📜 ⬆️ ⬇️

TeslaCrypt cryptographer repented and laid out the key to decrypt all files

image

The developers of the TeslaCrypt cryptographer unexpectedly turned down all their activities and shared a master key that allows them to decrypt all the files “stolen” by the malware. Malware distributors smoothly switch to other programs, in particular CryptXXX .

The key was posted after the polite request of one of the employees of the company ESET , dealing with computer security. After the company noticed that the TeslaCrypt developers are gradually phasing out their activities, the employee decided to ask about the master key in the support chat on the site that worked to receive payments from the victims of the extortionist. Surprisingly, the TeslaCrypt team went to meet, apologized, and put the key in open access:
440A241DD80FCC5664E861989DB716E08CE627D8D40C7EA360AE855C727A49EE

A kind programmer with the nickname BloodDolly, which created the TeslaDecoder program that helps to recover encrypted files, updated it with the information received. Now all the victims can safely decipher the precious information and not lose their money.

To decrypt files, you need to unpack the archive and run TeslaDecoder.exe.
image
')
The Set Key button allows you to assign a key for manual decryption and select the extension of the encrypted files.
image

image

After installing the key and extension, you can selectively decrypt the directory (Decrypt folder) or scan the entire disk in search of encrypted files (Decrypt all).
image

Before decryption, you can choose whether to overwrite the decrypted files over the encrypted ones, or to save them just in case with the .TeslaBackup extension.

Perhaps we will never know what made the conscience of the developers of the cryptographer awaken. In the meantime, you can thank the security specialists and the programmer who helped disinterested victims of the scammers.

Source: https://habr.com/ru/post/394151/


All Articles