前几天电脑被黑客控制后把全部文件加密了,所有的文件都打不开,360急救箱,杀毒软件查不出病毒,全部文件的后缀多了.voyager
我试着把文件名修改成正确的但是还是打不开,然后发现是加密了!我上传个加密的附件,本来就是正常的TXT文档,后面我把.voyager后缀删了但是打开是乱码!
另外每个文件夹上面都是个!READ_ME的文档。大体内容就算是病毒作者的联系方式,内容是:
SOMETHING WENT WRONG, PLEASE CONTACT YOUR SYSTEM ADMINISTRATOR!
He can help you to understand whats happened.
If he can't help you, contact us via email: voyager@ctemplar.com voyager@cock.li
HURRY UP! WE HAVE ANTIDOTE FOR YOUR FILES! DISCOUNT 20% FOR CLIENTS, WHO CONTACT US IN THE SAME DAY!
You can attach 2 files (text or picture) to check our honest intentions, we will heal them and send back.
File size not more than 1 Mb and it's should be text or picture, NOT DATABASE.
Fill the following QUESTIONNAIRE and send it in body of your email.
***********************************
QUESTIONNAIRE
Company name: [PUT YOUR COMPANY NAME HERE]
Country: [PUT YOUR COUNTRY HERE]
City: [PUT YOUR CITY HERE]
ID: tJnarTb/guh2gZ9lmYZdSe5tr+9OvkZ8sAk/mXQosntFcXjIA/LqoeUNxfnzszsTx3bpUX//uFDLoOiqNMLonHWMlyj3Acnov0yFrpwuBhdBXDFFUdHKgFT6PANA9W9krQXLgnGHLOT5HhRpbc/ZheUDPDi+mMQj1BsUoIAc/XI=:1e4a26a2e33962e83f49ad0455f04d5ba086c3e77f46b541d664833f138d171c
***********************************
We can help you to avoid same issues in future, after heal we will provide advice how to fix security issues on your network.
。