- Distribution Method : Unknown
- MD5 : abbdaa8714420c10d08717c0f7e07f1c
- Major Detection Name : TR/Ransom.vzoms (Avira), Gen:Variant.Ransom.TurkStatik.1 (BitDefender)
- Encrypted File Pattern : .ciphered
- Malicious File Creation Location : C:\Users\%UserName%\AppData\Local\Temp\windows.dll
- Payment Instruction File : README_DONT_DELETE.txt
- Major Characteristics :
- Offline Encryption
- The English and Turkish users targeted.
List