Home Malware Programs Ransomware Rastar Ransomware

Rastar Ransomware

Posted: December 21, 2020

Ransomware threats are designed to cause long-lasting damage to the files found on infected machines. The authors of these threats often claim to possess a working decryption tool, which victims can obtain by paying some Bitcoin. The authors of the newly identified Rastar Ransomware are no different, and they promise to help all victims who agree to pay a ransom fee. The Rastar Ransomware is being spread via fake downloads, corrupted emails and other deceptive content. It is best to protect your network from it by investing in reputable anti-virus protection.

If the Rastar Ransomware's attack is not stopped, it may end up causing a lot of damage to important files. The files that the ransomware encrypts will be marked with the extension '.rastar.' The Trojan also drops a ransom note in any directory that contains locked files. The note is called 'HOW_TO_DECYPHER_FILES.txt' and its contents reveal the following:

  • The unique identifier ID of the victim.
  • The email datarecovery@asiarecovery.ir, which can be used to contact the perpetrators.
  • The criminals threaten to increase the fee if the victim does not contact them in the next 12 hours.
  • The criminals give their victims 24 hours to pay before their decryption keys are deleted.

The criminals fail to provide any proof that their decryption tools work, so you should not consider trusting them, certainly. If the Rastar Ransomware has locked your files, it is recommended to run an up-to-date anti-malware tool that will terminate the threat. After this, you will need to find a way to recover the lost data. The best way to do this is through a recent backup, but it also may be possible to do it via popular data recovery software suites.

Loading...