Looy Ransomware Locks Most Files

Looy has been identified as a variant within the Djvu ransomware family. Looy operates by encrypting files and adjusting their filenames, adding the ".looy" extension. For example, it changes "1.jpg" to "1.jpg.looy", "2.png" to "2.png.looy", and so on.

Additionally, Looy generates a ransom note in the form of a text file named "_README.txt". It's notable that those behind Djvu ransomware often incorporate data-stealing malware like Vidar or RedLine into their malicious activities. The ransom note specifies that various types of files, encompassing images, databases, and documents, have been encrypted using a robust algorithm. The only way to recover these files is by obtaining a specialized decryption tool and a specific key. The perpetrators demand a payment of $999 for these decryption tools but offer a 50% discount if the victim contacts them within 72 hours.

Moreover, the cybercriminals suggest demonstrating their decryption capabilities by offering to decrypt one file free of charge. However, they stipulate that the submitted file should not contain valuable information. The provided email addresses for contacting the cybercriminals are support@freshingmail.top and datarestorehelpyou@airmail.cc.

Looy Ransom Note Copies New Djvu Template

The full text of the Looy ransom note reads as follows:

ATTENTION!

Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
Do not ask assistants from youtube and recovery data sites for help in recovering your data.
They can use your free decryption quota and scam you.
Our contact is emails in this text document only.
You can get and look video overview decrypt tool:
hxxps://wetransfer.com/downloads/3ed7a617738550b0a00c5aa231c0752020240316170955/d71ce1
Price of private key and decrypt software is $999.
Discount 50% available if you contact us first 72 hours, that's price for you is $499.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.

To get this software you need write on our e-mail:
support@freshingmail.top

Reserve e-mail address to contact us:
datarestorehelpyou@airmail.cc

Your personal ID:

How Can You Safeguard Your Data Against Ransomware Attacks?

Protecting your data against ransomware attacks requires a multi-layered approach to cybersecurity. Here are several measures you can take to safeguard your data:

Regular Backups: Maintain regular backups of your data, preferably using both offline and cloud storage solutions. This ensures that even if your primary data is encrypted by ransomware, you can restore it from backups without having to pay the ransom.

Update Software: Keep all software, including operating systems, applications, and security tools, up to date with the latest patches and security updates. Many ransomware attacks exploit known vulnerabilities in outdated software.

Install Antivirus Software: Use reputable antivirus or anti-malware software and keep it updated. Antivirus software can detect and prevent ransomware infections before they can encrypt your files.

Enable Firewall Protection: Activate and configure firewalls on your network and individual devices to monitor and control incoming and outgoing traffic. Firewalls can help block ransomware from accessing your system.

Implement Email Security Measures: Use email filtering and security solutions to block phishing emails and malicious attachments that may contain ransomware. Train employees to recognize phishing attempts and avoid clicking on suspicious links or downloading attachments from unknown senders.

Restrict User Privileges: Limit user access privileges to only those necessary for their roles. This can help prevent ransomware from spreading laterally across your network if one user account is compromised.

How To Safely Detect & Remove The LOOY Ransomware Malware Threat From Your PC

March 20, 2024
Loading...

Cyclonis Backup Details & Terms

The Free Basic Cyclonis Backup plan gives you 2 GB of cloud storage space with full functionality! No credit card required. Need more storage space? Purchase a larger Cyclonis Backup plan today! To learn more about our policies and pricing, see Terms of Service, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.

Cyclonis Password Manager Details & Terms

FREE Trial: 30-Day One-Time Offer! No credit card required for Free Trial. Full functionality for the length of the Free Trial. (Full functionality after Free Trial requires subscription purchase.) To learn more about our policies and pricing, see EULA, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.