View: 9996|Reply: 31
|
Terima Ugutan Encrypt Files..
[Copy link]
|
|
Hari ni pergi ofis, turned on pc, tetiba dapat mesej ni..
Habis semua files.. tulong!!!! nak wat cemana ni...
|
This post contains more resources
You have to Login for download or view attachment(s). No Account? Register
x
|
|
|
|
|
|
|
==============================================================================
!!! WE HAVE ENCRYPTED YOUR FILES WITH Crypt0L0cker VIRUS !!!
===============================================================================
Your important files (including those on the network disks, USB, etc): photos,
videos, documents, etc. were encrypted with our Crypt0L0cker virus. The only
way to get your files back is to pay us. Otherwise, your files will be lost.
Use this link to pay for files recovery:
http://zoqowm4kzz4cvvvl.torlocat ... &user_pass=7637
-------------------------------------------------------------------------------
-------------------------------------------------------------------------------
[=] What happened to my files?
Your important files: photos, videos, documents etc. were encrypted with our
Crypt0L0cker virus. This virus uses very strong encryption
algorithm - RSA-2048. Breaking of RSA-2048 encryption algorithm is impossible
without special decryption key.
[=] How can I get my files back?
Your files are now unusable and unreadable, you can verify it by trying to
open them. The only way to restore them to a normal condition is to use our
special decryption software. You can buy this decryption software on
our website (http://zoqowm4kzz4cvvvl.torlocat ... &user_pass=7637).
[=] What should I do next?
You should visit our website (http://zoqowm4kzz4cvvvl.torlocat ... &user_pass=7637)
and buy decryption for your PC.
[=] I can not access to your website, what should I do?
Our website should be accessible from one of these links:
http://zoqowm4kzz4cvvvl.torlocat ... &user_pass=7637
http://zoqowm4kzz4cvvvl.torminat ... &user_pass=7637
http://zoqowm4kzz4cvvvl.tor2web. ... &user_pass=7637
http://zoqowm4kzz4cvvvl.onion/h6 ... &user_pass=7637 (using TOR browser)
If for any reasons these addresses are not available please follow the steps:
1. Download and install TOR-browser:
http://www.torproject.org/projects/torbrowser.html.en
2. After a successful installation, run the browser and wait for
initialization.
3. Type in the address bar:
http://zoqowm4kzz4cvvvl.onion/h6 ... &user_pass=7637
4. Access to our website
Also you can contact us via email: [email protected]
-------------------------------------------------------------------------------
-------------------------------------------------------------------------------
Login Credentials:
URL: http://zoqowm4kzz4cvvvl.torlocator.org/h6q4lb5q.php
User-Code: yckvfi
User-Pass: 7637
=============================================================================== |
|
|
|
|
|
|
|
Bila login dlm website tu, dapat nih... |
This post contains more resources
You have to Login for download or view attachment(s). No Account? Register
x
|
|
|
|
|
|
|
Gilo hapo aku nak kena byr untuk files sendirik.... ya hampun.. camano nih... sapa diorg ni yek.. boleh tak kalu buat report kat SKMM.
Dah try system restore, tak buleh jugak.. |
|
|
|
|
|
|
|
cuba boot komputer guna live cd ubuntu. sekarang ni, semua fail-fail dah hilang ke? |
|
|
|
|
|
|
|
file tak hilang, tapi encrypted.. tak boleh bukak.. kalau bayar baru diorg bg key untuk descrypt.
bila googgle, rupanya2 mmg diorg attacked globally, agaknya baru nak mari Malaysia kot.....
http://en.wikipedia.org/wiki/CryptoLocker
kena gi buat report le gamaknya..
btw, camana nak boot guna ubuntu tu.. dah mcm2 cara buat, takut file suma hilang je..
|
|
|
|
|
|
|
|
kalau pakai antivirus cuma akan remove @ block the virus, tp file2 still encrypted. Virus tu masuk masa mozilla firefox tgh updated, mana nak tahu dia menyamar.. cisss.... |
|
|
|
|
|
|
|
Agak rumit juga. Saya try google tapi kebanyakannya hanya memaparkan cara pencegahan.
Untuk boot ubuntu tu, guna pendrive.
Download ubuntu dan guna software ni untuk install ubuntu dalam pendrive.
http://www.pendrivelinux.com/
Kemudian, kena restart pc dan kene pilih untuk boot dari usb. |
|
|
|
|
|
|
|
Kat ofis, pc orang lain semua infect jugak ke? |
|
|
|
|
|
|
|
terima kasih... kejap lg saya cuba.. nasib baik semua browser boleh guna.. ada setengah victim browser pun tak boleh surf.
nanti saya update..
|
|
|
|
|
|
|
|
nasib baik tak kena.. sebab tak guna server, company kecik je..
tp cepat2 disconnect dulu pc lain dan buat back-up.. menangis macamni tau...
|
|
|
|
|
|
|
|
kebanyakan kata takleh nak decrypt melainkan bayar.. tapi kalau bayar, guarantee ke diorang tak tanam virus lain?
Kena jaga elok2 pc dan lagi elok ofis ada orang yang mahir dalam sistem IT. |
|
|
|
|
|
|
|
Tera, dah cuba ubuntu... pun tak boleh.. sama je..
rasa2nya mmg tak boleh buat apa dah ni..
kena buang semua le gamaknya, system restore pun dia hacked jugak, tak boleh restore dan recover langsung.
benda ni kena bg warning kat pengguna lain, sebagai caution. tak pernah dgr lg jadi kat Malaysia ni..
|
|
|
|
|
|
|
|
berserah je lah bro... len kali kena buat backup dekat mana2 seperti google drive, dropbox, atau external hd.
|
|
|
|
|
|
|
|
terima kasih byk sebab bg suggestions... letih kepala otak mikir... cheers..
|
|
|
|
|
|
|
|
sama2 bro.. baca dari blog2 yang pakar dalam virus2 ni, diorang pun kata memang tak boleh nak decrypt melainkan bayar kat diorang.. |
|
|
|
|
|
|
|
Dah try.. ini diorg buat tahun 2014, since then virus dah makin nasty dan stronger, dah tak boleh guna..
|
|
|
|
|
|
|
|
ni haa.. dapat mesej ni.. file extension tak sama kot dgn decrypter tu...
|
This post contains more resources
You have to Login for download or view attachment(s). No Account? Register
x
|
|
|
|
|
|
|
tak dapat nak tolong... sapa dapat decrypt ni, memang power.. melainkan tukang buat virus ni tak dikira la sebab dia ada simpan key tersebut.. dan key tersebut dijana oleh komputer menggunakan kompleks algorithm.. |
|
|
|
|
|
|
| |
|