HydraCrypt Ransomware - IOC - File Details


1) Ransomware Name - HydraCrypt

2) Encrypted Extensions - .hydracrypt_ID_[8 случайных знаков ID].

3) Ransom Note File -
README_DECRYPT_HYRDA_ID_ [victim_id].txt.
README_DECRYPT_HYRDA_ID_[victim_id].jpg

4) Encrypted Algorithm - NA

5) Decryptor Link - https://www.google.com/url?q=https://decrypter.emsisoft.com/&sa=D&ust=1504791164935000&usg=AFQjCNHiHqfdvkoL82MnGQwdaSxHA2ovtw

6) Screenshot -

7) Indicators of Compromise -
xhelper@dr.com
ahelper@dr.com


8) File Details - NA

Comments