Monday, 7 May 2018

El clasico 2018 Preview | Barcelona vs Real Madrid | Match review




Welcome to Knowledge Tube El clasico Session.

today we will show you Important Match Moments | Preview for El clasico 2018

Gareth Bale, Real Madrid Battle to 2-2 Clasico Draw with Barcelona at Camp Nou

Gareth Bale scored the equaliser for Real Madrid in Sunday's Clasico against Barcelona as the two rivals shared the spoils after a hard-fought match.

Luis Suarez and Cristiano Ronaldo both scored in a fiery first half that ended with several bust-ups and a straight red card for Sergi Roberto.

Down to 10 men, Barcelona fought like lions in the second half and regained the lead through Lionel Messi. Real, without a hobbled Ronaldo after the break, equalised again through Gareth Bale and couldn't find a late winner.

The result means Barcelona's bid to go an entire La Liga campaign unbeaten is still alive.

Sunday's Result May Have Been Barcelona's Best

Unbeaten Barcelona have won 26 matches in La Liga this season, but if they manage to complete their "invincible" campaign, this 2-2 draw against their archrivals may go down as their best result of them all.

Not only did the Blaugrana survive Real's push for a winner with relative ease despite being down a man, but the Catalans had the better chances after the break and perhaps should have won.

Former England international Gary Lineker already has a nickname lined up for the champions:

Petty Real Refuse Guard of Honour

La Liga has a longstanding tradition of honouring its champions with a guard of honour, but Real Madrid had no interest in paying homage to their rivals, setting the tone for a chippy affair.

They were widely mocked for their petty stance, and deservedly so:
Los Blancos will defend their decision by pointing out Barcelona didn't do the same after Real won the Club World Cup, but there's no such tradition. Real were wrong, plain and simple.

El Clasico Needs Better Officials
If fans were afraid Sunday's Clasico would be a tame affair due to the lack of silverware at stake, they clearly weren't paying attention to how badly these teams hate each other. Aided by an official who completely lost the plot, the match got out of control at the end of the first half.

Suarez and Sergio Ramos started things off with a shoving match, Lionel Messi retaliated, and things only got worse from that point. Somehow, Gareth Bale got away with a horror tackle on Samuel Umtiti that didn't even result in a card, while Roberto lost his head and lashed out at Marcelo, earning himself an early shower.

Sportswriter Sid Lowe was not impressed with the officiating:

Messi's second-half goal came after what appeared to be a clear foul from Suarez on Raphael Varane, but play was allowed to continue.



Liverpool Can Feast on This Real Defence

Suarez's opening goal came after a wonderful attack that saw Roberto pick out the striker with a great cross, but it was hard to ignore the acres of space the full-back found himself in. Marcelo completely lost track of his man, the latest in a persistent line of defensive blunders that have plagued Real's defence of late.

ESPN FC's Dermot Corrigan singled out the Brazilian:

Messi's goal likely shouldn't have stood as Suarez was too aggressive in winning the ball from Varane, but the French defender didn't have the strongest footing and could have done better.

Between Mohamed Salah, Roberto Firmino and Sadio Mane, Liverpool have the pace and quality to exploit such mistakes in the Champions League final.



Ronaldo Surpassed Di Stefano Long Ago

Alfredo Di Stefano is a celebrated figure in Real history for all the right reasons, but Sunday, Ronaldo tied yet another one of his club records:

Some fans were already convinced Raul surpassed Di Stefano as Real's greatest ever forward in the previous decade, but both of them sit well behind Ronaldo in that pecking order at this point.



Benzema's Surging Confidence

Karim Benzema has been a constant target for criticism all year long, but the former Lyon man is quietly putting together a solid stretch of late. He played a massive role in the Champions League semi-finals triumph against Bayern Munich, and it was his clever headed assist Sunday that gave Ronaldo the equaliser on a platter.

He has often reserved his best performances for the European stage, including this year, bagging four goals in the Champions League and just five in La Liga. It would be a fitting end to the season if his improving form saw him star against Liverpool later this month.

----

Elite Playout Ver.3.8.6

OUR "ELite" IS SMART

  • EASY INSTALLATION

    Installation is done in just a few steps. There is no any SQL prerequisities. Our DB is now integrated.
  • INSTANT LICENSING

    The application is licensed only a few seconds after the purchase! Also, at any time, you can return the license to the activation server in the case of replacing the computer or operating system.
  • SIMPLE MEDIA ASSET MANAGAMENT

    As part of the program, you can use the integrated database. Entered metadata will be used for automated processes.
  • MULTI FORMAT PLAYBACK

    Multiple Format Capability. Play your content instantly without unnecessary conversions.
    • MXF
    • MP4
    • MPG
    • GXF
    • AVI
    • MOV
    • DNXHD
    • PRORES
  • CHOOSE YOUR OUTPUT!

    Our “ELite” will suit your needs. Just choose your destination:
    • SDI 4K/2K/HD/SD output using BlackMagic Decklink or Intensity cards
    • UDP Multicast/Unicast H.264 streaming (nVidia or Intel QuickSync required)
    • Newtek NDI IP output (send your video output to vMix or TriCaster using Gigabit network)
    • Direct Show OUT
  • CHOOSE YOUR INPUTS!

    Except for video files, playlist support “live” sources:
    • SDI using Decklink or Intensity
    • Stream sources (UDP, RTMP or even Youtube video clips)
  • ADVANCE PLAYLIST AUTOMATION

    Using our included “Scheduling” tool, you can schedule broadcast weeks in advance. Just create a Playlist, select the start time and press the magic button “PUSH TO PLAYOUT”. Playout will analyze all sent playlist and start each according schedule.
  • AUTOMATION HELPERS

    What if something goes wrong? No worries! “ELite” has everything you need to have.
    • Default “LOOP” list
    • Fixed time events and gap calculations
    • “Gap” fillers
    • “Missing file” filler
  • BROADCAST GRAPHICS

    Modern television does not exist without the rich graphics. Therefore, “ELite” is able to meet the needs.
    • Animated PNG sequences playout (looped, one time…)
    • Multiple crawls and rowls with custom separators (typed manually or linked to text file)
    • SWF Flash playback
    • Pictures
    • Logo insertion
  • CG BRANDING

    Help your audience! Turn your schedule to graphics:
    • Watching now
    • Watching next
    • Later
  • AS RUN LOGS

    The actual accurate record of programming and commercial schedules for each viewing network or entity.
    • Export to XML
    • Export to Excel










How To Add or Change Default Search Engine in Google Chrome

Search engine most of the internet user heard the name and also use it. When we need a content. So, To find the content easily, we usually search it on a search engine.

There are a lot of search engine like google, yahoo, bing etc. So, today I will show you how to change the default search engine of Google Chrome browser.

Step-1: Open your google chrome browser.

Step-2: Click on the three-dot in the top right corner and click "Settings"

Step-3: Scroll down and click "Manage Search Engines" under the search engine menu.

Step-4: There you will see many search engine. You can change the default search engine from here or you can add any other by clicking "Add"

Step-5: If you click on "Add" there a pop up menu will appear. You need to fill the form carefully. After that click on "Add"

Step-6: Now you will see your new search engine. To make it default click on "Three-dot" besides the new engine. Then click on "Make it default"

If you face any problem you can watch the video



Parrot Security OS 4.0 Beta release

Read more: Parrot Security OS 3.11 Release
Parrot Security OS 4.0 Beta release
What's the Parrot Security OS?
Parrot Security OS (or ParrotSec) is a Linux distribution based on Debian with a focus on computer security. It is designed for penetration testing, vulnerability assessment and mitigation, computer forensics and anonymous web browsing. It is developed by the Frozenbox Team.

Do you want to be a beta tester of Parrot Security OS 4.0?
   Download the latest testing releases from here
   Try them and send your full report to team@parrotsec.org or paste it as a comment below
   Join the Parrot Community for more information


PSCrypt ransomware: back in business


PSCrypt is ransomware first discovered last year, in 2017, targeting users and organisations alike in Ukraine, and the malware itself is based on GlobeImposter ("GI") ransomware.

I've written about PSCrypt in the past, when it was distributed via Crystal Finance Millenium's hacked website: Crystal Finance Millennium used to spread malware

In this quick blog post, we'll take a look at the latest iteration of PSCrypt.


Analysis

A file named "xls.scr", which sports a fancy "energy" or "power" icon is responsible for loading PSCrypt on the machine, and was spread via a phishing campaign.

Figure 1 - Icon

The ransomware has the following properties:


As mentioned earlier, PSCrypt is based on GlobeImposter and as such, has very similar functionality.

The following folders are excluded from being encrypted:

Avast, Avira, COMODO, Chrome, Common Files, Dr.Web, ESET, Internet Explorer, Kaspersky Lab, McAfee, Microsoft, Microsoft Help, Microsoft Shared, Microsoft.NET, Movie Maker, Mozilla Firefox, NVIDIA Corporation, Opera, Outlook Express, ProgramData, Symantec, Symantec_Client_Security, Windows, Windows App Certification Kit, Windows Defender, Windows Kits, Windows Mail, Windows Media Player, Windows Multimedia Platform, Windows NT, Windows Phone Kits, Windows Phone Silverlight Kits, Windows Photo Viewer, Windows Portable Devices, Windows Sidebar, WindowsPowerShell, Wsus, YandexBrowser, ntldr, spytech software, sysconfig, system volume information

This iteration of PSCrypt will encrypt all files, including executables, except those files with the following extensions:

.$er,.4db,.4dd,.4d,.4mp,.abs,.abx,.accdb,.accdc

As usual, a temporary batch file will be used to clear Volume Shadow Copies as well as Event Logs:

Figure 2 - Batch file

What's new in this iteration of PSCrypt is not only the changes implemented by/via GlobeImposter ransomware, but also the ransom note itself, as noted in Figure 3 and 4 below:

Figure 3 - Ransomware note, part 1

Figure 4 - Ransomware note, part 2

The title of the ransom note is "Ваші файли тимчасово зашифрувати! Не хвилюйтесь!", which translates to "Your files are temporarily encrypted! Do not worry!".


The Ukrainian version is rather lenghty, and is as follows:

☠ ВАШІ ФАЙЛИ ТИМЧАСОВО НЕДОСТУПНІ.☠
ВАШІ ДАНІ БУЛИ ЗАШІВРОВАННИ!
Для відновлення даних потрібно дешифратор.
Щоб отримати дешифратор, ви повинні, оплатити послуги розшифровки:
Оплата відбувається за коштами біткойн на кошелек № 1EoWxYTt7xCskTxjm47E2XNxgkZv1anDP9
Вартість послуги складає 150$
Оплату можна провести в терміналі IBox. або виберіть один з обмінних сайтів на сторінці - https://www.bestchange.ru/privat24-uah-to-bitcoin.html (приклад обмін Приват24 на BTC) також можете скористатися послугами https://e-btc.com.ua
Додаткова інформація:
Програма можемо дешифрувати один файл як доказ того, що у неї є декодер. Для цього необхідно надіслати зашифрований файл - вагою не більше 2 mb, и ваш уникальный идентификационный код, на пошту: systems32x@gmail.com
Более детальная инструкция по оплате: https://btcu.biz/main/how_to/buy
Увага!
Всі файли розшифровуються тільки після 100% оплати
Ви дійсно отримуєте дешифратор після оплати
Не намагайтеся видалити програму або запустити антивірусні інструменти це може ускладнити вам роботу
Спроби самодешіфрованія файлів приведуть до втрати ваших даних
Декодери інших користувачів не сумісні з вашими даними, оскільки унікальний ключ шифрування кожного користувача.
За запитом користувачів, надаємо контакти клієнтів, які вже користувалися послугами нашого сервісу.
ОБОВ'ЯЗКОВО ЗАПИШІТЬ РЕЗЕРВНІ КОНТАКТИ ДЛЯ ЗВ'ЯЗКУ:
systems32x@gmail.com - основний
systems32x@yahoo.com - резервний
Додаткові контакти:
systems32x@tutanota.com - (якщо відповіді не прийшло після 24-х годин)
help32xme@usa.com - (якщо відповіді не прийшло після 24-х годин)
Additional.mail@mail.com - (якщо відповіді не прийшло після 24-х годин)
З повагою
Unlock files LLC
33530 1st Way South Ste. 102
Federal Way, WA 98003
United States

Google Translation, so pretty loose - I've made some minor corrections however:

☠ YOUR FILES ARE TEMPORARILY UNAVAILABLE
YOUR DATA WAS LOCKED!
To restore data you need a decoder.
To receive a decoder, you must pay for decoding services:
Payment is made at the expense of bitcoin to wallet number 1EoWxYTt7xCskTxjm47E2XNxgkZv1anDP9
Service cost is $ 150
Payment can be made at the terminal IBox. or select one of the exchange sites on the page - https://www.bestchange.ru/privat24-uah-to-bitcoin.html (example exchange of Privat24 to the BTC), you can also use the services of https://e-btc.com.ua.
Additional Information:
The program can decrypt one file as proof that it has a decoder. To do this, you need to send an encrypted file weighing no more than 2 mb and your unique identification code by mail: systems32x@gmail.com
More detailed payment instructions: https://btcu.biz/main/how_to/buy
WARNING!
All files are decrypted only after 100% payment
You really get a decoder after payment
Do not try to uninstall a program or run antivirus tools, which can complicate your work
Attempts to self-decrypt files will result in the loss of your data
Other users' decoders are not compatible with your data, as the unique encryption key for each user.
At the request of users, we provide contact with customers who have already used the services of our service.
MUST REQUEST BACK TO CONTACTS FOR CONNECTION:
systems32x@gmail.com - basic
systems32x@yahoo.com - backup
Additional contacts:
systems32x@tutanota.com - (if the answer did not arrive after 24 hours)
help32xme@usa.com - (if the answer did not arrive after 24 hours)
Additional.mail@mail.com - (if the answer did not arrive after 24 hours)

The English version is rather short and to the point:

ALL DATA IS ENCRYPTED!
For decoding, write to the addresses:systems32x@gmail.com - Basic systems32x@yahoo.com - backup Additional contacts: systems32x@tutanota.com - (if the answer did not arrive after 24 hours) help32xme@usa.com - (if the answer did not arrive after 24 hours) Additional.mail@mail.com - (if the response did not arrive after 24 hours) 

The cost for restoring service is, interestingly enough, expressed in US dollars this time ($150), as opposed to Ukrainian currency in a previous iteration.

However, the images which included IBox instructions (as payment method) have been removed, and while IBox is still suggested as a service, there's also a new website introduced to pay via Bitcoin using E-BTC. 

E-BTC is a Ukrainian service which is "the most reliable and simple service for buying and selling Bitcoins and also the best partner for entering and withdrawing funds to the WEX stock exchange."

It also promises full anonymity.

Back to the ransomware. Encrypted files will have the .docs extension appended, for example Jellyfish.jpg becomes Jellyfish.jpg.docs.

Ransom note: .docs document.html
BTC Wallet: 1EoWxYTt7xCskTxjm47E2XNxgkZv1anDP9
Emails: systems32x@gmail.com, systems32x@yahoo.com, systems32x@tutanota.com, help32xme@usa.com, Additional.mail@mail.com

Extension: .docs

Fortunately, it appears no payments have been made as of yet: 1EoWxYTt7xCskTxjm47E2XNxgkZv1anDP9



Conclusion

The last iteration of PSCrypt was observed in 2017, but it appears it has now returned to try and coerce users and organisations to pay the ransomware.

As usual, follow the prevention tips here to stay safe, but the rule of thumbs are as always:

  • Do not pay, unless there is imminent danger of life
  • Create regular backups, and do not forget to test if they work

IOCs follow below.


IOCs