Bitcoin Forum
May 11, 2024, 10:47:32 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: [Warning] Weaponized malware made public, expect it from crypto scammers  (Read 960 times)
FunTimesInCrypto (OP)
Newbie
*
Offline Offline

Activity: 1
Merit: 0


View Profile
September 16, 2014, 09:04:39 PM
 #1

WARNING:


As some of you may know, Gamma International sells a product called Finfisher to oppressive governments to hunt down and kill dissidents. They use weaponized malware that gives you complete control over the targets computer and mobile devices. This government grade malware has recently been released to the public for hope of finding a way to combat it. Be warned that in the meantime while security experts review the data, scammers and hackers will likely try to abuse this malware by trying to take over mining farms, hacking exchanges, taking control of your PC and impersonating individuals by using their computers.



For developers looking to find weaknesses and protect people from this software, I will provide the direct link to WikiLeaks. If you do not know how to handle something like this, do not download the files period!
Be warned! It is fully weaponized!
Going to link to it here: https://wikileaks.org/spyfiles4/

Some usage information:

Quote
Proceed with caution: " In order to prevent any accidental execution and infection, the following files have been renamed and compressed in password protected archives (the password is "infected"). They are weaponised malware, so handle carefully."

And remember! Have a fun time in crypto currencies! Smiley
Once a transaction has 6 confirmations, it is extremely unlikely that an attacker without at least 50% of the network's computation power would be able to reverse it.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
ProGamer
Sr. Member
****
Offline Offline

Activity: 322
Merit: 250


View Profile
September 16, 2014, 09:11:57 PM
 #2

Why was this moved to the off topic section? It details with the crypto currency scammers utilizing the malware for malicious intent.

This is some scary shit. Hopefully we find it's weaknesses soon!
ron_
Sr. Member
****
Offline Offline

Activity: 840
Merit: 276



View Profile
September 16, 2014, 09:53:00 PM
 #3

woohooo !!! boot up the VMs !!!
i hope the source code is available as well!

.
  ◆

 
.
.
.


 
.



▄▄       ▄▄      ▄▄       ▄▄      ▄▄▄▄▄▄▄▄         ▄▄▄▄▄▄▄▄        ▄▄        ▄▄▄▄▄▄▄▄           ▄▄▄            ▄▄       ▄▄      ▄▄▄▄▄▄▄▄▄▄
██       ██      ██       ██      ▀▀▀▀▀▀▀██▄       ▀▀▀▀▀▀▀██▄      ██      ▐██▀▀▀▀▀▀▀       ▄▄██▀▀▀██▄▄        ▀██▄     ██      ▀▀▀▀▀▀▀▀▀▀
▀▀       ██      ██       ██              ██               ██      ██      ██              ██▀       ▀██         ██▄    ██      ▄▄
▄▄▄▄▄▄▄▄▄██      ██       ██      ▄▄▄▄▄▄▄██▀       ▄▄▄▄▄▄▄██▀      ██      ▐██▄▄▄▄        ▐█           █▌      █▄ ▀██   ██      ██▄▄▄▄
██▀▀▀▀▀▀▀██      ██       ██      ██▀▀▀▀▀██        ██▀▀▀▀▀▀        ██        ▀▀▀▀██▄      ▐█           █▌      ██   ██▄ ██      ██▀▀▀▀
██       ██      ██       ██      ██      ██       ██   ▄▄         ██             ▐█▌     ▐█▄         ▄█▌      ██    ▀█▄██      ██
██       ██       ██▄   ▄██       ██     ▄█▀       ██    ▀█▄       ██            ▄██       ▀██▄▄   ▄▄██▀       ██     ▀███      ██
██       ██        ▀▀███▀▀        ████████▀        ██      ▀█      ██      ███████▀           ▀▀███▀▀          ██       ██      ██████████
.

██████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████

██████████████████████████████████████████████
.


.
.




▄███████████▄     
██▀       ▐█▀█▄   
██        ▐█  ▀█▄ 
██        ▐█    ▀█▄
██        ▝▀▀▀▀▀▀██
██               ██
██  ███████████  ██
██               ██
██  ██████       ██
██               ██
██▄             ▄██
▀█████████████████▀
WP
.


.
.


.


 
.
.
statdude
Legendary
*
Offline Offline

Activity: 1498
Merit: 1000


View Profile
September 16, 2014, 10:54:47 PM
 #4

So what does it do exactly ?

▄█▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀█▄
█ ███████████████████████ █
█ █████     █ ▀██████████ █
█ █████     █   ▀████████ █
█ █████  ██ █     ▀██████ █

█ █████  ▀▀ █▄▄▄▄▄▄▄█████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████  ▄▄▄▄▄▄▄▄▄  █████ █
█ █████             █████ █
█ ███████████████████████ █
▀█▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄█▀
  Website
    Twitter
      Gitlab
      Reddit
    Telegram
Whitepaper
  ▄█▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀█▄
█ ███████████████████████ █
█ ███████████████████████ █
█ ███▄    ███████▀   ▄███ █
█ ████▌    █████▀    ████ █
█ ████▌     ███▀     ████ █
█ ████▌▐█    █▀ █    ████ █
█ ████▌▐██     ██    ████ █
█ ████▌▐███   ███    ████ █
█ ███▀  ▀███ ███▀    ▀███ █
█ ███████████████████████ █
█ ███████████████████████ █
▀█▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄█▀
ProGamer
Sr. Member
****
Offline Offline

Activity: 322
Merit: 250


View Profile
September 17, 2014, 01:03:26 AM
 #5

So what does it do exactly ?



It's a real nasty piece of software. It was used to curb the Arab spring.

http://en.wikipedia.org/wiki/FinFisher

Quote
The software suite, which the company calls "Remote Monitoring and Deployment Solutions" has the ability to take control of target computers and capture even encrypted data and communications. Using "enhanced remote deployment methods" it can install software on target computers. An "IT Intrusion Training Program" is offered which includes training in methods and techniques and in use of the company supplied software.
ProGamer
Sr. Member
****
Offline Offline

Activity: 322
Merit: 250


View Profile
September 17, 2014, 02:40:47 AM
 #6

woohooo !!! boot up the VMs !!!
i hope the source code is available as well!

Would love to see what you find and any observations on the malware.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!