ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    CryptoWall is back...

    IT Discussion
    cryptowall security malware
    4
    6
    1.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      GlennBarley
      last edited by scottalanmiller

      Spinning off of my other thread, I wanted to know what people are doing in light of the return of CryptoWall...

      How are you educating your clients?
      What advice are you giving them?
      What do you do if a client becomes a victim of CryptoWall?
      In what scenario, if any, would you advise a client to just pay the ransom?

      dafyreD 1 Reply Last reply Reply Quote 3
      • dafyreD
        dafyre @GlennBarley
        last edited by

        @GlennBarley said:

        How are you educating your clients?
        What advice are you giving them?
        What do you do if a client becomes a victim of CryptoWall?
        In what scenario, if any, would you advise a client to just pay the ransom?

        I'm only half serious about my answers here... depends on the user and how many times they have been warned...

        1. Don't click attachments in email.
        2. Don't click attachments in email! Have good backups!
        3. Restore from most recent backups.
        4. None.
        1 Reply Last reply Reply Quote 2
        • DashrenderD
          Dashrender
          last edited by

          Similar to Dafyre, but if they don't have backups - pay the ransom.

          Also, if restore time is is greater than the cost of the ransom + recovery time for decrypting, then pay the ransom.

          dafyreD 1 Reply Last reply Reply Quote 1
          • dafyreD
            dafyre @Dashrender
            last edited by

            @Dashrender While having your data is important... Paying such ransom simply paints a target on your (business's) back that says "Hey go after these folks, they'll pay!"

            DashrenderD 1 Reply Last reply Reply Quote 1
            • DashrenderD
              Dashrender @dafyre
              last edited by

              @dafyre said:

              @Dashrender While having your data is important... Paying such ransom simply paints a target on your (business's) back that says "Hey go after these folks, they'll pay!"

              Yeah I get that. I think if we got hit by it... I'll probably look at removing email for non essential personal (external email). 90% of my users don't require it. The few who do can be trained to be much more weary.

              1 Reply Last reply Reply Quote 0
              • M
                marcinozga
                last edited by

                One of my remote users got hit by Cryptowall a few weeks ago. And the email he got was so obvious, I couldn't believe he fell for it. And he didn't run backups, so he lost all files. I'd rather have users learn the lesson the hard way, than to bend over and support some scumbags.

                1 Reply Last reply Reply Quote 0
                • 1 / 1
                • First post
                  Last post