Hit by ransomware?

We're here to fix that.

Use our free ransomware decryption tools to unlock your files without paying the ransom

Please note that these free tools are provided as-is and without warranty of any kind. The tools may only work with specific ransomware versions, and may not work with versions that were released after a tool was created. Technical support for the tools is available only to customers using a paid Emsisoft product.

[Nov, 21, 2019] - Version:

Hakbit decryptor

The Hakbit ransomware targets businesses and encrypts its victim's files using AES-256.

The malware may also pretend to be one of the following processes at random to evade suspicion: lsass.exe, svchst.exe, crcss.exe, chrome32.exe, firefox.exe, calc.exe, mysqld.exe, dllhst.exe, opera32.exe, memop.exe, spoolcv.exe, ctfmom.exe, or SkypeApp.exe.

The ransom note "HELP_ME_RECOVER_MY_FILES.txt" contains the following text:

Atention! all your important files were encrypted!
to get your files back send 300 USD worth in Bitcoins and contact us with proof of 
payment and your Unique Identifier Key.
We will send you a decryption tool with your personal decryption password.

Where can you buy Bitcoins:


Contact: [email protected].

Bitcoin wallet to make the transfer to is: 12grtxACJZkgT2nGAvMesgoM4ADHJ6NTaW
Unique Identifier Key (must be sent to us together with proof of payment): 
Number of files that you could have potentially lost forever can be as high as: 3396