Jump to content
Posted 30 June 2015 - 01:35 PM
Posted 30 June 2015 - 01:41 PM
It appears that you have been infected with CTB-Locker - and unforunately it is a very real ransomware.
Please read below for more information.
The newest variants of CTB-Locker typically encrypt all data files and rename them as a file with a 6-7 length extension with random characters. The newer variants also do not always leave a ransom note if the malware fails to change the background, like it generally does. Compounding matters, the newer CTB-Locker infection has been seen in combination with KEYHolder, TorrentLocker (fake Cryptolocker) or CryptoWall ransomware. Unfortunately, there is still no known method of decrypting your files without paying the ransom and with dual infections, that means paying both ransoms.
A repository of all current knowledge regarding this infection is provided by Grinler (aka Lawrence Abrams), in this tutorial: CTB Locker and Critroni Ransomware Information Guide and FAQ
There is also an ongoing discussion in this topic: CTB Locker or DecryptAllFiles.txt Encrypting Ransomware Support & Discussion.
If you have any questions, it is best that you post in the discussion topic mentioned above.
To avoid confusion I have asked a Moderator to close this topic. Good luck.
Edited by hamluis, 30 June 2015 - 03:28 PM.
Topic closed per request - Hamluis.
0 members, 0 guests, 0 anonymous users