All files encrypted to .kcnhkok extension by CTB Locker

Discussion in 'Malware Help (A Specialist Will Reply)' started by psudhakar999, Jan 19, 2015.

  1. psudhakar999

    psudhakar999 Private E-2

    Dear Team,

    Recently We have received mail from below person. After opening .scr file all my files are attacked with extension .kcnhkok mainly txt, pdf, doc, xlsx, jpg, .pst , Asking to pay ransom. Kindly provide some solution as my important files nearly 30000 affected.

    Kindly note upgrades.zip was virus file received in mail

    From:
    Louvenia Burnie (marginality@eriepa.com)


    Message [utf-8] ASCII UTF-8 Traditional Chinese (Big-5) Chinese (Simplified GB) CNS 11643 plane 1 CNS 11643 plane 2 CP 1250 (Windows Latin-2) CP 1251 (Windows Cyrillic) CP 1252 (Windows Latin-1) CP 1257 (Windows BalticRim) CP 1258 (Windows Vietnamese) CP 437 CP 850 (DOS Latin-1) CP 864 (DOS Arabic) CP 866 CP 874 EUC-JP EUC-KR EUC-TW Greek CCITT HZ ISO 2022-JP ("JIS") ISO 2022-KR ("KSC") ISO 5428 ISO 8859-1 (Latin-1) ISO 8859-2 (Latin-2) ISO 8859-3 (Latin-3) ISO 8859-4 (Latin-4) ISO 8859-5 (Cyrillic) ISO 8859-6 (arabic) ISO 8859-7 (Greek) ISO 8859-8 (Hebrew) ISO 8859-9 (Latin-5) ISO-8859-15 (Latin 9) KOI8-R Mac OS Arabic Mac OS Croatian Mac OS Cyrillic Mac OS Farsi Mac OS Greek Mac OS Hebrew Mac OS Icelandic Mac OS Latin-1 Mac OS Roman Mac OS Romanian Mac OS Thai Mac OS Turkish Mac OS Ukrainian Mac Romanian Shift-JIS Thai VISCII Windows Arabic Windows Greek Windows Hebrew Windows Thai Windows Turkish

    To:

    Date:
    Mon, 19 Jan 2015 13:17:56 +0100
    Subject:
    [Falcon Aviation] New fax message GD3S67D02A342
    Fax: +07522-879-194
    Date: 2015-01-18 12:17:44 CST
    Pages: 3
    ID: GD3S67D02A342
    Filename: upgrades.zip

    --
    Falcon Aviation
    Louvenia Burnie
     

    Attached Files:

    Last edited by a moderator: Jan 19, 2015
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am afraid that there is no "fix" for encryption malware. Your only choices are to pay the ransom, which we don't condone, or reinstall your system. :major
     
  3. psudhakar999

    psudhakar999 Private E-2

    Will Reinstall System will work to gain access to my files
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Sorry this happened to you, but it is a good lesson to back up your data.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds