Remove ELBOW Ransomware
File-encryption Trojans continue to be one of the most dangerous and common pieces of malware that cybercriminals operate with. These attacks incapacitate systems by rendering the majority of the data stored on them inaccessible. If you fall victim to such an attack, you will be unable to view documents, media, archives, databases, and even local backups. Needless to say, this could have devastating consequences, especially if you use your computer for work or storing sensitive information. The ELBOW Ransomware is one of the latest pieces of malware to carry out such an attack.
This file-locker is part of the Phobos Ransomware family. Sadly, this means that there is no decryptor for it, and that its victims might need to rely on alternative data recovery options, whose successs rate is not excellent. The ELBOW Ransomware attack is quite obvious, because of the unique extension that the threat adds to the names of files it locks. Victims will discover the suffix '.id[<VICTIM ID>][UNKNOWNTEAM@criptext.com].ELBOW.'
Another change that the ELBOW Ransomware is known to bring is the creation of the 'info.txt' ransom message. This file advises the victim to pay a ransom fee via Bitcoin, and assures them that this is the only way to recover their data. The message also mentions the contact emails UNKNOWNTEAM@criptext.com and ELBOWTALK@my.com. The criminals might also lie to victims by telling them that other decryption options might end up causing more damage to their files. Do not trust such statements – the criminals are just trying to convince you to pay them. If you believe the ELBOW Ransomware has damaged your data, we advise you to run an antivirus tool to get rid of the malicious program. Then, try out alternative data recovery tools.