Skip to content

CRYPTO MINING BLOG

Your guide to cryptocurrency mining

Primary Menu
  • CRYPTOCURRENCY
    • NEWS
    • WALLETS
    • INVESTING
    • TRADING
  • MINING
    • CRYPTO MINERS (SOFT)
    • ASIC MINING
    • GPU MINING
      • AMD GPU MINING
      • NVIDIA GPU MINING
    • CPU MINING
    • FPGA MINING
  • SOFTWARE
    • CRYPTOCURRENCY WALLETS
    • CRYPTOCURRENCY MINERS
    • TOOLS & UTILITIES
    • TRADING BOTS
    • FLASHING GPU
    • DRIVERS
    • SOFTWARE & FIRMWARE ASIC (ANTMINER)
    • NEW RELEASES
  • REVIEWS
  • GUIDES
  • NEWS

In China, a new ransomware virus Ryuk is being distributed

  • CRYPTO MINING BLOG
  • Jul 19, 2019
  • No Comments
  • China
  • Crypto News
virus ryuck

An ransomware virus called Ryuk is distributed in China and requires users of infected devices to pay a large amount in BTC.

Tencent Security examined the Ryuk virus and found that it encrypts data on the infected device and requires a ransom from the BTC. The buyback is usually quite large compared to similar attacks in the past and has recently risen to 11 BTC.

The virus blocks victim systems using a modern hacker program, mainly through bot networks. It was first discovered in North America and uses RSA and AES algorithms to encrypt victims’ files. It seems that the campaign is focused, and its victims are government agencies and private organizations.

Ryuk came from the Hermes family of codes, and the earliest signs of its activity can be traced back to August 2018. It uses most of the Hermes code, has the same whitelist filtering mechanism as the Hermes virus, and also uses the Hermes string sequences even for a unique file infection marker.

The sample found in China releases and launches various modules that will help the virus unfold and further improve its efficiency. In recent attacks, a dropper was used, containing both 32-bit and 64-bit modules of the virus.

When Ryuk starts, it checks whether it has been executed with a specific argument, and then interrupts more than 40 processes and more than 180 services related to antivirus, databases, software for backing up and editing documents.

According to the researchers, almost all of the Ryuk virus samples detected had a unique BTC address. Shortly after the victim pays the ransom, the attackers split the bitcoins and transfer them to several accounts.

The extortionist also remains on infected devices and tries to encrypt network resources in addition to local drives. It also destroys its encryption key, shadow copies and various backup files from disk to prevent users from restoring files.

Recently, New York College Monroe was attacked by an extortionist virus – hackers demanded a ransom of 170 BTC. In addition, at the end of last month, the authorities of the American city of Lake City paid the extortionists a ransom of 42 BTC after the attack of the encryption virus.

Read more:

BitMEX has allocated $ 2.5 million to combat coronavirusBitMEX has allocated $ 2.5 million to combat coronavirus Tom Lee believes that bitcoin has embarked on a steady growth path FBI talked about cryptocurrency fraud schemes against COVID-19FBI talked about cryptocurrency fraud schemes against COVID-19 EOS Ecosystem wallet users lose $ 52 million coinsEOS Ecosystem wallet users lose $ 52 million coins At the last recount, the Bitcoin mining difficulty increased by 8.45%At the last recount, the Bitcoin mining difficulty increased by 8.45% Survey: 55% of U.S. private and public organizations fall victim to ransomware in 2019Survey: 55% of U.S. private and public organizations fall victim to ransomware in 2019 China gave cryptocurrency status of “virtual property” China’s investment in blockchain in 2019 decreased by 40% China's national blockchain platform will add support for public EOS network nodesChina’s national blockchain platform will add support for EOS network USA Tax Interests in Crypto MachinesUSA Tax Interests in Crypto Machines
CRYPTO MINING BLOG
Founder & CEO

Previous post

Binance denied reports of plans to launch a crypto-fiatnoy stock exchange in South Korea

Next post

Confidential cryptocurrencies Beam and Grin spend hardfork

No Comments

Please Post Your Comments & Reviews
Cancel reply

Your email address will not be published. Required fields are marked *

  • USD
  • EUR
  • GPB
  • AUD
  • JPY
  • bitcoinBitcoin(BTC)
    $103,961.120.38%
  • ethereumEthereum(ETH)
    $2,494.11-1.00%
  • shih-shih-tzuShih Tzu(SHIH)
    $0.000246-0.01%
  • tetherTether(USDT)
    $1.00-0.03%
  • rippleXRP(XRP)
    $2.140.13%
  • vnm-venom-ethVenom(VNM)
    $2.110.00%
  • oxy-oxycoinOxycoin(OXY)
    $101.250.00%
  • binancecoinBNB(BNB)
    $650.43-0.54%
  • solanaSolana(SOL)
    $151.33-1.12%
  • usd-coinUSDC(USDC)
    $1.00-0.05%

  • TeamRedMiner v0.6.1: Download AMD GPU miner Ethash, MTP, CryptoNight
    26.8k views
  • ATIKMDAG PATCHER v1.4.14: Download AMD/ATI Pixel Clock for Windows
    14.9k views
  • Nvidia Mining Driver v470.05 GeForce RTX 3060 – Unlock Mining Ethereum
    7.2k views
  • OverdriveNTool 0.2.7: Download and Configure AMD GPU Overclocking Software
    5.6k views
  • PolarisBiosEditor 3 PRO: Modify AMD GPU BIOS (Download PBE Crack)
    5.5k views
  • Setting up AMD Radeon VEGA 56/64 for cryptocurrency mining
    5.3k views
  • NiceHash Miner v3.0.0.7: Download NHM for Windows/Linux/MacOS
    5.2k views
  • Nvidia GeForce RTX 3080 Ti: Unlock Mining Hashrate Driver for Windows
    4.7k views
  • SRBPolaris v3.5: Download BIOS Editor AMD GPUs for Windows
    3.9k views
  • NVIDIA NVFlash v5.590.0 (Windows/Linux) – How to flash the BIOS of GPUs NVIDIA?
    2.9k views
  • OhGodAnETHlargementPill: How to increase hashrate in mining on NVIDIA
    2.7k views
  • AMD Blockchain Driver: Radeon Software Crimson ReLive Edition Beta for Blockchain Compute
    2.6k views
  • CPUMINER-OPT v3.8.4: Download Fast CPU Miner for Windows
    2.6k views
  • ATIFlash & AMD VBFlash 2.93: Download BIOS Flashing Tool for AMD GPUs
    2.5k views
  • XMRig v5.6.0 CPU/GPU: Download miner Monero for Windows/Linux
    2.2k views
All Rights Reserved. CRYPTO-MINING.BLOG.
  • English
  • Russian