How to remove Bttu ransomware

What is Bttu ransomware?

Bttu is a newly-developed virus in the ransomware category. This means that it encrypts files with the aim of demanding money for their decryption. Bttu belongs to the STOP/Djvu ransomware family, and is very similar to other STOP/Djvu viruses as a result.
After encrypting the files, Bttu performs two other actions. It renames all the files it encrypted, giving them .bttu file extension. It also creates a ransom note, “_readme.txt”, to inform the victim of the hacker’s demands.
The image above contains the full text of the note, and here’s the summary. Bttu demands $980 to decrypt the files, or $490 should the victim pay within three days. This is typical for STOP/Djvu ransomware; they all demand this amount and include the manipulative discount.
Paying the hackers is not recommended; indeed, many agencies such as the FBI advocate against this. This is mainly because the criminals can always choose to simply take your money and disappear, not decrypting any of your files. But this doesn’t mean that your data is lost. The guide below will cover some other ways to remove Bttu ransomware and decrypt .bttu files.

Scroll to top