LooCipher encrypts the victim’s files using AES-128 ECB, and adds the extension “.lcphr”.
No ransom note file is left, but the malware does leave a screen telling the victim to make a BitCoin payment and then use the same malware to decrypt their files once payment is complete.