- Distribution Method : Unknown
- MD5 : 23082d80cc9cee0846cd81ec448e1981
- Major Detection Name : Trojan.Ransom.CryptoWire (ALYac), Ransom:Win32/Genasom (Microsoft)
- Encrypted File Pattern : <Original Filename>.encrypted.<Original Extension>
- Malicious File Creation Location :
- C:\Program Files (x86)\Common Files\OwlRansomware.exe
- C:\Program Files (x86)\Common Files\log.txt
- C:\Users\%UserName%\AppData\Local\Temp\OwlRansomware.exe
- C:\Windows\System32\Tasks\(10자리 숫자)
- Major Characteristics : 오프라인 암호화(Offline Encryption), CryptoWire Ransomware 계열, AutoIt 스크립트로 제작된 오픈 소스 기반 Ransomware, 터키어(Turkish) 사용자 표적
List