Threat Database Ransomware '.cccmn File Extension' Ransomware

'.cccmn File Extension' Ransomware

By GoldSparrow in Ransomware

The '.cccmn File Extension' Ransomware is an encryption ransomware Trojan that is part of a large family of ransomware Trojans that first appeared in Fall 2018. These Trojans seem to be comprised of code that merges components of the Crysis Ransomware family and the Dharma 2017 Ransomware family. The '.cccmn File Extension' Ransomware was first observed on November 9, 2018, and carries out a typical encryption ransomware scheme, making the victims' files inaccessible and demanding a ransom payment for their return.

How You can Get Infected by the '.cccmn File Extension' Ransomware

The '.cccmn File Extension' Ransomware uses a strong encryption algorithm to make the victim's files inaccessible. Once the '.cccmn File Extension' Ransomware encrypts the targeted files, the victim will no longer be able to access their contents. The '.cccmn File Extension' Ransomware targets the user-generated files in its attack, which may include numerous media files, databases and documents. The data that the '.cccmn File Extension' Ransomware and similar threats will target in these kinds of attacks include:

.jpg, .jpeg, .raw, .tif, .gif, .png, .bmp, .3dm, .max, .accdb, .db, .dbf, .mdb, .pdb, .sql, .dwg, .dxf, .cpp, .cs, .h, .php, .asp, .rb, .java, .jar, .class, .py, .js, .aaf, .aep, .aepx, .plb, .prel, .prproj, .aet, .ppj, .psd, .indd, .indl, .indt, .indb, .inx, .idml, .pmd, .xqx, .xqx, .ai, .eps, .ps, .svg, .swf, .fla, .as3, .as, .txt, .doc, .dot, .docx, .docm, .dotx, .dotm, .docb, .rtf, .wpd, .wps, .msg, .pdf, .xls, .xlt, .xlm, .xlsx, .xlsm, .xltx, .xltm, .xlsb, .xla, .xlam, .xll, .xlw, .ppt, .pot, .pps, .pptx, .pptm, .potx, .potm, .ppam, .ppsx, .ppsm, .sldx, .sldm, .wav, .mp3, .aif, .iff, .m3u, .m4u, .mid, .mpa, .wma, .ra, .avi, .mov, .mp4, .3gp, .mpeg, .3g2, .asf, .asx, .flv, .mpg, .wmv, .vob, .m3u8, .dat, .csv, .efx, .sdf, .vcf, .xml, .ses, .qbw, .qbb, .qbm, .qbi, .qbr , .cnt, .des, .v30, .qbo, .ini, .lgb, .qwc, .qbp, .aif, .qba, .tlg, .qbx, .qby , .1pa, .qpd, .txt, .set, .iif, .nd, .rtp, .tlg, .wav, .qsm, .qss, .qst, .fx0, .fx1, .mx0, .fpx, .fxr, .fim, .ptb, .ai, .pfb, .cgn, .vsd, .cdr, .cmx, .cpt, .csl, .cur, .des, .dsf, .ds4, , .drw, .eps, .ps, .prn, .gif, .pcd, .pct, .pcx, .plt, .rif, .svg, .swf, .tga, .tiff, .psp, .ttf, .wpd, .wpg, .wi, .raw, .wmf, .txt, .cal, .cpx, .shw, .clk, .cdx, .cdt, .fpx, .fmv, .img, .gem, .xcf, .pic, .mac, .met, .pp4, .pp5, .ppf, .nap, .pat, .ps, .prn, .sct, .vsd, .wk3, .wk4, .xpm, .zip, .rar.

The '.cccmn File Extension' Ransomware will mark the files it encrypts with the file extension '.cccmn,' added to the file's name. The '.cccmn File Extension' Ransomware delivers a ransom note in the form of a text file named 'FILES ENCRYPTED.txt,' which contains the following ransom note:

'all your data has been locked by us
You want to decrypt?
Write to email decrypt_arena@india.com'

The '.cccmn File Extension' Ransomware asks the victims to contact the criminals via email merely. When the victims do this, the criminals will respond by demanding a ransom payment for the decryption key needed to restore the compromised data. There's not a good reason that makes the payment of a ransom an advisable action. In most cases, it ends up being a waste of money.

Dealing with a '.cccmn File Extension' Ransomware Infection

Unfortunately, once the '.cccmn File Extension' Ransomware has compromised the victim's files, they will not be recoverable without the decryption key. Therefore, the best that should be done to protect your machine against threats like the '.cccmn File Extension' Ransomware is to have file backups stored in a secure location, such as an external memory device or the cloud. Apart from file backups, a security program that is fully up-to-date should be present in any computer nowadays. While security software will not help in restoring affected files, it will help in the removal of the '.cccmn File Extension' Ransomware threat itself, allowing computer users to recover from an attack from this ransomware threat.

Trending

Most Viewed

Loading...