Home > Today’s Crypto News
bitcoin
bitcoin

$93113.538616 USD

-0.11%

ethereum
ethereum

$1748.590950 USD

-2.15%

tether
tether

$1.000392 USD

0.02%

xrp
xrp

$2.177851 USD

-1.16%

bnb
bnb

$600.317897 USD

-0.84%

solana
solana

$151.339663 USD

1.47%

usd-coin
usd-coin

$0.999927 USD

0.01%

dogecoin
dogecoin

$0.179240 USD

2.45%

cardano
cardano

$0.707230 USD

2.73%

tron
tron

$0.243466 USD

-0.61%

sui
sui

$3.323843 USD

10.76%

chainlink
chainlink

$14.828095 USD

0.41%

avalanche
avalanche

$21.905207 USD

-0.82%

stellar
stellar

$0.275988 USD

4.91%

unus-sed-leo
unus-sed-leo

$9.206268 USD

0.44%

WannaCry Ransomware

What Is WannaCry Ransomware?

WannaCry is a piece of ransomware that can infect and spread rapidly through a number of computer networks. 

WannaCry consists of multiple components and infiltrates the target computer in the form of what is known as a doppler, which is a self-contained program that extracts the other application components embedded within the ransomware. These components include an application that encrypts and decrypts data, files containing encryption keys, and a copy of TOR.

The program code is not obfuscated and is relatively easy for security professionals to analyze. Once it is launched, the ransomware attempts to access a hard-coded URL known as the kill switch and, if it cannot do this, proceeds to search for and encrypt files in specific formats, such as Microsoft Office files or MP3 files. This encryption makes the files inaccessible to the user of the computer. The ransomware then displays a ransom notice, demanding a specific amount of currency, usually Bitcoin (BTC), in order to decrypt and thus recover the files.

When it comes to Windows, the vulnerability that WannaCry exploits involves the Windows implementation of the Server Message Block (SMB) protocol. The SMB protocol allows various nodes on a network to communicate, and Microsoft's implementation can be tricked, through specifically crafted packets, into executing arbitrary code.

WannaCry can be seen as a prime example of what crypto ransomware can look like and how it can be used to extort money. It does this by encrypting potentially valuable files and can even lock a user out of his or her computer altogether. Any ransomware that uses encryption is called crypto ransomware. The type that specifically locks users out of the computer is called locker ransomware.