Which port does bitcoin virus target
after being invaded by the blackmail software, almost all kinds of files such as photos, pictures, documents, audio and video in the user's host system will be encrypted, and the suffix of the encrypted files will be changed to. Wncry, and a blackmail dialog box will pop up on the desktop, asking the victim to pay hundreds of dollars worth of bitcoin to the attacker's bitcoin wallet, And the amount of ransom will increase over time<
types of attacks:
common office files (extensions. PPT,. Doc,. Docx,. Xlsx,. SXi)
are not commonly used, but office file formats (. Sxw,. ODT,. HWP)
compressed documents and media files (. Zip,. Rar,. Tar,. MP4,. MKV)
e-mail and e-mail databases (. EML,. MSG,. OST,. PST . DEB)
database files (. SQL,. Accdb,. MDB,. DBF,. ODB,. MyD)
source code and project files used by developers (. PHP,. Java,. CPP,. PAS,. ASM)
keys and certificates (. Key,. PFX,. PEM,. P12,. CSR,. GPG,. AES)
files used by art designers, artists and photographers (. VSD,. ODG,. Raw,. Nef,. SVG . PSD)
virtual machine files (. VMX,. Vmdk,. VDI)
Close port 445
-
on the left side of the "Windows Firewall" page in the control panel, find "advanced settings" to open
-
find "inbound rule" on the left side of "advanced security windows firewall" page, right-click "new rule"
-
select port and click next
-
to close any port, enter it into "specific local port" and close one at a time. The method is the same. Then click next
The main thing is to close port 445
method:
< UL >open "advanced settings" on the left side of "Windows Firewall" page of control panel
find "inbound rule" on the left side of "advanced security windows firewall" page, right-click "new rule"
select port and click next
to close any port, enter it into "specific local port" and close one at a time. The method is the same
and then click Next until you're done
1. Use mobile antivirus software for antivirus, such as Tencent mobile housekeeper, etc.
Open Tencent mobile housekeeper security protection (or deep search and kill, open Settings stubborn Trojan horse kill)
2. If you can find the virus in the storage directory, manually delete it,
3. If you can't find the location of the virus, You can format the SD card directly,
4. If none of the above methods works, you can get the root and clear it
Open Tencent mobile Manager (PC) - App treasure - Toolbox - one click root
or swipe
Open Tencent mobile Manager (PC) - App treasure - Toolbox - swipe
