- Distribution Method : Unknown
- MD5 : 4fce504440ba299c0ddef8bc1ed04b51
- Major Detection Name : Trojan.Ransom.HiddenTear (ALYac), Ransom:MSIL/Ryzerlo.A (Microsoft)
- Encrypted File Pattern : .fucked
- Payment Instruction File : El-Diablo_ReadMe.txt
- Major Characteristics :
- Offline Encryption
- Hidden-Tear Ransomware based Open Source
- Only encrypt .penis extension file that exists on the desktop
List