Hi all and thanks in advance for any advise given!
I have been hit with a Crypt0L0cker clone by the looks of it and am really hoping to get my files decrypted as this has even encrypted all my important files saved on onedrive and synced them to one drive :/
So I will try and provide as much info as possible but if any other info is needed please just ask.
Ok so the decryption file is named HOW_TO_RESTORE_FILES.txt and also has a html link called HOW_TO_RESTORE_FILES.html
My files have been encrypted with the extension .enc
ID RANSOMEWARE INFO
After uploading a sample file and ransom note to this site it came back with 3 results Crypt0L0cker, CryptoHasYou & TrueCrypter. Not sure how to narrow it down any further than that sorry.
The name of the file is AUSPOST_parcel.zip
This was sent to me as an Australian Post missing parcel phishing email. I can also provide links to the email, download page and/or zip file if that will help anyone identify it further.
As a last resort I may pay them if that will get my files back but can I get some advise on whether or not they will unlock them if I pay?