TCEmby1 8 Posted May 26, 2023 Posted May 26, 2023 As directed in the fix for this problem, I've deleted the recommended files but I don't understand the Hosts file fix that says: Add an entry to your server machine etc/hosts file: emmm.spxaebjhxtmddsri.xyz 127.0.0.1 This is the host name of the control server which the malware is communicating with Do I just add emmm.spxaebjhxtmddsri.xyz 127.0.0.1 at the last line in my hosts file?
Solution Q-Droid 989 Posted May 26, 2023 Solution Posted May 26, 2023 The hosts file format is [IP address] [hostname] [alias]. While the instruction is to add a line for the the domain it is not good practice to have multiple entries with the same IP. What you should add/edit instead for the localhost entry is: 127.0.0.1 localhost emmm.spxaebjhxtmddsri.xyz This ensures that reverse lookups (gethostbyaddr) return the correct hostname while forward lookups on the domain still return the desired IP.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now