Home Malware Programs Ransomware dzikusssT3AM Ransomware

dzikusssT3AM Ransomware

Posted: August 24, 2018

dzikusssT3AM is ransomware based on the more notorious Jigsaw Ransomware, but with a twist, as it targets Polish-speaking users mostly. Other than that detail, it acts like other ransomware programs, in that the dzikusssT3AM Ransomware encrypts key files on the targeted computers. Specifically, it changes the filenames to '.#__EnCrYpTED_BY_dzikusssT3AM_ransomware!__#;' for example, if a filename ends in .pptx, the name is changed to filename.pptx'.#__EnCrYpTED_BY_dzikusssT3AM_ransomware!__#.' The dzikusssT3AM Ransomware includes contact information in the form of a contact email: pabluk700[at]protonmail.

The ransom note translated from Polish states the following:

'ATTENTION ATTENTION!!!
Your personal files have been encrypted with the advanced AES-2048 algorithm,
After 72 hours, they will be removed permanently !!!
Your documents, music, movies, etc ...
As you already know, I've already encrypted your files, so you can not read them !!!
Every hour I choose one random file and I permanently delete it !!!
I'm not able to recover such a file !!!
For the first 24 hours you will lose only a few files, the next day, several hundred, the third day, several thousand, etc. ...
Do not turn off the computer !!! If you restart your computer I will restart and I will automatically delete 1000 files permanently !!!
If you want to recover ALL files, make a payment within one hour from the moment this window appears !!! Otherwise, you DO NOT RECOVER ALL FILES !!!
Remember that anti-virus can ONLY and exclusively remove malware, and not recover personal files that are important to you! It also involves losing files forever.
If you have any questions, please contact us by e-mail: pabluk700@protonmail.ch
WARNING!!! Time is running out and the decision has to be taken. You have 2 options:
1. Pay the money and decode your files.
2. Don't pay and lose all your files.'

Computer security experts that work with ransomware samples and help users deal with crypto-threats note that paying the asked ransom is not the best option. Paying for a decoder may be acceptable in some cases, but the cybercriminals may not deliver on their promise, and you may lose your hard-earned money. Removing the dzikusssT3AM Ransomware and using backup images/backup copies/cloud storage services should be a priority for regular PC users and companies alike. It is recommended to have trustable backup storage you can rely on in case something like the dzikusssT3AM Ransomware lands on your machine. Family photos and personal projects are often among the most valuable data that users are unable to recover after crypto-threat attacks. You may want to purchase a portable SSD and use it for backup purposes only.

Loading...