- Distribution Method : Unknown
- MD5 : b36e5c508efea796731d444c189b413c
- Major Detection Name : Win64.Trojan-Ransom.WhiteBlackCrypt.A (GData), Ransom:Win64/FileCoder!MSR (Microsoft)
- Encrypted File Pattern : .encrpt3d
- Malicious File Creation Location : C:\ProgramData\CheckServiceD.exe
- Major Characteristics : Offline Encryption
List