MRCR Ransomware Decrypter
If your computer has been infected by the MRCR Ransomware, below is a decryption tool that you can use to decrypt your data. If you are unsure about how to proceed give us a call at 319-227-7000 so we can schedule a time to take care of this for you.
MRCR Decrypter (Emsisoft)
MRCR or Merry X-Mas is a ransomware family that first appeared in December last year. It is written in Delphi and uses a custom encryption algorithm. Encrypted files will have either “.PEGS1”, “.MRCR1”, “.RARE1”, “.MERRY”, or “.RMCM1” as an extension. The ransom note is named “YOUR_FILES_ARE_DEAD.HTA” and asks victims to contact either “[email protected]” or “comodosecurity” via the secure mobile messenger Telegram.