Potato 发表于 2020-4-22 17:10

SFile2勒索病毒家族详情

勒索病毒家族名称:SFile2勒索病毒家族
是否支持解密:否
详情:
被加密文件:
被加密文件后缀格式: 修改后缀为sfile2

勒索提示信息:
文件名:!!_FILES_ENCRYPTED_
文件内容 :
-------------------------------------------------------------------------------
Your network has been penetrated.

All files on each host in the network have been encrypted with a strong algorithm.
Backups, replications were either encrypted or wiped. Shadow copies also removed.

DO NOT RESET OR SHUTDOWN - files may be damaged.
DO NOT RENAME OR MOVE the encrypted and readme files.
DO NOT DELETE *.sfile2 files.
This may lead to the impossibility of recovery of the certain files.


To get info how to decrypt your files, contact us at:
vinilblind@protonmail.com
blefbeef@elude.in


To confirm our honest intentions we will decrypt few files for free.
Send 2 different files with extension *.sfile2. Files should not contain essential information.
Files should be inside ZIP archive and mailed to us (SUBJ : your domain or network name).
It can be from different computers on your network to be sure we decrypts everything.

The procedure to decrypt the rest is simple:
After payment we will send you decryption software.

Don't waste time, send email with files attached as soon as possible.

It's just a business. We absolutely do not care about you and your deals, except getting benefits.
If we do not do our work and liabilities - nobody will not cooperate with us. It's not in our interests.
If you will not cooperate with our service - for us, it's doesn't matter. But you will lose your time and data, cause just we have the private key.

-------------------------------------------------------------------------------

防护建议:
1.多台机器,不要使用相同的账号和口令
2.登录口令要有足够的长度和复杂性,并定期更换登录口令
3.重要资料的共享文件夹应设置访问权限控制,并进行定期备份
4.定期检测系统和软件中的安全漏洞,及时打上补丁。
5.定期到服务器检查是否存在异常。查看范围包括:
a)是否有新增账户
b) Guest是否被启用
c) Windows系统日志是否存在异常
d)杀毒软件是否存在异常拦截情况
6.安装安全防护软件,并确保其正常运行。
7.从正规渠道下载安装软件。
8.对不熟悉的软件,如果已经被杀毒软件拦截查杀,不要添加信任继续运行。

Potato 发表于 2020-4-22 18:08

家族:SFile2
被加密文件后缀:sfile2
黑客邮箱:vinilblind@protonmail.com

Potato 发表于 2020-4-22 18:08

家族:SFile2
被加密文件后缀:sfile2
黑客邮箱:vinilblind@protonmail.com
页: [1]
查看完整版本: SFile2勒索病毒家族详情