Threat Database Ransomware Lavasky Ransomware

Lavasky Ransomware

Computers infected with the Lavasky Ransomware will be subjected to data encryption that will leave most of the files stored on them in an unusable state. The hurtful threat targets documents, DPFs, archives, databases, images and possibly many other file types. The strong cryptographic algorithm used for the encryption process ensures that victims will not be able to restore their data without assistance from the attackers. Analysis of the Lavasky Ransomware has confirmed that it is a variant from the VoidCrypt Ransomware family.

As part of its actions, Lavasky generates an ID string for the particular victims. This string will be appended to the names of all locked files. In addition, the threat will add an email address ('blackpirate@cock.li') and a new file extension ('.lavasky'). A ransom note will be dropped on the breached devices as a message contained inside a text file named 'unlock-info.txt.'

In their instructions, the operators of the Lavasky Ransomware state that they would only accept ransom payments made using the Bitcoin cryptocurrency. The exact value of the demanded ransom is not mentioned. For further details, victims are directed towards messaging the same 'blackpirate@cock.li' email address or a secondary account at 'coronav2020@cock.li.' The hackers mention that a single encrypted file could be unlocked for free as a demonstration. The chosen file must not exceed 1MB and should not have any important information.

The full text of the ransom note is:

'All your files have been encrypted!

All your files have been encrypted due to a security problem with your PC. If you want to restore them, write us to the e-mail; blackpirate@cock.li
Write this ID in the title of your message : -
In case of no answer in 24 hours write us to theese e-mails: coronav2020@cock.li
You have to pay for decryption in Bitcoins. The price depends on how fast you write to us. After payment we will send you the decryption tool that will decrypt all your files.

Free decryption as guarantee
Before paying you can send us up to 1 file for free decryption. The total size of files must be less than 1Mb (non archived), and files should not contain valuable information. (databases,backups, large excel sheets, etc.

How to obtain Bitcoins
The easiest way to buy bitcoins is LocalBitcoins site. You have to register, click 'Buy bitcoins', and select the seller by payment method and price.
hxxps://localbitcoins.com/buy_bitcoins
Also you can find other places to buy Bitcoins and beginners guide here:
hxxp://www.coindesk.com/information/how-can-i-buy-bitcoins/

Attention!
Do not rename encrypted files.
Do not try to decrypt your data using third party software, it may cause permanent data loss.
Decryption of your files with the help of third parties may cause increased price (they add their fee to our) or you can become a victim of a scam.
'

Trending

Most Viewed

Loading...