The Pooe Ransomware is the latest STOP/Djvu variant to be discovered in the wild. The STOP/Djvu family has remained a popular choice among malware creators and infosec researchers are detecting new variants almost daily. Despite being almost identical to the other variants - the most distinguishing aspect of the Pooe Ransomware is the extension it uses to mark the files it encrypts - the threat is capable of devastating any computer it infects.

Victims of the Pooe Ransomware will notice that nearly all of their personal or work-related files have become inaccessibl suddenly. Databases, archives, documents, PDFs, photos, audio, and video files could all be locked. In addition, the encrypted files will have '.pooe' appended to their original names as a new extension. Upon completing its encryption process, the Pooe Ransomware will then drop a ransom note with instructions for its victims in the form of text files named '_readme.txt.'

Pooe Ransomware's Demands

The note is largely consistent with the demands of all STOP/Djvu variants. The hackers want to receive $980 from their victims if they are to provide them with the decryption keys and tools required for the restoration of the encrypted files. The usual offer to slash the price in half also is present. Users still have 72 hours to send a message to the hackers to get the ransom reduced to $490. A single file can be attached to the message and it will supposedly be unlocked for free and sent back. The two email addresses left as communication channels are '' and ''

Users are strongly discouraged to initiate negotiations with cybercriminals. There are no guarantees that the hackers will keep their end of the deal even if their demands are met. At the same time, the victims of the threat could be exposing themselves to additional security risks.

The full text of Pooe Ransomware's note is:


Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

To get this software you need write on our e-mail:

Reserve e-mail address to contact us:

Your personal ID:'


