Jump to content

.MEDS crypto Ransomeware [Closed]

Go to solution Solved by Guest #37,

Recommended Posts

.Meds ransomeware was infected a month back ..!! and is there any stop decryptor or any other methods to recover the file .. i have tried with many methods..!! and i have reinstalled windows after infection.. but still other drives files holds strong encryption with .MEDS extension ..!! Badly need help.

Hoping for anyone to come forward

thank you

Link to comment
Share on other sites

  • Solution


In terms of recovering/decrypting the files, this type of virus usually encrypts the files with very high bit keys, and in very rare cases a decryptor can be created, usually due to failure or careless programming of the malware.
But in the vast majority it is not possible, at least at the moment.

You can check if the ransomware that attacked you currently has the possibility to be decrypted here: https://id-ransomware.malwarehunterteam.com/index.php?lang=en

You can find information that can help you here: https://www.nomoreransom.org/en/index.html

Also try the utilities offered by Kaspersky:



If you are a Kaspersky user with a valid license, open a support ticket in my Kaspersky account, send them a sample of an encrypted file, and if you have the same file unencrypted.

I think at the moment: There is no decryption tool available for the Meds ransomware variant.


Link to comment
Share on other sites

Hello  @Ravikiran,


Additional to post by  @Caos 

It will help us if you tell us the “methods” you’ve tried? (that way we will not repeat information).

(If you have licensed Kaspersky software), log the issue with Kaspersky Technical Support

Sometimes, members of Kaspersky Club, have solutions, log the issue on that site. 

Please post back?

Thank you. 

 Reference Libraries:

How to remove Trojan-Ransom ransomware

How to protect your PC against file-encrypting ransomware

Link to comment
Share on other sites

This topic is now closed to further replies.

  • Create New...