- Distribution Method : Unknown
- MD5 : 5ee28035c56c048580c64b67ec4f2124
- Major Detection Name : DDoS:Win32/Nitol.B (Microsoft), Trojan.Cryptolocker.AL (Norton)
- Encrypted File Pattern : .id-<Random>_email1_support@juicylemon.biz_email2_provectus@protonmail.com_BitMessage_BM-NBRCUPTenKgYbLVCAfeVUHVsHFK6Ue2F
- Payment Instruction File : I0ZD0N3NPVY3LAPJT.txt / RESTORE FILES.txt
- Major Characteristics : Offline Encryption
List