NC District Hit with Malware Costing $314,000 for Cleanup

A North Carolina school district was hit with the Emotet virus, crippling its network infrastructure. Last week, Rockingham County School District Superintendent Rodney Shotwell held a press conference, in which he described how the district fell victim to a computer malware attack through users clicking on infected EXE files in their e-mail, under the subject heading, "Incorrect invoice." Clean-up is expected to cost $314,000.

Emotet, according to security firm Sophos, is an advanced network worm that drops "malicious payloads onto target computers." It's designed to steal a user's online banking details, and stopping it requires "every machine on the infected network to be protected with anti-virus."

The first clue that something was wrong at Rockingham came when Google disabled certain e-mail accounts because they were producing spam e-mails. That was followed by reports from users who couldn't connect to the internet through their web browsers. Malware mitigation and clean-up began at that time.

During the press conference, Shotwell explained that even after all of the infected computers at the district were cleaned and re-imaged, they became re-infected. At that point the district IT team called in the cavalry, including the U.S. Federal Bureau of Investigation, as well as local IT experts.

Rockingham also began working with ProLogic ITS for virus mitigation services for about a dozen servers and 3,000 client machines. While the $314,000 contract with the IT consultancy will bring in 10 engineers for a total of about 1,200 on-site hours, according to reporting by Rockingham Now, it will also pay for ongoing virus mitigation services for the next year.

"It's like a disease," said Shotwell. "We're trying to quarantine it. Right now, there's not a software out there for this malware that will enable you to clean the device and ensure that it won't come back." Even though the school system has used antivirus software for a "very long time" and updated its systems, the malware is designed to find those computers that haven't been updated and exploit them.

On the positive side, Shotwell added, the antivirus capabilities did "chew up the ransomware where it did not activate." As a result, "our data was never compromised because of ransomware. Our data was protected and saved."

About the Author

Dian Schaffhauser is a former senior contributing editor for 1105 Media's education publications THE Journal, Campus Technology and Spaces4Learning.

Featured

  • digital illustration of Estonia with glowing neural network-like connections spreading across the map

    Estonia to Roll Out ChatGPT Edu for all Secondary Schools

    In a nationwide artificial intelligence program dubbed "AI Leap 2025," the country of Estonia plans to provide free access to leading AI applications for all secondary school students and teachers. The initiative will launch with a rollout of ChatGPT Edu to 20,000 high school students in grades 10-11 and their 3,000 teachers, beginning Sept. 1.

  • A child surrounded by glowing, fluid virtual patterns and holographic shapes, illuminated in a dark gradient environment of blue, purple, and pink.

    ClassVR Gets Expanded VR/AR Content Library

    Avantis Education has announced a new content library for its ClassVR virtual and augmented reality platform. Dubbed Eduverse+, the library features four content suites — EduverseAI, WildWorld, STEAM3D, and CareerHub — that can be tailored to suit a variety of educational levels.

  • elementary school teacher with students

    Traditional Procurement Processes Stand in the Way of Progress

    K–12 schools and districts can streamline procurement and gain agility without having the rewrite purchasing requirements.

  • school building split in half, with one side collapsing into a dark hole

    Office of Educational Technology, National Center for Education Statistics Fall Victim to ED Cuts

    The U.S. Department of Education has announced cuts of nearly half of its staff, numbering more than 1,300 workers, according to AP reporting. While official details on the cuts are not available, early commentary on LinkedIn has revealed drastic cuts in the areas of educational technology and data.