Author Topic: Tesla Crypt 3.0  (Read 2516 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
Tesla Crypt 3.0
« on: March 05, 2016, 12:07:52 PM »
Last week my PC was infected by the well known TeslaCrypt-Trojan - but with version 3, which checks all volumes on my PC for ".jpg" and all Windows-Office 365-files, encrypting these files and adding an ".mircro"-ending. In my case for example a data-SSD with about 10.000 pictures in JPEG and RAW-Format was encrypted, so the files no longer can be used.

The "funny" thing about this: this infection occured even the total AVAST-Suite was installed and full operational.......

Therefore: is AVAST working on a decrypt-software to make encrypted files usable again?

Anyway: even NORTON and AVG did not mention anything to solve the problem with TeslaCrypt-Trojan-destroyed files.......


Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37698
Re: Tesla Crypt 3.0
« Reply #1 on: March 05, 2016, 12:14:42 PM »
Quote
The "funny" thing about this: this infection occured even the total AVAST-Suite was installed and full operational.......
NO security program have 100% detection or zero false positives

The malware world is not static, malware writers constantly change or create new versions to avoid detection



Best solution is BACKUP, BACKUP, BACKUP     ;)






Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37698
Re: Tesla Crypt 3.0
« Reply #2 on: March 05, 2016, 12:16:38 PM »
We can help you remove the malware here .... but your files are gone   :'(


Follow instructions here and you get assistanse >> https://forum.avast.com/index.php?topic=53253.0


REDACTED

  • Guest
Re: Tesla Crypt 3.0
« Reply #3 on: March 05, 2016, 04:35:48 PM »
What is the extension of your encrypted files?

REDACTED

  • Guest
Re: Tesla Crypt 3.0
« Reply #4 on: March 06, 2016, 03:54:01 PM »
What is the extension of your encrypted files?

Have a closer look to my posting and you will find the answer.

REDACTED

  • Guest
Re: Tesla Crypt 3.0
« Reply #5 on: March 06, 2016, 04:07:35 PM »
My personal problem with the about 10.000 corrupted files is solved: what I forgot was the fact, I made two backups in the nearer past, one on my NAS (Fritz!Box), one on a blue-ray-disk. So most of my pictures are saved well.

But the bad thing is: the TeslaCrypt-3.0 does NOT change it's appearance to hide and unfortuneately the AVAST-Suite failed to protect my PC from beeing infected.

Therefore the AVAST-producers should care for a decrypting-tool of this special encrypted files.

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: Tesla Crypt 3.0
« Reply #6 on: March 06, 2016, 04:12:17 PM »
avast is currently working on a detection tool for it.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37698
Re: Tesla Crypt 3.0
« Reply #7 on: March 06, 2016, 04:15:06 PM »
still waiting for the requested logs if you want help removing it