Blog Archives

‘Petya’ CIA-Sponsored Virus and Ransomware (with 1EarthUnited)

LADA’S OVERVIEW

The author of the article below contends that the ‘Petya virus is a state-sponsored attack on Ukraine.’ However, a number of European countries have been affected too. What’s more, some large Russian companies were affected as well.

I think you’ll orient yourself better in what the latest Petya virus and its counterpart NotPetya mean if I explain what’s in the name. “Petya” is diminutive for Piotr, or Petro, if you wanted to say it with a Ukrainian accent — as in Petro Poroshenko. Someone with a wicked sense of humor named this new malicious, ransom-demanding wiper malware after the Ukrainian president. In the end, even when victims do pay up, the computer still fails to reboot, making it a total loss. Knowing Poroshenko, very close to the truth, I’d say.

A new joke in Russia is that the virus’s name is Petya, while the anti-virus is called Vladimir Vladimirovich (Putin’s name). 

In conclusion, my personal opinion is that there is much more going on here than meets the eye. It is a promo for a specific new 4th Dimension MEGA-project by the global elites, bankers and related organizations.

What is it? I’ll discuss what I mean and make some bold predictions in the upcoming

EARTH SHIFT WEBINAR 3: THE FUTURE OF MONEY!

If you haven’t yet,

Buy complete THREE WEBINAR SERIES — and SAVE!
Buy EARTH SHIFT WEBINAR 2 INVERTED COLLAPSE!
Buy EARTH SHIFT WEBINAR 3 THE FUTURE OF MONEY!
Buy EARTH SHIFT WEBINAR 4 LADA RAY PERIOD 8 PREDICTIONS!
GO TO ALL WEBINARS @ LadaRay.com!

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

You can brush up on technical details of what the hoo-ha is all about below. Thanks to 1EarthUnited for the material!

Hacker News: Petya Ransomware “Wiper malware” is a state-sponsored attack on Ukraine?

petya-ransomware-wiper-malware

What if I say the Tuesday’s devastating global malware outbreak was not due to any ransomware infection?

Yes, the Petya ransomware attacks that began infecting computers in several countries, including Russia, Ukraine, France, India and the United States on Tuesday and demands $300 ransom was not designed with the intention of restoring the computers at all.

According to a new analysis, the virus was designed to look like ransomware but was wiper malware that wipes computers outright, destroying all records from the targeted systems.

Comae Technologies Founder Matt Suiche, who closely looked the operation of the malware, said after analyzing the virus, known as Petya, his team found that it was a “Wiper malware,” not ransomware.

Security experts even believe the real attack has been disguised to divert world’s attention from a state-sponsored attack on Ukraine to a malware outbreak.

“We believe the ransomware was, in fact, a lure to control the media narrative, especially after the WannaCry incident, to attract the attention on some mysterious hacker group rather than a national state attacker,” Suiche writes.

Is Petya Ransomware Faulty or Over-Smart?

Petya is a nasty piece of malware that, unlike other traditional ransomware, does not encrypt files on a targeted system one by one.

Instead, Petya reboots victims computers and encrypts the hard drive’s master file table (MFT) and renders the master boot record (MBR) inoperable, restricting access to the full system by seizing information about file names, sizes, and location on the physical disk.

Then Petya ransomware takes an encrypted copy of MBR and replaces it with its own malicious code that displays a ransom note, leaving computers unable to boot.

petya-ransomware-attack

However, this new variant of Petya does not keep a copy of replaced MBR, mistakenly or purposely, leaving infected computers unbootable even if victims get the decryption keys.

Also, after infecting one machine, the Petya ransomware scans the local network and quickly infects all other machines (even fully-patched) on the same network, using EternalBlue SMB exploit, WMIC and PSEXEC tools.

Don’t Pay Ransom; You Wouldn’t Get Your Files Back

So far, nearly 45 victims have already paid total $10,500 in Bitcoins in hope to get their locked files back, but unfortunately, they would not.

Meaning, even if victims do pay the ransom, they will never recover their files. Kaspersky researchers also said same.

“Our analysis indicates there is little hope for victims to recover their data. We have analyzed the high-level code of the encryption routine, and we have figured out that after disk encryption, the threat actor could not decrypt victims’ disks,” the security firm said.

“To decrypt a victim’s disk threat actors need the installation ID. In previous versions of ‘similar’ ransomware like Petya/Mischa/GoldenEye this installation ID contained the information necessary for key recovery.”

If claims made by the researcher is correct that the new variant of Petya is a destructive malware designed to shut down and disrupt services around the world, the malware has successfully done its job.

However, it is still speculation, but the virus primarily and massively targeted multiple entities in Ukraine, including the country’s local metro, Kiev’s Boryspil airport, electricity supplier, the central bank, and the state telecom.

Other countries infected by the Petya virus included Russia, France, Spain, India, China, the United States, Brazil, Chile, Argentina, Turkey and South Korea.

How Did Petya get into the Computers in the First Place?

According to research conducted by Talos Intelligence, little-known Ukrainian firm MeDoc is likely the primary source of the yesterday’s global ransomware outbreak.

Researchers said the virus has possibly been spread through a malicious software update to a Ukrainian tax accounting system called MeDoc, though MeDoc has denied the allegations in a lengthy Facebook post.

“At the time of updating the program, the system could not be infected with the virus directly from the update file,” translated version of MeDoc post reads. “We can argue that users of the MEDoc system can not infect their PC with viruses at the time of updating the program.”

However, several security researchers and even Microsoft agreed with Talo’s finding, saying MeDoc was breached and the virus was spread via updates.

 

Hacker News: Original Author of Petya Ransomware is Back & He Wants to Help NotPetya Victims

petya-ransomware-decryption-key

The author of original Petya ransomware is back.

After a long 6 months of silence, the author of now infamous Petya ransomware appeared on Twitter today to help victims unlock their files encrypted by a new version of Petya, also known as NotPetya.

“We’re back having a look in NotPetya,” tweeted Janus, a name Petya creator previously chose for himself from a James Bond villain. “Maybe it’s crackable with our privkey. Please upload the first 1MB of an infected device, that would help.”

This statement made by Petya author suggests he may have held on a master decryption key, which if worked for the new variant of Petya infected files, victims would be able to decrypt their files locked in the recent cyber outcry.

Janus sold Petya as a Ransomware-as-a-Service (RaaS) to other hackers in March 2016, and like any regular ransomware, original Petya was designed to lock victim’s computer, then return them when a ransom is paid.This means anyone could launch the Petya ransomware attack with just the click of a button, encrypt anyone’s system and demand a ransom to unlock it. If the victim pays, Janus gets a cut of the payment. But in December, he went silent.

However, On Tuesday, computer systems of the nation’s critical infrastructure and corporates in Ukraine and 64 other countries were struck by a global cyber attack, which was similar to the WannaCry outbreakthat crippled tens of thousands of systems worldwide.

Initially, a new variant of Petya ransomware, NotPetya, was blamed for infecting systems worldwide, but later, the NotPetya story took an interesting turn.

Yesterday, it researchers found that NotPetya is not a ransomware, rather it’s a wiper malware that wipes systems outright, destroying all records from the targeted systems.

NotPetya also uses NSA’s leaked Windows hacking exploit EternalBlue and EternalRomance to rapidly spread within the network, and WMIC and PSEXEC tools to remotely execute malware on the machines.

Experts even believe the real attack has been disguised to divert world’s attention from a state-sponsored attack to a malware outbreak.The source code to Petya has never been leaked, but some researchers are still trying hard to reverse engineer to find possible solutions.

 

Tuesday’s cyber outbreak is believed to be bigger than WannaCry, causing disaster to many critical infrastructures, including bricking computers at a Ukrainian power company, several banks in Ukraine, and the country’s Kyiv Boryspil International Airport.

The NotPetya also canceled surgeries at two Pittsburgh-area hospitals, hit computers at the pharmaceutical company Merck and the law firm DLA Piper, as well as infected computers at the Dutch shipping company A.P. Moller-Maersk forced to shut down some container terminals in seaports from Los Angeles to Mumbai.

Technical Writer, Security Blogger and IT Analyst. She is a Technology Enthusiast with a keen eye on the Cyberspace and other tech related developments.

SOURCE: 1EARTHUNITED BLOG

 

Advertisements

US Election outcome scenarios reveal 95% chance of widespread post-election violence

This is from FT contributor Maddie Walsh @ 1earthunite.wordpress.com!

You know my predictions are not exactly like this, if you have listened to Earth Shift Report 16 and read my earlier US Elections articles on FT. But these calculations do make a lot of sense and they resonate closely with what we’d talked about in ESR16: US ELECTIONS & WHAT WILL HAPPEN AFTERI thought it was good to have this complimentary perspective. Forewarned – forearmed!

ANALYSIS: Election outcome scenarios reveal 95% chance of widespread post-election violence

Election outcomes

NaturalNews ANALYSIS of possible outcomes from the upcoming presidential election reveals that America only has a 5% chance of remaining peaceful after November 8. This does not mean the violence will occur on November 9th, but rather that events will be set into motion on that day which will lead to an escalation of violence (95% chance, see below).

Here are the scenarios I see unfolding, all based on the best available information right now:

Scenario #1) Trump wins popular vote

There are three sub-scenarios under this outcome:

Scenario 1A (10% chance): Trump wins popular vote, but democrats steal electoral vote to claim victory, overriding the voters

Even though Donald Trump wins the popular vote, the democrats have bribed enough electoral college representatives to sway the vote to Clinton, even in contradiction to their own states’ voters.

Should this occur, expect mass protests, violence, bloodshed and many legal challenges in those states where the electoral college votes do not reflect the popular vote. There is no question that the Trump-supporting citizens of America will not accept a “rigged” election outcome where the electoral college votes are essentially stolen from the People. This would very quickly escalate into armed citizens marching in the streets and occupying key government buildings in an armed revolution against corruption.

Scenario 1B (60% chance): Obama declares Trump victory invalid, claiming the Russians hacked the vote

In my analysis, this is the most likely outcome of the upcoming election, and the democrats have been planting this narrative in advance with ridiculous claims that “the Russians” are running Wikileaks and that Trump is a “Putin puppet” (direct claim from Hillary Clinton in the third debate).

The purpose of all this is to create the narrative where a Trump victory can be declared invalid by Obama. Despite all the talk among democrats about how much they love and respect democracy, the simple truth is that they deeply hate it (and don’t trust it). There is almost no chance that Obama and the Clintons will voluntarily cede power to Donald Trump.

If Obama declares a Trump victory invalid, all hell breaks loose across the nation, with leftists going “full terrorism” and patriots taking up arms to defend democracy against the anti-American traitors in Washington D.C.

Scenario 1C (5% chance): Democrats accept the Trump victory and agree to peacefully transition power.

Even if Obama and the Clintons admit defeat and agree that Donald Trump is the next President, the liberal voters go nuts and begin firebombing buildings all across America. You’ll see mass riots breaking out everywhere. Obama can then use this to declare Martial Law and, if he wishes, postpone the transfer of power to Donald Trump (or blame him for all the violence, of course).

Remember, the democrats are already running mass staged violence across America (ProjectVeritasAction.com). They can easily stage riots, arson, bombings and much more in order to maximize chaos in the streets.

Scenario #2) Clinton wins popular vote

Based on current information (and considering just how much the “official” polls arecompletely rigged by deliberately oversampling democrats), in my analysis, there is only a 25% total chance that Hillary Clintonwins the popular vote. Here are the sub-scenarios under that 25%:

Scenario 2A (20% chance): Clinton wins the reported vote, but Trump challenges the validity of the election results

This scenario very likely starts with legal challenges to the mass election fraud, but could quickly escalate to a military coup or an armed citizens’ revolt where outraged Americans literally march on Washington and depose the corrupt regime in power.

Expect huge bloodshed in this scenario. There is no question that roughly half of America simply cannot and will not accept Hillary Clinton as their president. She is too corrupt, too evil and too dangerous to maintain the consent of the governed. (Hillary Clinton is a serial criminal who must be indicted and imprisoned if America is to remain anything resembling a legitimate nation that respects law.)

Thanks to Wikileaks and Project Veritas, everyone with a working brain now knows the democrats are hopelessly corrupt and deeply invested in widespread voter fraud to steal the White House.

Scenario 2B (5% chance): Trump accepts the election results and tells supporters to get behind Hillary Clinton

If Clinton wins and Trump admits she won fair and square (which seems VERY unlikely), he could publicly call for everyone to back down and accept the Clinton presidency.

I see the chance of this at only 5%. And even then, so many conservatives and patriots are going to be so angry at this outcome that they may decide to stage their own peaceful protests.

95% chance of mass violence in one form or another

The upshot of all this is that I see only a 5% chance of a peaceful, non-violent outcome to this election. In most conceivable scenarios, America descends into mass violence of one form or another.

This is a direct result of the extreme polarization of political beliefs in America today, where we have an entire class of illiterate, ignorant Hillary Clinton supporters who only watch CNN and have no idea whatsoever that the Clintons are corrupt criminals. Witness the depth of the democrats’ corruption in this Project Veritas veritas (part 3), just released today…

Read more on 1earthunite.wordpress.com!

*******

Added 10/27/16

LADA’S NOTES & PREDICTIONS

My belief and associated prediction, based on the energy I see unfolding and the risks I’m assessing is as follows:

Due to persistent warnings, sounding from various directions, that Democrats/Obama/Hillary camp will successfully falsify election results, I do believe many different eyes will be watching this election like hawks. Thus, it will be very hard-to-impossible to falsify it VERY significantly – as per Earth Shift Report 16 prediction. Some falsification attempts have to be expected, but not SIGNIFICANT ones that can make a true difference! Falsifying outright, due to the risk of extreme violence and uprisings, will be too risky and destabilizing. That’s why they will calculate that it’s easier to make a deal and compromise, which long-term will put Trump in a straight jacket. Again, as per Earth Shift Report 16 part 2

But there is more to the story, and the future unfolding for the US is very interesting indeed. I’ll talk about that in one of the following ESRs in 2017!

If you haven’t yet, listen to how I see the outcome of this US Elections, and who will win, Trump or Hillary. Most importantly, what can we expect from Trump, should he win. What kind of president will he be and whom he really represents; whether I see violence on American streets past November 8; whether we can expect a breakthrough in relations with Russia and in USA’s policies and economy, and much more….

Listen to my EXCLUSIVE new bestseller 

Earth Shift Report 16: US ELECTIONS & WHAT WILL HAPPEN AFTER

esr16-banner-hd

(Please make sure you read instructions on report ordering page and the COMPLETE ORDERING, PAYMENT & ACCESS GUIDE! Please make sure you bookmark or save report page URL after accessing report!)

Listen to FREE Part 1 of ESR16: US ELECTIONS AND WHAT WILL HAPPEN AFTER

*******

Also read another latest Earth Shift Report bestseller

ESR15: PUTIN’S PLUTONIUM ULTIMATUM TO THE US

esr15-banner-2

Check out All EARTH SHIFT REPORTS!

*******

Listen to latest interviews

*******

Subscribe to Lada Ray YT Channel!

Visit LadaRay.com

Read! Earth Shift System  Quantum Calibrations  Russia-The Great Balancer  Predictions

Support Lada’s FREE articles & reports on FuturisTrendcast & YT: DONATE HERE!

Check out!   BOOKS    CONSULTATIONS

Follow!   FuturisTrendcast   Twitter@LadaTweets  YT   G+   LadaRayBlog

McDonald’s Exposed: Disappearing McNugget and Never-Spoiling Happy Meal

I hear McNuggets are all the rage in America and beyond. In my 20+ years of living in the US I never had any desire whatsoever to try McNuggets, or a Happy Meal (which I would rather call a ‘Gruesome Death Meal’).

True, once my hubby and I were stuck late at night on a highway hours from home. Just so we could continue going, we stooped to (oops, Freudian slip – meant ‘stopped at’) the only establishment available: McDonald’s. We ordered their new ‘healthy and organic’ option – salad. Plus, I couldn’t resist ordering a piece of apple pie and tea. We were both sick for a week after. This was my first and last encounter with McDonald’s.

The case of the disappearing McNugget and the never-spoiling Happy Meal time-lapse experiment vids in the post linked below are literally to die for! In fact, it’s amazing that more people don’t die after regularly consuming such ‘happy meals.’ Although it’s not hard to guess where the overwhelming obesity problem, cancer and diabetes in the US come from.

By the way, who said McDonald’s was about food? It’s about profit – yes. But it’s as much about geopolitics and population control, both internal and external. McDonald’s, Coca-Cola, along with Monsanto’s GMO and pesticides, are all about geopolitics and global domination.

In conclusion, I’ll leave you with two things:

1. I am experiencing a certain sense of deja vu. A few years before the USSR collapsed the number of overweight people in the country increased dramatically. USA follows in the USSR footsteps, except… people in the US are much more overweight, indicating a larger collapse.

2. My advice. If it smells too good to be true… In order to determine whether you should or shouldn’t eat certain food, calibrate! I know I promised new videos on Calibrations of Consciousness, including various examples. These are coming later this summer on Lada Ray Channel.
Just to give you some idea of what we are talking about, here are some telling calibrations: regular Coke 20 (shame), diet Coke 100 (fear), Happy Meal 85 (grief), McNuggets 10 (shame-near death). In my videos about calibrations you will see that the minimum life-sustaining calibration is 200. See these videos in the ProjectEarthShift playlist. Or watch individually:

Scale of Consciousness: Life-Creating Calibrations (ProjectEarthShift 2)

Scale of Consciousness: life-diminishing calibrations (ProjectEarthShift 1)

See 1EarthUnited post:

Mmmm, I’m McLovin it?

%d bloggers like this: