Showing posts with label Facebook Scam. Show all posts
Showing posts with label Facebook Scam. Show all posts

Tuesday, October 11, 2011

Eat for Free at Outback! Only 359 dinner coupons

Eat for Free at Outback! Only 359 dinner coupons - Facebook Scam.

Scam Signature Message:

Eat for Free at Outback! Only 359 dinner coupons
Remaining! Hurry Up!
eatatoutback.me

eat_for_free_outback_wall

Scam Type: Bogus Offer

Trending: October 2011

Why it’s a Scam:

Clicking the wall post link takes you to the following page:



Here you are asked to Share the message with your friends and enter a comment on the page. After entering the comment, the following page loads:

Notice the ‘Program Requirements’ – you must complete surveys and a total of 6 sponsor offers. Chances are, after you have completed the offers it isn’t going to be worth the Gift Card, assuming that part of the promotion isn’t a scam. Also keep in mind the scammers are acquiring a treasure trove of your personal data. You will be required to provide your name, address, phone numbers and date of birth. This will enable the shady marketers to not only spam your Facebook account, but also harass you via snail mail, phone calls and text messages.

How to Deal with the Scam:

If you did make the mistake of sharing the scam link, then you are now spamming your friends with the very same message. Clean-up your newsfeed and profile to remove references to the scam. (click the “x” in the top right hand corner of the post).

Be on the lookout for more marketing offers arriving to your email inbox and physical address if you submitted that information to the scammers. Also be aware and alert for possible identity theft attempts.

If you or your Facebook friends are falling for tricks like this, it’s time to get yourself informed of the latest threats. Be sure to join the Facecrooks page on Facebook to be kept informed of the latest security issues.

Thursday, September 15, 2011

Exploit-CVE2010-0840

Exploit-CVE2010-0840

Artifact Name

CVE-2010-0840 (Trusted Methods) Exploit Artifacts

Attack Vector Category

Exploit

Description

Vulnerability present in the code responsible for privileged execution of methods affects Oracle Java 6 prior to update 19 and 5 prior to update 23. Exploitation allows for the execution arbitrary code under the context of the currently logged on user.

Attack Description

This description was obtained using the Metasploit exploit reference and it involves having a user visit a malicious website.

Exploits Tested

Metasploit v3.6 multi\browser\java_trusted_chain

Target System Information

* Windows XP SP3 Virtual Machine with Java 6 update 16 using administrative user account

* Windows XP SP3 Virtual Machine with Java 6 update 16 using non-administrative user account

Different Artifacts based on Administrator Rights

No

Different Artifacts based on Software Versions

Not tested

Potential Artifacts

The potential artifacts include the CVE 2010-0840 exploit and the changes the exploit causes in the operating system environment. The artifacts can be grouped under the following three areas:

* Temporary File Creation
* Indications of the Vulnerable Application Executing
* Internet Activity

Note: the documenting of the potential artifacts attempted to identify the overall artifacts associated with the vulnerability being exploited as opposed to the specific artifacts unique to the Metasploit. As a result, the actual artifact storage locations and filenames are inside of brackets in order to distinguish what may be unique to the testing environment.

* Temporary File Creation

-JAR file created in a temporary storage location on the system within the timeframe of interest. [C:/Documents and Settings/Administrator/Local Settings/Temp/jar_cache3590475423724669955.tmp. The contents of the JAR file contained a manifest file and one class file was detected as the CVE 2010-0840 exploit. There were other class files whose md5 hash was not present in VirusTotal database.

* Indications of the Vulnerable Application Executing

- Log files indicating Java was executed within the timeframe of interest. [C:/Documents and Settings/Administrator/Application Data/Sun/Java/Deployment/deployment.properties, C:/Documents and Settings/Administrator/Local Settings/Temp/java_install_reg.log, and C:/Documents and Settings/Administrator/Local Settings/Temp/jusched.log] The picture below shows the contents of the java_install_reg.log file.

- Prefetch files of Java executing. [C:/WINDOWS/Prefetch/JAVA.EXE-0C263507.pf]

- Registry modification involving Java executing. [HKCU-Admin/Software/JavaSoft/Java Update/Policy/JavaFX]

- Folder activity involving the Java application. [C:/Program Files/Java, C:/Documents and Settings/Administrator/Application Data/Sun/Java/Deployment/cache/, and C:/Documents and Settings/Administrator/Local Settings/Temp/hsperfdata_username]

* Internet Activity

- Web browser history of user accessing websites within the timeframe of interest. [Administrator user account accessed the computer -192.168.11.200- running Metasploit]

- Activity involving the Temporary Internet Files folder. [C:/Documents and Settings/Administrator/Local Settings/Temporary Internet Files]


Exploit-CVE2010-0840

Exploit-CVE2010-0840

Artifact Name

CVE-2010-0840 (Trusted Methods) Exploit Artifacts

Attack Vector Category

Exploit

Description

Vulnerability present in the code responsible for privileged execution of methods affects Oracle Java 6 prior to update 19 and 5 prior to update 23. Exploitation allows for the execution arbitrary code under the context of the currently logged on user.

Attack Description

This description was obtained using the Metasploit exploit reference and it involves having a user visit a malicious website.

Exploits Tested

Metasploit v3.6 multi\browser\java_trusted_chain

Target System Information

* Windows XP SP3 Virtual Machine with Java 6 update 16 using administrative user account

* Windows XP SP3 Virtual Machine with Java 6 update 16 using non-administrative user account

Different Artifacts based on Administrator Rights

No

Different Artifacts based on Software Versions

Not tested

Potential Artifacts

The potential artifacts include the CVE 2010-0840 exploit and the changes the exploit causes in the operating system environment. The artifacts can be grouped under the following three areas:

* Temporary File Creation
* Indications of the Vulnerable Application Executing
* Internet Activity

Note: the documenting of the potential artifacts attempted to identify the overall artifacts associated with the vulnerability being exploited as opposed to the specific artifacts unique to the Metasploit. As a result, the actual artifact storage locations and filenames are inside of brackets in order to distinguish what may be unique to the testing environment.

* Temporary File Creation

-JAR file created in a temporary storage location on the system within the timeframe of interest. [C:/Documents and Settings/Administrator/Local Settings/Temp/jar_cache3590475423724669955.tmp. The contents of the JAR file contained a manifest file and one class file was detected as the CVE 2010-0840 exploit. There were other class files whose md5 hash was not present in VirusTotal database.

* Indications of the Vulnerable Application Executing

- Log files indicating Java was executed within the timeframe of interest. [C:/Documents and Settings/Administrator/Application Data/Sun/Java/Deployment/deployment.properties, C:/Documents and Settings/Administrator/Local Settings/Temp/java_install_reg.log, and C:/Documents and Settings/Administrator/Local Settings/Temp/jusched.log] The picture below shows the contents of the java_install_reg.log file.

- Prefetch files of Java executing. [C:/WINDOWS/Prefetch/JAVA.EXE-0C263507.pf]

- Registry modification involving Java executing. [HKCU-Admin/Software/JavaSoft/Java Update/Policy/JavaFX]

- Folder activity involving the Java application. [C:/Program Files/Java, C:/Documents and Settings/Administrator/Application Data/Sun/Java/Deployment/cache/, and C:/Documents and Settings/Administrator/Local Settings/Temp/hsperfdata_username]

* Internet Activity

- Web browser history of user accessing websites within the timeframe of interest. [Administrator user account accessed the computer -192.168.11.200- running Metasploit]

- Activity involving the Temporary Internet Files folder. [C:/Documents and Settings/Administrator/Local Settings/Temporary Internet Files]


Thursday, September 8, 2011

How to disable Ticker in Facebook?

How to disable Ticker in Facebook?. Facebook has launched Ticker Bar just few days ago. Many people don’t like this ticker bar because they want updates of only close friends of them.

But doesn’t the News Feed already do that? Well, yes and no. Think of Happening Now as a shortcut or quick-glance list that summarizes current activities in one easy-to-peruse spot. So if a friend just liked a videosomeone posted yesterday, it will show up in the list now, not buried back in the feed.

Obviously the info will be a little redundant between Happening Now and the News Feed, so hopefully there will be a way to set some filters for it. If so, this could be pretty handy. For example, I’d love to have a real-time list of posted articles and vids only. The main feed could house the status updates and pics of kittens, but the sidebar would be like a personalized real-time content channel populated by friends’ picks.

Facebook ticker bar example:

siderbar realtime updates How to disable Ticker in Facebook?


Okay so how do we disable this happening now sidebar?

Hiding the sidebar is so simple as a pie
Step 1: Click on the settings button on the bottom left corner.
Step 2: Then click Hide Sidebar.

Or

For disable facebook ticker bar in firefox or google chrome Use following plugin

you need to Get the Adblock Plus addon for firefox.

Then when you install the plugin you will see block options when you mouse over the

Facebook ticker bar.

Then You can disable new facebook ticker bar.

or

1) Use FireFox or Google Chrome
2) Download the Add On “AdBlock Plus”
3) After AdBlock Plus is installed go into it’s preferences and click “Add Filter”.
4) To remove the new “Ticker” paste in: apps.facebook.com##DIV[class="homeFixedTicker"]
5) To remove the horrible new “App Ticker” also add in: apps.facebook.com##DIV[class="fixedAux"]
6) Enjoy a cleaner Facebook.

Now to limit what others see of your online game playing:
1) Go to Account -> Privacy Settings
2) Under Apps and Websites click on Edit Settings
3) Click EVERY app in your list. Remove any permissions you dont want that app to have
4) Under App Privacy click the drop down and click Custom.
5) Under Make this visible to select “Only Me”

Now no one other then yourselves will see what games your playing.

Enjoy!!!

How to disable Ticker in Facebook?

How to disable Ticker in Facebook?. Facebook has launched Ticker Bar just few days ago. Many people don’t like this ticker bar because they want updates of only close friends of them.

But doesn’t the News Feed already do that? Well, yes and no. Think of Happening Now as a shortcut or quick-glance list that summarizes current activities in one easy-to-peruse spot. So if a friend just liked a videosomeone posted yesterday, it will show up in the list now, not buried back in the feed.

Obviously the info will be a little redundant between Happening Now and the News Feed, so hopefully there will be a way to set some filters for it. If so, this could be pretty handy. For example, I’d love to have a real-time list of posted articles and vids only. The main feed could house the status updates and pics of kittens, but the sidebar would be like a personalized real-time content channel populated by friends’ picks.

Facebook ticker bar example:

siderbar realtime updates How to disable Ticker in Facebook?


Okay so how do we disable this happening now sidebar?

Hiding the sidebar is so simple as a pie
Step 1: Click on the settings button on the bottom left corner.
Step 2: Then click Hide Sidebar.

Or

For disable facebook ticker bar in firefox or google chrome Use following plugin

you need to Get the Adblock Plus addon for firefox.

Then when you install the plugin you will see block options when you mouse over the

Facebook ticker bar.

Then You can disable new facebook ticker bar.

or

1) Use FireFox or Google Chrome
2) Download the Add On “AdBlock Plus”
3) After AdBlock Plus is installed go into it’s preferences and click “Add Filter”.
4) To remove the new “Ticker” paste in: apps.facebook.com##DIV[class="homeFixedTicker"]
5) To remove the horrible new “App Ticker” also add in: apps.facebook.com##DIV[class="fixedAux"]
6) Enjoy a cleaner Facebook.

Now to limit what others see of your online game playing:
1) Go to Account -> Privacy Settings
2) Under Apps and Websites click on Edit Settings
3) Click EVERY app in your list. Remove any permissions you dont want that app to have
4) Under App Privacy click the drop down and click Custom.
5) Under Make this visible to select “Only Me”

Now no one other then yourselves will see what games your playing.

Enjoy!!!

Saturday, August 27, 2011

This girl got sent to jail for 2 years over a status update she posted

This girl got sent to jail for 2 years over a status update she posted - Facebook Scam. Scam Signature Message: OMG This girl got jailed 2 years for posting this status update!



Once you click on the Wall Post link, you are taken to the following fake Public Event page. This is the main screen for the fake Public Event. Clicking the link to "See the status she posted here ===>>" takes you to the following page. When you click "Continue", you are taken to a Facebook screen that asks if you want to install the "Jail Status" application. The scammers have really gone the extra mile here in making the application look professional and legit. The "Facebook Verified app" button and the high rating could be enough to fool the casual Facebook user. If you agree to install the application, you must agree to give the application developer full access to your basic information and the right to email you, post to your wall, access your data at any time and the right to manage your pages. You should never give a third party application this much access unless you are 100% sure of their intentions and authenticity.

This girl got sent to jail for 2 years over a status update she posted

This girl got sent to jail for 2 years over a status update she posted - Facebook Scam. Scam Signature Message: OMG This girl got jailed 2 years for posting this status update!



Once you click on the Wall Post link, you are taken to the following fake Public Event page. This is the main screen for the fake Public Event. Clicking the link to "See the status she posted here ===>>" takes you to the following page. When you click "Continue", you are taken to a Facebook screen that asks if you want to install the "Jail Status" application. The scammers have really gone the extra mile here in making the application look professional and legit. The "Facebook Verified app" button and the high rating could be enough to fool the casual Facebook user. If you agree to install the application, you must agree to give the application developer full access to your basic information and the right to email you, post to your wall, access your data at any time and the right to manage your pages. You should never give a third party application this much access unless you are 100% sure of their intentions and authenticity.

Tuesday, August 23, 2011

W A R N I N G ! ! ! ! THIS NOTICE IS DIRECTED TO ANYONE WHO HAS A FACEBOOK ACCOUNT

W A R N I N G ! ! ! ! THIS NOTICE IS DIRECTED TO ANYONE WHO HAS A FACEBOOK ACCOUNT. It seems another hoax has hit Facebook and is going viral at the moment. This one advises you not to click on a link to "VISIT THE NEW FACEBOOK." According to the post, a hacker will steal your Facebook login details and remove your page from Facebook.



Alternate Message:



W A R N I N G ! ! ! ! THIS NOTICE IS DIRECTED TO ANYONE WHO HAS A FACEBOOK ACCOUNT: IF SOMEONE IN YOUR PROFILE OR A FRIEND SENDS YOU A LINK THAT SAYS "VISIT THE NEW FACEBOOK", DO NOT OPEN. . . IF YOU DO, YOU CAN SAY GOODBYE TO YOUR FACEBOOK PAGE! THIS IS ACTUALLY THE WORK OF A HACKER WHO STEALS YOUR DETAILS AND REMOVES YOU PERMANENTLY FROM YOUR OWN PAGE. PLEASE COPY AND SPREAD THE WORD



There are plenty of phishing scams and hacking attempts from scammers trying to gain access to Facebook accounts. One good word of warning you can take away from the hoax is the fact that you should not randomly click links on Facebook (or anywhere else online for that matter.) We have not been able to locate anyone actually affected by this scam, and we have been unable to locate any links to the "New Facebook" site that is referenced. This is also confirmed by Snopes.



Don't blindly repost sensational alerts like this to your Facebook friends. Some hoaxes malign companies and individuals. You don't want to be responsible for damaging the reputation of an innocent party just by automatically posting a story to your wall. It is great to spread useful information and legitimate warnings to your friends - just do a little fact finding before clicking "share."

W A R N I N G ! ! ! ! THIS NOTICE IS DIRECTED TO ANYONE WHO HAS A FACEBOOK ACCOUNT

W A R N I N G ! ! ! ! THIS NOTICE IS DIRECTED TO ANYONE WHO HAS A FACEBOOK ACCOUNT. It seems another hoax has hit Facebook and is going viral at the moment. This one advises you not to click on a link to "VISIT THE NEW FACEBOOK." According to the post, a hacker will steal your Facebook login details and remove your page from Facebook.



Alternate Message:



W A R N I N G ! ! ! ! THIS NOTICE IS DIRECTED TO ANYONE WHO HAS A FACEBOOK ACCOUNT: IF SOMEONE IN YOUR PROFILE OR A FRIEND SENDS YOU A LINK THAT SAYS "VISIT THE NEW FACEBOOK", DO NOT OPEN. . . IF YOU DO, YOU CAN SAY GOODBYE TO YOUR FACEBOOK PAGE! THIS IS ACTUALLY THE WORK OF A HACKER WHO STEALS YOUR DETAILS AND REMOVES YOU PERMANENTLY FROM YOUR OWN PAGE. PLEASE COPY AND SPREAD THE WORD



There are plenty of phishing scams and hacking attempts from scammers trying to gain access to Facebook accounts. One good word of warning you can take away from the hoax is the fact that you should not randomly click links on Facebook (or anywhere else online for that matter.) We have not been able to locate anyone actually affected by this scam, and we have been unable to locate any links to the "New Facebook" site that is referenced. This is also confirmed by Snopes.



Don't blindly repost sensational alerts like this to your Facebook friends. Some hoaxes malign companies and individuals. You don't want to be responsible for damaging the reputation of an innocent party just by automatically posting a story to your wall. It is great to spread useful information and legitimate warnings to your friends - just do a little fact finding before clicking "share."

Monday, August 8, 2011

This Girl Should Have Really Turned Her Cam Off And Not Forgot

This Girl Should Have Really Turned Her Cam Off And Not Forgot - Facebook Scam. This is the latest survey scam we've found spreading and have acrossed on Facebook, the video-link refers to a girl who forget turn off her webcam, so be alert Facebookers! Never trapped with this scam, avoid this if you found them on your newsfeed, or if you found them on your friends wall, help them by telling about this scam. You know the study has discovered by BitDefender 2011 was reporting that Facebook scam won't spreads largerly if users on circle care and aware to share each others. Well, here's the message of the scam:



this girl will never forget to turn her webcam of again

newvideos4u.info

This girl should have really turned her cam off and not forgot



Then here are the variation messages of the scam:



this girl will never forget to turn her webcam of again

search.hbs.edu



this girl will never forget to turn her webcam off again

apps.facebook.com

This girl should have really turned her cam off and not forgot



Lmao, this girl forgets to turn her cam off

videosgood4u.info

This was one of the funniest things I've seen?



As usual, the scammer wants you to complete the (fake) survey as you can see on the screenshot below, but of course you don't have to do that survey even to complete it. Once you done it, you'll about spamming your friends wall then scammer got the fee. And of course this is very risky for you because you data informations might be stolen by them.

Friday, August 5, 2011

Lady Gaga Found Dead in Hotel Room

Lady Gaga Found Dead in Hotel Room - Facebook Scam. This is another "click-jacking" scam. This means there is underlying code on this webpage that hi-jacks your Facebook account without your knowledge or consent and posts the scammer's message to your Wall. You need to clean up your Facebook account by removing the post from your Newsfeed and marking the post as Spam. Do this by clicking the "x" in the top right hand corner of the post. Never complete surveys to unlock videos or other content on Facebook. Scammers use these tricks to either spread malware, obtain personal identification or earn commissions from marketing companies. Don't pad their pocket and possibly open yourself up to harm!

Some of the surveys require you to download files to your computer. Never do this! If you did so in error, then run a complete system scan with a good anti-virus software program. The I.Q. Quiz scam has been around for a while, and it typically requires you to enter your cell phone number to receive the results. The scammers then bill you for premium services. Keep an eye on your phone bill for bogus charges.

Scam Signature Message:
BREAKING: Lady Gaga Found Dead in Hotel Room
bbc-news-usa.info
This is the most awful day in the US history
OMG! Lady Gaga Found Dead in Hotel Room
[video] Lady Gaga Found Dead in Hotel Room

0MG!! Father catch daughter on cam doing shameful things, while enters her pvt room!!

0MG!! Father catch daughter on cam doing shameful things, while enters her pvt room!! - Facebook Scam. Another video-post contains a survey scam has just acrossed on my feed, reffering to Father catch daughter on cam doing shameful things, with the following message:

0MG!! Father catch daughter on cam doing shameful things, while enters her pvt room!!
videos-girls-x.info
Totally Shameful moment for her and her father and can't look on each other eyes for weeks! [video]


Once I clicking on that link-post, it took me to the following web page contains a video with "Jaa" button confirm to watch it. Then clicking on that "Jaa" button will make this scam to be shared to Facebook wall, and start spamming your friends wall. After that post succeed to be shared, then it'll displays automatically next web page contains a survey scam. This time you need to avoid from any clicking on that link for any reasons, then remove them immediatelly from Facebook wall because the content is not looks as promised.

0MG!! Father catch daughter on cam doing shameful things, while enters her pvt room!!

0MG!! Father catch daughter on cam doing shameful things, while enters her pvt room!! - Facebook Scam. Another video-post contains a survey scam has just acrossed on my feed, reffering to Father catch daughter on cam doing shameful things, with the following message:

0MG!! Father catch daughter on cam doing shameful things, while enters her pvt room!!
videos-girls-x.info
Totally Shameful moment for her and her father and can't look on each other eyes for weeks! [video]


Once I clicking on that link-post, it took me to the following web page contains a video with "Jaa" button confirm to watch it. Then clicking on that "Jaa" button will make this scam to be shared to Facebook wall, and start spamming your friends wall. After that post succeed to be shared, then it'll displays automatically next web page contains a survey scam. This time you need to avoid from any clicking on that link for any reasons, then remove them immediatelly from Facebook wall because the content is not looks as promised.

SHOCKING!! Girl killed after she tries to punch a lion! SEE THE VIDEO

SHOCKING!! Girl killed after she tries to punch a lion! SEE THE VIDEO - Facebook Scam. Notice the permission required of this application. The scam uses this access to spread their spam messages to your friends. Anytime you install a third party Facebook application, you give the application developer access to your personal data. Always be very selective on the apps you install, and only install them from well-known, trusted sources.

Scam Signature Message:
Sweet Memories Photos
SHOCKING!! Girl killed after she tries to punch a lion! SEE THE VIDEO: app.facebook.com/racebooksgr/?vid=988038