Source |
Malwarebytes Labs |
Identifiant |
380290 |
Date de publication |
2017-06-30 16:53:36 (vue: 2017-06-30 16:53:36) |
Titre |
EternalPetya – yet another stolen piece in the package? |
Texte |
Since 27th June we've been investigating the outbreak of the new Petya-like malware armed with an infector similar to WannaCry. Since the day one, various contradicting theories started popping up. Some believed, that it is a rip-off the original Petya, others - that it is another step in its evolution. However, so far, those were just different opinions, and none of them was backed up with enough evidence. In this post, we will try to fill this gap, by making a step-by-step comparison of the current kernel and the one on which it is based (Goldeneye Petya).
Categories:
Malware
Threat analysis
Tags: attributionEternalPetyahasherezadehexeditjanusMalwarebytesNotPetyaNSApetyapsexecransomware
(Read more...)
|
Notes |
|
Envoyé |
Oui |
Condensat |
27th analysis another appeared armed attributioneternalpetyahasherezadehexeditjanusmalwarebytesnotpetyansapetyapsexecransomware backed based been believed categories: comparison contradicting current day different enough eternalpetya evidence evolution far fill first gap goldeneye however infector investigating its june just kernel labs like making malware malwarebytes more new none off one opinions original others outbreak package petya piece popping post read rip similar since some started step stolen tags: them theories those threat try various wannacry which will yet |
Tags |
|
Stories |
NotPetya
Wannacry
|
Move |
|