服务器中了.C4H勒索病毒怎么办

分享到:

2020-05-10 23:32:08

问题现象:客户电话求助,其服务器中了勒索病毒,所有文件后缀被改成了.c4h。



 

ALL YOUR FILES AND IMPORTANT DATA ARE ENCRYPTED!
 
To recover data you need decryptor.
To get the decryptor you should:

Send 1 test image or text file chinarecoverycompany@cock.li or chinarecoverycompany@airmail.cc.
In the letter include your personal ID (look at the beginning of this document).

We will give you the decrypted file and assign the price for decryption all files

 

After we send you instruction how to pay for decrypt and after payment you will receive a decryptor and instructions We can decrypt one file in quality the evidence that we have the decoder.
Attention!

  • Only chinarecoverycompany@cock.li or chinarecoverycompany@airmail.cc can decrypt your files
  • Do not trust anyone chinarecoverycompany@cock.li or chinarecoverycompany@airmail.cc
  • Do not attempt to remove the program or run the anti-virus tools
  • Attempts to self-decrypting files will result in the loss of your data
  • Decoders other users are not compatible with your data, because each user's unique encryption key

问题分析:这个后缀是最近几天刚刚接到客户陆续反馈得,中毒得客户比较多,加密程度也比较严重,客户涉及到了有医院得服务器,一般中毒得都是多台电脑服务器。

问题解决过程:第一时间成立了应急小组,客户提供了病毒样本文件。初步判断分析,该病毒后缀的文件一般无法进行底层修复。

但是如果需要其他类型的文档,一般需要通过解密才能完成。如果您的服务器不幸中了勒索病毒,第一时间断网,备份

联系我们:18910108696,王工,微信同号,同时,提供样本文件,可以qq或者微信,后者百度云。

我们第一时间为您检查文件,确定处理方案。
声明:此篇为用友服务中心文章,转载请标明出处链接:
  • 相关文章
  • 热门下载
  • 数据修复
  • 热门标签
合作伙伴