    Hello, my name is Nuno, I'm from Portugal and I reeeealy need you help, please!!!!!

    My laptop has been infected with this .nppp virus and all of my files from work from the past 4 years have been encrypted.

    I've managed to clean the virus infections from the laptop with Malwarebytes (100% sure it's clean) but, when I run your program, it says that it doesn't posess the offline key, so it MAY decrypt my files in the future.

    My PersonalID is: yUigCPpx6KxQZCQZfT8NsgOwnGDHwiQkVLy9UTt1

    Can you please help me somehow?

    I'm getting desperate with all the locked files from work!

    Thank you

    The only thing that we (everyone infected with an offline ID) can do is wait. Your information is clear: You have been infected. The good news is that it's an Offline ID witch might me possible to decrypt some day in the future.

    This depends on the team getting that ID decrypted. That day (if it comes) it will be uploaded to their servers so the only thing you will need to do is to run the software again.

    It's recommended to run it once per week to see if your ID was decrypted. (Of course, I'm running it 2 times per day, xD)

    Patience is the key. Be sure to save your encrypted files for now.


    We don't have the private key for this offline ID yet. Once we're able to find it, we'll add it to our database, and then it should be possible for you to recover your files. I recommend running the decrypter once every week or two so that you can see when we've added the private key.

    There is more information at the following link:

    My Id is the same "No key for New Variant offline ID: uvEETK84RPC0Q5icp67CP746LJaCJuwq2tG9Kjt1"
    But I was infected with .bboo

    Didn't know that same ID was used for different extensions.

    If I remember right, STOP/Djvu only encrypts a certain number of bytes of a file, so with larger files it may be possible to recover parts of them using software intended to repair those files (videos are a good example). It should be noted that this method isn't going to work for most files, and it will more than likely leave gaps of missing information/data at the beginning of the files.

    Definitely this is the case. Just wanted to drop some info about it in case I can help someone. Thanks for clarifying.

  4. Hi everyone. I have been doing a lot of research. The only thing we need to do is to wait for Emsisoft to upload the new decryption keys to their servers. There is nothing we can do. Uploading your Offline ID will not speed up the process.

    Take note that there are multiple variants. They are doing the best they can.

    Maybe we can make a crowdfunding for this heroes working on a decryption.

    @João Luiz Sorry to tell you this, but if you have Online ID you are mostly rekt.


  5. I have been infected with the newer version. The exact extension is the one named above (*.bboo).

    Fortunately, my ID is a T1 (Offline encrypt) as I unplugged the internet connection when I realized what was happening.

    I want to know how can I contribute in the research of a decryption tool. Is there any donation option? I prefer paying to white hat than cyber criminals.

