SQ_ is a dangerous ransomware that was first seen in the wild in August 2019. This ransomware is believed to be part of a larger campaign that targets various companies and organizations in an attempt to extort money from them. SQ_ encrypts the victim’s files using AES-256 encryption and then demands a ransom of 2 Bitcoin (approximately $11,000) for the decryption key. The ransomware leaves a text file named “DECRYPT-INSTRUCTIONS.txt” on the victim’s desktop which contains instructions on how to pay the ransom and retrieve the decryption key.


SQ_ Ransomware is a serious threat to both individuals and businesses alike. If you are infected with SQ_ Ransomware, it is important to seek professional help immediately to remove the ransomware and decrypt your files. Failing to do so could result in you losing access to your files permanently.


There are several things that you can do to protect yourself from it and other similar threats:

  •  Keep your operating system and all of your software up to date. This will help to close any security holes that SQ_ or other malware might exploit.
  •  Use a reputable antivirus program and keep it up to date. This will help to detect and block it before it has a chance to encrypt your files.
  •  Avoid opening email attachments from unknown sources. This is one of the most common ways that SQ_ is spread. If you do receive an attachment from an unknown source, make sure to scan it with your antivirus program before opening it.
  •  Avoid visiting websites that are known to be unsafe. SQ_ and other malware can be spread through malicious websites. If you do visit an untrustworthy website, make sure not to click on any links or download any files from it.
  •  Back up your important files regularly. This way, even if ransomware does manage to encrypt your files, you will still have a copy of them that you can restore from.

How do you know that you are a victim of SQ_ Ransomware?

There are several ways to tell if you are a victim of SQ_:

  • You may see a message on your screen that says “Your files have been encrypted” or something similar.
  • Your computer may run more slowly than usual and you may notice strange activity.
  • You may see new files on your computer that you do not recognize. These are usually ransom notes or instructions on how to pay the ransom.
  • Your usual files and programs may be unavailable or you may be unable to open them.
  • Your files may have strange extensions added to them, such as .SQ_ or .locked.


If you notice any of these signs, it is important to take action immediately.


So, if you do find yourself infected with SQ_ Ransomware, the first thing you should do is disconnect from the internet and then contact a professional for help. Trying to remove ransomware on your own could result in further damage to your computer or even permanent data loss. We do not recommend paying the ransom, as there is no guarantee that you will receive the decryption key even if you do make the payment. Also, there is no public SQ_ decryption tool available at this time.


Contact our SalvageData team of experts immediately for assistance.

SalvageData is the industry leader in data recovery.





