- Distribution Method : Unknown
- MD5 : f86694d8b2043fe7d127538edbd8dd7a
- Major Detection Name : Trojan.Ransom.Python (ALYac), TR/Ransom.lckti (Avira)
- Encrypted File Pattern : .lock
- Malicious File Creation Location : C:\ProgramData\win.exe
- Payment Instruction File : ReadMe 0.txt ~ ReadMe 19.txt
- Major Characteristics :
- Offline Encryption
- Python-based Ransomware
List