CryFile Ransomware - IOC


1) Ransomware Name - CryFile

2) Encrypted Extensions -
.criptiko
.criptoko
.criptokod
.cripttt
.aga

3) Ransom Note File -
SHTODELATVAM.txt
Instructionaga.txt

4) Encrypted Algorithm - Moves bytes

5) Decryptor Link - https://www.google.com/url?q=http://virusinfo.info/showthread.php?t%3D185396&sa=D&ust=1499261274476000&usg=AFQjCNEaEgilvxeKcjfs3J6JDQOn1VQ0MQ


6) Screenshots -

7) Indicators of Compromise -
dsuoufygfdt@ro.ru
odododo@ro.ru


8) File Details - NA

Comments