This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

ICE Cyber Crime ransomware assistance

Yesterday a user running up to date Sophos Endpoint Security was infected with Ice Cyber Crime ransomware.  The system could not even be booted into safe mode and once it appeared to be removed and Sophos again showed an up to date status, the ransomware returned.

Has anyone seen issues with this?  The traditional suggestions for removal (aside from paying the "ransom") have not been working.

:48140


This thread was automatically locked due to age.
Parents
  • Just for the sake of clarity - initially the computer would not boot into normal windows nor safe mode - only to the ICE cyber crime screen.  What I meant to ask - in the future if this occurs and the Sophos bootable SBAV does not detect anything, what should the next step be?

    Thanks for all the previous suggestions.  I guess I was hoping there might be other tools available aside from Windows reinstalls or disk slaving and scavenging for files.

    :48196
Reply
  • Just for the sake of clarity - initially the computer would not boot into normal windows nor safe mode - only to the ICE cyber crime screen.  What I meant to ask - in the future if this occurs and the Sophos bootable SBAV does not detect anything, what should the next step be?

    Thanks for all the previous suggestions.  I guess I was hoping there might be other tools available aside from Windows reinstalls or disk slaving and scavenging for files.

    :48196
Children
No Data