Jump to content

Search the Community

Showing results for tags 'crypto'.

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes for Windows Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • Malwarebytes Privacy
    • Malwarebytes Browser Guard
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Nebula
    • Malwarebytes Nebula Modules
    • Malwarebytes Endpoint Security
    • Other Malwarebytes Business Products
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Location


Interests

Found 11 results

  1. Hello, for the past few days, my PC has intermittently been running slow and making a lot of noise; when I open up Task Manager, for a split second it shows the CPU usage at 80-100%, then almost instantly it drops to around 5-20% range. I have been using Norton and it alerts me every 30~ minutes that multiple attacks had been prevented, under the name of "System Infected: Miner.Bitcoinminer Activity #" (the number changes every time), yet it cannot detect the relevant files, therefore is unable to quarantine or delete them. I think a virus (or multiple viruses) has embedded and hidden itself in one of the central files or processes. I have looked up countless solutions on this forum and others, but have been unsuccessful. Things I have tried so far: 1) Tried to detect the file on the details section of the Task Manager to find the file location and delete it (File or process is not there) 2) Downloaded Process Explorer to find the unwanted process (File or process is not there) 3) Ran a MalwareBytes scan with "scan rootkits" enabled (Nothing came up) 4) Used rkill.exe, and then ran a MalwareBytes scan (Nothing came up) 5) Blocked the inbound traffic from the ports I was getting attacked from, on Windows Defender Firewall (Did not stop the attacks) I have seen people using FRST on this forum to solve similar problems, but I cannot view any of the fitlist.txt files, so I have not used that program. I would be grateful if you could please help me fix this problem. Thank you, fabdellas
  2. So i have made a post about this previously but with no replies so here is another one after working with the company a bit more. Its gonna be quick and dirty so people actually read it....? 1. Download trading software at Quantower.com 2. Scan the installer with my MB's and then upload it to virus total, no malicious results https://www.virustotal.com/#/file/4bbad909414c33f5e352daa248b14b594c82cbd71b142f26f31f988962220a77/detection Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 2/20/19 Scan Time: 6:39 PM Log File: d8e58a24-3581-11e9-be60-00ffe101d2e1.json -Software Information- Version: 3.7.1.2839 Components Version: 1.0.538 Update Package Version: 1.0.9364 License: Premium -System Information- OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: Cracked\Deka -Scan Summary- Scan Type: Custom Scan Scan Initiated By: Manual Result: Completed Objects Scanned: 1 Threats Detected: 0 Threats Quarantined: 0 Time Elapsed: 0 min, 2 sec -Scan Options- Memory: Disabled Startup: Disabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Detect PUM: Detect -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 0 (No malicious items detected) Registry Value: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 0 (No malicious items detected) File: 0 (No malicious items detected) Physical Sector: 0 (No malicious items detected) WMI: 0 (No malicious items detected) (end) 3. Install the trading software, MB scan. Two hits: Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 2/20/19 Scan Time: 6:42 PM Log File: 6174f79e-3582-11e9-b4eb-00ffe101d2e1.json -Software Information- Version: 3.7.1.2839 Components Version: 1.0.538 Update Package Version: 1.0.9364 License: Premium -System Information- OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: Cracked\Deka -Scan Summary- Scan Type: Threat Scan Scan Initiated By: Manual Result: Completed Objects Scanned: 243644 Threats Detected: 2 Threats Quarantined: 0 Time Elapsed: 1 min, 16 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Detect PUM: Detect -Scan Details- Process: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registry Key: 2 Adware.OtherSearch, HKLM\SOFTWARE\MICROSOFT\TRACING\Starter_RASAPI32, No Action By User, [6096], [474059],1.0.9364 Adware.OtherSearch, HKLM\SOFTWARE\MICROSOFT\TRACING\Starter_RASMANCS, No Action By User, [6096], [474059],1.0.9364 Registry Value: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 0 (No malicious items detected) File: 0 (No malicious items detected) Physical Sector: 0 (No malicious items detected) WMI: 0 (No malicious items detected) (end) 4. Remove the threats and re-scan, no results. 5. Restart the application and re-scan, same threats detected. So after gathering all of this i tried getting in touch with the software Dev. team and this is what they had to say (they are European so forgive their English). PLEASE MB MODS SEE MY POST .-.
  3. Hey there, so I am really hoping I can get this false positive removed by the team here as my group who run the site are not offering any malicious content and I assume this is just a preemptive measure to provide safety to the users of this extension by blanketing less well known Cryptocurrency related sites because of the previous spike in crypto related malware. The site i am referring to that i help run is https://ccmf.online/ If i can get this resolved ASAP that would be greatly appreciated, i have always been a strong supporter of Malwarebytes software and worry if i am seeing this then how much of my userbase is also seeing this, discrediting us without just cause.
  4. Hey, I have run a performance diagnostic report on my PC after noticing issues with performance. Receiving the following warning. This seems to be widely linked to trojans/cryptominers. I have followed all the instructions on this page https://www.bleepingcomputer.com/virus-removal/remove-taskhostw.exe-and-windows-update-checker-miner#rt_options but no luck. No anti malware software seems to be picking this up. not showing in task manager or on process explorer. Could you please help to get this removed from my system. Scan logs attached. Thank you! Ben Malwarebytes logs.txt
  5. So I trade crypto. I run into scams and malware on the regular, its not a big deal to me personally as i think of myself as quite security savy. I have been looking for a very useful feature(OCO order types) that isnt offered by the exchange i use to trade on (Binance).So I've done plenty of digging and looking around for a legit 3rd party piece of software and encountered plenty that offer the feature i am looking for but are obvious scams. I did however run into this platform that looks by far worth the effort and risk of getting more info on it as the level of software is by far the most professional grade stuff i have encountered to date! Here is the link to the software https://www.quantower.com/ , after downloading i am getting two hits through MB being these which i will attach below. I havnt been able to find much info on these or even get any response from the platforms official twitter handle after asking "whats up with these results?" so hopefully someone here can clear this up for me! Here is my reddit post about this as well if anyone has any interest in commenting there as well 😄 https://www.reddit.com/r/CryptoCurrencyTrading/comments/arbl6k/trading_software_that_offers_oco_order_types_on/ PS. those entries will not be added to the reg. until after installing and running the application shortcut they create that links to the "Starter.exe"
  6. hi everyone i am Rodolfo Gilliland. i am new on here...guys let's introduce with each other
  7. I had created a topic very early yesterday, but I was exhausted and didn't make much sense after reading it again, but can't find how to edit it, so trying again. I don't know if you guys will be able to assist me, however having trouble getting Explorer to stay running after clearing a crypto virus off an SBS server. I am pretty sure I was able to clean it, and I can always restore the data files from a backup, however Explorer keeps crashing, in a loop. I am still able to function somewhat, by using the task manger to run specific functions. I have downloaded and run Farbar, Attached is the log, however after that I am stuck. Thanks for any assistance you can provide. FRST.txt
  8. No warnings or ransom notice was given but I have lots of files that are now scrambled with file names like: busvgc9y.0ef ur0d27l.0kgdd 0q31i1q.0le 42gm98n12.0o 6hmg43fb.0p2e At quick glance this seems to have affected a folder that is also a mapped for network use, and the USB external drive. While running a malwarebytes anti-malware scan my normal anti-virus (360 Total Security) popped up a warning about a program called mssgznfb.exe, mb anti-malware did not detect it so I quarantined it using 360. I am not sure what step to take next... Should I zip and attach the file for inspection? or possibly try to run it in a sandbox to see what it is doing? Please help.
  9. I have files that are encrypted and state they are being encrypted by Cryptowall 3.0. I've ran Malwarebytes scan, Malwarebytes rootkit scan, I ran Hitman. Nothing is finding anything related to the cryptowall. Could the source of the malware be on another computer connected to a network but not present on the computer with the encrypted files?
  10. I put new game cd in and bang. The message ( which I can't get rid of) does not look like images I've seen (attached CL Message) The fox (?) site with the portal key does not recognise the files I attached. Also attached here 2 more files. My ESET antivirus said it cleaned it. Online ESET also. Malwarebytes also. Task Manager no longer shows processes. Attached file called Crypto.rar Crypto.rar
  11. I am new to Malwarebytes and am considering (trying out) the Premium version and am wondering how effective it has been against the Crypto variants? Thanks, MikeSp
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.