Dirty\ dirty decrypt.exe

Solved
antone11 Posted messages 2 Status Member -  
Malekal_morte- Posted messages 178136 Registration date   Status Moderator, Security Contributor Last intervention   -
Hello everyone,
I caught a virus that prevents me from using my computer. I scanned my computer to eliminate the infections, and there were many.
Now, everything works perfectly, except for my photos and some of my text documents, which show a black screen that takes me to dirty decrypt.exe.
Can someone help me get rid of this infection?

Thanks in advance.

6 answers

Malekal_morte- Posted messages 178136 Registration date   Status Moderator, Security Contributor Last intervention   24 711
 
Hi,

For now, there is no solution to recover the encrypted documents.

--
Comme l'ange que tu es, tu ris, créant une légèreté dans ma poitrine,
Tes yeux me pénètrent,
(Ta réponse est toujours 'peut-être')
C'est à ce moment-là que je me suis levé et je suis parti.
0
antone11 Posted messages 2 Status Member
 
Thank you for your quick response. Unfortunately, no solutions. If I understand correctly, I need to part with my photos and then try to restore them from a backup on an external hard drive.
I don't know if the problem will persist, but I will try that first and keep you updated.

Thank you for everything.
0
Malekal_morte- Posted messages 178136 Registration date   Status Moderator, Security Contributor Last intervention   24 711
 
Keep your files for a few weeks, maybe a solution will be found by then.

Install Malwarebyte's Anti-Malware: https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Run regular scans with it, it's effective.

~~

When you visit porn sites, don't accept everything that gets thrown at you: https://www.malekal.com/dirtydecrypt-et-virus-police-ministere-de-linterieur/
0
antone11
 
Thank you for your valuable help,
I have installed Aro 2013 and started it up, unfortunately, all the infected files I had placed in the recycle bin have been deleted, I don't know if I can recover them, I have been doing a backup since this morning, but nothing is coming out of it, the software has been telling me it is running since this morning at 9 o'clock.
As for the photo files, which I reinstalled, they seem to be working well, but I have lost all the others, movies, photos, and Word, Excel documents, etc...

I nearly forgot, I bought the Aro version because the trial version was very incomplete.

Thank you again for your help,

Antoine
0
Malekal_morte- Posted messages 178136 Registration date   Status Moderator, Security Contributor Last intervention   24 711
 
What's this Aro 2013 again?
A registry cleaner?
Wow, you guys are really installing some nonsense..
0
antone11
 
By following your link, you will find ARO 2013 at the top of the page; it's true that I opened the wrong window.
It's just a shame for my files if I can't restore them.
0
Malekal_morte- Posted messages 178136 Registration date   Status Moderator, Security Contributor Last intervention   24 711
 
It must be an ad.
0
antone11
 
Anyway, I went ahead and downloaded this software, but it's nothing serious; on the contrary, I needed this tool.
In the end, I already had Malwarebytes on my computer, its version was expired, and I am currently doing the scan.
0
Malekal_morte- Posted messages 178136 Registration date   Status Moderator, Security Contributor Last intervention   24 711
 
Simply to confirm that there is no solution.
I had contacted Kaspersky (here's their response below).

Apparently, the program stores the keys (different ones?) for each file in an encrypted manner.
There is no possibility of cracking the encryption.

The encrypting algorithm in the program is quite tricky; it stores the key used for files encryption in an encrypted way. And the key can be decrypted back only on the server side in case the user has already paid.
Encryption algorithm RC4 + RSA1024 can't be cracked.


--
Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left.
0
lordblacktet
 
I just read that apparently the files are encrypted just like the data you send when you pay online, for example!
That each file generates its own key... phew!
How do you create something to decrypt such a code then, that's a mystery?
This ransomware is quite complicated indeed, hum hum it smells more like a mega hacker than a basic Russian pirate, doesn't it?
0
Malekal_morte- Posted messages 178136 Registration date   Status Moderator, Security Contributor Last intervention   24 711
 
No, it's not complicated to encrypt a file.
No vast knowledge is needed.
0