- Distribution Method : Remote access through Remote Desktop Protocol(RDP) or Terminal Services
- MD5 : e8c2b4a8335c513a92388dcfe595f0e5
- Major Detection Name : Ransom:Win32/Ergop.B (Microsoft), Ransom_PSCRYPT.A (Trend Micro)
- Encrypted File Pattern : .pscrypt
- Payment Instruction File : Paxynok.html
- Major Characteristics :
- Offline Encryption
- GlobeImposter Ransomware series
- The Ukrainian users targeted
List