- Distribution Method : Unknown
- MD5 : beacfe77ac7277d3a460ecc30b6d542c
- Major Detection Name : Trojan-Ransom.Win32.Wanna.aqvr (Kaspersky), Ransom.WannaRen (Malwarebytes)
- Encrypted File Pattern : .WannaRen
- Malicious File Creation Location :
- C:\Users\Public\Desktop\@WannaRen@.exe
- <Drive Letter>:\@WannaRen@.exe
- Payment Instruction File : 想解密请看此文本.gif / 想解密请看此文本.jpg / 想解密请看此文本.txt
- Major Characteristics :
- Offline Encryption
- The Chinese and English users are targeted.
List