ESET Ransomware Decryptor for the victims of AES-NI and XData

ESET has announced that it has started making one available decryption key for AES-NI to users whose data has been encrypted by Win32/Filecoder.AESNI.B and Win32/Filecoder.AESNI.C (aka XData).

The decryption tool for AES-NI is based on recently released keys via Twitter and a help forum for ransomware victims.ESET Ransomware Decryptor

As Ondrej Kubovič explains, Security by ESET: “The decryption tool is intended for κρυπτογραφημένα από το offline κλειδί RSA, το οποίο χρησιμοποιείται από την παραλλαγή B του AES-NI προσθέτοντας τις επεκτάσεις .aes256, .aes_ni και .aes_ni_0day, καθώς και για την παραλλαγή XData, που προσθέτει την επέκταση.~xdata στα μολυσμένα αρχεία»

Users who have fallen victim and still have their files encrypted can download the decryptor from the associated ESET page with the utilities. The ESET Knowledgebase page provides more information on how to use the tool and details about specific cases where the decryptor can not help.

Stakeholders can find more details about what happened and appear to have led to the "end" of this malware. Useful information on protection against ransomware is available in the official ESET blog, WeLiveSecurity.

https://download.eset.com/com/eset/tools/decryptors/aesni/latest/esetaesnidecryptor.exe

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.082 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).