One of the most pernicious malware threats is the cryptolocker type of ransomware. Organizations infected with this malware suddenly find their critical files encrypted. Rather than give in to demands for payment in exchange for decrypting the files, they may try to restore the files from backups taken prior to encryption. This will result in a loss of any changes since the last backup and possibly lead to delays as the backups are restored
Fortunately, the file server was a VM residing on a SimpliVity OmniCube system. As a critical system, the VM has a SimpliVity backup policy to take full backups every hour. Since it was easy to pinpoint the time of the encryption, it was also easy to identify a backup that was not encrypted. It took only a few minutes to disconnect the partially encrypted VM from the network and then restore a copy of the VM from a SimpliVity backup taken prior to infection. The VM was restored in a few seconds, ready to be powered on. The service was operational within minutes.
LEARN MORE