请使用手机微信扫码安全登录

切换账号密码登录

绑定手机号

应国家法规对于账号实名的要求,请您在进行下一步操作前,需要先完成手机绑定 (若绑定失败,请重新登录绑定)。了解更多

不绑定绑定手机号

360官网 | 360商城

推荐论坛版块活动360粉丝商城众测粉丝轰趴馆常见问题
本帖最后由 Potato 于 2020-10-23 18:03 编辑
勒索病毒家族名称:LV勒索病毒家族
是否支持解密:否
详情:
被加密文件:
被加密文件后缀格式: 修改文件后缀为随机后缀

勒索提示信息:
文件名:EDGEWATER-README.txt
文件内容 :
-------------------------------------------------------------------------------
---=== Welcome. Again. ===---

[+] What's Happened? [+]

Your files have been encrypted and currently unavailable. You can check it. All files in your system have 0nzo8yk extension. By the way, everything is possible to recover (restore) but you should follow our instructions. Otherwise you can NEVER return your data.

[+] What are our guarantees? [+]

It's just a business and we care only about getting benefits. If we don't meet our obligations, nobody will deal with us. It doesn't hold our interest. So you can check the ability to restore your files. For this purpose you should visit our website where you can decrypt one file for free. That is our guarantee.
It doesn't metter for us whether you cooperate with us or not. But if you don't, you'll lose your time and data cause only we have the private key to decrypt your files. In practice - time is much more valuable than money.

[+] How to get access to our website? [+]

Use TOR browser:
  1. Download and install TOR browser from this site: https://torproject.org/
  2. Visit our website: http://4to43yp4mng2gdc3jgnep5bt7 ... j3qun7wz4y2id.onion

When you visit our website, put the following data into the input form:
Key:

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!!! DANGER !!!
DON'T try to change files by yourself, DON'T use any third party software or antivirus solutions to  restore your data - it may entail the private key damage and as a result all your data loss!
!!! !!! !!!
ONE MORE TIME: It's in your best interests to get your files back. From our side we (the best specialists in this sphere) ready to make everything for restoring but please do not interfere.
!!! !!! !!
-------------------------------------------------------------------------------
桌面背景:

支付页面:



防护建议:
1.多台机器,不要使用相同的账号和口令
2.登录口令要有足够的长度和复杂性,并定期更换登录口令
3.重要资料的共享文件夹应设置访问权限控制,并进行定期备份
4.定期检测系统和软件中的安全漏洞,及时打上补丁。
5.定期到服务器检查是否存在异常。查看范围包括:
a)是否有新增账户
b) Guest是否被启用
c) Windows系统日志是否存在异常
d)杀毒软件是否存在异常拦截情况
6.安装安全防护软件,并确保其正常运行。
7.从正规渠道下载安装软件。
8.对不熟悉的软件,如果已经被杀毒软件拦截查杀,不要添加信任继续运行。

共 0 个关于LV勒索病毒家族详情的回复 最后回复于 2020-10-23 18:02

评论

直达楼层

您需要登录后才可以回帖 登录 | 注册

本版积分规则

Potato 产品答疑师

粉丝:9 关注:0 积分:11295

精华:0 金币:11930 经验:7022

最后登录时间:2024-4-26

私信 加好友

最新活动

读书日主题活动 |  世界读书日,360AI阅读

排行榜

热度排行 查看排行
今日 本周 本月 全部
    今日 本周 本月 全部

      内容推荐 热门推荐最新主帖

      扫码添加360客服号,涨知识的同时还有超多福利等你哦

      快速回复 返回顶部 返回列表