First of all let's start with "What does ransomware mean?"si"How does this virus behave?“.
Ransomware, is a virus that affects all Windows operating systems, for several years. By his behavior and by problem solving solutions almost non -existent, ramsomware It is one of the most destroying viruses, known until this time. Infect a large number of computers, through accearii and unloading of dubious applications off the websites, then almost irreversibly encrypt files All data stored on the Windows PC hard disk hard disk. Important documents of any kind can be lost, photos, audio files, databases and other files to find hard stored.
Until the beginning of this year, encryption algorithm For most types of ramosomware virus was unknown. A decryption key being almost impossible to create and the attempts of recovery of encrypted files, to which were added various extensions of the virus, were in vain.
Ransomware viruses known until this hour, there are no few. 7ev3n, 8lock8, Alpha, AutoLocky, BitCryptor, BitMessage, Booyah, Brazilian Ransomware, BuyUnlockCode, David, Chimera, CoinVault, Coverton, Crypren, Crypt0L0cker, CryptoDefense, CryptoFortress, CryptoHasYou, CryptoHitman, CryptoJoker, CryptoMix, CryptoTorLocker, CryptoWall 2.0, CryptoWall 3.0, CryptoWall 4.0, CryptXXX, CryptXXX 2.0, Crysis, CTB-Locker, DMA Locker, DMA Locker 3.0, ECLR Ransomware, EnCiPhErEd, Enigma, LNG Locker, Hi Buddy!, HydraCrypt, Jigsaw, JobCrypter, Kerangner, keyholder, KimcilWare, Kriptovo, KryptoLocker, LeChiffre, Locky, Lortok, Magic, Letter Locker, MireWare, Mischa, Mobef, NanoLocker, Nemucod, Nemucod-7z, OMG! Ransomcrypt, PadCrypt, PClock, Powerware, Protected Ransomware, Radamant, Radamant V2.1, Remindme, Rokku, Samas, Sanction, Shade, Shujin, Supercrypt, Surprise, TeslaCrypt 0.x, TeslaCrypt 2.x, TeslaCrypt 3.0, TeslaCrypt 4.0, TrueCrypter, UmbreCrypt, VaultCrypt, WonderCrypter, Xort.
However, there is a good thing, if we can call it that. Great seems to be of these dreams I use the same encryption algorithm, or a very close one, which has suffered only small changes.
For about 2-3 months, a common database is worked, which identifies the types of ransomware viruses, their extensions and the encryption algorithm. At this database works voluntarily, hackers around the world, to stop in the near future this time of virus.
Link to database - This database is maintained by @nyxbone (Twitter)
Careful! If your PC is infected with a ramosomware and you are required money to decrypt files, It is not a good idea to make the paying. It is very possible that even after you pay, the files will continue to be encrypted.