Category - Ransomware

FEFG VIRUS (.fefg FILE) RANSOMWARE — FIX & DECRYPT DATA

The Fefg virus is a STOP/DJVU family of ransomware-type infections. This virus encrypts your files (video, photos, documents) that can be tracked by a specific “.fefg” extension. It uses a strong encryption method, which makes it impossible to calculate the key in any way. Fefg uses a unique key for each victim, with one exception: If Fefg cannot establish a connection to its command and control server (C&C Server) before starting the encryption process, it uses the offline key. This key is the same for all victims, making it possible to decrypt files encrypted during a...

FDCV VIRUS (.fdcv FILE) RANSOMWARE — FIX & DECRYPT DATA

The Fdcv virus is a STOP/DJVU family of ransomware-type infections. This virus encrypts your files (video, photos, documents) that can be tracked by a specific “.fdcv” extension. It uses a strong encryption method, which makes it impossible to calculate the key in any way. Fdcv uses a unique key for each victim, with one exception: If Fdcv cannot establish a connection to its command and control server (C&C Server) before starting the encryption process, it uses the offline key. This key is the same for all victims, making it possible to decrypt files encrypted during a...

PAY Ransomware (.PAY File) — Removal Guide

The Pay virus belongs under the Xorist ransomware family. Ransomware of such sort encrypts all user’s data on the PC (images, text files, excel tables, music, videos, etc) and appends its extra extension to every file, leaving the HOW TO DECRYPT FILES.txt text files in each folder with the encrypted files. What is Pay virus? ☝️ A strictly accurate description for the Pay is “a Xorist family ransomware-type malicious agent”. Pay will add its own .Pay extension to the name of every encrypted file. For instance, an image named “photo.jpg” will be renamed to...