What's new

Cleaning VPNFilter malware from Asus RT-N66U

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

djc6

Occasional Visitor
My sister has an Asus RT-N66U router I'm sure hasn't had a firmware upgrade since I handed it down to her years ago.

Anyone know of any official recommended steps to cleanup any malware from the router? Will a firmware update take care of it? Should I factory reset first?

I was looking for an Asus forum, but seems its a victim of GDPR :) Which is a lame excuse, they've had 2+ years notice. We'd been preparing at work for it for a long time.

Ars Technica put a few more Asus routers on the list affected yesterday:

https://arstechnica.com/information...cting-50000-devices-is-worse-than-we-thought/
 
Thanks. I did do a search first before posting - but my search was limited to Asus subforum by default it seems, I only got one thread back in search results.
 
Doesn't appear there are any proposed remediation steps - latest firmware for RT-N66U may still be vulnerable.
 
Rebooting will remove stage 2. Nobody knows yet how to remove stage 1, as it hasn't been disclosed how stage 1 attains persistence.
 
Hi, I have checked my RT-N66U and believe it is currently unaffected, can anyone advise if the latest Merlin firmware (380.70) will protect against this malware if it is yet to have been attacked (i.e. preventively)?
 
Similar threads
Thread starter Title Forum Replies Date
XIII EOL ASUS routers affected by TheMoon malware ASUS Wireless 17

Similar threads

Latest threads

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top