Skip to main content

Petya Ransomware Master Key For Decryption Released



The original Petya ransomware, which originated in 2016, can now be easily cracked open using its master decryption key. Its author Janus Cybercrime Solutions has released the key in the form of an encrypted file, which was cracked by Malwarebytes. Please note
that this key doesn’t work on the recent Petya/NotPetya wiper malware which lacks the ability to decrypt affected computers.
You might be knowing that the recent attack of Petya/NotPetya malware, which is a wiper disguised as a ransomware, was preceded by the 2016’s original Petya ransomware. Recently, original Petya’s creator, Janus Cybercrime Solutions (a person or a group), came out of the shadows and announced that he isn’t the mastermind behind the new Petya malware attack.
Now, Janus has gone ahead and released the master decryption key for all ransomware of older Petya family–including GoldenEye, which was the last Petya version released by Janus. Please note that this key doesn’t work on the most recent NotPetya malware, which lacks the ability to decrypt affected systems.
Janus has shared the master key on Twitter to let the affected people decrypt their files for free.
However, the linked file was encrypted and password protected. But, a security researcher at Malwarebytes guessed the password and decrypted the package with openssl. So, here is the content of the file, i.e., original Petya ransomware master key in plain text:
Congratulations!
Here is our secp192k1 privkey:
38dd46801ce61883433048d6d8c6ab8be18654a2695b4723
We used ECIES (with AES-256-ECB) Scheme to encrypt the decryption password into the “Personal Code” which is BASE58 encoded.
While some previous versions of Petya were cracked, this key reveal might help affected people who have preserved the encrypted disks in the hope of getting their files back.
Just in case you’re wondering why Janus is trying to get back in the limelight, this could be due to all the hype surrounding the new Petya/NotPetya wiper. It could be possible that Janus doesn’t want to be associated with the new variant and he’s trying to make amends by releasing the key for older versions.

Comments

WHAT'S HOT

Amazon Cuts Huawei Watch 2 Price To $194.99

Huawei's latest smartwatch has received a temporary price cut in the United States. There is no word on how long the promotion will last, but those interested

This Medical Camera Can See Right Through Human Body

Now, a team at the University of Edinburgh has developed a medical camera that can see right through your body. This new camera works by detecting light sources inside the body, such as

Google Search About To Receive A New “Speed Test Tool”, Here Is How To Use It

I use the Speed Test tool by Ookla to check the speed of my broadband connection. Generally, I use Google Search to visit the website. But the last time when I Googled the term “speed test,” I didn’t have to go much further than the search result itself.

Microsoft Has Released The First Windows 10 Build 16353 For Insiders

As Fall Creators Update is nearing its release, Skip Ahead was announced last month. It enables fast ring users to continue receiving new features, though the RS_PRERELEASE