Ransomware is a group of PC parasites that locks the PC and demands payment for unlocking. Some of the parasites will outright demand payment without any explanation. Others will pretend to be from some institution, for example, FBI, RIAA, etc. The payments are collected using some pre-paid method usually. In Europe it is Ukash or Paysafe, in Russia SMS payments are used and in USA scammers use Moneypak. However, exceptions are possible.
Ransomware differs from other scam software in following:

  1. It always demands payment, either because of “authority” or using threats to destroy all the data.
  2. It does not try to emulate PC problems like virus infections on itself , though it might claim that there was infection
  3. In many cases, it blocks PC better than Rogue antiviruses

Typically, it is a result of trojan infection and it is quite difficult to remove. Some of the problems are caused by the way PC is locked. Additionally, several different families of trojans can impersonate the same institution and even share the design. Thus several different removal instructions have to be carried out to remove the ransomware successfully.
In the worst case, one needs alternate OS scanners to remove ransomware. However, in some cases it is enough to reboot into safe mode and change startup items, or use safe mode with command prompt to fix the registry. For complete guide check removal instructions for particular ransomware. In some cases you will need data decryption utility to recover encrypted files.

Search parasites: 

Latest Ransomware

SADStory ransomware


SADStory is a new crypto-virus, designed by the same group of crooks that are responsible for MafiaWare variant. Mafia Malware Indonesia is a collective of hackers that do not strike…


Dxh26wam ransomware


Dxh26wam crypto-virus targets people from all around the globe: from United States of America to China, Italy, France, Germany, Spain, Portugal and Netherlands as ransom notes can be customized in…


Monument ransomware


Monument crypto-virus has multiple names that security researchers use to refer to this infection. DarkLocker, Monument ransomware or a virus, closely related with the old JigSaw sample. In addition to…


Meteoritan virus


Meteoritan crypto-virus has been revealed to pose as a threat to the Internet user community. This type of malware effects data in one of the worst ways possible: files are…


LLTP ransomware


LLTP (Locker) crypto-virus is classified among ransomware samples that use a combination of ciphers to complicate the decryption process for its victims. An AES algorithm is first applied to ruin…


Ransomware parasite list

"Microsoft Windows is not g... November 10, 2016 01:02
"You have 72 hours to pay t... January 29, 2013 17:48
"Your computer may not be p... August 17, 2016 02:43
"Your Computer was Automati... December 8, 2014 10:05
“All activities on this c... October 31, 2013 03:42
“Everything on your compu... June 25, 2013 02:29
“Notice of Imposition of ... November 16, 2016 02:05
7ev3n Ransomware January 27, 2016 07:24
7h9r Ransomware June 18, 2016 08:27
7zipper Ransomware February 6, 2017 09:52
8lock8 ransomware June 13, 2016 02:07
ACCDFISA Protection Program... February 27, 2012 14:34
ACMA virus July 17, 2013 03:40
Agence nationale de la séc... July 19, 2013 03:08
AiraCrop Virus October 27, 2016 01:33
AKM virus March 1, 2013 11:43
Alcatraz Ransomware November 8, 2016 09:31
Alfa Ransomware July 7, 2016 08:18
All_Your_Documents ransomwa... February 16, 2017 00:47
Alma Locker Ransomware August 23, 2016 02:10
Alpha Crypt Ransomware January 21, 2016 06:26
Alphabet Ransomware January 12, 2017 03:22
Alphabet virus January 5, 2017 06:56
An Garda Siochana Trojan July 28, 2012 19:26
Anatel Ransomware July 21, 2016 08:47
Angry Duck ransomware October 24, 2016 23:16
AnonPop virus June 29, 2016 04:28
Anonymous virus November 2, 2012 11:35
ANSSI virus July 10, 2013 02:45
Antix Ransomware December 14, 2016 09:29