Jump to content

Ransom.OSX.Findzip Ransomware


Recommended Posts

Malware bytes picks it up as it scans it but doesn't give me the option to remove it. I see the process wQqxiSfg running in the activity monitor and always uses 99% of my CPU, I have a feeling i'm being cryptojacked. I did some googling on "Ransom.OSX.Findzip" and I found that it was linked to torrenting/piracy, but I only found people talking about a text file opening demanding ransom payment for files in bitcoin, nothing about the process that keeps opening and using my CPU. Regardless, why Isn't malwarebytes allowing me to remove it when it picks it up? And what can I do about this? 

Link to post
Share on other sites

When you run a scan, detect threats and authorize their removal, they are moved to a special Malwarebytes folder called Quarantine. Threats which have been moved into Quarantine cannot harm your computer. They are neutralized as part of the Quarantine process, and can be processed further at any time. When real-time protection detects a threat, that threat is also moved to the Quarantine folder. If you want to inspect the contents of the Quarantine folder, click Show Quarantine on the Quarantine screen. That will open a new system window showing the contents of the Quarantine folder. That system window is only there for your inspection. If you wish to delete the contents of the Quarantine folder, you should click Clear Quarantine in the MalwarebytesQuarantine screen. You will be presented with a confirmation window before the deletion takes place. Sometimes your computer must be restarted to complete remediation of threats that were detected. Restarts necessitated by real-time protection detections will show a notification. If a restart is required to complete remediation of threats detected during a scan, the a different notification is shown instead. When a restart is required, please remember to save all work before clicking Restart.

At what point does Malwarebytes not give you the option to remove it? If you get an error message, exactly what does it say? If possible provide a screen shot.

Findzip hasn't been seen very often for awhile now, so this may be something relatively new. What is the name of the file(s) moved to Quarantine? Don't clear it until we know if it's something new.

The only reference I could find to wQqxiSfg was this question last month, but was never resolved 

 

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.