360fans_u4114174 发表于 2020-8-6 22:29

中了勒索病毒,后缀 .yl8y8b7,不知道怎么办,求救


送上几个附件文档!!等着救命


360fans_u4114174 发表于 2020-8-6 22:30


Potato 发表于 2020-8-7 10:34

有勒索提示信息吗

360fans_u4114174 发表于 2020-8-12 17:31



就是这个文件
---=== Welcome. Again. ===---

[+] Whats Happen? [+]

Your files are encrypted, and currently unavailable. You can check it: all files on your computer has extension yl8y8b7.
By the way, everything is possible to recover (restore), but you need to follow our instructions. Otherwise, you cant return your data (NEVER).

[+] What guarantees? [+]

Its just a business. We absolutely do not care about you and your deals, except getting benefits. If we do not do our work and liabilities - nobody will not cooperate with us. Its not in our interests.
To check the ability of returning files, You should go to our website. There you can decrypt one file for free. That is our guarantee.
If you will not cooperate with our service - for us, its does not matter. But you will lose your time and data, cause just we have the private key. In practise - time is much more valuable than money.

[+] How to get access on website? [+]

You have two ways:

1) Using a TOR browser!
a) Download and install TOR browser from this site: https://torproject.org/
b) Open our website: http://aplebzu47wgazapdqks6vrcv6zcnjppkbxbr6wketf56nf6aq2nmyoyd.onion/B0ABBED772FF1DEA

2) If TOR blocked in your country, try to use VPN! But you can use our secondary website. For this:
a) Open your any browser (Chrome, Firefox, Opera, IE, Edge)
b) Open our secondary website: http://decryptor.cc/B0ABBED772FF1DEA

Warning: secondary website can be blocked, thats why first variant much better and more available.

When you open our website, put the following data in the input form:
Key:
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Extension name:

yl8y8b7

-----------------------------------------------------------------------------------------

!!! DANGER !!!
DONT try to change files by yourself, DONT use any third party software for restoring your data or antivirus solutions - its may entail damge of the private key and, as result, The Loss all data.
!!! !!! !!!
ONE MORE TIME: Its in your interests to get your files back. From our side, we (the best specialists) make everything for restoring, but please should not interfere.
!!! !!! !!!

360fans_u4114174 发表于 2020-8-12 17:33


Potato 发表于 2020-8-12 18:37

1.您中的属于Sodinokibi勒索病毒家族,暂时无解。
2.如果文件不急需,可以备份等我们出解密工具。
3.如果文件急需,可以自行联系黑客
4.若需要排查中毒原因请添加1932948309,并备注被加密文件后缀。
5.更多防护方案和付款细节请参考:https://bbs.360.cn/thread-15858154-1-1.html
页: [1]
查看完整版本: 中了勒索病毒,后缀 .yl8y8b7,不知道怎么办,求救