ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Ransomware 2018

    IT Discussion
    ransomware
    5
    5
    826
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • mroth911M
      mroth911
      last edited by

      Hey FYI one of my clients got attacked September 17th at 9am. All their files were encrypted and renamed with the file extension crypted_miatellog@aol_com, including links were changed shortcuts registry was changed and shortcuts no longer worked. Just giving everyone out here a heads up. This one is not only encrypting files but taking the computer with it

      0_1537446084249_845ea20f-5f9e-48f5-bc3d-e9939c7824ac-image.jpeg Image-1.jpg

      1 Reply Last reply Reply Quote 3
      • DustinB3403D
        DustinB3403
        last edited by

        Hopefully the client has backups that can be used to recover.

        1 Reply Last reply Reply Quote 2
        • scottalanmillerS
          scottalanmiller
          last edited by

          I think most take the computer with it if allowed to run long enough.

          dbeatoD 1 Reply Last reply Reply Quote 1
          • dbeatoD
            dbeato @scottalanmiller
            last edited by

            @scottalanmiller said in Ransomware 2018:

            I think most take the computer with it if allowed to run long enough.

            Because the extent is unknown fully, yeah you just reinstall Windows. Although customers with Sophos Intercept X have had a great experience.

            1 Reply Last reply Reply Quote 0
            • 1
              1337
              last edited by 1337

              Ransomware is not fun.

              NotPetya damages were in the 10 billion range. One enterprise I work for at times was down for weeks. Having backup is not enough - you need to be able to access your backup too. When everything is down you don't have any computers to access anything with. Sure you can reinstall but where are your image files? When you do have computers you have no DHCP, no DNS, no AD etc. You have no internet access, no email, no phones. Yeah, backup is not enough. You need an elaborate emergency plan.

              1 Reply Last reply Reply Quote 0
              • 1 / 1
              • First post
                Last post