Skip to main content

Understanding Ransomware Part 2: How To Prevent Ransomware Attacks


Now that you read Part 1, you understand what Ransomware is and why it has become the single most costly problem in the world of IT security and business data protection, let’s take a look at several simple, easy-to- deploy solutions that can prevent an unwanted and costly ransomware intrusion in your business. 

Restrict User Administrative Access 

This is a very simple step to take. Users should have their administrative access restricted – ideally removing the ability to install new programs without the IT team’s supervision. This will help your business avoid the most common cause of infection: users downloading infected attachments from emails. 

Granted, this will not be popular with your users. If your users already have administrative rights to their workstations then you will have to drag them along kicking and screaming. That said, a past report confirms what many security professionals have long presumed: Removing administrator rights from everyday user accounts (especially Windows) slows down or stops almost all critical malware infections. The report determined that removing admin rights would mitigate 96 percent of critical vulnerabilities affecting Windows operating systems, 91 percent of critical vulnerabilities affecting Microsoft Office and 100 percent of vulnerabilities in Internet Explorer. 

Use Electronic Vaulting Solutions Like DataForce 

When an infection occurs, it’s often impossible to decrypt the files that are infected - but that doesn’t mean you’re completely out of options. Electronic vaulting is the process of electronically transporting data offsite to a secure location, usually in the cloud. These services provide users with a system for the backup, storage, and recovery of computer files. Sending backups off-site ensures systems and servers can be reloaded with the latest data in the event of a disaster, accidental error, or system crash. Electronic vaulting also allows you to set customized backups and restore points - this is like time travel for your business allowing you to turn back the clock and recover lost files. 

Electronic vaulting is beneficial for large organizations as part of their disaster recovery plan and it’s a great first step for small-office users. When Ransomware or a disaster strikes, and your backup data stored on external drives or USB drives is compromised along with the originals, you'll wish you'd implemented a remote electronic vaulting plan. 

The great news for businesses of all sizes is that electronic vaulting has become far more affordable. This is by far the strongest way to protect your business and it’s worth exploring. 

Show Hidden File Extensions On User Computers 

Most malware uses a hidden “.exe” extension tacked onto the end of a PDF or .docx document. If you enable the user to see the full file extension, it can be easier to spot suspicious files and eliminate them in the first place. By showing hidden file extensions on user computers, you can prevent users from being misled into downloading and running these programs. 

Filter Out .EXE Extensions 

In Emails No email with a .exe extension is a legitimate, important email. If your gateway mail scanner has the ability to filter files by extension, you may wish to deny mails sent with “.EXE” files, or to deny mails sent with files that have two file extensions, the last one being executable (“*.EXE” files). An .exe on an email is almost always a virus, so your IT team should work to filter out these extensions on all company email systems. 

Patch Your Software And Operating Systems Regularly 

A software vulnerability is usually a security hole or weakness found in an operating system or software program. Security vulnerabilities caused by outdated software and operating systems can allow rapid spread of ransomware viruses. You should take every precaution you can to prevent this by keeping your corporate software and operating systems patched and up-to- date. So even though software updates sometimes seem like a hassle, think of it as a preventative measure for your Internet safety. 

Run Comprehensive Antivirus & Malware Solutions On All Systems 

Antivirus and anti-malware solutions are helpful for identifying and destroying specific viruses. A leading anti-virus company was quoted as saying, “a good antivirus product has tools that will help you to schedule a time for a regular virus scan to take place automatically. It will monitor your system and check for viruses introduced by email attachments or through your browser actions, like when you click on links for downloading. It will create log reports that will give you information about what it has found, and if possible, it will attempt to repair any damage that the virus has done.” Ensure that you have a best in class Antivirus and Malware solution on your systems. 

Disable RDP To Reduce Infection Risks 

RDP, or “Remote Desktop Protocol” is a method by which ransomware can spread across multiple machines. RDP allows an infected computer with sophisticated ransomware to open up a connection to another target computer – or even a piece of IT infrastructure – and deploy the same infected files to that computer, locking it up and potentially spreading the virus further. This exploit requires the username/password credentials in the environment to be weak enough to compromise, but attackers are getting more and more sophisticated. End-users generally have no need for RDP, so it should be disabled on all of their computers to reduce infection risk. 

Avoidance Is The Best Protection & Don’t Negotiate If Infected 

As we mentioned in Part 1 of our post, if you are infected, don’t negotiate with your attacker. This just encourages the development and spread of these viruses – and paying a hacker doesn’t guarantee that your files will be decrypted. 

Instead, focus on implementing the simple, easy-to- deploy solutions mentioned above that can prevent an unwanted and costly ransomware intrusion in your business.

For over 15 years, the team at Circadian Force has served small to enterprise level businesses as well as IT Professionals in the areas of disaster recovery, cloud backups, and electronic vaulting. To learn more about their organization, head to www.circadianforce.com.





I hope you enjoyed this article about understanding the effects of ransomware on your small business.

Interested in more articles about data security & virus protection?

Read My Posts:

- Tips To Shield Your Company From Digital Thieves

- 5 Reasons Why All Companies Need Strong IT Departments

Edited & Published by Mike Schiemer
Owner of Bootstrap Business
Money - Marketing - Motivation
Digital Marketing | SEO | Social Media
Mike Schiemer Builds Better Business

Share This On Social Media:

Popular posts from this blog

Bootstrap Business Blog Blitz: Quick Questions - Volume 2

For the last decade I've been asked daily about social media marketing, digital media, entrepreneurship, search engine optimization , retail sales, social selling, and many other topics through various outlets. These business questions come through my website, social media platforms, forums like Medium / Quora / Reddit / Google / Inbound.org, and other outlets. When I have a lot of information to share on a particular subject I'll usually write an in-depth answer in the form of an article here... but I don't always have the time. Sometimes I just give a quick answer, or whatever initially comes to mind without prepping or brainstorming.  It's actually ending up feeling a bit like  hustling entrepreneur Gary Vaynerchuk 's book #AskGaryVee (which I'm finishing now before posting a review), but I've actually been doing this for years with previous businesses. My first Bootstrap Business Blog Blitz was a big hit so I'm going to make this a mainstay on this...

6 Bad Online Marketing Habits To Quit

Good marketing is essential for making your ingenious new product or service into a full-fledged success. It’s not just about dishing out a good product, it’s also about convincing people that they need it, and that it is just what they’ve been looking for. It takes quite a bit of thought to develop a marketing strategy that is effective, yet sublime enough so that people won’t see right through it.  Marketing has been around for ages, but with the advance of the Internet it’s grown to a whole new level. Nowadays ads are everywhere, and they’re constantly being developed to be more effective. That being said, there are still a few things you can do to make sure that your marketing strategy is good enough to draw new clients in. Here are a few tips that we’re sure will come in handy when planning your next marketing campaign.  1. Not Frequently Updating Your Blog  If your last blog post is a month ago, Google isn’t going to include it in a lot of searches, because there ...

Maintain a Work-Life Balance When Starting a New Business

Achieving a work-life balance is hard enough for any person, but it’s even harder when you’re putting in long hours. A recent survey asked entrepreneurs what they would spend their time doing if they could work fewer hours, and the top three responses were: spend more time with family and friends, travel for fun, and improve their personal health. Although it may be more difficult to accomplish a work-life balance as an entrepreneur , you can successfully balance your career, family, and leisure time.  Amount of Work  The survey found that an astounding 82 percent of entrepreneurs worked more than 40 hours per week . Specifically, 33 percent worked 40-49 hours, 30 percent worked 50-59 hours, and 19 percent worked more than 60 hours. Obviously, if you’re working that many hours, you’re probably working weekends.  The study found that an astonishing 97 percent of small business owners worked weekends, with 40 percent saying they “always” or “often” work weekends. Additiona...