Potato 发表于 2022-9-15 19:36

Your network has been penetrated.
All files on each host in the network have been encrypted with a strong algorythm.
Backups were either encrypted or deleted or backup disks were formatted.
We exclusively have decryption software for your situation
DO NOT RESET OR SHUTDOWN - files may be damaged.
DO NOT RENAME the encrypted and readme files.
DO NOT MOVE the encrypted and readme files.
DO NOT DELETE readme files.
This may lead to the impossibility of recovery of the certain files.
To get info(pay-to-decrypt your files) contact us at:
mssqlppt@tutanota.com

To confirm our honest intentions.
Send 2 different random files and you will get it decrypted.
It can be from different computers on your network to be sure we decrypts everything.
Files should have both .LOCK extension of each included.
2 files we unlock for free.

Potato 发表于 2022-9-16 10:29

家族:Rook
被加密文件后缀:Goodbak
黑客邮箱/Url:mssqlppt@tutanota.com
页: 1 [2]
查看完整版本: Rook勒索病毒家族详情