LeoWang2021 发表于 2022-3-19 15:25

我中一种加密扩展名为*.maiv的病毒

今天突然发现D盘有几个文件打不开了,然后发现有一份勒索信,才发现中病毒了。
可能当时发现不对。及时用任务管理器停掉了,所以没有波及到全盘,只加密了4个文件,但是其中一个还是比较重要的,麻烦大奖帮忙分析一下,支支招。

其中一个病毒加密文件及其对应源文件
链接:https ://pan.baidu.com/s/14fhF-ZvFGIGBA4_uJaUlrQ?pwd=80dc
提取码:80dc勒索信:文件名:_readme.txt
ATTENTION!

Don't worry, you can return all your files!
All your files like pictures, databases, documents and other important are encrypted with strongest encryption and unique key.
The only method of recovering files is to purchase decrypt tool and unique key for you.
This software will decrypt all your encrypted files.
What guarantees you have?
You can send one of your encrypted file from your PC and we decrypt it for free.
But we can decrypt only 1 file for free. File must not contain valuable information.
You can get and look video overview decrypt tool:
https ://we.tl/t-qqj8MrDVtG
Price of private key and decrypt software is $980.
Discount 50% available if you contact us first 72 hours, that's price for you is $490.
Please note that you'll never restore your data without payment.
Check your e-mail "Spam" or "Junk" folder if you don't get answer more than 6 hours.


To get this software you need write on our e-mail:
support @sysmail.ch

Reserve e-mail address to contact us:
helprestoremanager @airmail.cc

Your personal ID:
0385UIhfSdqDUm16nyQ1V48leSiNSMdbH75WZEuC7ZhC2VE3AL用过360的解密服务,识别出加密文件了,但是选择了加密文件与原文件后显示“无法算出密钥”(确定是对应的原文件)

lizhiwei2020 发表于 2022-3-21 10:16

https://pan.baidu.com/s/14fhF-ZvFGIGBA4_uJaUlrQ
网盘地址复制粘贴都无法打开,还有手动修改,看我这个直接打开了

lizhiwei2020 发表于 2022-3-21 12:14

看看这个工具试试
https://baijiahao.baidu.com/s?id=1711290262768516842&wfr=spider&for=pc
页: [1]
查看完整版本: 我中一种加密扩展名为*.maiv的病毒