Negotiation chat with different groups

Akira

Avaddon

Avos

Babuk

BlackBasta

BlackMatter

Cloak

Conti

Darkside

Dragonforce

  • 058f4b92-ae99-45c7-bf35-5d2d6754b3de – 19 message(s) voir chat
  • 05f724f8-906e-4739-8177-815852cc2c3f – 29 message(s) voir chat
  • 29BBE03074FDBB8D – 10 message(s) voir chat
  • 7A313D13EB6B4E58 – 32 message(s) voir chat
  • 89716D29D2CEE36F – 23 message(s) voir chat
  • AB0404E049514B50 – 28 message(s) voir chat
  • BD004D632D87DBA0 – 25 message(s) voir chat
  • C2A3C7249797F5ED – 66 message(s) voir chat
  • C42CDF65B97D0E92 – 30 message(s) voir chat
  • C7CD31EAAF9DE9AC – 71 message(s) voir chat
  • C8479B30418B331E – 4 message(s) voir chat
  • D6DDD9B26D7D41DB – 14 message(s) voir chat
  • FDA8141B6DD392E3 – 10 message(s) voir chat
  • b8e14e1a-548f-4eec-bd6e-a590126e57c9 – 14 message(s) voir chat

Hive

Hunters International

Mallox

NoEscape

Pear

Qilin

  • 20240429 – 3 message(s) voir chat
  • 20250203 - from @RakeshKrish12 – 36 message(s) voir chat

REvil

RansomHub

Ranzy

RunSomeWares

fog

lockbit3.0

mount-locker

trinity

Victim
> hello

Victim
> hello

Victim
> hello please help ME

Victim
> hi

Victim
> is somebody there

Victim
> we are very small company...

Victim
> ??

Victim
> ???

Victim
> hemlo Mister

Victim
> Please helo please help

Victim
> is somebody there

Victim
> Hello....

Victim
> It is our existence... please please help us

Victim
> Hello

Victim
> mister

Victim
> hello

Victim
> hellooo

Victim
> akira

Victim
> team

Victim
> helooooo

Victim
> akira

Victim
> hello

Victim
> 😭😭😭😭

Victim
> hellooo

Victim
> is u there??

Victim
> hellooo

Victim
> helloooo

Victim
> helloooo

Akira
> Hello. You've reached an Akira support chat. Currently, we are preparing the list of data we took from your network. For now you have to know that dealing with us is the best possible way to settle this quick and cheap. Keep in touch and be patient with us. We will reach out to you soon.

Do you have a permission to conduct a negotiation on behalf of your organization? Once we get a response you will be provided with all the details.

Victim
> yes i am the owner of the company. Its a family business.

Victim
> we are a small company with not many people and all my family members work here. you didnt hack a big company. this situation is very bad for us and to be honest we dont have much money because work is not going good.

Victim
> PLEASE.....😭😭😭😭

Akira
> Wait for details.

Victim
> hello sir

Akira
> We didn't take your data. We are the ones who can properly decrypt your data and restore your infrastructure in a short period of time.
After payment you will receive a decryptor for each of your systems and manual on how to use it for particular file/system. If you face any problems during decryption process, we will be here to support. You will receive a security report that includes information about how we were able to penetrate your network, as well as exclusive first-hand information about the state of your network, the vulnerabilities that we found. What's more, you'll receive high-quality technical recommendations on eliminating any vulnerabilities and strengthening your network to secure your internal and external infrastructure.
You will also receive written guarantees that we will keep this conversation private, and delete this chat later. We won't come back for more money after payment and we won't attack you again. The price is $100,000. To prove that we can properly decrypt your data you can upload 2-3 encrypted files up to 10 MB each to our chat and we will upload decrypted copies back.

Victim
> 100,000$ is way too much. We as a family run business dont earn that kind of money. i wish i could pay it but there is no way we can afford that. we have already money problems right now and i can barely pay my employees salaries. you are about to destroy my families and my whole life. why do you attack a small business like us and not a big coorperation? everybody im my office is devistated and some are even crying because of this situation. the only thing i can do is please pay a maximum of 5,000$. i am sorry but i really cant afford more. please do it for my family and hard working honest employees. dont destroy our lives. we all need this company.

Victim
> PLEASE .....

Akira
> unlocker.7z // 1.24 MB

Akira
> unlocker.exe -p="path_to_unlock"
unlocker.exe -s="C:\paths.txt"
where "paths.txt" is a list of paths for the decryptor, each path on a new line
ESXi commands
1) chmod +x unlocker
2) ./unlocker -p="/vmfs/volumes"

Victim
> thx u very much ✌️✌️✌️✌️✌️

Akira
> You are welcome!

Victim
> sorry for bothering you but i am trying it the whole time but i cant make it work. can you please explain what i exactly have to do ?

Victim
> 😭😭😭😭

Akira
> You have instructions. Tell me at what stage you are having troubles.

Victim
> thx u very nuch......u are my Angel

Victim
> i can not repair the database

Akira
> Provide more details. What kind of error did you get?

Victim
> 😭😭😭😭😭😭😭😭

Victim
> we sqlserver can not attach the database

Victim
> is it normal??

Victim
> [redacted].jpg // 4.82 MB

Victim
> before decode

Victim
> before decode

Victim
> [redacted].jpg // 5.71 MB

Victim
> what gone wrong? PLEASE PLEASE HELP

Victim
> we thought the server had hung up and restarted the server. could it possibly be related to this?

Victim
> and some files is ending with arika .file

Victim
> I have a question because I am trying to fix something the whole time but I can’t. We thought that the server was down so we restarted it. Could it be possible that during that progress some files that started to be encrypted got damaged and can’t be decrypted now ? Because my most important .mdf files don’t work anymore. Could you please assist me ?

Victim
> PLEASE

Victim
> 😭😭😭😭😪😪😪

Victim
> 😭😭😭😭😭

Victim
> do u have an idea??

Victim
> ??

Akira
> Yes, the interruption of decryption process could damage files. Send me logs and I will ask my tech team.

Victim
> how u penerate our nrtwork? can u give me info please...

Akira
> Initial access to your network was purchased on the dark web.

Victim
> how can i find it?

Victim
> how it happen?

Victim
> access about email, router,client?

Victim
> how can i make beter or save?

Victim
> Thank you for your answers and patience with us

Victim
> Is there a new access, do I understand it correctly?

Akira
> You have already get decryptors for free. I've provided you with more than enough info.

Victim
> thx 🥰

Auteur/autrice

sdgadmin@tux.ovh