Potato 发表于 2020-7-10 17:16

LockCrypt勒索病毒家族详情

勒索病毒家族名称:LockCrypt勒索病毒家族详情
是否支持解密:否
详情:
被加密文件:
被加密文件后缀格式: 修改文件啊后缀为[d_dukens@aol.com_or_d_dukens@bitmessage.ch]

勒索提示信息:
文件名:How to restore files.hta
文件内容 :
-------------------------------------------------------------------------------
Your files are encrypted!
Your personal ID
0217170172502808312423365506622297703552930908278641759413878296638849902855977250232807127813300060
6080182527376891404443829731147601815241510996087358285489557178472875616516930350701525498630654609
3007720723925081403194161493895277803982232025321439634642476407927164991340061498993754468668022086
4358220941655666584578955175304519496192861693830087279633056416863199428981155788950321367918919117
3876230178344514228121790259855592634634370223222498882965829918981320247500718195250818400946354221
2228607739506903382059452019783322275115492158898926790214922610410758836607083353824681767259522126
197283599595346060All your important data has been encrypted.
To recover data you need decryptor.
To get the decryptor you should:
pay for decrypt:
to send 1 bitcoin today (tomorrow 2 bitcoins) to bitcoin the address 1J6pU4rA4u8SBMFjQDZFVB2ooKpnYZDVH9

at any time your files can be destroyed
Here are our recommendations:
If you have no Bitcoin address register https://blockchain.info/wallet
fill up your wallet some of the ways:
Btcdirect.eu - Good service for Europe
Bittylicious.com - Bitcoins through Visa / MC or through SEPA (ЕС) transfer
Localbitcoins.com - Here you can find people who want to sell Bitcoins directly (WU, in cash, SEPA, Paypal u.s.).
Cex.io - buy bitcoins with Visa / Mastercard or Wire Transfer.
Coincafe.com - Designed for quick and easy service. Payment methods: Western Union, Bank of America, cash by FedEx, Moneygram, as money transfer
Bitstamp.net - well known and established Bitcoins seller
Coinmama.com - Visa / Mastercard
Btc-e.com - Bitcoins vendor (Visa / Mastercard, etc.)
If you have not found any bitcoins in your region, try to find them here:
Buybitcoinworldwide.com - International Bicoins Exchange Directory
Bitcoin-net.com - Another directory of Bitcoins sellers
Howtobuybitcoins.info - International Bicoins Exchange Directory
Bittybot.co/eu - Directory for countries of the European Union
write to Google how to buy Bitcoin in your country?
mail support d_dukens@aol.com or d_dukens@bitmessage.ch

After the payment:
Send screenshot of payment to mail support d_dukens@aol.com or d_dukens@bitmessage.ch. In the letter include your personal ID (look at the beginning of this document).

After you will receive a decryptor and instructions
Attention!
No Payment = No decryption
You really get the decryptor after payment
Do not attempt to remove the program or run the anti-virus tools
Attempts to self-decrypting files will result in the loss of your data
Decoders other users are not compatible with your data, because each user's unique encryption key
-------------------------------------------------------------------------------
弹窗:

防护建议:
1.多台机器,不要使用相同的账号和口令
2.登录口令要有足够的长度和复杂性,并定期更换登录口令
3.重要资料的共享文件夹应设置访问权限控制,并进行定期备份
4.定期检测系统和软件中的安全漏洞,及时打上补丁。
5.定期到服务器检查是否存在异常。查看范围包括:
a)是否有新增账户
b) Guest是否被启用
c) Windows系统日志是否存在异常
d)杀毒软件是否存在异常拦截情况
6.安装安全防护软件,并确保其正常运行。
7.从正规渠道下载安装软件。
8.对不熟悉的软件,如果已经被杀毒软件拦截查杀,不要添加信任继续运行。
页: [1]
查看完整版本: LockCrypt勒索病毒家族详情