ID Ransomware

Upload a ransom note and/or sample encrypted file to identify the ransomware that has encrypted your data.

Knowing is half the battle!
GI Joe

1 Result


This ransomware may be decryptable under certain circumstances.

Please refer to the appropriate guide for more information.

Identified by

  • ransomnote_filename: !DECRYPT_INSTRUCTION.TXT
  • ransomnote_url: http://qlcd3bgmyv4kvztb.onion/
  • sample_extension: .nampohyu

Click here for more information about MegaLocker

Ransomware Got Past Your Antivirus?

Emsisoft Anti-Malware * This is an affiliate link, and I receive commission for purchases made. I do honestly recommend Emsisoft and their products even without this affiliation.