Reasons for bitcoin virus in schools
Yesterday, I went to the electronic reading room. Not long after I plugged in the USB flash drive, the teacher suddenly asked everyone to unplug the USB flash drive. Some students found that all the files in the USB flash drive could not be opened, and there were two more documents asking for money
so everyone rushed to check, as long as the U disk inserted in the school computer were poisoned, large-scale computer poisoning occurred in the evening
a lot of people's information and graation thesis are in the computer. I really feel that hacker's behavior is disgusting. For the sake of money, regardless of the future of students, teachers' lifelong scientific research achievements...
hope to catch criminals as soon as possible and give them severe punishment by law
this virus will scan windows devices with open 445 file sharing port. As long as the user's device is on the Internet, hackers can implant blackmail software, remote control Trojan horse, virtual currency mining machine and other malicious programs in computers and servers
some security researchers point out that this large-scale network attack seems to be deployed through a worm application, and wannacry can spread among computers. What's more terrible is that unlike most malicious programs, this program can replicate and spread on its own in the network, and most of the current viruses still need to rely on the successful users to spread by cheating them to click the attachment with the attack code
the attack has affected 99 countries and as many as 75000 computers, but because the virus uses anonymous network and bitcoin anonymous transaction to obtain ransom, it is very difficult to track and locate the originator of the virus
take Tencent computer housekeeper as an example
1. Open the Tencent computer manager - select virus killing
2. Click the function of virus killing to intelligently scan the virus Trojan horse and directly kill it (if necessary, you can also select overall killing, which is more comprehensive)
3. If there is a stubborn Trojan virus or can not be killed, you can completely kill the virus in the safe mode
restart the computer, press F8, the screen will display the win system startup options menu, press the key to move to "safe mode with command prompt", enter; Find the anti-virus software inside the computer to kill the virus.
According to reports, at about 20 p.m. on May 12, some domestic college students reported that their computers were attacked by viruses and their documents were encrypted. The attacker claimed to pay bitcoin to unlock
according to the network security agency, this is a virus attack event launched by lawless elements using the "eternal blue" leaked from NSA hacker weapon library“ "Eternal blue" will scan windows machines with open 445 file sharing port, without any user operation. As long as the machine is turned on and connected to the Internet, criminals can plant blackmail software, remote control Trojan horse, virtual currency mining machine and other malicious programs in computers and servers
in fact, many of the computers in the campus network, that is, the computer rooms of the school, are installed with restore cards. If you want to change the settings inside, it's very troublesome. At least you need to turn off the restore function, and this one is turned off before entering the system, that is, it's not connected to the network. In short, you need to set one by one
in addition, most schools are not willing to invest money in the campus network. The campus network is generally in a good state when it can be used. Moreover, some network devices, such as new models of routers with firewalls, are tens of thousands or even hundreds of thousands. The tuition fee of a student is only a few thousand yuan, which burns a little fast
so in general, viruses spread quickly in campus networks....
computers in many colleges and universities were attacked by the Internet
Xiao, a student of City College of Zhejiang University, told Beiqing Daily yesterday that in the same dormitory building with her, many students' computers were attacked, "now many students dare not turn on their computers for fear of being hacked."
a student of Guilin University of Technology said that at present, more than 100 computers in his school have been attacked by the blackmail virus "bitcoin virus". Most of the attacked computers are users of the campus network. "Now they dare not connect to the campus network for fear of being attacked.". A student of Guangxi Normal University said that on the evening of the 12th, while he was revising his paper, his computer was suddenly infected by the bitcoin virus, which affected the operation of the computer and encrypted the files. The student told the Beijing Youth Daily that after the computer was attacked, a red and white dialog box will appear, which will tell you what happened, how to recover and how to pay
since the evening of the 12th, Shandong University, Nanchang University, Guangxi Normal University, Northeast University of Finance and economics, East China Jiaotong University, Civil Aviation University of China and other universities have issued relevant prevention notices on the invasion of the blackmail virus "bitcoin virus" into the campus network.
