Viruses / Hacker ??

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Not_John_Titor
    PCHF Member
    • Jul 2022
    • 9

    #1

    Viruses / Hacker ??

    Hi John here
    I need some help with my laptop as I think I have viruses and am being hacked into

    The sound on my laptop keeps going up and down on its own without any change to the sound bar and my power setting are being changed to keep it on
    every time I change the power setting they get turned off and my laptop stays on instead of sleeping itself .

    I found a virus on it called One DC Updater and another which I cant remember but they were in the Temp files and no Anti Virus software seems to pick either of them up
    When I delete them they keep coming back so I think I have a Trojan

    I have also had someones voice coming over the top of my stream on twitch before that I could not here until I looked back at the stream when I seen someone mention it in my chatroom. I downloaded the stream but someone deleted it when I sent my laptop to get fixed as my screen kept coming loose

    I currently have Norton 360 for gamers and Malwarebytes installed

    I also downloaded FRST 64 and have the logs for them but I dont know what I am doing or how to make a fixlist or even what needs to be fixed if anything.

    I have attached the files below if anyone knows what to do with them.

    I would be thankful for some help

    Thanks for your time

    John
  • Malnutrition
    PCHF Moderator
    • Jul 2016
    • 7041

    #2
    Download AV block remover .
    Unzip to your desktop, Right click run as admin and follow the instructions. If it does not start, rename the AVbr.exe file to, for example, AV_br.exe
    Click yes to reset hosts file.
    After the machine reboots then there will be a logfile in the new folder created, post that please.


    FRST Fix.

    Download attached fixlist.txt file and save it to the Desktop. NOTE. It’s important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.

    Comment

    • Not_John_Titor
      PCHF Member
      • Jul 2022
      • 9

      #3
      is this the right file ?

      Comment

      • Not_John_Titor
        PCHF Member
        • Jul 2022
        • 9

        #4
        here is the fixlog

        Comment

        • Malnutrition
          PCHF Moderator
          • Jul 2016
          • 7041

          #5
          Originally posted by Not John Titor
          is this the right file ?
          No, it is the one highlighted below.

          [ATTACH alt=“Capture.PNG”]10254[/ATTACH]



          Adware Cleaner

          [ul]
          [li]Download AdwCleaner and save it to your Desktop[/li][li]Right-click on AdwCleaner.exeand select[/li][IMG width=“18px” alt=“Spcusrh.png”]https://i.imgur.com/Spcusrh.pngRun as Administrator
          [li]Accept the EULA (I accept), then click on Scan Now[/li][li]Let the scan complete[/li][li]Once the scan completes, make sure that every item listed in the different tabs is checked and click on the Clean & Repair button[/li][li]Subsequently you may be asked to Run Basic Repair. This is optional. I would suggest holding off on this for now.[/li][li]Once the cleaning process is complete, AdwCleaner will ask you to restart your computer[/li][li]Close all other open windows and allow it to restart[/li][li]After the restart, Notepad will open with the AdwCleaner cleaning log[/li][li]Please Attach the contents of that log into your next reply to me[/li][/ul]


          ZHP cleaner Scan.

          Please download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.
          Once you have started the program, you will need to click the scanner button.
          The program will close all open browsers!
          Once the scan is completed, the you will want to click the Repair button.
          At the end of the process you may be asked to reboot your machine.
          After you reboot a report will open on your desktop.
          Attach the report here in your next reply.



          Are you still having the same issues now?[/IMG]

          Comment

          • Not_John_Titor
            PCHF Member
            • Jul 2022
            • 9

            #6
            Hi again thanks for your help so far
            think this is the AV remover file now
            though I did notice a few red things come up when it was running
            but it restarted after that so not sure if its worked right

            Comment

            • Not_John_Titor
              PCHF Member
              • Jul 2022
              • 9

              #7
              I tried adwcleaner but it never found anything
              then I tried ZHP cleaner
              it said it was running but nothing ever came up

              Comment

              • Not_John_Titor
                PCHF Member
                • Jul 2022
                • 9

                #8
                got it I think

                Comment

                • Malnutrition
                  PCHF Moderator
                  • Jul 2016
                  • 7041

                  #9
                  Originally posted by Malnutrition
                  Are you still having the same issues now?

                  Comment

                  • Not_John_Titor
                    PCHF Member
                    • Jul 2022
                    • 9

                    #10
                    yes just tried the sound on youtube
                    and whatever virus I have turned the sound right down again
                    also now I cant play efootball 22 it wont let me connect to the servers
                    though that might just be konami’s fault lol

                    Comment

                    • Malnutrition
                      PCHF Moderator
                      • Jul 2016
                      • 7041

                      #11
                      Please post these two logs for review. I am headed to sleep, but I’ll check the thread when I wake up in a few hours.

                      ZHP Diag Scan

                      Click here to download.
                      Save to your desktop.
                      Right Click Run as Admin.
                      Click the Options button.
                      Click on Check All
                      Then click close.
                      Click the Scanner button.
                      When complete please push the report button.
                      A notepad will open… attach the report in your next reply.


                      Download Autologger to your desktop.
                      Disable your Anitivirus/Defender prior to running.

                      [ul]
                      [li]Unzip it there. – If you are unsure how to unzip a program, then use ---- http://www.7-zip.org/ ----[/li][li]Right click Autologger and run as admin. (Xp user double click)[/li][li]AVZ4 will open and scan your machine, allow this to complete.[/li][li]Upload Collectionlog.zip to your next reply.[/li][/ul]

                      Comment

                      • Malnutrition
                        PCHF Moderator
                        • Jul 2016
                        • 7041

                        #12
                        @Not John Titor How about an update, these two tools will show me a bit more information needed to help you.

                        Comment

                        • Malnutrition
                          PCHF Moderator
                          • Jul 2016
                          • 7041

                          #13
                          @Not John Titor Please update the thread, in 72 hours it will be closed if there is no reply.

                          Comment

                          • Not_John_Titor
                            PCHF Member
                            • Jul 2022
                            • 9

                            #14
                            sorry for taking so long to get back to you
                            the ZHP one is in a file above
                            dont know what happened to the other one
                            I will download and post again

                            Comment

                            • Not_John_Titor
                              PCHF Member
                              • Jul 2022
                              • 9

                              #15
                              i’m not sure which file is which
                              so i’ll up load the 3
                              i know its meant to be one of these in the folder

                              Comment

                              Working...