AVG web site hacked!

Status
Not open for further replies.

nishaddesilva

Level 3
Thread author
Aug 26, 2012
257
http://www.avg.com/ seems to have been hacked by a Palestinian group called KDMS team.
Visit KDMS twitter page here: https://twitter.com/KdmsTeam

Hcz4rSP.jpg
 

Petrovic

Level 64
Verified
Honorary Member
Top Poster
Well-known
Apr 25, 2013
5,356
vwoajw6fi1.jpg


seems
They can claim anything))
 

nishaddesilva

Level 3
Thread author
Aug 26, 2012
257
Petrovic said:
vwoajw6fi1.jpg


seems
They can claim anything))

MrXidus said:

Now requests to avg.com redirects to "http://www.avg.com/cgi-sys/defaultwebpage.cgi". See the pic below. Some say it's a DNS poison attack. But I tried to log on to the site via Google DNS, Comodo DNS and my ISP's DNS. In all 3 times the site showed that pic.

fTFnJ5J.jpg
 

Prorootect

Level 69
Verified
Nov 5, 2011
5,855
Now, AVG is good, Avira.com is hacked, WhatsApp.com has the difficulties ..

They not use firewall?..

7 top tactics of hack attacks: on pcworld.com : http://www.pcworld.com/article/2052601/7-top-tactics-of-hack-attacks.html

Report: Hackers Want Easy Targets: on govtech.com : http://www.govtech.com/Report-Hackers-Want-Easy-Targets.html

How to detect a hacker attack: on securelist.com : http://www.securelist.com/en/threats/vulnerabilities?chapter=38
 

nishaddesilva

Level 3
Thread author
Aug 26, 2012
257
Prorootect said:
Now, AVG is good, Avira.com is hacked, WhatsApp.com has the difficulties ..

They not use firewall?..

7 top tactics of hack attacks: on pcworld.com : http://www.pcworld.com/article/2052601/7-top-tactics-of-hack-attacks.html

Report: Hackers Want Easy Targets: on govtech.com : http://www.govtech.com/Report-Hackers-Want-Easy-Targets.html

How to detect a hacker attack: on securelist.com : http://www.securelist.com/en/threats/vulnerabilities?chapter=38

Well to me it's the opposite. Avira loads fine while AVG doesn't.
 

Prorootect

Level 69
Verified
Nov 5, 2011
5,855
I confirm my finds .. AVG clean, Avira now in difficulties - my browser would not display Avira.com ..

hEtC3Vz.jpg

Hack crop enhanced.jpg
 

Petrovic

Level 64
Verified
Honorary Member
Top Poster
Well-known
Apr 25, 2013
5,356
AVG Website Apparently Hacked by Palestinian Group (Updated)

AVG website defaced by Pakistani hackers of KDSM Team
Enlarge picture The Palestinian hacker group KDSM Team has defaced the main website of AVG Technologies, avg.com. It’s uncertain if the incident is a result of a breach of AVG’s systems or if it’s another case of DNS hijacking.

At the time of writing, the site is restored. However, security expert Graham Cluley has captured a screenshot of the defacement page.

“We are here to deliver two messages. First one: we want to tell you that there is a land called Palestine on the earth. This land has been stolen by Zionist. Do you know it? Palestinian people has the right to live in peace. Deserve to liberate their land and release all prisoners from Israeli jails. We want peace. Long live Palestine,” the hackers wrote on the defaced site.

They added, “Second message: There Is No Full Security. We Can Catch You! Hacked by KDMS team. Now We Will Quit Hacking.”

Interestingly, the part about “we will quit hacking” appears to be true since the group has deleted its Facebook page.

It’s uncertain how the hackers pulled this off. We’ve reached out to AVG in hopes that they can provide some clarifications. This article will be updated in case we hear from them, or if they publish a statement.

KDMS Team is the same group that claimed to have hacked LeaseWeb over the weekend. The hackers say they’ve stolen data from the web hosting company’s systems, but they haven’t provided any evidence to back their allegations.

LeaseWeb representatives said the attack was the result of a DNS hijack. It’s possible that a DNS poisoning attack is behind the AVG website defacement as well, but we’ll probably find out for sure once AVG comes forward with a statement.

Update. Experts have confirmed that this is a case of DNS hijacking. It appears that avg.com is not the only domain affected. Avira and WhatsApp websites have also been defaced in the same manner.

The visitors of these sites see the real site or the defacement page depending on what DNS they're using.

Also, the hackers have clarified that their Facebook page was actually deleted by Facebook.

Source
 

3link9

Level 5
Verified
Oct 22, 2011
860
Yep, AVG I think shut their servers down. AVG customer support says they're working to fix it.
Avira is down and defaced with the same thing as AVG was with the Palestine and the Anthem of Palestine in the backround and a Anonymous message and I haven't seen a response from Avira yet.
 

Ink

Administrator
Verified
Staff Member
Well-known
Jan 8, 2011
22,409
Avira, AVG and Whatspp are back online.

Defacing or DNS hijacking only prove that sites are either vulnerable to attack or weak systems in place.

Then there's the messages they leave, apart from the fact I have no idea what they're talking about. There are better ways to spread a cause, Hacking is just as bad as the Politics, Governments, Corruption, Poverty, Pollution and so on..

The worst part is, they use Capital letters for every word. How annoying. :rolleyes:
 

3link9

Level 5
Verified
Oct 22, 2011
860
Earth said:
Avira, AVG and Whatspp are back online.

Not for me, Avira is still defaced, AVG servers are back but the website isnt fully restored and Whatsapp isn't loading at all.
 

Ink

Administrator
Verified
Staff Member
Well-known
Jan 8, 2011
22,409
About an hour ago, Avira was still defaced. Try clearing your browser cache.
 

MrXidus

Super Moderator (Leave of absence)
Apr 17, 2011
2,503
3link9 said:
Earth said:
Avira, AVG and Whatspp are back online.

Not for me, Avira is still defaced, AVG servers are back but the website isnt fully restored and Whatsapp isn't loading at all.

All 3 websites are working and loading fine for me.

Clear your browsers cache, cookies etc and flush your DNS cache.
 

3link9

Level 5
Verified
Oct 22, 2011
860
MrXidus said:
3link9 said:
Earth said:
Avira, AVG and Whatspp are back online.

Not for me, Avira is still defaced, AVG servers are back but the website isnt fully restored and Whatsapp isn't loading at all.

All 3 websites are working and loading fine for me.

Clear your browsers cache, cookies etc and flush your DNS cache.
I did all three.
AVG is back, However Avira is still defaced and whatsapp still isn't loading at all. :/

Edit:
Whatsapp is up but Avira is still defaced for me
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top