PDA

View Full Version : Believe continued infection, after factory reset.



Northern_blades
2017-06-30, 01:51
Quick background. The computer began to act up, nothing significant on the computer.
It was a big box store computer, complete with recovery partition.

It started having problems, the recovery did not work, and then the clean install was used.

The immediate symptom that most sites that would help are blocked.
https://my.norton.com/
is inaccessible.
As is
https://www.malwarebytes.com/

This was my red flag.

I then tried to install Norton, directly (this is on a computer that had just been reset to factory)

Unable to install directly.

I directly installed malware bytes, It is unable to connect for updates.

I am without the laptop, for likely 2-3 days, so I can not get more information. I do have a "Addition.txt" and a "FRST.txt" files, but as I did not have instructions, or the laptop available, I expect, I missed some important step/ switch, or command. This is all I have for now.

Not attaching two files until requested to do so.

they do appear to have some personal information, but nothing critical. (that I could Identify)

There is absolutely nothing installed on the machine, that was not installed as part of the corporate "beats" recovery garbage./ bloat they send with it.

Juliet
2017-06-30, 14:55
Follow the instructions in the thread below, and provide me the content of the "mbar-log-TODAY'S-date.txt" log after running the scan and deleting the threats it detected (the log will be located in the MBAR folder).
https://forums.malwarebytes.com/topic/198907-requested-resource-is-in-use-error-unable-to-start-malwarebytes/

***

http://dl12.zemana.com/tmp/Zemana.AntiMalware.Portable-unsigned.exe


Install the program and once the installation is complete it will start automatically.
Without changing any options, press Scan to begin.
After the short scan is finished, if threats are detected press Next to remove them.


Note: If restart is required to finish the cleaning process, you should click Reboot. If reboot isn't required, please restart your computer manually.

Open Zemana AntiMalware again.
Click on Zemana icon and double click the latest report.
Now click File > Save As and choose your Desktop before pressing Save.
Please post this txt in your next message.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


I directly installed malware bytes, It is unable to connect for updates.
See if you can get it to update now and run a Threat Scan....post logs if available.


I do have a "Addition.txt" and a "FRST.txt" files, but as I did not have instructions, or the laptop available, I expect, I missed some important step/ switch, or command. This is all I have for now.
If you have been able to run the above scans, I will need to see fresh scan logs.

Juliet
2017-07-08, 15:22
Due to lack of feedback this topic is closed.