sos@anointernet.com is a name added by a ransomware to the extension of the files it has encrypted. In a general way, Ransomware is a malicious software that takes hostage of your computer files… In this particular case, sos@anointernet.com has encrypted all of your files and asks for a ransom to give them back to you…
What does sos@anointernet.com actually do?
This ransomware goes after the .PDF, .PPT, .DOC, .XLS, .TXT, .JPG files. Once it has got hold of them it encrypts them and adds the following example text to their extension: .id-<number>_sos@anointernet.com
This unwanted program also creates an image where the instructions to pay the ransom are shown. The file is named sos.bmp and you’ll see it opening up automatically.
As you can see it says your computer has been attacked by a virus-encoder, which has encrypted all of your files and that without the original key it’s impossible to recover them. To retrieve this key, it asks you to send an email to sos@anointernet.com with the subjet “encryption” where you should state your id. They even ask you to refrain yourself from sending threats…
Will I be able to recover my files?
Sadly this is hardly ever the case. You can try using Shadow Explorer plus a recovery from a Windows backup (only if such option was activated prior to the attack). Although sometimes even this doesn’t work because this viruses remove the backups data. You should also know that trying to break the key by brute force is almost impossible.
View full solution