Security

WannaCry Hackers Finally Move Ransom Money – Bitcoin Split Gave Them a 20% Bonus!

Rafia Shaikh
Copy Shortlink
wannacry ransomware

After nearly three months of the WannaCry ransomware outbreak, hackers have now finally started to move money from their digital wallets. The ransomware attack had affected businesses in over 150 countries, including a chaotic attack on UK's NHS and Spain's Telefonica.

Over $143,000 worth of bitcoins paid by victims of the WannaCry ransomware have been removed from three bitcoin wallets that are known to be associated with WannaCry. While cybersecurity experts advised victims not to pay the ransom money, apparently many did pay up to get their data back.

Related Story FBI Is Now Accusing the Famous British Cybersecurity Expert of Lying to the Agency

WannaCry cashout starts - law enforcement follows the money trail

WannaCry outbreak affected a number of businesses as hackers locked up data and demanded ransoms. Law enforcement and the security community believes that nearly 300,000 computers were targeted in the WannaCry attack. Victims were asked to pay between $300 and $600 to get the access to their systems back.

[BREAKING] FBI Detains the “Accidental Hero” Who Stopped WannaCry Outbreak

Tracking companies have reported that the attackers have been moving funds between July 24 and August 3 from the three wallets that have been associated with the ransomware. In total, around $143,000 (52.2 BTC) worth of bitcoin was withdrawn according to Elliptic, a London-based startup that helps law enforcement track down criminals using cryptocurrency. The company confirms that the last withdrawal made at 3:25 am on Thursday cleared all the money from the wallets that was sent by WannaCry victims, as the balance of all of the wallets is now zero.

The cryptocurrency tracking firm believes that the criminals are now converting this money into Monero. "We're following the movement of funds being sent out of the WannaCry wallets," Elliptic co-founder Tom Robinson told CNBC.

"We believe some of these funds are being converted into Monero, a privacy-focused cryptocurrency. We continue to work with law enforcement to support their efforts in tracing ownership of these funds."

Criminals also get a 20% bonus thanks to bitcoin split

The recent bitcoin split also helped WannaCry hackers get an extra 20% on top of the $143,000 worth of their extorted bitcoins. The spilt broke bitcoin into two cryptocurrencies: bitcoin and bitcoin cash. With this split, everyone received the same number of coins that they had in bitcoin in the new bitcoin cash currency too.

With ~50 BTC in their accounts when they cleared these three wallets, hackers would get around $143,000 if they decide to liquidate these coins, and then $25,000 from 50 bitcoin cash coins, as well.

However, WannaCry hackers might find it difficult to surreptitiously liquidate their coins. The ransomware attack has been previously linked to North Korea and is believed to be politically driven. Law enforcement is closely monitoring the movements and even though it was previously believed that bitcoin is anonymous, latest arrests and the takedown of dark net marketplaces has made it clear that it is anything but.

Hackers could also pay for dark web services to "leave less of a digital paper trail," Andy Patel of F-Secure told BBC. "I wouldn't imagine that they are going to try and turn those bitcoins into real money. If they do, it's going to give someone a way to track them to an actual person."

Powered by a leaked NSA exploit, WannaCry started a new streak of ransomware attacks that was followed by the Petya outbreak. Last week at the Black Hat conference, Google revealed that 95% of all ransomware payments were cashed out via BTC-e. The major bitcoin exchange is currently offline after its alleged Russian founder was arrested in Greece. Many hope that these arrests and the possibility of LEAs tracking the coins back to the WannaCry culprits would put a temporary stop to the exponentially developing ransomware industry.

Share this story

Comments

哆哆女性网seo优化推广招聘SEO问答推推蛙商丘到沛县免费算命周易生辰八字测婚姻qq卡通头像食品店起什么名字啊?书院二小松阅读答案易家扬免费公司测名结合八字周易姓尚起名字大全男孩runaway漫画公益网站设计摩臣2网站建设qq刷业务网站怎么制作海清和杜淳演的电视剧seo需要多长时间猪年女宝宝起名宜用字的网站app建设好听的童装商铺起名令字起名高端企业网站制作算死命一共多少章节山楂汁起名都市后宫工程施工企业起名免费周易预测八字晚唐姓邓起名给孙女起个名周易起名大师破解版淀粉肠小王子日销售额涨超10倍罗斯否认插足凯特王妃婚姻不负春光新的一天从800个哈欠开始有个姐真把千机伞做出来了国产伟哥去年销售近13亿充个话费竟沦为间接洗钱工具重庆警方辟谣“男子杀人焚尸”男子给前妻转账 现任妻子起诉要回春分繁花正当时呼北高速交通事故已致14人死亡杨洋拄拐现身医院月嫂回应掌掴婴儿是在赶虫子男孩疑遭霸凌 家长讨说法被踢出群因自嘲式简历走红的教授更新简介网友建议重庆地铁不准乘客携带菜筐清明节放假3天调休1天郑州一火锅店爆改成麻辣烫店19岁小伙救下5人后溺亡 多方发声两大学生合买彩票中奖一人不认账张家界的山上“长”满了韩国人?单亲妈妈陷入热恋 14岁儿子报警#春分立蛋大挑战#青海通报栏杆断裂小学生跌落住进ICU代拍被何赛飞拿着魔杖追着打315晚会后胖东来又人满为患了当地回应沈阳致3死车祸车主疑毒驾武汉大学樱花即将进入盛花期张立群任西安交通大学校长为江西彩礼“减负”的“试婚人”网友洛杉矶偶遇贾玲倪萍分享减重40斤方法男孩8年未见母亲被告知被遗忘小米汽车超级工厂正式揭幕周杰伦一审败诉网易特朗普谈“凯特王妃P图照”考生莫言也上北大硕士复试名单了妈妈回应孩子在校撞护栏坠楼恒大被罚41.75亿到底怎么缴男子持台球杆殴打2名女店员被抓校方回应护栏损坏小学生课间坠楼外国人感慨凌晨的中国很安全火箭最近9战8胜1负王树国3次鞠躬告别西交大师生房客欠租失踪 房东直发愁萧美琴窜访捷克 外交部回应山西省委原副书记商黎光被逮捕阿根廷将发行1万与2万面值的纸币英国王室又一合照被质疑P图男子被猫抓伤后确诊“猫抓病”

哆哆女性网 XML地图 TXT地图 虚拟主机 SEO 网站制作 网站优化