Sorry for jumping in on this thread, but myself and some AV Vendors have been looking for a sample of this ransomware.

Before deleting the file can you please submit a sample of the DLL infection to me so that we can analyze it?

The file I am looking for is:

C:\Windows\System32\fpfstb.dll

Simply go here and fill in the required fields and browse to the C:\Windows\System32\fpfstb.dll file on your desktop. Finally click on the Send File button.


Thanks in advance.