Jump to content

Ransomware infection


chilly55

Recommended Posts

My kids, I am assuming, did something that allowed a ransomware program to infect our family computer. I've not seen this extension before and am looking for help on identifying it. All infected files are typical text or picture files. Each infected file now has the extension

 

.pqeyqzm

 

added to each file.

 

Files are now encrypted by CTB-Locker.

 

Below is the photo file that gives information to acquire a key.

 

ZxYEEc.png

 

Any help is appreciated.

 

Bill

Edited by chilly55
Link to comment
Share on other sites

Thank you. I did a search but wasn't able to locate this particular link. Much more info in just this one link than all of the others I found.

 

Thanks again,

Bill

Link to comment
Share on other sites

I've been able to recover (backups) or rebuild files that were affected except for 2 important files. For some reason I never backed up an automotive program or my savings bond program. I can rebuild the savings bond file, but the automotive program file is a different story.

 

"Hello,

 

Recommend checking with your anti-malware vendor's technical support department to see if they have a decryptor.

 

Regards,

 

Aryeh Goretsky"

 

I use Malewarebytes to find and delete maleware, but I don't use an active scan program aside from NAV. You think Malewarebytes would have a decryptor? I'll give them a shout and see what they say. Never thought to do this.

 

Thanks again,

Bill

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...