Ransomware : Your Feared IT Nightmare
Ransomware has become a too-frequent cyberplague that poses an extinction-level danger for businesses of all sizes vulnerable to an assault. Different iterations of crypto-ransomware like the CrySIS, CryptoWall, Locky, NotPetya and MongoLock cryptoworms have been replicating for many years and still cause havoc. Modern strains of ransomware such as Ryuk, Maze, Sodinokibi, Netwalker, Conti and Egregor, as well as daily as yet unnamed newcomers, not only perform encryption of on-line data but also infiltrate all accessible system restores and backups. Information synchronized to cloud environments can also be corrupted. In a poorly architected environment, this can make automated restoration impossible and basically sets the network back to square one.
Recovering programs and information following a crypto-ransomware event becomes a sprint against time as the victim tries its best to contain the damage, clear the virus, and restore business-critical activity. Since ransomware needs time to move laterally across a targeted network, attacks are often sprung at night, when successful attacks tend to take longer to recognize. This compounds the difficulty of quickly mobilizing and organizing an experienced mitigation team.
Progent provides a range of services for securing Brooklyn organizations from ransomware attacks. Among these are user training to help identify and not fall victim to phishing exploits, ProSight Active Security Monitoring for endpoint detection and response (EDR) utilizing SentinelOne's AI-based threat defense to detect and extinguish day-zero malware assaults. Progent also offers the assistance of veteran ransomware recovery engineers with the track record and perseverance to restore a compromised system as urgently as possible.
Progent's Crypto-Ransomware Recovery Services
Subsequent to a crypto-ransomware invasion, paying the ransom demands in cryptocurrency does not provide any assurance that merciless criminals will return the needed codes to unencrypt all your data. Kaspersky Labs determined that seventeen percent of crypto-ransomware victims never restored their information even after having sent off the ransom, resulting in more losses. The risk is also costly. Ryuk ransoms are often a few hundred thousand dollars. For larger organizations, the ransom can be in the millions of dollars. The alternative is to re-install the vital elements of your Information Technology environment. Without the availability of full information backups, this calls for a broad complement of IT skills, well-coordinated project management, and the capability to work non-stop until the job is done.
For decades, Progent has provided expert Information Technology services for businesses across the United States and has achieved Microsoft's Gold Partnership certification status in the Datacenter and Cloud Productivity competencies. Progent's team of subject matter experts (SMEs) includes professionals who have been awarded high-level certifications in key technologies like Microsoft, Cisco, VMware, and popular distributions of Linux. Progent's cyber security consultants have garnered internationally-renowned industry certifications including CISM, CISSP, ISACA CRISC, GIAC, and CMMC 2.0. (Visit Progent's certifications). Progent in addition has expertise in accounting and ERP software solutions. This breadth of experience gives Progent the capability to quickly ascertain important systems and re-organize the remaining pieces of your Information Technology system after a crypto-ransomware attack and configure them into a functioning system.
Progent's ransomware group deploys state-of-the-art project management applications to coordinate the complicated restoration process. Progent appreciates the importance of working quickly and in unison with a customer's management and Information Technology team members to prioritize tasks and to get the most important systems back on-line as soon as possible.
Client Case Study: A Successful Ransomware Attack Restoration
A customer engaged Progent after their network system was attacked by Ryuk ransomware. Ryuk is thought to have been developed by North Korean state sponsored cybercriminals, suspected of using approaches exposed from the U.S. NSA organization. Ryuk goes after specific companies with little tolerance for operational disruption and is one of the most profitable iterations of crypto-ransomware. Headline targets include Data Resolution, a California-based information warehousing and cloud computing firm, and the Chicago Tribune. Progent's customer is a regional manufacturing company headquartered in the Chicago metro area and has around 500 employees. The Ryuk penetration had brought down all company operations and manufacturing processes. The majority of the client's system backups had been online at the start of the attack and were destroyed. The client was actively seeking loans for paying the ransom (in excess of $200K) and wishfully thinking for the best, but in the end utilized Progent.
"I cannot say enough in regards to the support Progent provided us during the most critical period of (our) company's existence. We would have paid the hackers behind this attack if not for the confidence the Progent group gave us. That you could get our e-mail and production applications back on-line in less than a week was something I thought impossible. Every single staff member I interacted with or communicated with at Progent was laser focused on getting us restored and was working day and night on our behalf."
Progent worked with the customer to rapidly understand and assign priority to the essential systems that had to be recovered to make it possible to resume business functions:
- Active Directory (AD)
- Electronic Mail
- Accounting/MRP
To start, Progent adhered to ransomware event mitigation best practices by halting the spread and disinfecting systems. Progent then began the process of recovering Windows Active Directory, the key technology of enterprise networks built upon Microsoft Windows technology. Microsoft Exchange Server messaging will not operate without Active Directory, and the businesses' financials and MRP applications used SQL Server, which depends on Active Directory for access to the databases.
In less than two days, Progent was able to recover Active Directory services to its pre-penetration state. Progent then helped perform setup and hard drive recovery of mission critical servers. All Exchange ties and attributes were intact, which greatly helped the restore of Exchange. Progent was able to assemble intact OST files (Microsoft Outlook Offline Data Files) on team PCs to recover email data. A recent offline backup of the client's financials/MRP systems made them able to return these essential applications back online. Although significant work needed to be completed to recover completely from the Ryuk attack, core services were recovered rapidly:
"For the most part, the production line operation survived unscathed and we did not miss any customer shipments."
Throughout the following couple of weeks key milestones in the recovery project were achieved through tight collaboration between Progent engineers and the client:
- Internal web sites were brought back up with no loss of information.
- The MailStore Microsoft Exchange Server with over 4 million archived messages was brought on-line and available for users.
- CRM/Product Ordering/Invoicing/Accounts Payable/Accounts Receivables/Inventory functions were fully recovered.
- A new Palo Alto Networks 850 firewall was installed.
- Ninety percent of the desktops and laptops were operational.
"A lot of what was accomplished in the early hours is nearly entirely a blur for me, but my management will not soon forget the countless hours each and every one of the team put in to help get our company back. I've trusted Progent for the past ten years, maybe more, and each time Progent has come through and delivered as promised. This time was a life saver."
Conclusion
A possible business-killing disaster was dodged by results-oriented experts, a wide array of subject matter expertise, and close collaboration. Although in retrospect the ransomware virus attack described here would have been prevented with modern security technology and NIST Cybersecurity Framework best practices, staff education, and well thought out incident response procedures for data backup and keeping systems up to date with security patches, the fact is that state-sponsored cyber criminals from Russia, China and elsewhere are relentless and are an ongoing threat. If you do get hit by a ransomware attack, remember that Progent's team of experts has proven experience in ransomware virus defense, remediation, and information systems recovery.
"So, to Darrin, Matt, Dan, Claude, Jesse, Arnaud, Allen, Tony and Chris (and any others that were involved), thanks very much for letting me get rested after we got over the initial fire. All of you did an fabulous effort, and if any of your guys is in the Chicago area, dinner is my treat!"
Download the Ransomware Cleanup Case Study Datasheet
To review or download a PDF version of this ransomware incident report, please click:
Progent's Ryuk Virus Recovery Case Study Datasheet. (PDF - 282 KB)
Contact Progent for Ransomware System Recovery Services in Brooklyn
For ransomware system recovery consulting services in the Brooklyn area, call Progent at 800-462-8800 or go to Contact Progent.
An index of content::
24 Hour Computer Specialists BlackBerry BPS Brooklyn BlackBerry Exchange Small Business Computer Consulting
24/7 NodeZero Certified Cybersecurity Pen Testing Firewall Network Install
NodeZero Cybersecurity Pen Testing Security Team
Progent's certified security consultants can run NodeZero-based penetration tests to make sure your security monitoring and protection tools and policies are properly configured and effective.
24-Hour Brooklyn, New York Consulting Services Firm Network Solutions Brooklyn
At Home Workforce Brooklyn Consulting Experts - Management Tools Expertise Work at Home Employees Brooklyn Consulting Experts - Management Systems Guidance Brooklyn NY
Best wireless IP phone configuration IT Services Network Consultant wireless IP phone integration
Akron Microsoft Certified Partner Consulting Services Dynamics GP System Upgrade
Akron 24-Hour Dynamics GP System Upgrade Consultant Services
Progent has delivered support for Microsoft Dynamics GP and Great Plains ERP software for over two decades and Progent has delivered integration, customization, training, and troubleshooting services since the platform's debut. Progent offers top-tier support for updating out of date Dynamics GP/Great Plains deployments. Progent can help you to design, test, and carry out a cost-effective migration from a a legacy version to the newest version of Dynamics GP.
Brooklyn At Home Workers Backup/Restore Technology Consulting Brooklyn NY Telecommuters Consulting - Brooklyn - Backup Technology Assistance Brooklyn
Brooklyn Crypto-Ransomware NotPetya Readiness Audit Brooklyn Brooklyn Crypto-Ransomware Lockbit Susceptibility Evaluation
Brooklyn Nephilim Ransomware Data-Recovery Brooklyn Brooklyn Ryuk Crypto-Ransomware Virus Rollback
Brooklyn New York Biggest Windows Server 2019 Network Support Companies Brooklyn New York, United States Windows Server 2012 Small Business IT Outsourcing Services
Brooklyn New York Exchange Server 2019 Outsourcing Technical Support 24 Hour Exchange 2010 Server Security Consulting
Brooklyn Offsite Workforce Endpoint Security Systems Consulting Experts Brooklyn 24-Hour At Home Workforce Consulting and Support Services near Brooklyn - Endpoint Security Solutions Consulting Services Brooklyn, NY
Brooklyn Ransomware Removal and Data Recovery NotPetya Ransomware Hot Line Brooklyn NY
RDBMS Computer Engineer
Database Applications Specialists
Progent's Microsoft-certified database developers offer businesses of any size online DBA and programming services for popular RDBMS products including Microsoft SQL Server, Oracle, MySQL, and Office Access. Consulting support offered by Progent include installation and configuration, application architecture and programming, administration support, replication strategies, capacity planning, performance tuning, data migration, security and compliance, backup/restore options, troubleshooting, and training.
Brooklyn Remote Workforce Collaboration Technology Consulting Experts Brooklyn NY Emergency At Home Workforce Brooklyn Consultants - Collaboration Systems Assistance
Brooklyn SharePoint Server 2010 Support and Setup Brooklyn, New York Microsoft SharePoint Server Support and Setup
Brooklyn Snatch Crypto-Ransomware Data-Recovery Brooklyn New York Urgent Brooklyn Crypto-Ransomware Removal Brooklyn
Brooklyn Sodinokibi Crypto-Ransomware Recovery Brooklyn, New York Ryuk Remote Crypto-Ransomware Data-Recovery Experts Brooklyn Brooklyn, New York
Brooklyn Egregor Ransomware System-Restore Brooklyn, United StatesBrooklyn, New York, America Remote Workers Brooklyn Consultants - Video Conferencing Technology Consulting Teleworkers Brooklyn Consulting Services - Voice/Video Conferencing Solutions Expertise Brooklyn
Brooklyn, United States Brooklyn Phobos Crypto-Ransomware Forensics Brooklyn Brooklyn Sodinokibi Ransomware Forensics Analysis
Cisco Network Administration Brooklyn, USA Cisco IT Outsourcing Brooklyn NY
Consultant Prices Technical Support Firms Consulting Hourly Price Small Business Computer Consulting Companies
Consultant Services IT Management Outsourcing Network Management Outsourcing Specialist
Consulting Services for Network Support Companies nearby Brooklyn - Seamless Short-Term Staff Assistance Brooklyn Specialists for Network Service Companies in Brooklyn - Short-Term IT Support Augmentation Brooklyn
Emergency Brooklyn Ransomware Recovery Consulting Brooklyn, NY Brooklyn Crypto Remediation Consulting Brooklyn New York, United States
Firewall Network Consultant Brooklyn, New York, US Brooklyn, New York Security Firewall Support
Brooklyn Hermes Ransomware Operational-RecoveryJob Compensation for Microsoft Consultant Compensation for Cisco Engineering Telecommuter Job
Largest At Home Workforce Guidance near Brooklyn - Integration Consulting Experts Brooklyn Brooklyn At Home Workers Connectivity Guidance Brooklyn, USA
Brooklyn Maze Crypto-Ransomware Cleanup Brooklyn, United StatesMicrosoft Dynamics GP (Great Plains) Partner - Brooklyn - Installation Experts Brooklyn New York MS Dynamics GP (Great Plains) Brooklyn Supplier - Setup Consulting Brooklyn
Microsoft, Cisco and Security Certified Experts NYC-Brooklyn On-site Technical Support New York City Network Repair Service
MySQL Design Visual Basic Programmer
Open Now ProSight Ransomware Protection Consulting Remote Technology Professional ProSight ASM Endpoint Protection
Exchange 2016 IT Consulting
Microsoft Exchange 2016 IT Consultants
Progent's Microsoft-certified consultants have 20 years of background designing, integrating, and maintaining email systems for clients in the and across the U.S. Progent provides affordable Microsoft Exchange Servers consulting support to ensure that your email environment features security, high uptime, easy access for remote and wireless users, efficient administrative utilities, and productive integration with telecommunications. Progent provides consulting and support services for Exchange 2016 Server, Exchange 2013 Server, Microsoft Exchange 2010, Microsoft Exchange 2007 Server, Exchange 2003, and Exchange 2K. Progent can also help small or mid-size companies to upgrade to Microsoft Exchange 2016 or Exchange 2013 Server.
Remote Workers Assistance in Brooklyn - Cloud Integration Technology Guidance Brooklyn Offsite Workforce Brooklyn Expertise - Cloud Integration Technology Guidance Brooklyn New York
Remote Workers Consultants near Brooklyn - IP Voice Solutions Consulting Experts Brooklyn, NY Teleworkers Consulting and Support Services nearby Brooklyn - IP Voice Technology Guidance Brooklyn, NY
SCCM 2016 Mobile Application Management Online Consulting System Center 2016 Configuration Manager IT Services
SQL Server 2014 Capacity Planning Outsourcing Remote Troubleshooting SQL Server 2014 and Windows Server 2012 R2
Short-Term IT Support Staffing Services Expertise Brooklyn Brooklyn Brooklyn IT Staff Augmentation Support
Microsoft 365 Outlook Computer Network Firms
Outlook 2019 Consulting Group
Progent's certified Office and Microsoft 365 consultants can assist companies of any size to integrate Office desktop and Microsoft 365 apps such as Excel, Word, PowerPoint, Microsoft Outlook, Access, Project and OneNote into a cohesive productivity solution that offers quick return on investment and promotes better business outcomes. Progent can help your company to interface Office or Microsoft 365 apps with one another and with additional key Microsoft technologies including SharePoint Server, Exchange Server and Microsoft SQL Server running on-premises or hosted in the cloud. Progent's consultants can also assist you to resolve compatibility issues with different releases of Microsoft Office and offers live online instruction to individuals and groups.
Technical Support Organization Microsoft SQL Server Brooklyn, NY 24x7x365 Small Office IT Consultant SQL Server 2014 Brooklyn NY
Teleworkers Brooklyn Assistance - Infrastructure Expertise Brooklyn NY Brooklyn Offsite Workforce Integration Consulting Experts Brooklyn, United States
Top Brooklyn Sodinokibi Ransomware Negotiation Services Brooklyn, United States Brooklyn Nephilim Ransomware Negotiation Guidance Brooklyn, New York
Specialists SCCM and SQL Server
SCCM Peer Cache Consultant Services
System Center Configuration Manager automates application and device deployment at scale, streamlines compliance settings management, keeps track of network resources, protects against company data leakage, performs health monitoring, allows secure end-user self service, and offers a single control mechanism for administering mixed-operating system ecosystems based on on-premises, cloud-centric, or hybrid deployment architectures. Progent's Microsoft-certified Configuration Manager consulting team and Azure cloud integration experts can help you with any facet of planning, implementing, operating and repairing a SCCM deployment for local, cloud, or hybrid environments.
Top Quality Teleworkers Brooklyn Consultants - Help Desk Outsourcing Consulting Experts Brooklyn Remote Teleworkers Consulting Services near me in Brooklyn - Call Desk Augmentation Consulting Services Brooklyn
Top Ubuntu Linux, Sun Solaris, UNIX Computer Consultant Brooklyn Red Hat Linux, Sun Solaris, UNIX Help and Support
VoIP IT Consulting Microsoft Office Communications Server IT Consultants
ransomware cleanup and recovery Consulting Services Maze ransomware recovery Professionals
Brooklyn Brooklyn Hermes Ransomware Recoveryransomware cleanup and recovery Consulting Services 24-7 Maze ransomware hot line Consultant Services
© 2002-2025 Progent Corporation. All rights reserved.