  1. Excuse me for troubling you very much, but I had written these bad guys, they decrypted one file for me, I payd 200$ for decrypt software, received it and decrypted my files. They had my server through RDP, it was weakly password for Administrator, and backup files was here, and these ones was crypted too. And ransomware deleted shadow copy too, and wiped deleted files. Attached the logs and the decrypt software. FRST.txt Addition.txt
  3. Ransomware crypted my files in *.cpt, but I have two identical file. IMHO it may be new version of crypton. Could I have any help with decription my files? Examples of files: Правила конвертации.zip Правила конвертации.zip.cpt