- Distribution Method : Unknown
- MD5 : b411c591ce52767541990585dfc460bc
- Major Detection Name : Ransom:Win32/FileCryptor (Microsoft), Ransom_QRLOCKER.A (Trend Micro)
- Encrypted File Pattern : No Change
- Major Characteristics :
- Offline Encryption
- The Chinese users targeted
- Create a Lock Screen message with QR Code
List