Threat Database Ransomware Fopa Ransomware

Fopa Ransomware

Computer users are under threat of a new variant from the infamous STOP/Djvu Ransomware family. The threat is named Fopa Ransomware and it can render its victim's files both unusable and inaccessible easily. It does so via a strong encryption routine that employs a military-grade cryptographic algorithm. The goal of the attackers is to use the locked data as leverage to extort money from the affected users.

The characteristic that distinguishes the Fopa Ransowmare from other variants from the threatening STOP/Djvu Ransomware family is the extensions it uses to mark each locked file. Indeed, victims will notice that suddenly nearly all of their private or business-related documents, PDFs, archives, databases, etc., now carry an unfamiliar '.fopa' extension. Victims also will notice a new text file named '_readme.txt' that has appeared on their computer. This file contains a ransom note from the attackers detailing their demands.

Ransom Note's Overview

The Fopa Ransomware message states that victims who wish to receive the decryption tool and key necessary for the restoration of their data will need to pay a ransom of $980. However, if they contact the attackers within 72 hours of the malware attack, the price of the ransom will supposedly be reduced by 50% to $490. Victims also are told that a single encrypted file they chose will be unlocked for free. The only listed requirement is for the file not to contain any valuable information. According to the note, Fopa Ransomware's victims can use two email addresses to communicate with the attackers - 'support@sysmail.ch' and 'helprestoremanager@airmail.cc.'

The full text of the note is:

'ATTENTION!

Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
hxxps://we.tl/t-G76puQlxBn
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

To get this software you need write on our e-mail:
support@sysmail.ch

Reserve e-mail address to contact us:
helprestoremanager@airmail.cc

Your personal ID:'

Trending

Most Viewed

Loading...