- Distribution Method : Unknown
- MD5 : 898b9d28cfd2ab0e8de2d34c8273078b
- Major Detection Name : Generic.Ransom.Hiddentear.A.4270CEBB (BitDefender), Ransom.HiddenTear!g1 (Norton)
- Encrypted File Pattern : <Original Filename>.<Original Extension><6 Digits Random>.resurrection
- Malicious File Creation Location : C:\Users\%UserName%\Desktop\Recovery.key
- Payment Instruction File : Readme.html
- Major Characteristics :
- Offline Encryption
- Hidden-Tear Open Source based Ransomware
List