And positive news as such, that in the coming Windows 10 update called “Fall Creators Update” SMB 1.0 file sharing protocol is going to be removed. In fact, you don’t need one!
More, for GUI fans OnMicrosoft:
Here comes practical example for PowerShell diehards:
Below, link to information how it was possible to spread this virus THAT rapidly (via MEDoc automatic update, ezvit.exe) on Ukraine:
That, what happened with Russian branch of Home Credit bank loyalty program “Polza” as result of “Petya” attack:
Look like good overview of server internals and application architecture… Very insecure! 🙁
Finally, every Windows service that makes changes to your system configuration now could be also a harmful one… Or even have intentionally left backdoor.
To be fair, latest reports also indicate that even software from Google or any other vendor’s online store MIGHT be harmful at some extent. It just imitate its good intentions for a while, then after some updates shows its true nature. 🙁 Ok, it is not like “Petya”, but still.
In short – keep your firewall always on and ports secure. Don’t install any automated update agents running with administrator rights.
Wish you luck, and… Be updated, beware of viruses!