Jump to content

Help with decryting file attacked by ransomware [MOVED] [Solved][Closed]


Go to solution Solved by Guest #37,

Recommended Posts

Posted
Email address of the hacker email: europol.me@pm.me We did a scan of a lun created by a Netapp Storage with bitdefender which recognized three maleware
  1. Srvmain.exe
  2. Werfault.exe
  3. kProcessHacker.sys
and in our attempt to decrypt the affected files we have downloaded Rannoh. please how should we proceed with our decrypting effort: We have scanned a piece of the encrypted files with Rannoh but the software asked for the "Original file" We now want to present the whole lun, but we understand that the whole lun is affected by three malware. Please can you give information on how to proceed? Moderator: Moved to the correct forum.
Flood and Flood's wife
Posted
Hello Okayjosh, Welcome! Please advise:
  1. Operating system?
  2. Version?
  3. Build?
  1. Do you have Kaspersky software installed? IF "YES", please advise:
  2. Product name?
  3. Free or Licensed?
  4. Version?
  5. Patch(x)? x = letter
  1. Do you have any reports/logs - generated by the system or software, that shows the detection/alerts?
  2. IF "YES", please save the report as a txt file and upload using the upload icon in your reply post?
Please do NOT upload any contaminated files & or objects Please let us know? Thanks.
  • Solution
Posted
Hi, Please review: https://support.kaspersky.com/8547#block1 Utility tries to calculate decryption key automatically. If it is not possible You need to find original copy at least one of encrypted files. Regards
Guest
This topic is now closed to further replies.


×
×
  • Create New...