首页
学习
活动
专区
圈层
工具
发布
社区首页 >问答首页 >转换为.vvv扩展名(TeslaCrypt)的所有文档

转换为.vvv扩展名(TeslaCrypt)的所有文档
EN

Stack Overflow用户
提问于 2015-12-14 09:06:24
回答 2查看 2.8K关注 0票数 0

我发现我的员工文档有些奇怪,原来包括文档在内的所有文件都是用".vvv“扩展名加密的。到目前为止,我发现它被称为TeslaCrypt,它将我所有的文件转换为.vvv,即使我将其重命名为正确的扩展名,它也显示该文件已经被修改,所以我不能再打开这些文件。请帮帮忙,我们不能工作,直到那个文件可以被打开。我不能将它标记为"TeslaCrpyt“,所以如果有人能帮我标记它,那就太好了。

关于如何恢复的内容:

代码语言:javascript
复制
What happened to your files ?
All of your files were protected by a strong encryption with RSA-4096.
More information about the encryption keys using RSA-4096 can be found here: http://en.wikipedia.org/wiki/RSA_(cryptosystem)

What does this mean ?
This means that the structure and data within your files have been irrevocably changed, you will not be able to work with them, read them or see them,
it is the same thing as losing them forever, but with our help, you can restore them.

111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111
How did this happen ?
---Specially for your PC was generated personal RSA-4096 KEY, both public and private.
---ALL YOUR FILES were encrypted with the public key, which has been transferred to your computer via the Internet.
111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111
Decrypting of your files is only possible with the help of the private key and decrypt program, which is on our secret server.

What do I do ?
So, there are two ways you can choose: wait for a miracle and get your price doubled, or start obtaining BTC NOW, and restore your data easy way.
If You have really valuable data, you better not waste your time, because there is no other way to get your files, except make a payment.

For more specific instructions, please visit your personal home page, there are a few different addresses pointing to your page below:
1. http://vr6g2curb2kcidou.encpayment23.com/E03029AB7D9A9D38
2. http://vr6g2curb2kcidou.expay34.com/E03029AB7D9A9D38
3. http://psbc532jm8c.hsh73cu37n1.net/E03029AB7D9A9D38
4. https://vr6g2curb2kcidou.onion.to/E03029AB7D9A9D38 

If for some reasons the addresses are not available, follow these steps:
1. Download and install tor-browser: http://www.torproject.org/projects/torbrowser.html.en 
2. After a successful installation, run the browser and wait for initialization.
3. Type in the address bar: vr6g2curb2kcidou.onion/E03029AB7D9A9D38 
4. Follow the instructions on the site.

IMPORTANT INFORMATION:
Your personal pages:
http://vr6g2curb2kcidou.encpayment23.com/E03029AB7D9A9D38
http://vr6g2curb2kcidou.expay34.com/E03029AB7D9A9D38
http://psbc532jm8c.hsh73cu37n1.net/E03029AB7D9A9D38 
https://vr6g2curb2kcidou.onion.to/E03029AB7D9A9D38  
Your personal page (using TOR-Browser): vr6g2curb2kcidou.onion/E03029AB7D9A9D38 
Your personal identification number (if you open the site (or TOR-Browser's) directly): E03029AB7D9A9D38
111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111
EN

回答 2

Stack Overflow用户

发布于 2015-12-17 10:10:00

我在GitHub上发布了一个解密工具:https://github.com/googulator/teslacrack

此工具以加密方式打破了TeslaCrypt的加密方案,因此不需要保存的主密钥。然而,这是相当计算密集的,所以最好使用速度快的计算机,即使这样,也要等待一周才能恢复您的密钥(尽管大多数密钥可以在几个小时内找到)。此外,它更像是一个PoC,而不是一个用户友好的交钥匙解密器,所以你需要手工做很多事情。

票数 1
EN

Stack Overflow用户

发布于 2016-01-21 05:24:20

我被TeslaCrypt击中了,所有的解决方案(思科的解密工具,影子浏览器)对我都不起作用。无关紧要的是,我在Ubuntu上搜索了一些文章,发现BloodDolly的Tesla解密工具确实有效,在我写这篇文章的时候,我的文件正在被恢复。所以我只是想分享一下,因为它在我之前的搜索中都没有出现。

这只是几个步骤,...I在这个过程中没有任何问题。显然,这对最新的菌株不起作用,...I有.vvv,必须与Yafu因子素数,...but文档和软件是相当全面的,很容易理解。从开始到结束,我花了15-20分钟。

http://www.bleepingcomputer.com/forums/t/576600/tesladecoder-released-to-decrypt-exx-ezz-ecc-files-encrypted-by-teslacrypt/

无论如何,希望这对一些人有帮助。

票数 1
EN
页面原文内容由Stack Overflow提供。腾讯云小微IT领域专用引擎提供翻译支持
原文链接:

https://stackoverflow.com/questions/34258360

复制
相关文章

相似问题

领券
问题归档专栏文章快讯文章归档关键词归档开发者手册归档开发者手册 Section 归档