CrySiS Reborn, Not Decryptable: [stopper@india.com].wallet

[width=600 It drops a file on the desktop named STOPPER.txt:

Attentiion!!! All your filess are encrypted! To decrypt your files, please contact us by email:stopper@india.com

The method of infection was from unauthorized access (brute-force) RDP connection. It also drops AnonCrpt.exe on the desktop, 274KB file size;  A quick analysis from VirusTotal shows the results below: [caption id=attachment_7784 align=alignnone width=565][![](/posts/assets/caption] As mentioned earlier, there is not a way to decrypt this currently. Stay safe.

Published At