What do I do if the Deploy Agent is installed on my machine without my consent?

This document provides guidance for individuals who have been victims of a phishing attack that makes use of any Faronics product. 

Faronics designs and markets a number of tools that are used for remote systems management. These tools provide administrators with powerful tools that allow for any number of actions to be taken on machines with our software installed. Recently we have been made aware of instances where people with apparently malicious intent are making use of our products as part of phishing attacks. 

The use of our products in this manner is not an acceptable use of our tools and we are taking measures to terminate any accounts found to be using our software in this manner. 

Our recommendation for individuals who have been impacted is below;

  1. Systems that are impacted  should be taken offline immediately
  2. As we would like to identify any account involved with this issue we would request that people who have been impacted contact the Faronics Support team via email to support@faronics.com, or by calling 1-800-943-6422. The team will then attempt to collect some diagnostic data from the client device to identify the account(s) involved in the specific attack. 
  3. Faronics Support can provide assistance in removing our agents from the devices impacted, however, information from our investigation shows that these persons are using our products to install other remote administration tools that we are unable to track the activity of. Since we cannot determine what changes have been made by other tools that may have been installed our recommendation is for any device that has been impacted by this issue to have it's data backed up, the drive formatted, and the operating system reloaded.