- Distribution Method : Unknown
- MD5 : 859fe9dc1478333916c9a94253f93dd2
- Major Detection Name : Trojan-Ransom.MSIL.Tear.db (Kaspersky), Ransom_MISORRY.A (Trend Micro)
- Encrypted File Pattern : .imsorry
- Malicious File Creation Location : C:\Users\%UserName%\Desktop\ImSorry.exe
- Payment Instruction File : Read me for help thanks.txt
- Major Characteristics : Offline Encryption
List