New clean install , gets infected right away. Had Windows pro , trying windows home. Still happening but less.

Anonymous
2023-05-16T19:49:31+00:00

At my wits end right about now, spent over 4 days non stop trying fix (i don´t even know what)

Installed this fresh version last night and

event id.

1100

1101

4608

4616

4624

4625

4634

4647

4648

4672

4688

4696

4717

4718

4720

4722

4724

4725

4726

4728

4729

4731

4732

4735

4737

4738

4739

4781

4797

4798

4799

4826

4902

4907

5024

5033

5058

5059

5061

5379

5382

some of the actions made

"A logon was attempted using explicit credentials.

A user's local group membership was enumerated.

Special privileges assigned to new logon.

A security-enabled local group membership was enumerated.

Key migration operation.

Auditing settings on object were changed."

This from the security tap in event viewer over 18900 event atm, starting to override itself.

From a install less then 12 hours old.

Tried all malware virus removal guides, and everything i could find, but at this point.

From things i have found on the internet,

this is some new version of solarflare virus, or some offline files that load from csc folder and infect from there.

some time after the install i start finding folders with names like , windows(8asdwef485w1ef684wefwe4f8416wf)

it´s overwritten the first files , wich is dublicatefile changer, this keeps changing my settings turns antivirus off and on, stoppes me from updating,

also there was some 3rd party update, that refers in my language to a specific date in last month, guessing that´s the time i got infected.

Right now iceland is hosting eu blabla, and our systems are under attack from russia the media says,

But i doubt that , this seems to be some combination of multible viruses/malvare, some new ai thingy...

Problem is, new user logging in, change in policy, change settings, hides updates, hides when scans, turns defender off and on,

changes file names, multible instances of each of these things plus more, remote blabla

Done the

usb install , online install local install,

Safe mode,

no internet,

offlinescans, both windows and a online virus software.

kill processes, rkill thingy

malwarebytes, avast, and some other antivirus that was recommended on these forums, that i had to sign up for a 30 days trial.

I also was able to update windows security at one point and had the newest definition. Is the newest atm.

sfc, image clenup, users, ect ect,

From time to time i would find a folder or connection that later just dissapears,

Everytime i thought i found the source , it would prove to be wrong.

I don´t know, i have honestly given up on resolving this....

been removing viruses since back in the day of happy.exe

Windows for home | Windows 10 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
{count} vote

8 answers

Sort by: Most helpful
  1. Anonymous
    2023-05-16T22:24:22+00:00

    Sorry to hear that! Unfortunately I have no more solutions for your issue. I'll release the question so that others in the community can try to help you. Best regards.

    0 comments No comments
  2. Anonymous
    2023-05-16T20:58:00+00:00

    Yeeeee,

    can´t quite grasp the concept of being refered to someplace else when this is the place to be at...

    hmmmm.

    Think i´ll just wait to use my pc until after the conference, might be some vodaphone glitch being exploided by hackers.

    What a time we live in when company´s don´t alert there customers that there info if floating in the interverse.............. customers, fudge them, we can´t affect our stock price......

    tuning out , will drop in tomorrow.

    0 comments No comments
  3. Anonymous
    2023-05-16T20:52:47+00:00

    Hey there! It's great that you have some background knowledge from the IT consultant manager course for Windows 7. With your expertise and some assistance from online forums, you should be able to dig deeper into this problem and find a solution.

    I recommend that you visit our sister TechNet forum:

    https://social.technet.microsoft.com/Forums/en-...

    TechNet has IT professionals and system administrators who can best help with this type of question.

    I wish you the best of luck in resolving this issue and getting to the root of the problem!

    0 comments No comments
  4. Anonymous
    2023-05-16T20:46:02+00:00

    I did the IT consultant manager course ms something for windows 7,

    I should be able with help from these forums to get to the root of this

    The issue is persistant, through every type of installation possible.

    0 comments No comments
  5. Anonymous
    2023-05-16T20:24:35+00:00

    Hello! My name is Cristiano. I'm an Independent Advisor. I'm glad to help you.

    I'm sorry to hear that you are experiencing difficulties with malware and viruses on your computer. It sounds like you have already tried a number of different solutions to no avail.

    If the issue persists even after a clean install of Windows, it could be possible that the malware is operating at a lower level than the operating system and is therefore not being removed during the installation process.

    It is recommended that you seek the assistance of a professional computer technician who can help you identify and remove any malware or viruses that may be affecting your system.

    In the meantime, you can try running a full scan with a reputable antivirus software and make sure your operating system is up to date with the latest security patches.

    I hope this helps.

    0 comments No comments