- Distribution Method : Unknown
- MD5 : 7076f9674bc42536d1e0e2ca80d1e4f6
- Major Detection Name : W32/Conti.F!tr.ransom (Fortinet), Ransom.Conti (Malwarebytes)
- Encrypted File Pattern : .UWTJF
- Payment Instruction File : R3ADM3.txt
- Major Characteristics :
- Offline Encryption
- Disable system restore (C:\Windows\System32\wbem\WMIC.exe shadowcopy where "ID='{GUID}'" delete)
List