
ID Ransomware
Upload a ransom note and/or sample encrypted file to identify the ransomware that has encrypted your data.
Knowing is half the battle!
5 Results
GlobeImposter 2.0
This ransomware has no known way of decrypting data at this time.
It is recommended to backup your encrypted files, and hope for a solution in the future.
Identified by
- ransomnote_filename: how_to_back_files.html
- custom_rule: victim ID format
Click here for more information about GlobeImposter 2.0
Would you like to be notified if there is any development regarding this ransomware? Click here.
GlobeImposter
This ransomware is decryptable!
Identified by
- ransomnote_filename: how_to_back_files.html
Click here for more information about GlobeImposter
CryptXXX
This ransomware is decryptable!
Identified by
- sample_extension: .crypt
Click here for more information about CryptXXX
CryptXXX 2.0
This ransomware is decryptable!
Identified by
- sample_extension: .crypt
Click here for more information about CryptXXX 2.0
CryptXXX 3.0
This ransomware may be decryptable under certain circumstances.
Please refer to the appropriate guide for more information.
Identified by
- sample_extension: .crypt