Vaish

infected by .jack ransomware

Recommended Posts

One of my customer has got infected by ransomware which has locked all their files with extension .jack

Need to unlock all the data, Please help

Share this post


Link to post
Share on other sites

In addition, I ask you to upload some encrypted files and a ransom note here.
There are many cases when identification can combine different variants (notes, addresses, etc.), and only manually we can indicate the correct version.

Share this post


Link to post
Share on other sites

Please help me 

Your personal ID:
095Asdjh74yiUSHdfh74y0SMZIKz6z0xkrdLa38rMxvfpohnJaCZexC98YbKH

No key for ID: 0SMZIKz6z0xkrdLa38rMxvfpohnJaCZexC98YbKH (.davda )
Unidentified ID: 0SMZIKz6z0xkrdLa38rMxvfpohnJaCZexC98YbKH (.davda )
MACs: 54:E1:AD:08:BB:CC, 00:28:F8:4B:62:67, 02:28:F8:4B:62:66, 00:28:F8:4B:62:66

1 Result

STOP (Djvu)

 This ransomware may be decryptable under certain circumstances.

Please refer to the appropriate guide for more information.

Identified by

  • ransomnote_email: [email protected]
  • sample_extension: .davda
  • sample_bytes: [0x34348B - 0x3434A5] 0x7B33364136393842392D443637432D344530372D424538322D3045433542313442344446357D

Share this post


Link to post
Share on other sites
On 6/8/2019 at 1:58 PM, kevinliangts said:

Please help me 

Your personal ID:
095Asdjh74yiUSHdfh74y0SMZIKz6z0xkrdLa38rMxvfpohnJaCZexC98YbKH

No key for ID: 0SMZIKz6z0xkrdLa38rMxvfpohnJaCZexC98YbKH (.davda )
Unidentified ID: 0SMZIKz6z0xkrdLa38rMxvfpohnJaCZexC98YbKH (.davda )
MACs: 54:E1:AD:08:BB:CC, 00:28:F8:4B:62:67, 02:28:F8:4B:62:66, 00:28:F8:4B:62:66

I've forwarded your ID and MAC addresses to the creator of STOPDecrypter so that he can archive them in case he is able to figure out your decryption key at some point in the future.

Share this post


Link to post
Share on other sites

We have a new decryption service for STOP/Djvu available. There's more information and instructions on how to use it at the following links:
https://www.bleepingcomputer.com/news/security/stop-ransomware-decryptor-released-for-148-variants/
https://blog.emsisoft.com/en/34375/emsisoft-releases-new-decryptor-for-stop-djvu-ransomware/

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


  • Recently Browsing   0 members

    No registered users viewing this page.