- Distribution Method : Unknown
- MD5 : e58b77e4de54b09be77c852436a904b6
- Major Detection Name : Ransom.Medusa (Malwarebytes), Ransom:MSIL/W3CryptoLocker.SK!MTB (Microsoft)
- Encrypted File Pattern : .readme
- Payment Instruction File : Read_Me.txt
- Major Characteristics :
- Offline Encryption
- Recovery Partition (M:\) and EFI System Partition (N:\) drives are activate.
- Terminate of many processes except system processes.
List