Putting an end to Retadup: A malicious worm that infected hundreds of thousands
decoded.avast.io
decoded.avast.io
Anyone a little surprised by how small the profits are?
With control over 850,000 infected machines with an average of 2.94 cores each, I expected him to do something that will make him much more than a regular software engineering day job.
For the computers running on renewable power (Costa Rica, maybe?), it would truly be benign and not just stealthy. Long live green PoW!
absolutely barbaric
That's surprising. Would full disk encryption even help to counter this ?
Bare metal would have been a bit harder, but still possible by probing the memory bus.
One could counter this by storing the disk encryption key in a hardware enclave (e.g., SGX).
An Linux OS with full disk encryption can easily be copied while running as root with a simple rsync. Same with Windows.
Saved you a click