/r/antivirus

Photograph via snooOG

For all of your Antivirus needs.

Welcome to r/Antivirus

Everyone:
Please take a moment to familiarize yourself with our rules and check our regularly-updated wiki before posting. The top rules are as follows:

  • 🆕 Asking a question about a VirusTotal or Hybrid Analysis report? Include a link to it, not just a screenshot, or your post may be removed.

  • Do not post links to websites offering commissions, affiliate links, or sponsored installs.

  • Do not intentionally link to malicious sites (links to VirusTotal and Hybrid Analysis are fine). If you must post a link, please 'de-fang' it by breaking the URL up with brackets like so: https[:]//www[.]example[.]com

  • Failure to respect the rules and each other may result in a permanent ban.

  • If you see any spam or abusive messages, please use the report function to report it to the mods.

The complete list of rules can be found here.


Regular Users:
Welcome! You can get all of the help you need here, along with advice on removing any kind of malicious or unwanted software and choosing the right antivirus/internet security/endpoint protection for you!


Security Vendors:
You are more than welcome here, as long as you respect Reddit's Self Promotion rules, and are not pushing your product unduly. Do not abuse your welcome. Posting about Sales, Beta's, that sort of thing is allowed, but don't spam it. You are expected to participate in discussions where you can lend your expertise. Click here send a message to the r/antivirus mods so we can set you up with your company flair.


👉We Have a Wiki! (Click Here)

Our regularly-updated wiki contains all sorts of useful information, including links to reputable developers of antivirus/antimalware/internet security/endpoint protection/endpoint detection and response/{insert marketing-term-du-jour here} programs, information about specialized scanning and cleaning tools, information about security tests and testers, practical information on securing your devices and a glossary.

PLEASE CHECK THE WIKI FOR BASIC HELP + TROUBLESHOOTING INFO BEFORE POSTING.

/r/antivirus

68,961 Subscribers

0

Patreon Owner Claims This Isn't A Virus?

For the record this file was created by Otis and hes pretty well known within the Modding/reshade community. You can Even download his shaders within the Reshade.me Software Itself.

I've used several of his camera tools and shaders in the past but never had an issue until I download the monster hunter World one.

His response to someone asking why it's flagged as a tojan:

"Yes, it's a false positive. Some virusscanners use machine learning to detect patterns (like 'this code injects another dll into a process' or 'this code changes a process') and what my code does to change the running game code to inject the camera logic is sadly what they trip over."

While I trust Otis, I do know that human's can make mistakes but I don't want to be on the receiving end of a terrible one.

Just looking for a secondary opinion on this because I'm not the most educated on viruses in general.

Virus Total Results

3 Comments
2024/05/02
18:54 UTC

1

Is Yahoo!+ Secure McAfee bundled with other services?

Here’s a link to what I’m referring to: https://www.yahoo.com/subscriptions/products/yahoo-plus-secure?ncid=mbr_ryhacqnav00000010

Is there any difference to regular McAfee and Yahoo!+ Secure with a password manager?

3 Comments
2024/05/02
18:49 UTC

3

self downloading virus

hello i have a virus that is downloading itself everytime i delete it i've tried malwarebytes and bulk crap uninstaller non worked please i need a fix (the file's name is " rlvsnekjfckr.exe ")

2 Comments
2024/05/02
18:26 UTC

1

Please help me, i cant tell if this is a virus or not.

Hello, ive tried to install some models for Counter-Strike 1.6, they usually come in a winrar with a bunch of files to replace the default models, usually they're .mdl files but ive installed this one and it seems to be an app, did a virustotal check and it checked out 2 as "Bkav ProW32.AIDetectMalwareSecureAgeMalicious and SentinelOne (Static ML)Static AI - Suspicious PETrapmineMalicious.moderate.ml.score"
here's the virustotal link: https://www.virustotal.com/gui/file/03b83f3854a6554526afef3958c7506cb7ed40e2862c14bd28ad2ad7ec681a3e

0 Comments
2024/05/02
16:07 UTC

1

Facebook app was detected as virus (help.)

Self explanatory post title. I use Anti Spy Detector - Spyware on my Android device, and it picked up Facebook as a virus due to it's permissions. I also use MalwareBytes and BitDefender, but neither of those picked it up. What could have happened here? I downloaded the app from the play store, and this has never happened before. Thanks all.

2 Comments
2024/05/02
13:58 UTC

3

How to do a clean install Windows and keep files without risking malware transfering?

I have been using the same hard drive since i was a teenages (10+ years) and i know my computer is comprimised since i havent always been so careful what i download from the internet. My problem is i have alot of files that i want to keep but malware might be hiding within. Does anyone have any suggestions?

4 Comments
2024/05/02
11:46 UTC

3

What is the best antivirus available

What is the best antivirus available, I've been using Kaspersky, but since it is tied to the Russian Gov what are the otjer options?

19 Comments
2024/05/02
08:54 UTC

11

Can't Uninstall McAfee because the most of the app is cropped out.

https://preview.redd.it/73p6775pxyxc1.png?width=3627&format=png&auto=webp&s=168fd44c6565de0b3d4afa3d8afae82c030825a3

I installed Adobe and they included this garbage. When I try to uninstall it I get this. This just happened to both my personal and work computer in the same day SMH. I have a 4k monitor that I scaled the display from 150% to 100% and kept lowering the resolution and still nothing.

Any help would be greatly appreciated.

4 Comments
2024/05/02
07:52 UTC

1

Reinstalling windows

If i reinstall windows from reset button on settings, is the same as if i clean reinstallit with from a usb? I am not sure if i have a virus, i am getting random frezes in games, that should not use so much. Should i reinstall windows?

EDIT: I dont know if it matters but i am on a laptop btw.

7 Comments
2024/05/02
07:00 UTC

8

Best web protection??

Hi forum I am looking for a free antivirus software that have the best web protection but also very lightweight

9 Comments
2024/05/02
05:59 UTC

1

1 sandbox flagging cpuz as malicious

is it safe to download if no AVs flagged the portable file as malicious but 1 sandbox did?

vt link

2 Comments
2024/05/02
05:43 UTC

1

Trojan on my chrome cache

I reacently downloaded a bunch of custom content for the sims 4 and i knew that i probably got some sort of malware, so i did a full scan on defender and it had found a trojan:win32/wacatac.B!ml on my chrome cache file. So this wasn't new for me because i already had this sort of problem before i reformat my computer for other problems. So i lost all my mods and cc so i reinstalled them and now i had found the trojan once again once i did a full scan. I placed it in quarantine and i deleted the folders and unistalled chrome, i used adwcleaner and it didn't find anything and even defender now, am i safe or? And in a way can the trojan affect my phone if i had it sync?

8 Comments
2024/05/02
05:31 UTC

5

Neshta virus

I downloaded a file which had an application called “School Project” now I have a hacker with access to my pc and personal details asking for $50 ransom. Also I have 2 neshta viruses detected which I quarantined does anybody know how I can fix this?

6 Comments
2024/05/02
03:06 UTC

1

I Click on a old/suspicious link im safe?

I was looking for some info related to a video game in reddit and i follow a link suggested by an user, then i check and that was not the official link site or at least not the one that it usually shows , the site never loads , so i get suspicious and decide to analyze, to check all the scan seems clean, except filescan.io that shows unknown, and one ip adress shows in filescan is this which is flagged as malicious https://www.virustotal.com/gui/ip-address/151.139.128.10/community, i would be gratefully if you help me checking the links:

https://www.filescan.io/uploads/6632ee6e9cdc03b57ab9ab1b/reports/4f88c0ef-e0a1-4baa-9691-0ab3b4a821b7/overview

https://www.virustotal.com/gui/ip-address/151.139.128.10/community

https://www.virustotal.com/gui/url/346004604a4c59d35633cb990ebc477bc291d02942bf4deca51561f3c0052e6f/detection

https://www.hybrid-analysis.com/sample/4474a3d168ad00835ebf775a6c96519f996b694ed116952606c18f8a6b4ad37f

1 Comment
2024/05/02
01:41 UTC

1

does my computer have a RAT software?

so sometimes my computer turns on and off at night and i might be suspecting a RAT (remote access trojan) so because im not that good at software stuff, can RAT programs do that or am i tripping?

8 Comments
2024/05/01
21:18 UTC

2

I'm convinced that Gofile is a virus website now

Do not visit ! But has anyone seen this? The website is instantly flagged by malwarebytes and my mate stupidly ignored it and it took him to many shady awdare sites. Avoid it and use MEGA instead if you need

Such a shame that this once cool site has gone so downhill

1 Comment
2024/05/01
19:42 UTC

3

did i get virus?

I wrote chess. co by mistake after that I was sent to these links in order

1> chess .co
2> https://snorr-dbs .com/zclkvisitor/d1ade084-0731-11ef-9c36-0affd45d2041/72092e88-2c53-401c-b988-51ef43ce1034?campaignid=d1c9ccf0-0731-11ef-9c36-0affd45d2041

3> https://platdom-1 .online/api/v1/px?xmlid=DhEcavUxrLBmjzzss6ueVAiUvyF9kzF3oafX0E9c

example:

https://preview.redd.it/po4nfi0wvuxc1.png?width=1374&format=png&auto=webp&s=ebfdd92ceafff67d6f8e384322e85142602ab139

2 Comments
2024/05/01
18:13 UTC

2

Is there a free antivirus I can download that works on Windows 2008 server?

10 Comments
2024/05/01
17:32 UTC

4

Avira out of nowhere flagged the Epic Games Launcher as malware/trojan horse......

The "virus" is called TR/Crypt.XPACK.Gen

Anybody else got this problem? Is it safe to release the Epic Launcher out of the quarantine?

Thanks guys!

3 Comments
2024/05/01
17:25 UTC

1

Is Vesktop Safe

So Vesktop is a version of vencord made by the same people it is basically better vencord and better discord for linux and they claim it is more light weight than Offical discord app here is here download link - https://github.com/Vencord/Vesktop?tab=readme-ov-file

4 Comments
2024/05/01
09:43 UTC

42

Trojan or false alarm

Up to now I've been content with relying on Windows Defender/Firewall etc to protect me.

Two days ago I spotted something odd, with my hands away from the mouse/keyboard (I was playing on my phone) I looked up and noticed the application that was full screen started to minimise then reversed, like it reduced in size by about 5% then instantly went back to full. Thinking it was odd, a ran a full scan and it's picked up a Severe threat found:

Trojan:Win32/Leonem

Affected items: file: C:\Users\Default\AppData\Local\Microsoft\Windows\InetHelper\cleaner.exe

I don't want to make any mistakes here so what should my next steps be exactly?

https://www.virustotal.com/gui/file/ea1d61984ede5908e0840e91a71bb127efd62d836c1f76702b426fd79b57f780/detection

https://preview.redd.it/nss4blqhfrxc1.jpg?width=2008&format=pjpg&auto=webp&s=9a75e87a404a7d81ec133c2452cd522b8334739c

66 Comments
2024/05/01
06:31 UTC

2

Virustotal redirecting.

Well I was check a website in virustotal and it redirected me to this result instead.

https://www.virustotal.com/gui/file/95bd007cef42ed8ad73f3ce1de2f2e0da1ae2965e7a36884a03e58fb22f5b617/summary

Why is that? Anyone knows?

9 Comments
2024/05/01
06:30 UTC

1

I have questions on my cell phone

I tried to find out which app is doing this, they came up in the download folder. My cell phone is a Xiaomi and is completely up to date. The antivirus I tested did not recognize viruses

2 Comments
2024/05/01
02:43 UTC

6

Real McAfee creating scareware advertisements?

Was exploring some malware websites with my friends on a VM and VPN and we found a real McAfee website used to scare naive users into purchasing their products. It forces you to turn on notifications and when you actually click on it, you are prompted to purchase McAfee? It redirects to you the real website with real payment processors.

Is this a real tactic to scare users into buying their "antivirus", or is it some sort of affiliate marketing garbo?

6 Comments
2024/05/01
02:16 UTC

1

Amazon popup when using app - virus or not?

Does my device have a virus if while I am using an app (not google), I get a scam amazon popup ad on google?

3 Comments
2024/05/01
01:38 UTC

3

Bitdefender Slowing Windows Explorer

I recently transitioned from Norton to a trial of Bitdefender. I like it in general but its slowing down folders containing media for my job such as videos or even just photos. I turned off Bit to test it out and folders that took 5 seconds to load were now instant. For the life of me I can't find a setting to ignore specific files or folders. Does this exist or should I switch to another (Something not hosted by russians)

3 Comments
2024/04/30
22:19 UTC

1

Something different - Opensource EDR

Has anybody played with any OS EDRs?

1 Comment
2024/04/30
22:13 UTC

Back To Top