[突發]windows病毒停止散播

718 回覆
25 Like 6 Dislike
2017-05-13 22:05:42
講緊個wannacry hard-code 左一個好長既domain, 本身呢個domain都冇人register過
而佢係encrypt d file之前就會試下呢個domain 有冇反應, 有反應就唔會encrypt, 應該就係寫呢隻ransonware出嚟既人用嚟當係開關用
被人發現左之前即刻有人register 左個 domain, 所以就停左

都唔知佢講乜撚野係到扮abc
2017-05-13 22:07:17
一講完就有一個
2017-05-13 22:08:19

係六十幾個
https://twitter.com/m0rb/status/863374320701255680

其實我想知,點解人地比左錢 佢係會知?

隻毒用黎收錢個bitcoin wallet address得一個,只要mon實個address既transaction就知道

deep web 搵到address架咩?

又關deep web 咩事

Bitcoin 同deep web好關事wo Ching

我真係唔知喎
可唔可以講講

下面咁多不法野要做錢銀交易
唔通放低個銀行戶口俾fbi查咩
Bitcoin最大價值係有極高私隱
好難追番邊個俾錢俾個收錢
所以下底咩都用bitcoin
利申:9up

bitcoin 交易既transection唔難check, 問題只係唔知到個address代表咩人,咩地區位置,而且wallet address係隨便就可以gen出黎,隨時可以自己同自己分身s交易幾千萬次,因為咁先至難跟
明就明唔明就算


同用tor一樣

如果你願意一層一層
一層的剝開我的心

blockchain唔係會save晒所有transaction record嫁咩
不過知道個wallet address有咩用

知道有幾多人畀左錢囉 係咁多
2017-05-13 22:10:25
講緊個wannacry hard-code 左一個好長既domain, 本身呢個domain都冇人register過
而佢係encrypt d file之前就會試下呢個domain 有冇反應, 有反應就唔會encrypt, 應該就係寫呢隻ransonware出嚟既人用嚟當係開關用
被人發現左之前即刻有人register 左個 domain, 所以就停左

都唔知佢講乜撚野係到扮abc

你自己睇唔明姐
2017-05-13 22:11:30
如果想知條URL
iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea[.]com




source: 佢個BLOG
http://blog.talosintelligence.com/2017/05/wannacry.html
2017-05-13 22:11:47
講緊個wannacry hard-code 左一個好長既domain, 本身呢個domain都冇人register過
而佢係encrypt d file之前就會試下呢個domain 有冇反應, 有反應就唔會encrypt, 應該就係寫呢隻ransonware出嚟既人用嚟當係開關用
被人發現左之前即刻有人register 左個 domain, 所以就停左

都唔知佢講乜撚野係到扮abc

你自己睇唔明姐

電腦野講中文就真係冇人明喇
2017-05-13 22:12:16
會整解藥嘅hacker

上世紀90年代後期,有台灣駭客製作咗,當時會破壞底版BIOS 運作嘅病毒;
不過好快就有另一位年輕資安專才,推出解毒程式。

CIH 好似係意外流出

仲記得唔知做乜鳩就奶左野, 結果要抬部廠機去維修部整

個時好似有幾百萬部電腦中左毒
以90年代既電腦數量,中到幾百萬真係好癲
2017-05-13 22:12:45
講緊個wannacry hard-code 左一個好長既domain, 本身呢個domain都冇人register過
而佢係encrypt d file之前就會試下呢個domain 有冇反應, 有反應就唔會encrypt, 應該就係寫呢隻ransonware出嚟既人用嚟當係開關用
被人發現左之前即刻有人register 左個 domain, 所以就停左

都唔知佢講乜撚野係到扮abc

你自己睇唔明姐

電腦野講中文就真係冇人明喇

agger
2017-05-13 22:13:12
想問下kb3字頭安唔安全
2017-05-13 22:14:30
其實而家都知道個ransomware source code
咁其實人del 左呢段CODE再黎過得唔得?
好想D平時唔撚識用電腦
一有事仲要串柒柒做伸手果堆友仆街死
2017-05-13 22:15:46
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個
2017-05-13 22:18:26
講緊個wannacry hard-code 左一個好長既domain, 本身呢個domain都冇人register過
而佢係encrypt d file之前就會試下呢個domain 有冇反應, 有反應就唔會encrypt, 應該就係寫呢隻ransonware出嚟既人用嚟當係開關用
被人發現左之前即刻有人register 左個 domain, 所以就停左

都唔知佢講乜撚野係到扮abc

妳廢睇唔明姐
2017-05-13 22:19:21
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個

又黎
佢真係好似唔怕比人捉到
2017-05-13 22:21:53
聽隔離post講 改少少野已經可以繼續搞落去
2017-05-13 22:22:08

係六十幾個
https://twitter.com/m0rb/status/863374320701255680

其實我想知,點解人地比左錢 佢係會知?

隻毒用黎收錢個bitcoin wallet address得一個,只要mon實個address既transaction就知道

deep web 搵到address架咩?

又關deep web 咩事

Bitcoin 同deep web好關事wo Ching

我真係唔知喎
可唔可以講講

Darknet所有交易例如毒品,槍械交易個d都係用bitcoin交易


如果只係睇幾多人俾咗錢,同埋付款人個Bitcoin address
https://blockchain.info/address/12t9YDPgwueZ9NyMgw519p7AA8isjr6SMw
2017-05-13 22:22:41
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個

又黎
佢真係好似唔怕比人捉到

可能唔只一個rev
hard code 咗幾條入去
2017-05-13 22:26:19
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個

又黎
佢真係好似唔怕比人捉到


有咩好怕,佢做得出就預咗帶定條LAN線入冊
2017-05-13 22:26:23
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個

又黎
佢真係好似唔怕比人捉到

可能唔只一個rev
hard code 咗幾條入去

多左美國,歐洲人訓醒?
2017-05-13 22:27:44
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個

又黎
佢真係好似唔怕比人捉到

可能唔只一個rev
hard code 咗幾條入去

多左美國,歐洲人訓醒?

Reg domain治標唔治本
2017-05-13 22:28:27
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個

又黎
佢真係好似唔怕比人捉到

屌咩,搞到咁大單,唔執返一兩千萬都唔收得手啦
2017-05-13 22:32:22
治標唔標本
2017-05-13 22:32:27
The kill switch won’t help anyone whose computer is already infected with the ransomware, and and it’s possible that there are other variants of the malware with different kill switches that will continue to spread.

其實仲有機會仲有其他kill switches
建議大家點都更新windows到最新版
唔好掉以輕心


而家個中招live又快返
係咪已經轉左第個domain再黎個

又黎
佢真係好似唔怕比人捉到

可能唔只一個rev
hard code 咗幾條入去

多左美國,歐洲人訓醒?

有撚用咩
DOUBLEPULSAR同EternalBlue一比人發佈出黎個陣本身話係0-day
但之後發現M$早一個月原來靜靜雞patch左
但用家一日唔patch基本上都係中出放題
吹水台自選台熱 門最 新手機台時事台政事台World體育台娛樂台動漫台Apps台遊戲台影視台講故台健康台感情台家庭台潮流台美容台上班台財經台房屋台飲食台旅遊台學術台校園台汽車台音樂台創意台硬件台電器台攝影台玩具台寵物台軟件台活動台電訊台直播台站務台黑 洞