Our malware team recently released a decryptor for the Ims00rry ransomware.
If you’re a victim of this ransomware, please download the free decryptor linked below and DO NOT PAY the ransom. A detailed guide is also included.
Technical details
The ransomware encrypts files using AES-128, and does not add an extension. Instead, the text “—shlangan AES-256—” is added to the file contents. The victim is asked to contact the criminals on Telegram.
The ransom note “README” contains the following text:
I am sorry!!!
My friend. I want to start my own business, but i have no money.
All your files photos, databases, documents and other important are encrypted with strongest encryption and algorithms RSA 4096, AES-256.
If you want to restore your files payment and write to Telegram bot
Price decrypt software is $50.
Attention!!!
Do not rename or move the encrypted files.
Bitñoin wàllet:
1tnZbveCXmqRS1gfZSxztG5MbdJhptaqu
Contact Telegram bot:
@Ims00rybot
Emsisoft Enterprise Security + EDR
Robust and proven endpoint security solution for organizations of all sizes. Start free trial