This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

ICE Cyber Crime ransomware assistance

Yesterday a user running up to date Sophos Endpoint Security was infected with Ice Cyber Crime ransomware.  The system could not even be booted into safe mode and once it appeared to be removed and Sophos again showed an up to date status, the ransomware returned.

Has anyone seen issues with this?  The traditional suggestions for removal (aside from paying the "ransom") have not been working.

:48140


This thread was automatically locked due to age.
Parents
  • Found the acronyms... Checked for alerts and did not see anything in the Console regarding the ransomware - just some minor threats detected before this week.

    The SBAV was created fresh.  We are doing a reinstall of the OS at this point but are now wondering what the course of action should be in the future when we cannot boot into Windows/Safe Mode and the SBAV does not detect anything?

    :48156
Reply
  • Found the acronyms... Checked for alerts and did not see anything in the Console regarding the ransomware - just some minor threats detected before this week.

    The SBAV was created fresh.  We are doing a reinstall of the OS at this point but are now wondering what the course of action should be in the future when we cannot boot into Windows/Safe Mode and the SBAV does not detect anything?

    :48156
Children
No Data