Published Mar 28, 2016|Updated Sep 15, 2017

Ransom:Win32/Petya

Severe |Detected with Windows Defender Antivirus

Aliases: No associated aliases

Summary

Windows Defender Antivirus  detects and removes this threat.

This ransomware can stop you from using your PC or accessing your data. It might ask you to pay money to a malicious hacker.

This ransomware has worm-like capabilities that allows it spread across infected networks. It's spreading capabilities include:

  • Lateral movement using credential theft and impersonation
  • Lateral movement using the EternalBlue and EternalRomance exploits

For more information on this threat, which caused an outbreak on Jun 27, 2017, read these blog posts on the Windows Security blog:

Our ransomware page has more information on this type of threat.

 

Latest news
VIEW ALL