Avast WEBforum

Other => Viruses and worms => Topic started by: zidan4ek on September 09, 2019, 03:03:28 PM

Title: virus .harma
Post by: zidan4ek on September 09, 2019, 03:03:28 PM
Hey.
There is a virus .harma on my PC. Avast Free did not see him. And the files were encrypted.
If I have the source of the exe and tmp files of the virus, can this help you to develop a decryptor? There is also an encrypted file before encryption?
Title: Re: virus .harma
Post by: Pondus on September 09, 2019, 03:45:04 PM
ID Ransomware   https://id-ransomware.malwarehunterteam.com/

No More Ransom   https://www.nomoreransom.org/


Title: Re: virus .harma
Post by: zidan4ek on September 09, 2019, 08:41:59 PM
I tried this, it didn’t help.
The question is, having the original virus, can it not be decrypted? Run it in a sandbox or virtual machine and learn?
Title: Re: virus .harma
Post by: Pondus on September 09, 2019, 08:54:28 PM
The encryption code/key need to be cracked, and those who know how to do that (if possible) is found at the links i gave you

Use backup of your files, you have a Gmail account so you have free online backup at Gdrive and google photos


Encryption 101: a malware analyst’s primer
https://blog.malwarebytes.com/threat-analysis/2018/02/encryption-101-malware-analysts-primer/

Encryption 101: How to break encryption
https://blog.malwarebytes.com/threat-analysis/2018/03/encryption-101-how-to-break-encryption/





Title: Re: virus .harma
Post by: Юлия47 on February 10, 2020, 08:53:35 AM
Pondus, может я не туда смотрю? обаэти сайта отвечают что дешифровщик еще не придумали. покажи мне куда смотреть
Title: Re: virus .harma
Post by: Asyn on February 10, 2020, 09:42:50 AM
Please post English here, else use the forum section for your language.
-> https://forum.avast.com/index.php?board=21.0
Title: Re: virus .harma
Post by: Michael (alan1998) on February 10, 2020, 02:42:03 PM
Pondus, может я не туда смотрю? обаэти сайта отвечают что дешифровщик еще не придумали. покажи мне куда смотреть

Расшифровщик еще не доступен для этого вымогателя.