Potato 发表于 2020-7-29 10:39

CryptoShield勒索病毒家族详情

勒索病毒家族名称:CryptoShield勒索病毒家族
是否支持解密:否
详情:
被加密文件:
被加密文件后缀格式: 修改文件后缀为CRYPTOSHIELD

勒索提示信息:
文件名:
文件内容 :
-------------------------------------------------------------------------------
NOT YOUR LANGUAGE? USE http://translate.google.com

What happens to you files?
All of your files were encrypted by a strong encryption with RSA-2048 using CryptoShield 1.1.
More information about the encryption keys using RSA-2048 can be found here: https://en.wikipedia.org/wiki/RSA_(cryptosystem)

How did this happen ?
Specially for your PC was generated personal RSA - 2048 KEY, both public and private.
ALL your FILES were encrypted with the public key, which has been transferred to your computer via the Internet.
Decrypting of your files is only possible with the help of the private key and decrypt program , which is on our secret server.

What do I do ?
So, there are two ways you can choose: wait for a miracle and get your price doubled, or start send email now for more specific instructions,
and restore your data easy way.
If You have really valuable data, you better not waste your time, because there is no other way to get your files, except make a payment.

To receive your private software:
Contact us by email , send us an email your (personal identification) ID number and wait for further instructions.
Our specialist will contact you within 24 hours.
For you to be sure, that we can decrypt your files - you can send us a single encrypted file and we will send you back it in a decrypted form.
This will be your guarantee.

Please do not waste your time! You have 48 hours only! After that The Main Server will double your price!
So right now You have a chance to buy your individual private SoftWare with a low price!

CONTACTS E-MAILS:
res_sup@india.com - SUPPORT;
res_sup@computer4u.com - SUPPORT RESERVE FIRST;
res_reserve@india.com - SUPPORT RESERVE SECOND;

ID (PERSONAL IDENTIFICATION): 1C9B74E8004E761C
-------------------------------------------------------------------------------
弹窗:

防护建议:
1.多台机器,不要使用相同的账号和口令
2.登录口令要有足够的长度和复杂性,并定期更换登录口令
3.重要资料的共享文件夹应设置访问权限控制,并进行定期备份
4.定期检测系统和软件中的安全漏洞,及时打上补丁。
5.定期到服务器检查是否存在异常。查看范围包括:
a)是否有新增账户
b) Guest是否被启用
c) Windows系统日志是否存在异常
d)杀毒软件是否存在异常拦截情况
6.安装安全防护软件,并确保其正常运行。
7.从正规渠道下载安装软件。
8.对不熟悉的软件,如果已经被杀毒软件拦截查杀,不要添加信任继续运行。

Potato 发表于 2020-8-27 18:58

NOT YOUR LANGUAGE? USE http://translate.google.com

What happens to you files?
All of your files were encrypted by a strong encryption with RSA-2048 using CryptoShield 2.0. DANGEROUS.
More information about the encryption keys using RSA-2048 can be found here: https://en.wikipedia.org/wiki/RSA_(cryptosystem)

How did this happen ?
Specially for your PC was generated personal RSA - 2048 KEY, both public and private.
ALL your FILES were encrypted with the public key, which has been transferred to your computer via the Internet.
Decrypting of your files is only possible with the help of the private key and decrypt program , which is on our secret server.

What do I do ?
So, there are two ways you can choose: wait for a miracle and get your price doubled, or start send email now for more specific instructions,
and restore your data easy way.
If You have really valuable data, you better not waste your time, because there is no other way to get your files, except makepayment.

To receive your private software:
Contact us by email , send us an email your (personal identification) ID number and wait for further instructions.
Our specialist will contact you within 24 hours.
ALL YOUR FILES ARE ENCRYPTED AND LOCKED, YOU CAN NOT DELETE THEM, MOVE OR DO SOMETHING WITH THEM. HURRY TO GET BACK ACCESS FILES.
Please do not waste your time! You have 72 hours only! After that The Main Server will double your price!
So right now You have a chance to buy your individual private SoftWare with a low price!

CONTACTS E-MAILS:
res_sup@india.com - SUPPORT;
res_sup@computer4u.com - SUPPORT RESERVE FIRST;
res_reserve@india.com - SUPPORT RESERVE SECOND;

ID (PERSONAL IDENTIFICATION): 1C9B74E8004E761C

Potato 发表于 2020-8-27 19:19

家族:CryptoShield
被加密文件后缀:CRYPTOSHIELD.
黑客邮箱/Url:res_sup@india.com

Potato 发表于 2020-8-27 19:19

家族:CryptoShield
被加密文件后缀:CRYPTOSHIELD.
黑客邮箱/Url:res_sup@computer4u.com

Potato 发表于 2020-8-27 19:19

家族:CryptoShield
被加密文件后缀:CRYPTOSHIELD.
黑客邮箱/Url:res_reserve@india.com

Potato 发表于 2020-12-24 19:06

家族:CryptoShield
被加密文件后缀:CRYPTOSHIELD.
黑客邮箱/Url:R_SP@INDIA.COM
页: [1]
查看完整版本: CryptoShield勒索病毒家族详情