- Distribution Method : Unknown
 
 - MD5 : e1a88ddb222b48f55f5be7eb9ea9164e
 
 - Major Detection Name : Generic.Ransom.Hiddentear.A.6280E9A4 (BitDefender), Ransom:MSIL/Ryzerlo.A (Microsoft)
 
 - Encrypted File Pattern : .Crypted
 
 - Malicious File Creation Location :
 - C:\%UserName%
 - C:\%UserName%\Systems
 - C:\%UserName%\Systems\local.exe
 - C:\%UserName%\Decrypter.exe
 - C:\Users\%UserName%\Desktop\Decrypter.exe 
 - Payment Instruction File : HOW TO DECRYPT FILES.txt
 
 - Major Characteristics :
 - Offline Encryption
 - AnonCrack / Balbaz / Brazilian / CryBrazil / Cryp70n1c Army / Curumim / CyberPolice / EyLamo / FuckUnicorn / Jhash / Magic / Marozka / MilkmanVictory / OpsVenezuela / Poop / Rogue / Skull HT / Technicy / ZorgoCry Ransomware series
 - Hidden-Tear Open Source based Ransomware
 - Changes desktop background (C:\%UserName%\ransom.jpg) 
 
					リスト