Here I show you some very quick analysis of NotPetya / Petrwrap Ransomware in my malware lab. This is being distributed and propagating using EternalBlue / DoublePulsar which is very similar to the WannaCry ransomware recently observed.
Sample information:
MD5: 71b6a493388e7d0b40c83ce903bc6b04
SHA1: 34f917aaba5684fbe56d3c57d48ef2a1aa7cf06d
Follow me on twitter:
/ cybercdh
Protect yourself:
Patch your Windows Systems!
Make sure you have offsite backups!
Get an Incident Response plan :)
Useful further technical information:
https://t.co/YeDNDlOzR5