Ekati Ransomware Sample Download

Ekati ransomware encrypts user data using AES, and then displays a message that contains a link to start decryption. Ransomware execuatble name is Ekati and hence the name. Reverse malware analysis reveals that it is version is and author name specified as Lee Wei. It does not append any extension to encrypted files. Below is the ransom note. Ekati Ransom Note

Ekati Ransomware Signatures

Family: Trojan:Win32/Occamy.C
MD5: 6a2e9f2a8858ad64aeb84b533fea78d0
SHA256: b933cb32689517aac6e459d33e9d8c7c8f31f0710008bfa09d9e91c2526826ef

Ekati Ransomware Download

Download Ekati Ransomware Sample