Bitcoin Forum
May 13, 2024, 11:54:31 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: [Warning] Weaponized malware made public, expect it from crypto scammers  (Read 960 times)
FunTimesInCrypto (OP)
Newbie
*
Offline Offline

Activity: 1
Merit: 0


View Profile
September 16, 2014, 09:04:39 PM
 #1

WARNING:


As some of you may know, Gamma International sells a product called Finfisher to oppressive governments to hunt down and kill dissidents. They use weaponized malware that gives you complete control over the targets computer and mobile devices. This government grade malware has recently been released to the public for hope of finding a way to combat it. Be warned that in the meantime while security experts review the data, scammers and hackers will likely try to abuse this malware by trying to take over mining farms, hacking exchanges, taking control of your PC and impersonating individuals by using their computers.



For developers looking to find weaknesses and protect people from this software, I will provide the direct link to WikiLeaks. If you do not know how to handle something like this, do not download the files period!
Be warned! It is fully weaponized!
Going to link to it here: https://wikileaks.org/spyfiles4/

Some usage information:

Quote
Proceed with caution: " In order to prevent any accidental execution and infection, the following files have been renamed and compressed in password protected archives (the password is "infected"). They are weaponised malware, so handle carefully."

And remember! Have a fun time in crypto currencies! Smiley
1715601271
Hero Member
*
Offline Offline

Posts: 1715601271

View Profile Personal Message (Offline)

Ignore
1715601271
Reply with quote  #2

1715601271
Report to moderator
1715601271
Hero Member
*
Offline Offline

Posts: 1715601271

View Profile Personal Message (Offline)

Ignore
1715601271
Reply with quote  #2

1715601271
Report to moderator
1715601271
Hero Member
*
Offline Offline

Posts: 1715601271

View Profile Personal Message (Offline)

Ignore
1715601271
Reply with quote  #2

1715601271
Report to moderator
The grue lurks in the darkest places of the earth. Its favorite diet is adventurers, but its insatiable appetite is tempered by its fear of light. No grue has ever been seen by the light of day, and few have survived its fearsome jaws to tell the tale.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
ProGamer
Sr. Member
****
Offline Offline

Activity: 322
Merit: 250


View Profile
September 16, 2014, 09:11:57 PM
 #2

Why was this moved to the off topic section? It details with the crypto currency scammers utilizing the malware for malicious intent.

This is some scary shit. Hopefully we find it's weaknesses soon!
ron_
Sr. Member
****
Offline Offline

Activity: 840
Merit: 276



View Profile
September 16, 2014, 09:53:00 PM
 #3

woohooo !!! boot up the VMs !!!
i hope the source code is available as well!

.
  ◆

 
.
.
.


 
.



▄▄       ▄▄      ▄▄       ▄▄      ▄▄▄▄▄▄▄▄         ▄▄▄▄▄▄▄▄        ▄▄        ▄▄▄▄▄▄▄▄           ▄▄▄            ▄▄       ▄▄      ▄▄▄▄▄▄▄▄▄▄
██       ██      ██       ██      ▀▀▀▀▀▀▀██▄       ▀▀▀▀▀▀▀██▄      ██      ▐██▀▀▀▀▀▀▀       ▄▄██▀▀▀██▄▄        ▀██▄     ██      ▀▀▀▀▀▀▀▀▀▀
▀▀       ██      ██       ██              ██               ██      ██      ██              ██▀       ▀██         ██▄    ██      ▄▄
▄▄▄▄▄▄▄▄▄██      ██       ██      ▄▄▄▄▄▄▄██▀       ▄▄▄▄▄▄▄██▀      ██      ▐██▄▄▄▄        ▐█           █▌      █▄ ▀██   ██      ██▄▄▄▄
██▀▀▀▀▀▀▀██      ██       ██      ██▀▀▀▀▀██        ██▀▀▀▀▀▀        ██        ▀▀▀▀██▄      ▐█           █▌      ██   ██▄ ██      ██▀▀▀▀
██       ██      ██       ██      ██      ██       ██   ▄▄         ██             ▐█▌     ▐█▄         ▄█▌      ██    ▀█▄██      ██
██       ██       ██▄   ▄██       ██     ▄█▀       ██    ▀█▄       ██            ▄██       ▀██▄▄   ▄▄██▀       ██     ▀███      ██
██       ██        ▀▀███▀▀        ████████▀        ██      ▀█      ██      ███████▀           ▀▀███▀▀          ██       ██      ██████████
.

██████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████

██████████████████████████████████████████████
.


.
.




▄███████████▄     
██▀       ▐█▀█▄   
██        ▐█  ▀█▄ 
██        ▐█    ▀█▄
██        ▝▀▀▀▀▀▀██
██               ██
██  ███████████  ██
██               ██
██  ██████       ██
██               ██
██▄             ▄██
▀█████████████████▀
WP
.


.
.


.


 
.
.
statdude
Legendary
*
Offline Offline

Activity: 1498
Merit: 1000


View Profile
September 16, 2014, 10:54:47 PM
 #4

So what does it do exactly ?

▄█▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀█▄
█ ███████████████████████ █
█ █████     █ ▀██████████ █
█ █████     █   ▀████████ █
█ █████  ██ █     ▀██████ █

█ █████  ▀▀ █▄▄▄▄▄▄▄█████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████             █████ █
█ ███████████████████████ █
▀█▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄█▀
  Website
    Twitter
      Gitlab
      Reddit
    Telegram
Whitepaper
  ▄█▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀█▄
█ ███████████████████████ █
█ ███████████████████████ █
█ ███▄    ███████▀   ▄███ █
█ ████▌    █████▀    ████ █
█ ████▌     ███▀     ████ █
█ ████▌▐█    █▀ █    ████ █
█ ████▌▐██     ██    ████ █
█ ████▌▐███   ███    ████ █
█ ███▀  ▀███ ███▀    ▀███ █
█ ███████████████████████ █
█ ███████████████████████ █
▀█▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄█▀
ProGamer
Sr. Member
****
Offline Offline

Activity: 322
Merit: 250


View Profile
September 17, 2014, 01:03:26 AM
 #5

So what does it do exactly ?



It's a real nasty piece of software. It was used to curb the Arab spring.

http://en.wikipedia.org/wiki/FinFisher

Quote
The software suite, which the company calls "Remote Monitoring and Deployment Solutions" has the ability to take control of target computers and capture even encrypted data and communications. Using "enhanced remote deployment methods" it can install software on target computers. An "IT Intrusion Training Program" is offered which includes training in methods and techniques and in use of the company supplied software.
ProGamer
Sr. Member
****
Offline Offline

Activity: 322
Merit: 250


View Profile
September 17, 2014, 02:40:47 AM
 #6

woohooo !!! boot up the VMs !!!
i hope the source code is available as well!

Would love to see what you find and any observations on the malware.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!