- Distribution Method : Unknown
- MD5 : f597e89ea210b3009ccd5193142e2111
- Major Detection Name : Ransomware/Win.Rincrypt.R644432 (AhnLab V3), Generic.Ransom.PyCL.A.C5D378FE (BitDefender)
- Encrypted File Pattern : .rincrypt
- Malicious File Creation Location : C:\Users\%UserName%\Desktop\READ THIS.txt
- Message File : READ THIS.txt
- Major Characteristics :
- Offline Encryption
- Python-based Ransomware
List