Petya Sib tham isthawmnev hais Attack: Yuav ua li cas yog nws thiab li cas nws yuav Nres?

Petya yog ib lub npe muab rau tus tseeb thoob ntiaj teb sib tham isthawmnev hais nres uas ntaus ntau lub teb chaws nyob teb chaws Europe, tshwj xeeb tshaj yog Ukraine thiab tej qhov chaw ntawm lub tebchaws United States. Qhov no malware nres ceg tawv tuam txhab uas muag thiab coj lawv mus rau ib tug standstill nyob rau hauv ib luv luv lub sij hawm ntawm lub sij hawm. Cov nres pib ntawm 27th lub rau hli ntuj, 2017 thiab kis tau kab mob computers hauv Ukraine thaum xub thawj ua ntej kis sai sai rau computers nyob rau hauv lwm qhov chaw ntawm lub ntiaj teb no. Major tuam txhab uas muag uas tau ntaus muaj Maersk, dla Piper, Mondelez thiab WPP nrog rau ntau Ukrainian tsoom fwv cov koom haum. Petya xauv cia computers khiav lub qhov rais operating system thiab demanded ib nqe txhiv ntawm txog $ 300 raws li Bitcoin them nyiaj rau txhob xauv lub lawv.

petya cyber attack

Part 1: Yuav ua li cas yog Ransomware?

Ransomware yog ib tug malware uas yog tsim los encrypt cov ntaub ntawv nyob rau hauv ib tug computer system thiab mam li nug rau cov nyiaj them ntawm nyiaj feem ntau yog nyob rau hauv daim ntawv ntawm cov nyiaj them xws li Bitcoin rau decrypting cov ntaub ntawv. Yog hais tias tus nqe txhiv nyiaj yog tsis them nyiaj, tag nrho cov ntaub ntawv nyob rau hauv lub computer uas tsis tau phwj yuav ploj mus ib txhis.

Part 2: Yuav ua li cas yog tus Petya Ransomware ua hauj lwm?

Petya ransomware kis siv cov EternalBlue siv uas yog ib tug ruaj khov hais tias yog tam sim no nyob rau hauv lub qhov rais operating system. Ntxiv mus, nws kuj ua rau kev siv ntawm ob tug sib txawv qhov rais administrative cov cuab yeej kom zoo rau nws hais tawm. Petya nws yuav kis tau tus system siv khiav cov kev ruaj khov thawj thiab yog hais tias nws tsis nyob rau hauv uas los ces ntog rov qab mus rau tus thawj tswj cov cuab yeej xwb. Qhov no dual txoj kev hais tawm ua Petya ib tug ntau formidable ransomware tshaj lwm ransomware tau surfaced nyob ib ncig ntawm lub ntiaj teb no ntev los no. Tom qab uas tau raug tus kab mob ib lub computer, cov malware nws kis los ntawm kev mus rau lwm cov computers uas yog nyob rau tib network.

Thaum kis tau ib tug system, Petya tam sim ntawd reboots nws thiab pib encrypting cov ntaub ntawv uas yog tam sim no nyob rau hauv nws. Yog hais tias lub malware yog tsis nres, nws kiag li locks cia lub cev thiab ua rau tag nrho ntawm cov ntaub ntawv muab tsis cuag. Thaum no tus txheej txheem yog ua kom tiav, tus nqe txhiv daim ntawv tshwm rau hauv lub screen ntawm cov neeg siv kom lawv los tso ib tug npaum li ntawm $ 300 nyob rau hauv daim ntawv ntawm cov Bitcoin kev them nyiaj. Muaj yog ib tug Bitcoin them nqi chaw nyob muab rau tus neeg uas raug nyob rau hauv uas lawv yuav tsum tau tso tus nqe txhiv li cas. Ib tug email chaw nyob yog tseem muab rau kev sib txuas lus nrog rau cov perpetrators ntawm tus nres uas yog yuav tsum tau siv rau cov me nyuam ntawm cov tseem ceeb rau txhob xauv lub qhov encrypted ntaub ntawv nyob rau tus kab mob system tom qab tus nqe txhiv nyiaj tau them.

Part 3: Yuav ua li cas yuav nws yuav tso tseg?

Petya yuav nres los daus ib thaj tso tawm los ntawm Microsoft uas tiv thaiv lub computers los ntawm cov EternalBlue kev ruaj khov. Qhov no thaj yog txiav downloaded thiab ntsia computers uas yog siv ib tug sau npe version ntawm qhov rais thiab muaj lub tsis siv neeg tshiab kev xaiv enabled rau lawv. Rau computers siv ib tug unregistered version, li cas los xij, installation ntawm no thaj yuav tsum tau daus los ntawm lub Microsoft lub website thiab ces txhim kho nws manually. Ntxiv mus, anti-virus kev pab cuam xws li Symantec thiab Kaspersky tau muab kho kom hnov ​​no malware thiab txawm tiv thaiv cov ntaub ntawv los ntawm tau txais encrypted los ntawm nws. Yog li, txhim kho cov kev kho tshiab version ntawm cov anti-virus kev pab cuam muaj peev xwm pab tau koj nyob rau hauv kev siv ceev xwmphem Petya los ntawm kis koj lub computer system.

Nyob rau hauv tas li ntawd mus rau lub qhov rais thaj thiab antivirus tshiab, lwm defensive ntsuas uas tau muab teev rau kev no xyov version ntawm Petya yog lub xub ntiag ntawm ib tug nyeem xwb cov ntaub ntawv los ntawm lub npe ntawm C: \ qhov rais \ perfc.dat rau lub computer system. Yog hais tias cov ntaub ntawv no yog tam sim no nyob rau hauv koj lub computer, Petya yuav tsis tau encrypt cov ntaub ntawv nyob rau hauv koj lub cev. Txawm li cas los, tsis cia rau hauv lub siab hais tias muaj cov ntaub ntawv no yuav tsis nres lub malware los ntawm kis tus kab mob mus rau lwm cov computers uas qhia tib yam network koj lub computer yog rau.

Part 4: Yuav ua li cas yuav tsum ua li cas yog koj cuam tshuam los ntawm lub Ransomware?

Yog hais tias koj yuav tshwm sim tau ib tug tsim txom los ntawm no ransomware, koj thawj txiav txim yuav tsum tau faiv fab ntawm koj lub computer tam sim ntawd. Petya pib lub encryption txheej txheem tom qab rebooting lub system nyob rau hauv lub guise ntawm ib tug chkdsk txoj kev. Yog li ntawd, yog tias koj pom ib tug chkdsk lag luam khiav hauv koj lub PC tom qab ib tug reboot, tam sim ntawd powering nws tawm yuav tso tseg cov malware los ntawm encrypting cov ntaub ntawv nyob rau hauv koj lub cev.

Yog hais tias lub ransomware qhia tus nqe txhiv daim ntawv tom qab lub reboot, koj yuav tsum tau nyob rau hauv tsis muaj teeb meem xav txog kev them nqi tus nqe txhiv li cas. Yog vim li cas rau qhov no yog hais tias cov email chaw nyob uas tau muab rau koj uas yuav tsum xa koj cov yuam sij rau xauv koj cov ntaub ntawv tau raug tshem tawm. Yog li ntawd, koj yuav tsis tau mus yuav tau los rau decrypting koj cov ntaub ntawv. Qhov tshaj plaws xwb tseg rau koj ua nyob rau hauv xws li ib tug scenario yog kom tsis txhob kis ntawm cov ransomware mus rau lwm cov computers nyob rau network. Koj yuav tau ua qhov no los ntawm disconnecting koj lub PC los ntawm lub hauv internet thiab reinstalling tag nrho koj cov ntaub ntawv los ntawm backup tom qab reformatting koj nyuaj tsav.

Ib txhia kev tiv thaiv uas yuav raug coj mus rau pawg ntseeg tawm ransomware tawm tsam zoo li Petya muaj xws li kev thaub qab mus ntawm koj cov ntaub ntawv raws li tau zoo raws li muab kho dua koj anti-virus kev pab cuam. Ntxiv mus, siv ib tug VPN thaum kev cob cog rua rau ib tug pej xeem Wi-nkaus thiab refraining los ntawm qhib tej yam txawv email attachments yog ib co ntawm cov kev uas yuav xyuas kom meej tiv thaiv los ntawm siab phem malware li Petya.

Raws li kev ruaj ntseg ua hauj lwm, cov Petya ransomware yog hom phiaj nram qab no Microsoft kev khiav hauj lwm systems vim lawv muaj lub EternalBlue kev ruaj khov.

Part 5: Koj rov qab rov qab koj cov ntaub ntawv?

Tom qab nres los ntawm Petya, rebooting lub tshuab yuav tau txais koj cov ntaub ntawv rov qab. Txawm li cas los, nws tsis yog ib tug foregone xaus. Muaj yog ib lub caij nyoog uas rebooting lub computer yuav tsis rov qab tau koj cov ntaub ntawv thiab lawv yuav ua encrypted los ntawm cov malware. Yog hais tias koj muaj kev nyuaj siab xws li ib tug teeb meem no ces tsuas yog txoj kev rau koj rov qab rov qab koj cov ntaub ntawv yog los ua rau kev siv ntawm ib cov ntaub ntawv rov qab lub cuab tam. Cov rov qab software yuav luam theej duab koj lub computer rau tej deleted los yog encrypted ntaub ntawv thiab yuav pab tau koj nyob rau hauv recovering lawv. Txawm li cas los, ua kom nyob rau hauv lub siab hais tias tsis yog tag nrho cov ntaub ntawv rov qab software kev pab cuam muaj peev xwm ntawm recovering poob ntaub ntawv. Koj yuav tsum tau tsuas ua rau kev siv ntawm ib tug ncaj ncees thiab qhabnias rov qab lub cuab tam rau lub hom phiaj no zoo li Wondershare ntaub ntawv rov qab .

Petya sib tham isthawmnev hais nres yog ib tug ransomware uas kis computer systems khiav lub qhov rais operating system ntawm lub EternalBlue kev ruaj khov. Nws encrypts cov ntaub ntawv tam sim no nyob rau hauv lub mob systems thiab ces kis mus rau lwm cov computers sib koom tib network. Qhov no sib tham isthawmnev hais nres tswj kom kis tau ntau loj tuam txhab uas muag nyob rau hauv lub teb chaws zoo li Ukraine, lub teb chaws Yelemees, Zog ntawm Guj kuj thiab lub tebchaws United States. Daus thaj ua rau thaj tso tawm los ntawm Microsoft thiab siv tshiab versions ntawm anti-virus kev pab cuam zoo li Kaspersky thiab Symantec. Switching tawm lub computer raws li qhov kab mob kuj yuav pab nyob rau hauv kev siv ceev xwmphem cov malware los ntawm encrypting cov ntaub ntawv nyob rau hauv lub system.

Kub khoom
Saib Ntau Saib Tsawg
Khoom txog cov lus nug? Hais lus ncaj qha mus rau peb Support Team>
Tsev / Computer teeb meem / Petya Sib tham isthawmnev hais Attack: Yuav ua li cas yog nws thiab li cas nws yuav Nres?

Tag nrho XAI

Sab saum toj