- Distribution Method : Unknown
- MD5 : 76c5b877fb931ed728df30c002bf8823
- Major Detection Name : Ransomware/Win.POVLSOM.C5045128 (AhnLab V3), Ransom:MSIL/CryptoLocker.DF!MTB (Microsoft)
- Encrypted File Pattern : <Original Filename>.<Original Extension>
- Malicious File Creation Location : C:\Users\%UserName%\Desktop\sendme.eternityraas
- Major Characteristics : Offline Encryption
List