- Distribution Method : Unknown
- MD5 : 8243dc32479532fcb82669da4b81a9d1
- Major Detection Name : Ransom.MauriGo (Malwarebytes), Ransom.Win32.BADGOPHER.THCAEBA (Trend Micro)
- Encrypted File Pattern : <Original Filename>.<Original Extension> → <Base64>.NASAcry
- Malicious File Creation Location : C:\Users\%UserName%\Desktop\FILES_ENCRYPTED.html
- Payment Instruction File : READ_TO_DECRYPT.html
- Major Characteristics : Offline Encryption
List