Threat Database Ransomware Rigd Ransomware

Rigd Ransomware

It appears that cybercriminals are still making new variants based on the STOP/Djvu family. One of the latest to be detected by infosec researchers is named the Rigd Ransomware. Although it lacks any meaningful improvements, the threat is nonetheless capable of causing significant damage to any compromised system. 

By running an encryption algorithm with an uncrackable cryptographic algorithm, it locks the files stored on the infected device, rendering them inaccessible. Each affected file will have '.rigd' appended to its original name as a new extension. Upon encrypting all target files, the Rigd Ransomware drops a ransom note as a text file named '_readme.txt.'

Ransom Note's Details

The ransom note of the Rigd Ransomware is identical to the instructions delivered by other variants from the STOP/Djvu Ransomware family. It tells users that they will have to pay a ransom of $980 if they want to receive the decryption key and tool from the hackers. There is an option to reduce that amount in half. The requirement is for the victims to reach out and establish contact via the provided email addresses during the 72 hours following the Rigd Ransomware infection. 

The email addresses mentioned in the note are 'manager@mailtemp.ch' and 'managerhelper@airmail.cc.' Victims can attach a single encrypted file to their message. The hackers promise to unlock the file for free and return it as a demonstration of their ability to restore the victims' data.  The file, however, must not contain any valuable information.

The full text of the note is:

'ATTENTION!

Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
hxxps://we.tl/t-2zbBkO06mv
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

To get this software you need write on our e-mail:
manager@mailtemp.ch

Reserve e-mail address to contact us:
managerhelper@airmail.cc

Your personal ID:'

Trending

Most Viewed

Loading...