
ID Ransomware
Upload a ransom note and/or sample encrypted file to identify the ransomware that has encrypted your data.
Knowing is half the battle!
1 Result
Dharma (.cezar Family)
This ransomware has no known way of decrypting data at this time.
It is recommended to backup your encrypted files, and hope for a solution in the future.
Identified by
- ransomnote_email: [email protected]
- sample_extension: .id-<id>.[<email>].2122
- sample_bytes: [0x48040 - 0x4804B] 0x00000000020000000CFE7A41
- custom_rule: Original filename "1cv7.exe" after metadata
Click here for more information about Dharma (.cezar Family)
Would you like to be notified if there is any development regarding this ransomware? Click here.