Bitcoin Forum
May 07, 2024, 12:11:20 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: FinFisher  (Read 559 times)
2dogs (OP)
Legendary
*
Offline Offline

Activity: 1267
Merit: 1000


View Profile
June 01, 2015, 11:17:26 AM
Last edit: June 01, 2015, 06:38:39 PM by 2dogs
 #1

The other day I noticed "finfisher" in my download file.
Never downloaded this directly and wondered how it got there.
I had no idea what this was, looked it up and found it to be surveillance software.
Deleted it, but not sure if it is gone.

Does anyone know more about this spyware?
1715040680
Hero Member
*
Offline Offline

Posts: 1715040680

View Profile Personal Message (Offline)

Ignore
1715040680
Reply with quote  #2

1715040680
Report to moderator
1715040680
Hero Member
*
Offline Offline

Posts: 1715040680

View Profile Personal Message (Offline)

Ignore
1715040680
Reply with quote  #2

1715040680
Report to moderator
"Bitcoin: the cutting edge of begging technology." -- Giraffe.BTC
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1715040680
Hero Member
*
Offline Offline

Posts: 1715040680

View Profile Personal Message (Offline)

Ignore
1715040680
Reply with quote  #2

1715040680
Report to moderator
1715040680
Hero Member
*
Offline Offline

Posts: 1715040680

View Profile Personal Message (Offline)

Ignore
1715040680
Reply with quote  #2

1715040680
Report to moderator
subSTRATA
Legendary
*
Offline Offline

Activity: 1288
Merit: 1043


:^)


View Profile
June 01, 2015, 11:36:39 AM
 #2

The other day I noticed "finfisher" in my download file.
Never downloaded this directly and wondered how it got there.
I had no idea what this was, looked it up and found it to be surveillance software.
Deleted it, but not sure if it is gone.

Does anyone know more about this spyware?


finfisher is surveillance software licensed out to government agencies. If you were infected with it you sure as hell wouldn't find out that easy. for sure there would be no trace in your download folder. Maybe you downloaded that file by accident. What file type is it? I bet you accidentally downloaded a PDF from some news website talking about finfisher, I did that by accident with some NSA leak files.

theres nothing here. message me if you want to put something here.
2dogs (OP)
Legendary
*
Offline Offline

Activity: 1267
Merit: 1000


View Profile
June 01, 2015, 06:57:10 PM
 #3

Never heard of FinFisher until now.
I deleted the file (or so I thought), but ran another search and found this:

finfisher.torrent        8/10/2014  4:00PM  TORRENT File           3.401KB    uTorrent (C:\Users\2dogs\AppData\Roaming\uTorrent)


Could it have been downloaded with uTorrent, which I did download (but hardly ever used)?
Or was it some rouge alt coin program d/l?

I'm surprised SUPERAntiSpyware didn't detect this.
Lauda
Legendary
*
Offline Offline

Activity: 2674
Merit: 2965


Terminated.


View Profile WWW
June 01, 2015, 09:11:06 PM
 #4

Never heard of FinFisher until now.
I deleted the file (or so I thought), but ran another search and found this:

finfisher.torrent        8/10/2014  4:00PM  TORRENT File           3.401KB    uTorrent (C:\Users\2dogs\AppData\Roaming\uTorrent)


Could it have been downloaded with uTorrent, which I did download (but hardly ever used)?
Or was it some rouge alt coin program d/l?

I'm surprised SUPERAntiSpyware didn't detect this.
You might have accidentally downloaded it. The real and important question is what the extension of that file was. Was it .torrent, .exe, .zip or something else? I wasn't aware of Finfisher until recently either ,however you obviously have not done enough research as you find it surprising that your AV/AntiSpyware program didn't detect it.

FinFisher was designed solely to infiltrate and spy on systems and is only sold to governments. I believe that most of the information about it was revealed by Snowden.
You should take a look here: https://wikileaks.org/spyfiles4/documents.html and download the file: Anti-Virus-Results-FinSpy-PC-4.40.xlsx . Checking that file will show you that almost no software detects it.
More information can also be found here: https://wikileaks.org/spyfiles4/

This is actually quite interesting though as Wikileaks themselves have stated the following:
Quote
In order to prevent any accidental execution and infection, the following files have been renamed and compressed in password protected archives (the password is "infected"). They are weaponised malware, so handle carefully.
I did not however want to risk anything until I set up an environment for testing.

"The Times 03/Jan/2009 Chancellor on brink of second bailout for banks"
😼 Bitcoin Core (onion)
2dogs (OP)
Legendary
*
Offline Offline

Activity: 1267
Merit: 1000


View Profile
June 01, 2015, 11:14:28 PM
Last edit: June 01, 2015, 11:51:43 PM by 2dogs
 #5

The extension is finfisher.torrent.

I don't proclaim to know much about tech security - I come from finance but not afraid to ask questions and learn along the way, thanks.


So it appears some .gov might be interested enough in me, to infiltrate my PC?

I'm flattered, I guess. Cheesy


EDIT:
Just for the record, if FinFisher is running:

I LOVE U, NSA Cheesy
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!