I too am a victim of the .NamPoHuy. I have a WD My Cloud NAS device and it was his on Sunday evening (BST) over the course of about 6 hours. I will monitor this topic with great interest, and am happy to provide any information or files or anything else that may be useful to anybody working on this. Unfortunately I am not hugely IT literate, but am able to follow the conversation so far. The NAS is now offline and I've pulled off all unaffected files onto another HDD. I've also made a copy of all the infected files onto another HDD.