FileLocker Ransomware - IOC


1) Ransomware Name - FileLocker

2) Encrypted Extensions - .ENCR

3) Ransom Note File - NA

4) Encrypted Algorithm - AES-256 and RSA-2048

5) Decryptor Link - NA

6) Screenshots -


7) Indicators of Compromise - babis@mfcr.cz


8) File Details -
MD5 05950b038b5781d940c939a3af3ecd32
SHA1 751f9aa46df83c5ce987528ddbfe10699fe84fd2
SHA256 f5bfa92c3c68779254f3efbe87f05b077d04d76273b54299fdcd204064752005
Ssdeep3072: LFSq2Rnsobb0 / UccpM0 + Kq22MkBzECcaCdUfHxaEyKOtE: hSv / bwv0222MqMaNx2KX
Authentihash  36f0da7de31b496eda1ebc77c752b18660282d94f225a9eaac57404bb962b8c4
Imphash  F34d5f2d4577ed6d9ceec516c1f5a744
The size of the file is 123.9 KB (126872 bytes)
Win32 EXE file type
DescriptionPE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono / .Net assembly

Comments