If you use the German language on your operating system, you are the prime target of German Jigsaw .spaß malware, a malicious file-encrypting infection that was created to make you pay a huge ransom in return for a file decryptor. The ransom is $500, but you are requested to pay it in Bitcoin, which is a highly popular crypto-currency. At the time of research, $500 (if we assume that $ stands for USD) converted to around 0.12 BTC. Of course, you should check the conversion rates yourself because they shift often. Whether you think this ransom is big or small, paying it is a bad idea. If you make the payment to the 1CpnhbLaqLj5NgXwYVQ5aXmrMzvhzjehmm Bitcoin Wallet, your money will be gone forever. Recovering it will not be possible. Unfortunately, that is why cyber criminals are unlikely to give you a decryption key. They simply do not need to, and they cannot be forced to do it. Of course, the choice is yours, and if you decide to take the risk, you are free to do so. If a miracle happens, and your files are restored, do not forget that you must delete German Jigsaw .spaß malware ASAP. Different removal methods are discussed in this post. Read more »
Threats - Page 65 category archyve:
CtrlAlt Ransomware
CtrlAlt Ransomware is a malicious tool used for money extortion. It locks files located on the infected device with a secure encryption algorithm and displays a ransom note suggesting the user can get his files back only after paying a ransom. Needless to say, we would not recommend trusting the cybercriminals behind the malware. There is a possibility they may not bother sending the decryption tools you would pay for or they could start asking for more money. Therefore, if you do not want to pay for something you may never receive we recommend erasing CtrlAlt Ransomware. If you have already decided you want to delete it, you should have a look at the removal instructions available at the end of the article. On the other hand, if you need more details before deciding what to do, you could read our report first. Read more »
Darknes@420blaze.it Ransomware
Darknes@420blaze.it Ransomware is a new variant of Dharma Ransomware, and so it looks very much alike. Same as before it encrypts user’s personal files and then shows a pop-up message with a ransom note. The shorter version of it can be found on a text document that should be placed on the user’s Desktop. If your files have the .id-{random characters}.[Darknes@420blaze.it].waifu extension and you see the described ransom notes, we invite you to read our full article and learn more about the malicious application that might have infected your system. In the text, we will discuss details like the threat’s distribution channels, ways to avoid Darknes@420blaze.it Ransomware, possible removal methods, and so on. Also, at the end of the text, you can find our deletion steps that will explain how to erase the malware manually. Read more »
btc@fros.cc Ransomware
If you are unlucky enough to face btc@fros.cc Ransomware, you need to take action right away. If you are able to uncover the disguise of this malicious threat quickly, you just might be able to delete the launcher file before the infection is fully executed. The threat is likely to be introduced to you with the help of software bundles or spam emails, and so you might have a chance to eliminate the file. If you do not realize that a seemingly harmless file you downloaded and opened belongs to malware, the malicious infection can move on to encrypt your personal files. Once they are encrypted, you cannot rename them or change them in any way to make them readable again. The decryptor that the creator of the ransomware should produce, could not have been obtained, and legitimate file decryptors are powerless against the cryptor of this malware. So, if your files were encrypted, you are in a very sticky situation. All in all, regardless of the outcome, it is a must to remove btc@fros.cc Ransomware, and that is what we discuss in this report. Read more »