Hi. We have an office client who has been contacted by the local internet provider that one of the office Windows PCs is infected with a virus. The report has been confirmed. Apparently through a remote outside trigger, this virus is performing brute force attacks around the world from this local IP address at varying times. Aside from low level formatting each PC, what is the recommended approach for this case? Running F-prot (suggested by the internet supplier) has come up empty. We are planning to run hijack this. At this time, we do not know which PC is creating this issue. Internet provider is also suggesting to run Wireshark. However, what is the value if the virus is dormant during this log excercise?
Run online scanner using Windows safe boot with networking?
Welcome feedback. Thanks.
Run online scanner using Windows safe boot with networking?
Welcome feedback. Thanks.
Comment