Potato 发表于 2020-7-22 18:26

TeslaCrypt勒索病毒家族详情

勒索病毒家族名称:TeslaCrypt
是否支持解密:是
详情:
被加密文件:
被加密文件后缀格式: 修改文件后缀为aaa

勒索提示信息:
文件名:restore_files_whwdf.txt
文件内容 :
-------------------------------------------------------------------------------

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
What happened to your files ?
All of your files were protected by a strong encryption with RSA-2048.
More information about the encryption keys using RSA-2048 can be found here: http://en.wikipedia.org/wiki/RSA_(cryptosystem)

What does this mean ?
This means that the structure and data within your files have been irrevocably changed, you will not be able to work with them, read them or see them,
it is the same thing as losing them forever, but with our help, you can restore them.

How did this happen ?
Especially for you, on our server was generated the secret key pair RSA-2048 - public and private.
All your files were encrypted with the public key, which has been transferred to your computer via the Internet.
Decrypting of your files is only possible with the help of the private key and decrypt program, which is on our secret server.

What do I do ?
Alas, if you do not take the necessary measures for the specified time then the conditions for obtaining the private key will be changed.
If you really value your data, then we suggest you do not waste valuable time searching for other solutions because they do not exist.

For more specific instructions, please visit your personal home page, there are a few different addresses pointing to your page below:
1. http://aep554w4fm8j.fflroe598qu.com/9DC4D1107DEEE8B3
2. http://aoei243548ld.keedo93i1lo.com/9DC4D1107DEEE8B3
3. https://zpr5huq4bgmutfnf.onion.to/9DC4D1107DEEE8B3

If for some reasons the addresses are not available, follow these steps:
1. Download and install tor-browser: http://www.torproject.org/projects/torbrowser.html.en
2. After a successful installation, run the browser and wait for initialization.
3. Type in the address bar: zpr5huq4bgmutfnf.onion/9DC4D1107DEEE8B3
4. Follow the instructions on the site.

IMPORTANT INFORMATION:
Your personal page: http://aep554w4fm8j.fflroe598qu.com/9DC4D1107DEEE8B3
Your personal page (using TOR): zpr5huq4bgmutfnf.onion/9DC4D1107DEEE8B3
Your personal identification number (if you open the site (or TOR 's) directly): 9DC4D1107DEEE8B3
-------------------------------------------------------------------------------
弹窗:




解密:
下载并安全360安全卫士,在360安全卫士的功能大全中找360解密大师,使用360解密大师即可解密文件。

防护建议:
1.多台机器,不要使用相同的账号和口令
2.登录口令要有足够的长度和复杂性,并定期更换登录口令
3.重要资料的共享文件夹应设置访问权限控制,并进行定期备份
4.定期检测系统和软件中的安全漏洞,及时打上补丁。
5.定期到服务器检查是否存在异常。查看范围包括:
a)是否有新增账户
b) Guest是否被启用
c) Windows系统日志是否存在异常
d)杀毒软件是否存在异常拦截情况
6.安装安全防护软件,并确保其正常运行。
7.从正规渠道下载安装软件。
8.对不熟悉的软件,如果已经被杀毒软件拦截查杀,不要添加信任继续运行。

Potato 发表于 2020-8-7 15:13

All your documents, photos, databases and other important files have been encrypted
with strongest encryption RSA-2048 key, generated for this computer.

Private decryption key is stored on a secret Internet server and nobody can
decrypt your files until you pay and obtain the private key.

If you see the main encryptor red window, examine it and follow the instructions.
Otherwise, it seems that you or your antivirus deleted the encryptor program.
Now you have the last chance to decrypt your files.
Open in your browser one of the links:
http://is6xsotjdy4qtgur.afnwdsy4j32.com
http://is6xsotjdy4qtgur.9isernvur33.com
https://is6xsotjdy4qtgur.tor2web.blutmagie.de
They are public gates to the secret server.
Copy and paste the following Bitcoin address in the input form on server. Avoid missprints.
1JYqiPAnYoiFc86ULk6WEvsgAHTiT7Dpq
Follow the instructions on the server.


If you have problems with gates, use direct connection:
1. Download Tor Browser from http://torproject.org
2. In the Tor Browser open the http://is6xsotjdy4qtgur.onion/
   Note that this server is available via Tor Browser only.
   Retry in 1 hour if site is not reachable.
Copy and paste the following Bitcoin address in the input form on server. Avoid missprints.
1JYqiPAnYoiFc86ULk6WEvsgAHTiT7Dpq
Follow the instructions on the server.

Potato 发表于 2020-8-7 19:27

家族:TeslaCrypt
被加密文件后缀:ezz
黑客邮箱/Url:is6xsotjdy4qtgur.afnwdsy4j32.com

Potato 发表于 2020-8-7 19:27

家族:TeslaCrypt
被加密文件后缀:ezz
黑客邮箱/Url:is6xsotjdy4qtgur.9isernvur33.com

Potato 发表于 2020-8-7 19:27

家族:TeslaCrypt
被加密文件后缀:ezz
黑客邮箱/Url:is6xsotjdy4qtgur.tor2web.blutmagie.de

Potato 发表于 2020-8-7 19:27

家族:TeslaCrypt
被加密文件后缀:ezz
黑客邮箱/Url:is6xsotjdy4qtgur.onion

Potato 发表于 2020-10-14 18:15

All your documents, photos, databases and other important files have been encrypted
with strongest encryption RSA-2048 key, generated for this computer.

Private decryption key is stored on a secret Internet server and nobody can
decrypt your files until you pay and obtain the private key.

If you see the main encryptor red window, examine it and follow the instructions.
Otherwise, it seems that you or your antivirus deleted the encryptor program.
Now you have the last chance to decrypt your files.

Open http://3kxwjihmkgibht2s.wh47f2as19.comor http://34r6hq26q2h4jkzj.7hwr34n18.com,
https://3kxwjihmkgibht2s.s5.tor-gateways.de/ in your browser.
They are public gates to the secret server.
Copy and paste the following Bitcoin address in the input form on server. Avoid missprints.
1Mwu4vk3LAH64mPvb2oJXFhkFkHHsqy5Zx
Follow the instructions on the server.



If you have problems with gates, use direct connection:
1. Download Tor Browser from http://torproject.org
2. In the Tor Browser open the http://34r6hq26q2h4jkzj.onion/
   Note that this server is available via Tor Browser only.
   Retry in 1 hour if site is not reachable.
Copy and paste the following Bitcoin address in the input form on server. Avoid missprints.
1Mwu4vk3LAH64mPvb2oJXFhkFkHHsqy5Zx
Follow the instructions on the server.

Potato 发表于 2021-1-14 14:09

家族:TeslaCrypt
被加密文件后缀:Ecc
黑客邮箱/Url:1F8KoHxmoEMUmzsYsxu2oCiYfQ4qqjdKXL

Potato 发表于 2021-1-14 14:09

家族:TeslaCrypt
被加密文件后缀:Ecc
黑客邮箱/Url:https://34r6hq26q2h4jkzj.tor2web.fi

Potato 发表于 2021-1-14 14:09

家族:TeslaCrypt
被加密文件后缀:Ecc
黑客邮箱/Url:https://7tno4hib47vlep5o.tor2web.fi
页: [1]
查看完整版本: TeslaCrypt勒索病毒家族详情