Bom Sabado ,Orkut new Scrap Virus ,how to Remove get rid / Solved .

if you are amongst the few who still give a damn about Orkut, you might have noticed something fishy going on over the past few hours. A large number of users are randomly flooding their friend’s scrapbooks (Orkut’s equivalent of Facebook Wall) with the following message:

 

Bom Sabado

It doesn’t take a genius to figure out that the “Bom Sabado!” messages are automatically generated by a script. However, it is not clear if this is simply a script exploiting vulnerability in Orkut, or have the accounts sending the automated scraps been compromised.

About Bom Sabado Virus :

The worm injects a hidden iframe containing a malicious javascript http://tptools.org/worm.js [do not click this], which steals the user cookie which contains the password in an encoded form. So the attacker do not get to know your plaintext password but can login using your credentials by impersonating using the cookie to fool the identification system. So a trivial solution is to diable javascript, another solution is to disable iframes or u can take an advanced measure by blocking the domain http://tptools.org/ by editing your hosts file and redirecting it to a safe address, say 127.0.0.1

go to C:\windows\system32\drivers\etc\

There is a file named ‘hosts’. By default it is read-only. Go to it properties and uncheck the tick mark beside read-only
edit it with you favorite editor.

add this line at the end of it

127.0.0.1 tptools.org

save it. and then restart your network interface. ( in simple words, just reconnect your interner connection ) and bingo!! the worm’ll be useless.

If you are amongst those affected, it’s highly recommended that you follow the steps highlighted below:

Getting rid of Virus And Precaution to take :

  • Switch to the “older version” of Orkut.
  • Log out of Orkut.
  • Clean your browser’s cache and cookies.
  • Log in and change your password and security question.

    Do not login to your orkut account for this, if you wish to change password, use this link www.google.com/accounts/

    Bom Sabado is a cookie stealing virus. Those who are affected by this virus try to change their password as soon as possible and also clean your browser cookies. Orkut officials havn’t given out any details of the scrap virus. Its safe to keep away from opening your orkut until orkut official give out the status of the attack. If anyone reads this scrap even in their profile, their cookies are also stoled and so they are also posting scrap automatically to their friend list same scrap as bomb something like.

    Solutions:-
    Follow these steps:

    1. Change Your Password Through this link only www.google.com/accounts/

    Do not Login to Your Orkut Account for 48 Hours/ till further updates from the Google team

    hope this tuturial helps you .

Comments are closed.

Follow us on Twitter! Follow us on Twitter!

daily email newsletter

Enter your email address:

Recent Posts

Video of The Day

Blogs Worth Visiting