Ransomware: What to Do and what not to do

Ransomware: What to Do and what not to do

What can you do to better protect your data from opportunistic cybercriminals? Here are some simple tips on keeping ransomware at bay.

Ransomware has become more prevalent in recent years with unsuspecting consumers suddenly finding themselves unable to access their personal files. In 2018, a staggering 545 231 ransomware infections were reported worldwide to cybersecurity company Symantec. And while individuals are under fire, businesses have become the preferred target of cybercriminals with 444 259 reported cases in 2018 – an increase of 12% from the previous year. In fact, businesses make up over 80% of all ransomware infections year-on-year.

However, experts have also seen a worrying new trend – mobile devices are becoming another popular target with a 33% increase in reported mobile ransomware cases in 2018.


Ransom-what?


The idea behind ransomware is simple: encrypt a person or business’ files and data, then force them to pay a ransom (usually in the form of cryptocurrency) to regain access to the data. Ransomware usually makes its way onto your system through an infected file, but in some cases it can also come from a bad link. It’s estimated that 1 in every 131 emails sent in South Africa contain an infected attachment. On mobile devices, ransomware can be hidden in questionable apps and hidden ads within games and apps.


So, what can you do to better protect your data from opportunistic cybercriminals? Here are some simple tips on keeping ransomware at bay.


Play it Safe


  • Click carefully. Don’t just click on any links as they could be malicious. Always try to verify that a link sent to you is safe and, if you have any doubts, don’t click on it and contact the person who sent it to verify.
  • Don’t open untrusted email attachments. In the majority of ransomware cases, the infection stems from an email attachment in the form of a supposed invoice or bill. If you don’t expect any invoices, don’t open the attachment. If you’re unsure, it’s important to contact the sender first to verify the attachment is safe.
  • Only download from trusted sites. When downloading software or apps, ensure you do so through the official website. For apps, ensure you make use of the Google Play Store (for Android phones) or the App Store (Apple devices) and check that the app has been verified by the app store (usually indicated directly below the name of the app).
  • Share your personal data carefully. In some instances, cybercriminals make use of phishing scams to lure users into downloading an infected attachment or clicking on a malicious link. If you receive a call, SMS or email requesting personal information, ensure it’s from a trusted source.
  • Never use unfamiliar USBs and hard drives. While not as common, ransomware can also be stored on a USB or external hard drive. If you don’t know where the storage device has been, don’t plug it in. Only make use of trusted devices.
  • Keep your software and antivirus updated. It’s the first line of defence when dealing with any malware. Software and anti-virus developers are constantly adding new malware definitions and names to their libraries to ensure you’re protected against the latest infections. However, if you don’t update the software on your side regularly, your system will be left vulnerable.
  • Backup your data regularly. Ransomware can strike at any time, making it crucial to save your files and data somewhere safe. This can be in the form of a physical external hard drive or on a cloud-based online service. Do this regularly to ensure you lose little to no data should ransomware get a hold of your system. Need a effective and complete back solution.. speak to us!
  • Educate family, friends and colleagues on best practices. Speak to those around you and make them more aware of the above steps. If you notice a person is doing something that’s potentially risky, make them aware of this and tell them how they can improve their cybersecurity.

I’m infected! Now what?


  • Disconnect your computer immediately. Ransomware spreads quickly, so it’s vital that you disconnect your computer or mobile device the moment you notice something odd. Switch off Wi-Fi and unplug the internet cable to prevent other systems on the network getting infected.
  • Never pay the ransom. Paying does not guarantee your data will be decrypted and it only encourages these criminals to continue targeting unassuming individuals and businesses.
  • Run a virus scan. Your anti-virus will pick up on any malware on your system and quarantine it, ensuring it can’t cause further damage. Note that, in some cases, your antivirus will not be able to find the malware. This does not mean your system is not infected, the infection is just well-hidden.
  • Decrypt the data. Cybersecurity experts at Kaspersky have created a free decryptor to assist users in regaining access to their files. However, you won’t always be able to recover all data, making regular backups crucial.
  • Start fresh. It’s always better to completely wipe your system and reinstall everything before recovering your data from an earlier backup. This ensures your system is completely clean and safe. If you’re not sure how to reinstall everything, it’s best to speak to an expert.
  • Recover from back-ups. If you’re unable to decrypt the data, you can simply retrieve the data from your backup hard drive or cloud service. It’s important to ensure the ransomware has been completely removed from your system before initiating the data recovery.


This article sourced from Symantec Internet Security Threat Report 2019 | Kaspersky

If you are concerned with ransomware then contact us.. With Boss Hosting you are SAFE.. not from clicking on that dodgy link.. or using that sketchy USB.. but your data will be BACKED UP, SAFE and SECURE.. with you up and running in no time.


Darren Coetzee - Boss Global Technology Solutions