Threat Database Ransomware Enfp Ransomware

Enfp Ransomware

Enfp is a ransomware threat that has been unleashed in the wild. As most malware of this type, the Enfp Ransomware is equipped with an encryption routine that will lock the files stored on the compromised system and render them both inaccessible and unusable. The goal is to then extort the victim for money in exchange for the potential restoration of the data. Analysis of the Enfp Ransomware has revealed that it is another variant from the rather prolific STOP/Djvu Ransomware family essentially.

Functionally, the Enfp Ransomware is identical to other threats from the family, with its most distinguishing feature being the unique extension that is used to mark all encrypted files. In this case, the ransomware threat will append '.enfp' to the original names of the affected files. After the encryption process has been completed, the Enfp Ransomware will proceed to generate ransom-bearing files named '_readme.txt' in all folders containing the locked data.

The ransom note contains the typical instructions found in nearly all STOP/Djvu variants. The cybercriminals state that they want to receive the sum of $980 to provide the decryption key and software tool to their victims. As close to a thousand dollars is not a sum that many can just provide immediately, the hackers try to convince the affected users to submit to their demands by offering to slash the price in half to $490 if communication is initiated within the first 72 hours of the ransomware infection.

Victims of the Enfp Ransomware also are allowed to attach a single file to their message that will supposedly be decrypted for free. The two email addresses provided by the hackers are 'helpteam[@]mail.ch' and 'helpmanager[@]airmail.cc.'

The full text of the note displayed by Enfp Ransomware is:

'ATTENTION!

Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
hxxps://we.tl/t-NuEqGxqRg2
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

To get this software you need write on our e-mail:
helpteam[@]mail.ch

Reserve e-mail address to contact us:
helpmanager[@]airmail.cc

Your personal ID:'

Trending

Most Viewed

Loading...