- Distribution Method : Remote infection and access by SMB vulnerability
- MD5 : 71b6a493388e7d0b40c83ce903bc6b04
- Major Detection Name : Trojan.Ransom.Petya (ALYac), Ransom:Win32/Petya (Microsoft)
- Encrypted File Pattern : No Change
- Major Characteristics :
- Offline Encryption
- GoldenEye / Mischa / PetrWrap Ransomware series
- Modifying the Master Boot Record (MBR) + File Encryption
- Reboot after 1 hour
List