首页 > 业界动态

时间:2020-07-05 10:46:42
       7月2日,河北省某客户3台服务器中了.ReadTheInstructions后缀勒索者病毒,三台服务器内所有的有效文件都被添加.ReadTheInstructions后缀,导致服务器瘫痪,客户业务陷入停顿。入侵者留下如下信息:
       All your data are encrypted!

What happened?
Your files are encrypted, and currently unavailable.
You can check it: all files on you computer has new expansion.
By the way, everything is possible to recover (restore), but you need to buy a unique decryptor.
Otherwise, you never cant return your data.

For purchasing a decryptor contact us by email:
mrimrssmith@protonmail.com
If you will get no answer within 24 hours contact us by our alternate emails:
mrimrssmith@cock.li

What guarantees?
Its just a business. If we do not do our work and liabilities - nobody will not cooperate with us.
To verify the possibility of the recovery of your files we can decrypted 1 file for free.
Attach 1 file to the letter (no more than 10Mb). Indicate your personal ID on the letter: (省略)

Attention!
- Attempts of change files by yourself will result in a loose of data.
- Our e-mail can be blocked over time. Write now, loss of contact with us will result in a loose of data.
- Use any third party software for restoring your data or antivirus solutions will result in a loose of data.
- Decryptors of other users are unique and will not fit your files and use of those will result in a loose of data.
- If you will not cooperate with our service - for us, its does not matter. But you will lose your time and data, cause just we have the private key.
客户被病毒加密的一个目录如下:
        自2020年春节以后,国内不少客户中勒索者病毒,这给客户的生产和经营带来困难。有客户说,中勒索病毒感觉距离自己很遥远,没想到就中招了。“凡事预则立,不预则废”,鸿萌建议客户不要抱有侥幸心理,特别是中小企业老板,一定要保护好自己的核心数字资产。一旦企业核心数据被勒索,少则数万,多则数十万不等,会给企业带来重大经济损失,也不一定能够成功恢复数据。
       针对勒索病毒,鸿萌具有多年的数据恢复和预防经验,我们的专业工程师随时等待您的垂询。