Kaspersky broke the encryption of CryptXXX ransomware

Η announced that it has successfully decrypted the CryptXXX ransomware.

More specifically, Kaspersky's John Snow reports that his victims software can decrypt them them without having to pay the ransom demanded by the fraudsters.

Ransomware

CryptXXX was discovered in mid-April by the company Proofpoint, which said it originates from the developers of Reveton and spreads via the Angler exploit kit.

Fraudsters using CryptXXX required 500 dollars from each encrypted system, and Proofpoint notes that it is one of the highest amounts ever requested by similar software.

Ransomware encrypts the files on the victim's computer but also on the peripheral storage units connected to the machine.

Attackers also steal Bitcoins that are stored on victim's hard drives.

Note that although CryptXXX uses RSA4096 encryption, Snow said it was not "so hard to crack."

 

So the company added decryption mode to the RannohDecryptor ransomware decryption tool.

Download RannohDecryptor and read the company's detailed instructions for decrypting infected files:

 

Kaspersky

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).