Quantcast
Jump to content


Recommended Posts

Last week our business network was hit with a ransomware attack. One of our company officers was looking at resumes for prospective employees and opened an attachment on an email response from a Craigslist ad. The attachment was in.zip format and as soon as it opened she knew something was wrong. Within minutes, critical files on the computer were encrypted and unusable. In addition, files on other computers that were shared on the network were also encrypted. The computer screen was filled with instructions on how to pay a $1000 ransom to buy the decryption software that would return everything to normal. The payment method is in bitcoin through untraceable networks so the jerks at the other end are completely anonymous and untraceable as well.



The ransom attack targets specific file types that such as .doc, .pdf, Excel files and graphics files. Why graphics files? People don’t want to lose family pictures and will pay to get them back.


What do you do? You and your “IT guy” can’t crack the encryption, so you are faced with either paying the ransom or finding a way to live without them… UNLESS you have a backup. Do you? We use Carbonite on our critical data and it may turn out to be a blessing. Immediately after the attack, we found out that the machine in question had not been backing up for the past 45 days! Why? We’re still not sure, but it’s not a total disaster because we want to get back a lot of the old files. We also learned that as soon as you find out you’ve been hit, you need to freeze your backup, otherwise Carbonite starts backing up the encrypted files. Also, immediately power down the infected machine and disconnect it from your local network before powering it back up again.


My biggest fear was losing our Quickbooks files, but to my surprise the attack didn’t include them. But it did get our Excel day reports for the gas station and C-store and it destroyed the data in our car lot’s dealer management system, mostly PDF files. Fortunately that machine had a current backup in Carbonite. Thanks to our backups, I was able to make the decision not to pay the ransom, but I have now spent four days cleaning machines, attempting to take the machine that was attacked back to ground zero, updating files with old backups. I’m not done yet and will spend at least part of tomorrow working with the dealer management system people to get the car lot up and running again.


Monday night and everything is working again if your are willing to accept the loss of some data, and, believe me, I am. I sit here thinking that it could happen again tomorrow and I haven’t really prepared my defense, but I willl be working on that, believe me.

  • Like 1
Link to comment
Share on other sites

Pretty scary story. I know we've probably all heard it, but try to avoid opening anything that looks suspicious. avoid .zip and .exe files that get emailed. One suggestion might be to use gmail to open these resumes going forward. If it's truly a document type file, gmail should be able to handle that in the browser itself. Also, you might try opening them first on your phone if possible. Yea, you could brick your phone, but a new cell phone is cheaper and less of a headache than a new shop computer.

 

*EDIT: I just re-read your post and saw that it was a .zip file. I would immediately hold a meeting or at least send out an email blast to everyone in the company saying to never, ever, under any circumstance, open a .zip or .exe file that you receive in an email from someone you do not absolutely 100% trust. A .zip or .exe from and unknown source is almost guaranteed to be a virus of some sort.

Edited by mmotley
Link to comment
Share on other sites

I always suggest to use an up-to-date internet security suite like Nortons and have browser protection enabled. It should warn you and sniff these things out. :D

 

http://www.cbc.ca/news/technology/antivirus-software-1.3668746

Unfortunately, this is pretty much false in this day and age.

There are a vast number of articles everywhere about security software giving you a false sense of security.

Technology, specifically malware linked to organized crime, changes way too fast for security software to keep up.

While I'm not saying security software is 100% useless, it's definitely outlived most of it's usefulness. (not to mention it's a drain on your wallet for something that doesn't work well)

 

Your best bet is to keep regular backups, keep your operating system, browser and software patched and up-to-date, and USE COMMON SENSE!

Don't EVER open a .zip or .exe file in an email! Don't open any email attachment unless you are expecting them!

Don't get lulled into a false sense of security!

  • Like 1
Link to comment
Share on other sites

I have used this training, there are 3 basic classes totally about 1.5 hours. it's inexpensive and very informing. It also allows you to test your people if your emails are all the same domain. They are very helpful and easy to work with. I signed all my staff up as well as techs and family members.

 

https://www.knowbe4.com/

  • Like 1
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Available Subscriptions

  • Have you checked out Joe's Latest Blog?

         0 comments
      It always amazes me when I hear about a technician who quits one repair shop to go work at another shop for less money. I know you have heard of this too, and you’ve probably asked yourself, “Can this be true? And Why?” The answer rests within the culture of the company. More specifically, the boss, manager, or a toxic work environment literally pushed the technician out the door.
      While money and benefits tend to attract people to a company, it won’t keep them there. When a technician begins to look over the fence for greener grass, that is usually a sign that something is wrong within the workplace. It also means that his or her heart is probably already gone. If the issue is not resolved, no amount of money will keep that technician for the long term. The heart is always the first to leave. The last thing that leaves is the technician’s toolbox.
      Shop owners: Focus more on employee retention than acquisition. This is not to say that you should not be constantly recruiting. You should. What it does means is that once you hire someone, your job isn’t over, that’s when it begins. Get to know your technicians. Build strong relationships. Have frequent one-on-ones. Engage in meaningful conversation. Find what truly motivates your technicians. You may be surprised that while money is a motivator, it’s usually not the prime motivator.
      One last thing; the cost of technician turnover can be financially devastating. It also affects shop morale. Do all you can to create a workplace where technicians feel they are respected, recognized, and know that their work contributes to the overall success of the company. This will lead to improved morale and team spirit. Remember, when you see a technician’s toolbox rolling out of the bay on its way to another shop, the heart was most likely gone long before that.
  • Similar Topics

    • By Joe Marconi

      Premium Member Content 

      This content is hidden to guests, one of the benefits of a paid membership. Please login or register to view this content.

    • By Changing The Industry
      Episode 174 - Balancing Business and Family In A Small Town with Josiah Martin
    • By carmcapriotto
      Thanks to our Partners, Shop Boss, and 360 Payments By setting realistic expectations, providing necessary support and training, fostering a positive work environment, and maintaining transparency and honesty, business owners can create a more productive and harmonious workplace. Implementing these actionable tips from Kevin Eckler can help reduce turnover, improve employee satisfaction, and ultimately lead to a more successful business. Kevin Eckler, Foreign Car Specialists, Poughkeepsie, NY. Listen to Kevin’s previous episodes HERE. Show Notes
      The challenges in the automotive industry (00:00:06) Discussion about the struggles and shortcomings in hiring and managing employees in the automotive industry. Setting up employees for failure (00:01:01) The tendency to bring in new employees without realistic expectations and necessary support, leading to repeated failures. Lack of support and training for new employees (00:02:43) Failure to equip new employees with the tools, support, and training needed for success in their positions. Creating a toxic work environment (00:03:40) The impact of avoiding confrontations and failing to address issues on creating a toxic work environment and setting employees up to fail. Self-awareness and accountability (00:06:34) The importance of self-awareness in how one's actions and words influence the atmosphere and attitude in the workplace. Honesty about the challenges and vision of the business (00:08:08) The importance of being honest about the difficulties and vision of the business when bringing in new employees and setting realistic expectations. Thanks to our Partners, Shop Boss, and 360 Payments Shop Boss – Shop Management Software built by shop owners, for shop owners. It works the way you need it to, right out of the box. Find on the web at https://shopboss.net Connect with the Podcast: -Follow on Facebook: https://www.facebook.com/RemarkableResultsRadioPodcast/ -Join Our Virtual Toastmasters Club: https://remarkableresults.biz/toastmasters -Join Our Private Facebook Community: https://www.facebook.com/groups/1734687266778976 -Subscribe on YouTube: https://www.youtube.com/carmcapriotto -Follow on LinkedIn: https://www.linkedin.com/in/carmcapriotto/ -Follow on Instagram: https://www.instagram.com/remarkableresultsradiopodcast/ -Follow on Twitter: https://twitter.com/RResultsBiz -Visit the Website: https://remarkableresults.biz/ -Join our Insider List: https://remarkableresults.biz/insider -All books mentioned on our podcasts: https://remarkableresults.biz/books -Our Classroom page for personal or team learning: https://remarkableresults.biz/classroom -Buy Me a Coffee: https://www.buymeacoffee.com/carm -The Aftermarket Radio Network: https://aftermarketradionetwork.com -Special episode collections: https://remarkableresults.biz/collections  
      Click to go to the Podcast on Remarkable Results Radio
    • By carmcapriotto
      Thanks to our partners, NAPA TRACS and Promotive
      In this episode, Hunt Demarest, CPA with Paar Melis & Associates, discusses the importance of regularly analyzing your financials. Learn how to effectively use daily and monthly reviews to drive your shop’s profitability and productivity.
      Key Takeaways:
      Daily Reviews: Focus on productivity using shop management software. Monthly Reviews: Focus on profitability using financial statements. Key Metrics: Track productivity, profitability, and parts gross profit. Scientific Approach: Identify problems, hypothesize solutions, test, and analyze outcomes.  
      
       
      Thanks to our partners, NAPA TRACS and Promotive
      Did you know that NAPA TRACS has onsite training plus six days a week support?
      It all starts when a local representative meets with you to learn about your business and how you run it.  After all, it's your shop, so it's your choice.
      Let us prove to you that Tracs is the single best shop management system in the business.  Find NAPA TRACS on the Web at NAPATRACS.com
      Paar Melis and Associates – Accountants Specializing in Automotive Repair
      Visit us Online: www.paarmelis.com
      Email Hunt: [email protected]
      Get a copy of my Book: Download Here
      Aftermarket Radio Network
      Click to go to the Podcast on Remarkable Results Radio
    • By Joe Marconi

      Premium Member Content 

      This content is hidden to guests, one of the benefits of a paid membership. Please login or register to view this content.



  • Our Sponsors



×
×
  • Create New...