- Distribution Method : Unknown
- MD5 : 263e27da5b03ee3081f0a405583696f3
- Major Detection Name : Generic.MSIL.Ransomware.Jigsaw.4084436D (BitDefender), Ransom:MSIL/JigsawLocker.B (Microsoft)
- Encrypted File Pattern : .beep
- Malicious File Creation Location :
- C:\Users\%UserName%\AppData\Local\Newsoft
- C:\Users\%UserName%\AppData\Local\Newsoft\abookupd.exe
- C:\Users\%UserName%\AppData\Roaming\AddressBook
- C:\Users\%UserName%\AppData\Roaming\AddressBook\abook.exe
- Major Characteristics :
- Offline Encryption
- Automatically delete encrypted files every hour
List