Cencrack 发表于 2021-1-4 10:08

勒索病毒 后缀名: .genesis 求大神来看看,数据库全被锁了

本帖最后由 Cencrack 于 2021-1-4 10:09 编辑

https://wwx.lanzoux.com/igsBCk0judc

勒索病毒 后缀名: .genesis 求大神来看看,数据库全被锁了压缩成rar还会自动去除 因此无法上穿论坛的附件


除了DLL不锁 系统什么文件都锁了 ,
这是被锁后留下的文档:
Hello.
If you are reading this, it means your data is encrypted and your private sensivitive information was stolen!
Read carefully the whole instructions to avoid problems with your data.
You have to contact us immediately to resolve this issue and make a deal!
!!!WARNING!!!
DO NOT modify, rename, copy or move any file. You can DAMAGE them and decryption will be impossible!
DO NOT use any third-party or public decryption software, it also may DAMAGE files.
There is ONLY ONE possible way to get back your files.
Do not waste your time, contact us and pay for special DECRYPTION TOOL. The tool is all you need.
For your guarantee we can decrypt 2 of your text or image files for free, as a proof that it works.
Your network was fully COMPROMISED! We can discuss how to secure it as a bonus.
The data that we gathered could be published in MASS MEDIA for BREAKING NEWS!
If we make a deal everything would be kept in secret and all your data will be restored.
I could make them public them if you decide not to pay.
Contact us immediately:
genesishelp@mail.ee
genesishelp@cock.li
Your Personal ID: pf5VJaAoGUFqIa0pRj0oPKqXB60Kw8hXCzdvJncwjD1meAOqu3qIRtauDAh0JpkkpGiX/rjFupzAmxUHq91rQzkS8d7vaNlEo5DZ+icDxmDRMPcv1pzpKsRY+tj0bTr0oFb+413paixblxy1PU6VG0VnXY6pWBmV++4miU/qEYQ=:828d7424e625d7a5ce5fbcaf1f57b1d7bc7ac70a1459c817b658746375363c82



求大神帮帮忙 ,

she383536296 发表于 2021-1-4 10:42

https://www.nomoreransom.org/crypto-sheriff.php?lang=zh
看看这里有没有你要的解密工具

wangrui1983 发表于 2021-1-4 10:20

这估计的乖乖交钱吧!密钥在人家手里,也没啥招。

krankheit2010 发表于 2021-1-4 10:23

下载啥中的病毒?说一下给我们排个雷

myweb1996 发表于 2021-1-4 10:24

看密文样子应该是非对称加密,没辙

墨石不菲 发表于 2021-1-4 10:25

数据库文件,可以找数据库工程师从数据库层面恢复数据。

sige1992 发表于 2021-1-4 10:27

警钟长鸣啊,能说说是怎么中的嘛

she383536296 发表于 2021-1-4 10:40

不要交钱,可以报警,

爱凤凤呦 发表于 2021-1-4 10:42

qrnu2 发表于 2021-1-4 10:55

我们曾经遭遇过,之后用了360的防火墙
页: [1] 2 3 4
查看完整版本: 勒索病毒 后缀名: .genesis 求大神来看看,数据库全被锁了