Posts

Showing posts from July, 2017

Large-Scale Petya Ransomware Attack In Progress

Image
http://blog.trendmicro.com/trendlabs-security-intelligence/large-scale-ransomware-attack-progress-hits-europe-hard/?mkt_tok=eyJpIjoiTVRBNU16bGlObVV3WkdJMSIsInQiOiIrYW9CSHlxVVlvbVhwQnBLTG5tcVQ3Q0FnR2hDVjZsRFBiSXhydmxFV2tjaTV1UlwvVVB0QXZ0QXB4azMwZHlPcjFBalZXYkpQTENscml1ZjRsSWhoTStra1poQ1Nyd2Y2Mk5QSkk5bFN0UFVmK1pRTFcyV2RXOGlrRUQzRDZuaCsifQ%3D%3D Large-Scale Petya Ransomware Attack In Progress, Hits Europe Hard Posted on: June 27, 2017   at 12:37 pm Posted in: Malware ,  Ransomware Author:   Trend Micro 501 A large-scale  ransomware  attack reported to be caused by a variant of the Petya ransomware is currently hitting various users,  particularly in Europe . This variant, which Trend Micro already detects as RANSOM_PETYA.SMA, is known to use both the EternalBlue exploit and the  PsExec  tool as infection vectors. Users and organizations are thus advised to perform the following mitigation steps immediately in
Protect from PETYA .... This mail is to keep you informed about the latest identified malware, widely known as ‘Petya’ or ‘GoldenEye’ or ‘Mischa’. ‘Petya’ Ransomware: Ransomware is a type of malware that restricts access to the infected system in some way till the victim pays a ransom. The most common way users are falling prey to ‘Petya’ is to receive a spam or phishing mail with a Dropbox or any file storage URL or an executable as an attachment. ‘Petya’ Ransomware is an executable file (changes icons and would look like pdf/WinRAR) delivered via spam mail which encrypts files on the system’s hard drive which can’t be easily decrypted. It uses strong AES encryption to encrypt files. Tips for you to ensure that you are protected from ‘Petya’ Ransomware: ·           Be cautious about opening any email attachment that you have received from an unknown source, especially if it advises you to enable macros to view its contents. Do not enable macros under