The Ultimate Site of Worms Armageddon

Other Things => Off Topic => Topic started by: Mega`Adnan on September 16, 2019, 02:30 PM

Title: STOP(DJVU) Ransomware New Extensions
Post by: Mega`Adnan on September 16, 2019, 02:30 PM
Just posting this as people post their opinions.
This week I had a Ransomware virus attack on my PC, and all my stuff has been encrypted to ".moka" extension. I've searched the decryption program for it, but unfortunately it seems like it hasn't been developed yet.
I know I have to wait for it but if anyone knows any news or updates about it, or is familiar with these stuffs, feel free to post here. :)
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: nino on September 16, 2019, 04:19 PM
no backup m8?

just curious how did u get infected?

executed some virus? got ur machine with NAT for remote desktop for exemple?
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Kaleu on September 17, 2019, 03:27 AM
I want to know how you got infected with a ransomware, bl ae lol.

Always try to backup/sync your most important files in the cloud. I don't know about Saudi Arabia but in Brazil you can buy 100GB in Google Drive for the cost of a beer bottle, monthly. Furthermore you could also buy Dropbox plans as they promise to recover your files in case of ransomware infections.
If you are one of those concerned about privacy and has important files to hide, go for MEGA (my favorite). Plus it matches your name.  :D
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Mega`Adnan on September 17, 2019, 05:42 PM
no backup m8?

just curious how did u get infected?

executed some virus? got ur machine with NAT for remote desktop for exemple?

I've bought this PC like 7-8 months ago. Seller told me not to install any heavy antivirus software because it will heat up the PC and there would be chances that CPU processor will get roasted (Since I live in Dera Ismail Khan city, Pakistan. And it has horrible summer like 45°C+). So they did install some useless USB protecting shit, and I was okay with it.
Later, my friend tried to find some crack on my PC, instead they installed a virus and executed it (Yeah I know, this country is so poor to afford some credit card payment and stuff lol). So, it started opening all ads and stuff and slowed down my PC.
Yeah, I am used to remove adware and stuff by going to Safe mode and using Anti-malware software and stuff, which would solve the problem, whenever that happened.
But this is the first virus I've faced, encrypting all of my files on all drives.
So yeah, that's the story. :D

I want to know how you got infected with a ransomware, bl ae lol.

Always try to backup/sync your most important files in the cloud. I don't know about Saudi Arabia but in Brazil you can buy 100GB in Google Drive for the cost of a beer bottle, monthly. Furthermore you could also buy Dropbox plans as they promise to recover your files in case of ransomware infections.
If you are one of those concerned about privacy and has important files to hide, go for MEGA (my favorite). Plus it matches your name.  :D


The story's above this quote. :D
Also, I don't live in Saudi Arabia (though I was born here). I live in Pakistan now because my family are Pakistani (We were living in Saudi Arabia. Dad had job here. He got retired and government kicked all of us). I don't even do back ups because first, there's a shitty internet which would let you do one task i.e. browsing slows down if I start the uploading. Secondly, I don't trust cloud storage sites, they might sell my data or stuff.
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Kaleu on September 17, 2019, 10:06 PM
Quote
Seller told me not to install any heavy antivirus software because it will heat up the PC and there would be chances that CPU processor will get roasted
Lol... I think you were fooled by the salesman... I can't comprehend how an antivirus would consume that much of resources from your CPU, I would say, maybe from RAM? Yeah, during a deep scan, because I doubt it would be the main alone reason for heating.

Quote
Secondly, I don't trust cloud storage sites, they might sell my data or stuff.
Add an extra (and inviolable) layer of protection by encrypting your files with VeraCrypt before uploading.

Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Albino on September 18, 2019, 09:42 AM
have you tried to restore your volume shadow copies?
https://malwaretips.com/blogs/remove-moka/
just scroll down and you will see the details (step 3).
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: nino on September 18, 2019, 11:05 AM
This Puto open the thread and disappear!

maybe he became a .lazy encrypted person
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Mega`Adnan on September 18, 2019, 04:55 PM
have you tried to restore your volume shadow copies?
https://malwaretips.com/blogs/remove-moka/
just scroll down and you will see the details (step 3).

Sorry, it's not working. The drop down list doesn't show any previous dates.

[attachment=1]

This Puto open the thread and disappear!

maybe he became a .lazy encrypted person

What do you mean your majesty?
I posted this so I can expect some solutions from anyone. Being inactive for a day doesn't mean I ran away lmao.
If you know the best way to bring back encrypted files, then elaborate. :D
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: nino on September 18, 2019, 05:44 PM
Theres really a very small chance you see ur files back, best way would be backup!!

well you rly asked for this rape , no AV and instaling cracks and shits! bl ae.

but what u were doing was like f@#!ing 1000 sluts, gays, being f@#!ed...without protection and dont get SIDA. huahuahuahua
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: XanKriegor on September 18, 2019, 06:12 PM
Use NoScript extension, its the protection in the aforementioned case xDD
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: h3oCharles on September 20, 2019, 08:26 PM
Quote
Seller told me not to install any heavy antivirus software because it will heat up the PC and there would be chances that CPU processor will get roasted
WHAT THE f@#! KIND OF A SELLER IS THIS?! WHAT ANTIVIRUS ARE THEY TALKING ABOUT?!?!?!

BBBBBBBBBBBBBBBBBBUUUUUUUUUUUUUUUULLLLLLLLLLLLLLLLLSSSSSSSSSSSSSSHHHHHHHHHHHHHHIIIIIIIIIIIIITTTTTTTTTTTTTT
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Mega`Adnan on September 21, 2019, 08:20 AM
Hey hey! Come now!
Let's not be like "BoOoO! YoU DiDn'T pRoTeCt YoUr FiLeS!!!111" or "bOoOo!!111 YoU DiDn't UsE CoNdOm11!!!" or whatever. If you wanna focus on this topic, lets just focus on how to decrypt ".moka" extension files. There are many decryption tools developed for other extensions of DJVU ransomware, so why won't they develop it for ".moka" as well? I am not the only one affected by this virus, many others did as well.
So, if you know any news or page about the development of this decryption tool, post it here. Not criticism of my failures, I am not a machine, everyone do mistakes.
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: nino on September 23, 2019, 02:05 PM
U R DUMB!!!!! HUAHAUHAUA

now lets back to topic, i dont think this gonna be easy to revert this, cos usually the criptography used is so heavy that when theres a solution, u dont even care anymore.

just say bye to ur files ( 99%porn we know)  download it again and protect ur computer.

ok 1 mistake is aceptable but if u make a mistake again....  >:( >:( >:( >:( porra!!!
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Kradie on September 23, 2019, 03:50 PM
The length a man would go just to save his pornography collection is flabbergasting.

Use Firefox with these addons: ublock origin, privacy badger, decentraleyes, canvas defender, HTTPS everywhere, and noscript security suite. You could also get ProtonVPN and enable Secure Core. Although secure core will cost you. Also you could purchase antivirus such as ESET NOD 32 Internet Security Suite, and Malwarebytes. With all of these, you should be fairly protected.

Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Kaleu on September 24, 2019, 01:43 AM
The length a man would go just to save his pornography collection is flabbergasting.

Use Firefox with these addons: ublock origin, privacy badger, decentraleyes, canvas defender, HTTPS everywhere, and noscript security suite. You could also get ProtonVPN and enable Secure Core. Although secure core will cost you. Also you could purchase antivirus such as ESET NOD 32 Internet Security Suite, and Malwarebytes. With all of these, you should be fairly protected.

All of that shit to be protected when using (((Windows))) XD
Just get some Linux distro and you are fine.
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Kradie on September 24, 2019, 07:09 AM
The length a man would go just to save his pornography collection is flabbergasting.

Use Firefox with these addons: ublock origin, privacy badger, decentraleyes, canvas defender, HTTPS everywhere, and noscript security suite. You could also get ProtonVPN and enable Secure Core. Although secure core will cost you. Also you could purchase antivirus such as ESET NOD 32 Internet Security Suite, and Malwarebytes. With all of these, you should be fairly protected.

All of that shit to be protected when using (((Windows))) XD
Just get some Linux distro and you are fine.

Regardless, if you're migrating to Linux, you would still require some level of protection that is found in Windows as well. Linux isn't immune to viruses, but It is hard for me to say how often a user is struck by a virus. In the end, it all comes down to the user, and where that user go online, and do.

If you want to try Linux, I recommend Linux Mint, it is a solid distribution, and it is very alike Windows.  But I am not entirely sure how to run Worms Armageddon on it either.
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Tomi on September 24, 2019, 08:11 AM
Firstly if you still have the crack wich contained the virus then you should install an antivirus software and search it. Maybe it will tell the exact name of the virus. Then maybe it will be easier to find a solution.
However i guess big companies who manage to decrypt a ransomware wont give you free solution.
Did the virus encrypt text files too? If yes then open one with notepad and check for any correct words. If you can find some then it might be possible to restore, but if not then they used some more professional way. Then you will have to find out what encrypt algorythm they were using and what key they were using which sounds impossible.
Next time download cracks only from sites which have many comments that says it works fine. They might use antivirus software so it is safer :D
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: nino on September 24, 2019, 11:11 AM
Get a Macbook and say f@#! off to the world!  :D :D

Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Kradie on September 25, 2019, 08:39 AM
Get a Macbook and say f@#! off to the world!  :D :D
Macs aren't immune to viruses too. No exceptions.
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: nino on September 25, 2019, 12:04 PM
Get a Macbook and say f@#! off to the world!  :D :D
Macs aren't immune to viruses too. No exceptions.

I never said Macbook are immune, i said to him buy a macbook and be happy, protection he need to have in every plataform u f@#!ing smartasshole
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Danger135 on September 27, 2019, 03:13 PM
Look here (https://www.avast.com/ransomware-decryption-tools). And wait until they will made it for your virus too.
Title: Re: STOP(DJVU) Ransomware New Extensions
Post by: Ytrojan on October 14, 2019, 07:45 PM
Quote
Seller told me not to install any heavy antivirus software because it will heat up the PC and there would be chances that CPU processor will get roasted
WHAT THE f@#! KIND OF A SELLER IS THIS?! WHAT ANTIVIRUS ARE THEY TALKING ABOUT?!?!?!

BBBBBBBBBBBBBBBBBBUUUUUUUUUUUUUUUULLLLLLLLLLLLLLLLLSSSSSSSSSSSSSSHHHHHHHHHHHHHHIIIIIIIIIIIIITTTTTTTTTTTTTT
They probably have a deal with the NSA
Or China, considering their treatment of the Hong Kong protestors.