Hi, In case of a ransomware attack (which I hope will never happen), what is the best way to determine what is the last good backup on disk that I have and that is suitable for restore (not encrypted by hackers or contaminated by malware)? Do I need to do a restore in an isolated environment and then run antivirus until I have found the last “good one” ? Or is there a better way? I have heard that malware can already be on servers weeks before the actual attack or whatever. Thanks
Solved
Scan for malware before / after restore (?)
Best answer by DMCVault
The unusual file activity dashboard provides insights into anomalous data changes, then allows you to recover pre-anomalous data automatically. This is available in 1123 and above. We have big plans to expand on this even further with more workloads, deeper threat analysis capabilities and other monitoring insights.
We do see a common thread with our customers wherein after ransomware containment they would recover to an isolated environment to scan and validate before moving into production. This is why we are putting focus on data change insights that help drive more efficient recovery scenarios.
Reply
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.