0x01 flaw setting
On April 7, 2020, the 360CERT discovery that monitor appears on the network new-style blackmail software WannaRen, in should blackmailing software to be able to add close Windows system almost any files, and with.WannaRen suffixal name.
0x02 risk grade
360CERT undertakes assess to this incident
Range of influence of tall danger of grade of menace of assess means grade is wide
360CERT suggests broad user installs safety in time to defend software. Do good asset to be checked oneself / self check / precaution works, lest suffer attack.
0x03 incident detail
The meeting after running this to blackmail software plays a following interfaces
The bit money address that captures at present is: 1NXTgfGprVktuokv3ZLhGCPCjcKjXbswAM
0x04 affects version Windows 7Windows 10
0x05 rehabilitate suggests
360 safe bodyguard already supported what in the light of this new-style PC blackmails software to check kill
360CERT suggests the user does not want download and the file with moving unidentified antecedents and program. Had made regular system / crucial material backup, lest suffer baleful software attack.
0x06 product side solution 360 safe bodyguard
In the light of this new-style PC blackmails software, 360 safe bodyguard already supported check to its kill.
Can you pay close attention to safe bodyguard to blackmail: of virus special subject? Does collect show the window steps on arsine of Lang Ke whoop still does emperor of show off of of Lang Jun of drop of male of duty go whoring approach man of depend on of Long of pay of Xi Pan 〗 ?
0x07 time line
2020-04-05 user feedbacks this are new-style WannaRen blackmails software
Support of 2020-04-06 360 safe bodyguard is checked kill WannaRen to blackmail software
2020-04-07 360CERT releases early-warning
0x08 reference is linked
- Blackmail virus, suffixal.WannaRen, appeal the file that solve a lock! ! _360 community [minatory announce] new-style blackmail software WannaRen
Textual link: Https://www.anquanke.com/post/id/202577