360fans20674865 发表于 2019-11-11 16:46

id_2338653428_.WECANHELP勒索病毒求解密

病毒提示文本内容如下:

*** ALL YOUR WORK AND PERSONAL FILES HAVE BEEN ENCRYPTED ***

To decrypt your files you need to buy the special software ?"Nemesis decryptor"
You can find out the details/buy decryptor + key/ask questions by email: wecanhelpyou@elude.in, w3canh3lpy0u@cock.li OR wecanh3lpyou2@cock.li

IMPORTANT!
DON'T TRY TO RESTORE YOU FILES BY YOUR SELF, YOU CAN DAMAGE FILES!
If within 24 hours you did not receive an answer by email, be sure to write to Jabber: icanhelp@xmpp.jp


Your personal ID: 2338653428

简简单单chao 发表于 2019-11-11 17:18

您好,这个安全卫士支持解密了,您用安全卫士的解密大师扫描看下呢

360fans_uid30036 发表于 2019-11-12 01:40

我也中了这个,没有找到 temp000000.txt ,全盘 winhex扫描也没有找到 report|| 密钥,无解了!!

这个变种大文件破坏头部 350KB(57800) ,哎,损失惨重!!
页: [1]
查看完整版本: id_2338653428_.WECANHELP勒索病毒求解密