Jump to content

v4u6h4n

Members
  • Posts

    5
  • Joined

  • Last visited

Posts posted by v4u6h4n

  1. Hey there, I would like to scan a USB stick and then a USB HDD which I am very confident both contain some form of malware. I would like some advice on the recommended steps to disinfect both these devices without risking infecting my machine. After consulting the documentation my current plan is:

    1. Create a custom RDS task, with a custom config file.
    2. Add the following to the config file:
      1. "BlockDuringScan" : "Yes",
      2. "ScanRemovableDrives" : "DetailedScan"
    3. Start the task.
    4. Insert the USB storage device.
    5. Only access the files on the USB storage device after checking that the task has completed.
    6. Repeat.

    Is this sufficent, or do I need to use other kesl features to further lock down the device when it is inserted? I did notice in the documentation on the BlockDuringScan setting that "while scanning boot sectors, files are not blocked". I am not familiar with the capabilities of modern malware; if I do not open the USB storage until after the scan has completed, does this pose no threat to my machines security?

    Also, love kesl so far, so good to see a great commercial program that supports linux :-)

  2. Hey there, I just installed on Kaspersky Endpoint Security for Linux v11.4.0-1096 with the GIU for amd64 Debian. Installation and initial setup via CLI was successful, I chose the trial license, and then opened the GUI interface. The Settings and Storage buttons are grayed out in the GUI interface, and I noticed there is a (full system?) scan underway in the statistics section after selecting the Reports button. Are the buttons grayed out because a scan is currently underway?

    Screenshot_20231013_114151(2).png

×
×
  • Create New...