Posts

Virus .shit files: Shit ransomware (RSA-2048/AES-128 encrypted)

Virus .shit files: Shit ransomware (RSA-2048/AES-128 encrypted)

New version of the Locky ransomware encrypts files, appends them with the .shit extension, and creates _WHAT_is.html as well as _WHAT_is.bmp ransom notes. Locky is a generic name of a ransomware family that appeared in early 2016 and has grown into one of the top global security threats ever since. There is no room for […]

DXXD ransomware: how to decrypt .dxxd files virus

DXXD ransomware: how to decrypt .dxxd files virus

The ransomware to be dissected in this post encrypts its victims’ files using AES-256 algorithm and appends the dxxd string to the original file extensions. What is DXXD ransomware The DXXD crypto ransomware malady is notoriously intricate. Aside from the customary tactics leveraged by most online extortionists, the individuals running said campaign use more social […]

Decrypt .dot files: how to recover from .dot extension ransomware

Decrypt .dot files: how to recover from .dot extension ransomware

The post is based on a comprehensive research of the .dot file extension virus and provides viable methods to restore .dot entries encrypted by the ransomware. There are several unique properties that enable end users and researchers to identify a piece of ransomware they are confronted with. The ones that lay on the surface include […]

Cerber Decryptor: how to remove Readme.hta ransomware

Cerber Decryptor: how to remove Readme.hta ransomware

This tutorial covers all the changes that the Cerber ransomware underwent as a result of the latest update and provides applicable recovery methods. It looks like the Cerber ransomware has switched from using the .cerber3 extension to a random one. This is one of the several modifications made to this infection in the course of […]

Odin virus removal: how to decrypt .odin extension files

Odin virus removal: how to decrypt .odin extension files

The guide below provides a comprehensive analysis of the .odin ransomware virus and lists viable methods to restore files encrypted by this new Locky version. There is a new variant of the notoriously prolific ransomware called Locky in the wild. The latest spinoff appends the .odin extension to encrypted files instead of the previously used […]

JohnyCryptor ransomware: decrypt .johnycryptor@hackermail.com.xtbl virus files

JohnyCryptor ransomware: decrypt .johnycryptor@hackermail.com.xtbl virus files

Learn how to act in case of the JohnyCryptor ransomware attack and get around the cipher to restore .johnycryptor@hackermail.com.xtbl (.johnycryptor@aol.com.xtbl) files. The ransomware family known as Troldesh, or Shade, is amongst the most prolific ones to date in terms of the different spinoffs circulating on the open Internet. The sample that appends a victim’s files […]

Remove startgo123 virus – startgo123.com search index removal

Remove startgo123 virus – startgo123.com search index removal

Startgo123 is a potentially unwanted app that causes browsing issues, so it should be removed from an infected PC by means of a specially crafted procedure. Online criminals’ disrespectful attitude toward end users’ Internet preferences is clearly objectified through browser hijackers like startgo123. The adverse effect from this offending applet is twofold. It replaces DNS […]

Decrypt .cry files virus and remove CryLocker ransomware

Decrypt .cry files virus and remove CryLocker ransomware

The CryLocker ransomware, which appends .cry extension to encrypted files, impersonates an inexistent government organization and demands $625 for recovery. The scourge of crypto malware is one of the few computer plagues that AV labs and the community of security experts have virtually no viable response for, although these infections have been around for years. […]

Decrypt and remove CrypMIC/CryptMIC ransomware

Decrypt and remove CrypMIC/CryptMIC ransomware

Find out how to get around the data encryption by CrypMIC / CryptMIC ransomware, learn what other infection it resembles and get the attack workflow details. When the CrypMIC ransomware campaign broke out in late July 2016, it instantly drew the attention of security experts. Also dubbed CryptMIC, this computer threat bears a resemblance to […]

Zeus virus alert removal: remove “Windows detected ZEUS virus” popup

Zeus virus alert removal: remove “Windows detected ZEUS virus” popup

Be updated on the latest social engineering fraud affecting web browsers and get rid of rogue popups claiming that Windows detected Zeus virus. Tech support scams are steadily becoming the computer security issue du jour. The threat actors in charge of these stratagems leverage malicious software to reroute the targeted users’ Internet traffic, and then […]

Page 5 of 11« First...«34567»10...Last »