Have you been attacked by
Eking ransomware?

If Eking Ransomware has targeted you, turn off or disconnect the infected computer from the network and contact us now.

Secure solutions for professionals and companies

Secure solutions for
professionals and companies


logo hiscox horizontal
logo mapfre horizontal
sura logo

Ransomware Recovery

EKING/PHOBOS ransomware is an encryption ransomware Trojan first observed on October 21, 2017 (a new variant of Dharma ransomware).

This ransomware also renames all encrypted files by adding the '.EKING' extension (together with the victim’s ID and the .EKINGhacker email address)
For example, if a file is named '1.jpg', then .EKING will rename it '1.jpg.id-1E857D00-1234.[hacker@email.com].EKING'.
After encryption, the victim usually receives a ransom note containing instructions on how to make the ransom payment, which is often a cryptocurrency, such as Bitcoin.
The ransom note contains instructions on how to make the payment, often in cryptocurrency like Bitcoin, to maintain the anonymity of the cybercriminals.
It's important to note that paying the ransom does not guarantee that cybercriminals will provide the decryption key or that all files will be recovered.

Secure and Fast Diagnosis to Analyze Ransomware Types and Cryptographic Attack Vectors

Our experts decode RSA and AES algorithms, used by Governments, ISPs, Technological, Financial, and Telecommunications Industries.
RSA, as an asymmetric encryption algorithm, uses 2 keys: 1 public to encrypt, 1 private to decrypt. AES is a symmetric encryption algorithm with common length of 128, 192, and 256 bits.
Digital Forensic Analysis

We carry out a complete diagnosis of encrypted files and affected systems to identify patterns that allow data recovery.

Reverse Engineering

We analyze the encryption algorithms to unlock your files and quickly detect weaknesses in the computer virus code to decrypt it.

Forensic Data Recovery

We recover and remove the encryption of your files with advanced data recovery techniques and the creation of specific tools.

Advanced Cryptography

We have deep knowledge of encryption algorithms and the ability to develop cryptographic processes and constant investigation.

Expert Recovery Of Files Infected By Ransomware

We have highly-trained data recovery and ransomware decryption specialists.
Our professionals have extensive knowledge in cryptography, digital forensics, and reverse engineering, enabling them to solve complex technical problems and find efficient solutions.

Protect Your Company
From Data Breach!

Thanks to our Advanced Monitoring System, you may track and remove content hosted in the Deep Web.
Leaking confidential files has serious legal consequences related to the GDPR, including the risk of identity fraud, unauthorized access to systems and consequent damage to your reputation.

Real-Time Monitoring

We monitor the Surface, Deep, and Dark Web to control, track, and eliminate possible leaks in sensitive data, documents, and files.

ISO 9001 and ISO 27001

HelpRansomware complies with Quality Standards (ISO 9001) and Security Standards (ISO 27001).

Speedy response to ransomware: contact us now and secure your company

Get help now through the following channels:

Companies WHO rely on our solutions

What our customers say about us

Why Should You Never Pay The ransom?

In 2020, OFAC and FinCEN declared it illegal to pay a ransom:

Companies that facilitate ransomware payments, not only encourage future ransomware payment demands but also may risk violating OFAC regulations.

What should I do if Ransomware has Encrypted my data?

1. Turn off or disconnect the computer from the network

2. Do not ever make contact with the cybercriminals

3. Do not pay the ransom requested for your data

4. Contact us immediately and get help 24/7 worldwide

Helpransomware is featured on