- Distribution Method : Unknown
- MD5 : e94b18674b8336461c12a2ed48541956
- Major Detection Name : Java/Filecoder.AK (ESET), Ransom.Java.PONYFINAL.B (Trend Micro)
- Encrypted File Pattern : .enc
- Malicious File Creation Location :
- C:\Users\Public\RunTask.bat
- C:\Users\Public\tmp.jar
- Payment Instruction File : README_files.txt
- Major Characteristics :
- Offline Encryption
- File encryption using "C:\Program Files\Java\jre<Version>\bin\javaw.exe"
List