Keeping up with the Petyas: Demystifying the malware family

Credit to Author: Malwarebytes Labs| Date: Fri, 14 Jul 2017 16:29:04 +0000

Last June 27, there was a huge outbreak of a Petya-esque malware with WannaCry-style infector in the Ukraine. Since there is still confusion about how exactly this malware is linked to the original Petya, we have prepared this small guide on the background of the Petya family.

Categories:

Tags:

(Read more…)

The post Keeping up with the Petyas: Demystifying the malware family appeared first on Malwarebytes Labs.

Read more

The key to old Petya versions has been published by the malware author

Credit to Author: Malwarebytes Labs| Date: Thu, 06 Jul 2017 17:06:15 +0000

As research concluded, the original author of Petya, Janus, was not involved in the latest attacks on Ukraine. As a result of the recent events, Janus released his private key, allowing all the victims of the previous Petya attacks, to get their files back.

Categories:

Tags:

(Read more…)

The post The key to old Petya versions has been published by the malware author appeared first on Malwarebytes Labs.

Read more

EternalPetya – yet another stolen piece in the package?

Credit to Author: Malwarebytes Labs| Date: Fri, 30 Jun 2017 16:53:36 +0000

Since 27th June we’ve been investigating the outbreak of the new Petya-like malware armed with an infector similar to WannaCry. Since the day one, various contradicting theories started popping up. Some believed, that it is a rip-off the original Petya, others – that it is another step in its evolution. However, so far, those were just different opinions, and none of them was backed up with enough evidence. In this post, we will try to fill this gap, by making a step-by-step comparison of the current kernel and the one on which it is based (Goldeneye Petya).

Categories:

Tags:

(Read more…)

The post EternalPetya – yet another stolen piece in the package? appeared first on Malwarebytes Labs.

Read more