- Distribution Method : Unknown
- MD5 : 1f800586d1ab2d43f069fc6a79882b71
- Major Detection Name : Trojan.Ransom.GlobeImposter (ALYac), Trojan:Win32/Bluteal!rfn (Microsoft)
- Encrypted File Pattern : ..rtf
- Malicious File Creation Location : C:\Users\%UserName%\AppData\Local\<Random>.exe
- Payment Instruction File : READ__ME.html
- Major Characteristics :
- Offline Encryption
- Fake Globe / PSCrypt Ransomware series
List