What is Gaqtfpr Ransomware?

ransomware

Gaqtfpr is the name of a newly discovered strain of ransomware. The new variant belongs to the Snatch family of ransomware clones.

The ransomware encrypts the target system and leaves files unopenable. Affected extensions include all media, document, archive and database file types.

Encrypted files receive the ".gaqtfpr" extension. The encryption process will turn a file named "image.jpg" into "image.jpg.gaqtfpr" once it completes.

The ransomware deposits its ransom note inside a file named "HOW TO RESTORE YOUR FILES.TXT".

There is currently no known decryption tool for this specific variant of Snatch. In a lot of cases, when there is a known free decryption tool for an older version of a range of versions of a given ransomware family, the same tool will not work for later clones, because the ransomware authors customize the code and encryption method.

Your best bet when it comes to restoring files damaged by the Gaqtfpr ransomware remains to use an offline backup from an external drive.

September 2, 2022
Loading...

Cyclonis Backup Details & Terms

The Free Basic Cyclonis Backup plan gives you 2 GB of cloud storage space with full functionality! No credit card required. Need more storage space? Purchase a larger Cyclonis Backup plan today! To learn more about our policies and pricing, see Terms of Service, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.

Cyclonis Password Manager Details & Terms

FREE Trial: 30-Day One-Time Offer! No credit card required for Free Trial. Full functionality for the length of the Free Trial. (Full functionality after Free Trial requires subscription purchase.) To learn more about our policies and pricing, see EULA, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.