infonews.co.nz
INDEX
TECHNOLOGY

Remove Adamant crypto-ransomware. Recover .RDM files

Friday 25 December 2015, 1:02AM

By John Viser

1002 views

Radamant ransomware is deemed to a modification of TeslaCrypt virus. It is distinguished from other editions of the virus by several characteristics. One of the most obvious is the name the rogue is assigned with. The self-referred program name reads: “Radamant Ransomware Kit.”  For people familiar with IT business it is a sure sign that the virus developers and virus distributors are not the same. The developer is likely to sell the kit to the hackers of low skill, rather beginners. However, the kit is developed with a skill so that even the hackers of a poor proficiency can propagate it and extort money from the victims.

The infection is also often referred to as .RDM extension virus. That is because of its adding the same-name extension at the end of affected files. The addition does not actually prevent access to the files. It is rather meant to further scare the victifms into paying the ransom.

There are likely to be many unrelated groups of crooks distributing the scamware. They are not likely to meet in real life. The same applies to odds of their encountering the group of the malware developers.

Detaining the ransomware developers is a very challenging task. Heuristic detection methods suggest nearly any ransomware recently releases has been developed by one and same crooks, though. That may eventually help to spot the scammers.

RDM extension virus claims quite a little amount compared to its counterparts. As other ransomware of its family demand fee of at least 1.5 BTC, the one in question gets satisfied with 0.5 bitcoin only. In USD, it makes slightly above 200. That is not a suggestion to pay a ransom. Instead, if you have been unfortunate to let the ransomware into your PC, try recovering the affected file. The ransom key purchase is only to be considered a last resort.

The insidious hackers further aggravate the recovery. They have provided for the routine that cleans Shadow Volume Copies. The routine is launched by the virus along with its encryption process.

Any malware invasion requires removal of the invader. Otherwise, the system is to be installed anew.

Removal of Radamant ransomware is a must. It is to be completed regardless of .RDM files recovery options applied. However, remove Radamant ransomware only after applying due recovery routines. Again, you need to get rid of RDM extension virus even if you purchase the decryption. Helpful tips: http://sureshotsoftware.com/guides/radamant/