Featured

Published on April 30th, 2020 📆 | 5996 Views ⚑

0

Shade Ransomware Decryptor can now decrypt over 750K victims


english text to speech

Kaspersky has released an updated decryptor for the Shade Ransomware (Troldesh) that allows all victims who have their files encrypted to recover them for free.

Shade Ransomware, otherwise known as Troldesh, is an old ransomware that has been infecting victims since 2014 and was known to be the most distributed ransomware via email.

Last weekend, the Shade Ransomware operators announced that they had shut down their operation at the end of 2019 and were now releasing their master keys and over 750,000 decryption keys for their victims.

Kaspersky, who released a decryptor for older versions of Shade, has now updated its decryptor to support all of the released keys so that all victims can decrypt their files for free.

Decrypting the Shade Ransomware

If you have been infected with the Shade Ransomware, you can now decrypt your files for free by downloading Kaspersky's ShadeDecryptor onto the machine that contains your encrypted files.

The current extensions supported by the decryptor are:

.xtbl
.breaking_bad
.ytbl
.heisenberg
.better_call_saul
.los_pollos
.da_vinci_code
.magic_software_syndicate
.windows10
.windows8
.no_more_ransom
.tyson
.crypted000007
.crypted000078
.dexter
.miami_california
.rsa3072
.decrypt_it

Once downloaded, start the program and agree to the license agreement and the main interface will appear.





ShadeDecryptor
ShadeDecryptor

When you are ready to decrypt your files, click on the Start Scan button and the decryptor will ask you to select an encrypted file.

Once selected, the decryptor will look for your decryption key, and when found, begin to decrypt your files.

Decrypting files
Decrypting files

When done, your encrypted files will now be decrypted, as seen below.

Encrypted Folder
Encrypted Folder
Decrypted Folder
Decrypted Folder

After you have decrypted your files and determined that they are opening properly, you can delete the leftover encrypted files.

For those who need help getting started using the decryptor, please read this page first, and if that does not help, feel free to ask here or contact Kaspersky with detailed info on what the problem is.

Source link

Tagged with:



Comments are closed.