Eset desarrolló un análisis sobre el nuevo ataque de ransomware que se inició en Ucrania, y cifró información de máquinas de todo el mundo, afectando compañías de distintas industrias como bancos, red eléctrica y empresas postales, entre otras. El ransomware (secuestro de información) es el término genérico para referirse a todo tipo de software malicioso que le exige al usuario del equipo el pago de un rescate.
“El día martes un nuevo ataque de ransomware dejó en evidencia que sigue habiendo sistemas desactualizados, falta de soluciones de seguridad y de planes necesarios para evitar una infección. Los ataques continúan creciendo y evolucionando, por lo que desde Eset seguimos apostando a que la prevención y la concientización son claves para evitar ser víctimas.”, aseguró Camilo Gutierrez, jefe del Laboratorio de Eset Latinoamérica
Con el fin de despejar todas las dudas en torno a este nuevo ataque global, la compañía comparte el siguiente cuestionario:
¿Cuáles son las características de este ransomware?
Se destacan tres aspectos que lo diferencian:
Cifrado: no solo cifra los archivos con una extensión determinada, sino que además intenta cifrar, generalmente con éxito, el MBR (Master Boot Record), que es el registro principal de arranque.
Propagación: tiene la propiedad de un gusano, o sea, puede propagarse a través de diferentes técnicas por la red logrando infectar nuevos equipos.
Exploit: hace uso de ellos para explotar vulnerabilidades en equipos que no han sido actualizados o no se les han instalado los parches correspondientes.
¿Es igual de poderoso que WannaCryptor?
Ambos tienen el mismo impacto: impiden el acceso a la información almacenada en el sistema. Sin embargo, este nuevo ataque no solo cifra la información que se encuentra en los equipos, sino que, luego de que se reinicia el sistema, deja inutilizable al sistema operativo, por lo que las víctimas se ven obligadas a realizar una reinstalación.
¿Qué es lo que hace exactamente esta amenaza?
Luego de que el ransomware es ejecutado, crea una tarea programada con el fin de reiniciar el equipo en un determinado tiempo, que no suele ser más de sesenta minutos. Además, verifica si existen carpetas o discos compartidos para propagarse.
A continuación, comienza a cifrar archivos que contengan una determinada extensión. A diferencia de la mayoría del ransomware, este código malicioso no cambia o agrega una extensión particular luego de cifrar cada archivo, una técnica muy utilizada por los atacantes para distinguir a los archivos infectados.
Por último, el malware intentará eliminar los registros de eventos para no dejar rastro alguno, como también ocultar sus acciones.
¿Cómo se propaga de un país a otro? ¿Llegó a Latinoamérica?
La propagación es una característica destacable de esta amenaza. Una vez que logra infectar un equipo, intenta extraer las credenciales del usuario para luego usarlas con PsExec y WMIC para realizar una búsqueda de carpetas y discos compartidos, y así propagarse por la red a la cual el equipo esté conectado. De esta manera, logra infectar equipos situados en distintos países y regiones.
Sí, llegó a Latinoamérica, en la mayoría de los casos a equipos de empresas multinacionales conectados en red con los de otras filiales en Europa o Asia, desde las cuales se propagó con su capacidad de gusano.
¿Qué se puede hacer para evitarlo?
Tanto en hogares como en empresas, contar con una solución antivirus es imprescindible. La misma tiene que estar correctamente configurada, contemplar qué puertos están abiertos y por qué.
Además, la red debe estar configurada y segmentada correctamente, y monitorear constantemente el tráfico para detectar algún tipo de comportamiento fuera de lo normal. Es esencial realizar un estudio detallado de la información más relevante y hacer backup de la misma, para que, en caso de que se cifre, haya una forma de restaurarla.
En cuanto a las contraseñas, es primordial llevar una buena gestión de las mismas, ya que si tan solo una de las máquinas infectadas posee las credenciales de administrador, podría infectar toda la red.
Si estoy infectado y no puedo acceder al sistema, ¿cómo tendría que avanzar?
Se podrían utilizar técnicas forenses para intentar correr en memoria otro sistema operativo y de esta forma acceder a los archivos cifrados. Sin embargo, no hay mucho que se pueda hacer más que aplicar el backup, lo cual sería crucial para evitar la reinstalación del sistema operativo.
En última instancia, si no hay backup, los cibercriminales siempre ofrecerán la opción extorsiva, pero desde ESET no sugerimos de pagar el rescate ya que mientras siga siendo rentable, el ransomware continuará creciendo.
¿Cómo están operando los atacantes? ¿Esperan un pago a cambio?
El proceso para recuperar la información es el mismo al que nos tiene acostumbrado este tipo de ataques. Una vez finalizada la infección, el ransomware emite las instrucciones, en donde los atacantes solicitan un pago en bitcoins, en este caso, equivalente a 300 dólares.
Pie de imagen: Aviso de que el equipo ha sido infectado.
¿Por qué se ha vuelto tan común el secuestro de datos?
Dentro de los puntos destacables se encuentran la falta de concientización y educación a nivel seguridad que tienen muchos usuarios y empresas. Una gran parte todavía no conoce el impacto que puede tener en un modelo de negocio un ciberataque hasta que es víctima y se ve obligada a pagar para recuperar su información.
Ante esta cuestión, a pesar de la velocidad con que circulan las noticias sobre ataques informáticos y los problemas que generan, los cibercriminales encuentran una motivación importante para continuar desarrollando nuevas amenazas.
¿El ataque está armado por una persona o un grupo? ¿Se necesitan conocimientos técnicos altos?
Resulta difícil pensar que una sola persona puede estar detrás de este ataque, ya que es una amenaza que incorpora varias técnicas en cuanto a exploits, propagación, y cifrado, así como para evadir medidas de seguridad. Sin embargo, no podemos asegurar cuántas son las personas involucradas en el desarrollo de un ataque de tal magnitud.
¿Se puede dar con los autores del ataque?
No por ahora. A diferencia de una botnet, por ejemplo, no hay un Centro de Comando y Control al que se conecte la amenaza como para rastrearlo y dar con los autores; y de usarlo, seguramente sería un servidor ajeno al cual atacaron para tomar el control y accederían desde TOR, logrando anonimidad. Por otro lado, el pago del rescate se hace en bitcoins y, por las características de esta criptomoneda, se hace prácticamente imposible rastrear su destino final.
Para más información ingrese al portal de noticias de ESET llamado WeLiveSecurity en:
Los humanos aprovechan el poder de las nanopartículas —elemento central de los puntos cuánticos que acciona las imágenes sorprendentes del televisor QLED.
Es necesario integrar las estrategias de atención sin importar si la interacción con el usuario se produce a través de un chat, llamada telefónica o en redes sociales.
WCL mejora las operaciones de distribución a través de FCA US LLC para reducir sistemáticamente los deshechos y mejorando la calidad enfocándose en 10 pilares clave técnicos y 10 administrativos.
La tecnología impulsará la industria del transporte aéreo del país y su primera muestra fue en el Aeropuerto Internacional de la Ciudad de México con Leo.
Lin Haoming didn t think he wanted to fight against the desolate beasts here at will, especially the desolate birds and beasts.The two said the same thing, their eyes met at this moment, and they couldn t help laughing at the same time.
Unable to exert its power, just a peeping person is enough to kill, even my previous master is not qualified to fight.He had already clenched the Nine Dragon Whip in his hand.
That s less. Of course, because the level of required items has dropped, at least half of the people still have something to gain.Although he agreed, Qiu Yulan was a little unreasonable, and directly took out a high level demon soul contract.
Unless they could be killed instantly, it would be really troublesome to be entangled with the movements of these birds.Let s just open the skylight and speak honestly. You let Yan er go.
She wanted to say something, but her delicate red lips moved a few times.Everyone surrounded Situ Mo, but they didn t expect that he would really give up the treasure chest, and watched the treasure chest fly away.
It looks like it might collapse at any time. The previous Bi Qi put an absolutely terrifying pressure on Lin Haoming, but now, under the influence of the Tonghui Pearl, Bi Qi s cultivation has plummeted, and she is no longer far behind her, and she may be completely wiped out at any time.What this giant bird did was clearly to prevent Lin Without Exercise How to Lose Weight: Practical Advice for Weight Loss Without Gym Time
Haoming from using the afterimage dodge again, and Lin Haoming subconsciously felt that although this giant bird was just a desolate beast, its intelligence might not be too low.
When Bai Yan finally disappeared, Lin Haoming s figure finally appeared, and he stretched out his hand to grab the storage bracelet on the man s corpse, and the storage bracelet fell into his hand.After Lin Haoming stared at the waterfall, his eyes suddenly stared, the purple black light in his eyes flashed a few times, and he slapped casually, a huge force gushed out from the palm of his hand, Harness the Power of Pure CBD Gummies 25 mg for a Healthier You
directly bombarding the place where the waterfall fell.
When Lin Haoming s mana poured into it, and when a golden light curtain completely enveloped him, the opponent Canna Labs CBD Blood Sugar Gummies Review – The Latest Research
punched the light curtain again.Seeing this, Zheng Ge wasn t surprised at all, and even took out a spirit beast bag and threw it out a step earlier.
The leader of this trading group is also Lin Haoming s old acquaintance, Mr.Just when Shen Yan took the vial from his hand, several thin needles shot out from her hand and pierced into Conway s wrist, shoulder and other places.
If Zhao Keming can really take it out, it s not that Lin Haoming can t exchange it for him.That s right The Great Elder of the Purple Leaf Sect also nodded, and then said to Lu Lu You rush back to the sect immediately, and then hand this jade slip to the master nephew of the sect, and let him finish the things inside.
Lin Lin Haoming returned the salute, clasping his hands.
Originally they should be happy, but now, they are not happy.The terrifying power of the stars, with boundless murderous aura, came to Lin Xuan in an instant.
He met Master Tianhe and King Duobao who were subordinate to the First Prince, and successfully beheaded them.Seeing dozens of black shadows, the Seventh Prince and these great powers, everyone was extremely shocked.
I m afraid it can instantly kill the six star king.It never occurred to him that one day he would be in danger of failing.
He wasn t crazy anymore, and the demonic aura on his body had calmed down a How Triplex Keto Gummies Can Support Your Keto Journey for Effective Weight Loss
lot, even looking at Lin Xuan with a trace of respect in his blood red eyes.Old Monster Dugu said in a cold voice, he has finished kowtowing his head, and now it s time to eat the stone skin.
It seems that the opponent has many hidden strengths, but he will not be defeated.At this point, she held a red Tibetan sword at her waist.
Sure enough, the eldest prince couldn t wait to make a move.In other words, he must get two spots. It seems that there is only one invitation card.
But now, the other party actually A Comprehensive Guide to the Benefits of Goli Gummies for Weight Loss and Overall Health
wants to resist and make thirteen huge ones please remind netizens please pay attention to the rest of your eyes when reading for a long time.Seeing that the Sword Qi Dragon Figure was still pressing upwards quickly, it was about to completely cover the Seven Stars.
It s just equivalent to mastering it. However, just by mastering it, he already felt that his combat power has improved a lot compared to before.Except for the dark red dragon to remind them when the moon is full, the two of them avoid those death periods.
To be honest, even if they were beaten to death, they wouldn t believe that the young man in front of them could equal General Qianshan.OK, I promise you. I want to know who you are I TropiKeto Gummies Review: Does It Really Work as Advertised?
am Lin Xuan, a casual cultivator, from a remote island.
Master, please. Two young men and women led the way and guided Lin Xuan towards the huge and magnificent palace ahead.And the appearance is very beautiful, and the aura on their bodies also has the six star king.
To be honest, although the other party s breath is scary, but at the moment he is too excited.Moreover, let the other party escape successfully. Thinking of this, Qin Lan raised a sneer at the corner of his mouth.
Lin Xuan was stunned, Xia Jiuyou is so strong, the hell fire dragon also roared and came back.A hellfire dragon. Do hellfire dragons Science-Backed Ways to Lose Weight Fast Without Exercise
really exist Lin Xuan was shocked.
Moreover, the reincarnation he possesses The power is beyond the imagination of the other party.If you give a young man an elixir that can prolong his life, to be honest, although it is precious, it is better to give the other party an elixir that can immediately improve his cultivation and strength, man, it is so realistic.
Lin Xuan stopped. He felt that he could no longer move forward by practicing behind closed doors.poisonous Hunya s pupils shrank sharply, and Xue Linglong s expression also changed.
There are even some people who have hallucinations, and they also feel that they lived 100,000 years ago.Although Jiuyang s divine body is extraordinary, Lin Xuan does not have the support of the imperial family behind him, and Ye Wudao is different.
Some geniuses, even for a lifetime, can t break through the first layer.But that was just now, now you re going to shoot, I don t have any restrictions, I will send you to hell.
So if you Let’s Celebrate New Year 2025 with Viaketo Gummies in the US
really want to kill an emperor, you need careful arrangements, Even, a lot of power needs to be dispatched.Obviously, they didn t fully believe it. At this time, someone stepped forward, and I m here.
Hu Duanxiao felt a little regretful, CBD Gummies for Joint Pain: A Comprehensive Guide to Natural Relief
Lin Haoming s luck was wrong, and the moon blade just brushed past, but if I do it once and do it a few times, I will only be happier.For Shu Yan, the whole journey was full of trepidation.
up And in the current situation, Hei Sheng is really afraid of the king and devil.Hua Caiyi said seriously. I ll release it to you or
I need your blood essence, and I will bite you when the time comes, don t resist, I promise nothing will happen, you can sense the Nature's Only CBD Gummies: Unlock a World of Relaxation and Wellness
connection between me, if I am right If you are disadvantaged, I will also be implicated.
They waited until the seventh day to rush down again, but the Vietnamese army showed stubbornness.It s easy to say, I m just ordinary people here, I m not as good as I Tried Rejuvazen CBD Gummies – Here is My Review
you guys, so I ll go there first.
Ning Lin is eight years older than Lao Ba, but he has long been famous General, I also became famous in the battle with Chu State, and I wanted to subdue the Chu army because of it.there are no other rules. You have Over 50 and Thriving: Ace Keto ACV Gummies Reviews Show Significant Weight Loss in 2025
seen me. Chen Shun looked at Lin Haoming again and said. Zhou Heng s words sounded very touching, and Lin Haoming nodded silently.
Marshal Ning. Hearing her address, Ning Lin obviously no longer regarded himself as the former Taiqian who had kissed him, so he also reminded Now that the title 10 Surprising Ways Hydration Boosts Your Weight Loss Journey this Summer
of the Qing Kingdom has not been removed, he is still the former Taiqian of the Qing ACV Keto Gummies: Effective Weight Loss Solution or Just a Marketing Gimmick?
Kingdom.As for escaping, he can t do it. He doesn t need to absorb the berserk mana here, but can others do it If you don t occupy the oasis for cultivation, accidents will happen to everyone, and it s not known how far it is from the edge of Venerable Wang s rule, at least the little old man doesn t know, because they appear in the core area ruled by Venerable Wang.
Zhang Ruochen immediately explained Your supplies are expensive, and there are usually more things like wine, and because of that, wine can be regarded as hard currency, and it cannot be directly used as currency like weapons without food.When you said This is not the way to earn incense. Pu Luzhen said helplessly.
Fortunately, the fire plague is serious now, and there are no active people around, otherwise such a loud noise would have attracted many people s attention.Lin Haoming also ignored all that. Seeing me like this, What green tea is good for weight loss
Lin Haoming was really not excited to say yes.
After all, there are some things that she can t undo, and now she can only follow Lin Haoming s path It s dark.As long as I can do it, he can promise me some benefits.
Only then did Lin Haoming heave a sigh of relief. Can you judge the size of these two boats Lin Haoming asked again.I just met Lin Haoming before. He firmly believes in the life gate that left this world.