Threat Database Ransomware File Informer Ransomware

File Informer Ransomware

By GoldSparrow in Ransomware

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 1,376
First Seen: June 2, 2017
Last Seen: September 17, 2022
OS(es) Affected: Windows

The File Informer Ransomware is an encryption ransomware Trojan that was first detected on May 31, 2017. The File Informer Ransomware carries out a typical ransomware Trojan attack, encrypting the victims' files and then demanding a ransom payment by display a ransom note on the victim's computer. The File Informer Ransomware uses the AES encryption to make the victim's files inaccessible. The File Informer Ransomware's ransom amount is $55 USD to be paid using BitCoins. Unfortunately, the files encrypted by the File Informer Ransomware attack are not recoverable. The File Informer Ransomware may be delivered to victims through the use of corrupted email attachments delivered in spam email campaigns. These email messages will use social engineering tactics to trick the victim into believing that the email was sent by a trusted source such as a bank or a social media platform.

The File Informer Ransomware Favors the Color Scheme of VaultCrypt on Its Message

The files encrypted by the File Informer Ransomware attack will have the file extension '.brickr' added to the end of each file's name. This has led to the File Informer Ransomware being referred to as the 'Brickr Ransomware.' This term may come from the idea of a 'bricking' an electronic device, which means that its hardware remains intact, but the device becomes unusable permanently due to a software problem. The File Informer Ransomware carries out a similar tactic, making the victim's data completely unusable, even if the infected operating system continues to operate as normal. The File Informer Ransomware's ransom note uses a color scheme that is very similar to another known ransomware Trojan, VaultCrypt. The File Informer Ransomware ransom note contains the following text:

'!!!!!!!!!!!!!! READ THIS TEXT CAREFULLY !!!!!!!!!!!!!!
All of your personal files (documents, photos, videos,archives and other files) were locked and are not usable at the moment. To verify this fact, try to open some of your files and use them.
To get your files back you need to buy a secret key. We are the only people who have the secret key. Nobody but us can restore your files. Not even antiviruses or IT experts .
To verify this fact, we can decrypt 1 of your files for free. Send us the file to email shown below (Contact Email:) and we will send it unlocked back to you for free.
To buy the decryption key and get your files back:
1)send the price shown below (Price: ... USD) to the Bitcoin address shown below (Bitcoin Address: ..)..
2)After you complete the payment, please contact us via email (Contact Email:) shown below. Email example: "Hello I need to decrypt my files. My ID is :(ID shown below)". We will send you the key within 12 hours.
3) After you get your key, click "Unlock Files" button and enter the key. Your files will get unlocked.
Bitcoin is a type of virtual currency that is easily obtainable.
1) Register your own Bitcoin wallet at: hxxps://blockchain.info/wallet/#/signup
2) Buy bitcoins on one of the following websites:
- hxxp://localbitcoins.com
- hxxp://coincafe.com
- hxxp://bitquick.co
Or visit hxxp://howtobuybitcoins.info for more information and help.
3) Send the bitcoins to our address shown below.
1F5yPatW4iwehcvYn7KSqqHs1NpWBHHMqV'

The File Informer Ransomware ransom note also will be found in a text file named 'READ_DECRYPT_FILES.txt' that is dropped on the infected computer's Desktop.

Dealing with a File Informer Ransomware Infection

The payment of the File Informer Ransomware ransom is not a recommended solution. This only allows con artists to continue developing and creating ransomware Trojans like the File Informer Ransomware. Furthermore, con artists seldom will keep their promise to deliver the decryption key after the payment is carried out. Instead, you should have backup copies of all files, allowing computer users to recover easily after a File Informer Ransomware infection by simply restoring the affected files from a backup. Having file backups, combined with a reliable security program that is fully up-to-date, is the best protection against the File Informer Ransomware and similar threats.

Trending

Most Viewed

Loading...