Jump to content
  • Announcements

    • Rodion Nagornov

      Долгое сохранение сообщений || Delays while posting (click here to read the full text RU/EN)   09/20/2017

      Due to some technical reasons visual delays are possible while message sending. Actually your message is published immediately - just interface works long. In such case, please, do not re-send your message immediately! Press F5 to reload the page and check if your message/topic is published. || По техническим причинам возможно визуально долгое отправление сообщений на форуме. Фактически ваше сообщение публикуется мгновенно - долго отрабатывает графика. В случае подобной ситуации, пожалуйста, сначала обновите страницу (F5) и проверьте, появилось ли ваше сообщение. Не пытайтесь сразу отправить его заново.

Sergey Korzukhin

KL Russia
  • Content count

  • Joined

  • Last visited


About Sergey Korzukhin

  • Rank
    Test Engineering Team Lead

Contact Methods

  • E-mail

Recent Profile Visitors

1,720 profile views
  1. Вижу, что у вас не последняя версия KART. Попробуйте обновить до версии 2. Потребуется переустановка, брать отсюда: https://go.kaspersky.com/Anti-ransomware-tool.html Для скачивания нужно заполнить форму.
  2. Error al instalar en server 2008

    Do you have any other AV solution installed on your server?
  3. Hello, do you have any other AV solution installed on your server?
  4. Kaspesky for business

    I guess you can ask sales managers about this. Here is technical forum, this part is dedicated to https://go.kaspersky.com/Anti-ransomware-tool.html
  5. Cant install anti ransomware

    Hello, KART's functionality is fully included both in KIS 2018 and Kaspersky Security Cloud.
  6. Hello, previous attempts didn't helped to locate the root cause of the bug. Please enable traces in KART's settings, restart, reproduce the problem and send us: 1) files from "C:\Users\All Users\Kaspersky Lab\AntiRansom\logs\" (PM, or attach files here, or use any public source), 2) files from "C:\Users\All Users\Kaspersky Lab\AntiRansom\protected\data" foler. 3) GSI report Hope this will help to locate the error. Thank you!
  7. .arena ransomware

    Once your server was infected with arena ransomware it is impossible to recover data as soon as arena uses strong encryption. Please change your passwords and disable RDP if it was enabled to prevent future infection/
  8. Hello, You can try existing dharma decryptor, http://media.kaspersky.com/utilities/VirusUtilities/EN/RakhniDecryptor.zip May be it will help. But I doubt it can recover files encrypted by arena ransomware.
  9. .arena ransomware

    Hello Nishant, 1. Which Kaspersky product did you have installed on your PCs, (and on what OS, I guess win 7 smth)? 2. Do you have any remote admnistration tool such as TeamViewer, RAdmin, etc or Remote Desktop connection enabled on infected PCs?
  10. .arena Ramsomware

    Have to agree with richbuff. BTW, guys who asking about solution, how about to provide info I requested? The way of infection/attack looking is questionable now.
  11. .arena Ramsomware

    Please check this out: https://sensorstechforum.com/arena-files-virus-dharma-ransomware-remove-restore/ May be it will be helpful.
  12. .arena Ramsomware

    Please see PM.
  13. .arena Ramsomware

    Thank you! I'm not form Kaspersky Support team and work in tetslab and responsible for KART product's lifecycle after release. Could you please also PM me here with the same message? Kaspersky Anti-Ransomware Tool provides real-time protection against ransomware, and cannot restore your data unless tool was working at the moment of infection. This is not a decryption tool (plase see pinned posts in KART's part of the forum). If files are already encrypted by Arena or Aleta, and no security solution was installed/working at the moment of encryption, for now it is inmpossible to restore files as soon there is no decryption tool for this ransomware at the moment. The info I asked actually necessary to understand why that happend to your PCs/servers. I would be gald to help, but there is a number of situations with ransomware when nobody can help. Now I can't determine if this one of such situation or no.
  14. Questions about Kaspersky Security for Windows Servers should be addressed to https://forum.kaspersky.com/index.php?/forum/5-protection-for-business.This part of forum is about Kaspersky Anti-Ransomware Tool for Business. But nevertheless, could you please show us the reports (full) from attcked PC(s)?
  15. .arena Ramsomware

    Of course, our anti-malware research unit is constantly working on decryptor tools. But it is not always possible to decrypt encrypted data if you are already a victim of ransomware attack, and moreover I have no information about any terms. I can advise you to write to support@kaspersky.com and to periodically check https://www.nomoreransom.org and https://noransom.kaspersky.com. But as I mentioned, in number of cases decryption is hardly possible. What about questions I asked? If you are a victim of the atack, could you please also send the export of product's reports from infected PCs? P.S. Just a reminder, this is part of Kaspersky Anti-Ransomware tool's forum, NOT KES's forum. If you have questions related to Kaspersky Endpoint Security / Kaspersky Security Center, please ask at https://forum.kaspersky.com/index.php?/forum/5-protection-for-business/