- Help Center
- Add-ons
- Ransomware
-
Turbo backup vs Legacy backup
-
Get started with Turbo backup
-
Manage Legacy backup
-
Google Workspace
-
Google Classroom
-
Microsoft 365
-
Slack
-
QuickBooks Online
-
Xero
-
HubSpot
-
Salesforce
-
Box
-
Sky - AI Copilot
-
Add-ons
-
Partner Portal
-
Subscription and payments
-
Manage admin roles
-
Manage account
-
K-12 Security & Compliance
-
Google Drive Encryption
-
Shopify
What is the Advanced Ransomware Recovery feature?
Typically, when ransomware affects a cloud storage, it encrypts all the files and deletes the safe version of the file.
We scan your backups to detect files that have been potentially encrypted by ransomware (referred to as "encrypted" in the rest of the article) and provide options to recover from the attack unharmed.
We flag all encrypted files, which you can view in the "Ransomware" section in the dashboard of the application.
Actions available for identified encrypted files:
- Transfer ownership: Transfer ownership of the files to an admin for further review.
- Restore ownership: Restore ownership to the original owner if ownership was previously transferred.
- Restore from safe snapshot: Restore the safe version of the files identified by SysCloud's algorithm or recover files that may have been removed by ransomware or the user.
- Mark as true positive: Identify all ransomware violations associated with the selected items as confirmed threats.
- Delete: Delete the affected files from the SysCloud Archives or directly from the cloud environment.
- Dismiss: If you determine that the detected files do not pose a threat, dismiss the alert.