I have ran into something new I have not seen before. One of my clients became infected with a ransom ware. The difference with this one is the data files all have the correct extensions, ( IE .pdf, .doc and tec.) yet when you open them of course there is nothing but hieroglyphics. The files are classified as macro files. My question is, does anyone have an idea as to what ransom program this is? I am familiar with the cryptowall 2.0 & 3.0 but not sure what this is. Looking to find out if it is possible to recover the data. TYIA