Stories
Slash Boxes
Comments

News for nerds, stuff that matters

Slashdot Log In

Log In

Create Account  |  Retrieve Password

Russian Police Know Who Wrote Gpcode Virus

Posted by timothy on Tue Sep 30, 2008 11:12 AM
from the nyet-nyet-nyet- dept.
rifles only writes "Russian police almost certainly know the identity of the programmer responsible for the frightening 'ransomware' crypto virus, Gpcode, which has hit the Internet several times since 2006, says a story at Techworld, which has tapped a Kaspersky Lab researcher. Gpcode used 1024-bit RSA/128-bit RC4 to lock up victims' data, an uncrackable combination that left the world with only one solution: find the virus author to get the master key. So why don't the cops do anything? Good question, but this is Russia we're talking about."
+ -
story

Related Stories

This discussion has been archived. No new comments can be posted.
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
 Full
 Abbreviated
 Hidden
More
Loading... please wait.
  • by Eg0Death (1282452) * on Tuesday September 30 2008, @11:13AM (#25204871)
    . . . virus encrypts you!
  • by zappepcs (820751) on Tuesday September 30 2008, @11:14AM (#25204881) Journal

    Who is to say that Russian authorities are not using this coder as a cover for much more malicious activities? All we know is that there is a virus that encrypts your data. What is it that we don't know yet?

    • by MightyYar (622222) on Tuesday September 30 2008, @11:46AM (#25205321)

      Who is to say that Russian authorities are not using this coder as a cover for much more malicious activities?

      No, no - they are TRYING to get him, but he lives in Georgia.

    • by martyb (196687) on Tuesday September 30 2008, @11:51AM (#25205387)

      All we know is that there is a virus that encrypts your data. What is it that we don't know yet?

      I'll take a stab at that one: the decryption key! <grin>

    • by kestasjk (933987) on Tuesday September 30 2008, @12:07PM (#25205623) Homepage

      Who is to say that Russian authorities are not using this coder as a cover for much more malicious activities? All we know is that there is a virus that encrypts your data. What is it that we don't know yet?

      I've read the RTFA, if you thought "Russian KGB are letting mysterious virus author do as he wishes" was too bizarre to be true you're right.

      This is how it breaks down:

      • The virus author contacted Kaspersky asking for money for the tool to decrypt the encrypted files
      • Kaspersky attempted to trace the author, and found that (surprise, surprise) he is using various proxies in the US, Hungary, Russia, etc
      • Russian authorities apparently haven't rushed to the location of the Russian proxies (there's no mention of whether the US and Hungarian ones did)

      Implying that the KGB are the master-mind hackers of an intricate spiders web of zombie-PCs may be a little premature based on this techworld.com article..

      I wish there were sites which reported computer security news like it is, without the bullshit

  • what? (Score:5, Insightful)

    by SolusSD (680489) on Tuesday September 30 2008, @11:15AM (#25204887) Homepage
    "Good question, but this is Russia we're talking about." ?? Someone care to enlighten me what that was about?
    • Simple (Score:5, Insightful)

      by Shivetya (243324) <shivetya @ a rchonon.com> on Tuesday September 30 2008, @11:30AM (#25205139) Homepage

      It is implied that in Russia there are no rights, if the government wants something or someone it doesn't think twice about getting it regardless of the ramifications.

      Of course that is not much different from Western Countries, we just like to pretend otherwise.

      • Re:Simple (Score:5, Insightful)

        by Anonymous Coward on Tuesday September 30 2008, @11:46AM (#25205327)

        Wait, isn't this the modern Russia which has imprisoned and shut down all free media, poisoned the Ukranian head of state, also brazenly poisoning people in other countries. Holds Europe hostage with its petroleum, and Putin is now head of state for life.

        When the NYT's has a regime change by Bush after printing something unflattering to him, then come tell me that there is no difference.

    • Re:what? (Score:5, Interesting)

      by The Master Control P (655590) <ejkeever&nerdshack,com> on Tuesday September 30 2008, @11:38AM (#25205219) Homepage
      The implication is that the Russian government is explicitly corrupt and does not put on any pretense of enforcing the law but instead protects those with money or ties to money.

      See also: Russian Mafia.
              • Re:what? (Score:5, Insightful)

                by Bryan Ischo (893) * on Tuesday September 30 2008, @03:20PM (#25208233) Homepage

                I don't know very much about the actual causes of this issue, however I do find it really annoying that someone must invariably turn the discussion into an "it's the Democrats' fault! No, it's the Republicans' fault!" waste of time. You cited only Democratic presidents (and president hopefuls) in your post. I find it VERY hard to believe that there isn't blame to be place on just about every politician out there, regardless of party. So why do you feel the need to try to make this issue partisan? It's attitudes like yours that turn intelligent discussion into useless time sinks, which is the root cause of the USA's political environment being so dysfunctional.

                In short: if voters use their brains, then they will elect politicians who use their brains. You are encouraging voters not to use their brains with arguments like yours. So you and people like you are the real root of the problem.

  • Tapped? (Score:5, Funny)

    by Hatta (162192) on Tuesday September 30 2008, @11:19AM (#25204971) Journal

    I'm not sure it's relevant who at Techworld is tapping who at Kaspersky Labs

  • by Ostracus (1354233) on Tuesday September 30 2008, @11:19AM (#25204983) Journal

    "According to Kaspersky, stopping ransomware-based malware in the future will require more effective law enforcement, the use of forensic software analysis to tie suspects to their malevolent creations, and possibly building restrictions into the Windows cryptographic software libraries used to create Gpcode itself."

    This concerns me more than what the cops do as pointed out in the story there's the difficulty of getting the money back to the ransomware author.

    • by jimicus (737525) on Tuesday September 30 2008, @11:52AM (#25205405) Homepage

      "According to Kaspersky, stopping ransomware-based malware in the future will require more effective law enforcement, the use of forensic software analysis to tie suspects to their malevolent creations, and possibly building restrictions into the Windows cryptographic software libraries used to create Gpcode itself."

      Then Kaspersky are idiots - any malware author with half a brain will simply statically link their code with a stripped down OpenSSL library.

  • by BlackPignouf (1017012) on Tuesday September 30 2008, @11:24AM (#25205049)

    hQIOA9E1fHW L3Cs+EAf+ LWFxdp1PrTde8Qie 1RCbJcYw+wje0tBapGwhioSd8+yQ
    1HgIDg7 zfLYXpPL4Pqlv FvyE810ZzpfzhcI2WhNI2O 1TT6pl8nXeEWbDr39TOXCf
    FNBkdmXnkZ /2+iF7/2ht/yAmNQm 4dX6v1BaHSHccN RTCsa74Rq58BfYKAJm2AEf/
    gI0eKtXH SUiCT 8MBdee+BfO3iVLaBGTTcT ioI6Ax45ODsz5zColQz0VJb99LmjGw
    AGVLf4dMLxm8WpZb Ni7RX8WLACnJAP t5MNhOee/J4 vwohQDrfQpux85HKsbQ6nFm
    6Q5HKf4 l68DyPo yYvuvNSg0TlYov03G xYxEA6T4xAwgAi7ahv huEhPFexhNru/S

    This highly interesting post has automatically been encrypted.
    Please Paypal-send 10$ to john.doe@gmail.com to read it!

  • Good question, but this is Russia we're talking about.

    Theres a world of difference between knowing who did something, and having enough proof to be able to arrest them, charge them and convict them.

    • by phayes (202222) on Tuesday September 30 2008, @11:44AM (#25205301) Homepage

      Theres a world of difference between knowing who did something, and having enough proof to be able to arrest them, charge them and convict them.

      There is a only a world of difference in countries that have an independant judiciary. In Putin's Russia where the judiciary is only there to serve as a fig leaf for Putin's ambitions, there is no difference at all...

  • by Anonymous Coward on Tuesday September 30 2008, @11:28AM (#25205093)

    That's a good point someone brought up. In the situation of ransom, how
    will it ever work?
    If large amount of funds are transferred by bank, they can
    find and freeze the bank account.
    If large amount of funds are transferred in cash,
    the money can be traced so you would be caught if you use it.

    So What is the the point in ransoming in the current era? There must be
    something I am missing.

  • by nweaver (113078) on Tuesday September 30 2008, @11:38AM (#25205215) Homepage

    Ransomware crypto is not that effective: Backups are good, and the problem is payment is traceable.

    And RC4 isn't good for ransomware crypto, it IS broken, badly so.

    • Re:in America (Score:5, Interesting)

      by I'm not really here (1304615) on Tuesday September 30 2008, @12:20PM (#25205817)
      DISCLAIMER: I have friends from each of the countries mentioned below, and do not think this of them or their countries of origin.

      It is not xenophobia, it is simply stereotyping other cultures. Not that this is the best behavior, but it is common. Here are a few others that are often seen bandied about:
      • French: Stuck up snobs who run away from any fight.
      • German: Stubborn amoral mules who are in denial of Hitler and the Nazi regimes atrocities.
      • Australian: Down-under hicks who always say "G'Day mayte"
      • Americans: Fat slobs who think they're better than everyone else
      • British: Inbred, with bad teeth
      • Africa: Everyone is poor, hungry, and lives in a mud hut.

      Now that I've evenly offended pretty much everyone, please read the following before modding me into oblivion:

      Stereotyping is what happens when somenoe only sees what little they see in the news or what little they see from video games or movies.

      People from France are people (some nice, some not). People from Germany are people (some nice, some not). Etc., etc...

      Point being - People are just people, but often, for convenience, people latch onto the stereotypes and just repeat those.

      To be honest, for many Americans, their understanding of Russia is likely as follows:
      AllOfMP3.com, Russian Mafia from movies, and the Cold War in the history books.

      It's sad, I know.

      • by Thiez (1281866) on Tuesday September 30 2008, @03:19PM (#25208197)

        > Now that I've evenly offended pretty much everyone

        I was going to complain about how my country isn't on the list, but then I realized its very omission was offending me, implying it is small and insignificant. Sir, I must congratulate you on finding such an extremely concise way of offending the dutch.