ljs3508 0 Posted December 27, 2019 Report Share Posted December 27, 2019 My computer is infected with Ransomware. All files are suffixed with harma. The virus file is called shaofao.exe. The email left by the virus is [email protected] all File extension added .id-1A90EC8C.[[email protected]].harma ,for example:FileReading.exe.id-1A90EC8C.[[email protected]].harma,Original file is FileReading.exe How can I decrypt it. thanks! I have uploaded the file to dropfiles. https://dropmefiles.com/Mcqd1 shaofao.exe is here! https://dropmefiles.com/jv9n7 zip password:1 Quote Link to post Share on other sites
Kevin Zoll 309 Posted December 27, 2019 Report Share Posted December 27, 2019 Hello @ljs3508, Thank you for contacting Emsisoft Support. This is very likely DHARMA(CrySiS). Unfortunately, there is no way to decrypt your files using third-party tools. Quote Link to post Share on other sites
ljs3508 0 Posted December 30, 2019 Author Report Share Posted December 30, 2019 thank you! Quote Link to post Share on other sites
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.