- Distribution Method : Unknown
- MD5 : f43ae003fd6af0071df8c29975e60295
- Major Detection Name : Trojan.Ransom.MindSystem (ALYac), a variant of MSIL/Filecoder.RC (ESET)
- Encrypted File Pattern : <Random Filename>.mind
- Malicious File Creation Location : C:\Users\%UserName%\Desktop\key.txt
- Major Characteristics :
- Turns off User Access Control (UAC)
- Disable and Blocks Registry Editor (DisableRegistryTools), Command Prompt (DisableCMD) and Task Manager (DisableTaskMgr)
- Disable Lock Computer (DisableLockWorkstation)
- Disable Change Password (DisableChangePassword)
- Disable Sleep, Shut down and Restart (NoClose)
- Disable Logoff (NoLogoff)
- Disable Fast User Switching (HideFastUserSwitching)
- Changes desktop background (file.jpg)
List