Videos

Check out our video library AppCheck defending against newest ransomware, automatic recovery and real-time backup.

RaruCrypt Ransomware (.rar)

  • Distribution Method : Unknown
 
  • MD5 : 576dd75718942a49f1ac141a9e31d927
 
  • Major Detection Name : Trojan.Ransom.RaRuCrypt (ALYac), Gen:Heur.Ransom.RarCrypt.1 (BitDefender)
 
  • Encrypted File Pattern : .rar
 
  • Malicious File Creation Location : C:\Users\%UserName%\AppData\Roaming\rar.exe
 
  • Payment Instruction File : README1.TXT ~ README10.TXT
 
  • Major Characteristics :
     - Offline Encryption
     - Password protected RAR compression
     - The English and Russian users targeted.

List

위로