Negotiation chat with different groups

Akira

Avaddon

Avos

Babuk

BlackBasta

BlackMatter

Cloak

Conti

Darkside

Dragonforce

  • 058f4b92-ae99-45c7-bf35-5d2d6754b3de – 19 message(s) voir chat
  • 05f724f8-906e-4739-8177-815852cc2c3f – 29 message(s) voir chat
  • 29BBE03074FDBB8D – 10 message(s) voir chat
  • 7A313D13EB6B4E58 – 32 message(s) voir chat
  • 89716D29D2CEE36F – 23 message(s) voir chat
  • AB0404E049514B50 – 28 message(s) voir chat
  • BD004D632D87DBA0 – 25 message(s) voir chat
  • C2A3C7249797F5ED – 66 message(s) voir chat
  • C42CDF65B97D0E92 – 30 message(s) voir chat
  • C7CD31EAAF9DE9AC – 71 message(s) voir chat
  • C8479B30418B331E – 4 message(s) voir chat
  • D6DDD9B26D7D41DB – 14 message(s) voir chat
  • FDA8141B6DD392E3 – 10 message(s) voir chat
  • b8e14e1a-548f-4eec-bd6e-a590126e57c9 – 14 message(s) voir chat

Hive

Hunters International

Mallox

NoEscape

Pear

Qilin

  • 20240429 – 3 message(s) voir chat
  • 20250203 - from @RakeshKrish12 – 36 message(s) voir chat

REvil

RansomHub

Ranzy

RunSomeWares

fog

lockbit3.0

mount-locker

trinity

Victim 1 day ago
Hello. My files are encrypted. Can you help?

Darkside 1 day ago
Hello

Darkside 1 day ago
Yes, we can decrypt your all files

Darkside 19 hours ago
When will you pay? You don't have much time left to pay with a discount

Victim 18 hours ago
Thank you. We are working as fast as we can. Can you please decrypt
the following files so we know that decryption is going to work?


[redacted]_L.jpg.[redacted]
60.85 kB

Victim 18 hours ago
File:


[redacted]_M.jpg.[redacted]
14.8 kB

Victim 18 hours ago
File:


[redacted]_T.jpg.[redacted]
8.81 kB

Darkside 15 hours ago
Yes. We will send the decrypted files shortly

Darkside 13 hours ago
First


[redacted].jpg
60.71 kB

Darkside 13 hours ago
Second


[redacted].jpg
14.66 kB

Darkside 13 hours ago
Third


[redacted]_T.jpg
8.67 kB

Victim 13 hours ago
Thank you for decrypting the files. Our business has suffered during
the COVID pandemic. We can pay $184,922 in Bitcoin to restore our
computers.

Darkside 12 hours ago
If you pay within the next 24 hours we can give you $25,000 discount, but not more.

Victim 12 hours ago
We searched your group and people say you take data. Did you take
any of our data? We can pay $226,000 in Bitcoin to restore our
computers.

Darkside 11 hours ago
$250,000 and we will finish this very quickly

Victim 11 hours ago
Thank you. I will bring this to my management now. Are you able to tell me if your group took any data from our computers?

Darkside 11 hours ago
We didn't take data.

Victim 10 hours ago
Thank you. We accept your offer of $250,000. Can you please confirm
the Bitcoin wallet. We have [redacted]

Darkside 10 hours ago
Confirmed.

Darkside 9 hours ago
Write after sending payment.

Victim 9 hours ago
Payment sent, please confirm that it was received.

Darkside 9 hours ago
Linux decryption instruction:
1. Upload decryptor to esxi.
2. Set run permissions: chmod 777 decryptor
3. Run decryptor: ./decryptor


lin_decryptor.out
2.3 MB

Darkside 9 hours ago
The decryptor works in 2 modes:
1. GUI
2. Console

Three functions are available in GUI mode:
1. "DECRYPT ALL" - search and decrypt ALL encrypted files on the local
PC and on network resources (Shares), where this PC has access.
2. "DECRYPT FOLDER" - decrypts files in the specified folder, which you
can select in the "Browse for folders" window or drag and drop the
folder into the decryptor window.
3. "DECRYPT ONE FILE" - decrypts a single file, which you can open in
the "Open" window or drag and drop the encrypted file into the decryptor
window.

IMPORTANT!
Extension of encrypted files may not coincide with the extension of files, which the decryptor suggests to open!
To open encrypted files with other extensions, in the "Open" window
select, in the lower right corner of "All Files (*. *)" or just drag and
drop the given file into the decryptor window.
File extension does not affect the decryption of file!

Console mode has two parameters:
1. "-all" - search and decrypt ALL encrypted files on the local PC and on network resources (Shares), where this PC has access.
You can also use Group Policy to quickly decrypt your entire network.
2. "-path" - decrypts files in the specified folder or a single file.
3. Dragging and dropping an encrypted file or folder with encrypted files onto the decryptor file.
In this mode, the console window will open automatically, which will display the decryption process.

Command line examples:
> decryptor.exe -all
> decryptor.exe -path C:\Folder
> decryptor.exe -path C:\Folder\file.txt.[redacted]


win_decryptor.exe
76.5 kB

Darkside 9 hours ago
You have 48 hours for support. After that, this chat will be deleted.

Auteur/autrice

sdgadmin@tux.ovh