Jump to content

Ransomware Encryptor 725


EdPM
 Share

Recommended Posts

Hello

Because of one user's in our company fail we were infected with Ransomware that encrypt files and change their extension to 725.

Fortunately this user had only users privileges on his PC. Unfortunately he had a lot of full access folders in network. Thats why we lost a lot of important information before viral activity was detected and stoped.

When i send request to decrypt one of files, i should send both encrypted file and RECOVER-FILES.html to perpetrator.

You can find encrypted, original (from backup) and  RECOVER-FILES.html files in attachment.

So, maybe it's possible to decrypt our files without payment to terrorists? This is not so huge sum, but you know, if you pay to terrorists, you help them to start new attacks.

Thanks in advance.

Regards

Ed

KPMG Belarus.PDF

KPMG Belarus.PDF.725

RECOVER-FILES.html

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...