Jump to content

Recommended Posts

  • ExTS Admin
Posted

Victims can now recover their files for free

 

http://img.photobucket.com/albums/v708/starbuck50/free-decrypter-available-for-bart-ransomware-506469-4_zpsjmmexg1o.png

 

Almost a month after security researchers first spotted the Bart ransomware, Jakub Kroustek, a security researcher for AVG, has created a free decrypter for recovering files locked by the Bart ransomware.

 

In the crowded space of today's ransomware landscape, Bart stands apart from the competition for two reasons.

 

First, the ransomware is distributed via one of the largest malware-spreading botnets in the world, the same network that spreads the Dridex banking trojan and the Locky ransomware.

 

Secondly, Bart does not use encryption to lock your data, but merely takes all your files and places them inside a password-protected ZIP archive, deleting the originals.

 

Kroustek discovered that Bart does not use different passwords for all files, but one and the same.

The researcher was able to put together a free decrypter, which victims can use to recover their locked files.

 

How to decrypt files locked by the Bart ransomware

 

Step 1: To use the decrypter, you must first download it from AVG's website.

Once you downloaded the decrypter, just double-click it and launch it into execution.

 

Step 2: Select the hard drive locations where Bart has locked your files in password-protected ZIP files.

 

Step 3: Identify two versions of the same file to compare.

One must be the one locked by Bart while the other must be the original of the same file.

 

This should be pretty easy since Bart does not rename files, but only appends the bart.zip file extension at the end.

 

To find an original file, either use one from your Dropbox account, a file you received via email, or you stored on another computer or portable flash drives.

 

Step 4: Give the decrypter time to compare the two files and identify the ZIP file's password.

After this, the decryption process is a point-and-click experience.

If you need more help, AVG also has a tutorial available.

 

http://img.photobucket.com/albums/v708/starbuck50/free-decrypter-available-for-bart-ransomware-506469-3_zpsjtoec06u.png

 

 

 

Source:

http://news.softpedia.com/news/free-decrypter-available-for-bart-ransomware-506469.shtml

Member of:

UNITE

  • Replies 1
  • Created
  • Last Reply

Top Posters In This Topic

Top Posters In This Topic

Posted

Thanks Pete hope I never have to use it.

Bob

Bob

(bob12a)

My 3D pictures need red cyan glasses to view

medion MD8855,Win 7 IE8, Firefox/3, Avast,MS security essentials, NERO 9,malware bytes.Mailwasher pro ,6.54,Roboform,spybot S&D 1.6, Canon ixus 860 X 2,PS CS5

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...