- Distribution Method : Unknown
- MD5 : 4e1c53e8c46a365a3d7ad8d80c2aab27
- Major Detection Name : Trj/CerberCrypto.A (Panda), Ransom_PURGE.F117EU (Trend Micro)
- Encrypted File Pattern : .[black.mirror@qq.com].oled
- Malicious File Creation Location : C:\Users\%UserName%\AppData\Roaming\1sv_host.exe
- Payment Instruction File : DECRYPTION.TXT
- Major Characteristics :
- Offline Encryption
- Ransomware based Delphi
List