gptkbp:instanceOf
|
malware
|
gptkbp:affectedOperatingSystem
|
gptkb:Microsoft_Windows
|
gptkbp:category
|
gptkb:cryptovirology
cybercrime
malware
|
gptkbp:connectsTo
|
gptkb:Lazarus_Group
|
gptkbp:demandsRansom
|
gptkb:Bitcoin
|
gptkbp:discoveredBy
|
2017-05-12
MalwareTech (Marcus Hutchins)
|
gptkbp:encryptsFiles
|
true
|
gptkbp:estimatedAffectedCountries
|
over 150
|
gptkbp:estimatedInfectedComputers
|
over 200,000
|
gptkbp:exploits
|
gptkb:EternalBlue
|
https://www.w3.org/2000/01/rdf-schema#label
|
WannaCry
|
gptkbp:killSwitchDomain
|
www.iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea.com
|
gptkbp:language
|
multiple languages
|
gptkbp:notableBattle
|
gptkb:2017_global_cyberattack
|
gptkbp:notableFeature
|
kill switch domain
ransom note in 28 languages
self-propagating
uses SMB vulnerability
|
gptkbp:notableVictim
|
gptkb:UK_National_Health_Service
gptkb:FedEx
gptkb:Renault
gptkb:Telefonica
|
gptkbp:patchedBy
|
gptkb:Microsoft_MS17-010
|
gptkbp:ransomDemanded
|
$600
$300
|
gptkbp:spreadTo
|
worm
|
gptkbp:suspectedOrigin
|
gptkb:North_Korea
|
gptkbp:bfsParent
|
gptkb:malware
|
gptkbp:bfsLayer
|
4
|