Threat Database Ransomware AXLocker Ransomware

AXLocker Ransomware

The AXLocker Ransomware is a threatening tool, created specifically to lock the data of its victims. When the threat infects a computer, it will scan the files stored on it and encrypt them with a strong cryptographic algorithm. Documents, PDFs, databases, images, photos, archives and other file types will be encrypted and left in an unusable state. The operators of the AXLokcer Ransomware will then try to extort the impacted users for money.

Typically, ransomware threats use a specific file extension to mark the files it locks. The chosen extension will be attached to the original names of the targeted files. However, the AXLocker, Ransomware doesn't modify the file names in any way and leaves them completely intact. The threat's ransom note with instructions for the victims is displayed in a dedicated pop-up window.

The ransom-demanding message states that victims have a limited amount of time to pay a ransom and receive a decryption key to unlock the files. A timer in the pop-up window will countdown the remaining time. According to the note, when the time runs out, the unique decryption key for the victim will be deleted from the server of the cybercriminals. The hackers also claim that turning off the impacted computer will result in severe damage to the affected files. To obtain additional instructions, users are expected to message the 'anoynmous.axo@proton.me' email address and provide the unique ID string that was assigned to their infected systems.

The full text of AXLocker Ransomware's note is:

'WARNING!!
Private key will be deleted in:

Your documents, photos, databases and other important files have been encrypted with strongest encryption and unique key, generated for this computer. Private decryption key is stored on a secret Internet server and nobody can decrypt your files until you pay and obtain the private key. The server will eliminate the key after a time period specified in this window.

Warning!!

- Do not turn off the ransomware, if you do so the private key will be deleted.

- Do not turn off the computer.

How can i decrypt my files?
Send email to: anoynmous.axo@proton.me with your personal id
Once you will send the email you have to wait 48 Hours
After 48 Hours we will send you a decryption program with your decryption key

Your unique personal ID:'

Trending

Most Viewed

Loading...