“Attention!!!
Your BitCrypt ID:
DRU-88-534567
All necessary files on your PC (photos, documents, data bases and other) were encoded with a unique RSA-100. Decoding of your files ins only possible by a special program that is unique for each BitCrypt ID. Specialist from the computer repair services and anti-virus labs won’t be able to help you. In order to receive the program decryptor you need to follow this link…
Remember, the faster you act the more chances to recover your files undamaged.”
BitCrypt is an encryption utility that would conceal all documents on a target machine within a bitmap image; whereupon, all files would manifest them with extra extensions, such as blabla.jpg.bitcrypt, or blabla.xls.bitcrypt. By encrypting files, BitCrypt ransomware could make profitable income for its author as 0.4 BTC (about $220) is required for each decipher.
BitCrypt Is Easily Broken?
There were some articles reporting that BitCrypt was easily broken since some big mistake had been found by the hacker and claiming that a 128-byte key (1024 bits) was planned to be generated, but instead a 128-digit number was finally generated. It seems to be exciting to hear that “the cado-nfs tool has been used to obtain the encryption key. The experts have also published a Python script that’s designed to restore the encrypted files”; however, words spread. The hacker got to learn about it and quickly pushed a second variant into the market to continue his/her work. One can easily see that the solution to the first variant fails.