ID Ransomware

Upload a ransom note and/or sample encrypted file to identify the ransomware that has encrypted your data.

Knowing is half the battle!
GI Joe

2 Results

CryLocker

This ransomware is still under analysis.

Please refer to the appropriate topic for more information. Samples of encrypted files and suspicious files may be needed for continued investigation.

Identified by

  • sample_extension: .cry

Click here for more information about CryLocker


Would you like to be notified if there is any development regarding this ransomware? Click here.

GlobeImposter 2.0

This ransomware has no known way of decrypting data at this time.

It is recommended to backup your encrypted files, and hope for a solution in the future.

Identified by

  • custom_rule: victim ID in encrypted file

Click here for more information about GlobeImposter 2.0


Would you like to be notified if there is any development regarding this ransomware? Click here.

Ransomware Got Past Your Antivirus?

Emsisoft Anti-Malware * This is an affiliate link, and I receive commission for purchases made. I do honestly recommend Emsisoft and their products even without this affiliation.