- Distribution Method : Unknown
- MD5 : 3e6df41f4e8aa4d85f0d6ca7cf9f3069
- Major Detection Name : Win32.Trojan-Ransom.BigBobRoss.A (GData), Ransom.Win32.BIGBORB.AA (Trend Micro)
- Encrypted File Pattern : .obfuscated
- Malicious File Creation Location : C:/Users/%UserName%/Desktop/Read Me.txt
- Payment Instruction File : Read Me.txt
- Major Characteristics :
- Offline Encryption
- Changes desktop background (bg.png)
List