Jump to content

Search the Community

Showing results for tags 'malware'.



More search options

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes for Windows Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • Malwarebytes Browser Guard
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Endpoint Protection
    • Malwarebytes Incident Response (includes Breach Remediation)
    • Malwarebytes Endpoint Security
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Location


Interests

Found 338 results

  1. I use Malwarebytes Premium, yet scans do not show the browser hijacker called "MyMailCenter.co " or in lower case. I have tried various methods to remove it without success. One of those methods touted in searches for remedies is to use Malwarebytes. I must get rid of this browser hijacker which is persistent malware. It is disappointing that scans do not find it so I can quarantine it. I hope someone can help. Many thanks, Barbara
  2. Hello everyone. So I've had my pc for a few years now (since 2017), and haven't had particular issues, almost no malwares or viruses. But recently I've noticed that using Firefox it tends to freeze and lag the entire system, blocking it for a while (like 1 minute or so) until it turns back to normal. It happened more than once yesterday. So opening the task manager while using the browser, I realized it shows 100% CPU usage for a split second and then it falls down to 5-10% of CPU usage. Everytime I open the task manager this issue happens again (showing 100% CPU usage), even if the computer is apparently running without any issue. It's like something is hiding apparently because I don't see any reason why the cpu usage would be so high. So yesterday I followed some of the steps indicated in this forum: first I downloaded Malwarebytes and did a scan. The results showed 7 PUP and I removed it. However the issue is still there, with task manager showing 100% usage everytime I open it for a split second and then falling down to 5-10%. Then I downloaded Roguekiller and the scan showed a couple of threats: they were malwares, I removed them both. The issue is still there though. So I today I downloaded Farbar Recovery Scan Tool and did a scan. I'm going to attach the results of all these tools I used. I've been unable to locate any viruses manually. However I still suspect I've got an infection of some kind: it may be a crypto currency miner, but I'm not sure. Any help with this will be really appreciated, thank you so much in advance. Addition.txt 11-12-2019 Malwaresbyte Report.txt FRST.txt ReportRogue.txt
  3. Malwarebytes detected this malware called wireless update if it tries to remove it crashes the application is a system application that is pre installed rooting is not a option cause there is no root available for my phone does anyone know how to remove it my phone name is v7 Zyro
  4. Hi, I downloaded an unsafe file that included bundleware and, not knowing any better, clicked accept on some of the offers, which allowed a few viruses to invade my computer. Those included Segurazo and Chromium, but to my knowledge I have managed to completely get rid of Segurazo. I have used Malwarebytes scans several times after downloading the unsafe file, over the course of 4 days now, and while it has done well to get rid of most of the PUPs that came with it, the scans will not detect Chromium. Although I have managed to delete/uninstall most files named Chromium and ended its tasks in the Task Manager, the virus still persists within the background processes in the Task Manager and sometimes under the Microsoft Edge tab within the Task Manager, and in my files, unable to be deleted. It isn't giving me any more pop-ups at this time, but the last time I turned on my computer I was completely unable to load websites on Microsoft Edge, but the window was open. I restarted and am now able to access it to make this post. Any help with this situation would be greatly appreciated! I haven't seen anyone really talk about Chromium Update (32 bit) in their Task Manager. Images of Chromium in my files: - - Images of Chromium in my Task Manager: - Note: Chromium Update (32 bit) will sometimes appear as 2 or 3, but in this screenshot it is just 1 FRST.txt Addition.txt Malwarebytes most recent log.txt
  5. Hi We've recently found that our site is being blocked from some corporate firewalls. IP Address: 45.65.61.146 Web address: www.kissngo.com.au A few colleagues have reported to us that they can't access our website from their corporate networks, so we'd like to ensure that this is fixed so that going forward all our customers can access our service. We've checked with our hosting service (WP Hosting) and our SSL certificate provider (GoDaddy), who have confirmed that the site is clean and we don't have any malware. Based on this, we have been advised that we need to send a request to key firewall providers. Please would you review our site and if it is blacklisted or blocked - please would you unblock and delist it so that it is now accessible to all. If, however you do pick up any discrepancies, please can you let us know soonest. Thanks Min
  6. I have been sent here by "exile360" from another Forum. Attached you will find find: FRST, Additions How do I download the Malwarebytes Threat Scan logs that you wish sent? I am using the "Premium Edition" of Malwarebytes. Thank you Addition.txt FRST.txt
  7. Recently in the past week I have been having problems connecting to the desktop site of Discord and .io domain (Aggie.io), and called out to support in ways to see how I could fix it. I had tried to download Malwarebytes to scan my computer, but it said an error occured, so I tried to save a MBAR from another Malwarebytes forum, but it said an error had also occurred with my proxy server (for LAN). Is there any way to fix the proxy or scan for Malware, And to get rid of PUP's?
  8. Hi I have a problem where I cannot see the contents of the window for chrome, safari or app store (white or light grey) so ran Malwarebytes and had same problem for the report screen so cannot see the report to fix the problem - I am on El Capitan
  9. I just built my new PC a few days ago and i went out of my way to buy all new components except my GPU which is second-hand. I scanned my system with malwarebytes and got a lot of adware and two Trojan bitcoin miners that are located in my registry. My problem is that after every scan i get the same malware so it seems that quarantine doesn't help. I tried locating them manually with RegEdit but i cant find anything. I watched a lot of videos on my issue and all of them suggest using Task manager and MSconfig (for startups) but there is nothing out of the ordinary. If anybody can help i i would be really grateful. Thanks in advance! -Strahinja I have provided pictures of my search history.
  10. Okey so my computer is forcing re-starts of the entire system when i try to shut down. I have checked wake up magic packets by net adapters and more and disabled everything but it keeps re-starting. I have scanned with MBAM (prem version) and with windows defender but can't find anything(Note a couple of days ago i got a notification about a trojan on my system however i couldn't find it and not sure if it was cleaned but as i said i've made scans after that not finding anything so..) as i haven't made an entire reset of my computer on years i suspect it could be a virus or malicous software that forcing these restarts to keep acting like a bot for the hijacker. Here is some information about my current setup on the pc: Here are the logs for FARBAR, MBAM: See attachments. Thanks in advance! MBAM quickScanSfang.txt Addition.txt FRST.txt
  11. Recently ADWCLEANER has been detecting a Pup.Legacy. Sometimes I am able to send the PUP to Quarantine Heaven. But other times this fails and it takes multiple attempts for purge the pesky pup. Nonetheless the bad boy keeps returning. Can you advise me how to permanently get rid of it? Attached find ADWCLEANER Log Report. Thank you AdwCleaner_Debug.log
  12. Hi. My Microsoft Security Essentials Scan found Occamy.B this morning! I used Security Essentials' delete function to remove it but I'm worried the virus is still kicking around my drive. I did some malwarebytes scans after that but they didn't catch anything. I noticed a few posts here where the experts suggested using Farbar Recovery Scan Tool to create a log. So that's what I did. Here's that along with the Addition.txt file from the scan. Any assistance would be greatly appreciated! FRST.txt Addition.txt
  13. Hi. So I have this problem that i notice when i visit Fancentro.com (NSFW) i get redirected to patriarchia.ru Fancentro.com is the only webpage that I have noticed this redirect. There is no other page that is effected. I have scan my computer with Malwarebytes Premium Trial manytimes with no luck. So I downloaded windows on another computer and made a USB Windows installer. Then i formatted my windows drive and installed a clean copy from the flash drive. When the new windows is installed the problem goes away for a day or so. Then I notice that my computer freeze up or act strange. Then when I go to fancentro.com again the problem is back. So this virus, malware or what it is manage to comeback everytime. On my last reset I did not visit any unknown trusted webpages so could not have gotten it again from the same location. Please help me solve this. Cheers. Addition.txt FRST.txt Malewarebytes.txt
  14. Hello, I would really appreciate some helps as my laptop seems infected with Malware... I never wanted to download something illegal, so when I did not want to buy the software, I will always try to download the free version. I read the description and it was written that this is the lite version of the software, so it is completely free. Today I think I missed this one since when I tried to install, suddenly there is kind of web browser called 'Chromium' popped up like 2-3 times. I tried to close it and I did not know it is automatically pinned on the taskbar. When I see the task manager, there is 'Chromium Host Executable' as shown below: I tried to end task but it does not work. I also tried to find the program to be uninstalled but it does not shown in the uninstall program. Yet, it happen to be found in the AppData\Local. So I deleted the file and the computer demand to be restart. After restart, the document is gone but the 'Chromium Host Executable' still shown in task manager. Then when I checked the AppData\Local, there is strange file shown: There are IconChache, IconChace.db.backup, oobelibMkey, Resmon also files Temp, mbam and mbamtray. I never see there files before. I did not open this file because I am afraid this will cause harm to my computer. I already did full scan using my antivirus and Malwarebytes, yet nothing happened. So far I did not experience something strange on my computer but I am afraid this might affect the later on. I was hoping for a quick answer as I am out of things to do. I downloaded FRST and did a scan, files are attached. I would really appreciate for your kind help. Note: as I aware of these files, I immediately copy all the data into my harddisk, and delete all my work file from my computer. Will the malware also get inside the harddisk? Thanks, Lys. Addition.txt FRST.txt
  15. Hello. I have the O.YourNewContent Malware on my MacBook Pro. Why has my Malwarebytes Premium allowed this to happen, without blocking or quarantining or notifying me of it? Why are we expected to pay so much money for the promise of "THE BEST ANTI-MALWARE PROGRAM" when it doesn't deliver? MalwareBytes BITES!!! Please provide a quick resolution. Thanks, Joseph
  16. Aww man, i got a trojan. Trojan:Win32/Azden.A!cl Windows defender says it is severe, and it says it may not be fully removed, even though ive deleted the file. I've tried a malwarebytes scan, but it says im all protected. I want to be 100% sure i dont have it. its in C:/Users/(my name)/downloads and then after that, the infected files are there, windows defender says, even though ive already deleted it and it doesn't appear.
  17. I need some help, i have some issues about malware and i downloaded malwarebytes, and there is the result, what should i do next?
  18. Have been following some of the instructions on how to remove searchmine and have been unsuccessful. Homepage says it is yahoo.com. It is greyed out and will not allow a change. New tabs open as searchmine. Any advice out there?
  19. I wonder why Produkey is being flagged as Malware? I guess the MWB team don't like this one. Generic.Malware/Suspicious, E:\PRODUCT KEY FINDERS\PRODUKEYZIP\PRODUKEY\PRODUKEY.EXE, No Action By User, [0], [392686],1.0.12833 And, I have another Pup that's been Quarantined for a long time and forgot about it. Could someone help me with these? PUP.Optional.InstallCore, HKU\S-1-5-21-2980750377-741722422-2426231483-1000\SOFTWARE\CSASTATS\ic, Quarantined, [411], [586068],1.0.8455 MWB ic Reg Key Problem.txt MWB PRODUKEY.txt
  20. Hi, I have 10 days old HP Z2 G4 workstation with windows 10 64 bit workstation, couple of days back i noticed the fan speed is high (Noisy), strange thing is when i open the task manager the CPU usage drops from upto 65% to 1% to 5%, I have scanned with Malwarebyte (enabling Scan for rootkits and Scan within archives), Windows defender and adwcleaner, couldn't find any threats. Could you please help me to identify the issue and resolve it. Many thanks - Prathap
  21. Hi, I wan't to analyze malware that communicate with TLS protocol to hide it's activity, my problem is I can't find this specification on the malware analysis sites. So, I wanna get a comprehensive database of malware to better identify the threats and how we can handle this type of advanced attacks. Thank you.
  22. Hi everyone As mentioned above, I have installed a fake copy of KMSpico and now my computer has been infected by a series of trojans, malware, and adware. Although I tried to remove everything through the use of Adwcleaner, Malwarebytes and hitmanpro, I think my computer is still not clean since there's always a notification that says my antivirus protection has been turned off right after startup. Malwarebytes detected nothing on the computer as of now so I'm not too sure what to do at this point to get rid of the remaining trojan lurking in the background. I'll attach my Farbar scanlog and the addition text file here for reference. Thank you so much in advanceFRST.txtAddition.txt
  23. a popup started to come on my google screen saying flash was going to be deleted or something like that, and i tried to play a flash game online so i downloaded it, and i think that might be what gave me a virus because i didn't download anything else, today i tried to scroll down in google and my zoom was set as my scroll so i couldn't scroll down, and my keybindings were all messed up, most letters didn't even work and some just sent me to my history by just clicking a letter. so I couldn't type in google, or in my search engine to restart my PC. i kept trying to scan through malware bytes and it came up with a potentially unwanted program every time, and then closed google, i tried to see what might be harmful in downloads but when i looked there was nothing there and then it quickly had a popup saying that download history was deleted undo? but i couldnt click it. I managed to get into settings and reset and i seem to be able to type and stuff now, but malware bytes still detects it and closes google every time i scan it, it comes up in the Heuristic Analysis. and google still doesnt detect anything when clicking "clean up computer" in settings.
  24. A few days ago I restarted my computer before a long time without re-starting it (like 1 week with the pc on) and I noticed that "Explorer.exe" was requesting to initialize, but the real explorer.exe task was already running... I said no but then I checked the directory of the file and the system said that the file was on %windir%/resources/themes, well going into folder to check if the file exists I noticed that theres nothing more than aero themes in this folder. So did a scan in the folder using malwarebytes and it recognized svchost.exe malware and explorer.exe, before adding they do quarentine I wanted to check why the files didnt apeared, so I enabled "show hidden folders" in explorer (the real one, from microsoft) and it changed nothing, well, so I tried to open the archive by going with %windir%/resources/themes/explorer.exe in the explorer path, it worked, but I still uncapable of seeing this file... So I started CMD as admin and did " cd " to %windir%/resources/themes and did " dir " inside the folder, as I expected the dir shows the same as explorer, but appeared 2 new items that the was named as " . " and " .. " I deleted both sucessfully. Searching for this in internet I found that there's an other way to hide files in windows, that was adding them to" important system files or protected system files" list, and following the instructions to disable this privilege, I finally could see the archives, well, I added them to the quarentine list and continued using my computer since yesterday that I realized that everytime malwarebytes send two addwares to quarentine (I left the results of scan in the post as "Annoying addware.txt") they come back right after I finish the task... When trying to solve these issues I realized many things... 1- I cant use commands as DISM, sfc /scannow, windows update, windows defender( I will let write happens when i try to use them bellow this part) , net start/stop wuauserv (the wuauserv service doesnt even exists in registry, I didnt checked windows defender one...) 2- there was a folder called QEMU hidden with the "important system files" method, I deleted all content Inside and then deleted the folder after taking out the folder privilegies 3- Theres two "program" files in "Inicialize" section of task manager wich I cant go to proprieties ( I dropped the print down on anexed files named as "Program" unknow files) When I try to use with /checkhealth everything go fine, but when I try to use dism with /restorehealth it stops at 87,5% and gives an error 1060 messages saying " the specified service does not exist as an installed service " ( I left the DISM log file right bellow named as DISM.txt ) When I try to use sfc /scannow it says that cannot fix all issues When i try to use windows update it says that my organizations disable windows updates ( ? ) When I try windows defender it just goes black screen on the window Well, it would be great if someone could help me, I dont really want to re-install windows... I would take a month to setup my pc again Also, I run Windows 10 Pro 64bits, version 1809... dism.log Annoying Adware.txt Rkill.txt FRST.txt Addition.txt
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.