Potato 发表于 2024-3-29 16:26

BitLocker勒索软件家族详情

【家族名】
Win32/Ransom.BitLocker
[平台]   /   [主类型].[家族名]
平台类型 :Win32 Win64
威胁类型 : Ransom
【是否支持解密】
360解密大师:暂不支持
在线解密:暂不支持
【被加密文件】
被加密文件后缀格式: 修改文件后缀为._lock


【勒索提示信息】:
文件名:readme-bitlocker-Unlock.txt
文件内容 :
备注:Password和ID均已处理过
-------------------------------------------------------------------------------
Your Files Have Been Locked With bitlocker Ransomware
you have to pay 0.007 Bitcoin or 2800 RMB for Unlock Process
you can send a little file (less than 1 or 2 mb) for Decryption test (if we assume file is important we may ask you to Send another one)
Contact Us and Pay and get Decryption
Contact Our Email:delete@onionmail.org or ca89a16780424771@protonmail.com
Your Passwrod:2xx58647
----------------------------------------------------------
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
-------------------------------------------------------------------------------
【防护建议】
1.多台机器,不要使用相同的账号和口令
2.登录口令要有足够的长度和复杂性,并定期更换登录口令
3.重要资料的共享文件夹应设置访问权限控制,并进行定期备份
4.定期检测系统和软件中的安全漏洞,及时打上补丁。
5.定期到服务器检查是否存在异常。查看范围包括:
a)是否有新增账户
b) Guest是否被启用
c) Windows系统日志是否存在异常
d)杀毒软件是否存在异常拦截情况
6.安装安全防护软件,并确保其正常运行。
7.从正规渠道下载安装软件。
8.对不熟悉的软件,如果已经被杀毒软件拦截查杀,不要添加信任继续运行。



Potato 发表于 2024-4-29 16:55

板凳
页: [1]
查看完整版本: BitLocker勒索软件家族详情