- Distribution Method : Unknown
- MD5 : cde0b6c4d6d3b830366297692169d63b
- Major Detection Name : Generic.Ransom.GlobeImposter.A9D5D9AC (BitDefender), Ransom_FAKEGLOBE.ASUUK (Trend Micro)
- Encrypted File Pattern : .crypted_uridzu@aaathats3as_com
- Payment Instruction File : how_to_back_files.html
- Major Characteristics :
- Offline Encryption
- Fake Globe / PSCrypt Ransomware series
- Disable system restore (vssadmin.exe Delete Shadows /All /Quiet)
List