# Search the Community

Showing results for tags 'undetected'.

• ### Search By Tags

Type tags separated by commas.

### Forums

• Announcements
• Malwarebytes News
• Beta Testing Program
• Malware Removal Help
• Windows Malware Removal Help & Support
• Mac Malware Removal Help & Support
• Mobile Malware Removal Help & Support
• Malware Removal Self-Help Guides
• Malwarebytes for Home Support
• Malwarebytes for Windows Support Forum
• Malwarebytes for Mac Support Forum
• Malwarebytes for Android Support Forum
• Malwarebytes for iOS Support
• Malwarebytes Privacy
• Malwarebytes Browser Guard
• False Positives
• Malwarebytes Nebula
• Malwarebytes Nebula Modules
• Malwarebytes Endpoint Security
• Malwarebytes Tools and Other Products
• Malwarebytes Junkware Removal Tool Support
• Malwarebytes Anti-Rootkit BETA Support
• Malwarebytes Techbench USB (Legacy)
• Malwarebytes Secure Backup discontinued
• Other Tools
• Malwarebytes Tools Comments and Suggestions
• General Computer Help and Security Updates
• BSOD, Crashes, Kernel Debugging
• General Windows PC Help
• Research Center
• Newest IP or URL Threats
• Report Scam Phone Numbers
• General
• General Chat
• Forums Announcements & Feedback

• 0 Replies

• 0 Views

Found 16 results

2. ## smart coin miner

Hello, for a while now I have problems with some miners . Idk if its worldwide or they are targeting just https://www.cloudsouth.com/ I have 20+ servers from them and most of them are with miners. I reinstalled the OS a few times and soon after the servers will become infected again. I think they are bruteforcing them. I started using 24 characters for passwords on newly reinstalled servers. Here's a report from malwarebytes. (attached below) Even if malwarebytes cleaned the system, and a new check will result in a "clean" pc, the virus is still there and its not being detected. If I open Task Manager , the virus will instantly pause itself and the pc/server will start working normally. A few minutes later the virus will close the task manager and it will start itself. The pc/server will start to lag hard as the virus is using 90% of cpu when its running. Doing a virus scan without opening task manager is impossible. It won't even start. the pc is lagging that hard. Updated windows defender won't pick it up either. In task manager is using some of the following names SHELLEXPERIENCEHOST1.EXE Windowsshellexperiencehost.exe Windowsshellexperiencehoste.exe Windowsshellexperiencehostp.exe Any idea how can I remove these pesky miners? I can provider access via RDP to some infected servers. NP Bitcoin miners report.txt
3. ## Fileless Malware? Looking for Insight.

Hello, I have been using my computer with out issues, and still without any performance ones. Although I have been experiencing lots of suspicious things on my pc happening, i don't know if they really are caused by malware but i would like to assume so. None of my scanners pick up anything they always come up clean, I use malwarebytes premium as well as the full version of superantispyware. And windows defender is enabled, windows 10. So what i have been encountering is an icon popping up very quickly and then disappearing on my taskbar. the icon doesn't show more than the blackbox and the blueline underneath before it disappears but will tab me out of a game etc. Also my taskbar and desktop icons flash/refresh randomly sometimes but only flash once. Also i started getting audio pops randomly but prob just headphones maybe. And the next one is my cursor, when it changes from hovering over text to something i can click it will sometimes glitch and bulge in size. I can also see a second text cursor pop up on the right side of the glitching cursor in some cases. I would be willing to send a video from my phone of it happening if needed. My pc runs fine though, but i do idle around 30% of memory used it could be the malware but I'm not sure. Just really looking for someone to tell me what they think and maybe help me fix the issues.
4. ## malware undetected

Hello there, So I have this malware that makes a popup to a porn site after I open Firefox browser (or possibly the computer) then disappears. I check the task manager. The popup opens a logo just like Firefox however the image is not the same and looks different. You can tell by the image I uploaded. I found out its location in my Appdata/Roaming/ComObj/update.exe Then I found out its also running a service which i will mention the name of it later after I give my laptop a restart Besides that I am assuming its a trojan of a sort as its simply is just running while your working or whatever. I disabled however it runs everytime i start up the laptop again. Now I will simply say that not one single anti-virus software or anti malware has detected it. I am sharing a copy of the file. I am an IT dude however I have no expertise when getting rid of something that cant be detected but I always do know when I am infected... I am new so please, If I have done anything wrong or posted this in the wrong place I apologize from now... Besides that any help on the matter would be greatly appreciated! Ur man THE RAGING IT dude update.7z

6. ## URL Hijacking malware

Malwarebytes can't seem to detect the virus. Here is a screenshot of it in action It every so often changes urls too, I have also attached results of the farbar scans. This malware is extremely frustrating, any help would be appreciated. Much thanks in advance. Addition.txt FRST.txt

16. ## Cannot detect malicious files after a second scan

I recently ran a quick scan on Malwarebytes Antimalware and it detected 4 malicious software. It asked me if I wanted to delete it, and I canceled it because I wanted to delete it in the full scan I was about run. But, I ran a quick scan a second time and it found no malicious software, even though I did not delete them the first time. What happened to them? I want to delete these files but they went undetected. I even restarted my computer and reinstalled Malwarebytes Antimalware, but still nothing was detected in the quick scan.
×

• Back
• Learn

• Blog
• #### Support

×
• Create New...