- Distribution Method : Unknown
- MD5 : 912a11ccbee856ec07fe9a37bf41200c
- Major Detection Name : Trojan.Ransom.HiddenTear (ALYac), Ransom:MSIL/Ryzerlo.A (Microsoft)
- Encrypted File Pattern : .RansomUserLocker
- Payment Instruction File : READ_ME.txt
- Major Characteristics :
- Offline Encryption
- Hidden-Tear Open Source based Ransomware
- Developed by a Korean
- Disable and Blocks Task Manager (DisableTaskmgr)
List