Cyber Security

DanPSup

Hedge Strategy Trader in Options and Futures
About DJVU (STOP) Ransomware

India is one of the regions which is most affected by this malware.

DJVU cryptoware codifies the users’ data with the AES-556 algorithm (CFB mode). However, it does not encrypt the entire file, but rather approximately 5 MB in its beginning. Subsequently, it asks for the ransom that amounts to $980 in Bitcoin equivalent to restore the files.

The authors of the malware have Russian roots. The frauds use Russian language and Russian words written in English, as well as the domains registered through Russian domain-registration companies. The crooks most likely have allies in other countries.

Here the full version of the article: About DJVU (STOP) Ransomware

Since a few days, there is a solution to this problem which can be downloaded for free. It will unlock your files. You can downloaded it HERE
 
Faced a ransomware attack around 6 years ago, they had asked for 2 bit coins. At that time it was worth about 80 Dollars, or maybe I am mistaken about the number of Bitcoins, but it was worth 9000 in Indian rupees. All my jpeg files were encrypted, lost around 7000 pics. Had to format. The condition was that ransom was to be doubled every 3 days. It corrupted my dtopbox alsoas I had the desktop application installed.
 

KAL.YUG

Well-Known Member
Received below message on Whatsapp.

I cannot authenticate it but personally, even I have received a number of missed calls, last week on Thursday and Friday, but not from the below list.
From the various blank calls that I have received I have noticed that all calls showed only country of origin (i.e India) but not the actual place/location.
___________________________________________________________

Urgent Very Urgent ...❓

Please pass around to your family and friends...!!!

People have been receiving calls from
+375602605281,
+37127913091
+37178565072
+56322553736
+37052529259
+255901130460
or
any number starting from
+375,
+371 number
+381
One ring & hang up.
*If you call back, they can copy your contact list in 3 seconds
&
If U have bank
or
Credit card details on your phone,
they can copy that too...

+375 is from Belarus.
+371 is code for Lativa.
+381 Serbia
+563- Valparaiso
+370- Vilnius
+255- Tanzania
These calls may under ISIS
Don't answer
or Call back.

Also, Don't Press
#90 or #09
on your Mobile when asked by any caller.

It's a New Trick of Terrorists to access your SIM card, Make calls at your expense and frame you as a criminal.
Just
Forward this message to as many friends as U can, to stop it.

BHARAT SANCHAR NIGAM LIMITED
 

KAL.YUG

Well-Known Member
Report: Avast and AVG collect and sell your personal info via their free antivirus programs
Avast says information collection is opt-in, and an opt-out option will be added soon.
By Mark Hachman
Senior Editor, PCWorld | JAN 27, 2020 11:41 AM PST




Avast and its subsidiary AVG, caught selling customer data to corporate clients last year, are at it again—this time using its free antivirus programs if you opt in to data collection, a new report said Monday.
The joint report by Vice’s Motherboard and PCMag build upon reports by Adblock Plus creator Wladimir Palant, who reported in October, 2019 that the Avast Online Security Extension as well as the AVG Secure Browser spy on users, harvesting their information.
Palant alleged that the information—which included a unique user ID, the page you visited, whether you’d visited that page before, and other information—could be provided to third parties, and suggested that Jumpshot could be a possible destination. (Avast acquired Jumpshot in 2013, and a statement on the company’s website says that it “provides insights into consumers’ online journeys by measuring every search, click and buy across 1,600 categories from more than 150 sites, including Amazon, Google, Netflix, and Walmart.”) At the time, the news caused browser makers like Google to remove both from its web store, though the extensions have since returned.

IDG
In the report, Avast told Motherboard/PCMag that data collected by the Avast browser extensions is no longer provided to Jumpshot. But other sources alleged that it is instead collecting that same information from the Avast and AVG free antivirus programs. That data is then passed along to Jumpshot, those sources said, and from there to its corporate clients.
“Last week, months after it was spotted using its browser extensions to send data to Jumpshot, Avast began asking its existing free antivirus consumers to opt-in to data collection, according to an internal document,” Motherboard wrote.
In a statement, Avast said that it “acted quickly to meet browser store standards,” and in December completely discontinued the practice of using any data from the browser extensions for any other purpose than improving the core security engine. “We ensure that Jumpshot does not acquire personal identification information, including name, email address or contact details,” the statement said.
The statement went on to describe the opt-in and opt-out choices available. “Users have always had the ability to opt out of sharing data with Jumpshot,” it said. “As of July 2019, we had already begun implementing an explicit opt-in choice for all new downloads of our AV, and we are now also prompting our existing free users to make an opt-in or opt-out choice, a process which will be completed in February 2020.”
[ Further reading: The best antivirus for Windows PCs ]

Avast
Avast supplies a long list of optional modules to install as part of its free security software.
Avast’s statement also sought to minimize concerns about its practices. “We have a long track record of protecting users’ devices and data against malware, and we understand and take seriously the responsibility to balance user privacy with the necessary use of data for our core security products,” Avast added. The company said that it complies with the European GDPR and the California Consumer Privacy Act, and referred users to its privacy policy for more information.
The policy allows Avast to “enable use of your personal data to create a de-identified data set that is provided to Jumpshot to build trend analytics products and services.”
When installing the free Avast antivirus software, users are given the option to uncheck virtually all of the optional modules that the software installs: password storage, disk cleanup, and more. By default, the Avast security browser extension and SafePrice browser extension have a check mark next to them, showing that they will be installed. Those can be unchecked and not installed.
Out of curiosity, PCWorld unchecked every option. The Avast software reported that the installation process completed, and Windows Security reported that the Avast software was installed. However, we weren’t able to open the Avast software itself, including its dashboard. We've reached out to the company for more information and will update this story if we hear back.

There’s an old adage: When you’re not paying for the product, you’re the product. For now, this seems to be the case with Avast’s antivirus software.




https://www.pcworld.com/article/351...l-info-via-their-free-antivirus-programs.html
 
https://www.hindustantimes.com/worl...-cases-fall/story-zApcrB51EuTheOq17Rfg2K.html

CIA, BND made coding devices that India, other countries used unwittingly
Countries spy on each other and this is not the first time US intelligence has been found snooping on India.
WORLD Updated: Feb 11, 2020 23:15 IST

Yashwant Raj
Hindustan Times, Washington


The CIA and Germany’s BND secretly owned and ran for decades a company that made and sold code-writing machines for secret communications to many countries, including India, and easily unencrypted the intercepted messages and shared the intercepted information among a tight group of partners.

The Washington Post that uncovered the secret operation from CIA classified documents, in a joint project with German broadcaster ZDF, said the company called Crypto AG was based in Switzerland and was dismembered and sold off in 2018 to separate companies, who were no aware of its antecedents.

The Post reported that India was among the company’s more than 120 clients, along with Pakistan. The report did not specify, however, any Indian intelligence operation or communication that may have been intercepted, and used, though it mention a few, such as Iranian and Egyptian messages.

Countries spy on each other and this is not the first time US intelligence has been found snooping on India. In 2013, secret documents released by US whistleblower Edward Snowden had shown the National Security Agency of the US had accessed computers of the Indian embassy in Washington DC and the permanent mission to the UN in New York in a massive clandestine operation that had gone on till earlier that year.

The joint CIA-BND operation was codenamed “Thesaurus” initially and then “Rubicon”. It ran from the 1970s to 2018 and has been called one of the most audacious of intelligence operations. “It was the intelligence coup of the century,” the CIA report said, according to Washington Post. “Foreign governments were paying good money to the US and West Germany for the privilege of having their most secret communications read by at least two (and possibly as many as five or six) foreign countries.”

Crypto, the company, was founded by a man named Boris Hagelin, a Russian who fled first to Sweden and then to the United States. The United States and BND took over its control completely in early 1970s, controlled personnel decisions and and designed the compromised devices that also earned them millions of dollars, which they used to fund other operations.

The Post said the CIA monitored the Iranians for years, specially during the hostage crisis, as they used Crypto devices. The US was able to quickly pin the blame for a 1986 bombing on a Berlin disco on Libya and passed Argentinian intelligence to the British during the Falklands War in 1982.
 

DanPSup

Hedge Strategy Trader in Options and Futures
https://www.hindustantimes.com/worl...-cases-fall/story-zApcrB51EuTheOq17Rfg2K.html

CIA, BND made coding devices that India, other countries used unwittingly
Countries spy on each other and this is not the first time US intelligence has been found snooping on India.
WORLD Updated: Feb 11, 2020 23:15 IST
BND Involved in Intelligence Operations Creating the EU

BND and Crypto AG Operations for a federal Europe. Switzerland, the playground for West German and US intelligence services.

BERLIN/BERN/WASHINGTON

(Own report) - The investigation into the German BND's criminal activities against dozens of UN member nations and international organizations using Switzerland's Crypto AG, is being held up in Germany. Parliamentary interpellations in Berlin are being drowned in time-consuming procedures. Whereas the Swiss government has appointed a special investigator, German instigators are keeping silent. Together with the CIA, they are responsible for spying on allegedly allied nations with rigged encoding devices. Obviously, the Munich based Siemens AG, with its legendary links to the BND, has been involved in these illegal operations. The investigation is being delayed due to Berlin and Washington's competing strategic interests. The BND and CIA's tactical cooperation dates back to the post-war era. Through its intelligence operations - with Crypto AG - the BND became an instrument used in the creation of the EU.

You will find more specific information in the following original source:
https://www.german-foreign-policy.com/en/news/detail/8192/
 

Similar threads