Ransomware : Your Feared Information Technology Catastrophe
Ransomware  Remediation ConsultantsRansomware has become a too-frequent cyber pandemic that represents an existential threat for businesses vulnerable to an assault. Different iterations of ransomware like the CrySIS, WannaCry, Bad Rabbit, SamSam and MongoLock cryptoworms have been out in the wild for many years and continue to inflict destruction. Modern strains of ransomware like Ryuk, Maze, Sodinokibi, Netwalker, Conti and Nephilim, as well as more as yet unnamed newcomers, not only perform encryption of on-line data files but also infect many accessible system backup. Data synched to the cloud can also be corrupted. In a poorly designed environment, this can make automatic restoration impossible and effectively knocks the datacenter back to zero.

Recovering applications and data following a ransomware event becomes a race against the clock as the targeted organization tries its best to contain the damage, eradicate the ransomware, and restore mission-critical activity. Because crypto-ransomware needs time to replicate across a targeted network, attacks are usually launched on weekends, when attacks tend to take longer to discover. This compounds the difficulty of promptly marshalling and orchestrating an experienced response team.

Progent makes available an assortment of support services for securing Brooklyn organizations from ransomware events. Among these are team member education to help recognize and not fall victim to phishing attempts, ProSight Active Security Monitoring (ASM) for endpoint detection and response utilizing SentinelOne's AI-based cyberthreat defense to detect and quarantine zero-day malware attacks. Progent in addition offers the services of expert crypto-ransomware recovery consultants with the talent and commitment to restore a breached network as soon as possible.

Progent's Ransomware Recovery Help
Subsequent to a crypto-ransomware penetration, paying the ransom demands in cryptocurrency does not ensure that cyber criminals will respond with the codes to unencrypt any or all of your data. Kaspersky estimated that 17% of ransomware victims never restored their information after having paid the ransom, resulting in more losses. The gamble is also expensive. Ryuk ransoms are typically several hundred thousand dollars. For larger organizations, the ransom demand can be in the millions of dollars. The alternative is to piece back together the critical parts of your IT environment. Without access to full information backups, this requires a wide range of IT skills, top notch project management, and the capability to work non-stop until the recovery project is done.

For decades, Progent has offered professional Information Technology services for businesses across the U.S. and has achieved Microsoft's Partnership certification in the Datacenter and Cloud Productivity competencies. Progent's team of subject matter experts (SMEs) includes engineers who have been awarded high-level certifications in foundation technologies like Microsoft, Cisco, VMware, and major distributions of Linux. Progent's cyber security consultants have earned internationally-recognized industry certifications including CISA, CISSP, CRISC, SANS GIAC, and CMMC 2.0. (Refer to Progent's certifications). Progent in addition has experience with accounting and ERP applications. This breadth of expertise affords Progent the skills to quickly ascertain critical systems and organize the surviving components of your IT system following a ransomware event and configure them into a functioning network.

Progent's security team has powerful project management applications to orchestrate the sophisticated restoration process. Progent knows the importance of acting rapidly and together with a customer's management and IT team members to assign priority to tasks and to put the most important services back on line as soon as possible.

Customer Case Study: A Successful Ransomware Incident Restoration
A small business hired Progent after their company was penetrated by the Ryuk ransomware virus. Ryuk is generally considered to have been launched by North Korean state criminal gangs, possibly adopting technology leaked from America's NSA organization. Ryuk seeks specific organizations with little tolerance for operational disruption and is among the most lucrative iterations of ransomware malware. Well Known targets include Data Resolution, a California-based data warehousing and cloud computing business, and the Chicago Tribune. Progent's customer is a small manufacturer located in the Chicago metro area with about 500 workers. The Ryuk event had frozen all business operations and manufacturing capabilities. The majority of the client's system backups had been online at the time of the intrusion and were eventually encrypted. The client considered paying the ransom (more than two hundred thousand dollars) and wishfully thinking for the best, but ultimately reached out to Progent.


"I can't tell you enough in regards to the care Progent provided us throughout the most stressful time of (our) businesses survival. We would have paid the cyber criminals behind the attack except for the confidence the Progent experts provided us. The fact that you were able to get our e-mail system and critical servers back quicker than one week was incredible. Every single expert I interacted with or communicated with at Progent was hell bent on getting us back online and was working non-stop to bail us out."

Progent worked hand in hand the customer to rapidly understand and prioritize the key areas that needed to be recovered in order to resume business functions:

  • Windows Active Directory
  • Microsoft Exchange
  • Financials/MRP
To start, Progent adhered to ransomware penetration response industry best practices by halting the spread and clearing infected systems. Progent then started the task of bringing back online Microsoft AD, the foundation of enterprise systems built on Microsoft Windows Server technology. Microsoft Exchange Server messaging will not function without Windows AD, and the customer's financials and MRP applications utilized Microsoft SQL, which depends on Active Directory for security authorization to the databases.

Within 2 days, Progent was able to re-build Active Directory services to its pre-intrusion state. Progent then completed rebuilding and hard drive recovery of key servers. All Exchange data and attributes were intact, which facilitated the restore of Exchange. Progent was also able to assemble intact OST files (Microsoft Outlook Off-Line Folder Files) on team desktop computers to recover mail data. A not too old off-line backup of the businesses accounting/MRP systems made them able to restore these essential services back servicing users. Although a large amount of work still had to be done to recover fully from the Ryuk damage, the most important services were recovered quickly:


"For the most part, the manufacturing operation survived unscathed and we delivered all customer sales."

Over the next couple of weeks critical milestones in the recovery project were completed in tight collaboration between Progent consultants and the customer:

  • Internal web sites were returned to operation with no loss of data.
  • The MailStore Server exceeding four million historical emails was brought online and accessible to users.
  • CRM/Orders/Invoicing/Accounts Payable/Accounts Receivables/Inventory Control capabilities were completely restored.
  • A new Palo Alto 850 firewall was installed and configured.
  • Nearly all of the desktop computers were fully operational.

"So much of what occurred in the initial days is mostly a fog for me, but we will not forget the dedication all of the team accomplished to give us our company back. I've trusted Progent for the past 10 years, possibly more, and each time I needed help Progent has come through and delivered as promised. This event was no exception but maybe more Herculean."

Conclusion
A possible enterprise-killing catastrophe was evaded by hard-working experts, a wide array of knowledge, and tight teamwork. Although upon completion of forensics the ransomware virus penetration described here could have been identified and prevented with current security systems and best practices, staff education, and well designed security procedures for data protection and keeping systems up to date with security patches, the reality remains that government-sponsored hackers from China, North Korea and elsewhere are relentless and are an ongoing threat. If you do get hit by a ransomware incident, feel confident that Progent's roster of professionals has extensive experience in ransomware virus blocking, removal, and file disaster recovery.


"So, to Darrin, Matt, Aaron, Claude, Jesse, Arnaud, Allen, Tony and Chris (and any others that were helping), I'm grateful for allowing me to get rested after we made it over the first week. Everyone did an incredible job, and if any of your guys is visiting the Chicago area, a great meal is on me!"

Download the Ransomware Removal Case Study Datasheet
To review or download a PDF version of this customer case study, click:
Progent's Ransomware Incident Recovery Case Study Datasheet. (PDF - 282 KB)

Contact Progent for Ransomware Recovery Services in Brooklyn
For ransomware system recovery expertise in the Brooklyn area, phone Progent at 800-462-8800 or go to Contact Progent.



An index of content::

  • At Home Workers Consulting near Brooklyn - Endpoint Management Solutions Consulting Work at Home Employees Brooklyn Consulting - Endpoint Management Systems Expertise Brooklyn
  • At Home Workforce Consulting near Brooklyn - Call Desk Augmentation Guidance Brooklyn NY Brooklyn Urgent Brooklyn Offsite Workforce Help Desk Augmentation Guidance
  • Award Winning Microsoft Help Desk Computer Consultant Cisco Help Desk IT Services

  • Server Installation Cisco Remote Access
    Cisco Certified CCIE Specialists

    Progent's Cisco certified network infrastructure experts have extensive background helping ISPs to design, implement, administer, tune, and troubleshoot fault-tolerant, scalable network environments appropriate for shared public networks.

  • BlackBerry Professional Software Consultants Brooklyn Small Business IT Consulting Firms BlackBerry Enterprise Server Brooklyn

  • Consultancy Microsoft Teams topology
    Microsoft Teams and Cisco UC Engineer

    Progent can assist you to design a migration to Microsoft Teams from Skype for Business or Lync Server and configure, manage, and debug a cloud-based or hybrid implementation of Microsoft Teams. Progent can assist you to connect Teams with Office and Microsoft 365 apps, Exchange, SharePoint Online, and your phone infrastructure.

  • Brooklyn Avaddon Ransomware Cleanup Brooklyn
  • Brooklyn Avaddon Ransomware Mitigation Top Ranked Brooklyn Avaddon Crypto-Ransomware Recovery Brooklyn
  • Brooklyn Brooklyn Remote Workforce Solutions Consulting and Support Services Brooklyn Brooklyn Remote Workforce Connectivity Expertise
  • Brooklyn Conti Crypto-Ransomware Settlement Negotiation Guidance Brooklyn New York Brooklyn New York 24/7 Brooklyn Ryuk Crypto-Ransomware Negotiation Guidance
  • Brooklyn Crypto-Ransomware System-Restore Brooklyn New York, America Brooklyn Hermes Crypto-Ransomware Remediation Brooklyn, NY
  • Brooklyn IT Staffing Support Brooklyn New York Award Winning Brooklyn Short Term IT Staffing Support Brooklyn New York
  • Brooklyn NY Redhat Linux, Sun Solaris, UNIX IT Consultant Debian Linux, Sun Solaris, UNIX Computer Consultant Brooklyn
  • Brooklyn New York 24 Hour Dynamics GP VAR - Brooklyn - Recovery Consulting Dynamics GP Reseller near Brooklyn - Upgrades Consultants Brooklyn
  • Brooklyn New York Remote Workers Guidance near me in Brooklyn - Backup Technology Consulting and Support Services Brooklyn Work from Home Employees Consulting and Support Services nearby Brooklyn - Backup/Recovery Systems Expertise
  • Brooklyn Offsite Workforce Network Security Solutions Assistance Brooklyn Telecommuters Assistance - Brooklyn - Cybersecurity Solutions Consulting Experts Brooklyn, New York
  • Brooklyn Phobos Ransomware Recovery Brooklyn NY, America Brooklyn Ryuk Ransomware Cleanup Consultants Brooklyn NY
  • Brooklyn Ransomware Netwalker Preparedness Testing Brooklyn Brooklyn New York Brooklyn Crypto-Ransomware Conti protection and ransomware recovery
  • Brooklyn Remote Workforce Setup Consultants Brooklyn NY Brooklyn At Home Workforce Setup Consulting Experts Brooklyn

  • Top Quality Exchange 2003 Information Technology Consulting
    Microsoft Exchange Upgrade Support Outsourcing

    Progent's Microsoft Premier engineers offer expert support for corporate-wide deployments of Microsoft Exchange Server. Progent's experts can help you plan multi-location Exchange Server 2007 rollouts or upgrades and can provide onsite technicians to help enterprises with installations of Microsoft Exchange in the or any region served by Progent's engineers.

  • Brooklyn Ryuk Crypto-Ransomware Incident Reporting Brooklyn Ryuk Crypto-Ransomware Incident Reporting Brooklyn, NY
  • Brooklyn, New York City Designers New York, New York Small Business Network Consulting Group
  • Consulting BlackBerry BES Server Express BlackBerry BES Server Express Consultant Services
  • Consulting Expertise for Brooklyn IT Service Firms Brooklyn Brooklyn Specialists for Network Support Companies Brooklyn NY

  • Training InDesign
    Macintosh Applications Training

    Progent's Apple Mac experts can promote the creative aspect of Mac environments by providing consulting services and education in graphics, sound, and motion video. Progent's consultants can provide help in a variety of Apple Mac programs including Photoshop, Illustrator, Adobe InDesign, QuarkXPress, Apple Logic, MOTU Digital Performer, Digidesign Pro Tools, Final Cut Pro, Apple Motion, and After Effects. Progent can also help you with special projects such as capturing or digitizing audio or video or configuring an audio/video production facility.

  • Egregor Ransomware Hot Line Dharma Ransomware Hot Line Brooklyn New York
  • Emergency Brooklyn Crypto-Ransomware Recovery Help Brooklyn Brooklyn Ransomware Repair Experts Brooklyn, U.S.A.
  • Exchange 2003 Server IT Outsourcing Companies Brooklyn Exchange 2019 Solutions Provider Brooklyn NY, America

  • Small Business Integration Services
    Small Office Network Companies

    For over two decades, Progent's consultants have provided budget-friendly IT design, integration, debugging, cybersecurity, and development for networks of all sizes.

  • Microsoft MCTS Engineer Contractor Jobs New South Wales Microsoft Engineer Subcontractor Jobs New South Wales
  • Microsoft SQL Server 2017 Network Design Brooklyn NY SQL Server 2014 Server Support Brooklyn

  • DotNET Software Outsourced Programming
    Top Rated Outsourced Programming .NET Application

    Progent's application experts have worked for 20 years with .NET technologies and the Visual Studio development environment and are able to create or enhance .NET apps rapidly and at low cost.

  • Top Brooklyn Netwalker Ransomware Rollback Brooklyn NY, United States
  • Microsoft SharePoint 2013 Technical Consultant Brooklyn Microsoft SharePoint 2010 Consultants Brooklyn, US
  • New York, NY Server Integrators Brooklyn Business Computer Server Companies
  • Offsite Workforce Brooklyn Consultants - Collaboration Solutions Consulting Brooklyn Telecommuters Consulting Services nearby Brooklyn - Collaboration Solutions Assistance

  • Remote Workers Cloud Integration Computer Engineer
    Work at Home Cloud Integration Support Services

    Progent can help small and medium-size businesses to provision their offsite workforce with transparent integration with cloud applications and services.

  • Recovery Services Cisco Brooklyn New York Brooklyn, New York Immediate Cisco Technical Support Organization
  • Remote Workforce Consulting Services in Brooklyn - Video Conferencing Systems Expertise Telecommuters Brooklyn Consultants - Video Conferencing Solutions Consultants Brooklyn

  • Cisco Virtual Private Network Technology Consulting
    Cisco Virtual Private Network On-site Support

    Cisco's security and offsite connectivity technology for small to medium sized companies offer a complete array of easy-to-administer protection hardware and software to help protect your entire information system. Cisco's Virtual Private Network line includes routers and switches, firewalls, and VPN solutions. Progent's professional staff of consultants includes field-proven specialists with Cisco Certified Internetwork Expert and Cisco Certified Network Professional certifications who can assist your organization to evaluate Cisco VPN, Cisco RADIUS Security, and additional Cisco protection technologies that fit most closely with your corporate goals.

  • Security Security Organizations Brooklyn, NY Security Consulting Services Brooklyn, New York
  • Software Development Companies Java Design
  • Sun Solaris Support and Integration 24-Hour Solaris Services
  • Telecommuters Consulting Experts in Brooklyn - IP Voice Systems Expertise Brooklyn NY Brooklyn, New York Brooklyn Work at Home Employees VoIP Solutions Consulting
  • Windows Server 2012 R2 Contractor Brooklyn NY, United States Microsoft Windows Server 2016 System Consultant Brooklyn, America
  • Work from Home Employees Brooklyn Assistance - Cloud Solutions Consulting Experts Brooklyn Work at Home Employees Consulting Services in Brooklyn - Cloud Integration Technology Consulting and Support Services

  • © 2002-2025 Progent Corporation. All rights reserved.