Threat Database Ransomware '.drume File Extension' Ransomware

'.drume File Extension' Ransomware

By GoldSparrow in Ransomware

The '.drume File Extension' Ransomware is an encryption ransomware Trojan that was first observed on March 25, 2019, and is used to carry out encryption ransomware attacks that are highly effective. The '.drume File Extension' Ransomware, like most encryption ransomware Trojans, uses a strong encryption algorithm to make the victim's files inaccessible. The '.drume File Extension' Ransomware then demands a ransom payment from the victim in exchange for a decryption key. The '.drume File Extension' Ransomware is a variant of the STOP Ransomware, a malware threat that first appeared in early 2018 and has since received numerous variants, including the '.drume File Extension' Ransomware itself.

How the '.drume File Extension' Ransomware Attacks a Computer

The '.drume File Extension' Ransomware is designed to take the victims' files hostage, using a highly effective encryption algorithm to make the victim's files unreachable and then demanding a ransom payment from the victim. The '.drume File Extension' Ransomware also carries out other operations designed to make it more difficult for the victim to restore any of the data encrypted by the '.drume File Extension' Ransomware attack, including the deletion of the System Restore Points and the Shadow Volume Copies of the victim's data. The '.drume File Extension' Ransomware uses the AES and RSA encryptions to make the victim's files inaccessible, renaming each affected file by adding the file extension '.drume' and additional strings to the file's name. The '.drume File Extension' Ransomware targets the user-generated files, which may include a wide variety of media files, documents, databases, and numerous other data containers. The '.drume File Extension' Ransomware targets the files described below in these attacks:

.jpg, .jpeg, .raw, .tif, .gif, .png, .bmp, .3dm, .max, .accdb, .db, .dbf, .mdb, .pdb, .sql, .dwg, .dxf, .cpp, .cs, .h, .php, .asp, .rb, .java, .jar, .class, .py, .js, .aaf, .aep, .aepx, .plb, .prel, .prproj, .aet, .ppj, .psd, .indd, .indl, .indt, .indb, .inx, .idml, .pmd, .xqx, .xqx, .ai, .eps, .ps, .svg, .swf, .fla, .as3, .as, .txt, .doc, .dot, .docx, .docm, .dotx, .dotm, .docb, .rtf, .wpd, .wps, .msg, .pdf, .xls, .xlt, .xlm, .xlsx, .xlsm, .xltx, .xltm, .xlsb, .xla, .xlam, .xll, .xlw, .ppt, .pot, .pps, .pptx, .pptm, .potx, .potm, .ppam, .ppsx, .ppsm, .sldx, .sldm, .wav, .mp3, .aif, .iff, .m3u, .m4u, .mid, .mpa, .wma, .ra, .avi, .mov, .mp4, .3gp, .mpeg, .3g2, .asf, .asx, .flv, .mpg, .wmv, .vob, .m3u8, .dat, .csv, .efx, .sdf, .vcf, .xml, .ses, .qbw, .qbb, .qbm, .qbi, .qbr , .cnt, .des, .v30, .qbo, .ini, .lgb, .qwc, .qbp, .aif, .qba, .tlg, .qbx, .qby , .1pa, .qpd, .txt, .set, .iif, .nd, .rtp, .tlg, .wav, .qsm, .qss, .qst, .fx0, .fx1, .mx0, .fpx, .fxr, .fim, .ptb, .ai, .pfb, .cgn, .vsd, .cdr, .cmx, .cpt, .csl, .cur, .des, .dsf, .ds4, , .drw, .eps, .ps, .prn, .gif, .pcd, .pct, .pcx, .plt, .rif, .svg, .swf, .tga, .tiff, .psp, .ttf, .wpd, .wpg, .wi, .raw, .wmf, .txt, .cal, .cpx, .shw, .clk, .cdx, .cdt, .fpx, .fmv, .img, .gem, .xcf, .pic, .mac, .met, .pp4, .pp5, .ppf, .nap, .pat, .ps, .prn, .sct, .vsd, .wk3, .wk4, .xpm, .zip, .rar.

Dealing with a '.drume File Extension' Ransomware Infection

The '.drume File Extension' Ransomware delivers a ransom note to the victim. The '.drume File Extension' Ransomware's ransom note is contained in a text file named '_open_.txt' that will appear on the affected computer's desktop and opens automatically after the '.drume File Extension' Ransomware has finished encrypting the victim's data. The ransom note itself demands a ransom payment of at least 300 USD via cryptocurrency and that the victim connects to the attackers via the email address 'blower@firemail.cc'. Computer users must refrain from paying the '.drume File Extension' Ransomware ransom or contacting the criminals responsible for the '.drume File Extension' Ransomware attack. The best protection against the '.drume File Extension' Ransomware and similar threats is to have the capacity to restore any data that was compromised in the attack. This is why the best protection against the '.drume File Extension' Ransomware and similar threats is to have backup copies of all files stored on the cloud or an external device.

Trending

Most Viewed

Loading...