news reporting, teaching, scholarship, and research. Fair use is a use permitted by copyright statute that might otherwise be infringing. Non-profit, educational or personal use tips the balance in favor of fair use.

-------------------------------------------------------------------------------------------------
_________________________________________________________________

codes to use on one click .bat file

_________________________________________________________________


1.
open notepad / any text editer software


2.
type this code

_________________________________________________________________

@echo off

start firefox "https://temp-mail.org/en/" "http://shadowave.co/?do=victims" "https://web.whatsapp.com/"

_________________________________________________________________

3.
save as ".bat" file

4.
and click on it...........


U can watch the full video










Thursday, 26 April 2018

Cable Master 2018 (FULL HD) For All Windows


Cable Master 2018 (FULL HD) For All Windows

Description :

Cable Master is a Entry Level digital video player for cable TV operators. With Cable Master you need not worry about faulty VCRs', VHS tapes, VCD Players or even the staff running your Cable Channel. All you have got to do is load movies, songs, ads, promos for days on the computer, set the sequence and let Cable Master do the rest. Cable Master will play your movies, Cable along with advertisements. What's more it also displays ad crawlers at the bottom of the screen. So you need not invest in additional titlers and overlay boxes.

Cable Master Features :

  • Easy Song List Making
  • Easy Song Play Time Configuration
  • Song Null Link Finder
  • Song Again Run Protection
  • Easy Scroll Ads Updation
  • Scroll Ads With Flash Support
  • 2 Extra Ads Support With Scroll Ads
  • Video Ads
  • 2 Channel Logos
  • 2 Sponsors Logos (Time Based)
  • SMS on Demand
  • Dial a Song Using mobile Phone
  • Support Both SMS and Dial Song Selection
  • Songs Preview During Software Running
  • Load and Scroll Ads Hide During Video Ads
  • Custom Screen Settings
  • Song Current and Next Updation on Screen
  • Simple & Easy User Interface
  • Download features List For Full Details
















 
Hardware Requirements
  •  
  • Processor : Pentium 4 2.8 GHz or higher.
  • Memory : 2-GB RAM.
  • Hard Disk Drive : As per Your Choice Or Channel Requirements.
  • Video Card : Any ATI Radeon AGP or PCIx Graphics Card With TV-Output.
  • Sound Card : Any 64 bit PCI card or Onboard.
  •  

Tuesday, 24 April 2018

[Solved] This Account Has Been Suspended Free Fire 100% Working (root only)


Hello Guys Welcome In My Blog And Today I Show You A Trick To Solve Your Free Fire BattleGrounds Suspended Mobile Account.

So First i Explain You What The main problem when you create new account and new guest Account And It always Shows "THIS ACCOUNT HAS BEEN SUSPENDED" Becouse This Game Use Your Phone Identity like IMEI Number To create Your Account.




So Follow My Steps.
  1. First You need to install Xposed Fremwork And Activate It.
  2. And Goto Download Section in Xposed installer And Search "XPRIVACY" and Download It And Install it.
  3. And Go-to Modules Section in Xposed Installer And Check  XPRIVACY Activate.
  4. And After Reboot your phone.
  5. AFTER Rebooting Goto Xprivacy And Skip All First Time Tutorials And Search "FREE FIRE" AND click on it and disable Identification for This App.
  6. AFTER Successful Completed this Process you can now play Free Fire In Suspended Mobile.

And Watch This Video Gauide.