Good news for the victims of the ZQ Ransomware, security experts at Emisisoft have released a free decryptor tool.
Good news for the victims of the ZQ Ransomware, security experts at Emisisoft have released a free
ZQ Ransomware infected users in the US, India, Polland, Brazil and the UK.
The ZQ Ransomware encrypts victim’s files using the Salsa20 and RSA-1024 algorithms. The malware adds the extension “.[w_decrypt24@qq.com].zq” to the encrypted files.
The ransomware drops a ransom note “{HELP__DECRYPT
“Below the text of the ransom note “All of _our files are encr_pted* to decr_pt them write me to email::w_decrypt24@qq.com
Your key:
[

In order to decrypt the files, victims need to provide an encrypted file and original file to decrypt. The Decryptor tool is available at the following link:
https://www.emsisoft.com/decrypter/zq
Below the step by step procedure:
- IMPORTANT! Make sure you remove the malware from your system first, otherwise it will repeatedly lock your system or encrypt files.
- Download the free Emsisoft Decrypter for ZQ.
- Run the executable and confirm the license agreement when asked.
- Click “Start” to decrypt your files. Note that this may take a while.
- All done! Gotta crypt ’em all!
|
(SecurityAffairs – ransomware, decryptor)