Mmdt Ransomware is a File-Encrypting Djvu Clone
Another week means another couple of Djvu ransomware clones being discovered in the wild. The latest version of Djvu is called the Mmdt ransomware.
Mmdt is just your standard Djvu clone. It does nothing new or different and uses the exact same ransom note you can see in at least a hundred other Djvu clones.
The ransomware encrypts the victim system, appending the ".mmdt" extension to encrypted files. This will turn a file called "image.jpg" into "image.jpg.mmdt". Affected file types include media, document and archive files, as well as database file types.
The Mmdt ransomware drops its random demands in a plain text file called "_readme.txt", and the full note goes as follows:
ATTENTION!
Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
hxxps://we.tl/t-xuPJqoyzQE
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.
To get this software you need write on our e-mail:
support at bestyourmail dot ch
Reserve e-mail address to contact us:
datarestorehelp at airmail dot cc
Your personal ID: