Re: Ubuntu, Crypto Malware
By: MRO to Android8675 on Tue Nov 15 2022 04:33 pm
> if you have it backed up, and your backups are clean, just 'nuke it from orbi
t'.
>
> why do you want to waste time going on a search for it?
> if your files are encrypted you aren't getting them back and you might lose
> more anyways.
>
I think he is talking about cryptomining malware rather than a ransomware piece.
I'd personally just restore from the lattest known clean backup if any, and do w
hat
somebody else has recommended: apply security updates and try to ensure they don
't
break in the same way again.
Using Unix utilities from within a compromised system is not a great idea. Rootk
its
may make evil software undetectable. If you ust scan an infected system, it is u
sually
better to just image it and scan the image from a known good system instead.
--
gopher://gopher.richardfalken.com/1/richardfalken
---
■ Synchronet ■ Palantir BBS * palantirbbs.ddns.net * Pensacola, FL
|