What is Gaqtfpr Ransomware?
Gaqtfpr is the name of a newly discovered strain of ransomware. The new variant belongs to the Snatch family of ransomware clones.
The ransomware encrypts the target system and leaves files unopenable. Affected extensions include all media, document, archive and database file types.
Encrypted files receive the ".gaqtfpr" extension. The encryption process will turn a file named "image.jpg" into "image.jpg.gaqtfpr" once it completes.
The ransomware deposits its ransom note inside a file named "HOW TO RESTORE YOUR FILES.TXT".
There is currently no known decryption tool for this specific variant of Snatch. In a lot of cases, when there is a known free decryption tool for an older version of a range of versions of a given ransomware family, the same tool will not work for later clones, because the ransomware authors customize the code and encryption method.
Your best bet when it comes to restoring files damaged by the Gaqtfpr ransomware remains to use an offline backup from an external drive.