Sandro 0 Posted March 11, 2019 Report Share Posted March 11, 2019 Bom dia Alguém sabe me dizer qual o programa para descriptografar este tipo de ransomware .promorad2? Abraços Quote Link to post Share on other sites
GT500 860 Posted March 11, 2019 Report Share Posted March 11, 2019 I recommend uploading a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with:https://id-ransomware.malwarehunterteam.com/ You can paste a link to the results into a reply if you would like for me to review them. Quote Link to post Share on other sites
quietman7 3 Posted March 13, 2019 Report Share Posted March 13, 2019 The .promorad2 extension is a newer variant of STOP (DJVU) Ransomware and ID Ransomware should confirm the infection. STOPDecrypter has been updated to include support for the .promorad2 variant if you were hit by the OFFLINE KEY - "0h7mFQcjRC3pDgsRcrWZ7K7bdAgvgDosJ24DmXt1" as explained in here. Quote Link to post Share on other sites
GT500 860 Posted October 19, 2019 Report Share Posted October 19, 2019 We have a new decryption service for STOP/Djvu available. There's more information and instructions on how to use it at the following links:https://www.bleepingcomputer.com/news/security/stop-ransomware-decryptor-released-for-148-variants/https://blog.emsisoft.com/en/34375/emsisoft-releases-new-decryptor-for-stop-djvu-ransomware/ Quote Link to post Share on other sites
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.