Threat Database Ransomware Ckae Ransomware

Ckae Ransomware

Cybercriminal groups are still using the notorious STOP/Djvu Ransomware to create more and more destructive malware threats. One such variant that has been identified by infosec researchers is the Ckae Ransomware. At first glance, the threat is practically identical to the rest of the variants from the STOP/Djvu Ransomware family. However, this act should not be taken by computer users as something reassuring - the Ckae Ransomware can overtake any infected system easily and render the files stored there inaccessible completely. It achieves its threatening goal by activating an encryption routing utilizing a powerful cryptographic algorithm, ensuring the affected files will not be unlocked without having the necessary decryption keys.

As part of its activities, the threat also will mark all locked files by appending '.ckae' to their original names. Users also will notice that a new text file has appeared on their devices. The file will be named '_readme.txt' and its role is to carry a ransom note with instructions from the hackers.

Ransom Note's Details

The note reveals a lot of crucial details about the intentions of the attackers. Apparently, to provide affected users with the decryption tool and key that could restore their data, the cybercriminals want to first be paid a ransom of $980. However, if victims act quickly and initiate contact during the first 72 hours of the attack, the price of the ransom is supposed to be reduced by 50% to $490.

If the note is to be trusted, the hackers are also willing to demonstrate their ability to restore the encrypted data. They mention that victims can choose a single locked file and send it to be decrypted for free. As communication channels users are left with two email addresses - 'restorealldata@firemail.cc' and 'gorentos@bitmessage.ch,' and a Telegram account at '@datarestore.'

The full set of instructions left behind by Ckae Ransomware reads:

'ATTENTION!

Don't worry, you can return all your files!
All your files like photos, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
https://we.tl/t-WbgTMF1Jmw
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

To get this software you need write on our e-mail:
restorealldata@firemail.cc

Reserve e-mail address to contact us:
gorentos@bitmessage.ch

Our Telegram account:
@datarestore

Your personal ID:'

Related Posts

Trending

Most Viewed

Loading...