Jump to content
SoloNo1

Remove Gandcrab 5,2 & Decrypt tools from Bitdefender = TRUE

Recommended Posts

Hi,

Hope you guys can answers my questions. It´s hard to trust a search from google with all spam with Spyhunter etc. 

I got infected with GandCrab 5.2 and all harddrives 14tb total has been infected. 

Is it possible to use Malwarebytes to remove Gandcrab 100% from my computer and then use the decryption tools from Bitdefender in safemode with ethernet support in Windows 10 "https://www.nomoreransom.org/en/decryption-tools.html"

I will backup the note with the cryptkey, is it possible its different notes for each drive?

 

Hope you can help me.

 

Greetings Tommie Johansson.

 

 

 

Share this post


Link to post
Share on other sites

Hello @SoloNo1    :welcome:   Hello Tommie.

You mention that the pc is infected by Grandcrab.  

There are a few things I must mention.  Malwarebytes for Windows does not and cannot decrypt any encrypted files.

Malwarebytes has no decrypter.

Most all ransomwares delete themselves after doing their deed.  So the ransomware is not expected to be present.  Just the files it changed & the ransom notes.

 

first, I would suggest  ( if at all possible) to save copies of the encrypted somewhere for safekeeping.

 

IF you are planning to use some decryption tool, it is best to look at & study the how-to-directions provided by that entity.

Bitdefender tool has a how-to-guide   https://www.nomoreransom.org/uploads/GANDCRAB RANSOMWARE DECRYPTION TOOL (002).pdf

 

 

Bleepingcomputer is a trusted central hub for information about ransomwares & potential decrypter tools

See https://www.bleepingcomputer.com/news/security/release-of-gandcrab-52-decryptor-ends-a-bad-ransomware-story/

https://www.bleepingcomputer.com/news/security/gandcrab-decrypter-available-for-v51-new-52-variant-already-out/

https://www.bleepingcomputer.com/forums/t/693056/gandcrab-52/

 

 

Share this post


Link to post
Share on other sites

Due to the lack of feedback, this topic is closed to prevent others from posting here.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this topic. Other members who need assistance please start your own topic in a new thread.

Thanks

 

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.