About 1.5 months ago, we had two computers that would throw up a slew of executables upon login, and there was no way to stop them, but once they finished running in 20-30 seconds, the user would be logged off. We did an antivirus scan with Trend Micro
and malware scan using malwarebytes on the server and the affected workstations, but nothing was found with either program. The problem was just with a few roaming profiles. We traced it down to all the executables in the c:\windows\system32 being placed into
the roaming profile startup folder. After cleaning these up, things looked good for a couple days, but then they showed back up for the same two profiles. Since then, it's spread to other profiles, and I can't track down the source. Has anyone else encountered
this problem? Does anyone have an idea as to what I might try? Thanks
↧