Ransomware Archiv

Hier finden Sie eine Übersicht mit verschiedenen Arten von Ransomware mit detaillierten Informationen zur Bedrohung.

Diese Informationsseite wird seit Ende 2018 nicht mehr gepflegt und dient lediglich als Archiv.

Informationen wie Sie sich vor Ransomware schützen können finden Sie hier.

September · 2018

Barack Obama's Blackmail Virus Ransomware

Barack Obama Ransomware

Hello, your computer is encrypted by me! Yeah, that means your EXE file isn’t open! Because I encrypted it. So you can decrypt it, but you have to tip it. This is a big thing. You can email this email: 2200287831@qq.com gets more information.

Gandcrab 4.3 Ransomware

Gandcrab 4.3 Ransomware

Das LKA empfiehlt, das Lösegeld nicht zu zahlen. Betroffene Firmen können sich an die Zentrale Ansprechstelle Cybercrime (ZAC) der Polizei wenden.

No More Ransom:

https://www.nomoreransom.org/de/index.html

August · 2018

CryptoNar Ransomware

CryptoNar Ransomware

Your important files including photos, videos, documents,etc. were encrypted with our CryptoNar ramsomware.

Ryuk Ransomware

Ryuk Ransomware

Your business is at serious risk

Princess Evolution Ransomware

Princess Evolution Ransomware

All files are encrypted!

KeyPass Ransomware

KeyPass Ransomware

All your files, documents, photos, databases and other important files are encrypted and have the extension: .KEYPASS.

New Cmb Dharma Ransomware

New Cmb Dharma Ransomware

All your files have been encrypted due to a security problem with your PC.

Juli · 2018

Magniber Ransomware

Magniber Ransomware

Ouroboros Ransomware

Ouroboros Ransomware

README!!! ALL YOUR FILES HAVE BEEN SECURELY ENCRYPTED!!!.txt

Rakhni Ransomware

Rakhni Ransomware

The spam emails from Rakhni’s authors contain malicious file attachments in the form of Word DOCX documents.

Nozelesn Ransomware

Nozelesn Ransomware

All files including videos, photos and documents on you computer are encrypted by nozelesn ransomware.

GandCrab V4 Ransomware

GandCrab V4 Ransomware

What the matter? Your computer has been infected with GrandCrab Ransomware

Juni · 2018

Thanatos Ransomware

Thanatos Ransomware

Your files was encrypted. To decrypt your files, follow next steps

SamSam Ransomware

SamSam Ransomware

MysteryBot Ransomware

MysteryBot Ransomware

Features of a banking trojan, keylogger, and mobile ransomware.

DBGer Ransomware

DBGer Ransomware

Some files have been encrypted. Please send (1) bitcoins to my wallet address

Princess Ransomware

Princess Ransomware

Your files are encrypted!

Redeye Ransomware

Redeye Ransomware

All your personal files has been encrypted with an very strong key by RedEye!(Rijndael-Algorithmus – AES – 256 Bit)

Scarab-DiskDoctor Ransomware

Scarab-DiskDoctor Ransomware

Warnung all Ihre Dateien sind verschlüsselt

Mai · 2018

Backup Cryptomix Ransomware

Backup Cryptomix Ransomware

To decrypt the files, you need to purchase special software

CryptON Ransomware

CryptON Ransomware

To decrypt the files, you need to purchase special software

Bip Dharma Ransomware

Bip Dharma Ransomware

all your has been locked us; you want return; write email

SynAck Ransomware

SynAck Ransomware

Attention! All your documents, databases, and other important files are encrypted

April · 2018

GandCrab Version 3 Ransomware

GandCrab Version 3 Ransomware

Attention! All your documents, databases, and other important files are encrypted

New C# Ransomware

New C# Ransomware

Your files are encrypted

KCW Ransomware

KCW Ransomware

This ransomware, called KCW Ransomware, encrypts the files on a web site and then demands a ransom payment in order to get the files back.

TrickBot Ransomware

TrickBot Ransomware

At the time, there was no support for file encryption operations

HPE iLO 4 Ransomware

HPE iLO 4 Ransomware

Security Notice: Hey. Your hard disk is encrypted using RSA 2048 asymmetric encryption. To decrypt files you need to obtain the private key. It means We are the only ones in the world to recover files back to you. Not even god can help you.

Minecraft & CS Ransomware

Minecraft & CS Ransomware

Looks like someone saw the PUBG ransomware and thought it is a good idea to create these…

Spartacus Ransomware

Spartacus Ransomware

All your files have been encrypted due to a security problem with your PC. If you want to restore them, write us the e-mail:MastersRecovery@protonmail.com and send personal ID KEY:

RansSIRIA Ransomware

RansSIRIA Ransomware

Sorry, your files have been locked

WhiteRose Ransomware

WhiteRose Ransomware

!!!All your files are encrypted!!!

PUBG Ransomware

PUBG Ransomware

PUBG Ransomware – Your files, images, musics, documents are Encrypted! Your files is encrypted by PUBG Ransomware! but don’t worry! It is not hard to unlock it. I don’t want money! Just play PUBG 1Hours! Or Restore is [ s2acxx56a2sae5fjh5k2gb5s2e ]

New Matrix Ransomware

New Matrix Ransomware

All your files were encrypted with RSA-2048 crypto algorithm!

März · 2018

Mole66 Ransomware

Mole66 Ransomware

!!!All your files are encrypted!!!

Rapid 2.0 Ransomware

Rapid 2.0 Ransomware

All YOUR FILES ARE ENCRYPTED BY RAPID 2.0 RANSOMWARE – Dont worry, you can return all your files!

AVCrypt Ransomware

AVCrypt Ransomware

lol n

Zenis Ransomware

Zenis Ransomware

All your files have been encrypted

Sigma Ransomware

Sigma Ransomware

Your documents, photos, databases and other important files have encrypted

Qwerty Ransomware

Qwerty Ransomware

Your Computer is encrypted. Mail cryz1@protonmail.com

GandCrab v2 Ransomware

GandCrab v2 Ransomware

All you files documents, photos, databases and other important files are encrypted and have extensions:.GDCB

Februar · 2018

SamSam Ransomware

SamSam Ransomware

All files encrypted with RSA-2048, for more information in Google ‘RSA Encryption.

Data Keeper Ransomware

Data Keeper Ransomware

All files in this directory have been encrypted. For decrypt files:Download Tor Browser Run it For create decryption keys, copy link at the bottom of this page and paste to the address bar and go it If count of links greather than one, next link must be added ONLY AFTER PAYMENT FOR PREVIOUS KEY.

Thanatos Ransomware

Thanatos Ransomware

Your files was encrypted. To decrypt your files, follow next steps.

LockCrypt Ransomware

LockCrypt Ransomware

All your files habe been encrypted due to a security problem with your PC.

Rapid Ransomware

Rapid Ransomware

Your files are NOT damaged! Your files are modified only. This modification is reversible.

Black Ruby Ransomware

Black Ruby Ransomware

Congratulations, you are now part of our family #BlackRuby Ransomware. The range of this family is wider and bigger every day. Our hosts welcome our presence because we will give them a scant souvenir from the heart of Earth.

DexCrypt Ransomware

DexCrypt Ransomware

.-”-. / || |, .-. .-. ,| | )(__/ __)( | |//\| (_^^_) __|IIIIII|__/| IIIIII/ |/`yao mi ma gei 30 yuan jia qq 2055965068`

Saturn Ransomware

Saturn Ransomware

All of youe files have been encrypted!

System Cryptomix Ransomware

System Cryptomix Ransomware

Hello! Attention! All Your data was encrypted!

Scarabey Ransomware

Scarabey Ransomware

The ransom note is written in English, however, it reads as if you translated word-for-word a Russian text into English

Januar · 2018

MindLost Ransomware

MindLost Ransomware

Dont Lose Your Mind But All Of Your Files Have Been Encrypted

GandCrab Ransomware

GandCrab Ransomware

Attention! All your files documents, potos, databases and other important files are encrypted and have the extension: _ GDCB

MoneroPay Ransomware

MoneroPay Ransomware

Your files are encrypted

Rapid Ransomware

Rapid Ransomware

Hello! All you files have been encrypted by us.

desuCrypt Ransomware

desuCrypt Ransomware

All your files have been encrypted due to a security problem with your PC.

SamSam Ransomware

SamSam Ransomware

All your file encrypted with RSA-2048 encryption, for more information search in Google “RSA Encryption”

KillDisk Ransomware

KillDisk Ransomware

This KillDisk variant looks like it is intentionally dropped by another process

HC7 Planetary Ransomware

HC7 Planetary Ransomware

ALL FILES ARE ENCRYPTED. TO RESTORE, YOU MUST SEND $700 EQUIVALENT FOR ONE COMPUTER

Server Cryptomix Ransomware

Server Cryptomix Ransomware

Attention! All Your data was encrypted!

Dezember · 2017

File-Locker Ransomware

File-Locker Ransomware

Warning!!! All your documents, photos, databases and other important personal files were encrypted!!

VenusLocker Ransomware

VenusLocker Ransomware

VenusLocker ransomware was not a “success”

WORK Cryptomix Ransomware

WORK Cryptomix Ransomware

Attantion! All Your data was encrypted

Spider Ransomware

Spider Ransomware

As you may have already noticed, all your important files are encrypted an you no longer have access to them.

November · 2017

Jhash Ransomware

Jhash Ransomware

No debes asustarte…

Christmas Ransomware

Christmas Ransomware

Your files have been encrypted

Sigma Ransomware

Sigma Ransomware

Your documents, photos, databases and other important files have been encrypted

Waffle Ransomware

Waffle Ransomware

Hallo you have been infected by Waffle Ransomware

Zika Ransomware

Zika Ransomware

Zika – Tus Archivos han sido Encyptados

New XiaoBa Ransomware

New XiaoBa Ransomware

XiaoBa Ransomware that demands $37.696 in BTC and locks the screen.

Curumim Ransomware

Curumim Ransomware

Curumim

Seus arquivos estao criptografados!

New Sad Ransomware

New Sad Ransomware

New Sad

Important Information – Sad ransomare your files have been encrypted

New Ranion Ransomware

New Ranion Ransomware

New Ranion

Your files have beeb encrypted with ransomware!

HiddenTear Ransomware

HiddenTear Ransomware

HiddenTear

Your Computer has been infected by Hidden-Tear

Oktober · 2017

Comrade Ransomware

Comrade Ransomware

Comrade

All your files ha been encrypted.

Pennywise Ransomware

Pennywise Ransomware

Pennywise

Your personal files are being deleted.

Trick or Treat Ransomware

Trick or Treat Ransomware

Trick or Treat

Your Files Have Been Encrypted!

AllCry Ransomware

AllCry Ransomware

AllCry

Sorry But You Have Been Hacked

Ordinal Ransomware

Ordinal Ransomware

Ordinal

Your files are encrypted!

Scarab Ransomware

Scarab Ransomware

Scarab

Your files are now encrypted!

Odinypt Ransomware

Odinypt Ransomware

Odinypt

Your data is encrypted!

Matrix Ransomware

Matrix Ransomware

Matrix

Your data is encrypted!

ONI Ransomware

ONI Ransomware

ONI

Your data is encrypted!

LockCrypt Ransomware

LockCrypt Ransomware

LockCrypt

All your files have been encrypted!

Cobra Crysis Ransomware

Cobra Crysis Ransomware

Cobra Crysis

All your files have been encrypted!

BadRabbit Ransomware

BadRabbit Ransomware

Bad Rabbit

If you access this page your computer has been encrypted. Enter the appeared personal key in the field below.

September · 2017

Locky Ransomware

Locky Ransomware

Important! Important!

All your file are encrypted with RSA-4096 and AES.256 ciphers.

WannaCry Ransomware

WannaCry Ransomware

Hello. Your file, documnts, phot, database, and all the rest arent REMOVED

GlobeImposter Ransomware

GlobeImposter Ransomware

All your files have been encrypted

Dilma Locker Ransomware

Dilma Locker Ransomware

Ooops, todos os seus arquivos foram criptografados

FRansomware

FRansomware

Your computer has been infected by FRansomware!

Hacked Ransomware

Hacked Ransomware

All of your file were protected by a strong encryption with RSA4096

Turkish ApolloLocker Ransomware

Turkish ApolloLocker Ransomware

Turkish ApolloLocker Ransomware

Conficker Ransomware

Conficker Ransomware

Welcome to my Ransomware

Attention! Attention! Attention!

Windows Has Been Banned Ransomware

Windows Has Been Banned

Windows Has Been Banned

Your Windows has been banned and Microsoft has dedected an unsolveable threat…

Nulltica Ransomware

Nulltica Ransomware

Your Files have been blocked

Your file is encrypted (AES 256). You need a individual key to unlock your files

August · 2017

SyncCrypt Ransomware

SyncCrypt Ransomware

YOUR FILES WERE ENCRYPTED

using military grade encryption. The encrypted files have the additional extension .kk. You won’t be able to retrieve your data unless you purchase the software provided by us.

Locky Ransomware Lukitus

Locky Lukitus Ransomware

All of your files are encrypted with RSA-2048 and ciphers. More information about RSA and AES can be found here

PHP EV Ransomware

PHP EV Ransomware

Your Site is locked with Lalabitch Custom encryption methode, Please pas 0,5 btc to Mailadress frp encryption key, or else, in 12 hours all of your files in this website will be deleted

IsraBye Ransomware

IsraBye Ransomware

What Happened to My Computer

All Your files and data are Fucked For Ever!

Locky Ransomware

Locky Diablo6 Ransomware

All your files are encrypted with RSA-2048 and AES-128 ciphers.

Juli · 2017

GlobeImposter Ransomware

GlobeImposter Ransomware

All your files have been encrypted!

Reyptson Ransomware

Reyptson Ransomware

Como recuperar tus ficheros del cifrador Reyptson

GhostCtrl Android Ransomware

GhostCtrl Ransomware

Ability to root infecte Android devices;Communicates with a remote C&C server;Control the Wi-Fi state

Exte CryptoMix Ransomware

Exte CryptoMix Ransomware

Hello! Attention! All Your data was encrypted!

LeakerLocker Ransomware

LeakerLocker Ransomware

All personal data from you smartphone has been transfered to our secure cloud.

Juni · 2017

CRBR Ransomware

CRBR Ransomware

Can’t you find the necessary files?

Is the content of your fiels not readable?

PSCrypt Ransomware

PSCrypt Ransomware

To recover data you need decryptor.

We can decrypt one file in quality the evidence that we have the decoder.Attention!

Petya Ransomware

Petya Ransomware

“Ooops, Your Files Have Been Encrypted!!”

If you seen this text, then your files are no longer accessible, because they have been encrypted.

Shifr Ransomware

Shifr Ransomware

Your files have been encrypted

Koler Android Ransomware

Koler Android Ransomware

FBI, Department of Justice

As a result of full scanning of your device, some suspicious files habe been found and your attendance of the forbidden pornographics sites has been fixed. For the reason your device has been fixed.

Wana Decrypt0r Trojan-Syria Editi0n

Wana Decrypt0r Trojan-Syria Editi0n

“Ooops, Your Files Have Been Encrypted!!”

What Happened To My Computer? your important files are encrypted

Locky Ransomware

Locky Ransomware New

Neue Variante des Locy “Important Imformation!!”

All of your files are encrypted with RSA-2048 ad AES-128 ciphers. More information about RSA and AES can be found here_

Erebus Ransomware

Erebus Ransomware

“Warning!!”

Your documents, photos, database, important files have been encrypted! If you modify any file, it may cause make youcannot derypt!!!

Executioner Ransomware

Executioner Ransomware

“Oops all of your files Are safely Ebcypted!!!”

GPAA Ransomware

GPAA Ransomware

Congradulations! Now you are a member of GPAA(Global Poverty Aid Agency).We need bitcoins,our crowdfunding goal is to get 1000 BTCs. 1 BTC for 1 CHILD!

MacRansom Ransomware

MacRansom

Mai · 2017

SambaCry Ransomware

SambaCry Ransomware

Eine kürzlich entdeckte, sieben Jahre alte Lücke im Linux-Datenaustauschdienst Samba ab Version 3.5.0 erlaubt Angreifern das Ausführen von beliebigem Schadcode (CVE-2017-7494).

XData Ransomware

XData Ransomware

YOUR IMPORTANT FILES WERE ENCRYPTED on this Computer: documents, databases, photos, vidos, etc-

Uiwix Ransomware

Uiwix Ransomware

ALL YOUR PERSONAL FILES ARE DECODED

BTCWare Ransomware

BTCWare Ransomware

Warning

All your files habe been encrypted with AES. If you want to restore them, use this instructions:…

WannaCry Ransomware

WannaCry Ransomware

Ooops, your important filed are encrypted

If you see this text, but don’t see the “Wana Decrypt0r” window, then your antivirus removed the decrypt software or you deleted it from your computer.

Jaff Ransomware

Jaff Ransomware

Files are encrypted!

Tp decrypt flies you need to obtain the private key. The only copy of teh provate key, which allow you to decrypt your files, is located on a secret server in the Internet.

RSAUtil Ransomware

RSAUtil Ransomware

Hello my friend!

All filed on your PC encryphted! my email:helppme@india.com or hpl1112@aol.com.

Amnesia Ransomware

Amnesia Ransomware

All your files have been encrypted due to a security problem with your PC.Data recovery requires a decryptor. (https://www.bleepingcomputer.com/forums/t/646208/amnesia-ransomware/)

CryptoMix Ransomware

CryptoMix Ransomware

All files are encrypted!

All files are encrypted due to a security problem with your PC. If you want to restore them, write us to the e-mail shield@usa.com.

April · 2017

Karmen Ransomware

Karmen Ransomware

All files are encrypted! Please follow the mind. In order to get the key to decrypt send this amount to our wallet Bitcpon. Decrypt files automatically. Interference with the program – can leave you without files.

Matrix Ransomware

Matrix Ransomware

Die Erpresser drohen damit, dass alle 12 Stunde, die ohne Zahlung des Lösegeldes verstreichen, sich dieses um 100 Dollar erhöht. Dem Opfer bleiben insgesamt 96 Stunden, bevor die Dateien – so die Drohung der Cybergangster – für immer gelöscht werden.

Mole Ransomware

Mole Ransomware

All your important files were encrypted on this computer. You can verify this by click on see files an try open them.

RensenWare Ransomware

RensenWare Ransomware

Minamitsu “The Captain” Murasa encrypted your precious data like documents, musics, pictures, and some kinda project files. it can’t be recovered without this application because they are encrypted with highly strong encryption algorithm, using random key.

LMAOxUS Ransomware

LMAOxUS Ransomware

You’ve been rekt by LMAOxUS. your Personal Identifier is 1111111111. Keep it handy if you want your data. Visit …. for more info.Your expiration date is: 4/6/2017 10:08:41 AM

UEFI Ransomware

UEFI Ransomware

!!WE NEED ALL YOUR PARTY INVITES!!

Sanctions Ransomware

Sanctions Ransomware

What happend with my files? – How i can restor my files? – BTC Guide

März · 2017

Strain Android Ransomware

Strain Android Ransomware

Once the app has admin rights, it locks the user’s screen with the message below, telling users they have to pay 500 Russian rubles (around $8-$10).

PyCL Ransomware

PyCL Ransomware

Your Personal Files Are Encrypted – Your documents, photos, databases and other important files have been encrypted with strongest encryption and unique key, generated for this computer. Private decryption key is stored on a secret Internet server and nobody can decrypt your files until you pay and obtain the private key.

Ransomware Strains

Ransomware Strains

OWNED BY MAFIA MALWARE INDONESIA

LLTP Ransomware

LLTP Ransomware

Unfortunately, you are hacked. What happend to my files

Polski Ransomware

Polski Ransomware

Nie możesz znaleźć potrzebnych plików na dysku twardym ?Zawartość Twoich plików jest nie do otwarcia?Jest to skutek działania programu który zaszyfrował większość Twoich danych przy pomocy silnego alogrytmu AES-256, używanego min. przez służby mundurowe do zatajania danych przesyłanych drogą elektroniczną. Twoje zdjęcia, faktury, bazy danych zostały zaszyfrowane !!

Kirk Ransomware

Kirk Ransomware

Decrypting your files is easy. Take a deep breath and follow the steps below.

Revenge Ransomware

Revenge Ransomware

All your files were encrypted using REVENGE Ransomware

PetrWrap Ransomware

PetrWrap Ransomware

All your file system has been encrypted

Mill Ransomware

Mill Ransomware

All you documents, photos, databases and other important data has been encrypted

Slocker Ransom Android

Slocker Ransom Android

Asus Zenfone 2 (5 devices),LG G4,Lenovo A850,LenovoS90 (2 devices),Nexus 5 (2 devices),Nexus 5X,Oppo N3,OppoR7 plus,Samsung Galaxy A5 (2 devices),Samsung Galaxy Note 2 (2 devices),Samsung Galaxy Note 3,Samsung Galaxy Note usw. 4,3,devices),Samsung Galaxy Note 5,Samsung Galaxy Note 8,Samsung Galaxy Note Edge,Samsung Galaxy S4 (5 devices),Samsung Galaxy S7,Samsung Galaxy Tab 2 (2 devices),Samsung Galaxy Tab S2,Xiaomi Mi 4i,Xiaomi Redmi,ZTE x500,vivo X6 plus

RanRan Ransomware

RanRan Ransomware

Congratulations!!! Welcome to my Ransomware!Cannot you find the files youneed?

Cerber Ransom Android

Cerber Ransom Android

Cant you necessary files? Is the content of your files not readable?

Februar · 2017

Crypt0L0cker Ransomware

Crypt0L0cker Ransomware

Attenzione – abbiamo criptato vostri file con il virus Crypt0L0cker

Unlock26 Ransomware

Unlock26 Ransomware

Your data was locked! To unlock you Data follow the instructions below

Database Ransom

Database Ransom

WARNING – SEND 0.2 BTC TO THIS ADDRESS 1Kg9nGFdAoZWmrn1qPMZstam3CXLgcxPA9 AND GO TO THIS SITE https://sognd75g4isasu2v.onion/ TO RECOVER YOUR DATABASE! SQL DUMP WILL BE AVAILABLE AFTER PAYMENT! To access this site you have use the tor browser https://www.torproject.org/projects/torbrowser.html.en

Lockdroid Android

Lockdroid Android

Smartphone locked by a Android.Lockdroid.E ransomware version that uses QQ as a contact method

macOS Patcher Ransomware

macOS Patcher Ransomware

What happened to your files ?All of your files were protected by a strong encryption method.

Trump Locker Ransomware

Trump Locker Ransomware

“YOU ARE HACKED!!” – Your personal files are encrypted

Hermes Ransomware

Hermes Ransomware

Your important files are encrypted

SerbRansom Ransomware

SerbRansom Ransomware

Your files has been encrypted with Serbransom 2017!

Cerber Ransomware

Cerber Ransomware

Your documents, photos, databases and other important files have been encrypted!

DynA-Crypt Ransomware

DynA-Crypt Ransomware

All your important filers are encrypted – Your computer has been locked

Serpent Ransomware

Serpent Ransomware

Your documents, photos, videos, databases and other important files have been encrypted!The files have been encrypted using AES256 and RSA2048 encryption (unbreakable)

Erebus Ransomware

Erebus Ransomware

Data crypted

Every important file (documents,photos,videos etc) on this computer has been encrypted using an unique key for this computer.

Koolova Ransomware

Koolova Ransomware

Hey gay, welcome to use YourRansom. Do you like this joke? Contact me to decrypt your files, it’s free! Email: i@bobiji.com

Spora Ransomware

Spora Ransomware

MalwareHunter cites one case where the Spora gang has offered a 10% discount to a company that suffered Spora infections on more than 200 devices.

Android Ransomware Borrows

Android Ransomware Borrows

Lockdroid displays ransom note as 2D barcode

Jisut_Ransomware

Jisut Ransomware

Die Ansage auf Chinesisch gibt zu verstehen, dass das Entsperren 40 Yuan (etwa 5,50€) kostet.

KeRanger/KillDisk

KeRanger/ KillDisk Ransomware

Linux und MacOS Ransomware – What happened to your files ?

All of your files were protected by a strong encryption method.

What do I do ?.

RANSOM_NETIX

NETIX Ransomware

Locked – Data on your device has been locked.

Januar · 2017

Charger Ransomware

Charger Ransomware

Android Ransomware – Der Erpressungstrojaner wurde auch einige Tage lang über den Google Play Store verbreitet.

Satan Ransomware

Satan Ransomware

!!! What happened to my files?

All of your personal files were encrypted using AES-256 and RSA-2048

Marlboro Ransomware

Marlboro Ransomware

!!! IMPORTANT INFORMATION !!!

All of your files are encrypted with RSA-2048 and AES-128 ciphers.More information about RSA and AES can be found here:

Globe3

Globe3 Ransomware

Your files are encrypted!

FireCrypt

FireCrypt Ransomware

Use with caution! This is pretty fucked up shit.

Merry-X-Mas Ransomware

Merry-X-Mas Ransomware

Warning Message!!

ALL COMPUTER DATA ENCRYPTED

Dezember 2016

Popcorn Ransomware

Popcorn

Warning Message!!

We are sorry to say your computer and your files have been encrypted.

Goldeneye

Goldeneye

Bitte aktivieren Sie die Bearbeitungsfunktion um das Kompetenzprofil anzuzeigen

November 2016

Ransoc

Ransoc

PENALTY Notice!

Fantom

Fantom

Attention!

All your files have been encrypted.

Oktober · 2016

Xpan

Xpan

Atencao!

Todos seus arquivos foram criptografados;

Utilizando criptografia impossivel a recuperacao dos arquivos

sem a chave correta para recuperacao dos dados

September · 2016

HDDCryptor

HDDCryptor

Your HDD Encrypted By AES 2048Bit send 1BTC Per HOST to My Bitcoin Wallet , then we give you Decryption key For Your Server HDD!! My Bitcoin Wallet Address : (removed) We Only Accept Bitcoin , it’s So easy! you can use Brokers to exchange your money to BTC ASAP it’s Fast way!

Locky - Stealth Autopilot

Locky – Stealth Autopilot

!!! WICHTIGE INFORMATIONEN !!!! Alle Dateien wuden mit RSA-2048 und AES-128 Ziffern verschlüsselt.

CryLocker

CryLocker

YOUR DOCUMENTS, DATABASES, PROJECT FILES, AUDIO AND VIDEO CONTENT AND OTHER CRITICAL FILES HAVE BEEN ENCRYPTED WITH A PERSISTENT MILITARY-GRADE CRYPTO ALGORITHM!!!

Fsociety Locker

Fsociety Locker

You will need to make a Payment of 5 Bitcoins within

then next 24 Hours or Ransome goes to 10 Btc more

daily Your File System has been encrypted using

state of the art Technology

Nullbyte

Nullbyte Ransomware

Die Ransomware Nullbyte verschlüsselt sämtliche Dateien des Opfers und lädt außerdem Screenshots des Opfers auf den Command-and-Control der Ransomware.

August · 2016

Fairware

Ransomware – Fairware

Hi, please view here: hxxp://pastebin.com/raw/jtSjmJzS for information on how to obtain your files!

DetoxCrypto

DetoxCrypto

We are all Pokemons

YOUR DOCUMENTS, PHOTOS, DATABASES AND OTHER IMPORTANT FILES HAVE BEEN ENCRYPTED AND A UNIQUE UNLOCK KEY IS GENERATED !!

TorrentLocker 2

TorrentLocker 2

Warnung zur Zeit in italienischer Sprache verfasst, weitere Instruktionen enthalten

Smart-Home Ransomware

Smart-Home Ransomware

You Suck

pay 1 Bitcoin to

get control

back

Hitler-Ransomware

Hitler-Ransomware

Das ist ein Test besser gesagt

ein HalloWelt copyright HalloWelt 2016

:d by CoolNass Ich bin ein Pro

fuer Tools für Windows

Cerber2

Cerber 2

Dem Opfer wird mitgeteilt, dass seine Dokumente, Fotos, Datenbanken und andere wichtige Dateien jetzt verschlüsselt sind!

Juli · 2016

PowerWare

PowerWare

Für die Freigabe des Systems, sowie der Wiederstellung der verschlüsselten Dateien verlangen die Kriminellen ein Lösegeld von ca. 500 USD in Form der Internetwährung Bitcoins.

Bart

Bart

Bart scannt das System und packt die Daten eines Ordners in passwortgeschützte Zip-Archive. Für die Wiederherstellung der passwortgeschützen Daten verlangen die Kriminellen saftige 3 Bitcoins, was umgerechnet ca. 1700 Euro ausmacht.

ranscam

RanScam

*** ATTENTION! ***

Your files have been encrypted virus RanScam.

Your Files Have Moved To Hidden Partition And Crypted

MicroCop

MicroCop

COMPUTER IS LOCKED

You’ve stolen 48.48 BTC from the wrong people, please be so kind to return them and we will return your files.

EduCrypt

EduCrypt

Well hello there, seems you have a Virus – Die Ransomware EduCrypt basiert auf einer Open Source „Hidden Tear“ Ransomware in abgesteckter Version, die einzig und allein dazu da ist dem Opfer ein Lektion zu erteilen!

Ded Cryptor

Ded Cryptor

Ded Cryptor is watching you – Dieses Jahr nicht lieb gewesen? – This Machine was infected with Ransomware Ded Cryptor.

cryptoroger

CryptoRoger

You have been infekted with CryptoRoger

All your Files are encrypted.

zimbra

Zimbra

Your files are encrypted

Hello, If you want to unsafe your files you should send 3 btc to 1H7brbbi8xuUvM6XE6ogXYVCr6ycpX3mf2 and an email to mpritsken@priest.com with: [public_key_here]

Juni · 2016

RAA

RAA

*** ATTENTION! ***

Your files have been encrypted virus RAA.

For encryption was used algorithm AES-256 is used to protect information of state secrets.

Jigsaw-v2

Jigsaw v2

COMPUTER IS LOCKED

Your files are encrypted you must pay $150 USD ($225 USD after 24 hrs) in Bitcoins to unlock them.

Flocker

Flocker

ATTENTION! YOUR DEVICE HAS BEEN LOCKED REASONS INDICATED BELOW.

BadBlock

BadBlock

BadBlock is on the block!

This machine was infected with ransomware BadBlock.

Black Shades

Black Shades

You have been strucked with BlackShades Crypter

Your files were protected by a strong encryption with RSA 4096.

CryptXXX

CryptXXX

Your files are encrypted

If you do not pay for decrypting until 06/02/2016, the decryption cost will increase2 and will be 1002 USD

Mai · 2016

Cerber

Cerber

CERBER

Your documents, photos, databases and other important files have been encrypted!

To decrypt your files follow the insttructions:

Enigma

Enigma

Dabei werden von dem Verschlüsselungs-Trojaner die Daten über den AES- Algorithmus verschlüsselt und für deren Freigabe ca. 200 USD in Form von Bitcoins von den betroffenen Opfern erpresst.

Mischa

Mischa

Wenn Mischa installiert ist, wird der Trojaner den Computer auf diverse Dateitypen wie nach PNGs, JPGs, DOCXs, sowie EXE-Dateien überprüfen und über den AES-Algorithmus verschlüsseln. Dabei werden den verschlüsselten Dateien vier zufällige Zeichen als Erweiterung angehängt. So wird aus einem Test.jpg – test.jpg.7GP3. In jedem Ordner mit verschlüsselten Dateien wird ein Erpresserbrief in Form von YOUR_FILES_ARE_ENCRYPTED.HTML und YOUR_FILES_ARE_ENCRYPTED.TXT hinterlassen.

Cryptohitman

CryptoHitman

Nach Infektion des Systems versucht die Ransomware CryptoHitman, wie auch schon Jigsaw, seine Opfer zeitlich unter Druck zu setzen. Zudem werden mit Ablauf der gesetzten Frist erst 1000 Dateien und dann zunehmend immer mehr Daten vom System unwiederbringlich gelöscht. Die verschlüsselten Dateien erhalten bei CryptoHitman die Erweiterung .porno. Über diverse Bezahlinformationen hinaus, werden dem Opfer über den Sperrbildschirm diverse Pornobilder präsentiert und das Lösegeld von 0,4 Bitcoin (ca. 150 Euro) für die Freigabe der Dateien von den Kriminellen eingefordert.

April · 2016

7ev3n-HONE$T

7ev3n-HONE$T

HI, YOUR PERSONAL FILES WERE ENCRYPTED BY 7ev3n-HONE$T. All your photos, media, documents, databases, MS Office and other important files were encrypted with strong algorithm.

Dogspectus

Dogspectus

CYBER.POLICE – American National Security Agency

ATTENTION! YOUR DEVICE HAS BEEN LOCKED REASONS INDICATED BELOW.

TeslaCrypt 4.1A

TeslaCrypt 4.1A

NOT YOUR LANGUAGE? USE Google Translate

What happened to your files?

All of your files were protected by a strong encryption with RSA4096

MANAMECRYPT

MANAMECRYPT

Your Computers Files have been Encrypted and Locked!

Your files have been encrypted and are unuseable and inaccessable.

Don’t worry, they’re safe, for now.

AutoLocky

AutoLocky

Locky Ransomware

All of your files are encrypted with RSA-2048 and AES-128 ciphers.

Jigsaw

Jigsaw

Die Ransomware mit Namen „Jigsaw“ verschlüsselt nicht nur etliche Dateiformate wie Dokumente, Video und Photos auf dem System, sondern setzt zudem ein zeitliches Ultimatum von 24 Stunden für die Bezahlung eines Lösegeldes. Darüber hinaus drohen die Kriminellen mit Löschung der Daten, wenn das Lösegeld von 150 USD in Form von Bitcoins, nicht bis zum Ablauf der 24 Stunden bezahlt wird. Nach Ablauf von 72 Stunden sollen dann sogar alle Daten unwiederbringlich gelöscht werden!

Rokku

Rokku

Your file has been locked

In order to unlock your files, follow the instructions bellow:

Download and install Tor Browser

März · 2016

KimcilWare

KimcilWare

WEBSERVER ENCRYPTED

Your webserver files has been encrypted with a unix algorithm encryptor. You must pay 140$ to decrypt your webserver files. Payment via Bitcoin only. For more information contact me at tuyuljahat@hotmail.com

TeslaCrypt 4

TeslaCrypt 4

NOT YOUR LANGUAGE? USE https://translate.google.com

What’s the matter with your files?

Your data was secured using a strong encryption with RSA4096.

KeRanger

KeRanger

TRANSMISSION

A Fast, Easy, and Free BitTorrent Client

Februar · 2016

Locky

Locky

!!! WICHTIGE INFORMATIONEN !!!!

Alle Dateien wuden mit RSA-2048 und AES-128 Ziffern verschlüsselt.

PadCrypt

PadCrypt

Your files and documents have been encrypted!

Your photos, documents, and videos on this computer have been encrypted with AES-256.

UmbreCrypt

UmbreCrypt

Attention!

All your main files were encrypted!

Your personal files (documents, databases, jpeg, docx, doc, etc.) were encrypted.

Januar · 2016

LeChiffre

LeChiffre

Attention!

Your important files (photos, videos, documents, archives, databases, backups, etc.) which were crypted with the strongest military cipher RSA1024 and AES.

Ransom32

Ransom32

ALL YOUR PERSONAL FILES HAS BEEN ENCRYPTED

All your data (photos, documents, databases, etc) have been encrypted with a private and unique key generated for this computer.

Dezember · 2015

DecryptorMax

DecryptorMax

Your personal files are encrypted!

Your documents, photos, databases and other important files have been encrypted using a military grade encryption algorithm.

November · 2015

Linux.Encoder.1

Linux.Encoder.1

Your personal files are encrypted! Encryption was produced using a unique public key RSA-2048 generated for this computer.

Oktober · 2015

Chimera

Chimera

Chimera Ransomware

Sie wurden Opfer der Chimera Malware. Ihre privaten Dateien wurden verschlüsselt und sind ohne eine spezielle Schlüsseldatei nicht wiederherstellbar.

LowLevel04

LowLevel04

Good day, isn’t it?

What happened to your files?

All your files were protected by a strong encryption with RSA-2048seldatei nicht wiederherstellbar.

Android.Lockdroid.E

Android.Lockdroid.E

DEPARTMENT OF JUSTICE FEDERAL BUREAU OF INVESTIGATION FBI HEADQUARTERS WASHINGTON DC DEPARTMENT, USA

As a result of full scanning of your Device, some suspicious files have been found and your attendance of the forbidden pornographic sites has been fixed.

August · 2015

CTB-Locker

CTB-Locker

Your personal files are encrypted by CTB-Locker.

Your documents, photos, databases and other important files have been encrypted with strongest encryption and unique key, generated for this computer.

Juli · 2015

Blue Screen of Death

Blue Screen of Death

If problems continue, disable or remove any newly installed hardware. Disable BIOS memory options such as caching or shadowing.

Mai · 2015

Crypt0L0cker

Crypt0L0cker

WARNING

we have encrypted your files with Crypt0l0cker virus

AlphaCrypt

AlphaCrypt

Alpha Crypt

All your important files areencrypted.

At the moment, the cost of private key for decrypting your files is 0.7 BTC ~=154 USD.

Los Pollos Hermanos

Los Pollos Hermanos

Your important files have been encrypted: photos, documents, videos, etc.

If you want to decrypt your files you must pay the fee of $450 AUD

April · 2015

CryptVault

CryptVault

VaultCrypt [Permission Error: No Key]

Oktober · 2014

Cryptowall 2.0

Cryptowall 2.0

Fax Message [Caller-ID:

You have reveived a 3 pages fax at

August · 2014

Zerolocker

Zerolocker

IMPORTANT! PLEASE READ!

Unfortunately the files on this computer (ie. documents, photos, videos) have been encrypted using an extremely secure and unbreakable algorithm.