Overclock.net banner

Unknown Logon and TakeOwn Virus

2485 Views 17 Replies 7 Participants Last post by  compmaster
Goodmorning everyone, its been a very long time since I've been here, but I have a huge security issue on my Windows 10 install (19033.1), for a long time I just assumed I had BitCoin miners plaguing my system whenever I left it alone and when I ran through all of AppData manually and scheduled various AV searches, I did find a couple miners and it took care of them. Fast forward a few more days and I just so happen to leave my computer idle for a few minutes, the temps rocket up to 75°C and immediately drop when I move the mouse. Fast forward a few more days and I have the genius idea of finally checking the Event Viewer log! Upon searching, I found the Security tab OVERFLOWING with commands and I've never seen anything like this before. What do you guys make of this and how can I save my install without wiping it?


*Rename the file to .evtx*

Attachments

1 - 4 of 4 Posts

· Vermin Supreme 2020
Joined
·
39,546 Posts
you're at worse case.

wipe is only way to confirm clean if its as bad as you say it is.

i mean, you could always go pay a repair shop to not fix it, but tell you its fixed, if that makes you feel better.
 

· Vermin Supreme 2020
Joined
·
39,546 Posts
you'd likely end up stuck in a never ending chase of delete the file, & purge the virus.

bleepingcomputer has a 3rd party tool that supposedly forces all running stuff to quit, making AV more effective at finding & removing, but typically I reformat anything this infected. Specially if its a employer, or customer related.

IE: if you brought this to me, I'd salvage important data (docs, pdfs, xls) reformat, confirm data i removed is clean, then put it back on.
 
  • Rep+
Reactions: smilinjohn

· Vermin Supreme 2020
Joined
·
39,546 Posts
that is most definitely an issue... also seems like that likely includes lots of media, which technically is non-essential, unless its the only existing copy.
 

· Vermin Supreme 2020
Joined
·
39,546 Posts
good work, hopefully it doesn't creep back in.
 
1 - 4 of 4 Posts
This is an older thread, you may not receive a response, and could be reviving an old thread. Please consider creating a new thread.
Top