Security Incident, Malware & Phishing Website Checking Tools

(I) ITO Security Tools

BUAM/SSOid - Admin Console
https://iss.hkbu.edu.hk/buam/buam2/sign_in/index.seam?request_srvc_id=admin_console

Infosec - Repository for Dept IT System
https://infosec.hkbu.edu.hk/security_check/

Bluecat IP Address Management
https://ipmgnt.hkbu.edu.hk
Grid View - BlueCat IP Info ( https://qual-link.hkbu.edu.hk/Tools/BlueCat_Data/bc_grid.php )

SIEM - qRador
https://itolog01.hkbu.edu.hk/console/logon.jsp

Imperva - WAF Admin Console
https://158.182.4.167:8083/SecureSphere/secsphLogin.jsp

DarkTrace Admin Console
https://budt01.hkbu.edu.hk/login

Lastline Web Admin Console
https://user.lastline.com/

ESET Management Console
https://esetms.hkbu.edu.hk/era/webconsole/

IDM/AD Password Sync Check
https://ifssou01.hkbu.edu.hk/checkpass


(I) Security Threat Intelligence & Misc Tools

** VirusTotal
https://www.virustotal.com/

Palo Alto - URL filtering – Test A Site
https://urlfiltering.paloaltonetworks.com

Palo Alto - URL filtering – PA Test Pages Website
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClaDCAS

Cyren URL Category Check
https://www.cyren.com/security-center/url-category-check

Symantec WebPulse Siteview URL Checking
https://sitereview.bluecoat.com

URLScan.IO URL Checking
https://urlscan.io

Shodan.IO Checking
https://www.shodan.io

Cisco Talos
https://www.talosintelligence.com/

IBM X-Force Threat Intelligence
https://www.ibm.com/security/xforce

Unicode (UTF8, UTF16) Encoder / Decoder
https://encoder.mattiasgeniar.be/index.php


(II) Phishing / Ransomware / Malware Website Checker

** Scamadviser.com | check a website for risk | check if fraudulent ...
http://www.scamadviser.com/

*** Sucuri - Free Website Malware and Security Scanner
https://sitecheck.sucuri.net/

A Search Engine for Threats
https://www.threatcrowd.org/

ThreatMiner
https://www.threatminer.org/

Norton Safe Web Checker & Community
https://safeweb.norton.com/

Google: Safe Browsing Site Status – Transparency Report
https://www.google.com/transparencyreport/safebrowsing/diagnostic/

Trend Micro - Site Safety Center (Malicious URL Check)
https://global.sitesafety.trendmicro.com/

Is it Hacked? Check if your website is hacked
http://isithacked.com/

Free Automated Malware Analysis Sandboxes and Services
https://zeltser.com/automated-malware-analysis/
https://zeltser.com/malicious-ip-blocklists/


ID Ransomware - a website to identify the type of ransomware & it decryption method (if any)
Source : HKPC - Cybersec Infohub
Post on: 17 Feb 2019, 12:16 (HKT) by Dragon Advance Tech

ID Ransomware is a free website that helps victims identify what ransomware may have encrypted their files. The site is able to identify over 500+ ransomware families by specific filename extensions and patterns, ransom note names, known hex patterns, email addresses, BitCoin addresses, and more. If a ransomware is identified, ID Ransomware will give the victim a distinct status on whether it is known to be decryptable or not, and will provide a link to a credible source for more information.

(III) IP GeoLocation, Domain WhoIs, and Blacklisted & Reputation Check

Domain WhoIs Tools
http://whois.domaintools.com/

NSLookUp.io
http://NSLookUp.io/

IP GeoLocation Check
http://geoiplookup.net/
https://www.iplocation.net/
http://ip-api.com/#

*** RBL IP Blacklist Checker - Check IP reputation
https://correct.email/free-tools/ip-blacklist-checker/

** IP Blacklist Check
http://whatismyipaddress.com/blacklist-check

AbuseIPDb
https://www.abuseipdb.com/check/162.88.143.11
https://www.abuseipdb.com/ (Allow a Block/Subnet of IPs Checking)
https://www.abuseipdb.com/check-block/5.62.59.0/23 (Check for 5.62.59.0/23)

MegaRBL.net - IP BLOCKLIST CHECK
https://www.megarbl.net/check/158.182.113.254

IFS-NU Blacklisted IPs
Blocking Internet IP (Incoming) - from Ken 23 Jan 2019
https://minemeld.hkbu.edu.hk/feeds/bufeed_in (Dynamic update)
https://minemeld.hkbu.edu.hk/bu_custom/attackers.txt (Manual update)

Blocking Internet IP (Outgoing) - from Ken 23 Jan 2019
https://minemeld.hkbu.edu.hk/feeds/hkbufeed (Dynamic update)
https://minemeld.hkbu.edu.hk/bu_custom/badIP_out.txt (Manual update)

Minemeld Consolidated & Other Block Lists - Last Updated on 5 Sept 2018
http://panwdbl.appspot.com/lists/mdl.txt
http://panwdbl.appspot.com/lists/ettor.txt
http://www.malwaredomainlist.com/hostslist/ip.txt

https://talosintelligence.com/documents/ip-blacklist

Ransomware Tracker database
https://ransomwaretracker.abuse.ch/ip/222.158.26.201

RBL / IP Blacklist Check
http://www.ip-tracker.org/blacklist-check.php?ip=162.88.143.11

FireHOL IP Lists | IP Blacklists | IP Blocklists | IP Reputation (Export Black-listed IPs)
http://iplists.firehol.org/


(IV-01) Email Security

What Are DMARC, DKIM, and SPF?
https://trendlineinteractive.com/resources/article/what-are-dmarc-dkim-and-spf/


(IV-02) White Hat - Hacked / Defaced Website List

Zone-H Hacker
http://zone-h.org


教育行业漏洞报告平台(Beta)https://src.edu-info.edu.cn
中国高等教育行业网络信息基础数据库(IPDB)https://ipdb.sec.edu-info.edu.cn/about/
国家计算机网络应急技术处理协调中心 http://www.cnvd.org.cn

WooYun.org (http://www.wooyun.org/)
http://wooyun.chamd5.org/


(IV-03) Google Search Engine - Spam/Phishing/Malware Reporting

Report spam, paid links, or malware guide line.
https://support.google.com/webmasters/answer/93713?hl=en

Report web spam
https://www.google.com/webmasters/tools/spamreportform

Paid links spam
https://www.google.com/webmasters/tools/paidlinks?pli=1

Rich snippets spam
https://support.google.com/webmasters/contact/rich_snippets_spam

Report malware
https://safebrowsing.google.com/safebrowsing/report_badware/?hl=en

Phishing
https://safebrowsing.google.com/safebrowsing/report_phish/


(V) Website Performance Test

GTmetrix - Analyze your site’s speed
https://gtmetrix.com/

Test a website's performance
https://www.webpagetest.org/


(VI) DNS Filtering for Malware, Botnet, Phishing & Threat

OpenDNS (Cisco Umbrella)
https://www.opendns.com/setupguide/?url=homefree

Quad 9 DNS Service
https://community.spiceworks.com/topic/2089596-quad-9-dns-service


(VII) IS Related Resources


https://www.knowbe4.com


EU - General Data Protection Regulation (GDPR) requirements, deadlines and facts


(VIII) Ransomware

A malware that kidnaps data in your computer or mobile device, and demands for a ransom payment to decrypt or unlock them.

==> https://blog.malwarebytes.com/101/2016/03/how-to-beat-ransomware-prevent-dont-react/

==> https://www.wired.com/2016/05/4-ways-protect-ransomware-youre-target/

Ransomware Knowledge Base
https://www.knowbe4.com/ransomware-knowledgebase

Kaspersky - Free Ransomware Decryptor
https://noransom.kaspersky.com/

Kaspersky Lab Survey on Ransomware (June 2016)
http://www.businesswire.com/news/home/20160524005355/en/Kaspersky-Lab-Survey-Shows-Consumers-Ransomware

Locky Ransomware Uses Infected JPG Images to Spread on Facebook and LinkedIn
https://winbuzzer.com/2016/11/25/locky-ransomware-uses-infected-jpg-images-to-spread-on-facebook-and-linkedin-xcxwbn/

Ransomware creep accidentally hijacks San Francisco Muni, won't give it back
http://boingboing.net/2016/11/27/ransomware-creep-accidentally.html

Gartner's webinar about Ransomware,
https://www.gartner.com/webinar/3571919/player?commId=242573&channelId=5501&srcId=1-5418502758


(IX) Secure Your Mobile Device


https://blog.malwarebytes.com/101/2016/09/top-10-ways-to-secure-your-mobile-phone/


(X) IS Useful Links

University Information Security Policies/Standards/Guidelines
http://ito.hkbu.edu.hk/index.php/services-2/it-security-2/#tab-2

Information Security Newsletters
http://ito.hkbu.edu.hk/index.php/services-2/it-security-2/#tab-3

Cyber Security Information Portal
http://www.cybersecurity.hk/en/index.php

HK Government InfoSec Website
http://www.infosec.gov.hk/english/main.html

HKCERT - Security Tools
https://www.hkcert.org/security-tools

Google's essential tips for how to keep your Android phone safe
http://www.greenbot.com/article/2919693/googles-essential-tips-for-keeping-your-android-devices-safe.html

Security Tools for Android Smart Devices
https://www.hkcert.org/mobile-security-tools

Top 10 iPhone Security Tips & Common iPhone Security Issues and Resolutions
https://tunesgo.wondershare.com/iphone-tips/top-10-iphone-security-tips.html

All the iOS 10 features that guard your privacy and security
http://bgr.com/2016/09/14/ios-10-privacy-security-features-tips-tricks/

Ransomware Knowledge Base
https://www.knowbe4.com/ransomware-knowledgebase

9 Security Tips To Protect Your Website From Hackers
http://www.creativebloq.com/web-design/website-security-tips-protect-your-site-7122853