This ransomware targets these file formats.
.pdf, .doc, .jpg, .txt, .pages, .pem, .cer, .crt, .php, .py, .h, .m, .hpp, .cpp, .cs, .pl, .p, .p3, .html, .webarchive, .zip, .xsl, .xslx, .docx, .ppt, .pptx, .keynote, .js, .sqlite3, .wallet, .dat
Source:bleepingcomputer.com
We can see that .wallet has also been targeted, it clearly means that crypto users are also targeted with this ransomware. However, before installing any software, it is better to scan on
virustotal