- Distribution Method : Unknown
- MD5 : c850f942ccf6e45230169cc4bd9eb5c8
- Major Detection Name : Ransom.HiddenTear!g1 (Norton), Ransom_HiddenTearSUSY.A (Trend Micro)
- Encrypted File Pattern : .WINDOWS
- Payment Instruction File : READ_IT.txt
- Major Characteristics :
- Offline Encryption
- Hidden-Tear Open Source based Ransomware
- Disable Task Manager (Taskmgr / DisableTaskMgr)
List