Possibly updated #Petya ransomware version:
https://www.virustotal.com/en/file/4c1dc737915d76b7ce579abddaba74ead6fdb5b519a1ea45308b8c49b950655c/analysis/ … cc @hasherezade
-
-
Replying to @bartblaze
@bartblaze thanks! I have already seen it, it seems the core didn't changed1 reply 0 retweets 0 likes -
Replying to @hasherezade
@hasherezade My pleasure and thanks for your dedication & investigation! So likely just a new campaign, not a new variant?1 reply 0 retweets 1 like -
Replying to @bartblaze
@bartblaze after a brief look it seems to me that they just repacked the 'Setup.dll' in a new FUD/crypter. new-> PDFpic.twitter.com/U8iWr96tAi
1 reply 0 retweets 3 likes
Replying to @hasherezade
@hasherezade Yeap, forgot to mention that. Didn't they do that before as well? Haven't really checked it out yet tbh. Cheers! :)
5:58 AM - 1 Apr 2016
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.