Our Blog

Fake booking confirmation from Maersk
Email with a fake PDF booking attachment. Opening the attachment points to a web site… Which will download a file
Read more.
No Ransomware Decryptor yet ? Try to Low Level Recover Instead.
No Ransomware Decryptor Yet ? Try to Low Level Recover Instead.   This is your last resort solution, until a
Read more.
Ransomware pretending to be sent from ‘Companies House’
(‘Companies House’ is the United Kingdom’s registrar of companies)   Dear user, Thanks for submitting the message to us for
Read more.
New Ransomware version storming the planet
New Ransomware version storming the planet. It comes as a normal Word document:    
Read more.
New RansomSaver version available
New RansomSaver version available ! Includes all latest RansomWare variations. Also includes a fix for handling .rar and .7z attachments.
Read more.
Ransomware as ISO files
ISO files are images of CD or DVDs. See below for an example of RansomWare hidden as an ISO image.
Read more.
Ransomware as .Rev files
.Rev files are RAR recovery files and can be opened by WinRar. When you do reconstruct the file, a new
Read more.
New way to transfer Ransomware
New way to pass ransomware via 7-Zip archives. It even states that it’s virus free ! 7-Zip is a legit
Read more.
New extension that carries Ransomware
We came across with a new extension that carries Ransomware: .xz It’s a compressed file similar to .zip and .rar
Read more.
Ransomware as .Ace compressed files
Ace compressed files were popular around 2000. They can still be opened my modern decompress software. Inside this file there
Read more.
New free application: ShadowReport from Synergy USA llc
New free application added: ShadowReport. Automate collection of Shadow Copies info and receive a detailed report via email to your mailbox.
Read more.
Some Ransomware Interesting statistics
Here are some interesting statistics. It looks like criminals are enjoying holiday vacations… Check the counter of malware found by
Read more.
A new version is under way
A new version is under way. New suspicious attachment ( .dzip ) found and removed by RansomSaver:    
Read more.