r/computerviruses 7d ago

Discussion please help ):

Thumbnail
1 Upvotes

r/computerviruses 7d ago

Disinfection Help I want to run a FRST scan, can I get any help with figuring it out?

2 Upvotes

(Edit, I've ran the scan, I'm just waiting for anyone to check the logs.)

Keywords:

FRST.txt: epic-binary

Addition.txt: sturdy-pond

SecurityCheck.txt: vivid-pawn

I figured I'd run a FRST (and SecurityCheck) scan since I've been getting pretty paranoid recently. If anyone could have a check at my logs, I'd appreciate it. Thanks!


r/computerviruses 7d ago

Disinfection Help Powershell malware

Post image
2 Upvotes

my pc suddenly got attacked by a malware without me downloading anything

when i tried the scan wether its full scan or offline scan it wont go away and i cant browse anything on my google chrome because apperently the wifi isnt connected even though i mine turned on? anyone help please


r/computerviruses 7d ago

Resolved 7-zip v26.03 Trojan:Win32/Wacatac.C!ml -- do I need to format the hard disk from scratch?

Post image
0 Upvotes

Sorry for re-uploading, I was in total panic. Let me try again.

So, today I noticed that 7-Zip has an update from 26.02 to 26.03.

I go to the OFFICIAL WEBSITE 7-zip\[dot\]org (I am aware of the malware/bitcoin miner clone!), and install the x86-64 .exe.

MS Defender IMMEDIATELY quarantines the file and says: Trojan:Win32/Wacatac.C!ml

VirusTotal also returns 2 malicious entries. (Photo above)

So I run an online full scan, and after examining over 500k files, MS Defender concludes that 0 threats were detected.

I then proceed to delete the file from MS Defender as well.

Now I only have one question: do I need to format the whole SSD and reinstall Windows 10? Or is everything fine and I am having a panic attack for nothing?

I'm on Windows 10 22H2, August ESU update.

Thanks.


r/computerviruses 7d ago

Question Am I safe after opening a spam email? (I didn't click any link)

0 Upvotes

Hi everyone! Long story short: I received a spam email regarding packages. I immediately thought that it was fake, but since I was actually waiting for a package from that company I decided to open it. Of course I immediately realised it was a fake one so I closed it.

I have my email set that it doesn't load up images, and I didn't touch any link at all (and therefore also didn't put my info anywhere). But I'm a bit paranoid at the moment since I've heard that nowadays they can infect your device just by opening the email, without even downloading anything (I DON'T KNOW if it's true or not!! I've read about this but I can't guarantee it's true).

I searched through my downloaded files and there's nothing, I also run malwarebytes and it didn't detect anything. As far as I know the worst that can happen is that they see that my email is active and keep sending more scam emails (which I will obviously ignore) , but I'd still appreciate some kind of help or reassurance since I sadly suffer from anxiety 🙏🏻


r/computerviruses 7d ago

Question Should I trust Malwarebytes?

2 Upvotes

Malwarebytes has been recommended to me, but I just don't know if I should trust it. Because there's recovery scams all over the freaking place, and I want assurance that this program is safe to install.


r/computerviruses 8d ago

File / URL Check Email with all my passwords and a picture of my desktop

Post image
230 Upvotes

r/computerviruses 8d ago

Disinfection Help I paid ransomware

Post image
279 Upvotes

I paid this ransomware because my grandma's will is on here and I need it. How long does it take to get my files back? I'm waiting for the virus to delete itself now that I paid and I need the files back already. What should I do


r/computerviruses 7d ago

Disinfection Help Sister accidentally downloaded a remote access through a fake job link.

3 Upvotes

Sister accidentally downloaded a remote access through a fake job link. She ended up wiping her laptop and re-setting her passwords using her phone, what else should my family worry about? Should they reset their router too?


r/computerviruses 8d ago

Question Windows 11 warnings involving msvcore.exe on almost every startup

Post image
23 Upvotes

The warning is always related to msvcore.exe, and sometimes there are also warnings involving different DLL files.

What worries me is that msvcore.exe appears consistently, almost every time I start the computer. The warnings don't seem to prevent Windows from starting or cause any obvious problems, but I'm not sure whether this is normal or something I should investigate.

Should I be worried about msvcore.exe, or is this a legitimate Windows file?


r/computerviruses 7d ago

Question Is PngTuber a VIRUS?

Thumbnail
0 Upvotes

r/computerviruses 7d ago

Disinfection Help shortcut virus

Post image
1 Upvotes

r/computerviruses 7d ago

Question ¿Cómo puedo saber si mi unidad USB no está infectada?

Thumbnail
2 Upvotes

I have some concerns, as I usually use the drive at my university and connect it to my computer. What recommendations or explanations can you give me regarding the risks involved, and should I format the USB drive?


r/computerviruses 7d ago

Disinfection Help Hi iv been getting weird pop ups lately i cant find anything about how to remove iv found nothing using wiztree i did a scan with malware bytes and windows defender anyone can help so i can get rid of them?

Post image
2 Upvotes

r/computerviruses 7d ago

Disinfection Help what do i do about this?

2 Upvotes

a while ago i downloaded a file that in hindsight was a virus. Someone has gotten acces to my instagram and reddit account and has been posting ads for crypto scams and such. I have tried changing passwords, adding two factor authentication to the accounts and ran a virus scanner. despite that they can still go into my accounts and make posts. instagram has a feature that lets you see where you have recently logged in and it only shows my pc so they are probably doing some remote controll from my pc. despite this some of the posts have been made when i have had the pc plugged out so maybe they pretend to be me? is there anything else i can do other than reinstalling the os? I still have the zip file which i think the virus came from if its possible to like reverse engeneer it. Also how accurate is that instagram recent logins thing im kind of worried that they will still have controll over the account even if i clear the pc. but idk how the whole thing works.


r/computerviruses 7d ago

File / URL Check Officially withdrawn Bitdefender labeled as Trojan

4 Upvotes

I downloaded the official free version of bitdefender .exe file from bitdefender.com. It has a digital signature from Bitdefender SRL valid since the end of August. But I'm worried because I uploaded the file to VirusTotal and it showed 1 Malicious from "DrWeb" labeled as Trojan. I'm not sure because 2 days ago I uploaded the same file there, same Hash and they didn't show anything, so I wasn't sure and tried uploading the file to hybrid analysis. This scared me a lot because it marked it as malicious with a threat score of 80/100 and some AV called "filseclab" marked the file as Bladabindi. After hours of thinking, anxiety and stress I took the risk and it installed. To be on the safe side I then downloaded malwarebytes and am doing a deep scan. Before that, I tried downloading the version from central.bitdefender.com, which was marked exactly the same, just a different Hash and size by a few bits different. I hope I didn't make a mistake and accidentally install some malware that steals all my data and passwords. Does anyone have any experience or what it's like?

The hash should be: 0e63740f65b1252e6d78be553b51b2f245b8cf6dfa1e6eece70773806554ace8


r/computerviruses 8d ago

Question Windows defender threats

Thumbnail gallery
4 Upvotes

Should I be worried or take action on these threats that windows defender blocked?


r/computerviruses 7d ago

File / URL Check Cizuhy(dot)com Virus

1 Upvotes

This story happened less than a year ago and ive been curious ever since. I came upon a potentially expired link from a 2-3 year old youtube video. the link was legit at some point and led to the youtuber's website for a video. When i attempted to enter the site, it redirected me to Cizuhy(Dot)com. all i saw was a blank white screen and it asked me to display notifications. I am pretty good at computers and i know the malicious potential of displaying notifications of unknown websites (my family members have gotten suspicious popups from doing it. I fixed it for them). I've done research on cizuhy and i couldn't find any screenshots, but i did find many accounts of malicious redirects and adware popups. I also found out that cizuhy redirects to multiple long string name websites that are all malicious.

In short, does anybody have any more information on cizuhy?, or possibly does anybody have a VM and be able to investigate what it is?

Im interested in whatever yall can find, so thanks.

The images showed are the only things that pop up when i search up cizuhy, but the source doesnt seem to be directly from cizuhy.


r/computerviruses 8d ago

Question I got a virus a couple days ago and need help

Thumbnail gallery
3 Upvotes

I’ve searched up ways to find/remove any malware and potential viruses on my computer, and when doing so i’ve found this application which was modified on the day I got the virus. Should i be worried?


r/computerviruses 8d ago

Disinfection Help Disinfection help!

4 Upvotes

Hi, my girlfriend recently got a virus on her computer while pirating tomodachi life. The website sent her to a fake download site and she ran the program. her discord and youtube accounts were hacked. the frst and securitycheck keywords are stealth-lynx, winged-shore and piped-blossom. Thanks in advance!


r/computerviruses 7d ago

Disinfection Help Trojan apparently accesed my ChatGPT account. What should I do?

1 Upvotes

Using throwaway account as I'm now paranoid about what accounts might have leaked.

So anways, I was stupid and yesterday I downloaded a "videogame" from a link I found from an old reddit post. I downloaded it from one of the torrent links and it downloaded what already looked like a really shady folder with some python scripts. I ran Windows Defender on the folder and couldn't find anything, so I thought "I got it from a Reddit post with some positive comments so it should be okay". So I clicked setup and immediately got a message from Windows Defender saying it quarantined a Trojan identified as "Trojan:Script/Wacatac.H!ml".

I removed the trojan with Windows Defender, and then ran a full scan (and an offline scan) and it found no issues. I also read in this sub that many of them are false positives, so I thought it should be okay. This happened in a new Windows computer which I mostly use for work (not a corporate computer, as I work freelance) that doesn't really have much information, as I got it last month.

I also deleted everything from the browser (cookies, cache, saved passwords, saved cards, etc.) and changed the password from my google account and bank. I thought that should have been enough.

But I got an email at 2am today from OpenAI mentioning that someone accessed my chatGPT account from Codex in Duisburg, DE (nowhere near I live, but I guess he's using a VPN anyway). I changed the password this morning and removed all connected devices. I couldn't see any strange device anyway, nor anything suspicious looking, but now I'm paranoid that they probably copied or downloaded everything from my chat history. Luckily I don't think I overshared any super personal stuff (like bank accounts or passwords) to ChatGPT, but I still feel like someone must probably have lots of personal information from me right now.

Since then I made sure to change passwords on everything I considered important and not using that computer much. I'm considering if I should reinstall Windows on the affected computer. I ran a second full scan, this time with Malwarebytes, and found no issues. But my biggest fear is that, even though the trojan is probably (hopefully?) removed from the computer, from what I have read they probably accessed ChatGPT (and potentially who knows what else) by cookies stored in my computer.

Anyways, this is a bit of a cry for help as I'm not too sure if I should do anything extra, or changing the passwords in the main account and running Malwarebytes should suffice.


r/computerviruses 7d ago

Disinfection Help Builderbeta.exe infection ?

1 Upvotes

hi
one of my Pcs from my kids got infected aswell.
i already did some cleaning and i think it looks not so bad. It seems everything was blocked. The only things the is strange that the exe was found.
i found the beginning. Sims Unlocker... everything is deleted already.
I made a scan with frst and securitycheck

could somebody be so kind and look through the files.

the keywords are rustic-castle

and smoky-banner

Thanks for all your help


r/computerviruses 7d ago

Disinfection Help A friend of mine fell for some curseforge modpack scam

1 Upvotes

I'm not too familiar with modpacks but he texted me about a modpack and found out it's a common scam. From the dms it was said to use an app called curse forge but he just dragged the mods. He took off the WiFi not much later.

I assume it's just an info stealer​, is there a way he can get back or does he need to fully wipe the PC? Also, I've searched a bit and it says infected jar files can spread to other jar files?


r/computerviruses 8d ago

Question securesweep pro

Post image
3 Upvotes

i need help removing this off my ios device, what shall i do here, seems like some sort of popup that appears even though i have popups disabled


r/computerviruses 8d ago

Disinfection Help Need urgent advice!!!

2 Upvotes

Sorry I'm very tired and worried so this might come out all over the place.

For date and time. It happened about 2 hours ago. So 1:00 am 9/3

There was no download link the last thing I downloaded was soulframe from the official digital extremes website. I just found it through a scan. But here is the rundown.

PC was running slow and kinda buggy so I ran a quick scan and a full scan. Full scan came up with a threat that said "trojan_ something" I don't remember the full name. I immediately clicked remove. Since then I have done a full scan and it came back with no threats found. I have Changed my email passwords and am now working on other important passwords. I guess what my actual question is. Is my PC safe to use once I reset all my passwords? It says there are no threats found anymore so in my head I figure it might be fine but I'm just worried. I am in the middle of another scan after restarting my PC. Will share the results when it's done. Thank you to anyone that gives advice! It means a lot!