Jump to content

Win32/Filecoder.Trigona disable Endpoint/AV on Servers and make server attack.


Go to solution Solved by Marcos,

Recommended Posts

My server has been attacked by  Win32/Filecoder.Trigona. Before attack about 5 mins. Endpoint alert disabled. How virus can disable my AV?

Link to comment
Share on other sites

  • Administrators
  • Solution

As long as a machine is managed by ESET PROTECT Cloud, administrators are presented with a wizard enabling them to set up password protection easily:

image.png

Link to comment
Share on other sites

Thank you @Marcos. My server is shut down and isolated from my environment. I'm trying to turn it on but cannot run Eset Collect. 

 

I'm also enabling set up password protection.

 

Link to comment
Share on other sites

  • Administrators
59 minutes ago, denpin said:

So, @MarcosHow about Rootkit scanner by Eset? Which is tool can do that? 

ESET can detect active rootkits. You can also use Gmer to find suspicious processes that attempt to hide in the systems but it detects also legit applications just based on the behavior so you should interpret the results with a grain of salt.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...