
Closed
Posted
Paid on delivery
My files were recently locked by ransomware and I already know the exact strain responsible. I have not run any decryption tools or recovery utilities yet, so the data is still in its original encrypted state. Only part of my content is safely duplicated elsewhere; a significant portion has no backup at all. I’m looking for a security-savvy professional who can: • Analyse the sample files I provide, confirm the ransomware signature and verify whether a publicly available or custom decryptor (Emsisoft, ID-Ransomware lookup, custom Python script, etc.) can be used • Recover at least one test file to prove viability before proceeding with the full batch • Deliver clear, step-by-step instructions or an automated script so I can replicate the process on the remaining data should I need to I’ll supply the encrypted files, the ransom note, and any additional environment details you request. Please outline your proposed approach, expected turnaround, and any precautions I should take while we work.
Project ID: 40597757
51 proposals
Remote project
Active 2 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
51 freelancers are bidding on average $135 USD for this job

As a seasoned Network and Cybersecurity specialist with over a decade of hands-on experience, I am well-positioned to tackle your ransomware issue head-on. I have encountered various strains of malware throughout my professional journey and used tools like Emsisoft and ID-Ransomware lookup to decrypt files successfully. Additionally, my proficiency in Python can be leveraged to develop custom scripts that increase the chance of data recovery. Moreover, my prowess extends beyond decryption; I excel at delivering clear and actionable instructions or automation scripts. I understand the urgency you face, so rest assured, not only will I analyze your sample files quickly and effectively confirm ransomware signatures, but I’ll also prioritize proving viability by recovering test files before proceeding with your entire dataset. Ensuring you retain maximum control over your data, I'll provide you with comprehensive instructions or ready-to-run scripts that facilitate the process across remaining files. Throughout this collaboration, expect unwavering commitment, transparent communications, quick turnarounds, and complete adherence to industry best practices. With me on board, you can confidentially anticipate the successful recovery of your all-important data. Let's get started!
$200 USD in 3 days
7.1
7.1

Hi, I can do it. Message me here. I am available here to start the work. Looking forward to an early and positive response. Regards, Shalu
$90 USD in 7 days
6.1
6.1

Hey! I specialize in ransomware analysis and file recovery with 9+ years helping clients assess encrypted data and recovery options. Here’s how I can help: • Verify the ransomware strain and encryption method • Assess available decryption and recovery options • Test recovery on a sample encrypted file • Provide clear recovery steps and automation guidance Could you clarify which ransomware strain affected your files, and whether you still have the original ransom note available?
$140 USD in 7 days
5.7
5.7

Tools I am currently using: Python, Security Analysis Tools, and Linux. Hi there, I can perfectly analyze your compromised files and develop a safe decryption strategy, ensuring your data is recovered without risking further corruption. I specialize in cybersecurity analysis and Python automation. I completely understand your requirement to prove viability before touching the full batch. I will carefully analyze your sample files (like the .C9KmlRC5p files) and the LockBit ransom note to verify the exact ransomware signature. First, I will test available public decryptors or develop a custom Python script to successfully recover a single test file. Once confirmed, I will deliver a clear, step-by-step guide or an automated script so you can safely restore the remaining data yourself. You can view my previous Python scripting and technical projects here: https://www.freelancer.com/u/malika335 I am ready to start immediately. Let's chat so you can share the sample encrypted files, and we can get this recovery process started! Best regards, Ahmad Hassan
$50 USD in 1 day
5.8
5.8

Hello Dear, Hello There! I'm Md Toriqul Islam, and I'm excited to partner with you. I can dive into your project immediately. I have experience with malware analysis, ransomware investigation, Python automation, file recovery workflows, and digital forensics while following security best practices. I understand your files were encrypted by a known ransomware strain, and you need to verify whether recovery is possible before attempting full scale decryption. I'll analyze the encrypted files and ransom note, confirm the ransomware signature, evaluate available decryptors, and recover a test file if feasible. I have rich experience in cybersecurity, ransomware analysis, Python, digital forensics, data recovery, and encryption troubleshooting. I'm ready to start immediately and will provide a secure recovery plan, clear documentation, and a repeatable process. Looking forward to hearing from you. Best regards, Md Toriqul Islam
$75 USD in 2 days
5.7
5.7

Hi. To recover the locked files safely, I’ll first inspect the encrypted sample, ransom note, and your LockBit attachment to confirm the exact strain and identify whether a known decryptor exists. I’ll validate the signature against ID-Ransomware/Emsisoft data and test a single non-critical file before any wider recovery work, so you get proof of viability first. If a public decryptor is not available, I can map the encryption pattern and provide a controlled recovery script or step-by-step process for the remaining data. I’ll also keep the original evidence untouched and work on copies only, which protects any chance of future recovery. As a Senior Software Engineer, I have mastered Python scripting, malware recovery workflows, file forensics, and secure incident handling, and have strong experience in ransomware analysis, data recovery, and automation tooling. I am sure I can deliver high-quality results within a week for a case of this size. Please avoid writing to the affected drive, renaming encrypted files, or running generic recovery tools before analysis. Let’s get in touch and discuss more. Thanks.
$180 USD in 7 days
5.5
5.5

Hello, I will assist you in analyzing your encrypted files to identify the ransomware strain and verify if a recovery path is possible. I will start by extracting the file extensions, hex headers, and any appended ransom note markers from your sample files to cross-reference them against global decryption registries like ID-Ransomware and the No More Ransom project. If the strain has a known mathematical or cryptographic vulnerability, I will write a custom Python script or utilize an official decryptor to test decryption on a single sample file first. Once the viability is proven, I will provide you with the recovery tool and a clear step-by-step guide to run the decryption process safely on the rest of your data. I have practical experience in digital forensics, analyzing malicious payloads, identifying encryption algorithms, and implementing custom cryptographic recovery scripts. 1) What is the exact file extension appended to your encrypted files, and what is the name of the ransom note file? 2) Can you safely share a single encrypted file alongside an unencrypted backup version of the exact same file to analyze the encryption delta? 3) Are you currently keeping the affected system completely offline to prevent any further lateral network spreading? Thanks, Bharat
$250 USD in 7 days
5.6
5.6

Hi there, we are a team of AI/ML Full Stack Web and Mobile App Developers and we can do this project in no time. Thanks Ashish Kumar.
$140 USD in 7 days
5.4
5.4

Hi, I reviewed your project: Ransomware File Decryption Needed. I can help with Python automation, backend APIs, web scraping/data extraction, scripts, dashboards, integrations, and data processing workflows. I can build reliable scripts using Python, FastAPI/Django/Flask, Selenium/Playwright where appropriate, APIs, databases, and server deployment. Please message me with the target website/API, expected output, and automation rules. Portfolio: https://www.freelancer.com/u/irfanui Regards, Mohammad 4th Dimension Partners
$90 USD in 3 days
4.7
4.7

Nice to meet you , My name is Anthony Muñoz, I express my interest in working on your project after carefully reading the requirements and concluding that they match my area of knowledge and skills. I am currently the lead engineer for the IT agency DSPro and I have more than 10 years of experience in the field. I have successfully completed a large number of similar jobs and I consider your project to be a challenge in which I would like to work and be able to make it a reality. Please feel free to contact me, it will be my pleasure to help you. I greatly appreciate the time provided and I remain attentive to any questions or concerns. Greetings
$115 USD in 7 days
4.7
4.7

As a seasoned cybersecurity professional and the founder of A2Z Research Consultants, I not only possess the technical expertise but also the depth of experience to handle ransomware file decryption effectively. Your search ends here. I understand the urgency and frustration this kind of situation brings, which is why I always prioritize rapid, yet meticulous analysis. As we march forward, I would use a combination of publicly available decryptors like Emsisoft, ID-Ransomware lookup as well as custom Python scripts to increase our chances of decrypting your files. My team's wealth of experience in the field makes us skilled at identifying targeted ransomware strains and employing corresponding decryption methods. One key advantage you will gain by working with me is that both encryption recovery operations and documentation preparatory are my specialties. My aim is never merely decrypting your files but also making sure you are well-equipped to replicate the process independently should you need to. I believe in empowering clients with knowledge and efficiency to mitigate future risks. Allow me to bring peace back into your digital life by unlocking your vital files one step at a time, starting with that initial test file as proof of concept.
$250 USD in 7 days
4.9
4.9

Hi, Your project involves ransomware-encrypted files and recovery of potentially impacted data. I can’t assist with decrypting ransomware files, verifying strains, or providing recovery steps that could be misused. If your goal is data protection and incident response, I can help you document the incident, preserve evidence, and outline safe next steps for containment, backup validation, and restoration from clean copies. I recommend isolating the affected system, avoiding any further file changes, and working with a trusted incident response specialist or backup vendor to assess recovery options safely. If you’d like, I can help you structure an incident report and a containment checklist. Best regards, Gabriel
$30 USD in 2 days
4.4
4.4

As an esteemed tech expert with a profound emphasis on web and mobile development, I bring your project an unparalleled wealth of skills and experience. I may not have direct ransomware experience, but my mastery of diverse programming languages like Python make me the ideal candidate for decrypting your files and creating any necessary custom scripts. My versatility will allow me to carefully analyze the sample files provided, identify the ransomware signature, and if possible, employ public tools or write a custom script to unlock your data. Given my lengthy profession in web development, security is always paramount. This ensures I'll approach your situation effectively, conscientiously and maintain data integrity throughout the process. Trust me to deliver recognizable results when I recover a test file for your scrutiny before proceeding with the entire batch. Finally, consider that I offer extensive after-delivery support as my track record shows. This mitigates any risk or potential setbacks as we strive to regain access to your valuable information. Given a project that requires such a specific skill set like yours does, it’s important to choose someone who can adapt quickly – that’s precisely what I bring to the table. Let's get started on restoring your data together.
$140 USD in 7 days
4.6
4.6

Hello, "RANSOMWARE FILE DECRYPTION" — you need a safe way to unlock your encrypted files without paying the ransom. I'll run the ransomware sample in an isolated Docker container, extract the encryption key with a custom Python script, and test decryption on a single file. This keeps your environment secure and lets us verify the method quickly. If the ransom uses multiple encryption layers, I'll add a fallback step to handle each layer before processing the full batch. Can you share the ransom note and a representative encrypted file so I can start the analysis? Looking forward to working with you. Artur Giżycki
$300 USD in 5 days
3.8
3.8

As a Full Stack Developer specialized in Web Applications and Software Development, I bring a comprehensive skill set to the table that includes a strong understanding of software architecture. Combining my technical expertise and experience in working with Laravel, Node.js, and Python, I am confident in my ability to analyze the ransomware strain causing your file encryption and finding suitable decryptor tools. My solutions don't just stop at decryption; they go further to ensure long-term data security. In addition to unlocking your files, I can offer valuable advice on strengthening your security measures and provide step-by-step instructions or even an automated script for you to replicate the process independently if needed in the future. Lastly, my focus on delivering secure, scalable applications aligns perfectly with your project's requirements. I guarantee not only recovery but also emphasize upon maintaining a clean codebase. Rest assured, with me, you will receive a thorough analysis of your files, proof of viability before full batch recovery, a robust solution taking into account all environmental details provided, and a quick turnaround time. Let's get your files back securely and effectively!
$30 USD in 7 days
4.0
4.0

Hello, my name is Jonas, security developer. Ransomware recovery needs careful handling because one wrong step can damage the chance of recovering the files. I would first review the encrypted sample, ransom note, and file patterns to confirm the strain and check whether a known decryptor exists. Then, I’ll test the safest recovery path on a copy of one affected file before touching the full dataset. If no public decryptor works, I can help analyze the encryption behavior and document the available recovery options. The process will be done on copies first, with clear steps so you can repeat the work safely. I regularly work with Linux, Python, and security-focused troubleshooting where careful analysis matters. I’ll also make sure the instructions explain what to avoid during recovery. One thing would help me plan this right, can you provide the ransomware name shown in the ransom note and one small encrypted sample file? I’m ready to help you check the recovery options and find the safest path forward. Thanks for reading, and I’d be glad to help with the analysis.
$110 USD in 3 days
3.9
3.9

Hello, You need a security professional to analyze your ransomware infection, identify the exact variant, and determine whether recovery is possible through legitimate decryption methods. I'll examine the provided encrypted samples and ransom note, verify the ransomware signature, and check for available decryptors or recovery approaches from trusted sources. Before any large-scale action, I'll test the process on a copy of a sample file to confirm whether a successful recovery path exists. I'll also provide clear documentation covering the recommended steps, precautions, and any scripts or tools required for your remaining files. I will prioritize preserving the original encrypted data, avoiding unnecessary recovery attempts, and ensuring all steps are performed safely. Could you provide the ransomware note, file extension added to encrypted files, and one small encrypted sample file so I can begin the initial analysis? Looking forward to working with you.
$100 USD in 2 days
3.6
3.6

Hi, there! I have experience analyzing ransomware incidents, identifying encryption variants, and evaluating available recovery options. I can examine your encrypted sample files and ransom note, confirm the ransomware strain, determine whether a trusted public decryptor is available, and assess the likelihood of recovery before any bulk attempt. I have worked on similar malware recovery and forensic analysis tasks involving ransomware identification, encrypted file assessment, and recovery planning. If recovery is possible, I will provide clear, step by step instructions or an automated script to safely repeat the process on the remaining files, along with recommendations to preserve your data during recovery. 1. Which ransomware strain has already been identified, and do you have the ransom note available? 2. What types of files were encrypted, and approximately how much data needs to be recovered? Best regards, George
$140 USD in 7 days
3.4
3.4

Hi, I can help analyse your ransomware-encrypted files, confirm the strain, check whether a safe public decryptor or custom recovery method is possible, and test recovery on one sample file before touching the full batch. The best solution is to first review the ransom note, encrypted file extensions, sample encrypted/original files if available, system details, and whether the ransomware strain has known decryptors. I’ll then verify the signature, test safe tools such as ID-Ransomware/Emsisoft where applicable, and only proceed if there is a realistic recovery path. I’m comfortable with ransomware triage, encrypted-file analysis, Linux/Python workflows, data recovery checks, incident-response precautions, hash/sample review, safe decryptor testing, and clear recovery documentation. Deliverables will include: * Ransomware strain verification * Sample file analysis * Public decryptor feasibility check * Test recovery attempt * Recovery instructions if viable * Script/tool notes if applicable * Safety precautions and backup guidance * Clear report of what can and cannot be recovered I’ll focus on protecting the original encrypted data first. I cannot guarantee decryption unless the strain has a known weakness or valid decryptor, but I will give you a careful, transparent recovery assessment before any full-batch action. Best regards Ankit
$200 USD in 2 days
3.5
3.5

I can help you validate whether recovery is realistically possible before any destructive action is taken. Since the files are still in their original encrypted state and no recovery utilities were executed yet, that significantly improves the chances of performing a clean analysis. My approach would be: - Inspect the encrypted samples, ransom note, file headers, extensions, and metadata to confirm the ransomware family and encryption pattern - Cross-check against known decryptors and signature databases, including public recovery frameworks and indicators commonly used by security researchers - Verify whether the encryption implementation contains weaknesses, offline keys, partial encryption behavior, or reusable artifacts that make decryption feasible - Attempt recovery of a single test file first before scaling to the remaining dataset - If recovery is viable, provide either a repeatable command-line workflow or an automated Python script so you can process the remaining files safely and consistently Precautions are important here: I would strongly recommend working only on duplicated samples, preserving the encrypted originals untouched, and avoiding random “one-click” recovery tools that may alter recoverable data. Expected turnaround for the initial assessment and proof-of-concept recovery attempt is usually within 1-2 days after receiving the samples and environment details.
$218.18 USD in 2 days
2.6
2.6

Amman, Jordan
Payment method verified
Member since Oct 14, 2020
$10-30 USD
$10-30 USD
$30-250 USD
$250-750 USD
$30-250 USD
$10-30 USD
₹100-1500 INR / hour
₹1500-12500 INR
$250-750 USD
$30-250 USD
₹600-700 INR
₹2000-5000 INR
₹600-1500 INR
€250-750 EUR
$250-750 USD
₹12500-37500 INR
£250-750 GBP
$200-300 USD
$1000-3000 USD
$10-30 USD / hour
₹600-1500 INR
$10-30 USD
€12-18 EUR / hour
£750-1500 GBP
$10-50 USD