This discussion has been locked. The information referenced herein may be inaccurate due to age, software updates, or external references.
You can no longer post new replies to this discussion. If you have a similar question you can start a new discussion in this forum.

Making LEM Alert/Fight Cryptolockers

Hello everyone,

Looking through LEM, it seems that it should have the ability to fight cryptolockers by kicking the machine off the network/domain.
Does anyone currently have rules setup to handle that? If so, can you please share your insight?
I feel like I could muddle my way through it but I would prefer some assistance on the matter.