steve I told peopel I work with let nuke it, then add better security via GPO and viper enterprise perium with firewall and webfliter. and maybe sandbox i.e. for paragon, and no admin rights.
wha tyou think On Thu, Apr 15, 2010 at 8:33 PM, Steven M. Caesare <[email protected]>wrote: > +1 > > Nuke it from orbit... it's the only way to be sure. > > -sc > > -----Original Message----- > From: Ben Scott [mailto:[email protected]] > Sent: Thursday, April 15, 2010 5:47 PM > To: NT System Admin Issues > Subject: Re: how to clean (malware) from a rooted terminal server? > > On Thu, Apr 15, 2010 at 5:39 PM, justino garcia > <[email protected]> wrote: > > how to clean a rooted terminal server? > > Boot from trusted media, copy off anything you want to save. Then > erase all hard disks, and reinstall the operating system and all > software from scratch. > > Once an attacker has gained system privilege on your computer, it's > not your computer anymore. > > -- Ben > > ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ ~ > <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/> ~ > > ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ > ~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/> ~ > > -- Justin IT-TECH ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ ~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/> ~
