By the time we noticed they were also affected. Incremental backups.Regards,Kennedy Kairaria
Mobile: (254) 724 615232
kenkairaria@gmail.com |
http://kennedy-kairaria.gqContact me:kennedy.kairaria
On 1 April 2016 at 10:58, Brian Ngure <brian@pixie.co.ke> wrote:Backups?
On 1 Apr 2016 10:52 am, "Kennedy Kairaria via skunkworks" <skunkworks@lists.my.co.ke> wrote:_______________________________________________Skunk(ette)s,We just got hit with the paycript ransom-ware on some of our file servers we've managed t identify the domain accounts running the script and disabled them. Seems to have stopped spreading across the network to our other file servers(for now...48 hours and counting)
Suspected source has also been identified and measures taken. What remains now is finding a way to decrypt the files. The damn fools are asking for 2BTC for them to decrypt and double the amount to charge by the day if not paid.Anyone else who has had to go through the same? What measures did you take to recover?Regards,Kennedy Kairaria
Mobile: (254) 724 615232
kenkairaria@gmail.com |
http://kennedy-kairaria.gqContact me:kennedy.kairaria
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------
Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke
_______________________________________________
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------
Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke