Jump to content


  • Posts

  • Joined

  • Last visited


0 Neutral
  1. Hi there, i have the following Big problem : my friend got this ransowmare i believe a variant of YYto , the help file displays at startup to mail to [email protected], the files encrypted are m5m5 extensions. The server victim is Windows 2003. I need help to decript the files... i used wireshark with batch at the startup, isolated the server as much as i could and recorded the following pcap : <link removed>
  • Create New...