Home Malware Programs Ransomware DESKRYPTEDN81 Ransomware

DESKRYPTEDN81 Ransomware

Posted: August 6, 2015

Threat Metric

Ranking: 10,476
Threat Level: 8/10
Infected PCs: 2,426
First Seen: August 6, 2015
Last Seen: October 8, 2023
OS(es) Affected: Windows

The DESKRYPTEDN81 Ransomware is a file encryptor Trojan that makes files on your PC unusable to ransom them for money. Recent evidence suggests that the DESKRYPTEDN81 Ransomware campaigns are being targeted towards German and Russian PC owners, although the DESKRYPTEDN81 Ransomware's attacks may be equally effective against other systems, regardless of geography. Deleting the DESKRYPTEDN81 Ransomware with anti-malware products can be followed by using any of several data recovery techniques malware experts always advise for protecting your information from file encryptors.

Seeing Your System Files Consigned to a New Crypt

Ransomware campaigns frequently prefer delivering their ransom instructions in individual text files or, in the most visible cases, in hijacked desktop wallpapers. However, 2015 has brought malware experts examples of more than one file encrypting Trojan using a different channel for their ransom demands: the actual file names of the ransomed files. The DESKRYPTEDN81 Ransomware is another PC threat to use this technique.

This ransom delivery method has drawbacks, by requiring the victim to intuit that the attacked files can't be used until they pay a ransom. The precise payment method is specified with an e-mail address, currently, DESKRYPTEDN81@GMAIL.COM. All modified files have this address appended to their names, along with identification strings and other information primarily pertinent to the admins of this threat campaign.

The DESKRYPTEDN81 Ransomware uses a currently unknown algorithm to encrypt files on the compromised PC's hard drive, preventing them from being opened or read by other applications. Although this function is very standard for most file encryptors, the DESKRYPTEDN81 Ransomware differs in which files it selects for its attacks. Most file encryptors target personal files, such as pictures or work-based files such as Microsoft Office documents. However, malware experts have seen recent DESKRYPTEDN81 Ransomware attacks operating as significant outliers that target SQL database files and even components of the Windows operating system.

Decrypting Your Way out of the DESKRYPTEDN81 Ransomware

The lengthy file names changes made by the DESKRYPTEDN81 Ransomware should allow any PC users to notice the infection relatively quickly. Although some of the DESKRYPTEDN81 Ransomware infections also appear to include attacks against backup data, you may be able to access older, local backups that will allow you to recover any encrypted files for free. Other strategies malware experts can suggest for countering the DESKRYPTEDN81 Ransomware's attacks include saving your files online or saving them to separate, uninfected drives.

The DESKRYPTEDN81 Ransomware, which is identifiable by aliases including Dynamer, Symmi and Filecoder, is a high-level threat that poses an immediate security risk to any compromised PC. Whether the damage to your operating system from its payload is significant or minimal, malware analysts continue urging victims to avoid rewarding its creators for developing file encryptors. Instead of taking the risk of trying to purchase your files back, you should use anti-malware products for removing the DESKRYPTEDN81 Ransomware. If necessary, Windows may be reinstalled via the appropriate Microsoft resources.

Currently, no PC security company has developed decryption tools for the DESKRYPTEDN81 Ransomware specifically, although generic decryption utilities may offer equivalent services.

Loading...