- Distribution Method : Unknown
- MD5 : bd5b6786a6ad8463f09771eacdd3f590
- Major Detection Name : Python/Filecoder.CA (ESET), Trojan-Ransom.Win32.Encoder.bfh (Kaspersky)
- Encrypted File Pattern : <Original Filename>.<Original Extension>
- Payment Instruction File : YOUR_FILES_ARE_ENCRYPTED
- Major Characteristics :
- Offline Encryption
- Python-based Ransomware
- Internal SMB IP scan (445 port)
List