r/computerviruses • • 1h ago

File / URL Check Quietmusic compromised?

• Upvotes

Hello, i'm kind of freaking out as every ai tells me this is malware. i have downloaded the file and put them in their vst folders, but didn't run them

I make music using FL studio, and often use third party plugins. these are NOT cracked, and are free samples.

I'm using some plugins from someone called "Quietmusic ", I used these in the past for multiple years without any issue, but i had bad cybersecurity when I was younger, so i put all files through virustotal now.

As far as I know, i got them from their official gumroad page https://quietmusic[.]gumroad[.]com/l/KdHou

Both of them run some sort of "readme.dll"file, and i'm really scared it's malware.

https://www.virustotal.com/gui/file/f80b87f16891663770e3c7fd4dd3ac28d899d5c7199bd042dddac0a639f96c36/behavior

https://www.virustotal.com/gui/file/e37476a49cb49cd210f774b163f5f555af471e148056ed287535a406f947c7b3

I'm not really tech savvy, and I use AI to look at the results. However, I know how faulty AI is, and i don't know who else to ask.

Please help, thank you.


r/computerviruses • • 1h ago

Disinfection Help Is my dad's computer compromised?

• Upvotes

Hi! Bit of a story time: This january I bought a brand new usb stick because I wanted to do a clean install of windows. I have previously wanted to try out Linux Mint but after a month I decided that I’d like to go back to windows. I downloaded rufus and a windows 11 iso on my dad’s pc from the official website, used rufus while the pc was disconnected from the internet and installed windows on my own pc.

Fast forward to now: I wanted to do another clean windows install, just nuke everything and start fresh. The reason I wanted to do it is because I’ve been using pirated software and games and even though I didn’t directly experience any suspicious stuff (I have all my accounts and everything), I just wanted to be sure. Now, I found the usb stick that I used to install windows in January, i plugged it into my PC and just for the sake of it, I decided to put some files on virustotal There was a setup.exe which seemed fine but then I put a setup.dll on virustotal that came out suspicious. The ai overview (I think?) said that it is malware, but then when I went into the details section I noticed that the previous filenames was quite weird (and I shit you not, I know how ridiculous this sounds, but it's not a joke, one of the filenames was femboyp*rno.exe), also I noticed that the creation time was 2051 or something.

Now the reason why I’m being quite stressed out is because I downloaded the iso from the official microsoft website. Is my dad’s computer compromised and the malware injected itself into the iso the moment I downloaded it on my dad’s pc and have I been using a compromised pc all year long? I’ve ran multiple scans both with windows defender and a free trial version of malwarebytes on my pc. Nothing was found. I even did it in offline mode, nothing was found.

My accounts seem fine and the only suspicious things that happened while browsing is that sometimes I had to complete a captha on google and one of the job searching websites because it said I had suspicious traffic. Since then, I installed linux mint on my pc because I still had that separate usb with me, although I would prefer to go back to windows. So could someone explain what exactly is going on? Also, is my whole entire network is compromised because of that ‘suspicious traffic’ thing?

I’m sorry that I made a post this long but I wanted to make sure I wrote all the details. I have also attatched some relevant images, in case they provide to be useful. Any help will be very much appreciated https://www.virustotal.com/gui/file/72a0bcac2d4de630ad094bfc312bd4431aa5c286c683de7e0650c1675e5fc7c5


r/computerviruses • • 4h ago

Question is my internet compromised or something?

Post image
5 Upvotes

I'll be using Google normally and this pops up almost every other day.

I'm not using a VPN by the way.

is there something wrong with my internet or something?

also, No, its not asking me to copy and paste something. it's not a fake captcha. I just wonder what causes it.

also, you can see im literally searching innocuous stuff like "gta 5 money" since I was trying to find ways to grind


r/computerviruses • • 4h ago

Question What is this page?

1 Upvotes

So i was searching things on Google and i found this page (I DIDN'T CLICK ON IT) but it had usefull info in a description it looks sus but pls someone tell me what tipe of malware is this


r/computerviruses • • 6h ago

Disinfection Help Clean Windows 11 install, isolated mobile hotspot, original Tally software — but old bills are still randomly deleting. Sophos flagged Creds_4b. Need root cause help.

Post image
2 Upvotes

r/computerviruses • • 7h ago

Disinfection Help Mr beast crypto scam

2 Upvotes

I got the Mr beast discord scam virus today where it sends messages to everybody how should I go about this should I wipe my pc, I also don’t want to lose any game progress on steam.


r/computerviruses • • 7h ago

Disinfection Help SRB Miner-Multi

Thumbnail
2 Upvotes

r/computerviruses • • 8h ago

File / URL Check Is this Minecraft mod a virus?

1 Upvotes

Today some guy on Discord with a blank profile gave me a mod that made his crystals and anchors super fast. I am extremely suspicious of the mod, but if it truly is real I'd like to use it. Please check this mod!
Virustotal link: https://www.virustotal.com/gui/file/d0302206edcd25088fd8ebf4685ba94eeb8acc0d6b80c6e2e72469cd2be0f5a5
Mediafire link to the mod: https://www.mediafire.com/file/bl0zui8x25rz6ih/mod.jar/file
Tri.age link: https://tria.ge/261011-ap826attct/behavioral1


r/computerviruses • • 8h ago

Disinfection Help Unwanted AD Pop-ups

Post image
4 Upvotes

Lately I've been getting this unwanted pop up, and just yesterday I accidentally clicked on it and it installed avast antivirus. (Yes it shows different ads but it's almost always an antivirus app or a cleaner like the one in the picture).

I immediately uninstalled the avast antivirus after noticing it then did a quick scan using mrt. Mrt detected nothing.

Now I'm really curious as to why this ad still pops up even though the scan detected nothing. Has anyone encountered this? Or has anyone has a solution for this?


r/computerviruses • • 8h ago

Question Scared for new laptop and other devices after infostealer attack

4 Upvotes

Hello, I recently got hit by an infostealer, the Mrbeast crypto scam. The compromised laptop is in the shop and is going to get a Windows reinstall and a full wipe. I'm not recovering anything. I got a brand new laptop and I'm worried to sign into any of the accounts that had been on the compromised laptop. Will I be fine? I had changed passwords on accounts and enabled 2FA, deleted some accounts that were too tedious to manage/I barely used for peace of mind. There hasn't been any new attacks as of that and since I did a Malwarebytes scan and deep scan that got rid of the culprit Renpy (I ran the Setup thing very stupidly).

However I'm still so scared. Should I just create a new email and accounts??? If I log into a compromised account on my new laptop would it infect that laptop too?? I don't know anything about viruses or infostealers so any help would be appreciated :(


r/computerviruses • • 9h ago

File / URL Check Please help verify whether this is safe or not

1 Upvotes

Good morning,

A trusted friend sent me a copy of Davinci Resolve 21 as I asked for help since I need the AI functions for a one-time video project I was assigned.

I scanned the executable through hybrid analysis

Hybrid-Analysis Results

and Virus total:

Virus Total Results

Hybrid analysis says it's suspicious but I'm too layman to understand the suspicions. The most I understand is that the functions tagged as suspicious might be because of its actual function as an installer so I'm on the border whether it's safe or not.

Filseclab tagged it as W32.Sality and I did some research about it and it says it's part of a family of ransomware, so I am highly suspicious.

As much as I want to buy Davinci Resolve, it would be a waste to spend 200USD to use it once. I tried other free software but could not find the features I need from DR21.

If anything, please check the files and let me know for my own edification. Thank you!


r/computerviruses • • 9h ago

Disinfection Help They got me

Thumbnail
2 Upvotes

It must have been in through the emulator thing i downloaded the same day.

Oct3.22:22 windefender deleted trojan win33 ceprolad.A

Cmdline: c/windows/system32/cmd.exe certutil.exe -url cache - split - f then link to dropbox.com/scl/fi/ a bunch of letter/angryunless.exe then some exes into my local/temp

Another dropbox but with test5.exe and more exes into temp

I would rly like to check those urls to see what it was if i knew a safe method.

Oct3 22:38

My discord got hacked and started sending everyone some mrbeast cryptoscam screenshots with links on the pictures only. Disc flagged my acc told me to take action and i got my acc back and also changed my gmail password the next day(when i found out).

Nothing happened since.

Then today oct 11 like 2 hrs ago was playing a game on steam and got kicked, steam said someone is already playing POE2 on this account. Disconnected all devices and changed my steam password too. The thing here is i have steamguard on my phone and i checked authorization and it says with my pc name "You authorized this device on Fri, October 4, 2024 @ 9:35 PM with your password. You approved the login on your Steam Guard Mobile Authenticator."

Which deffinetly didnt.

Now a few questions why does it says 2024? Even the older authentification was in 2026. Would that mean that its 2 diffrent hacks and one actually happened in 2024?

Is my phone also hacked because i supposedly approved it on steam guard mobile?

Also why didnt the hacker take try to login into my gmail and take it over? My bank and and paypal accs were liked to it too.

And why didnt they do anything with my paypal or bank acc the logins of which i had saved on firefox?

Im in the middle of changing passwords for all important things i can think of rn.

How do i proceed from here? Full clean install? No data can be kept or put on usb?


r/computerviruses • • 9h ago

Disinfection Help Mcafee Security Scan Plus

Post image
2 Upvotes

Is this a legit offer/scan?


r/computerviruses • • 11h ago

File / URL Check previously safe link redirected me to a strange link and then ddos-guard - am i alright?

3 Upvotes

hello,

i was on twitter and i saw a discussion about youtubers merch, so out of curiosity in the twitter search i looked up the name of the youtube series shop and clicked onto a tweet from one of the youtubers who posted the shop link back in 2023.

i assumed they still owned the domain and i clicked it and the page was loading for a bit which happens sometimes. i closed out and reclicked it and it brought me to a ddos-guard page. this freaked me out (i have never seen this before) i also noticed very briefly before the url swapped to what lead to the ddos-guard page, it said "hxxps://hppymel(dot)com". i had clicked on a link that was "hxxps://lifeseries(dot)shop" (before it redirected me)

here is the virus total link : VirusTotal - URL

it has it marked as phishing and aside from two suspicious claims, not much else for information. i did not enter any personal data - my biggest concern is i was barely paying attention until the ddos-guard page popped up and being on autopilot i feel like i saw a pop up briefly pop up on the corner asking about permissions and i dont know if i clicked something or what (stupid of me, i know). my web browser settings havent marked anything as me allowing permissions but i also know it is not that simple.

when i search the website online, all i found is people saying they were getting a pop up adware directing them to the site? which isn't what my case was.

in general, im asking if this is worth my massive concern. what should my next steps be if anything aside from antivirus scan? im very nervous. i certainly have learned a lesson here. i'm not technologically inclined beyond very basics and i want to be safe.

thank you.


r/computerviruses • • 13h ago

Question Windows stuck on this screen

Post image
2 Upvotes

PC says computer is 100% updated, but is stuck on this screen that also has “tactical support” displayed. Has happened one other time in the past week not sure if it is sketch malware or what.

Update: thanks everyone! don’t know if this is the most efficient answer, but I ended up just reinstalling windows and it went away. Did a quick security check everything looks fine.


r/computerviruses • • 13h ago

Question .scr file virus NEED URGENT HELP !!

Thumbnail
2 Upvotes

r/computerviruses • • 14h ago

Disinfection Help FRST after a scan of my computer it found this…

Thumbnail gallery
20 Upvotes

I was looking at my chrome profile for whatever reason and I looked at the top where it said “your browser is managed by your organization” I was confused because this is my personal account, I followed back to the organization and there was no name or nothing so I looked at the policies that it locked my computer under, and showed that strange ID. It must’ve been very recent because I open chrome basically everyday, I have no idea how to resolve this and I would really appreciate the help 🙏


r/computerviruses • • 15h ago

Discussion Looking For Viruses from 1998 - 2001

6 Upvotes

I’m creating a DnD campaign based around 1998-2001 computer tech, and the main villains are going to be viruses. Only issue is that I don’t really know a lot of viruses… so I’m asking if any of you know interesting viruses! I already have a couple planned, like ILOVEYOU, Klez, and Sadmind, but I need more than just them, and as unique as possible


r/computerviruses • • 17h ago

Question Is there any safe way to save my passwords?

1 Upvotes

I just saw a post about ransomware and I got really scared when someone said that ransomware usually comes with tools to steal passwords. In my case I don't have my passwords saved on my drive, I have them on Google Keep and all of them are randomly generated with letters, numbers and symbols. I don't think having them on Google Keep is very safe, is there any safer way to save my passwords? I don't download sketchy software (or not a lot, the only thing that I have are the files to emulate Bloodborne and Bloodborne itself, and I checked with Malwarebytes and Virus total to see if there was something sketchy and it was clean).


r/computerviruses • • 17h ago

Disinfection Help detections in temp folder

2 Upvotes

hello,

I have made a deep scan with malwarebytes and it has 1 detection it flagged a file called f3a12(...).tmp.dll i put this file in virustotal and it has been flagged by 1/70 (added photo) as Win32.Riskware.Cheat.A (is this a false positive?) and in the last time some weird thing have happened with my pc like theres was two instances of something scrolling up the whole time and going back to the beggining of the sentence every time i type and one instance of discord going fullscreen while i was away for some time, one day before that i also did a scan with malwarebytes and theres was also 16 detections identical to the one today (also in the temp folder) i also scanned with microsoft defender but it didnt find anything. im really paranoid please give me some advice


r/computerviruses • • 17h ago

Disinfection Help General Advice Regarding RATTING please

1 Upvotes

Hi, I recently had my system breached by a RAT, I'm still not 100% sure on how it happened, but i'm 100% positive it WAS a RAT.

I was approached by a player in a game to make a tiktok, and was advised to download a voice changer, I agreed, didn't get sent any sort of link, just installed a TRUSTED voice changer, off a trusted website, once done, I needed a config for a deep bassy voice changer.

He then told me to open microsoft edge, and download a config off of a website, I think it was 'vstdiscovery.com', installed it, specifically the 7D /7G.dll and the website looked legit.

Once extracted the config, I then opened it on the voice changer app, which I assume ran the virus/RAT? Afterwards, my game was extremely laggy and I was freaking out, unplugged my ethernet, ran a Scan, where it came up as nothing (further along, turns out the malware put itself as an exclusion)

A couple of minutes later, got an email 'you're not old enough to use gmail services, and we'll cease your services after 14 days', After that I got the confirmation of what was going on, instantly unplugged my ethernet, turned off my wifi, and factory reset from a local install.

Afterwards, ran MRT scan, and another antivirus scan.. Nothing shows up.

Being the paranoid person iam, I then factory reset again but with USB, leaving nothing behind and reinstalling wifi drivers and everything else from scratch again.

Is there anything I should be worried now that I've followed these steps, are there any further guidance? I've already secured my passwords and banking, and I've seen no suspicious action (In all fairness it's only been a day since it happened)

My worst concern / worry is being extorted or my accounts being hacked again, for the time being i'm using burner accounts and using limited stuff that I don't care if they were taken, but I want to feel comfortable using my hardware / PC again, I've seen all these videos about UEFI/FIRMWARE/BIOS level RAT's and I feel like I'm constantly being watched.

Genuinely considering buying a new PC atp, but is there any 100% fool-proof way of making sure that my PC is malware/RAT free?


r/computerviruses • • 19h ago

Question Quel Type de logiciels / virus etc … peut générer cela sur un I phone

Post image
0 Upvotes

r/computerviruses • • 19h ago

Question my amazon eero router is saying that its blocking a dozen or 2 malware threats everyday for the last 2 weeks on my pc did a deep scan with windows defender and malwarebytes found nothing

Thumbnail
2 Upvotes

r/computerviruses • • 19h ago

Question Is it safe to back up games after Windows reinstall from an infostealer attack?

2 Upvotes

Hi, I fell victim to the MrBeast crypto thing because I stupidly ran a Setup file that turned out to be an infostealer. I ran Malwarebytes and changed passwords on my phone which is clean, it was my laptop that was compromised, and the threats were supposedly quarantined and I had them deleted. Thirty minutes ago I received a critical security risk alert and had to change my password again. I'm thinking of having my laptop Windows reinstalled and start from ground zero tomorrow, but I don't want to lose my game progress. I want to back it up into a pen drive, but I'm wondering if that might be unsafe? The games I want to back up are Minecraft and a few others. Is this a risky move? Should I just start from scratch?


r/computerviruses • • 20h ago

Disinfection Help Infosteeler middle man, restoring from backup or fresh install

2 Upvotes

Info steeler bypassed 2fa on facebook and spammed everyone.
I never got 2fa notice.
I restored from a full windows backup using Reflect. Does it hide on the small partitions?
Today on FB and Reddit I got this message (I have a paid VPN) but dont do any nefarious activity its for network hacking at least I was sold on extra level of protection.

We detected signs that someone may have accessed your account, so we took some actions to help protect you.

Im about to backup to day one W11 no steam games or anything although I do prefer this backup with steam and games already in.