Emsisoft releases new decryptor for Muhstik ransomware

 In Blog

We just released a new decryption tool for the Muhstik ransomware strain. You can download the FREE decryption tool linked below. A detailed guide is also included.

  • Download the Muhstik Decryptor here
Emsisoft Decryptor for Muhstik

Emsisoft Decryptor for Muhstik

Technical details

Muhstik is a strain of ransomware that encrypts files on compromised QNAP systems using AES-256, and adds the extension “.muhstik” to files.

The ransom note “README_FOR_DECRYPT.txt” contains the following text:

All your files have been encrypted.

You can find the steps to decrypt them in any the following links: //13.234.89.185/.unlock/payment/[redacted ID] Could go offline at any time //51.38.231.30/.unlock/payment/[redacted ID] Could go offline at any time

Or use TOR link, guaranteed Online 100% of the time: //5mngytmdpeyyp6xk.onion/payment/[redacted ID] Use TOR browser to access .onion websites. //duckduckgo.com/html?q=tor+browser+how+to

Do NOT remove this file and DO NOT remove last line in this file!

Your ID: [redacted ID]

Successful decryption of Muhstik

Successful decryption of Muhstik

  • Download the Muhstik Decryptor here

Regardless of what the ransom note might say, our decryption tool can help you recover your files for free. Please get in touch with our support team if you have any questions.

The post Emsisoft releases new decryptor for Muhstik ransomware appeared first on Emsisoft | Security Blog.

Recent Posts