Jump to content

Recommended Posts

This is a case of what is called cryptovirolgy and of the worst kind.  Actual personal data files being encrypted and then held for ransom by a malicious actor.

While a "virus" is possible with cryptovirolgy, more often than not the payload is that of a trojan and not a virus.

With the release of the Microsoft Crypto Application Programming Interface (aka; Crypto API) this concept was made much easier.

Decryption of data files is not an easy task.  Often a malware crypto analyst may work on a given problem for very long periods and not come up with a key for decryption.  Sometimes it is possible for a limited family of trojans but is short lived.  Often that work requires that particular trojan that was used to encrypt your data.

You need to understand that the expectation for a positive outcome is EXTREMELY low.  Even if you paid a security company it may be costly and still not have a positive outcome.

You should not even consider paying any ransom.  That can actually lead to you being the target of further malicious activity as you will branded a willing "mark".

System Restore only caches Executable files and OS constructs.  It does not work on data files.
 
While you may be able to remove the trojan, chances are extremely low that you can decrypt the data files.  You should consider them lost and restore your data from your last backup.

Link to post
Share on other sites

  • 3 months later...
  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.