Tuesday, July 23, 2013

"Master key" Exploit Scanner

Google has released patch for the master key vulnerability to third party Android Mobiles, but google's Nexus devices still remain vulnerable against mater key exploits. Android user are advised not to download apps from 3rd party app markets. You can use the python version of the scanner (download link) to check for the exploits that exploit this vulnerability.

A simple web search will give details about this vulnerability.

Download Python version of the scanner;
MasterKey Exploit Scanner

I recommend you to develop Android version of this simple tool to use in your Android mobiles.

Wednesday, May 15, 2013

How to remove qvo6?

This blog post will help you to remove Qvo6.com adware from your web browsers Chrome, Firefox and Chrome.

Qvo6 adware gets installed in your machine with many freeware programs. This adware is a browser hijacker capable of changing your browser homepage to www.Qvo6.com.


The same website will also get open in every new tab you open in your browser.

1. Uninstall Freewares that install Qvo6 adware:

a. Open Control panel > Programs and Features


b. Then serach for programs eSave Security Control, Qvo6 toolbar, New Tabs Uninstall, Desk 365 (or) BrowserProtect and uninstall it.

2. Remove from program shortcuts:

a. Right click the shortcuts for Firefox / Chrome / Internet explorer, in the drop down menu select Properties. In target tab remove "http://www.qvo6.com/?utm_source=b&utm_medium=tti&.."


b. Click Apply to save the changes.

3. Remove from Windows Registry:

a. Click Start > Run and type REGEDIT

For Firefox:

b. Go to the Registry key

"HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command"

c. on the right pane you can find Default key. Modify the Data value to remove "http://www.qvo6.com/?utm_source=b&utm_medium=tti&.." from it.

For Chrome:

b. Go to the Registry key

HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command

c. on the right pane you can find Default key. Modify the Data value to remove "http://www.qvo6.com/?utm_source=b&utm_medium=tti&.." from it.

For Internet Explorer:

b. Go to the Registry key

HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command

c. on the right pane you can find Default key. Modify the Data value to remove "http://www.qvo6.com/?utm_source=b&utm_medium=tti&.." from it.

d. Go to the Registry key

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MAIN

e. On the right side pane edit all the key values to remove "http://www.qvo6.com/?utm_..."