- Distribution Method : Unknown
- MD5 : 173ab5a59490ea2f66fe37c5e20e05b8
- Major Detection Name : W32/Nemty.L!tr.ransom (Fortinet), Trojan:Win32/RansNoteDrop.BP (Microsoft)
- Encrypted File Pattern : .GANGBANG
- Payment Instruction File : GANGBANG-NOTE.txt
- Major Characteristics :
- Offline Encryption
- Nemty / Pluto Ransomware series
- Use a "MASK CONSTRUCTION LIMITED" Digital Signatures
List