- Distribution Method : Unknown
- MD5 : e9c903b315c4ddf79f178c88a1b9e500
- Major Detection Name : Ransom:Win32/Genasom (Microsoft), Ransom_BLACKOUT.B (Trend Micro)
- Encrypted File Pattern : <Random Filename>
- Payment Instruction File : README_<Number>_<Number>.txt
- Major Characteristics :
- Offline Encryption
- Disable system restore (vssadmin delete shadows /all /quiet)
List