johnh 0 Posted September 19, 2019 Share Posted September 19, 2019 Aletra virus repeatedly NSIS / CoinMiner.T Trojan. Disinfected by deletion but does not appear in the registry or in quarantine. Then once again comes NSIS / CoinMiner.T Trojan .... Help Link to comment Share on other sites More sharing options...
Administrators Marcos 4,705 Posted September 19, 2019 Administrators Share Posted September 19, 2019 For a start, please provide logs collected with ESET Log Collector. Feel free to post the generated archive here since attachments are not available to other users than ESET's staff. Link to comment Share on other sites More sharing options...
johnh 0 Posted September 19, 2019 Author Share Posted September 19, 2019 (edited) oK. I will Edited September 19, 2019 by johnh Link to comment Share on other sites More sharing options...
Administrators Marcos 4,705 Posted September 19, 2019 Administrators Share Posted September 19, 2019 2 hours ago, johnh said: oK. I will You have removed the logs. Any reason for that? Link to comment Share on other sites More sharing options...
johnh 0 Posted September 20, 2019 Author Share Posted September 20, 2019 No reason, i,ve uploaded now thw right logs. eea_logs.zip Link to comment Share on other sites More sharing options...
Administrators Marcos 4,705 Posted September 20, 2019 Administrators Share Posted September 20, 2019 I'd strongly recommend uninstalling EEA v5 and installing the latest EEA v7.1. Instead of updating from a mirror, I'd suggest using ESET HTTP Proxy to cache dowloaded files and thus save network traffic. Also when updating from a mirror you lose streamed updates that are downloaded every few minutes and thus ensure maximum protection against newly emerging threats. As for the malware, it seems to be spreading from a remote share. Does temporarily disconnecting the machine from LAN stop malware detections? Please carry on as follows: - upgrade Endpoint on the machine to v7.1. Ideally install Endpoint from scratch, ie. uninstall v5 first. - run a full disk scan - collect fresh logs with ELC and upload the generated archive here. Link to comment Share on other sites More sharing options...
johnh 0 Posted September 23, 2019 Author Share Posted September 23, 2019 Ok. Thanks very much fo the help. Link to comment Share on other sites More sharing options...
Recommended Posts