Asustor has published step-by-step guidance to help users eliminate the Deadbolt ransomware from affected NAS devices. The company temporarily took down some of its services to prevent further spread of the ransomware. The initial infiltration was through CVE 2021-44142, which is a heap-based buffer error remote code execution vulnerability in the open-source Samba server. The New Zealand Computer Emergency Response Team says the affected devices include the following models: As5104T, AS5104, AS 5304, AS6404, AS7004T, and AS1104T. The affected devices are detailed later below.”]
Source: https://www.bankinfosecurity.com/update-asustor-how-to-eliminate-deadbolt-from-nas-devices-a-18602