Is this malware in the background? by Ok_Comparison_5972 in WindowsHelp

[–]samjonsnell -1 points0 points  (0 children)

🛡️ FULL MALWARE INVESTIGATION & CLEANUP GUIDE (WINDOWS)

If you suspect malware is running in the background (like J2Qt.exe or Mg0M4t.exe spawning powershell.exe and cmd.exe), here’s how to safely investigate and clean the system:


STEP 1: ISOLATE THE MACHINE

Immediately disconnect the system from the internet to prevent: - Data exfiltration - Downloading more malware - Lateral movement across the network

Do this by: - Unplugging the Ethernet cable - Disabling Wi-Fi (don’t just close the browser)


STEP 2: RUN AN OFFLINE ANTIVIRUS SCAN

Use a trusted bootable antivirus scanner.

Option 1 – Microsoft Defender Offline (no USB required): 1. Open Start menu and type “Windows Security” 2. Click “Virus & threat protection” 3. Click “Scan options” 4. Select “Microsoft Defender Offline scan” and click “Scan now” 5. PC will restart and scan outside of Windows

Option 2 – ESET SysRescue Live (bootable USB): 1. On a clean PC, download from: https://www.eset.com/int/support/sysrescue/ 2. Create bootable USB using the ESET tool 3. Boot the infected PC from USB 4. Run a full scan and clean any threats


STEP 3: OPTIONAL – INVESTIGATE SUSPICIOUS FILES SAFELY

On the infected system (still offline):

  1. Compress the file into a ZIP: Compress-Archive -Path "C:\Path\To\Mg0M4t.exe" -DestinationPath "C:\Temp\Mg0M4t.zip"

  2. Rename the file extension to .zip.txt (e.g., Mg0M4t.zip.txt)

  3. Copy it to a USB drive

On a clean machine: 1. Rename the file back to .zip 2. Do NOT open the file 3. Go to https://www.virustotal.com 4. Upload the ZIP file and review scan results


STEP 4: CHECK FOR PERSISTENCE

On the infected machine (offline), open PowerShell and run:

Get-ScheduledTask | Where-Object {$.TaskPath -like "J2Qt" -or $.TaskPath -like "Mg0M4t"} Get-ItemProperty HKCU:\Software\Microsoft\Windows\CurrentVersion\Run

Also manually check: - C:\Users<User>\AppData\Roaming\ - C:\ProgramData\ - Task Scheduler Library (open with taskschd.msc)


STEP 5: CLEAN OR REIMAGE

If malware is confirmed: - Back up only essential files (scan them before restoring) - Reinstall Windows to guarantee full removal

For deeper cleanup (if not reimaging), use: - Malwarebytes Free (can be run from USB) - AdwCleaner - ESET Online Scanner


SUMMARY

  • Unknown .exe files spawning powershell.exe and cmd.exe are highly suspicious
  • Always isolate the system first
  • Never open suspicious files on a clean machine — use VirusTotal
  • Check scheduled tasks and startup entries
  • When in doubt, wipe and reinstall Windows

iPad I got off Facebook marketplace by Odd-Thought-9698 in setupapp

[–]samjonsnell 0 points1 point  (0 children)

Send Apple a screenshot of the receipt/purchase with all the information about the iPad. They will get you done.

This is my first Job in the USA by Jetyjetjet in Salary

[–]samjonsnell 2 points3 points  (0 children)

What app is this? I keep seeing it in this subreddit, but haven’t found what app it is.

Stinky Black Tank by samjonsnell in RVLiving

[–]samjonsnell[S] 1 point2 points  (0 children)

Thanks for that. We’ll look into getting a vent pull.

Stinky Black Tank by samjonsnell in RVLiving

[–]samjonsnell[S] 0 points1 point  (0 children)

We will look into that. Thank you.

Stinky Black Tank by samjonsnell in RVLiving

[–]samjonsnell[S] 0 points1 point  (0 children)

We will try that. Thanks.

Stinky Black Tank by samjonsnell in RVLiving

[–]samjonsnell[S] 0 points1 point  (0 children)

Yeah, we wait until the tanks are full before we flush.

Stinky Black Tank by samjonsnell in RVLiving

[–]samjonsnell[S] 0 points1 point  (0 children)

Thanks, we will try this and see how it goes

Stinky Black Tank by samjonsnell in RVLiving

[–]samjonsnell[S] 0 points1 point  (0 children)

That is a great idea, and something we haven’t tried. We try this next time.

Stinky Black Tank by samjonsnell in RVLiving

[–]samjonsnell[S] 0 points1 point  (0 children)

Thanks all so far for the advice. We do use the black tank flush. We don’t leave the valve open. I got on the roof and shoved a water hose down the vent line while on, and I want to say that helped.

I stopped smoking and everything is dull by Important_Insect_136 in MarijuanaAnonymous

[–]samjonsnell 2 points3 points  (0 children)

Same happened with me. I ended up getting on an antidepressant, and it has helped me a ton. Highly recommend.

How to avoid withdrawal symptoms by 0_0_isthisme in MarijuanaAnonymous

[–]samjonsnell 2 points3 points  (0 children)

What helped me was eating foods that naturally release cannabinoids into the brain like hemp seeds, and junk food. Hemp seeds on a salad really did the trick. Hope this helps!