- Distribution Method : Unknown
 
 - MD5 : 7dd53c3f7be74c404cceb04c68c2ad30
 
 - Major Detection Name : Trojan/Win32.JigsawLocker.C2247367 (AhnLab V3), MSIL:JigSaw-A [Trj] (Avast)
 
 - Encrypted File Pattern : .game
 
 - Malicious File Creation Location :
 - C:\Users\%UserName%\AppData\Local\Drpbx
 - C:\Users\%UserName%\AppData\Local\Drpbx\drpbx.exe
 - C:\Users\%UserName%\AppData\Roaming\Frfx
 - C:\Users\%UserName%\AppData\Roaming\Frfx\firefox.exe
 - C:\Users\%UserName%\AppData\Roaming\System32Work 
 - Major Characteristics :
 - Offline Encryption
 - Ramsey Ransomware series
 - Create a fake ".NET Framework Initialization Error" message
 - Automatically delete encrypted files every hour 
 
					リスト