/r/antivirus

Photograph via snooOG

For all of your Antivirus Needs

Welcome to r/Antivirus

Everyone:
Please take a moment to familiarize yourself with our rules and check our regularly-updated wiki before posting. The top rules are as follows:

  • 🆕 Asking a question about a VirusTotal or Hybrid Analysis report? Include a link to it, not just a screenshot, or your post may be removed.

  • Do not post links to websites offering commissions, affiliate links, or sponsored installs.

  • Do not intentionally link to malicious sites (links to VirusTotal and Hybrid Analysis are fine). If you must post a link, please 'de-fang' it by breaking the URL up with brackets like so: https[:]//www[.]example[.]com

  • Failure to respect the rules and each other may result in a permanent ban.

  • If you see any spam or abusive messages, please use the report function to report it to the mods.

The complete list of rules can be found here.


Regular Users:
Welcome! You can get all of the help you need here, along with advice on removing any kind of malicious or unwanted software and choosing the right antivirus/internet security/endpoint protection for you!


Security Vendors:
You are more than welcome here, as long as you respect Reddit's Self Promotion rules, and are not pushing your product unduly. Do not abuse your welcome. Posting about Sales, Beta's, that sort of thing is allowed, but don't spam it. You are expected to participate in discussions where you can lend your expertise. Click here send a message to the r/antivirus mods so we can set you up with your company flair.


👉We Have a Wiki! (Click Here)

Our regularly-updated wiki contains all sorts of useful information, including links to reputable developers of antivirus/antimalware/internet security/endpoint protection/endpoint detection and response/{insert marketing-term-du-jour here} programs, information about specialized scanning and cleaning tools, information about security tests and testers, practical information on securing your devices and a glossary.

PLEASE CHECK THE WIKI FOR BASIC HELP + TROUBLESHOOTING INFO BEFORE POSTING.

/r/antivirus

67,976 Subscribers

1

BITDEFENDER v MALWAREBYTES

Hello, I have a premium on MB. I always scan what I download with Virustotal as well and MB seems to do a good job with it's Live Protection for Web Surfing.

Lately I see reviews saying that MB has a detection rate less than 97%. So when I do a full scan +rootkit is there a chance that viruses go unnoticed?

*Is Bitdefender a better option for full scans?

0 Comments
2024/04/14
08:02 UTC

1

Is threat completely removed?

Hey guys appreciate the help! Just wanted to make sure that my PC has completely removed the threat.

  • The first screenshot is the result from Windows Security. I note that it says it will be removed automatically.
  • I then used Windows Powershell to change the scanpurgeitemsafterdelay from 15 to 5 days
  • I then restarted the PC and reopened Windows Security and noted that the same item is still listed in Protection History
  • I then wanted to remove the threat manually (thinking it hasnt been removed cause it still shows up on Windows Security Protection History). Thus, i ran the "Get-MpThreatCatalog | Where-Object { $_.QuarantineStatus -eq "Quarantined" }" line so that i refer to the ThreatID and use the following command "Remove-MpThreat -ThreatID <ThreatID>" to remove said threat.
  • However, as shown in the second screenshot the results are nil. Does this mean the said threat has been completely removed?

thank you so much and apologies in advance if i broke any rules. just abit anxious right now.

https://preview.redd.it/tpd5idv74euc1.png?width=407&format=png&auto=webp&s=2dc9ff590cb3efb88b91e2ba4cff4b0c9a9363af

https://preview.redd.it/g4pw1bh84euc1.png?width=530&format=png&auto=webp&s=687a1c2ce265429ae9d48495bfa394374dd7c0bc

0 Comments
2024/04/14
06:35 UTC

1 Comment
2024/04/14
04:36 UTC

1

False positive or actual Trojan?

Its inside a official software used to control hardware colors e etc.

2 Comments
2024/04/14
03:13 UTC

2 Comments
2024/04/14
00:51 UTC

1

need help getting rid of an extension added by a virus

i downloaded something sketchy and now i have this extension called "Simple New Tab" i tried to turn it off and get rid of it but i can't due to it being "added by my organization" pls help :(

1 Comment
2024/04/14
00:40 UTC

2

F-Secure Any-good?

Still looking at antivirus software and Kaspersky is out, Windows Defender is out Bitdefender is looking promising but is very bloated. What does everyone think of F-Secure?

4 Comments
2024/04/13
23:59 UTC

2

Is coolmathgames(.)com safe?

This website was a core memory from my elementary/middle school days, and I've been wanting to go back and plays some games for the nostalgia. But just to be safe I searched it up to make sure it didn't change into anything malicious in the few years I hadn't played it. Shockingly, the first result that same up warned that it was "filled with malware and viruses" and would break your computer. I scrolled a bit further, and the responses varied between "yep it's safe" and "THIS SITE IS SO DANGEROUS, STAY AWAY FROM IT WITH A 10 FOOT POLE." So I decided to ask here, is it safe or has my favorite childhood website been ruined? (I also saw a few responses say something about adblock, but I'm on mobile so it's not an option.)

5 Comments
2024/04/13
21:33 UTC

1

Is GetIntoPC safe?

I've heard about this website a LOT, but only about adobe programs like premiere, after effects, or photoshop, and i've been thinking about visiting the website, but i'm still a bit scared about the fact that if i could get a virus, so im here just to ask this, does anyone know if GetIntoPC is safe?

​

(im a scaredycat lol)

3 Comments
2024/04/13
19:09 UTC

1

IGN website keeps redirecting me to phone scanning pages and scams

Anyone have more info on this? Entire website is borked. My phone keeps warning me that IGN might try to steal my personal info, and critical info such as saved credit cards etc.

What the heck?

5 Comments
2024/04/13
17:33 UTC

2

Are Avast and Bit-Defender good?

I've been looking for different protection for my computers, as I didn't trust McAfee, and I found this Subreddit. I saw a lot of previous posts, both on this reddit and in other places, that sort of talked badly about Avast and Bit-Defender. I went to this Av comparative link https://www.av-comparatives.org/tests/summary-report-2023/ to look around, and it seems that Avast and Bit-Defender performed well. Should I still heed the warnings of previous posts, or base my decisions off of the current results from AV-comparatives?

4 Comments
2024/04/13
17:20 UTC

1

PC keeps on randomly turning off

So around a couple of months ago my pc just started randomly turning off at first it started to randomly turn off once it reached 30% and now it's starting to turn off at 70% idk if it's a virus or just a problem with my old laptop i did a scan using avast and it said that there was no malware but im not sure to trust it

2 Comments
2024/04/13
15:37 UTC

2

Is the MSI After burner Virus still a thing?

I just got a gaming computer and searched MSI afterburner. I clicked on the first one (looking back in history, it looks like MSI official MSI website but can’t be sure).

When it downloaded, it was 53mb and required admin privileges to run.

I ran windows security antivirus and ESET online scanner and both came up with nothing. Although I think it was the legitimate app, very concerned it might not be. Looking for advice.

Thank you.

4 Comments
2024/04/13
14:26 UTC

0

If you scan a program on Virustotal and it dectects one suspicious file out of all the others is it still safe to use ??

3 Comments
2024/04/13
13:39 UTC

6

Imperva Telling Me I Have A Virus On iOS

Hi All,

I was browsing on the UK government website earlier and was greeted by this twice. After a small bit of research, I’ve gathered iPhones can’t get viruses. Is this just a mistake or is something more sinister going on?

Thanks.

7 Comments
2024/04/13
13:24 UTC

2

DefenderUI setup

Hi Antivirus forum, I want to know since there is something called DefenderUI and it can change settings of windows defender, then what settings should I set DefenderUI to get the best protection/performance for windows defender.

1 Comment
2024/04/13
12:28 UTC

1

Shortcut virus

I have plugged in my usb stick like usual but there was a shortcut, wich let me access to the files but Windows defender found 3 trojan treaths and put them in quarantine and removed them.

One stated that wanted to attack Win32/Conteban.A!ml and the other C:\Users\User\AppData\Local\Temp\Runtime Broker.exe

after that I logged out all accounts in panic and started looking online but none quite matched what I was looking for so I tought I needed something more specific and in real time, thats why I'm here asking for help

(I'm typing this on said machine)

1 Comment
2024/04/13
09:13 UTC

6

Trojan not detected by windows default antivirus

Hello everyone! So recently i just discovered this tool called "sergei strelec". As i was exploring this tool, i saw an antivirus called "DrWeb", so i decided to run the app. It detected 4 threats (see below picture).

My question is, why does windows default antivirus didnt detect this threats?

im using windows 11, and i always update security updates.

18 Comments
2024/04/13
09:09 UTC

3

Is ClamAV a good antivirus?

10 Comments
2024/04/13
00:48 UTC

1

why is Windows Defender still my default AV Software after i installed malwarebytes?

This is sort of the "how to finally put an end to Antimalware Service Executable" question in disguise. (I only have a fragmented understanding of AV stuff that I put together piecemeal over the years so I appreciate layman's terms wherever possible). Anyway, the most recent info I could find says that Windows Defender will automatically detect AV software and disable itself. Is there a way to manually assign your preferred AV software in order to disable Windows Defender? I can't stand how much memory Antimalware eats. Even if Malwarebytes uses a similar amount of CPU, I like that I have more control over when that happens.

A few clarifying points/follow-up questions:

-I don't want to manually turn real-time protection on and off, and doing so doesn't actually stop processes like Antimalware from running

-Assume that paying for an AV program is not an option (because it isn't, I'm poor lmao)

-My laptop isn't very powerful (16G of memory, an SSD (250G I think), and an 11th gen i5-1135G7 intel processor)

-Would finding a solution to this (making Malwarebytes the default AV software) even actually stop processes like Antimalware from running?

Thanks in advance for any help. I just want to do what I can to preserve the longevity of my poor laptop

4 Comments
2024/04/13
00:37 UTC

1

Virus from allowing notifications'?

So I wanted to install smt and the website redirected me to a sketchy looking website and I stupidly allowed notifications, then some things from windows virus protector popped up and smt from mc afee (anti virus) then I cleared cookies/browsing data then did 1 normal factory reset and 1 full factory reset where I went to an older version of my pc ran multiple virus checks w widows anti virus and 2 full checks w mc afee all came out saying no viruses but idk. So could anyone tell me how to find out if I have a virus, please and thank you!

1 Comment
2024/04/12
23:17 UTC

1

Is autoclicker.io a virus?

I would very much appreciate the answer, should you have it

2 Comments
2024/04/12
21:15 UTC

1

Is my AcroBroker.exe legit?

Hi everyone,

My Windows 10 antivirus recently told me to quarantine a malicous executable named "TrojanDownloader.exe" in a Win32 folder. However, after doing so, everytime I start my computer I receive an error message from "Acrobroker.exe" saying that "The code execution cannot proceed because sqlite.dll was not found. Reinstalling the program may fix this problem."

Since, it only occurs when I boot my computer, I went to my startup folder and found a suspicous shortcut named "fsutil", which led to C:/Users/MyName/AppData/Roaming/dot3msm/AcroBroker.exe. Weirdly, this shortcut was created nearly a year ago, and I'm sure my antivirus would've detected any malware for this long.

I could not find any relevant information about the purpose of this dot3msm folder, which contained Acrobroker.exe, msvcp.dll, msvcr.dll, and plumage.doc. This is very suspicous as apparently AcroBroker is made by Adobe, but this executable was not in my Adobe folder in Program Files.

ALL OF THE PREVIOUS WAS NOT MALICOUS

Additionally, I specifically pressed "quarantine" instead of "delete" when my antivirus found TrojanInstaller.exe, but I can no longer find it. Perhaps it deleted the malware automatically because the threat was severe?

Furthermore, I also have suspicous folders in Roaming by the name of "6XpWDwhjqefBbwA" with an executable named "c4V2UeNRDdp4eYH.exe" from Caphyon and "BNOLAYFUZPX" which contains a large unspecified file with random characters in it.

Lastly, I have a software updater from a VERY TRUSTED company (Universal Audio), but it has recently started updating every time I start up. May not be related, but I just thought it was a strange coincidence.

What further actions should I take? Would greatly appreciate any feedback and would be more than happy to provide more info. Thanks in advance!

Update:

c4V2UeNRDdp4eYH.exe was detected byVirustotal as a Trojan. I also just discovered a folder named "npm-cache" which contained a JSON file stating that there were 11 successful "installs" and 0 unsuccessful as well as DOZENS of folders with unspecified files. Apparently npm-cache has to do with Node JS, which I do use, but it just seemed suspicous that I've never heard of this thing before.

2 Comments
2024/04/12
20:51 UTC

3

Hijacker on my Chromebook profile

I’m in a bit of a situation. About a month or two ago I got a hijacker on my brand new laptop (I know I should’ve been more careful…) after days of working on it I got it removed and was fine.

Now months later I opened my Chromebook and signed into my Google profile only to find the hijacker’s “search boss” keeps directing me away from chrome to Bing or yahoo instead. I removed all extension, I reset settings, I desynced the Chromebook with my windows computer and reset again, I looked through files, and I can not for the life of me figure out where this malware is coming from or how to get rid of it- especially because some of the antivirus programs won’t work on chrome book or keep telling me there’s nothing wrong.

I checked my other computers and none of them have this issue. I used my other Google accounts on that same Chromebook and none of them appear to have the issue. It’s just that one Google account on the chrome book.

Can anyone help me figure this out?

4 Comments
2024/04/12
19:28 UTC

4

What is the best antivirus program for a windows 10 computer?

Need one that is easy to understand and doesn't use too many system resources. Not Norton, McAfee or Malwarebytes. Prefer not to do a trial just a paid version that is not too expensive. Needs to have an easy install.

3 Comments
2024/04/12
18:35 UTC

1

Is this normal?

3 Comments
2024/04/12
17:40 UTC

52

I got this message in my Gmail is it legit

39 Comments
2024/04/12
15:25 UTC

Back To Top