Fake WannaCry Ransomware Uses NotPetya’s Distribution System

Called FakeCry, the ransomware was delivered to M.E.Doc users on June 27, the same day as the NotPetya outbreak started. According to Kaspersky, it was run as ed.exe in the M.E.Doc directory by the parent process ezvit.exe, suggesting it used the same delivery mechanism abused by NotPetya.

Read full news article on SecurityWeek

 


Date:

Categorie(s):