.ONION Fil Virus - (Fjern og gendannelse løg filer)

.ONION Fil Virus (Restore Files)

Vencislav Krústev

Ventsislav har dækket de nyeste malware, software og nyeste tech udviklinger på SensorsTechForum for 3 år nu. Han startede som en netværksadministrator. Have uddannet Marketing samt, Ventsislav har også passion for opdagelsen af ​​nye skift og innovationer i cybersikkerhed, der bliver spillet skiftere. Efter at have studeret Value Chain Management og derefter Network Administration, han fandt sin passion inden cybersecrurity og er en stærk tilhænger af grunduddannelse for alle brugere mod online sikkerhed.

Flere indlæg - Websted


with SpyHunter

See if your system has been affected
Note! Your computer might been affected by .onion file virus and other threats.
SpyHunter is a powerful malware removal tool designed to help users with in-depth system security analysis, detection and removal of threats such as .onion file virus.
Keep in mind, that SpyHunter needs to purchased to remove the malware threats. Click on the corresponding links to check SpyHunter’s EULA and Privacy Policy.

This article is created to help you remove Dharma ransomware’s .onion variant and restore .id-{random}.[[email protected]].onion encrypted files.

A new version of Dharma ransomware has been reported to be spreading, this time using the .onion file extension added to the files it encrypts. The new version of Dharma ransomware is believed to be very similar to the old one and just like it, encrypt files on the compromised computer after which change the wallpaper on the compromised computer and then demand victims to pay a hefty ransom fee to restore their encrypted files. In case your computer has been infected by the .onion Dharma ransomware recommendations are to read this article thoroughly.

Threat Summary


.onion file virus

Type Ransomware
Short Description .Onion virus, also calling itself Dharma encrypts user files and leaves as contact e-mail addresses to contact the criminals behind it and pay a ransom fee to restore encrypted files.
Symptoms Changes file extension of encrypted files to .onion. Changes wallpaper to one with ransom instructions that have ransom e-mail.
Distribution Method Via an Exploit kit, Dll file attack, malicious JavaScript or a drive-by download of the malware itself in an obfuscated manner.
Detection Tool See If Your System Has Been Affected by .onion file virus


Malware Removal Tool

User Experience Join our forum to Discuss .onion file virus.
Data Recovery Tool Windows Data Recovery by Stellar Phoenix Notice! This product scans your drive sectors to recover lost files and it may not recover 100% of the encrypted files, but only few of them, depending on the situation and whether or not you have reformatted your drive.

Update May 2017 – New Data Recovery Method

It has been brought to our attention that victims of the latest Dharma .onion ransomware infection variants have managed to restore a very high percentage (over 90%) of their files using a very unique method – converting files into virtual drives and then using partition recovery option on data recovery programs. This method takes advantage of the converting the files into a .VHD file type which is a virtual drive. Since there are new data recovery programs specifically designed to recover partitions, one approach is to restore files encyrpted by Dharma ransomware is to convert the encrypted files into .VHD files and then try to recover them using partition recovery software. Since the algorithm that encrypts files actually alters only a small portion of the file, you have a much higher chance of recovering the files if you change them into .VHD type.

The methods have been reported to not be a full guarantee to recover all the files, but if you haven’t reinstalled your operating system yet, we advise you to follow them. But first, make sure to remove Dharma’s malicious files from the instructions at the bottom of these article. Here are the instructions:

.onion Recovery Instructions 2017

Ved at klikke på knappen Abonner, du accepterer at modtage nyhedsbreve fra SensorsTechForum om den nyeste cybersikkerhed og tech-relaterede nyheder.