- Distribution Method : Unknown
- MD5 : b4dcb1a5221ef66950d0f5775db75b88
- Major Detection Name : Ransom:Win32/Genasom (Microsoft), Ransom_CRYPTCONSOLE.E (Trend Micro)
- Encrypted File Pattern : lacky@india.com_(Random)
- Malicious File Creation Location: : C:\Users\%UserName%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HOW DECRIPT FILES.hta
- Payment Instruction File : HOW DECRIPT FILES.hta
- Major Characteristics : 오프라인 암호화(Offline Encryption), Globe Ransomware 모방, 암호화 대상 폴더에 존재하는 exe 파일 암호화
목록