This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

ICE Cyber Crime ransomware assistance

Yesterday a user running up to date Sophos Endpoint Security was infected with Ice Cyber Crime ransomware.  The system could not even be booted into safe mode and once it appeared to be removed and Sophos again showed an up to date status, the ransomware returned.

Has anyone seen issues with this?  The traditional suggestions for removal (aside from paying the "ransom") have not been working.

:48140


This thread was automatically locked due to age.
Parents
  • Hello searbet,

    so if you log in you are presented with the ransom screen? Is the machine managed by SEC and were there any alerts? If SBAV (you built it "just now"?) doesn't find anything there's no known entity involved. But you did get rid of it at one point but not now? And how did you run Hitman Pro?

    Christian
    :48148
Reply
  • Hello searbet,

    so if you log in you are presented with the ransom screen? Is the machine managed by SEC and were there any alerts? If SBAV (you built it "just now"?) doesn't find anything there's no known entity involved. But you did get rid of it at one point but not now? And how did you run Hitman Pro?

    Christian
    :48148
Children
No Data