Recommended Posts

My computer have been infected by ransomware SODINOKIBI, all files have been encripted with an extension ".901i56"  I have come to this forum after having tried a lot of solutions. And unfortunately I have done everything that it says that there is no need to do in the first steps when it comes to ransomware. If you have any help I would be very useful because I have lost very important files. Thank you.

Share this post


Link to post
Share on other sites

It is recommended to upload a copy of the ransom note along with an encrypted file to ID Ransomware so that you can verify which ransomware you are dealing with to this site here:
https://id-ransomware.malwarehunterteam.com/

You can then paste a link to the results into a reply so that one of our experts can review them.

Share this post


Link to post
Share on other sites

Yes, this malware called Sodinokibi Ransomware or BlueBackground Ransomware
https://id-ransomware.blogspot.com/2019/04/sodinokibi-ransomware.html

In ID Ransomware it is also called Sodinokibi

Extension: .<random_personal>
Ransom note" <random_personal>-readme.txt

 At the moment I’ve prepared several variants for publicationid my Digest, but only the first one is described. Samples for research are in my article.

Share this post


Link to post
Share on other sites

No one has reported so far that he can decrypt files. Samples still collect.
You do not need to panic, and patiently wait for the answer decryption specialists. Perhaps they have something to say to you.

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


  • Recently Browsing   0 members

    No registered users viewing this page.