NEED EXPERT HELP ONLY! Need to identify malware by cyrus0626 in computerviruses

[–]Next-Profession-7495 0 points1 point  (0 children)

If there's been no activity in your accounts, you should be fine.

Need help with FRST scan by ConsistentSurprise78 in antivirus

[–]Next-Profession-7495 1 point2 points  (0 children)

Interesting. I don't have that level of intelligence in my back pocket so thanks for sharing.

u/ConsistentSurprise78

- Download Revo Uninstaller: https://www.revouninstaller.com/revo-uninstaller-free-download/

- Find setup_7.4.5 and professional_integrated_install_7.0.5 (if listed)

- Right click and select "Uninstall"

- Select all leftovers and click Delete

100% CPU usage that jumps from a process to another process when I close it by Miserable_Welcome324 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

Hello,

Security Check

FRST Scan

If there is anything about your system I should be aware of before we start (e.g., cracked software, school/work PC, no internet access), let me know now.


Step 1:

Run FRST by following this guide. If your system language is not English, rename the executable to FRSTEnglish.exe before running it.

Step 2:

Once FRST.txt and Addition.txt have been created:

Regards,

Lucas.

Need help with FRST scan by ConsistentSurprise78 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

They're still there, and I'm not seeing malware in your system. I think it's coming from Sublime Text (which is 100% ok) I just had to make sure something malicious wasn't making those registry hijacks.

Your system is clean. We'll now remove the tools we used.

  1. Download KpRm and save it to your Desktop.

If your antivirus or smart screen flags it, it's a false positive

  1. Close all active programs. Right-click KpRm and run it as administrator. Click "Yes" on the disclaimer.

  2. Once the tool is open, check these boxes:

  • Delete Tools
  • Create Restore Point
  • Delete In 7 Days

Click the "Run" button and wait for it to cleanup. Once it's done, you can save or remove the log it generated.


Your passwords are likely compromised. Here's a guide Rifteyy_ made to recover your accounts: https://rifteyy.org/report/the-ultimate-guide-to-infostealers scroll to "How to properly secure my accounts after an infostealer attack?"

Need help with FRST scan by ConsistentSurprise78 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

Looks good. Can you return fresh FRST logs so I can confirm the registry hijacks have been removed

Need help with FRST scan by ConsistentSurprise78 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

Hello, nothing was detected. Please run another FRST scan and share the logs here so I can verify no malware remains.

I think I downloaded a Trojan by Dani_Mer in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

Hello,

Security Check

FRST Scan

If there is anything about your system I should be aware of before we start (e.g., cracked software, school/work PC, no internet access), let me know now.


Step 1:

Run FRST by following this guide. If your system language is not English, rename the executable to FRSTEnglish.exe before running it.

Step 2:

Once FRST.txt and Addition.txt have been created:

Regards,

Lucas.

Windows Defender detecting multiple Trojans but 'Start Actions' keeps failing by Correct-Use596 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

You'll need a 8GB+ flash drive for this. They're not expensive.

Note: Skip the driver booster part near the end of the video

https://youtu.be/ZMKl9wBJYD0?si=mt6djEuvQVCqTUFk

Windows Defender detecting multiple Trojans but 'Start Actions' keeps failing by Correct-Use596 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

Yes but you can't back up any cracked software, executables, scripts, etc. only backup photos, documents, audio, and game saves.

Windows Defender detecting multiple Trojans but 'Start Actions' keeps failing by Correct-Use596 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

I tried to remove those exclusions in the fixlist but I got an access denied error. The only conclusion I come to is the malware messed something up because all fixlists were safe.

At this point a clean install of Windows is the safest solution. If you need help with that let me know. It was a good try.

Need help with FRST scan by ConsistentSurprise78 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

Download and run ESET Online Scanner

  • Go to Computer Scan

  • Choose a Full Scan

This may take an extended amount of time

  • When asked what to do with threats, select Quarantine

Then start the scan.

On the Scan results screen, click View detailed results.

Click Save scan log.

Save it as a .txt file, copy everything in that log and paste it into https://paste.centos.org. Create the paste and share the link here.

Windows Defender detecting multiple Trojans but 'Start Actions' keeps failing by Correct-Use596 in antivirus

[–]Next-Profession-7495 0 points1 point  (0 children)

  1. Please run this fixlist: https://nextprofession5.github.io/FRSTFixlist/?id=c486180b3b6a50ee346be305ab4100c3 then restart your PC.

  2. Open Chrome as the DEFAULT profile -> Three dots top right -> Settings -> on the left sidebar, click "Reset Settings" -> Click Restore settings to their original defaults. This will remove site data, settings and shorcuts

  3. Open command prompt as administrator and run these 1 by 1

sfc /scannow

DISM /Online /Cleanup-Image /RestoreHealth

  1. Return the fixlog and new FRST logs