- Distribution Method : Unknown
- MD5 : 6e98d5dd95d00369316ba548e3c625b3
- Major Detection Name : Ransom.AvosLocker (Malwarebytes), Ransom:Win32/AvosLocker.PAC!MTB (Microsoft)
- Encrypted File Pattern : .avos2
- Payment Instruction File : GET_YOUR_FILES_BACK.txt
- Major Characteristics :
- Offline Encryption
- Changes desktop background (C:\Users\%UserName%\AppData\Local\Temp\<Number>.png)
List