Potato 发表于 2020-7-24 12:13

Exorcist勒索病毒家族详情

勒索病毒家族名称:Exorcist勒索病毒家族
是否支持解密:否
详情:
被加密文件:
被加密文件后缀格式: 修改文件为随机后缀


勒索提示信息:
文件名:
文件内容 :aDZxGc-decrypt.hta
-------------------------------------------------------------------------------
aDZxGc Decrypt
All your data has been encrypted with Exorcist Ransomware.
Do not worry: you have some hours to contact us and decrypt your data by paying a ransom.
To do this, follow instructions on this web site: http://217.8.117.26/pay
Also, you can install Tor Browser and use this web site: http://4dnd3utjsmm2zcsb.onion/pay
IMPORTANT: Do not modify this file, otherwise you will not be able to recover your data!

--------------------------------------------------------------------------------

Your authorization key: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-------------------------------------------------------------------------------
弹窗:


桌面背景:

防护建议:
1.多台机器,不要使用相同的账号和口令
2.登录口令要有足够的长度和复杂性,并定期更换登录口令
3.重要资料的共享文件夹应设置访问权限控制,并进行定期备份
4.定期检测系统和软件中的安全漏洞,及时打上补丁。
5.定期到服务器检查是否存在异常。查看范围包括:
a)是否有新增账户
b) Guest是否被启用
c) Windows系统日志是否存在异常
d)杀毒软件是否存在异常拦截情况
6.安装安全防护软件,并确保其正常运行。
7.从正规渠道下载安装软件。
8.对不熟悉的软件,如果已经被杀毒软件拦截查杀,不要添加信任继续运行。
页: [1]
查看完整版本: Exorcist勒索病毒家族详情