Ekati ransomware encrypts user data using AES, and then displays a message that contains a link to start decryption. Ransomware execuatble name is Ekati and hence the name. Reverse malware analysis reveals that it is version is 2.0.0.0 and author name specified as Lee Wei. It does not append any extension to encrypted files. Below is the ransom note.
Ekati Ransomware Signatures
Family: Trojan:Win32/Occamy.C
MD5: 6a2e9f2a8858ad64aeb84b533fea78d0
SHA256: b933cb32689517aac6e459d33e9d8c7c8f31f0710008bfa09d9e91c2526826ef
Ekati Ransomware Download