Threat Database Ransomware Ooxa Ransomware

Ooxa Ransomware

Infosec researchers have confirmed another threatening ransomware variant that is a part of the infamous STOP/Djvu malware family. The threat is tracked as the Ooxa Ransomware and is capable of impacting a large set of file types. Victims are likely to find out that they can no longer open any of their documents, PDFs, archives, photos, databases or other important files. The threat actors will then try to extort the affected users for money in exchange for promising to them assistance with the restoration of the locked data.

As part of its invasive actions, the ransomware threat also will add '.ooxa' to the names of the encrypted files. Another change caused by the Ooxa Ransomware is the creation of a text file named '_readme.txt' on the breached devices. The file carries the threat's ransom note with instructions for its victims.

Reading the malware's ransom-demanding message reveals that its operators want to be paid a ransom of $980. This initial amount could supposedly be reduced by 50% if the affected users contact the hackers within 72 hours. Victims also are allowed to send a single file to be unlocked for free. However, the chosen file must not contain any valuable information. The hackers leave two potential communication channels in the form of two email addresses - 'support@bestyourmail.ch' and 'supportsys@airmail.cc.' Victims of malware attacks should always keep in mind that contacting cybercriminals should be regarded as extremely risky. Users could potentially be exposing themselves to additional privacy and security issues.

The message left by Ooxa Ransomware is:

'ATTENTION!

Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
hxxps://we.tl/t-6icnx2ZM3Z
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

To get this software you need write on our e-mail:
support@bestyourmail.ch

Reserve e-mail address to contact us:
supportsys@airmail.cc

Your personal ID:'

Trending

Most Viewed

Loading...