Figure 1-1
Win32/Filecoder.TeslaCrypt is a trojan that encrypts files on local drives. To decrypt files, the user is asked to send information/certain amount of money via the Bitcoin payment service.
cd %userprofile%\Desktop
(do not replace "userprofile" with your username–type the command exactly as shown) and then press Enter.ESETTeslaCryptDecryptor.exe
and press Enter.ESETTeslaCryptDecryptor.exe C:
and press Enter to scan the C drive. Files encryped by TeslaCrypt V.3 and V.4 will automatically be decrypted. To scan a different drive replace C:
with the appropriate drive letter.Figure 1-2
Click the image to view larger in new window