Jump to content

My FILES got encrypted, HELP me OUT.

Ok so i was downloading stuff and somehow i got myself into this mess. All of my files got encrypted, tried to clean my Laptop..... reinstall windows and etc.... No solution so far

 

Is there anything that can be done or i should accept the painful fact that my pictures and all sort of important files are gone. 

 

image.png.5315ab3f26c88c3c691fcf84609aea27.png

 

Project Redline: 

♦CPU: i7-5820k  ♦CPU Cooler: Kraken x61 ♦Mobo: MSI X99A SLI ♦RAM: G.Skill Ripjaws 4x4GB 3200mhz ♦GPU: Evga 980Ti Hybrid ♦Case: NZXT H440 ♦SSD: Samsung 850EVO 500GB ♦HDD: WD BLUE 1TB 7200rpm ♦Display: 1280 x 1024

Link to comment
Share on other sites

Link to post
Share on other sites

Did you reinstall windows onto a different drive? I don't see how reinstalling windows shouldn't fix it.

Main And Only Build : CPU : Ryzen 5 1600x (OC to 4.2GHz), Cooler : Thermaltake Floe Riing RGB 240 TT Premium Edition, Motherboard : Asus ROG Strix B450-F Gaming, RAM : Trident Z RGB 16GB (2*8) 3000Mhz DDR4, GPU : Gigabyte Gaming GTX 1070 TI, PSU : EVGA G3 650W 80+ Gold Certified, Storage : 250GB Samsung 860 Evo + 256GB SU800 + 2TB Seagate HDD.

Link to comment
Share on other sites

Link to post
Share on other sites

 Got a backup? This is why you make backups.

 

If you don't have a backup, make a image of the drive, they may be a way to get past it, but your best hope is to pay then

Link to comment
Share on other sites

Link to post
Share on other sites

Maybe try something like this?
 Link

 

Also, next time when you download shady stuff do so in a VM or, just don't download shady stuff.

Make sure to quote or tag people, so they get notified.

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, Cyberspirit said:

Also, next time when you download shady stuff do so in a VM or, just don't download shady stuff.

Problem is its not just shady stuff. There are a lot of security flaws in the os, and sites that have been compromised that are normally trusted. Not doing shady things isn't a good defense here, you need backups.

Link to comment
Share on other sites

Link to post
Share on other sites

1. Disconnect yourself from your home network and the internet. Now.

2. Do your files actually have that extension? If not, it's a bluff. Run a few different antivirus programs, make a backup of your drive just in case, then get on with your day.

3. If so, RIP. Your files are more or less gone forever. Image your drive and save that in physical form somewhere, just in case there's a fix.

4. DBAN the system's hard drive a few times, then install Windows again and start over. Be very, very careful with what you download and where you download it from. If you were downloading porn or pirated stuff, well, now you know that those sites are almost universally untrustworthy. If you weren't, keep a few basic rules in mind:

  • Only download programs from the publisher's site or a mirror provided by the publisher
  • Only download drivers and BIOS updates directly from the manufacturer
  • If you buy a crappy Chinese keyboard on Amazon and it directs you to install "management software", don't.
  • Check the URL before downloading anything. Make sure it's coming from, for example, linustechtips.com and not linustechtiips.com.

Aerocool DS are the best fans you've never tried.

Link to comment
Share on other sites

Link to post
Share on other sites

3 minutes ago, Electronics Wizardy said:

Problem is its not just shady stuff. There are a lot of security flaws in the os, and sites that have been compromised that are normally trusted. Not doing shady things isn't a good defense here, you need backups.

Or you never save anything you can not live without. That is what I do and still never had a problem with viruses or ransom trojans :)

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, Electronics Wizardy said:

Problem is its not just shady stuff. There are a lot of security flaws in the os, and sites that have been compromised that are normally trusted. Not doing shady things isn't a good defense here, you need backups.

You are right but I still think that these aren't all that easy to get nowadays at least I'd hope.

I have all my important stuff backed up though, just in case.

Make sure to quote or tag people, so they get notified.

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, aisle9 said:

Be very, very careful with what you download and where you download it from. If you were downloading porn or pirated stuff, well, now you know that those sites are almost universally untrustworthy. If you weren't, keep a few basic rules in mind:

To be honest most pirate sites I know of are just as secure to download from as a Microsoft site.

Link to comment
Share on other sites

Link to post
Share on other sites

india.com

 

 

nice

With Great Power, Comes a Great Electricity Bill

 

 

Main

Setup: Intel core i5-8400 (OC'd), MSI Z-370-A Pro, Crucial Ballistix 8GB, Be Quiet! Pure Slim, Cooler Master Masterbox Lite 5 RGB, TP-Link Wifi Adapter, ASRock RX580, Artic Silver 3.5g Thermal Paste, Logitech G105, Logitech M310, Razer Sphex V2 (Mat), EVGA 500W 80+ Silver, 1TB WD Blue, 240gb Kingston Digital

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

24 minutes ago, Electronics Wizardy said:

 Got a backup? This is why you make backups.

 

If you don't have a backup, make a image of the drive, they may be a way to get past it, but your best hope is to pay then

Paying is not a solution... ain't gonna pay some Indian ugly mofo. 

 

Paying the pirates will encourage them to continue their evil deed, develop more ransomware even to infect your computer again. Suppose I send them money there is no guarantee that they will send you the decryption formula (if there is one)

Project Redline: 

♦CPU: i7-5820k  ♦CPU Cooler: Kraken x61 ♦Mobo: MSI X99A SLI ♦RAM: G.Skill Ripjaws 4x4GB 3200mhz ♦GPU: Evga 980Ti Hybrid ♦Case: NZXT H440 ♦SSD: Samsung 850EVO 500GB ♦HDD: WD BLUE 1TB 7200rpm ♦Display: 1280 x 1024

Link to comment
Share on other sites

Link to post
Share on other sites

indians make my country look shit smh

With Great Power, Comes a Great Electricity Bill

 

 

Main

Setup: Intel core i5-8400 (OC'd), MSI Z-370-A Pro, Crucial Ballistix 8GB, Be Quiet! Pure Slim, Cooler Master Masterbox Lite 5 RGB, TP-Link Wifi Adapter, ASRock RX580, Artic Silver 3.5g Thermal Paste, Logitech G105, Logitech M310, Razer Sphex V2 (Mat), EVGA 500W 80+ Silver, 1TB WD Blue, 240gb Kingston Digital

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

14 minutes ago, Redjo said:

Paying is not a solution... ain't gonna pay some Indian ugly mofo. 

 

Paying the pirates will encourage them to continue their evil deed, develop more ransomware even to infect your computer again. Suppose I send them money there is no guarantee that they will send you the decryption formula (if there is one)

Yea paying won't help the problem, but if you don't have backups and there isn't a easy way to decrypt that someone has found, your best way to get your data back is to pay them.

Link to comment
Share on other sites

Link to post
Share on other sites

14 minutes ago, Redjo said:

Paying is not a solution... ain't gonna pay some Indian ugly mofo. 

 

Paying the pirates will encourage them to continue their evil deed, develop more ransomware even to infect your computer again. Suppose I send them money there is no guarantee that they will send you the decryption formula (if there is one)

Have you confirmed that your files are affected? As said above, it may be just a hoax. Find and open a photo and open it with image viewer. If you can open the file then you may only have to fix all the file extensions.

There's no place like ~

Spoiler

Problems and solutions:

 

FreeNAS

Spoiler

Dell Server 11th gen

Spoiler

 

 

 

 

ESXI

Spoiler

 

 

 

 

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

2 minutes ago, Razor Blade said:

Have you confirmed that your files are affected? As said above, it may be just a hoax. Find and open a photo and open it with image viewer. If you can open the file then you may only have to fix all the file extensions.

Yes they are affected. Searching for .DATAWAIT decryption tool now. 

Project Redline: 

♦CPU: i7-5820k  ♦CPU Cooler: Kraken x61 ♦Mobo: MSI X99A SLI ♦RAM: G.Skill Ripjaws 4x4GB 3200mhz ♦GPU: Evga 980Ti Hybrid ♦Case: NZXT H440 ♦SSD: Samsung 850EVO 500GB ♦HDD: WD BLUE 1TB 7200rpm ♦Display: 1280 x 1024

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, Redjo said:

Yes they are affected. Searching for .DATAWAIT decryption tool now. 

Maybe try changing back the extension to whatever it's supposed to be.

Make sure to quote or tag people, so they get notified.

Link to comment
Share on other sites

Link to post
Share on other sites

2 minutes ago, Cyberspirit said:

Maybe try changing back the extension to whatever it's supposed to be.

The first thing i did was to change it to original extention. Doesnt work

Project Redline: 

♦CPU: i7-5820k  ♦CPU Cooler: Kraken x61 ♦Mobo: MSI X99A SLI ♦RAM: G.Skill Ripjaws 4x4GB 3200mhz ♦GPU: Evga 980Ti Hybrid ♦Case: NZXT H440 ♦SSD: Samsung 850EVO 500GB ♦HDD: WD BLUE 1TB 7200rpm ♦Display: 1280 x 1024

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×