ID Ransomware

Upload a ransom note and/or sample encrypted file to identify the ransomware that has encrypted your data.

Knowing is half the battle!
GI Joe

1 Result

eCh0raix / QNAPCrypt

This ransomware may be decryptable under certain circumstances.

Please refer to the appropriate guide for more information.

Identified by

  • ransomnote_url: http://veqlxhq7ub5qze3qy56zx2cig2e6tzsgxdspkubwbayqije6oatma6id.onion/
  • sample_extension: .encrypt
  • custom_rule: Duplicated encrypted data

Click here for more information about eCh0raix / QNAPCrypt

Ransomware Got Past Your Antivirus?

Emsisoft Anti-Malware * This is an affiliate link, and I receive commission for purchases made. I do honestly recommend Emsisoft and their products even without this affiliation.