Jlhoffman Support

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Wednesday, 23 October 2013

CryptoLocker Strikes Again With Disasterous Results

Posted on 16:37 by Unknown
The battle with CryptoLocker continued today but this time with a twist.  A client called for help today because a local competitor had visited them yesterday to remove an infection of CryptoLocker.  After working on it all day, the clients problem was worse than ever and the competitor had to leave to "deal with other obligations".  Talk about being left high and dry!

What made the problem so severe was that this client didn't have ANY backup to restore the corrupted files on their server caused by this software.   Yes, they had backup software.  Yes, they had a tape drive.  No, the backup hadn't been run in 5 years and nobody noticed!
Through normal human failure, backing up the server fell through the cracks and now they're faced with a scrambled server with no fallback solution.

This latest version of CryptoLocker is also much more aggressive in the corruption of files.  Earlier releases targeted Microsoft Office files, graphics and acrobat files.  This version wipes out almost everything it touches including WordPerfect files, AutoCadd files and many, many more.  It encrypts every file on every mapped drive that the infected PC is connected to including the server and any storage devices.  The encryption level is very high and nobody has been able to crack the encryption to-date.

Without a backup the client doesn't have many options for recovery and one of them is to pay the $300 ransom and hope that the hacker that created this malware will actually provide the decryption key to undo this mess.

We've spent most of the last day trying to undo the damage the competitor did by only "halfway uninstalling" the malware so we can get the ransomware working well enough to pay the ransom because the server contents are trashed without much hope of recovery.  We're still working on it though!   

Stay tuned for further updates . . .  we're not walking away from this customer like our competitor did!

When we get the clients server stabilized, the client has already signed on to adding our DataVault Backup Solution to their business which is fully automatic and has our technician monitoring service keeping track of their backups.  Each day they'll also get a confirmation e-mail verifying that their data has been backed up and protected to ease their mind about ever having to deal with a nightmare like this again.

Have similar concerns about the safety of your business data? 
Call ACT today @ (847) 639-7000 for a free consultation.


Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • Ransomeware Now #1 MalwareThreat - Learn More Here
    I just read an outstanding white paper from a couple of researchers at Sophos Security outlining how Ransomware is passing up FakeAlert malw...
  • Computer Support Rates - When Cheap Really Isn't
    What's in a labor rate?  Why are some IT companies more expensive than others?  Our company is neither the most expensive in our market ...
  • Server Configuration - Heaven Save Us From Well-Meaning Amateurs!
    How do I tell the client what their old tech did to them?  They've got to spend a bunch of money to correct the mess he made and I'm...
  • When It's Time To Fire A Customer
    What?  Isn't that backwards?  Isn't it the customer that usually does the firing? Usually, as business people, we work so hard to fi...
  • Using Personal Computers In the Workplace
    At ACT, we support a great many organizations that allow employees to use their own computers at work.  Sadly, I've noticed that some of...
  • What to do with Windows XP
    Well, it had a good long run.  Windows XP is now 13 years old.  In less than 10 months Microsoft is pulling the plug on our old friend XP.  ...
  • Wireless Networking Is Due For A Big Jump In Performance
    Just when we were getting comfortable with the 802.11n wireless standard, here comes a newer and better wireless solution - 802.11ac.  It wi...
  • Documentation - The Key To Client Support Success
    Recently, we won the trust of a new client that was unhappy with the service provided by their previous IT company.  After the client notifi...
  • Going to the Cloud is easy, getting out is a lot tougher!
    Everyone is pushing you to take your business to the cloud, right?  It's easy, right?  The sales rep used all the right words in his pit...
  • Support for Windows XP and Office 2003 stops on April 8th.
    All Microsoft support for Windows XP and Office 2003 stops on April 8th. What are the risks to your business if you don't upgrade? Let...

Blog Archive

  • ▼  2013 (39)
    • ►  November (3)
    • ▼  October (4)
      • The CryptoLocker battle continues - part 2 - payin...
      • CryptoLocker Strikes Again With Disasterous Results
      • Support for Windows XP and Office 2003 stops on Ap...
      • Beware Hacker Watering Hole Exploits
    • ►  September (2)
    • ►  August (4)
    • ►  July (3)
    • ►  June (9)
    • ►  May (3)
    • ►  April (3)
    • ►  March (6)
    • ►  January (2)
  • ►  2012 (12)
    • ►  December (2)
    • ►  November (8)
    • ►  October (2)
Powered by Blogger.

About Me

Unknown
View my complete profile