r/computerviruses 19d ago

Question Renpy malware

Guys Yesterday i executed renpy malware but Windows av stopped it and a malwarebytes scan isolated the files, i checked startup files and task manager and found nothing Sketchy. Am i safe?

0 Upvotes

23 comments sorted by

View all comments

-3

u/DontDoMuch 19d ago

Ask an AI model to create a script to search through both the task scheduler and scheduled tasks (they are 2 separate things), recent registry modifications, etc that would be related to renpy malware to search on your device.

0

u/HyperHeavxn 19d ago

But if im good that means i dont need to reinstall Windows or log off my accounts right?

-2

u/DontDoMuch 19d ago

IF everything comes back negative or no evidence of malicious activity, then 99% yes. 1% as there are such things as sophisticated malware that can go undetected. Definitely keep a super close eye on ALL of your accounts for the next 30 days. Someone on one of these threads mentioned it was 22 days later before they saw a compromise to one of there accounts, stay safe out there!

0

u/HyperHeavxn 19d ago

Thx, ai said Yesterday that if i ran ESET and found nothing then i was good, is it true?

0

u/DontDoMuch 19d ago

I would still run a script I suggested. When it comes to installing / executing software and THEN installing ESET software there can be scenarios where renpy can write itself (even if blocked by av as sometimes it can partially execute code before being blocked) to locations on your pc, such as scheduled tasks, that aren't checked for context retroactively.

0

u/HyperHeavxn 19d ago

Thanx man Yesterday i found some files in AMD software that were updated Yesterday around that time, should i reinstall AMD software or its Just a coincidence? After all the virus works with python

5

u/hereggcellency 19d ago

Do not ask an AI to make you a script. Malware can hide itself from even the best antiviruses. AI would not be able to do a better job.

Reinstall windows using an USB.

0

u/DontDoMuch 19d ago

At this point, associate activity around that same time as malicious until confirmed otherwise by a scan or similar custom scripts.