Jump to content
YOUR-AD-HERE
HOSTING
TOOLS
992Proxy

Locked Killswitch for Petya (NotPetya/SortaPetya) ransomware


dEEpEst

Recommended Posts

A killswitch to stop petya from encrypting your disk

Security Researchers (PT Security, TrustedSec, ...etc) seem to have identified a kill-switch that prevents petya ransomware from proceeding through its encryption process 1.

 

Simply, all that is needed are 3 files (perfc, perfc.dll, and perfc.dat) to already exist on the Windows machine, under C:\Windows, with READONLY permissions.

 

 

Usage

 

  1. Launch cmd.exe as ADMIN.
  2. Execute petya-killswitch:
    This is the hidden content, please


  3. Done.

 

 

[spoiler=Scanning VirusTotal]

This is the hidden content, please

 

 

Download:

[HIDE-THANKS]

This is the hidden content, please
[/HIDE-THANKS]

 

Password:

level23hacktools.com

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.