Lock Ransomware 列出沒有贖金
在野外有一個新版本的 Babuk 勒索軟件,稱為 Lock 勒索軟件。
新菌株按預期運行,加密受害者係統上的文件。受影響的擴展名包括媒體文件、文檔、數據庫和存檔文件。加密後,文件會收到一個簡單的新擴展名,附加在原始擴展名之後。這會將名為“archive.zip”的文件轉換為“archive.zip.lock”。
贖金記錄沒有具體提及贖金金額,只提供了受害者可以用來聯繫勒索軟件作者的聯繫信息——這絕不是一個好主意。贖金記錄被放入名為“How To Restore Your Files.txt”的純文本文件中。勒索信被放置在系統桌面上,其全文如下:
LOCK
All of your files have been encrypted!
Your computer was infected with a ransomware virus. Your files have been encrypted and you won't
be able to decrypt them without our help. What can I do to get my files back? You can buy our special
Decryption Software, this Software will allow you to recover all of your data and remove the
ransomware from your computer.
To buy Decryption Software write to us Tox or email!
email: locksupport at onionmail dot org
Tox: [alphanumeric strings]
Download Tox hxxps://tox.chat/download.html





