Home Malware Programs Ransomware '.crypted000007 File Extension' Ransomware

'.crypted000007 File Extension' Ransomware

Posted: October 30, 2018

The '.crypted000007 File Extension' Ransomware is a slightly modified variant of the Troldesh Ransomware and the Shade Ransomware families – projects that seemed to be inactive for a while despite being first spotted in the summer of 2015. Unfortunately, the recovery of the files locked by the '.crypted000007 File Extension' Ransomware is highly unlikely since a Troldesh decryptor never became available since the authors of the project have managed to create a complicated file-encryption algorithm that is nearly impossible to decipher.

When the '.crypted000007 File Extension' Ransomware executes its attack, it may begin to encrypt the files stored on both the local hard drives and removable storage devices (USB sticks, external hard drives, etc.) swiftly. Whenever a file is encrypted successfully, the '.crypted000007 File Extension' Ransomware will modify its name by adding the ‘.crypted000007’ file extension (e.g. ‘document.ppt’ will be named ‘document.ppt.crypted000007’).

Apparently, the authors of the '.crypted000007 File Extension' Ransomware are targeting both Russian and English-speaking users since their ransom note (found in the file ‘README1.txt’) comes with a Russian translation. They advise their victims to stay away from alternative data recovery applications because they might end up damaging their files permanently. The attackers claim that the only reliable way to recover the files damaged by the '.crypted000007 File Extension' Ransomware is to purchase the decryptor by using their TOR-based payment portal. While this might sound like a swift but expensive solution, we assure you that sending money to the '.crypted000007 File Extension' Ransomware’s authors is a bad idea. The anonymous hackers behind the attack will not hesitate to trick you out of your money.

Unfortunately, recovering from the '.crypted000007 File Extension' Ransomware’s attack fully is unlikely due to the strength of the encryption algorithm this file-locker uses. The next best thing you can do to salvage your files is to eradicate the '.crypted000007 File Extension' Ransomware by using a reputable anti-malware product immediately. The removal of the file-locker should be followed by the use of specialized data recovery software, which might sometimes be able to undo some of the damage done.

Loading...