Researchers Find New Version Of WanaDecrypt0r Ransomware Without A Kill Switch (vice.com)
Remember that "kill switch" which shut down the WannCry ransomware? An anonymous reader quotes Motherboard:
Over Friday and Saturday, samples of the malware emerged without that debilitating feature, meaning that attackers may be able to resume spreading ransomware even though a security researcher cut off the original wave. "I can confirm we've had versions without the kill switch domain connect since yesterday," Costin Raiu, director of global research and analysis team at Kaspersky Lab told Motherboard on Saturday... Another researcher confirmed they have seen samples of the malware without the killswitch.
I've tried everything to get this to run on my Linux Mint box (including installing WINE) and it just won't do anything.
Just cruising through this digital world at 33 1/3 rpm...
You need to make sure you have the *correct* version of gettext, libiconv, openssl, gnu-crypto, and gnucash (not the one your distro ships with of course) and you need the correct version of GCC (4.9.4 it will refuse to compile if you use 4.9.3 or 4.9.5). Also if you are on Mint you will need to patch the ransomware.h header file but not Debian. If using CentOS you need to make sure you load the x86 compatibility libraries or it won't work. Make sure to pass the correct flags to ./configure
This is all obvious to everyone who read the manual so stop wasting our time.