What's new

PC App Kaspersky ShadeDecryptor Ransomware Tool (2020)

The Real One

Forum Expert
Joined
May 8, 2013
Posts
2,009
Reaction
15,463
Points
2,487
Age
32
1.png

DESCRIPTION.png

ShadeDecryptor is a decryptor tool that can help people get back their files encrypted by all strains of Shade/Troldesh ransomware, no matter which version of Shade got them into trouble. Shade, also known as Troldesh, is nasty crypto that began spreading back in 2015. It encrypted office documents, pictures, and archives (as well as some other types of files) and then asked victims to pay for decryption. Different strains used fancy filenames such as breaking_bad and da_vinci_code. Shade also brought friends along — it downloaded other malware after it encrypted everything it wanted.

The Trojan-Ransom.Win32.Shade malware encrypts user files and makes them impossible to use. With Kaspersky ShadeDecryptor user can try to decrypt files with the following extensions:
  • xtbl,
  • breaking_bad;
  • ytbl;
  • heisenberg;
  • better_call_saul;
  • The chickens;
  • da_vinci_code;
  • magic_software_syndicate;
  • windows10;
  • windows8;
  • no_more_ransom;
  • tyson;
  • crypted000007;
  • crypted000078;
  • dexter;
  • miami_california;
  • rsa3072;
  • decrypt_it.
The utility searches for the decryption key in its database. If the key exists in the database, the files are decrypted. If the key is missing, the utility sends a request to the server to check if additional keys are available. User's computers must be connected to the Internet.

To avoid infection:
download and install the Kaspersky Internet Security application which allows user to configure protection against ransomware and programs that block the screen;
use the recommendations in this article.

How to decrypt files using Kaspersky ShadeDecryptor:
  1. Download and extract archive;
  2. Run the ShadeDecryptor.exe file on the infected computer;
  3. Run the Kaspersky ShadeDecryptor utility;
  4. Read the license agreement and click Accept;
  5. Click Change parameters;
  6. Select the disks to scan and delete encrypted files after decryption;
  7. Click on OK;
  8. Click on Start scan;
  9. Specify the path to an encrypted file. If the utility cannot determine the infection identifier, it will prompt the user to specify the path to the Readme.txt file;
  10. The utility will decrypt the files and delete the encrypted copies. To consult:
    • Information on the analysis performed, click Details;
    • The history of all analyzes, at the top right of the window, click on Report.
  11. Good luck
SYSTEM REQUIREMENTS.png

AJoVv.png

INSTALL NOTES.png

1. Extract and run the Program file.
2. Enjoy:)
SCREENSHOOT.png

1.png

2.png

virus report.png

Virus free! 100% clean!

File: ShadeDecryptor.exe

You do not have permission to view the full content of this post. Log in or register now. 01/73
MD5: F3C55EB450A74C7D3698326D3EDC04F2
SHA1: 174895256F58E738DC8908F28F3E30DD714764B3
SHA256: B6C2078342340DBCD52D79B818E3758997F3065463C1031666E4C0AE0F25C404

Kind regards,Mherbin Team Anonymous
Dont, Forget To Say Thanks.
(y)
FILE INFO.png

1.File Type: rar
2.File Size: 2.14 MB
DOWNLOADLINK.png

You do not have permission to view the full content of this post. Log in or register now.
 

Attachments

Last edited:
Wow.. Meron na pala ganito si kapersky.. salamat.. big help sa mga users naDecrypt yung mga diskdrive.
 
Back
Top