- Distribution Method : Unknown
- MD5 : df6021830a9a8b2cb901602ad6ae24ce
- Major Detection Name : Ransom:MSIL/Ryzerlo.A (Microsoft), Ransom.HiddenTear!g1 (Norton)
- Encrypted File Pattern : .<6-Digit Random Extension>
- Payment Instruction File : READ_IT.html
- Major Characteristics :
- Offline Encryption
- SHIVA Open Source based Ransomware
- Encrypt target files with 6 alphanumeric extensions
List