Subj : Ubuntu, Crypto Malware
To   : MRO
From : Arelor
Date : Tue Nov 15 2022 05:33 pm

 Re: Ubuntu, Crypto Malware
 By: MRO to Android8675 on Tue Nov 15 2022 04:33 pm

> if you have it backed up, and your backups are clean, just 'nuke it from orbit'.
>
> why do you want to waste time going on a search for it?
> if your files are encrypted you aren't getting them back and you might lose
> more anyways.
>

I think he is talking about cryptomining malware rather than a ransomware piece.

I'd personally just restore from the lattest known clean backup if any, and do what
somebody else has recommended: apply security updates and try to ensure they don't
break in the same way again.

Using Unix utilities from within a compromised system is not a great idea. Rootkits
may make evil software undetectable. If you ust scan an infected system, it is usually
better to just image it and scan the image from a known good system instead.

--
gopher://gopher.richardfalken.com/1/richardfalken

---
� Synchronet � Palantir BBS * palantirbbs.ddns.net * Pensacola, FL