Team OS : Your Only Destination To Custom OS !!

Welcome to TeamOS Community, Register or Login to the Community to Download Torrents, Get Access to Shoutbox, Post Replies, Use Search Engine and many more features. Register Today!

Locked urgent help required, about .vvew ransomeware attack removal

Status
Not open for further replies.

Faysal Bhatti

✅ Verified Member
Member
Downloaded
9.9 GB
Uploaded
3.3 GB
Ratio
0.33
Seedbonus
4
Upload Count
0 (0)
Member for 9 years
Hello!

Yesterday I was hit by a ransome attack and it severely damanged my laptop data, copying text file of ransome attack is as under

ATTENTION!

Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:

Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

immediate help is required how to get rid of this attack and how to get back data to normal state .

thanks and regards in advance.
 

littlewilly

Member
Downloaded
2.4 GB
Uploaded
5 GB
Ratio
2.1
Seedbonus
13
Upload Count
0 (0)
Member for 2 years
that is terrible! very sorry to hear. any idea how you got it? thank you!
 

Jimmy Collaros

Uploader
Power User
✅ Verified Member
Member
Downloaded
1.8 TB
Uploaded
1,403 TB
Ratio
777.44
Seedbonus
30,662
Upload Count
870 (869)
Member for 8 years
My friend i am afraid you lost everything and it is difficult to get them back.
Your thread is edited and some content is removed like external links and Email addresses.
 

Cyler

🤴 Super Admin
⚡OS Master
Downloaded
510.5 GB
Uploaded
24.5 TB
Ratio
49.16
Seedbonus
27,638
Upload Count
1 (1)
Member for 6 years
Sadly there is no solution for you. Once you get the ransomware and If it detects the internet, it gets a unique key from its server. Once that happens, and for the time being, your files will get encrypted with a unique key that was applied to you ONLY. That key is virtually impossible to BREAK and only the ransomware manufacturer knows it. If it doesn't detect the internet (highly unlikely) then it uses one of the predefined keys which maybe can be found. Assume tho that in your case it got in contact with its command and deploy server.

There are a few steps that don't hurt to check but I would not keep my hopes high.
  • You can use a search engine and search for "ransomware decryptor tools" and see which one is offering to try to decrypt your specific variant and give it a try.
  • One lesser-known feature of windows is called volume shadow copies which sadly a lot of custom windows disable. This makes a shadow copy (backup) of our file when we modify it and it's better to be thought of as a versioning tool. By using this tool (I include the URL in case there is a new update in the future) https://www.shadowexplorer.com/downloads.html you can explore possible shadow copies of files (again, if you haven't disabled the service) and maybe you get lucky.
  • Some ransomware in order to be able to encrypt as many files as possible without getting caught by showing high system activity, encrypt only the first 150kb of a file and not the entire file. So in some cases of large video files, (after making a copy) you can rename them and try to open them in a video editor. There is a chance you will get a few seconds of static at the start but salvage the video. The same can happen for some RAR/ZIP/7z files as they can repair and only discard the bad portion but still salvage some files.
  • Tho the new ransomware disables system restore, give it a try to at least restore some of your programs. Sadly system restore doesn't restore user data.
  • Of course, all the above need to happen AFTER you clean your system from the malware. The process is the same as any virus and instructions can be found on the net. Even better, remove and disinfect the hard disk using another system when possible.
  • If all the above fail, store the files somewhere and hope in the future that a fix will be made/released.
  • Honestly, after you try anything you can, format the PC with new windows unless you are THAT good with PCs. I would never trust a PC with malware even if it got removed. All it takes is to forget one file or not Medicines the entry point and you will be having the same problem again soon
What to do not to have that happen in the future?
  • Use common sense. If you find somewhere a Medicines or a program that you can't find anywhere else... guess what?
  • If you find a file that promises unrealistic things ( software to Medicines every program...), guess what again?
  • Dont open emails from people you don't know, especially when they promise you unrealistic things.
  • Dont visit every stupid site you see on the net and furthermore don't download anything you see from it.
  • I know it's been said 1000 times but keep a backup of your most important files. Google gives 15GB, Mega gives 50Gb and there are many other solutions too. A movie or a program or even an mp3 can be found again, pictures of your loved ones, documents of your work, etc CAN NOT. Those don't even take a lot of space. Back them up ONLINE and off the PC.
  • Always scan ANY INCOMING FILE. Have a folder named incoming or new or whatever, and always double, or even triple scan ANY file you download. Especially if it's from a source you don't know. It may be a slight inconvenience, but losing your valuable files and time, is more. Never assume anything is safe.
  • Did I say to use common sense?

Sorry for the bad news but that's reality and I don't like to give people fake hopes.
 

RedDove

⭐ VIP
Power User
✅ Verified Member
Member
Downloaded
118.2 GB
Uploaded
42.3 TB
Ratio
366.53
Seedbonus
1,883,054
Upload Count
0 (0)
Member for 9 years
OMG, that is awful, so these unscrupulous people
attacked you with a ransomware to get you to buy their product.
Dang, the only important files I keep on a PC that's always connected to
the internet, is files I get from this site and I have those backed up
They can try, yep, let them try.
I do feel so bad for you, I'm so very sorry that happened to you.
 

Uncle Mac

🤴 Super Admin
Downloaded
91.3 GB
Uploaded
306.2 TB
Ratio
3434.33
Seedbonus
3,466,842
Upload Count
333 (352)
Member for 10 years
Sadly, the best advice anyone here could give you @Faysal Bhatti, is the advice @Cyler gave you earlier.

Personally, I've never had to experience this as I take precautions. If a site or a file looks suspect, then it's a decent chance that it is, and it should be avoided.
Though there are some instances where they look real close to the real thing. That being said though, there will be tell tail signs that it's a fake and likely ransomware.

This is why we on TeamOS insist that anything posted here be scanned thoroughly for viruses / spyware / malware / etc, etc.. to ensure that we are not being used to spread any of that, and to ensure that anything downloaded from here is safe for users to install / use.
 
Status
Not open for further replies.
Top