Warning message... Link to action
Read our in-depth analysis of a new high-volume campaign that marked the resurgence of notorious malware-as-a-service Hawkeye Keylogger. Read the blog post
Aliases: No associated aliases
Windows Defender Antivirus detects and removes this threat.
This ransomware can stop you from using your PC or accessing your data. It might ask you to pay money to a malicious hacker.
This ransomware has worm-like capabilities that allows it spread across infected networks. It's spreading capabilities include:
- Lateral movement using credential theft and impersonation
- Lateral movement using the EternalBlue and EternalRomance exploits
For more information on this threat, which caused an outbreak on Jun 27, 2017, read these blog posts on the Windows Security blog:
- Windows 10 platform resilience against the Petya ransomware attack
- New ransomware, old techniques: Petya adds worm capabilities
Our ransomware page has more information on this type of threat.