alpha1145

Member
  • Content Count

    4
  • Joined

  • Last visited

Community Reputation

0 Neutral

About alpha1145

  • Rank
    New Member
  1. Great news! The decrypt_cry9.exe process worked! My friend has her files back!!! I can't tell you how happy she is to have her 10 years of photos recovered. Let me know where we can send the beer money as a token of thanks. I will sing your praises on social media.
  2. Update: I am running the decrypt_cry9.exe process now. ETA for results is about 5 hours. I will update the thread with the results when the process is complete.
  3. Fabian, Thanks for the hot tip on the ransomeware ID tool. The result is: Cry9 This ransomware is decryptable! Identified by sample_extension: .<id> sample_bytes: [0xDC00 - 0xDC43] 0x00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000036E97EC0 Click here for more information about Cry9
  4. I am helping a friend with this same infection. Her computer was infected sometime on or before 0345 MDT today (6/13). I am interested in hearing from anyone who either removed this infection, recovered the encryption key or actually paid the ransom. We emailed both the email addresses at about 1700 MDT today, but as of this post, have not received a response. Attached is a screenshot of the desktop background listing the ransomware information.