Remove READ_IT.txt Encryption Virus Completely

What is READ_IT.txt Encryption Virus?

READ_IT.txt Encryption Virus is a Ransomware. It is not common for many users, but it has become the most favorite tools for hackers recently because it could help them to control the users’ PC and then win profits from its conducts. But all these are covered in front of users. And they will know the tricks when they are blackmailed to make money. At that moment, it is too late to repair the whole situation.

Why should you keep READ_IT.txt Encryption Virus away from your PC?

READ_IT.txt Encryption Virus will encrypt all the fields on the PC and then it will give you guides to contact them for the decryption key. To exchange this key, you have to buy several bitcoins, which will cost at least one thousand dollars. Besides, when you buy this item, you have to leave your personal data in the fishing website. After you log out the accounts, it will begin to read the data and apply them to steal your money.

Messages Shown by READ_IT.txt Encryption Virus

(If you are in Notepad, please click the Format menu above ^^^^ and click Word Wrap)

Uh oh. It looks like your data has been the victim of the encryption thief. Your files have been encrypted with AES: search your drive for “locked” if you don’t believe me . Unfortunately you’re going to have to pay some money to get your files back and your fee is approximately $200 in US Dollars. I’ll get right to the ugly details for that:

* You have 72 hours to make this happen as of 12/03/2016 21:03:16. Otherwise, your files are lost for good. I will delete the necessary code for all time and I don’t even have to revisit your machine to do it.
* You will be paying by Bitcoin. Don’t worry, it is easy to figure out. Your fee is 0.501049 BTC. Pay this amount precisely, or I might not know who it was that paid in order to rescue them.
* Use LocalBitcoins.com. It isn’t hard to use, there are numerous ways to pay for my bitcoins on there, and most importantly, it is fast. Did I mention you have 72 hours?
* The address you will be sending the bitcoins to is 192awRvM4V8LS24GSHj6o3v2fVQ5QYh4pB .
* Then you will wait for me to get the unlock code for you. Your code will be shown here, https://let-me-help-you-with-that.webnode.com/ , under the amount you paid. This may take a day or so: you are on my schedule now
* Once you have the code, you can unlock your files as follows:
*** First you must download my decrypter: https://we.tl/L2dUFWqdJa . You may get various warnings that this is a Trojan or some other nonsense. Don’t believe it: if I needed to cause more damage I would have done so already. The file is marked as such because the antivirus people are lazy SOBs and just mark everything they can.
*** Go to your Start Menu
*** In the search field, type “cmd”.
*** Double click the cmd program.
*** Type “cd C:\Users\xxx\Downloads”
*** Type “Decrypter.exe ”
*** Other people’s codes will not work for you, obviously.

That is basically it. The rest of this document is a further description about your situation.

* You’ll never be able to find me. Police will never be able to find me. Go ahead and try them if you like, but don’t expect your data back. They will be concerned about helping the community, not with helping you meet your deadline. If they say they need to keep your desktop for a few days, well lol, you probably won’t be seeing your machine again soon, let alone your data. I’ve been doing this for five years now and haven’t been caught yet.
* Best Buy will have no ability to undo the encryption. Hell, even the NSA probably couldn’t undo it. Well maybe they could, but I suspect you won’t be a high priority for their computation clusters for at least a couple of years.
* In 72 hours, you will never be able to get these files open. I don’t much like people struggling against the powerful and there is no way for you to argue for an extension. Just make it happen.

So just be thankful that it wasn’t worse. I could have asked for more money. I could have been working for ISIS and saving that money to behead children. I could have been a mean SOB and just destroyed your data outright. Am I those things? No. I just need the money to live off of (true story) and don’t care at all about the hacker “community”. So there isn’t anyone you will be protecting by sacrificing yourself. I’ll just encrypt more people’s data to make up for the loss.

So you have your instructions. I’ll even tell you how you could have prevented this:

* Install a good antivirus and keep it up to date. This is basically where you fell down.
* Don’t click on any file from the internet that isn’t a piece of data like (jpg, txt, doc) or you better really know where that file came from.
* Back up your files in case the encryption thief visits you.

Better luck to you in the future.

How to keep READ_IT.txt Encryption Virus away from your PC?

So is it necessary for you to buy its service to handle this situation as it claimed? Not really. Your applications don’t work under this circumstance because it has also encrpyted them. So you have to remove its control before you take actions to recover these files. Therefore, it is better for you to take the guides here to remove READ_IT.txt Encryption Virus and fix all the problems later. Please refer to the following guides.



Steps for Removing READ_IT.txt Encryption Virus and Recovering Files

This tutorial contains two Parts. Part One will guide you to get rid of codes of READ_IT.txt Encryption Virus virus and repair registry errors, which can avoid more of your files being encrypted by the ransomware. In Part Two, we will guide you to recover some damaged files.

Part One – Get Rid of READ_IT.txt Encryption Virus Virus Manually or Automatically

Manual Removal Steps (Complicated Method Applies to Advanced PC Users)

Step 1. Show all hidden files to find out malicious files of READ_IT.txt Encryption Virus

Step 2. Search and remove harmful files related with READ_IT.txt Encryption Virus

Step 3. Search and delete READ_IT.txt Encryption Virus related registry files

 

Automatic Removal Steps (Easy Method Applies to All PC Users)

Step 1. Run SpyHunter to detect and remove malicious codes of READ_IT.txt Encryption Virus infection.

Step 2. Run RegHunter to fix registry files and security bugs caused by READ_IT.txt Encryption Virus.

 

Part Two – Restore or Recover Damaged Files

  • Restore all your files from your Back-up;
  • Repair damaged files with data recovery software.

 


Part One – Get Rid of READ_IT.txt Encryption Virus Virus Manually or Automatically

 

Manual Removal Steps

Step 1. Show all hidden files to find out malicious files of READ_IT.txt Encryption Virus

On Windows 7 / Vista Computer

  1. Right-click the Windows Logo button and choose Open Windows Explorer.
  2. Click Organize and choose Folder and Search Options.
  3. Click the View tab, select Show hidden files and folders and then clear the checkbox for Hide protected system operating files.
  4. Click Yes on the warning and then click OK.

On Windows 8 Computer

  1. On your keyboard press the Windows + E keys.
  2. Click the View tab.
  3. Check File name extensions and Hidden items

Step 2. Search and remove harmful files related with READ_IT.txt Encryption Virus

(The files on your computer may appear with different name, if cannot find out the files listed below, you should use the auto steps)

%Temp%\[random name]

%AppData%\[virus name]

%LocalAppData%\[virus name]

%CommonAppData%\[malware name]

%AllUsersProfile%random.exe

Step 3. Search and delete READ_IT.txt Encryption Virus related registry files:

1. Open Registry Editor first:

On Windows 7 / Vista Computer

  • Click Start button
  • Select Run button
  • Type: regedit
  • Click OK button

On Windows 8 Computer

  • Press Win [Windows key] + R on your keyboard. This can be done either while at Windows 8 Start menu/Metro screen or on Windows 8 desktop
  • At the dialog box that pops open, type regedit.exe and hit OK
  • Once you hit OK, Windows UAC will prompt you to confirm you want to open Register Editor — hit “Yes

2. Find out and remove all harmful registry files related with READ_IT.txt Encryption Virus virus listed below:

(The registry files on your computer may appear with different name, if cannot find out the files listed below, you should use auto steps.)

HKEY_LOCAL_MACHINESOFTWAREsupWPM
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesWpm
HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMain “Default_Page_URL”
HKEY_LOCAL_Machine\Software\Classes\[malware name]
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\[malware name]


 

Automatic Removal Steps

Manual removal needs advanced PC skills, if you do not have enough skills and experience to find out READ_IT.txt Encryption Virus files accurately, you may ruin your system for removing important system files. Therefore, if you are not a user with Advanced tech skills, it’s best to use these Auto Steps to solve your problem easily and safely:

Step 1. Run SpyHunter to detect and remove malicious codes of READ_IT.txt Encryption Virus infection.

 

1. Click the blue button below to download SpyHunter safely.

Tips: After SpyHunter is downloaded, your Chrome /Firefox /IE may display such fake security warning ” This type of file can harm your computer. Do you want to keep Download_Spyhunter-Installer.exe anyway?”, which is generated by virus to cheat you, please just ignore the fake warning and click “Keep” button.

(Notes – If you do not need it any more, please follow instructions on SpyHunter uninstall. SpyHunter`s free version provides unlimited free scans and detection. After it detects malicious files, processes and registry entries, you can follow the scan results to manually locate and remove them on your own; or to purchase its full version to automatically remove the virus with ease. Meanwhile, the full version of SpyHunter will offers you unlimited one-on-one professional help for any malware related issue by its official PC expert.)

 

 

2. Once downloaded, please double-click SpyHunter-Installer.exe to start the installation of SpyHunter.

 

3. When SpyHunter is installed, it will be run automatically, then click Scan Computer Now to detect READ_IT.txt Encryption Virus related threats:

4. Once SpyHunter completes the scan, please click Fix Threats to get rid of READ_IT.txt Encryption Virus.

 

 

Step 2. Run RegHunter to fix registry files and security bugs caused by READ_IT.txt Encryption Virus.

 

1. Click the green button below to download RegHunter:

Notes – If you do not need it any more, please follow instructions on RegHunter uninstall. RegHunter`s free version provides unlimited free scans and detection. After it detects corrupted registry files and system errors files, you can follow the scan results to manually replace them with healthy files copied from healthy PC on your own; or to purchase its full version to automatically fix the Registry and errors with ease. Meanwhile, the full version of RegHunter will offers you great features to optimize your system performance.)

 

 

2. Once downloaded, then double-click RegHunter-Installer.exe to start the installation of RegHunter.

3. When RegHunter is installed, it will be run automatically, then click Scan for Registry Errors Now! to detect files corrupted by READ_IT.txt Encryption Virus:

4. Once RegHunter completes the scan, please click Repair All Errors to solve security bugs related with READ_IT.txt Encryption Virus.

 

With the manual and automatic removal steps above, the codes and executive files of READ_IT.txt Encryption Virus can be removed completely, that means this ransomware cannot encrypt more files of your PC. However, removal of READ_IT.txt Encryption Virus virus does not mean that you can open your infected files normally. All the encrypted files corrupted by READ_IT.txt Encryption Virus are still inaccessible, if you want get your files back, your need to complete steps in Part Two.



 

Part Two – Restore or Recover Damaged Files

To PC Users with Healthy Backup Files

If you have backup your personal files or documents before the invading of READ_IT.txt Encryption Virus, now you can delete all the encrypted files on your PC, and then copy the backup files from your external devices or download them from your Cloud account. You can open these healthy files at ease now since the codes of ransomware have been removed and they cannot encrypt your files again.

To PC Users without Backup Files

If you do not have any backup of your personal files, or if your backup files have been damaged as well, you need to use professional data recovery software to recover your files. After reviewing lots of data recovery software, our tech team picked out the best data recovery software in the industry: Stellar Data Recovery, Data Recovery Pro and Kernel Data Recovery. To get your important files back, It’s worthy to try such top-class data recovery software.


 

Option OneStellar Data Recovery

Stellar Phoenix Windows Data Recovery is your best disaster recovery solution to get back all your lost and deleted files, photos, music and videos after all event of data loss like accidental deletion, disk corruption, or storage media formatting etc. This risk-free application supports recovering data from all types of Windows hard drives, USB drives, memory cards, digital cameras, and mobile phones. The tool has a knack of scanning 2TB or more of storage space in a single operation, thus providing you with a more robust solution for performing complex data recovery too. Follow the steps here to install Stellar Phoenix Windows Data Recovery quickly:

1. Click the button below to open download Stellar Phoenix Windows Data Recovery , and Double-click installation file “Stellar_WinDataRecovery_Home “ to install it:
Stellar Phoenix Windows Data Recovery

recover files encrypted by READ_IT.txt Encryption Virus

2. Once installed, click Scan Now button to detect the corrupted files in your system:

READ_IT.txt Encryption Virus files recovery

3. Once it complete the scan, please select the file types you want to recover and then click Recover button:

restore READ_IT.txt Encryption Virus encrypted files


 

Option Two – Data Recovery Pro

Since Ransomware such as READ_IT.txt Encryption Virus uses the most advanced codes to encrypt your files, it is necessary to try different Data Recovery Software to decrypt different types of codes written by hacker. After you tried the Stella software, most of your files may still be encrypted, please do not give up, now download Data Recovery Pro to rescue your files again. It is one of the best data recovery tool and it so powerful it can recover a wide variety of file types, including recycled, compressed and encrypted. Download it now and let it at least rescue some of your important files:

1. Click this link “Data Recovery Pro Download ” or the button below to download and install Data Recovery Pro:

recover READ_IT.txt Encryption Virus encrypted files

2. Once installed, select Quick Scan or Full Scan and then click “Start Scan“to detect files damages by READ_IT.txt Encryption Virus:

decrypt READ_IT.txt Encryption Virus files

3. Once the scan completes, check all the files type you want to recover and then click “RECOVER” button to rescue your files from READ_IT.txt Encryption Virus.

restore READ_IT.txt Encryption Virus files


Option Three – Kernel Data Recovery

If you the first two software cannot help you restore your files, you can also try another great data recovery software – Kernel. Here are 6 recover tools from Kernel for recovering diffident files, click the links below to get the recovery tool you need:

Micosoft Office Word Files Recovery

Micosoft Office Excel Files Recovery

Micosoft Office Access Files Recovery

Micosoft Office PowerPoint Files Recovery

PDF Files Recovery

Outlook Express Recovery

Notes: As we all know, READ_IT.txt Encryption Virus is the most dangerous ransomware made by top hacker, and it is extremely difficult to recover all the files encrypted by READ_IT.txt Encryption Virus. The above data recovery tools may not be effective on all the infected PCs, some users used them to restore parts or all of their files, and some others could not recover any file. Therefore we can not 100% promise these tools will work for you, we just recommend them to you as reference. We hope that you will be the lucky one who can get your precious files back. Good luck with you.

 

Posted in Ransomware. Tagged with , , .