Link to home
Start Free TrialLog in
Avatar of danbrown_
danbrown_Flag for United States of America

asked on

Techniques to protect against Cryptoware

Hello Experts - I've been following the rise of crypto viruses for a while now, it seems like lately they are everywhere.  Even worse, some companies are paying these guys which is only going to bring more.  I was hoping to get some advice on how to configure the tools I have available to best prevent these things from encrypting my files.  I'm using a Barracuda spam firewall, Websense Web Filter, Trend Micro antivirus, and a Fortinet 90D firewall.  I'm running a Windows domain and use group policy though I haven't configured anything specific to deal with this.  Right now I'm working on getting all the software and firmware on the latest versions and once that is done I'd like to see what else I can do prevent an infection.  Any advice would be very much appreciated!
ASKER CERTIFIED SOLUTION
Avatar of Chris H
Chris H
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of danbrown_

ASKER

Thanks guys, these are excellent suggestions.  We have done our best to educate everyone but as you all know that works for some people and not others.  In addition, some of these things are delivered via drive by web ads and so on, that could get almost anyone.  I'll work through all of the suggestions above, thanks again!
Avatar of btan
btan

Yap endpoint safeguard is necessary but not silverbullet eventually. There is even phishme and knowbe4 that run anti phishing campaign test and has plufin to ease user reporting or alert..just for info..
Also watch https://blog.malwarebytes.org/news/2016/01/introducing-the-malwarebytes-anti-ransomware-beta/ it promises to be able to immunize even against future versions without using application whitelisting techniques.