Mztu Ransomware
Summary
The Ntzu Ransomware scans for a wide range of different file types, encrypts them with a strong cryptographic algorithm, and appends their filenames with the .mztu extension. This is an important fact because threat actors spreading the STOP/Djvu malware sometimes also collect sensitive data using threatening stealers like RedLine and Vidar before encrypting files with their chosen ransomware. The Mztu Ransomware is a devious threat that encrypts files on a victims computer and demands payment for the decryption key and software. The attackers provide two email addresses - support@freshmail.top and datarestorehelp@airmail.cc - where victims can contact them and send one encrypted file for free decryption. The full text of Mztu Ransomwares ransom note is: Dont worry, you can return all your files!