SilveraPlanet Posted January 28, 2023 ID:1552011 Share Posted January 28, 2023 Escribiré en español ya que se me hace más cómodo. Yo he descargado un archivo .exe que es potencialmente malicioso, pero no lo ejecuté en ningún momento, es posible que pueda estar infectado? Link to post Share on other sites More sharing options...
Maurice Naggar Posted January 28, 2023 ID:1552020 Share Posted January 28, 2023 Hola y bienvenido. Yoy escribió que descargó un archivo EXE sospechoso pero no lo abrió. Dado que cree que es sospechoso, mi consejo honesto es eliminar ese archivo. soy curioso ¿Cuál es el nombre del archivo? De donde lo sacaste ? y por qué ? Link to post Share on other sites More sharing options...
SilveraPlanet Posted January 30, 2023 Author ID:1552240 Share Posted January 30, 2023 Es un archivo que al escanear, me di cuenta que era sospechoso, pero no lo abrí en ningun momento, si lo elimino, no estaría infectado? Link to post Share on other sites More sharing options...
SilveraPlanet Posted January 30, 2023 Author ID:1552242 Share Posted January 30, 2023 Ya que Malwarebytes no lo pudo detectar, pero Virustotal sí. VirusTotal - File - 3385c0d4eaefbda76bc9d077e4e169c08eb520c0d2951a47528ced04cd9851c5 Link to post Share on other sites More sharing options...
SilveraPlanet Posted January 30, 2023 Author ID:1552243 Share Posted January 30, 2023 Es segura mi PC en este momento, a pesar de haber descargado eso, pero luego haberlo eliminado? (jamás ejecuté ni abrí el archivo .exe dentro del .zip) Link to post Share on other sites More sharing options...
Maurice Naggar Posted January 31, 2023 ID:1552364 Share Posted January 31, 2023 As long as you deleted the file, your system should be OK. Deleting that file removes the threat. May I presume that your Windows is Windows 10 or Windows 11 and has the Microsoft Defender antivirus. Do a custom scan with Microsoft Defender Antivirus Just want to do a visual check in Windows Security to see (visually) that Microsoft Defender is on , and to do a Custom scan. From the Windows Start menu, select Settings, then select Update and Security. Next, look at the left-side menu & select Windows Security Next, In Windows Security section: Click on the grey button Open Windows Security Now, click on the shield Virus and threat protection Look to see that Microsoft Defender is shown & available for use. On the next display, look at all the options. Look down the list and see "Check for Updates" . You should click on that to have the system check for updates for Windows Defender. Watch & wait for that to complete. Please also note that the Scan options (all) can be displayed by clicking on Scan options. Click that & select CUSTOM scan & then pick the C drive & have it go forward. Once it has started the scan phase, you can go take a long break. 1 Link to post Share on other sites More sharing options...
SilveraPlanet Posted January 31, 2023 Author ID:1552367 Share Posted January 31, 2023 1 hour ago, Maurice Naggar said: As long as you deleted the file, your system should be OK. Deleting that file removes the threat. May I presume that your Windows is Windows 10 or Windows 11 and has the Microsoft Defender antivirus. Do a custom scan with Microsoft Defender Antivirus Just want to do a visual check in Windows Security to see (visually) that Microsoft Defender is on , and to do a Custom scan. From the Windows Start menu, select Settings, then select Update and Security. Next, look at the left-side menu & select Windows Security Next, In Windows Security section: Click on the grey button Open Windows Security Now, click on the shield Virus and threat protection Look to see that Microsoft Defender is shown & available for use. On the next display, look at all the options. Look down the list and see "Check for Updates" . You should click on that to have the system check for updates for Windows Defender. Watch & wait for that to complete. Please also note that the Scan options (all) can be displayed by clicking on Scan options. Click that & select CUSTOM scan & then pick the C drive & have it go forward. Once it has started the scan phase, you can go take a long break. I've done a full custom analysis and it says it is totally clean, thank u! Link to post Share on other sites More sharing options...
Solution Maurice Naggar Posted January 31, 2023 Solution ID:1552390 Share Posted January 31, 2023 That is good. I suggest the following: This is for a scan with ESET Onlinescanner (free). ESET is a well-respected, well-known entity and tool. This here you can start & once it is under way, you can leave the machine alone & let it run over-night. No need to keep watch once it starts the actual scan run. Next, This will be a check with ESET Onlinescanner for viruses, other malware, adwares, & potentially unwanted applications. Go to https://download.eset.com/com/eset/tools/online_scanner/latest/esetonlinescanner.exe It will start a download of "esetonlinescanner.exe" Save the file to your system, such as the Downloads folder, or else to the Desktop. Go to the saved file, and double click it to get it started. When presented with the initial ESET options, click on "Computer Scan". Next, when prompted by Windows, allow it to start by clicking Yes When prompted for scan type, Click on CUSTOM scan and select C drive to be scanned Look at & tick ( select ) the radio selection "Enable ESET to detect and quarantine potentially unwanted applications" and click on Start scan button. Have patience. The entire process may take an hour or more. There is an initial update download. There is a progress window display. You may step away from machine &. Let it be. That is, once it is under way, you should leave it running. It will run for several hours. At screen "Detections occurred and resolved" click on blue button "View detected results" On next screen, at lower left, click on blue "Save scan log" View where file is to be saved. Provide a meaningful name for the "File name:" On last screen, set to Off (left) the option for Periodic scanning Click "save and continue" Please attach the report file so I can review 1 Link to post Share on other sites More sharing options...
SilveraPlanet Posted January 31, 2023 Author ID:1552393 Share Posted January 31, 2023 13 minutes ago, Maurice Naggar said: That is good. I suggest the following: This is for a scan with ESET Onlinescanner (free). ESET is a well-respected, well-known entity and tool. This here you can start & once it is under way, you can leave the machine alone & let it run over-night. No need to keep watch once it starts the actual scan run. Next, This will be a check with ESET Onlinescanner for viruses, other malware, adwares, & potentially unwanted applications. Go to https://download.eset.com/com/eset/tools/online_scanner/latest/esetonlinescanner.exe It will start a download of "esetonlinescanner.exe" Save the file to your system, such as the Downloads folder, or else to the Desktop. Go to the saved file, and double click it to get it started. When presented with the initial ESET options, click on "Computer Scan". Next, when prompted by Windows, allow it to start by clicking Yes When prompted for scan type, Click on CUSTOM scan and select C drive to be scanned Look at & tick ( select ) the radio selection "Enable ESET to detect and quarantine potentially unwanted applications" and click on Start scan button. Have patience. The entire process may take an hour or more. There is an initial update download. There is a progress window display. You may step away from machine &. Let it be. That is, once it is under way, you should leave it running. It will run for several hours. At screen "Detections occurred and resolved" click on blue button "View detected results" On next screen, at lower left, click on blue "Save scan log" View where file is to be saved. Provide a meaningful name for the "File name:" On last screen, set to Off (left) the option for Periodic scanning Click "save and continue" Please attach the report file so I can review I had run that software yesterday, and it came out absolutely clean, I should assume it is totally clean? or I could try other things? Link to post Share on other sites More sharing options...
Maurice Naggar Posted January 31, 2023 ID:1552394 Share Posted January 31, 2023 Alright. I understand. I suggest a different scan with another security scanner. This with Kaspersky KVRT tool. Download Kaspersky Virus Removal Tool (KVRT) from here: https://www.kaspersky.com/downloads/thank-you/free-virus-removal-tool and save to your Desktop. Next, Select the Windows Key and R Key together, the "Run" box should open. Drag and Drop KVRT.exe into the Run Box. C:\Users\YOUR-user-login\DESKTOP\KVRT.exe will now show in the run box. add -dontencrypt Note the space between KVRT.exe and -dontencryptC:\Users\YOUR-user-login\DESKTOP\KVRT.exe -dontencrypt should now show in the Run box. That addendum to the run command is very important. To start the scan select OK in the "Run" box. The Windows Protected your PC window "may" open, IF SO then select "More Info" A new Window will open, select "Run anyway" A EULA window will open, tick both confirmation boxes then select "Accept" In the new window select "Change Parameters" In the new window ensure the following boxes are ticked: System memory Startup objects Boot sectors System drive Then select "OK" and „Start scan“. The Kaspersky tool is very thorough so will take a considerable time to complete, please allow it to finish. Also while Kaspersky runs do not use your PC for anything else.. completed: If entries are found, there will be options to choose. If "Cure" is offered, leave as it is. For any other options change to "Delete", then select "Continue". Usually, your system needs a reboot to finish the removal process. Logfiles can be found on your systemdrive (usually C: ), similar like this: Reports are saved here C:\KVRT_data\Reports and look similar to this report_20230131_103000.klr Right click direct onto those reports, select > open with > Notepad. Save the files and attach them with your next reply Link to post Share on other sites More sharing options...
Root Admin AdvancedSetup Posted February 9, 2023 Root Admin ID:1553808 Share Posted February 9, 2023 Due to the lack of feedback, this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request. This applies only to the originator of this topic. Other members who need assistance please start your own topic in a new thread. Tips to help protect from infection Thanks Link to post Share on other sites More sharing options...
Recommended Posts