/r/antivirus

Photograph via snooOG

For all of your Antivirus needs.

Welcome to r/Antivirus

Everyone:
Please take a moment to familiarize yourself with our rules and check our regularly-updated wiki before posting. The top rules are as follows:

  • πŸ†• Asking a question about a VirusTotal or Hybrid Analysis report? Include a link to it, not just a screenshot, or your post may be removed.

  • Do not post links to websites offering commissions, affiliate links, or sponsored installs.

  • Do not intentionally link to malicious sites (links to VirusTotal and Hybrid Analysis are fine). If you must post a link, please 'de-fang' it by breaking the URL up with brackets like so: https[:]//www[.]example[.]com

  • Failure to respect the rules and each other may result in a permanent ban.

  • If you see any spam or abusive messages, please use the report function to report it to the mods.

The complete list of rules can be found here.


Regular Users:
Welcome! You can get all of the help you need here, along with advice on removing any kind of malicious or unwanted software and choosing the right antivirus/internet security/endpoint protection for you!


Security Vendors:
You are more than welcome here, as long as you respect Reddit's Self Promotion rules, and are not pushing your product unduly. Do not abuse your welcome. Posting about Sales, Beta's, that sort of thing is allowed, but don't spam it. You are expected to participate in discussions where you can lend your expertise. Click here send a message to the r/antivirus mods so we can set you up with your company flair.


πŸ‘‰We Have a Wiki! (Click Here)

Our regularly-updated wiki contains all sorts of useful information, including links to reputable developers of antivirus/antimalware/internet security/endpoint protection/endpoint detection and response/{insert marketing-term-du-jour here} programs, information about specialized scanning and cleaning tools, information about security tests and testers, practical information on securing your devices and a glossary.

PLEASE CHECK THE WIKI FOR BASIC HELP + TROUBLESHOOTING INFO BEFORE POSTING.

/r/antivirus

74,719 Subscribers

0

Malwarebytes being a scumbag

Its crazy how i downloaded malwarebytes startup to try it out, but then found a better av service and i decided not to download the main av, but then it took me to all these different windows telling me i should reconsider, and then it asked me to do a survey, and after all that it, took over an hour to delete the file even though i DIDNT download the main av, which has me thinking if they purposefully slowed down the download to make me reconsider deleting it, why do companies do this honestly.

0 Comments
2024/07/14
14:41 UTC

1

is the file ITECCDll malicious?

found it in my temp file.

1 Comment
2024/07/14
14:29 UTC

2

Is it a false positive or a malware ?

Hello, i want to download qbittorrent. I've seen many posts who says the real link is the one from Fosshubs. So i downloaded it and i scanned it with VirusTotal. Here's my screenshot :

Here's the link too https://www.virustotal.com/gui/file/50de6e913a6f0a2a5c8356e56e9cc23b1921f067b55e2a97c75bbffe345682fd/detection

https://preview.redd.it/ecdvrb4avhcd1.png?width=1373&format=png&auto=webp&s=238ae5c6fc683259f26d5d2dde0d936e40fc5339

Only BkavPro detected one. Do you think it's safe ?

Sorry for forgetting the link.

Thanks.

3 Comments
2024/07/14
14:28 UTC

1

Suspected malware causing black screen issues - Need help!

Hey Reddit,

I've got a serious problem with my PC, and I suspect it might be malware-related. I'm hoping someone here can help me figure out what's going on and how to fix it.

Background:

  • I'll admit, I've been downloading a lot of questionable stuff lately (mostly for free software).
  • Now I'm facing some weird issues that I can't seem to resolve.

The Problem:

  1. Black Screen:

    • My main screen goes completely black, as if there's a hardware issue.
    • However, when I launch certain games (like EAFC), the screen works normally.
    • As soon as I close the game, the black screen problem returns.
  2. Display Workaround:

    • I can only see my desktop by using an HDMI cable and a second monitor.
    • My primary screen remains unusable outside of specific applications.
  3. Shutdown Message:

    • When trying to shut down my PC, I get a message related to "explorer.exe".
    • This seems suspicious and possibly linked to the black screen issue.

What I've Tried:

  • I've run several scans using various free antivirus and anti-malware tools.
  • Unfortunately, these scans haven't found anything significant.

Questions:

  1. Does this sound like a malware infection to you?
  2. Are there any specific scans or tools you'd recommend?
  3. How can I fix the black screen issue and remove any potential malware?
  4. Is there a way to check what's causing the "explorer.exe" message during shutdown?

Any help or advice would be greatly appreciated. I'm worried about my PC's security and just want to get things back to normal.

Thanks in advance!​​​​​​​​​​​​​​​​

1 Comment
2024/07/14
14:09 UTC

2

How important is process explorer/monitor for detecting malware?

so i recently made a post about my credit card potentially being stolen 4-5 years ago, and it got locked since its not technically anti virus related which i fully understand, but i did wanna ask to learn more, how important are these tools for detecting malicious stuff, as mentioned in the post, over the course of those 4-5 years i must have made hundreds if not thousands of scans with both windows defender and malwarebytes and they have never found anything, nor have i been compromised since so to this day im guessing it wasn't a malware, now i think i remember i tried to use process exporer to check, but didn't find anything, but since its a long time ago so my memory is hazy, so in case i did not use these tools, how important would it be to check with them, and could any malicious stuff on my pc avoid being detected for upwards of 5 years, im guessing its unlikely since once again i haven't ever had any issues besides that one time, but i would like to learn more.

2 Comments
2024/07/14
14:05 UTC

2

Norton Power Eraser reports DefenderUI as a threat

I recently started using DefenderUI. Have been blown away by how good the product is, hard to believe its free.
In anycase, testing on a VM, Norton Power Eraser reports DefenderUI as a threat. Is this safe to ignore? Can I report this to Norton somehow and have them look into it? Or is DefenderUI actually bad(they seem like a legit company, maybe a bit immature but safe none-the-less)?

2 Comments
2024/07/14
13:04 UTC

1

rootkit bricked PC help needed

hello I was wondering if I could get some help fixing this route kit on my PC

it's sad to admit but I have had a lot of viruses on my PC over the time and have learn to deal with them and usually they aren't a problem and I also usually factory reset my PC every couple months just to keep my stuff clean but this particular time I was messing around with you boss and other things and ended up getting a root kit I used Malwarebytes which I thought got rid of most of it and it found dark crystal rat running on my PC and I think a few other things but it wasn't able to fix them I used a bunch of different antiviruses and most of them found a root kit I tried to use TDSSkiller and when it prompted me to restart my computer to download the drivers for the root kit analyzation I restarted and now my PC is bricked and I'm stuck at the recovery screen, I have seen other people have the same problem and they thought of it to be a self destruction but I am not sure why it wouldn't have done it previously when using other virus removal tools but my two ideas to fix it were buying a m.2 to USPC converter and using my laptop to format both my drives and then putting them back into my PC and using a bootstick but is it possible to reset by plugging in a bootdrive and formatting the drives using the Windows downloader or do I have to do it on another PC, thanks in advance

side note one also found a browser hijacker proxy with ip but it will take me a minute to access it so once I can provide it you can have at it with it I think it was hosted by Hivelocity and I issued a complaint to them about it and they might take it down

4 Comments
2024/07/14
11:26 UTC

1

I can't type the word "soy" on message board

Only on 1 message board, I can't type the word "soy". Every time I type it, it switches automatically to the word "onions". Other users showed me that they don't have this problem.

Is this a virus, or is it an admin who made a script to fool with me?

1 Comment
2024/07/14
09:17 UTC

1

IDP.Generic inside of renpy

My antivirus said renpy has this, and the thing is, I don't know anything about technology, what do I do?

2 Comments
2024/07/14
08:09 UTC

9

Is this normal for Bitdefender to take this long to scan?

5 Comments
2024/07/14
07:48 UTC

1

Clicked on suspicious link on twitter on iphone

Not gonna sugercoat it, was watching porn on twitter clicked on website link under the tweet on accident and it loaded for probably 3 seconds made a ding sound before i clicked off of it. This was on a iphone 14 and is my phone compromised at all?

1 Comment
2024/07/14
06:26 UTC

5

Avast vs Avira, which has better Virus Scan Engine?

The Android Phone Manager has 2 anti virus scanning engines, I'm not sure which one is better, does anyone know which Antivirus Engine is better (updated more regularly, more accurate, etc)?

20 Comments
2024/07/14
05:27 UTC

20

What do we think about CheatEngine? Link in comments. I would think alot of these could be because of what it does, but what do you guys think?

26 Comments
2024/07/14
03:33 UTC

1

My PC has a problem at night that fixes in midnight

So recently my PC has gotten problem that I think it's a virus in day it kept shutting round having problems it keeps you starting and giving me headache but at night at around 12:00 a.m. until 6:00 a.m. then I go to bed The pieces completely fine doesn't shut down once and runs perfectly fine I don't know what the problem is could it be a marvel or hardware or software issue if you know please help

1 Comment
2024/07/14
01:30 UTC

1

Switching from norton

i was with norton for a while now (since they bought bullguard and i was forced to use it) and have just recently done massive upgrades to my pc. ive recently heard lots of bad things abt norton (which kinda feels nice considering i wasnt its biggest fan). im wondering if its worth switching and if so what to?

6 Comments
2024/07/14
01:09 UTC

1

BitDefender Problem

https://preview.redd.it/f5eq0j0wpdcd1.png?width=888&format=png&auto=webp&s=a44d8bf7de185fa842d1b44b83ecdc446c86cc92

Does that mean i have to pay for the antivirus now? Im not sure what happend? Anyone know a fix

3 Comments
2024/07/14
00:31 UTC

0

Ransomeware or adware

My mother found this in her cellphone, its a blue circle, she click it (she shouldn't i know) and it say charging

6 Comments
2024/07/14
00:06 UTC

1

Whenever I open task manager my cpu usage is at 50-60 for a split second and drops to around 13-12 every time. Is this malware?HELP

I recently checked my quarantine on ESET and I had a Trojan from a beam ng mod and other malware like things. The day later I scanned my system with hitman pro and it found 2 Trojans and a malware that hadn’t been detected by ESET. I’ve smart scanned with Eset, malwarebytes and it hasn’t found anything besides some random suspicious file that I deleted. I have a feeling that something is still on my PC but I’m no lt sure how to find out for sure and I’m really desperate to find.(the 2 Trojans that I rooms have been in since 2022 apparently but I haven’t notice really that much suspicious activity and I’m really confused). Please help.

7 Comments
2024/07/13
23:46 UTC

1

Any possibilities of a virus

So I'm on S22 right now and I'm trying to find if there is any virus I might have accidentally downloaded. I scanned it with built-in antivirus, AVG, McAffe, and Malwarebyes just to be sure. Yes I know it's overkill. Also are phone antiviruses trustworthy?

I want to add that i left (i think it was ad) before it loaded

2 Comments
2024/07/13
23:30 UTC

2

Am i screwed?

Hello, I tried to recover my elden ring save with this program from nexus mods. Call it post install clarity but i decided to scan it in virus total and it got a 8/68....
https://www.virustotal.com/gui/file/9d0ccb1c6d65c8a83c1250257a9756440d506a40489f292183d469c61dc98402
What should i do seeing how i already ran this :(

3 Comments
2024/07/13
22:38 UTC

0

Am i still in danger?

so about 4-5 years ago, i was buying something of the internet, i do not quite remember what at this point, but anyway i got a message from my bank that someone had tried to use my credit card in another country, i of course contacted my bank immiedietly and got a new card and such, and i have never had any trouble since, but i have recently gotten some anxiety if i am still in danger, i have over the course of the years peformed hundres of scans on my devices with malwarebytes and windows defender, and they have never found anything, so could i still in danger of someone snatching my info? I assume no since i have used my cards online since with no issues, but that just makes me question how they got the card info, or if it was a scam message, since no money was ever actually used, sorry for the wall of text i hope my question makes sense.

9 Comments
2024/07/13
22:09 UTC

1

Question about naraka

Hi everyone, I wanted to download a game from steam, but on the info page it says:

Requires β€œWindows Memory integrity and VBS enablement” to be disabled.

Is that still a major security risk if I use a third party AV or is it only if you have defender as your main AV?

4 Comments
2024/07/13
20:38 UTC

1

Gmail Recovery text and possible rat

https://preview.redd.it/0q8lhg8yeccd1.jpg?width=1080&format=pjpg&auto=webp&s=0a27f5a84d7d6273c2594cfbe115d811c577e22b

Yesterday, I was suspicious I had malware on my phone so I performed a factory reset. After I reset the phone, I signed back into my google accounts like usual and wanted to add my other google account. I forgot the password and since I didnt have a recovery email, I selected the "get email in 48 hours" option. Today I got this text, and the blured out email is percisely the email I was trying to recover. I googled this number and ran it through a ipqualityscore and the number came back as risky. Also I googled the type of message and people say is a smishing attempt. Is it just coincidence that I was sent that, a text asking if I was trying to recover my email with the exact same gmail address I actually am trying to recover, or am I actually ratted and it somehow survived a factory reset? I didnt port any apps over or anything. Need help. I am on a Samsung S20 btw.

6 Comments
2024/07/13
20:12 UTC

0

Thoughts on Emsisoft and ClamAV antimalware? New to me

I recently came across Emsisoft and ClamAV as antimalware/antivirus options, but haven't heard much about them before. I'm considering trying one out, but would love to hear from others who have experience with these.

Have any of you used Emsisoft or ClamAV on your systems? If so, what has your experience been like? How do they compare to more mainstream antivirus products in terms of malware detection, system impact, and overall effectiveness?

For those unfamiliar, Emsisoft is a paid antimalware suite while ClamAV is an open source antivirus engine often used on servers and mail gateways.

I'm looking to get a solid extra layer of security, especially against newer threats, but don't want to bog down my system with bloated software.

Any insights you can provide on these two products would be really helpful as I research antimalware solutions. Have they worked well as a supplement to your existing antivirus? Any pros and cons to be aware of? I'd appreciate hearing your thoughts!

4 Comments
2024/07/13
19:22 UTC

2

Is it safe to upload system files to virustotal?

Hi, I just had this thought, is it safe to upload system files to virustotal? It’s YOUR system file and other users can potentially download them, can’t they? Is there anything they can do with them?

5 Comments
2024/07/13
17:48 UTC

0

Norton 360 deluxe for iPhone and iPad

I bought Norton 360 deluxe for my devices recently. On my laptop I can do a full scan for any malware or viruses, but I can’t find where to do it on my iphone or iPad.

Is this because it does not do it for these devices or am I not looking in the right place?

14 Comments
2024/07/13
17:12 UTC

0

Is Mullvad a Virus?

I download a VPN called Mullvad VPN due to it's privacy practices but during the antimalware scan I found [Trojan.Win32.Sabsik.dd!n]. Is this app a virus or not?

7 Comments
2024/07/13
17:05 UTC

1

Malwarebytes is telling me Firefox.exe is pinging an odd IP I do not recognize

Repost due to automod flagging me for posting the IP thinking it was a phone number. First time poster, I fumbled there

I'm listening to audiobooks on Firefox while playing RDR2, then I get hit with Malwarebytes blocking some outward connection, the culprit being...firefox.exe? It's been pinging me a few times, and the IP is labeled as Riskware. I haven't been to any suspicious sites lately, my only recent blunder was installing Nox Emulator, but that's a story for another time. I have no idea what this is, and checking my email, I'm getting no notifications of anyone signing into my accounts as of now, so I'm not entirely alarmed at anything being at risk, but it isn't out of the question. Could it be a keylogger? Something else? I can't find anything online about it, and Malwarebytes' detection blog has no useful information about it or how to deal with it, and the only mentions I've found for that IP were from several years ago, so I'm turning here to try and get an answer from you guys.

The IP I've been getting pinged at is this one right here, the blog has very little info though.

Thanks in advance!

EDIT: Just got the notif again. Here's what Malwarebytes is telling me, other than the address

Port: 443
Type: Outbound
File: C:\Program Files\Mozilla Firefox\firefox.exe

2 Comments
2024/07/13
17:02 UTC

Back To Top