Wagner Souza Posted November 8, 2019 Report Share Posted November 8, 2019 Recently our files were blocked with .snc extension. You already have some solution for this extension? Link to comment Share on other sites More sharing options...
Wagner Souza Posted November 8, 2019 Author Report Share Posted November 8, 2019 Annex redemption note. And a sample of the encrypted ransom note itself. ReadMe.txt ReadMe.txt.[384ED641][[email protected]].Snc Link to comment Share on other sites More sharing options...
GT500 Posted November 9, 2019 Report Share Posted November 9, 2019 This appears to be WannaCryFake (or at least it uses the same e-mail address):https://id-ransomware.malwarehunterteam.com/identify.php?case=073efd7af12a693ce3953e8ff774d9e5503aadb9 Let me know if our decrypter is able to recover any of your files:https://www.emsisoft.com/ransomware-decryption-tools/wannacryfake There are instructions for using it at the following link:https://decrypter.emsisoft.com/howtos/emsisoft_howto_syrk.pdf Link to comment Share on other sites More sharing options...
Wagner Souza Posted November 11, 2019 Author Report Share Posted November 11, 2019 On 11/9/2019 at 2:09 AM, GT500 said: This appears to be WannaCryFake (or at least it uses the same e-mail address):https://id-ransomware.malwarehunterteam.com/identify.php?case=073efd7af12a693ce3953e8ff774d9e5503aadb9 Let me know if our decrypter is able to recover any of your files:https://www.emsisoft.com/ransomware-decryption-tools/wannacryfake There are instructions for using it at the following link:https://decrypter.emsisoft.com/howtos/emsisoft_howto_syrk.pdf Hello, it didn't work with this decrypter. Link to comment Share on other sites More sharing options...
GT500 Posted November 12, 2019 Report Share Posted November 12, 2019 13 hours ago, Wagner Souza said: Hello, it didn't work with this decrypter. I'll ask to see if ID Ransomware's detection was correct. Link to comment Share on other sites More sharing options...
Wagner Souza Posted November 13, 2019 Author Report Share Posted November 13, 2019 17 hours ago, GT500 said: I'll ask to see if ID Ransomware's detection was correct. Thanks, if you find any decrypt that works let me know, it will help us a lot. Link to comment Share on other sites More sharing options...
GT500 Posted November 13, 2019 Report Share Posted November 13, 2019 I was told that this ransomware looks secure, but we may need to take a closer look at it to verify that. Link to comment Share on other sites More sharing options...
Wagner Souza Posted November 13, 2019 Author Report Share Posted November 13, 2019 5 hours ago, GT500 said: I was told that this ransomware looks secure, but we may need to take a closer look at it to verify that. Thanks for the feedback, if you find out something let me know. Link to comment Share on other sites More sharing options...
depe Posted April 5, 2020 Report Share Posted April 5, 2020 HI , Do you have any news regarding this ransomware? Thanks Link to comment Share on other sites More sharing options...
GT500 Posted April 7, 2020 Report Share Posted April 7, 2020 On 4/5/2020 at 3:00 AM, depe said: Do you have any news regarding this ransomware? No. We recommend keeping an eye on BleepingComputer's newsfeed, as they will usually report on new developments with ransomware decrypters:https://www.bleepingcomputer.com/ If you have an RSS feed reader, then they also have an RSS feed so that you don't have to manually check for news:https://www.bleepingcomputer.com/feed/ Link to comment Share on other sites More sharing options...
Recommended Posts