
RTRUE Ransomware
We have examined RTRUE and found that it operates as ransomware. Once executed, it encrypts files, appends the ".RTRUE" extension to them, and drops a ransom note ("readme.txt"). An example of how files encrypted by RTRUE are renamed: "1.jpg" is changed to "1.jpg.RTRUE", "2.png" to "2.png.RTRUE",








