Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. General Programming
  3. C / C++ / MFC
  4. MacTripleDES Encryption used in compromised Point-of-Sale (POS) Devices

MacTripleDES Encryption used in compromised Point-of-Sale (POS) Devices

Scheduled Pinned Locked Moved C / C++ / MFC
comsecuritytools
4 Posts 4 Posters 1 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • U Offline
    U Offline
    User 11671424
    wrote on last edited by
    #1

    Hi there, I am new to the programming scene. I am a Digital Forensic Investigator with the Digital Forensic Laboratory at The Directorate For Priority Crime Investigation; within the South African Police Services. I was recently assigned to do research and analysis on compromised Verifone POS-devices. On some of the devices we do manage to extract data, which is encrypted. I investigated some of the tools the criminals use in the process. On the malwr.com site the encryption tool PasswordGenerator.exe was uploaded and can be downloaded from there for analysis. This tool uses MACTripleDES PADRight encryption. Is there maybe anyone that can assist me to create a tool to decrypt the data from the devices. The PWG creates an init.dat file that is uploaded to the POS device which encrypts the data that is captured and then decrypted after being downloaded with The VeriFoneDownloader.exe and then the .vfd-file is decrypted using the VeryFoneViewDataNew.exe. When the correct password is entered and the file decrypted it is saved as a .dfv-file. All the .exe files are uploaded at malwr.com. I will upload an encrypted and decrypted file as well. (201404221348.vfd and 201404221348.dfv) If there is anyone that can assist it would be highly appreciated.

    Richard Andrew x64R CPalliniC L 3 Replies Last reply
    0
    • U User 11671424

      Hi there, I am new to the programming scene. I am a Digital Forensic Investigator with the Digital Forensic Laboratory at The Directorate For Priority Crime Investigation; within the South African Police Services. I was recently assigned to do research and analysis on compromised Verifone POS-devices. On some of the devices we do manage to extract data, which is encrypted. I investigated some of the tools the criminals use in the process. On the malwr.com site the encryption tool PasswordGenerator.exe was uploaded and can be downloaded from there for analysis. This tool uses MACTripleDES PADRight encryption. Is there maybe anyone that can assist me to create a tool to decrypt the data from the devices. The PWG creates an init.dat file that is uploaded to the POS device which encrypts the data that is captured and then decrypted after being downloaded with The VeriFoneDownloader.exe and then the .vfd-file is decrypted using the VeryFoneViewDataNew.exe. When the correct password is entered and the file decrypted it is saved as a .dfv-file. All the .exe files are uploaded at malwr.com. I will upload an encrypted and decrypted file as well. (201404221348.vfd and 201404221348.dfv) If there is anyone that can assist it would be highly appreciated.

      Richard Andrew x64R Offline
      Richard Andrew x64R Offline
      Richard Andrew x64
      wrote on last edited by
      #2

      Sure, just give me your bank account details so I can transfer the necessary funds. :)

      The difficult we do right away... ...the impossible takes slightly longer.

      1 Reply Last reply
      0
      • U User 11671424

        Hi there, I am new to the programming scene. I am a Digital Forensic Investigator with the Digital Forensic Laboratory at The Directorate For Priority Crime Investigation; within the South African Police Services. I was recently assigned to do research and analysis on compromised Verifone POS-devices. On some of the devices we do manage to extract data, which is encrypted. I investigated some of the tools the criminals use in the process. On the malwr.com site the encryption tool PasswordGenerator.exe was uploaded and can be downloaded from there for analysis. This tool uses MACTripleDES PADRight encryption. Is there maybe anyone that can assist me to create a tool to decrypt the data from the devices. The PWG creates an init.dat file that is uploaded to the POS device which encrypts the data that is captured and then decrypted after being downloaded with The VeriFoneDownloader.exe and then the .vfd-file is decrypted using the VeryFoneViewDataNew.exe. When the correct password is entered and the file decrypted it is saved as a .dfv-file. All the .exe files are uploaded at malwr.com. I will upload an encrypted and decrypted file as well. (201404221348.vfd and 201404221348.dfv) If there is anyone that can assist it would be highly appreciated.

        CPalliniC Offline
        CPalliniC Offline
        CPallini
        wrote on last edited by
        #3

        Please send us your personal details in order to make us able to signal you to the competent autorithies.

        In testa che avete, signor di Ceprano?

        1 Reply Last reply
        0
        • U User 11671424

          Hi there, I am new to the programming scene. I am a Digital Forensic Investigator with the Digital Forensic Laboratory at The Directorate For Priority Crime Investigation; within the South African Police Services. I was recently assigned to do research and analysis on compromised Verifone POS-devices. On some of the devices we do manage to extract data, which is encrypted. I investigated some of the tools the criminals use in the process. On the malwr.com site the encryption tool PasswordGenerator.exe was uploaded and can be downloaded from there for analysis. This tool uses MACTripleDES PADRight encryption. Is there maybe anyone that can assist me to create a tool to decrypt the data from the devices. The PWG creates an init.dat file that is uploaded to the POS device which encrypts the data that is captured and then decrypted after being downloaded with The VeriFoneDownloader.exe and then the .vfd-file is decrypted using the VeryFoneViewDataNew.exe. When the correct password is entered and the file decrypted it is saved as a .dfv-file. All the .exe files are uploaded at malwr.com. I will upload an encrypted and decrypted file as well. (201404221348.vfd and 201404221348.dfv) If there is anyone that can assist it would be highly appreciated.

          L Offline
          L Offline
          Lost User
          wrote on last edited by
          #4

          Just in case you are genuine, please read http://www.codeproject.com/Messages/2922875/HOW-TO-ASK-A-QUESTION.aspx[^]. No one here is going to help you decrypt anything.

          1 Reply Last reply
          0
          Reply
          • Reply as topic
          Log in to reply
          • Oldest to Newest
          • Newest to Oldest
          • Most Votes


          • Login

          • Don't have an account? Register

          • Login or register to search.
          • First post
            Last post
          0
          • Categories
          • Recent
          • Tags
          • Popular
          • World
          • Users
          • Groups