• GilaMonster (11/23/2015)


    Not touching that with a bargepole (and please can you edit your post in case someone tries to run whatever that is?)

    Wipe that machine and get your IT security people to do a full review of the entire network.

    Absolutely - definitely look through the entire network now, particularly for command and control communications, and keep looking for a few weeks.

    "Wipe" may vary between a normal three or seven pass complete disk sanitization and physical shredding of the disk, possibly after having a security consultant take a forensic image. Regardless, the fastest thing to do is pull the drives, lock them up, and start over immediately with fresh drives. The current Windows install is nonrecoverable.