WannaRen Returns as Life Ransomware, Targets India Indicators of Compromise ------------------------------------------------------------------------------------------------------------------- Hashes Detection Description 40c0d2006ca35701294a9450cb8d44b0bf7f0e4363641bb890a84e5d89094183 Backdoor.PS1.ASYNCRAT.YXCJFZ Enabler e4e26d9012169845d159d28ed9316a6f848ad5d7dcada9433172e23b7137d8ca Trojan.BAT.WANNAREN.YPCJK Sap.bat - loader CMD file e126e365d0c0d438c9eff87e84f4c4955a103097110c4bbb8f4ace4fec1772cb Ransom.Win32.WANNAREN.YPCJK trojanized wwlib.dll ransomware recrypter and loader 5bebcbd495ecc04e61f9f8c71872987ecb3f80b8bbaca7b1da78ad1daa555d1b Ransom.Win32.WANNAREN.YPCJM.enc sc.dat 77cd7da20d4d54b515a56ac90e2087d78668469c3ef9f87dde61717bae051978 Ransom.Win32.WANNAREN.YPCJL.enc config.bin -encrypted ransomware ddeaa1f283e355000e9f3183f571eda5039b5381010e22f9d206de5b51f4db10 Ransom.Win32.WANNAREN.YPCJKT Trojanized dbgeng.dll ransomware decrypter and loader 94dd8a483b784ac0014ce7aa2ac45178ab59fe5b Ransom.Win32.WANNAREN.YPCJKT C:\Windows\Installer\4ed97203.msi - MSI package