- Distribution Method : Unknown
- MD5 : bdaba38edf29e30fe82f0c2e46ceef07
- Major Detection Name : Ransom:Win32/FileCryptor (Microsoft), Ransom_LIGHTNING.A (Trend Micro)
- Encrypted File Pattern : .LIGHTNING
- Malicious File Creation Location : C:\Users\%UserName%\Desktop\LightningCrypt_UniqeID.txt
- Payment Instruction File : LightningCrypt_Recover_Instructions.png / LightningCrypt_Recover_Instructions.txt
- Major Characteristics : Changes desktop background (C:\Users\%UserName%\Desktop\LightningCrypt_Recover_Instructions.png)
List