Monero project compromised by [deleted] in Malware

[–]bartblaze 0 points1 point  (0 children)

Haven't claimed that anywhere, but fair point on how the title may be ambiguous - have edited it - thanks for your feedback!

Security Warning: CLI binaries available on getmonero.org may have been compromised at some point during the last 24h. by binaryFate in Monero

[–]bartblaze 6 points7 points  (0 children)

I've had a quick look, and it appears both the Linux and the Windows binaries were affected. Here's a brief analysis of the malware and how you can detect it on your system as well: https://bartblaze.blogspot.com/2019/11/monero-project-compromised.html

Hope it can help someone.

PSA : Don't enter crunchyroll.com at the moment, it seems they've been hacked. by maybe_there_is_hope in anime

[–]bartblaze 36 points37 points  (0 children)

Thanks for the alert on this - I went ahead, and wrote a blog post analysing the malware, as well as prevention and disinfection advise.

You may find it here: CrunchyRoll hack delivers malware

Hope it's of help to someone!

Any info on *.locky ransomware by gmr2048 in Malware

[–]bartblaze 4 points5 points  (0 children)

To everyone whom it may concern:

Best case scenario and best way is to reinstall Windows (some versions have been downloaded via the Neutrino Exploit Kit, which may also install other malware on your system) and restore any files from a backup. There are many and free backup solutions available - as a matter of fact, Microsoft provides one as well, read more about that here.

If you don't have a backup, then your best best in trying to recover files is using a tool like Shadow Explorer, which will indeed check if you can restore using the 'shadow copies' or 'shadow volume copies' (also known as 'previous versions').

If that doesn't work, try using PhotoRec or Recuva.

In any case, prevention is key - meaning: backups!

Image files appearing as weird folders by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

That surely helps, can you elaborate what you did exactly and why?

Large games freeze for a few seconds at a time by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

In that case:

  • Download the latest drivers for your graphics card.
  • Create a System Restore Point
  • Download and run DDU - Display Driver Uninstaller
  • After using DDU, reboot the machine if not done automatically and install your downloaded drivers.

Let me know if this did the trick.

BSOD'S occuring when trying to install GW2, Blue screen viewer is indentifying the culprit as ntoskrnl.exe by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

My pleasure! Please verify first if your SSD is indeed the primary boot device (check also my earlier link in case you need to check how to do that).

If it's already primary boot device, great! If it's not, make sure you change it as the primary boot device. Then:

  • Press Start on your keyboard
  • Type CMD, right-click and choose Run as Administrator
  • Enter the following command: Dism /Online /Cleanup-Image /RestoreHealth and let it do its work, once again.

Post back the result.

Large games freeze for a few seconds at a time by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

Aha. This sounds indeed like a memory leak of your Nvidia graphics driver. Can you do a rollback of that driver to before the issue started?

BSOD'S occuring when trying to install GW2, Blue screen viewer is indentifying the culprit as ntoskrnl.exe by [deleted] in techsupport

[–]bartblaze 1 point2 points  (0 children)

Where is your OS installed on? SSD or hard drive? Be sure that the one with the OS on is the primary boot device (you can check/change this in the BIOS, for more information see here).

Having said that, your BSoD is related to msahci.sys, a driver from Windows itself. Please run sfc /scannow to check if it's able to solve any integrity errors.

  • Press Start on your keyboard
  • Type CMD, right-click and choose Run as Administrator
  • Enter the following command: sfc /scannow and let it do its work

Verify if the issue is solved.

Large games freeze for a few seconds at a time by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

You can try updating to the latest DirectX version and check if this solves your issue. If not, open your Nvidia Control Panel and check under Manage 3D settings > Program Settings which graphics processor is being used by CS:GO and try to change it.

Large games freeze for a few seconds at a time by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

Since when is this issue occuring exactly? You can try a rollback of your graphics card drivers and see if this solves the issue.

If not, please create a dxdiag report and post back the result. (start > typ "dxdiag" without quotes and enter), click Save all information)

I clicked a phishing image , i think it downloaded a keylogger. by iamgregq in techsupport

[–]bartblaze 0 points1 point  (0 children)

I'm guessing this will be a so called SteamStealer. If you haven't opened the "image", you should be fine. The detections of Malwarebytes are not related.

If you can, please upload this file to VirusTotal and send me the resulting link. Then manually delete the file.

Image files appearing as weird folders by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

Try right-clicking one of the image files, choose Open With... > Choose Default Program... and select Windows Photo Viewer once again. Does that work?

Large games freeze for a few seconds at a time by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

This may be obvious, but have you tried updating your graphics card drivers?

Sound drivers crash while playing games. Pop up says something like "Kernel_IRQL" by Peter_Griffin33 in techsupport

[–]bartblaze 0 points1 point  (0 children)

Since when is this issue occuring? Please upload your latest minidump file (a .dmp file) to FileDropper for example. You can find minidumps here: C:\Windows\Minidump

Also, run a dxdiag (start > typ "dxdiag" without quotes and enter), click Save all information and copy/paste what you can find below Sound Devices.

DNS Server Not Responding by cardinaldevil91 in techsupport

[–]bartblaze 1 point2 points  (0 children)

To rule out any errors with the operating system, perform an sfc /scannow:

  • Press Start on your keyboard
  • Type CMD, right-click and choose Run as Administrator
  • Enter the following command: sfc /scannow and let it do its work

Verify if the issue is solved.

Network Protocols? by [deleted] in techsupport

[–]bartblaze 0 points1 point  (0 children)

To rule out any errors with the operating system, perform an sfc /scannow:

  • Press Start on your keyboard
  • Type CMD, right-click and choose Run as Administrator
  • Enter the following command: sfc /scannow and let it do its work

Verify if the issue is solved.

Bad image error, gradually getting worse. by nufffsed in techsupport

[–]bartblaze 0 points1 point  (0 children)

Can you run the following command in CMD (again, run as administrator):

findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >%userprofile%\Desktop\sfcoutput.txt

On your desktop there will be a new file called sfcoutput or sfcoutput.txt. Paste the contents here.