This article was originally published by 8btc and written by Vincent He.
A ransomware virus named Ryuk has spread to China, asking the users of infected devices for a hefty bitcoin ransom.
Tencent Security reported on July 17, 2019, that it has monitored Ryuk and found that it encrypts data on an infected device and demands a ransom in bitcoin. The ransom is generally very high and has recently reached 11 BTC.
The virus disables victims’ systems with sophisticated ransomware, mainly through botnets. First found in North America, it uses RSA and AES encryption algorithms to encrypt victims’ files. The campaign appears highly targeted, with government and enterprise institutions as preferred victims.
Ryuk originated in the Hermes date code family, and the earliest signs of its activity can be traced back to August 2018. It makes use of most of the Hermes code, has the same white list filtering mechanism as a Hermes virus and it also uses Hermes strings, even for the unique infection marker of files.
The sample found in China releases and runs different blackmail modules, which will help the virus implement subsequent injection and further improve the efficiency of its operation. As part of the most recent attacks, a dropper containing both the 32-bit and 64-bit modules of the ransomware was used. When run, Ryuk checks if it was executed with a specific argument and then kills more than 40 processes and over 180 services belonging to antivirus, database, backup and document editing software.
The blackmail letter left by Ryuk is very simple, with only two blackmail contact mailboxes and blackmail virus names. It does not take long after being answered that the attacker requests a BTC ransom.
Almost all of the observed Ryuk ransomware samples, the security researchers say, were provided with a unique wallet. Shortly after a recent victim paid the ransom, the attackers divided the funds and transmitted them through multiple accounts.
The ransomware also remains on the infected machines and attempts to encrypt network resources in addition to local drives. It also destroys its encryption key and deletes shadow copies and various backup files from the disk to prevent users from recovering files.Earlier this month, Tencent Security reported another Trojan virus called Burimi that has hacked over 33 million email accounts demanding a bitcoin ransom.
The post The Ryuk Virus Is Spreading Through China, Asking 11 BTC Ransoms appeared first on Bitcoin Magazine.
Bitcoin is a technological breakthrough rising as a new global monetary system. This article will offer you some guidelines to understand why it matters.What Is Bitcoin and How Does it Work?Bitcoin is an innovative technology that introduces a new monetary system, based on a peer-to-peer network of users’ nodes (computers) with no intermediaries like central…
El Salvador President Nayib Bukele announced the country bought another 80 BTC, resulting in a total treasury of 2,381 BTC valued around $46.1 million.El Salvador bought the dip and acquired 80 BTC at an average price of $19,000. Two days ago, MicroStrategy also bought the dip to the tune of 480 BTC. Nation-states and institutions…
Bitcoin ATM units in the U.S. have nearly doubled in a year, indicating a growing demand from retail investors who seek convenience.Bitcoin ATMs are popping up across the U.S. as Bitcoin adoption grows. The machines provide a convenient, hassle-free experience for anyone to purchase bitcoin, meeting the growing demand across the country – with some…
Miners need to be flexible to changes in the market, including global cultural differences and adversarial legal frameworks when countries ban Bitcoin.Mining pools are important to the Bitcoin ecosystem because they allow small bitcoin miners to collect rewards for their hash rate. Small-time miners are very unlikely to find a block and receive the block…
U.S. spot bitcoin exchange-traded funds (ETFs) have surpassed $200 billion in cumulative trading volume since launching just three months ago.JUST IN: 🇺🇸 US #Bitcoin spot ETFs trading volume surpasses $200 billion within just 3 months. Asia is next 🚀 pic.twitter.com/VxQdQJEIjN— Bitcoin Magazine (@BitcoinMagazine) April 10, 2024 According to data from The Block, the total volume for
This is the second installment of bitcoiner Giacomo Zucco’s series “Discovering Bitcoin: A Brief Overview From Cavemen to the Lightning Network.” Read the Introduction to his series and Discovering Bitcoin Part 1: About Time. In this installment, we will build on the previously acquired strategies of storing wealth, investing that stored wealth, and increasing productivity…
MicroStrategy, which holds more than 92,000 bitcoin, laid the groundwork for a potential $1 billion stock sale in order to buy more BTC.MicroStrategy, the software intelligence firm that has acquired more than 92,000 BTC under CEO Michael Saylor, is considering offering up to $1 billion of stock to buy more bitcoin, immediately following a successful…
Sarah Satoshi explains what she loves most about Bitcoin and the hope it brings to the world.Watch This Episode On YouTubeListen To This Episode:BitcoinTVAppleSpotifyGoogleLibsynOvercastIn this episode of Bitcoin Magazine’s “Meet The Taco Plebs,” I sat down with Satoshi Sarah, a new addition to the Bitcoin Magazine team.Sarah is extremely passionate about Bitcoin education, which is…
The bitcoin price rocketing to $24,000 amidst the banking crisis is reflecting the world’s need for a sound money alternative.Bitcoin remained resilient in the face of a very hesitant market Monday morning, surging past $24,000. Despite fears that the cryptocurrency industry is being cut off from banking, bitcoin is outperforming the S&P 500, which, surprisingly,…