Lovely Ransomware

A Boot Sector and Partition Ransomware that tries to get 100EUR from the user to unlock,   Fixing the MBR does not work as LiveCD's for that including the Windows CD/DVD (Recovery Console) can't see the installation to be able to fix anything.

 

The Ransomware Scare message,  

 

Your computer may not be included. you work in BIOSsrede antivirus BIOSAntivirusProtection You bootkitlocker.gen32 a virus is detected within 5 hours your HDD (Harddrive) will be subject to formatting, all data will be wiped HN carrying the chances of recovery. This new generation of viruses, they can not be prevented, they can only be removed with some antivirus software. If you do not want to lose all the data, "then you need to get the key of antivirus BIOSAntivirusProtection. You can not boot into Windows as long as you remove the virus. To remove the virus you need to buy the full version BIOSAntivirusProtection 


Instructions  for the purchase and removal of the virus bootkitlocker.gen32 from your computer

A. Rewrite the HDD key on your computer, 
2. Go to the address[Websites removed by Quads] and read about the places and ways to sell vouchers, 
3. Buy a voucher for the amount of 100EUR; 
 4. Send by E-nail: *** gmail.com voucher code and HDDkey, listed below; 
 Wait for response (24 hours) of anti-virus service BIOSAntivirusProtection remind you that in the case of self-delete or attempt to disable the HDD from your computer, you immediately lose All data beyond recovery. If you value your data, you definitely need to buy the full version to remove the virus from your system. The password for the removal of the virus will be sent to the e-mail. 
Your HDDkey: [Removed]

Password: _

 

 

Don't  pay the money to the bad buggers

 

Quads


A Boot Sector and Partition Ransomware that tries to get 100EUR from the user to unlock,   Fixing the MBR does not work as LiveCD's for that including the Windows CD/DVD (Recovery Console) can't see the installation to be able to fix anything.

 

The Ransomware Scare message,  

 

Your computer may not be included. you work in BIOSsrede antivirus BIOSAntivirusProtection You bootkitlocker.gen32 a virus is detected within 5 hours your HDD (Harddrive) will be subject to formatting, all data will be wiped HN carrying the chances of recovery. This new generation of viruses, they can not be prevented, they can only be removed with some antivirus software. If you do not want to lose all the data, "then you need to get the key of antivirus BIOSAntivirusProtection. You can not boot into Windows as long as you remove the virus. To remove the virus you need to buy the full version BIOSAntivirusProtection 


Instructions  for the purchase and removal of the virus bootkitlocker.gen32 from your computer

A. Rewrite the HDD key on your computer, 
2. Go to the address[Websites removed by Quads] and read about the places and ways to sell vouchers, 
3. Buy a voucher for the amount of 100EUR; 
 4. Send by E-nail: *** gmail.com voucher code and HDDkey, listed below; 
 Wait for response (24 hours) of anti-virus service BIOSAntivirusProtection remind you that in the case of self-delete or attempt to disable the HDD from your computer, you immediately lose All data beyond recovery. If you value your data, you definitely need to buy the full version to remove the virus from your system. The password for the removal of the virus will be sent to the e-mail. 
Your HDDkey: [Removed]

Password: _

 

 

Don't  pay the money to the bad buggers

 

Quads


Thanks Quads

                          These guys' don't give up they ? ........As always...they rely on the uncertain and the misinformed  to make that undecided   "mouse click " that leads to misery :smileymad:!

                                                                                                            Thanks for the "heads up " .........Ed

I now have a Keygen so if someone infected with this gives me the HDD key I can give the unlock code for it.

 

Example screenshot

 

Bootkitlock 32 Codes.jpg

 

 

Quads


Quads wrote:

I now have a Keygen so if someone infected with this gives me the HDD key I can give the unlock code for it.

 

Example screenshot

 

Bootkitlock 32 Codes.jpg

 

 

Quads


Fantastic

      Thank you

            Thank you

                    Thank you

The Hard Drive that this Ransomware is installed on has it it's Partition change to be seen as Unallocated.

 

If people have screwed up (in a minor way) the Partition can be rebuilt by seaching for lost Partitions, after the seach saving the Partition and making sure it's NTFS.  Now all the files and folders can be seen.

 

Quads

hi.my system has been infected whit bootkitlocker.gen32 and windows can,t start up and stay black page that has been writed in russion and the only number has writen is 8-962-219-86-80.please help me and give me the key whit your keygen.ty

That is not the same so won't work,

 

You may just have a MBRlock or similar, the varinat just has to be worked out and if just a simple MBRlock, writing a new boot sector should work.

 

Quads

 

 

There is no HDDkey but the number looks like a SMS or phone number.  I found a screenshot,   It is acting more like Trojan.MBRlock with that number, although one user was able to use safe mode on his system.

 

I am doing some digging

 

Quads

Thanks for the warning, Quads. :smileyhappy: