吾爱破解 - 52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 5479|回复: 17
收起左侧

求助,中了勒索病毒扩展名NewCore要求支付比特币

[复制链接]
LPACMQ 发表于 2019-8-13 20:02
使用论坛附件上传样本压缩包时必须使用压缩密码保护,压缩密码:52pojie,否则会导致论坛被杀毒软件等误报,论坛有权随时删除相关附件和帖子!
病毒分析分区附件样本、网址谨慎下载点击,可能对计算机产生破坏,仅供安全人员在法律允许范围内研究,禁止非法用途!
禁止求非法渗透测试、非法网络攻击、获取隐私等违法内容,即使对方是非法内容,也应向警方求助!
本帖最后由 LPACMQ 于 2019-8-14 08:26 编辑

All your files have been blocked for more information, please contact us by e-mail.

E-Mail: info_newcore@p-security.li  and info_newcore@protonmail.com
You PC id: ehpeq8

The faster you contact us the faster we can help you.

黑客发回的邮件如下

Your files are encrypted because you don't give enough attention to the safety of your system.

To decrypt your data, you must to pay us. After payment we will send to you personal decoder.

We are not liars or cheaters. You pay - we help.

The more time you wait before you pay = the more expensive price. It's simple. Be reasonable.


Now the price is 700$ after 48 hours 1400$. The price will grow. Hurry up!

Payment is made only in BITCOIN or DASH!


How to obtain Bitcoins

The easiest way to buy bitcoins is LocalBitcoins site. You have to register, click 'Buy bitcoins', and select the seller by payment method and price.

https://localbitcoins.com/buy_bitcoins

Also you can find other places to buy Bitcoins and beginners guide here:

http://www.coindesk.com/information/how-can-i-buy-bitcoins/

Attention!

write to Google how to buy Bitcoin in your country?


How to obtain DASH

The easiest way to buy DASH

https://www.dash.org/where-to-buy/

Attention!

write to Google how to buy Bitcoin in your country?


Our Bitcoin wallet - 3KZJeLqDQi5i2ybZiezehhfxAcqCjDAnG7

Our Bitcoin wallet - 3KZJeLqDQi5i2ybZiezehhfxAcqCjDAnG7


Our DASH wallet - XxXvuHfvDNvEuSzZpxUxkVrGJhjdSSWgbU

Our DASH wallet - XxXvuHfvDNvEuSzZpxUxkVrGJhjdSSWgbU


if you afraid - you can send three files for test decrypting.

we don't decrypt ".exe" files, databases, and backups for test(read: for free),

you can send another files like jpg pdf xls doc and other. Total max size of files is 5 mb.

but don't forget - time is running out.

Your wish to get test files don't affect on the discount time. Only send files via e-mail.






┅┅┅? Original Message ┅┅┅?




All your files have been blocked for more information, please contact us by e-mail.


E-Mail: info_newcore@p-security.li  and info_newcore@protonmail.com

You PC id: ehpeq8
病毒特征.png
中毒后整个局域网都是这样,整个共享盘的资料全部被黑
UG26-1-10.txt (142.25 KB, 下载次数: 3)

UD10-装饰片.pdf.txt (184.72 KB, 下载次数: 18)

工序流程.txt (637.4 KB, 下载次数: 6)


INFO_you_FILE.txt (749.18 KB, 下载次数: 3)

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

YuniNan0 发表于 2019-8-13 20:23
推荐楼主使用火绒安全软件
 楼主| LPACMQ 发表于 2019-8-13 21:59
本帖最后由 LPACMQ 于 2019-8-13 22:03 编辑
hurted 发表于 2019-8-13 21:01
txt文件,也要上传。光上传中毒文件没用。无法解开。

txt文件是什么?

下面这几行就是截图那里txt的内容

All your files have been blocked for more information, please contact us by e-mail.

E-Mail: info_newcore@p-security.li  and info_newcore@protonmail.com
You PC id: ehpeq8

The faster you contact us the faster we can help you.
战言灬永不败 发表于 2019-8-13 20:23
mp123456 发表于 2019-8-13 20:34
难道不是先提供样本吗
zerzul 发表于 2019-8-13 20:44
试试火绒呢
hurted 发表于 2019-8-13 21:01
txt文件,也要上传。光上传中毒文件没用。无法解开。
jsgyhy 发表于 2019-8-13 21:34
怕怕啊,知道中的原因吗?
ericwise 发表于 2019-8-13 21:59
怎么中的毒啊?重要资料没备份的话就难受了。
 楼主| LPACMQ 发表于 2019-8-13 22:01
战言灬永不败 发表于 2019-8-13 20:23
楼主试试论坛里的解密工具行不行

我试过了,无效
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则

返回列表

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2024-11-24 19:53

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表