Comrade ransomware emerges to encrypt computer users’ data for a ransom

Comrade ransomware is a HiddenTear variant[1] which was developed by not experienced cybercriminals in 2017. The ransomware encodes victim’s files, drops a ransom note called DECRYPT_FILES.txt, in which it states that files on the computer will be re-encrypted if the victim attempts to restart the computer. The virus demands $480 worth of Bitcoin[2] sent to a provided wallet address.
The ransom note provides a short message from cyber criminals who demand ransom from the victim in exchange for data recovery software. They ask to pay a fixed sum of money to a provided Bitcoin wallet address and then send an email to cybervigilante4453@protonmail.com.
The criminals also try to frighten the victim and force him to pay the ransom by saying that if they do not receive the payment within 24 hours, they will “delete the decryption key.” The criminals end their message with a “Signed, Comrade” line.
You should not pay the ransom and remove Comrade HT virus as soon as you can. Criminals try various techniques to convey the sense of urgency and trick people into paying large amounts of money for them, but Zondervirus.nl experts say[3] that there is still hope to restore your files without paying the ransom. Since the described virus is based on HiddenTear, there are a variety of decryption options available (one of them might be the one for you!).
Do not forget to uninstall the virus from your computer using instructions prepared by our team. It is important to perform a precise Comrade removal so that it wouldn’t re-encrypt your files again and implement even more dangerous activities such as data theft. We advise you to perform a clean boot and start deleting the virus with a security software of your choice. Our top picks are FortectIntego and SpyHunterCombo Cleaner software.

Distribution of HiddenTear based crypto-malware
HiddenTear ransomware-based viruses are built using the source code of the infamous “educational” virus. It is once again clear that such projects aren’t good as they give all wannabe malware developers a chance to create their own illegal projects. Some of these “projects” never reach the daylight; however, some fraudsters decide to employ their freshly built projects and use them to extort inexperienced computer users.
Most of the time, such projects are distributed via email, so you have to be extremely careful when opening suspicious-looking messages. If they contain vague-looking attachments that you did not expect to receive, avoid them at all costs.
Do not let your curiosity take over your sense of security and this way you will avoid malware that encrypts files or steals sensitive data from your computer.
Remove Comrade HT ransomware virus quickly
Now that your computer has been compromised, you have no other option but to remove Comrade virus – the sooner, the better. Since the ransomware claims to have the power to over-encrypt your files, you want to avoid that.
Therefore, follow the instructions provided below the article to start your computer in Safe Boot with Networking mode (this way, you will disable the virus and remove its components safely). Do not delay Comrade removal as it is essential to clean your computer as quickly as possible.
Did this guide help?
Be the first to comment