Fastvery Files Ransomware – Remove Fastvery Virus

Fastvery virus: what is known so far?

The pattern of renaming is the following: %victim-ID%.%contact-email%.fastvery. In the course of encryption, a file entitled, for instance, “report.docx” will be changed to “report.docx.id[9ECFA84E-3268].[].fastvery”.

In every folder containing the encoded files, a info.txt file will be created. It is a ransom money memo. Therein you can find information about the ways of contacting the racketeers and some other remarks. The ransom note most probably contains instructions on how to purchase the decryption tool from the Fastvery developers. You can get this decryptor after contacting by email. That is it.

NameFastvery Virus
Ransomware family1Phobos ransomware
Extension.fastvery
Ransomware noteinfo.txt
Contact
Detection2DropperX-gen [Drp], Win32/Injector.AUDU, Win32/FlyStudio.Injector.D potentially unwanted
SymptomsYour files (photos, videos, documents) get a .fastvery extension and you can’t open them.
Fix ToolSee If Your System Has Been Affected by Fastvery virus

The info.txt file coming in package with the Fastvery malware provides the following frustrating information:

!!!All of your files are encrypted!!!
To decrypt them send e-mail to this address: .
If we don\'t answer in 24h., send e-mail to this address: 

In the picture below, you can see what a folder with files encrypted by the Fastvery looks like. Each filename has the “.fastvery” extension added to it.

That is how encrypted “.fastvery” files look.

How did Fastvery ransomware end up on my PC?

Nowadays, there are three most popular methods for tamperers to have the Fastvery virus acting in your system. These are email spam, Trojan injection and peer file transfer.

If you open your mailbox and see emails that look just like notifications from utility services companies, delivery agencies like FedEx, Internet providers, and whatnot, but whose mailer is strange to you, beware of opening those emails. They are most likely to have a malicious item enclosed in them. Thus it is even more dangerous to open any attachments that come with letters like these.

Another thing the hackers might try is a Trojan horse model3. A Trojan is a program that gets into your computer pretending to be something else. Imagine, you download an installer for some program you want or an update for some software. But what is unpacked turns out to be a harmful program that encrypts your data. Since the installation wizard can have any name and any icon, you’d better be sure that you can trust the source of the files you’re downloading. The best thing is to use the software companies’ official websites.

As for the peer-to-peer file transfer protocols like torrent trackers or eMule, the danger is that they are even more trust-based than the rest of the Web. You can never know what you download until you get it. So you’d better be using trustworthy resources. Also, it is reasonable to scan the directory containing the downloaded items with the anti-malware utility as soon as the downloading is finished.

James H. Sterling

James H. Sterling

Environmental Science & Climate Journalist

James Sterling reports on renewable energy developments, climate policy, ecological conservation, and green tech innovations around the globe.

Share this article
Twitter Facebook Pinterest