Current location - Training Enrollment Network - Early education courses - What is onion ransomware? Will personal computers be infected with this virus?
What is onion ransomware? Will personal computers be infected with this virus?
Onion ransomware is 12, a virus that spreads all over the world. It originated from an underlying vulnerability in Microsoft, which was mastered by hackers to spread viruses. Simply put, someone has encrypted all your files and won't tell you the password, so they will only give you the money. After poisoning, you will be asked to buy enough bitcoin to pay for decoding. The group price is 400w, and all documents can't be opened without money. At present, the virus needs port 445 to spread, but domestic operators closed port 445 to individual users several years ago, so it will not spread in personal computers (unless you want to surf the Internet, such as the public security bureau). Some devices such as university networks, banks, gas stations and examination systems may be infected, and there have been cases of infection. This virus is called WannaCry (Eternal Blue).

Be careful, don't trust people who give money to help crack it. At present, the virus can only spread in win system.

Related information: In China, most users are not affected because the operator has restricted port 445. However, the education network is not restricted to port 445, so the domestic education network is greatly affected. As far as the current news is concerned, more than 5,000 machines are attacked every day in China, the campus network of Xiasha Higher Education Park in Hangzhou, Zhejiang Province is attacked by a large number of hackers, and the data and files in the computers of students in colleges and universities such as Zhejiang Chuan, Metrology and Science and Technology are locked. Sichuan University, Guilin University of Electronic Technology, Guilin Institute of Aerospace Industry, Shandong University, Dalian Maritime University, Guangxi Normal University, Hezhou College and universities in Guangxi have all been attacked by viruses.

This virus attack just took advantage of Microsoft's MS 17-0 10 vulnerability. MS 17-0 10 is a vulnerability in the underlying service of Windows system, which can affect port 445. Hackers scan the open port 445 on the network, and then implant worms into the attacked computers. The attacked computers will be controlled by hackers to scan other computers, which will lead to a chain reaction, and eventually a large number of computers will be controlled by hackers.