glcoff

CLOSED Ransomeware MERRY_I_LOVE_YOU_BRUCE

Recommended Posts

Hi Kevin... Unfortunately, we have a client that had an employee infected with this same variation. We have removed the virus from the infected PC, however, this PC was part of a domain with a shared map drive at the server level ( Windows server 2012) All the files on the shared drive are, of course, encrypted also. We have tried the software using several different files. All return a message " The decrypter could not determine a valid key, Please drag and drop  .........."

Any suggestions as what we might try now?

Thank you in advance 

Share this post


Link to post
Share on other sites

Hello,

Currently, our MRCR decryption tool does not handle this variant.  We do have samples of chrome-font.exe that are being analyzed to determine if this variant can be broken.  If so, the MRCR decryption tool will be updated to handle this variant.  I do not have a timeline for any updates.

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.

  • Recently Browsing   0 members

    No registered users viewing this page.