Quantcast
Jump to content


Recommended Posts

Last week our business network was hit with a ransomware attack. One of our company officers was looking at resumes for prospective employees and opened an attachment on an email response from a Craigslist ad. The attachment was in.zip format and as soon as it opened she knew something was wrong. Within minutes, critical files on the computer were encrypted and unusable. In addition, files on other computers that were shared on the network were also encrypted. The computer screen was filled with instructions on how to pay a $1000 ransom to buy the decryption software that would return everything to normal. The payment method is in bitcoin through untraceable networks so the jerks at the other end are completely anonymous and untraceable as well.



The ransom attack targets specific file types that such as .doc, .pdf, Excel files and graphics files. Why graphics files? People don’t want to lose family pictures and will pay to get them back.


What do you do? You and your “IT guy” can’t crack the encryption, so you are faced with either paying the ransom or finding a way to live without them… UNLESS you have a backup. Do you? We use Carbonite on our critical data and it may turn out to be a blessing. Immediately after the attack, we found out that the machine in question had not been backing up for the past 45 days! Why? We’re still not sure, but it’s not a total disaster because we want to get back a lot of the old files. We also learned that as soon as you find out you’ve been hit, you need to freeze your backup, otherwise Carbonite starts backing up the encrypted files. Also, immediately power down the infected machine and disconnect it from your local network before powering it back up again.


My biggest fear was losing our Quickbooks files, but to my surprise the attack didn’t include them. But it did get our Excel day reports for the gas station and C-store and it destroyed the data in our car lot’s dealer management system, mostly PDF files. Fortunately that machine had a current backup in Carbonite. Thanks to our backups, I was able to make the decision not to pay the ransom, but I have now spent four days cleaning machines, attempting to take the machine that was attacked back to ground zero, updating files with old backups. I’m not done yet and will spend at least part of tomorrow working with the dealer management system people to get the car lot up and running again.


Monday night and everything is working again if your are willing to accept the loss of some data, and, believe me, I am. I sit here thinking that it could happen again tomorrow and I haven’t really prepared my defense, but I willl be working on that, believe me.

  • Like 1
Link to comment
Share on other sites










Pretty scary story. I know we've probably all heard it, but try to avoid opening anything that looks suspicious. avoid .zip and .exe files that get emailed. One suggestion might be to use gmail to open these resumes going forward. If it's truly a document type file, gmail should be able to handle that in the browser itself. Also, you might try opening them first on your phone if possible. Yea, you could brick your phone, but a new cell phone is cheaper and less of a headache than a new shop computer.

 

*EDIT: I just re-read your post and saw that it was a .zip file. I would immediately hold a meeting or at least send out an email blast to everyone in the company saying to never, ever, under any circumstance, open a .zip or .exe file that you receive in an email from someone you do not absolutely 100% trust. A .zip or .exe from and unknown source is almost guaranteed to be a virus of some sort.

Edited by mmotley
Link to comment
Share on other sites

I always suggest to use an up-to-date internet security suite like Nortons and have browser protection enabled. It should warn you and sniff these things out. :D

 

http://www.cbc.ca/news/technology/antivirus-software-1.3668746

Unfortunately, this is pretty much false in this day and age.

There are a vast number of articles everywhere about security software giving you a false sense of security.

Technology, specifically malware linked to organized crime, changes way too fast for security software to keep up.

While I'm not saying security software is 100% useless, it's definitely outlived most of it's usefulness. (not to mention it's a drain on your wallet for something that doesn't work well)

 

Your best bet is to keep regular backups, keep your operating system, browser and software patched and up-to-date, and USE COMMON SENSE!

Don't EVER open a .zip or .exe file in an email! Don't open any email attachment unless you are expecting them!

Don't get lulled into a false sense of security!

  • Like 1
Link to comment
Share on other sites

I have used this training, there are 3 basic classes totally about 1.5 hours. it's inexpensive and very informing. It also allows you to test your people if your emails are all the same domain. They are very helpful and easy to work with. I signed all my staff up as well as techs and family members.

 

https://www.knowbe4.com/

  • Like 1
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Have you checked out Joe's Latest Blog?

         0 comments
      It always amazes me when I hear about a technician who quits one repair shop to go work at another shop for less money. I know you have heard of this too, and you’ve probably asked yourself, “Can this be true? And Why?” The answer rests within the culture of the company. More specifically, the boss, manager, or a toxic work environment literally pushed the technician out the door.
      While money and benefits tend to attract people to a company, it won’t keep them there. When a technician begins to look over the fence for greener grass, that is usually a sign that something is wrong within the workplace. It also means that his or her heart is probably already gone. If the issue is not resolved, no amount of money will keep that technician for the long term. The heart is always the first to leave. The last thing that leaves is the technician’s toolbox.
      Shop owners: Focus more on employee retention than acquisition. This is not to say that you should not be constantly recruiting. You should. What it does means is that once you hire someone, your job isn’t over, that’s when it begins. Get to know your technicians. Build strong relationships. Have frequent one-on-ones. Engage in meaningful conversation. Find what truly motivates your technicians. You may be surprised that while money is a motivator, it’s usually not the prime motivator.
      One last thing; the cost of technician turnover can be financially devastating. It also affects shop morale. Do all you can to create a workplace where technicians feel they are respected, recognized, and know that their work contributes to the overall success of the company. This will lead to improved morale and team spirit. Remember, when you see a technician’s toolbox rolling out of the bay on its way to another shop, the heart was most likely gone long before that.
  • Similar Topics

    • By Changing The Industry
      You Can't Fix Toxic Employees #podcast #automotivebusiness #carrepair #autorepairbusiness
    • By carmcapriotto
      In this episode, Hunt tackles the pressing issues facing the housing market in 2024, discussing the impact of interest rates and the real affordability of homes.
      • Interest Rates Surge: Exploring how doubled interest rates are drastically affecting monthly payments.
      • Affordability Crisis: Delving into how rising home prices are outpacing income growth, making home ownership a distant dream for many.
      • Economic Insights: Analyzing the mismatch between the growth in home prices and stagnant wage increases.
      • Future Risks: Assessing potential market corrections and their consequences on homeowners and the economy.
      Thanks to our partners, NAPA TRACS and Promotive
      Did you know that NAPA TRACS has onsite training plus six days a week support?
      It all starts when a local representative meets with you to learn about your business and how you run it.  After all, it's your shop, so it's your choice.
      Let us prove to you that Tracs is the single best shop management system in the business.  Find NAPA TRACS on the Web at NAPATRACS.com
       
      It’s time to hire a superstar for your business; what a grind you have in front of you. Great news, you don’t have to go it alone. Introducing Promotive, a full-service staffing solution for your shop. Promotive has over 40 years of recruiting and automotive experience. If you need qualified technicians and service advisors and want to offload the heavy lifting, visit www.gopromotive.com.
       
      Paar Melis and Associates – Accountants Specializing in Automotive Repair
      Visit us Online: www.paarmelis.com
      Email Hunt: [email protected]
      Get a copy of my Book: Download Here
      Aftermarket Radio Network
      Click to go to the Podcast on Remarkable Results Radio
    • By carmcapriotto
      Join Hunt in this important discussion about financial planning for auto repair shop owners. This episode explores why breaking even isn't enough and how to set financial targets that ensure long-term business health and growth.
      • Understanding Break-even: Why merely covering costs can jeopardize business sustainability, and how to calculate real financial targets.
      • Strategic Planning Tips: Learn conservative financial planning techniques to safeguard your business against unexpected downturns.
      • Team Communication: The importance of setting clear financial goals and maintaining transparency to motivate your team.
      • Actionable Financial Advice: Step-by-step guidance on setting sales and profit targets based on your gross profit percentage.
      Thanks to our partners, NAPA TRACS and Promotive
      Did you know that NAPA TRACS has onsite training plus six days a week support?
      It all starts when a local representative meets with you to learn about your business and how you run it.  After all, it's your shop, so it's your choice.
      Let us prove to you that Tracs is the single best shop management system in the business.  Find NAPA TRACS on the Web at NAPATRACS.com
      It’s time to hire a superstar for your business; what a grind you have in front of you. Great news, you don’t have to go it alone. Introducing Promotive, a full-service staffing solution for your shop. Promotive has over 40 years of recruiting and automotive experience. If you need qualified technicians and service advisors and want to offload the heavy lifting, visit www.gopromotive.com.
      Paar Melis and Associates – Accountants Specializing in Automotive Repair
      Visit us Online: www.paarmelis.com
      Email Hunt: [email protected]
      Get a copy of my Book: Download Here
      Aftermarket Radio Network
      Click to go to the Podcast on Remarkable Results Radio
    • By nptrb

      Premium Member Content 

      This content is hidden to guests, one of the benefits of a paid membership. Please login or register to view this content.

    • By carmcapriotto
      Thank you to our friends at RepairPal for providing you this episode. As shop owners we were part of RepairPal’s Certified network and you can learn more at RepairPal.com/shops.
      Show Notes
      My Facebook Ads are showing to people way outside of my service area (not set up right) My social media doesn’t seem to be providing a return on investment (Junk smm) I never see my Google Ads when I search for my business (low budget) I don’t show up in the Map Pack when I search for auto repair near me, and I’m searching while I’m in my business (connected to wifi) My website is too slow (pictures too big or cheap hosting) My website doesn’t come up when people search for mechanic near me (stock content) I get lots of leads but they don’t turn into customers (Your SA sucks) My marketing looks like every other shop’s marketing (are you talking to your marketers?) The shop is slow. It’s time to turn our marketing back on. (never stop marketing)  
      How To Get In Touch
       
      Group - Auto Repair Marketing Mastermind
      Website - shopmarketingpros.com 
      Facebook - facebook.com/shopmarketingpros 
      Get the Book - shopmarketingpros.com/book
      Instagram - @shopmarketingpros 
      Questions/Ideas - [email protected]
      Click to go to the Podcast on Remarkable Results Radio


  • Our Sponsors










×
×
  • Create New...