- Troldesh Ransomware [.xtbl]
- Crysis Ransomware [.CrySiS]
- Cryptxxx Ransomware [.crypt]
- Ninja Ransomware [@aol.com$.777]
- Apocalypse Ransomware [.encrypted]
- Nemucod Ransomware [.crypted]
- ODC Ransomware [.odcodc]
- LeChiffre Ransomware [.LeChiffre]
- Globe1 Ransomware [.hnyear]
- Globe2 Ransomware [.blt]
- Globe3 Ransomware [.decrypt2017]
- DeriaLock Ransomware [.deria]
- Opentoyou Ransomware [.-opentoyou@india.com]
- Globe3 Ransomware [.globe & .happydayzz]
- Troldesh Ransomware [.dharma]
- Troldesh Ransomware [.wallet]
- Troldesh Ransomware [.onion]
- Satan DBGer Ransomware [.dbger]
- STOP Djvu Ransomware
[.shadow/.promok/.fordan/.codnat/.forasom/.dotmap/.ferosas/.rectot/.skymap/.rezuc/.mogera/.djvu/.djvuq/.djvur/.djvus/.djvut/.djvuu/.pdff/.tfude/.tfudeq/.tro/.udjvu/.uudjvu/.tro/.udjvu/.uudjvu/.tfudet/.adobe/.adobee/.blower/.promos/.promok/.promoz/.promock/.promorad/.promorad2/.kroput/.kroput1/.charck/.kropun/.doples/.luces/.luceq/.chech/.pulsar1/.proden/.drume/.tronas/.trosak/.grovas/.grovat/.raldug/.roland/.etols/.guvara/.norvas/.moresa/.verasto/.hrosas/.kiratos/.todarius/.roldat/.dutan/.sarut/.pidon/.poret/.davda/.lanset/.stone/.berost/.heroset/.gerosan/.boston/.muslat/.vesad/.neras/.horon/.dalle/.redmat/.radman/.lotep/.truke/.nusar/.besub/.litar/.lokas/.cezor/.hofos/.godes/.budak/.heran/.berosuce/.gusau/.madek/.Dodoc/.lapoi/.tocue/.todar/.bopador/.novasof/.ndarod/.access/.format/.nelasod/.mogranos/.lotej/.prandel/.zatrov/.masok/.brusaf/.londec]
GandCrab Ransomware [Random Extension : Need ransom note for decryption]
- CryptXXX V4, V5 {MD5 Hash}.5 hexadecimal characters
- TeslaCrypt V1 {original file name}.ECC
- TeslaCrypt V2 {original file name}.VVV, CCC, ZZZ, AAA, ABC, XYZ
- TeslaCrypt V3 {original file name}.XXX or TTT or MP3 or MICRO
- TeslaCrypt V4 File name and extension are unchanged
- SNSLocker {Original file name}.RSNSLocked
- AutoLocky {Original file name}.locky
- BadBlock {Original file name}
- 777 {Original file name}.777
- XORIST {Original file name}.xorist or random extension
- XORBAT {Original file name}.crypted
- CERBER V1 {10 random characters}.cerber
- Stampado {Original file name}.locked
- Nemucod {Original file name}.crypted
- Chimera {Original file name}.crypt
- LECHIFFRE {Original file name}.LeChiffre
- MirCop Lock.{Original file name}
- Jigsaw {Original file name}.random extension
- Globe/Purge V1: {Original file name}.purge
- V2: {Original file name}.{email address + random characters}
- V3: Extension not fixed or file name encrypted
- DXXD V1: {Original file name}.{Original extension}dxxd
- Teamxrat/Xpan V2: {Original filename}.__xratteamLucked
- Crysis .{id}.{email address}.xtbl, .{id}.{email address}.crypt, .{id}.{email addres}.dharma, .{id}.{email address}.wallet
- TeleCrypt {Original file name}
- DemoTool .demoadc
- WannaCry (WCRY) {Original file name}.WNCRY, {Original file name}.WCRY
- Petya N/A
Decrypts files affected by Rakhni, Agent.iih, Aura, Autoit, Pletor, Rotor, Lamer, Cryptokluchen, Lortok, Democry, Bitman
(TeslaCrypt) version 3 and 4, Chimera, Crysis (versions 2 and 3), Jaff, Dharma, new versions of Cryakl ransomware, Yatron, FortuneCrypt.
How-to guide
Decrypts files affected by Rannoh, AutoIt, Fury, Cryakl, Crybola, CryptXXX (versions 1, 2 and 3), Polyglot aka Marsjoke.
- Xorist Decryptor
- Wildfire Decryptor
- CoinVault Decryptor
- Shade Decryptor
- Rannoh Decryptor
- Rakhni Decryptor
- AES_NI
- Alcatraz Locker
- Apocalypse
- BadBlock
- Bart
- BigBobRoss
- BTCWare
- Crypt888
- CryptoMix (Offline)
- CrySiS
- EncrypTile
- FindZip
- GandCrab
- Globe
- HiddenTear
- Jigsaw
- LambdaLocker
- Legion
- NoobCrypt
- Stampado
- SZFLocker
- TeslaCrypt
- avg_decryptor_Apocalypse.exe
- avg_decryptor_ApocalypseVM.exe
- avg_decryptor_BadBlock32.exe
- avg_decryptor_BadBlock64.exe
- avg_decryptor_Crypt888.exe
- avg_decryptor_Legion.exe
- avg_decryptor_SzfLocker.exe
- avg_decryptor_TeslaCrypt3.exe
- 360.Ransomware.Decryption.Tool.1.0.0.1271.rar
- quick heal ransomware removal tool
- BarRaxDecryptor.zip
- CoinVaultDecryptor.zip
- InsaneCryptDecrypter.zip
- Mira Ransomware Decryptor.zip
- rannohdecryptor.zip
- RecoverPopCorn.zip
- ShadeDecryptor.zip
- Trend Micro Ransomware Decryptor_V1.0.1.zip
- decrypt_Amnesia.exe
- decrypt_Amnesia2.exe
- decrypt_Avest.exe
- decrypt_ChernoLocker.exe
- decrypt_Cry9.exe
- decrypt_Cry128.exe
- decrypt_CryptON.exe
- decrypt_Damage.exe
- decrypt_FenixLocker.exe
- decrypt_GalactiCrypter.exe
- decrypt_GetCrypt.exe
- decrypt_Globe.exe
- decrypt_Globe2.exe
- decrypt_Globe3.exe
- decrypt_GlobeImposter.exe
- decrypt_Gomasom.exe
- decrypt_HildaCrypt.exe
- decrypt_HKCrypt.exe
- decrypt_Ims00rry.exe
- decrypt_JSWorm2.exe
- decrypt_JSWorm4.exe
- decrypt_LooCipher.exe
- decrypt_Marlboro.exe
- decrypt_MegaLocker.exe
- decrypt_MRCR.exe
- decrypt_Muhstik.exe
- decrypt_NemucodAES.exe
- decrypt_NMoreira.exe
- decrypt_OzozaLocker.exe
- decrypt_Paradise.exe
- decrypt_PewCrypt.exe
- decrypt_Philadelphia.exe
- decrypt_Planetary.exe
- decrypt_STOPDjvu.exe
- decrypt_STOPPuma.exe
- decrypt_Syrk.exe
- decrypt_TurkStatik.exe
- decrypt_WannaCryFake.exe
- decrypt_ZeroFucks.exe
- decrypt_ZQ.exe
- esettrustezebadecoder.exe
- xoristdecryptor.exe
- JPS_release.zip
- RakhniDecryptor.zip
- RansomwareFileDecryptor 1.0.1668 MUI.zip
- WildfireDecryptor.zip
- avast_decryptor_alcatrazlocker.exe
- avast_decryptor_bart.exe
- avast_decryptor_bigbobross.exe
- avast_decryptor_btcware.exe
- avast_decryptor_crypt888.exe
- avast_decryptor_encryptile.exe
- avast_decryptor_hiddentear.exe
- avast_decryptor_lambdalocker.exe
- avast_decryptor_noobcrypt.exe
- BDAnnabelleDecryptTool.exe
- BDGandCrabDecryptTool.exe
- cryptomix_decryptor.exe
- mole_decryptor.exe
- NemtyDecryptor.exe
No comments:
Post a Comment