- Distribution Method : Unknown
- MD5 : 53067d30c68552f70437325b89896ec2
- Major Detection Name : Ransom:MSIL/Ryzerlo.A (Microsoft), Ransom.HiddenTear!g1 (Norton)
- Encrypted File Pattern : .locked
- Payment Instruction File : Readme.txt
- Major Characteristics :
- Offline Encryption
- Hidden-Tear Open Source based Ransomware
- Developed by a Korean
- Disable and Blocks Task Manager (DisableTaskMgr)
List