The Indication of Compromise (IOC) for Reytson is a malware file with SHA-256 hash of
I got that information from:
That file would be detected as malware by an AMP file policy - not an IPS rule. So if you have AMP for Networks or AMP for Endpoints you would be protected.
I put the hash in my AMP console and confirmed that it has been identified by malware since 17 July based on multiple behavioral indicators from the Threatgrid sandbox.