Windows_Ransomware_Generic_99f5a632
Description
Windows.Ransomware.Generic
Query · yara
strings:
$a1 = "stephanie.jones2024@protonmail.com"
$a2 = "_/C_/projects/403forBiden/wHiteHousE.init" ascii fullword
$a3 = "All your files, documents, photoes, videos, databases etc. have been successfully encrypted" ascii fullword
$a4 = "<p>Do not try to decrypt then by yourself - it's impossible" ascii fullword
condition:
all of them