Ransomware : Your Feared IT Disaster
Ransomware  Remediation ExpertsCrypto-Ransomware has become an escalating cyberplague that poses an enterprise-level danger for businesses unprepared for an attack. Different versions of crypto-ransomware like the CrySIS, CryptoWall, Bad Rabbit, NotPetya and MongoLock cryptoworms have been out in the wild for years and still inflict damage. Newer versions of ransomware like Ryuk, Maze, Sodinokibi, DopplePaymer, Conti and Nephilim, as well as more unnamed viruses, not only encrypt online critical data but also infiltrate all available system restores and backups. Files synched to the cloud can also be ransomed. In a poorly architected environment, this can make automated recovery impossible and effectively knocks the datacenter back to zero.

Retrieving applications and data after a ransomware intrusion becomes a sprint against time as the targeted organization struggles to contain, cleanup the virus, and restore enterprise-critical operations. Since ransomware needs time to move laterally across a targeted network, penetrations are often launched on weekends, when successful attacks are likely to take more time to detect. This multiplies the difficulty of promptly marshalling and coordinating a knowledgeable response team.

Progent offers a range of solutions for protecting Brooklyn enterprises from crypto-ransomware events. These include staff training to help recognize and not fall victim to phishing attempts, ProSight Active Security Monitoring (ASM) for endpoint detection and response using SentinelOne's AI-based cyberthreat defense to identify and extinguish day-zero modern malware attacks. Progent in addition can provide the services of seasoned crypto-ransomware recovery consultants with the talent and perseverance to re-deploy a breached environment as quickly as possible.

Progent's Crypto-Ransomware Recovery Help
Following a ransomware invasion, sending the ransom in cryptocurrency does not guarantee that cyber hackers will provide the needed keys to decrypt all your information. Kaspersky determined that 17% of ransomware victims never recovered their files even after having paid the ransom, resulting in additional losses. The risk is also very costly. Ryuk ransoms are often a few hundred thousand dollars. For larger organizations, the ransom demand can be in the millions. The other path is to re-install the vital elements of your Information Technology environment. Absent the availability of full system backups, this calls for a wide complement of IT skills, well-coordinated team management, and the ability to work 24x7 until the task is finished.

For decades, Progent has offered expert Information Technology services for companies throughout the U.S. and has earned Microsoft's Partnership certification status in the Datacenter and Cloud Productivity competencies. Progent's pool of subject matter experts includes professionals who have attained high-level industry certifications in important technologies such as Microsoft, Cisco, VMware, and popular distributions of Linux. Progent's cybersecurity consultants have earned internationally-renowned industry certifications including CISA, CISSP, ISACA CRISC, SANS GIAC, and CMMC 2.0. (Refer to Progent's certifications). Progent also has experience with financial management and ERP software solutions. This breadth of expertise provides Progent the capability to rapidly ascertain important systems and re-organize the remaining parts of your computer network environment after a ransomware penetration and rebuild them into a functioning system.

Progent's security team uses state-of-the-art project management tools to coordinate the complicated restoration process. Progent knows the urgency of working quickly and in unison with a client's management and Information Technology resources to prioritize tasks and to get the most important applications back on line as soon as humanly possible.

Customer Case Study: A Successful Crypto-Ransomware Intrusion Response
A customer engaged Progent after their network was attacked by the Ryuk ransomware. Ryuk is thought to have been deployed by North Korean state sponsored criminal gangs, suspected of using strategies exposed from America's National Security Agency. Ryuk seeks specific businesses with little ability to sustain operational disruption and is among the most lucrative examples of crypto-ransomware. Major victims include Data Resolution, a California-based info warehousing and cloud computing company, and the Chicago Tribune. Progent's customer is a regional manufacturer located in Chicago with around 500 staff members. The Ryuk attack had paralyzed all business operations and manufacturing processes. Most of the client's data backups had been online at the start of the intrusion and were destroyed. The client was actively seeking loans for paying the ransom demand (more than two hundred thousand dollars) and hoping for good luck, but ultimately called Progent.


"I can't tell you enough in regards to the expertise Progent gave us throughout the most stressful period of (our) businesses survival. We may have had to pay the cyber criminals behind the attack if it wasn't for the confidence the Progent team provided us. That you were able to get our e-mail system and key applications back on-line sooner than one week was beyond my wildest dreams. Each consultant I talked with or communicated with at Progent was totally committed on getting us back on-line and was working non-stop to bail us out."

Progent worked together with the customer to quickly determine and assign priority to the mission critical systems that needed to be restored in order to continue departmental operations:

  • Active Directory (AD)
  • E-Mail
  • MRP System
To begin, Progent followed AV/Malware Processes incident mitigation industry best practices by halting the spread and cleaning up infected systems. Progent then began the task of recovering Microsoft Active Directory, the foundation of enterprise environments built upon Microsoft technology. Exchange email will not operate without AD, and the client's accounting and MRP software used Microsoft SQL, which requires Active Directory for access to the data.

In less than two days, Progent was able to rebuild Active Directory to its pre-intrusion state. Progent then helped perform reinstallations and storage recovery on key systems. All Microsoft Exchange Server data and configuration information were intact, which greatly helped the rebuild of Exchange. Progent was also able to locate intact OST files (Outlook Offline Data Files) on team workstations and laptops in order to recover mail information. A recent offline backup of the customer's financials/ERP software made them able to recover these vital programs back online for users. Although significant work needed to be completed to recover fully from the Ryuk damage, critical systems were recovered quickly:


"For the most part, the production operation ran fairly normal throughout and we made all customer deliverables."

Over the next month critical milestones in the restoration project were accomplished in close collaboration between Progent consultants and the customer:

  • In-house web sites were returned to operation with no loss of data.
  • The MailStore Microsoft Exchange Server containing more than four million historical emails was restored to operations and available for users.
  • CRM/Customer Orders/Invoices/Accounts Payable/Accounts Receivables/Inventory Control functions were 100 percent operational.
  • A new Palo Alto 850 security appliance was brought online.
  • 90% of the user workstations were functioning as before the incident.

"A lot of what happened in the initial days is nearly entirely a haze for me, but my management will not forget the care each of you accomplished to give us our business back. I have trusted Progent for the past ten years, maybe more, and each time Progent has impressed me and delivered as promised. This situation was no exception but maybe more Herculean."

Conclusion
A possible business disaster was evaded by top-tier experts, a wide spectrum of knowledge, and tight collaboration. Although upon completion of forensics the ransomware penetration detailed here should have been identified and prevented with up-to-date security solutions and security best practices, staff training, and properly executed incident response procedures for data protection and proper patching controls, the fact remains that government-sponsored hackers from China, Russia, North Korea and elsewhere are tireless and represent an ongoing threat. If you do fall victim to a crypto-ransomware virus, feel confident that Progent's team of professionals has a proven track record in ransomware virus blocking, remediation, and information systems restoration.


"So, to Darrin, Matt, Aaron, Dan, Claude, Jesse, Arnaud, Allen, Tony and Chris (along with others that were involved), thank you for making it so I could get some sleep after we got through the initial fire. Everyone did an amazing job, and if any of your team is around the Chicago area, a great meal is the least I can do!"

Download the Ransomware Remediation Case Study Datasheet
To read or download a PDF version of this customer case study, please click:
Progent's Ransomware Recovery Case Study Datasheet. (PDF - 282 KB)

Contact Progent for Ransomware Cleanup Consulting Services in Brooklyn
For ransomware recovery consulting services in the Brooklyn area, call Progent at 800-462-8800 or visit Contact Progent.



An index of content::

  • After Hours Ubuntu Linux, Sun Solaris, UNIX Computer Engineer Brooklyn Computer Engineer Mandrake Linux, Solaris, UNIX Brooklyn NY
  • Brooklyn Spora Crypto-Ransomware Operational-Recovery
  • BlackBerry BES Server IT Consultants Brooklyn BlackBerry BES Information Technology Outsourcing Firm Brooklyn, US
  • BlackBerry Wireless Support Services Services BlackBerry Redirector
  • Brooklyn 24 Hour Brooklyn Phobos Ransomware Settlement Consultants Brooklyn NotPetya Ransomware Negotiation Guidance Brooklyn, NY
  • Brooklyn Consulting Services for Computer Support Firms Brooklyn Brooklyn Consulting Services for IT Service Firms Brooklyn
  • Brooklyn Conti Crypto-Ransomware Data-Recovery Brooklyn NY Brooklyn Nephilim Crypto-Ransomware Repair Brooklyn

  • Hornetsecurity Altaro 365 Total Teams Chat Backup Computer Engineer
    Hornetsecurity Altaro 365 Total Backup Specialist

    Progent is a certified Hornetsecurity/Altaro partner and can design, install, and manage a deployment of 365 Total Backup to protect your Microsoft 365 mailboxes, files stored on your organization's OneDrive Accounts and SharePoint sites, Teams Chats, plus files on Windows-powered endpoints.

  • Brooklyn Crypto-Ransomware Locky Preparedness Evaluation Brooklyn Brooklyn Crypto-Ransomware Nephilim Susceptibility Testing Brooklyn, U.S.A.
  • Brooklyn MS Dynamics GP-Great Plains Reporting Consultants Brooklyn Microsoft Dynamics GP Reporting Expert Brooklyn
  • Brooklyn Netwalker Ransomware Forensics Investigation Brooklyn, United States Brooklyn Egregor Crypto-Ransomware Forensics Analysis

  • Windows 11 Training Online Help
    Windows 11 RPA Consultant Services

    Progent's Windows 11 experts offer a range of services for Windows 11 including cloud solutions, mobile management and synchronization, teleworker access, data and identity security, streamlined provisioning, and Call Center services.

  • Brooklyn New York At Home Workforce Consulting and Support Services in Brooklyn - Cybersecurity Systems Consultants Telecommuters Brooklyn Consulting - Network Security Solutions Consultants Brooklyn
  • Brooklyn New York Telecommuters Brooklyn Consulting - IP Voice Systems Consulting Experts Work from Home Employees Brooklyn Consulting and Support Services - IP Voice Technology Guidance Brooklyn
  • Brooklyn Offsite Workforce Consulting Services near Brooklyn - Management Systems Consulting Services At Home Workforce Consulting and Support Services nearby Brooklyn - Management Tools Consulting Experts Brooklyn, New York
  • Brooklyn Phobos Crypto-Ransomware System-Restore Brooklyn, U.S.A. Brooklyn Phobos Crypto-Ransomware Remediation
  • Brooklyn Ransomware Repair Help Brooklyn Brooklyn NY Top Quality Emergency Brooklyn Crypto-Ransomware Recovery Services

  • Outsourcing ProSight Duo MFA
    Zero Trust Security Support and Help

    Progent's Duo service plans incorporate Cisco's Duo technology to defend against stolen passwords by using two-factor authentication (2FA). Duo supports single-tap identity confirmation on Apple iOS, Android, and other personal devices.

  • Brooklyn Telecommuters Integration Guidance Brooklyn, New York 24-Hour Brooklyn Teleworkers Infrastructure Consulting Experts Brooklyn, NY, America
  • Brooklyn Teleworkers Consulting and Support Services in Brooklyn - Cloud Integration Solutions Consulting and Support Services Work at Home Employees Assistance near me in Brooklyn - Cloud Integration Systems Expertise Brooklyn New York
  • Brooklyn Work at Home Employees Brooklyn Consulting - Integration Solutions Expertise Work at Home Employees Brooklyn Consulting and Support Services - Solutions Consulting Services Brooklyn
  • Brooklyn Work at Home Employees Voice/Video Conferencing Technology Assistance Brooklyn New York Brooklyn Teleworkers Voice/Video Conferencing Solutions Consulting Experts Brooklyn, NY
  • Brooklyn, NY Brooklyn Locky Crypto-Ransomware Business Recovery Brooklyn NotPetya Crypto-Ransomware System-Restoration
  • Ekahau Wi-Fi Troubleshooting Computer Engineer 24-Hour Ekahau Pro Wi-Fi Network Design Online Troubleshooting
  • Exchange Server Upgrade Consulting Services After Hours Microsoft Exchange Server Migration Services
  • Maze Ransomware Hot Line Ryuk Ransomware Hot Line Brooklyn

  • Microsoft Information Technology Consulting SQL Server 2019 and Power BI
    Computer Engineer SQL Server 2019 Disaster Recovery

    Progent's Microsoft-certified SharePoint Server 2019 and SharePoint Online consultants can provide affordable online and onsite consulting expertise, software development, and debugging services for businesses of any size who want to upgrade to SharePoint Server 2019 or SharePoint Online from prior versions of SharePoint. Progent can help you design and execute a cost-effective upgrade to SharePoint 2019 on prem, SharePoint Online, or a hybrid environment that incorporates local and cloud-based infrastructure into a cohesive intranet system.

  • Meraki MR55 Access Point Remote Support Services Open Now Online Troubleshooting Meraki Wave 2 AP
  • Microsoft SharePoint Server 2013 Network Consulting Brooklyn, NY Consultants Microsoft SharePoint Server 2013
  • New York, NY Outsourcing Technical Support Brooklyn, New York City Computer Consulting Group

  • Windows Server 2025 Windows Defender ATP Troubleshooting
    Technical Support Services Windows 2025 Hyper-V

    File summary_Windows-Server-2025-Consultants.htm.asp does not exist



  • New York, New York Upgrading New York, New York IT Consulting
  • Remote Workforce Brooklyn Consulting Services - Data Protection Systems Consulting Experts Offsite Workforce Consulting Experts - Brooklyn - Backup/Recovery Technology Consultants Brooklyn
  • SQL 2012 Consolidate Brooklyn Brooklyn New York SQL 2012 Information Technology Outsourcing
  • SQL Server 2012 AlwaysOn Availability Groups Remote Technical Support PowerPivot for Excel On-site Support

  • Data Center Colocation Technology Consulting
    Internet Data Center Consultant

    Progent's data center IT services are intended for businesses with equipment located at IDCs or data center co-location hosting sites and in need of timely in-person assistance at the colocation facility as well as off-site help from Microsoft and Cisco Premier experts. Progent offers a full array of IDC and IDC and colocation support services including system architecture evaluation, Windows and UNIX server installation and support, tech support for server and communications networking, design and deployment of fault tolerant systems, defining and implementing layered security defenses, firewall configuration and support, configuring load balancing solutions, and creating high-availability server and storage cluster configurations.

  • Security Security Consultants Brooklyn Security Information systems Security Outsourcing Brooklyn
  • Small Office IT Consultants Windows 2008 Server Brooklyn Microsoft Windows Server 2016 Tech Support Brooklyn, NY
  • Supplemetary IT Staffing for Computer Support Teams Brooklyn Brooklyn, New York IT Staffing Temps for IT Service Teams
  • Tech Support Outsource Cisco Brooklyn NY Cisco Server Setup Brooklyn New York
  • Brooklyn NY Brooklyn NotPetya Crypto-Ransomware Recovery
  • Telecommuters Assistance nearby Brooklyn - Call Desk Outsourcing Consulting Brooklyn At Home Workforce Expertise near me in Brooklyn - Help Desk Outsourcing Consulting and Support Services Brooklyn New York
  • Telecommuters Brooklyn Consulting Services - Collaboration Systems Consulting Brooklyn, New York Telecommuters Guidance - Brooklyn - Collaboration Solutions Guidance Brooklyn
  • Troubleshooting Microsoft Exchange 2010 Brooklyn Exchange Server 2013 Problem Resolution Brooklyn New York
  • VPN Online Technical Support CCIE Certified VPN Specialist

  • © 2002-2025 Progent Corporation. All rights reserved.