Once the COOL ransomware has encrypted the files on your computer, it will display the “_readme.txt” file that contains the ransom note and instructions on how to contact the authors of this ransomware. When these files are detected, the ransomware will encrypt them and change their extension to “.cool”, so that you are no longer able to be open them. When you are first infected with the COOL ransomware it will scan your computer for images, videos, and important productivity documents and files such as. It then attempts to extort money from victims by asking for “ransom”, in the form of Bitcoin cryptocurrency, in exchange for access to data.
Image: Cool ransomware Image: COOL ransomware note What is the COOL ransomware?ĬOOL is a file-encrypting ransomware infection that restricts access to data (documents, images, videos) by encrypting files with the “.cool” extension. The instructions are placed on the victim’s desktop in the “ _readme.txt” file. This ransomware encrypts the personal documents found on the victim’s computer with the “.cool” extension, then displays a message which offers to decrypt the data if payment in Bitcoin is made. cool extension, then your computer is infected with the STOP/DJVU ransomware.
If you cannot open your images, documents, or files and they have a.