- Distribution Method : Unknown
- MD5 : 57931947a5afd6c9e7adc566ae88a4e6
- Major Detection Name : Gen:Variant.Ransom.Unlock92.24 (BitDefender), Ransom_ZIPPER.THGBOAH (Trend Micro)
- Encrypted File Pattern : <Folder Name>-<5-Digit English Small Letter>.zip
- Payment Instruction File : <20-Digit English Small Letter>.txt
- Major Characteristics :
- Offline Encryption
- Kozy.Jozy / Naampa / Unlckr Ransomware series
- The Russian users targeted
- Compress target files to single password protected zip file and change original files to 1 byte.
List