- Distribution Method : Unknown
- MD5 : 6434d3600043c5b22d64837338dcae25
- Major Detection Name : Ransom.GlobeImposter (Malwarebytes), Ransom:Win32/Maoloa.KA (Microsoft)
- Encrypted File Pattern : .Pig4444
- Payment Instruction File : HOW TO BACK YOUR FILES.txt
- Major Characteristics :
- Offline Encryption
- Fake Globe / PSCrypt Ransomware series
- Disable system restore (vssadmin delete shadows /all)
List