KillDisk
Description
(Trend Micro) The malware has since metamorphosed into a threat used for digital extortion, affecting Windows and Linux platforms. The note accompanying the ransomware versions, like in the case of Petya, was a ruse: Because KillDisk also overwrites and deletes files (and don’t store the encryption keys on disk or online), recovering the scrambled files was out of the question. The new variant we found, however, does not include a ransom note.
Names
Name |
---|
KillDisk |
Win32/KillDisk.NBI |
Win32/KillDisk.NBH |
Win32/KillDisk.NBD |
Win32/KillDisk.NBC |
Win32/KillDisk.NBB |
Category
Malware
Type
- Wiper
Information
- https://blog.trendmicro.com/trendlabs-security-intelligence/new-killdisk-variant-hits-financial-organizations-in-latin-america/
- http://www.welivesecurity.com/2016/12/13/rise-telebots-analyzing-disruptive-killdisk-attacks/
Mitre Attack
Malpedia
Alienvault Otx
Other Information
Uuid
b3b552bc-dd11-4722-9d0b-5f00e4707473
Last Card Change
2022-12-30