ACEMAGIC
Tom
"Arrived with malware installed"
Arrived with malware installed - Backdoor Win32/Bladabindi, a backdoor trojan which is a remote access tool known for its data-stealing capabilities. It was hardcoded into the Windows recovery, so it would not be wiped on reset. Windows was also a spoofed version, not a valid product key.
this computer Backdoor:Win32/Bladabind!ml and Trojan:MSIL/RedLine!MSR malware. These are the files endev.exe and endidev.exe in the folder C:/Windows/OsVer/. There's also copies of these on the restore information, so if you do a system restore they'll be reinstalled. It's also odd that it comes with Chrome preinstalled, but given the other malware I wouldn't trust the copy they installed.
The malware are found on AceMagic AD08, AK1, AD15. A different malware hidden inside the LED control software for the S1.
Widget Preview
Add to your site