高危病毒预警:.ReadTheInstructions后缀勒索者病毒
首页 > 业界动态
时间:2020-07-05 10:46:42
7月2日,河北省某客户3台服务器中了.ReadTheInstructions后缀勒索者病毒,三台服务器内所有的有效文件都被添加.ReadTheInstructions后缀,导致服务器瘫痪,客户业务陷入停顿。入侵者留下如下信息:
All your data are encrypted!
What happened?
Your files are encrypted, and currently unavailable.
You can check it: all files on you computer has new expansion.
By the way, everything is possible to recover (restore), but you need to buy a unique decryptor.
Otherwise, you never cant return your data.
For purchasing a decryptor contact us by email:
mrimrssmith@protonmail.com
If you will get no answer within 24 hours contact us by our alternate emails:
mrimrssmith@cock.li
What guarantees?
Its just a business. If we do not do our work and liabilities - nobody will not cooperate with us.
To verify the possibility of the recovery of your files we can decrypted 1 file for free.
Attach 1 file to the letter (no more than 10Mb). Indicate your personal ID on the letter: (省略)
Attention!
- Attempts of change files by yourself will result in a loose of data.
- Our e-mail can be blocked over time. Write now, loss of contact with us will result in a loose of data.
- Use any third party software for restoring your data or antivirus solutions will result in a loose of data.
- Decryptors of other users are unique and will not fit your files and use of those will result in a loose of data.
- If you will not cooperate with our service - for us, its does not matter. But you will lose your time and data, cause just we have the private key.
What happened?
Your files are encrypted, and currently unavailable.
You can check it: all files on you computer has new expansion.
By the way, everything is possible to recover (restore), but you need to buy a unique decryptor.
Otherwise, you never cant return your data.
For purchasing a decryptor contact us by email:
mrimrssmith@protonmail.com
If you will get no answer within 24 hours contact us by our alternate emails:
mrimrssmith@cock.li
What guarantees?
Its just a business. If we do not do our work and liabilities - nobody will not cooperate with us.
To verify the possibility of the recovery of your files we can decrypted 1 file for free.
Attach 1 file to the letter (no more than 10Mb). Indicate your personal ID on the letter: (省略)
Attention!
- Attempts of change files by yourself will result in a loose of data.
- Our e-mail can be blocked over time. Write now, loss of contact with us will result in a loose of data.
- Use any third party software for restoring your data or antivirus solutions will result in a loose of data.
- Decryptors of other users are unique and will not fit your files and use of those will result in a loose of data.
- If you will not cooperate with our service - for us, its does not matter. But you will lose your time and data, cause just we have the private key.
客户被病毒加密的一个目录如下:
自2020年春节以后,国内不少客户中勒索者病毒,这给客户的生产和经营带来困难。有客户说,中勒索病毒感觉距离自己很遥远,没想到就中招了。“凡事预则立,不预则废”,鸿萌建议客户不要抱有侥幸心理,特别是中小企业老板,一定要保护好自己的核心数字资产。一旦企业核心数据被勒索,少则数万,多则数十万不等,会给企业带来重大经济损失,也不一定能够成功恢复数据。
针对勒索病毒,鸿萌具有多年的数据恢复和预防经验,我们的专业工程师随时等待您的垂询。
针对勒索病毒,鸿萌具有多年的数据恢复和预防经验,我们的专业工程师随时等待您的垂询。