ID Ransomware

Upload a ransom note and/or sample encrypted file to identify the ransomware that has encrypted your data.

Knowing is half the battle!
GI Joe

2 Results


This ransomware has no known way of decrypting data at this time.

It is recommended to backup your encrypted files, and hope for a solution in the future.

Identified by

  • ransomnote_filename: HOWTODECRYPTFILES.html
  • sample_bytes: [0xD002 - 0xD025] 0x00000000000000000000000000000000000000000000000000000000000000BB2296E7

Click here for more information about Cry36

Would you like to be notified if there is any development regarding this ransomware? Click here.


This ransomware is decryptable!

Identified by

  • sample_extension: .damage

Click here for more information about Damage

