Kitz Forum

Computer Software => Windows 10 => Topic started by: bob.gas on August 23, 2020, 10:31:00 AM

Title: Malware?
Post by: bob.gas on August 23, 2020, 10:31:00 AM
Hope this is the correct forum, if not please redirect mods?

I think I might have some malware hidden in my PC somewhere....

I keep getting a McAfee popup when first starting my Edge browser and occasionally, advising me to fix problems that obviously have to pay for.

I have windows defender, super antispyware, and obviously window Firewall they haven't found anything untoward.

 

I'm not very good with Reg edit, so could someone possibly guide me into what I have to do to get rid of it please?

Title: Re: Malware?
Post by: broadstairs on August 23, 2020, 11:03:30 AM
Do you have or have you had any McAfee products installed? Do you have any Edge extensions from McAfee installed? Not all pop ups are fake.

Stuart
Title: Re: Malware?
Post by: parkdale on August 23, 2020, 11:27:14 AM
Hi Bob, have you tried this? https://support.microsoft.com/en-gb/help/17466/windows-microsoft-defender-offline-help-protect-my-pc
Title: Re: Malware?
Post by: bob.gas on August 24, 2020, 10:16:47 AM
Do you have or have you had any McAfee products installed? Do you have any Edge extensions from McAfee installed? Not all pop ups are fake.

Stuart

Hi Stuart.
I did have something Mcafee installed yonks ago with some other software that I downloaded.
Didn't wanrt it so uninstalled.
Title: Re: Malware?
Post by: bob.gas on August 24, 2020, 10:19:50 AM
Hi Bob, have you tried this? https://support.microsoft.com/en-gb/help/17466/windows-microsoft-defender-offline-help-protect-my-pc

Thanks, Robin.

The defender offline scan hasn't worked, unfortunately.
I guess it's a case of just deleting it when it pops up.
Title: Re: Malware?
Post by: parkdale on August 24, 2020, 10:40:21 AM
Did it run and not find any thing or just not run at all?

Robin
Title: Re: Malware?
Post by: bob.gas on August 24, 2020, 01:52:59 PM
Hi Robin.

Yes, it did run and restarted automatically.
 But it didn't kill it
Title: Re: Malware?
Post by: jelv on August 24, 2020, 02:54:21 PM
Can we have a screen shot of the message that pops up please.
Title: Re: Malware?
Post by: 4candles on August 24, 2020, 06:11:29 PM

I think I might have some malware hidden in my PC somewhere....

I keep getting a McAfee popup when first starting my Edge browser and occasionally, advising me to fix problems that obviously have to pay for.

A genuine McAfee pop up wouldn't be asking for payment of any kind.
Title: Re: Malware?
Post by: bob.gas on August 25, 2020, 11:09:01 AM
Can we have a screen shot of the message that pops up please.

I'll try to catch it when it pops in again.  :)
Title: Re: Malware?
Post by: bob.gas on August 25, 2020, 11:11:41 AM
A genuine McAfee pop up wouldn't be asking for payment of any kind.

Really, thanks.
I did look into it, and it recommended Mcafee for a price  ???
I guess it's not the real deal then?
Title: Re: Malware?
Post by: meritez on August 25, 2020, 02:19:02 PM
sounds like a browser extension needs removing.

Title: Re: Malware?
Post by: parkdale on August 25, 2020, 03:42:10 PM
I would reset Edge - this will remove any extensions etc taking it back to default.

open Edge - then left click 3 dots on top right...ish corner then click settings, then at/near the bottom of the list is "Reset Settings" follow link viola job done :fingers:
Title: Re: Malware?
Post by: bob.gas on August 25, 2020, 04:31:47 PM
just got onto the PC again.
Typical it hasn't popped up yet to take a screenshot.
I will when it does show though.

Robin....
I'm not sure it is an Edge problem as I tried it with Chrome browser ant it still popped up. ::)

Edit.
Just thought...
Edge has become Chrome based right?
Perhaps I should download Firefox or Opera and try that?
Title: Re: Malware?
Post by: parkdale on August 25, 2020, 05:22:19 PM
If you have Chrome, I would reset this as well to get back to default condition.

Open Chrome - left click 3 dots top right corner - -settings - Advanced - Reset and cleanup.

Title: Re: Malware?
Post by: bob.gas on August 25, 2020, 06:51:06 PM

OK guys this is the naughty pop-up

(https://i.imgur.com/cqYVgql.png)
Title: Re: Malware?
Post by: watcher on August 25, 2020, 09:27:12 PM
In Edge try Settings->Privacy and Services->Clear Browsing Data->Choose what to clear, and select everything to be cleared. Note that this may involve the need to re-enter passwords and log back in for some sites, or reauthenticating things such as bank services. The other thing to look at is Settings->Site Permissions->Notifications and see what is in Blocked or Allowed.

The equivalent in Chrome is Settings->Privacy and Security->Clear browsing data->Advanced, and again select everything subject to the caution above. The other thing you could try in Chrome is Settings->Site Settings and go to the very bottom of the list to see what Pop-ups and redirects is set to. If it is not set to Blocked, try setting it to Blocked and/or if there are sites listed under Allowed that could be a source of the pop-up remove them. Also under Site Settings look at the Notifications item, there should be a Blocked and Allowed list. If McAfee is on the Allowed list then remove it. If there is nothing on the Allowed list add an entry to Blocked such as [*.]mcafee.com which would block any further notifications.

Title: Re: Malware?
Post by: roseway on August 25, 2020, 10:11:18 PM
There are two spelling mistakes in that popup, which makes it very suspicious.
Title: Re: Malware?
Post by: burakkucat on August 25, 2020, 10:34:04 PM
There are two spelling mistakes in that popup, which makes it very suspicious.

Agreed. When one speed-reads it, the errors are not that obvious but knowing that there are spelling mistakes, a careful examination succeeds.
Title: Re: Malware?
Post by: digbey on August 26, 2020, 11:26:45 AM
I've found references to this popup on a couple of forums and both suggested the same solution. Here's a quote from one of them.

Quote
I went into my installed Apps and found something called "fa really simple syndication (rss)". Given the pop up said Fast App store at the bottom I figured it might be related. Uninstalled it and had no problems since. Just in case anyone else has the same problem.

https://community.bt.com/t5/Broadband-Extras-Apps-from-BT/Potential-scam-from-alleged-McAffee-anti-virus-not-on/td-p/2028242/page/2
Title: Re: Malware?
Post by: bob.gas on August 26, 2020, 06:43:13 PM
In Edge try Settings->Privacy and Services->Clear Browsing Data->Choose what to clear, and select everything to be cleared. Note that this may involve the need to re-enter passwords and log back in for some sites, or reauthenticating things such as bank services. The other thing to look at is Settings->Site Permissions->Notifications and see what is in Blocked or Allowed.

The equivalent in Chrome is Settings->Privacy and Security->Clear browsing data->Advanced, and again select everything subject to the caution above. The other thing you could try in Chrome is Settings->Site Settings and go to the very bottom of the list to see what Pop-ups and redirects is set to. If it is not set to Blocked, try setting it to Blocked and/or if there are sites listed under Allowed that could be a source of the pop-up remove them. Also under Site Settings look at the Notifications item, there should be a Blocked and Allowed list. If McAfee is on the Allowed list then remove it. If there is nothing on the Allowed list add an entry to Blocked such as [*.]mcafee.com which would block any further notifications.

Thank you for that.
I did do a reset on Edge that was recommended earlier.
But since then I have been unable to get all (100my tabs up from start.
I did got to settings and "on start up" etc, but only the start page.
I know you are all gonna say...... why so may tabs, use bookmarks  :blush:
but I just find it nice to be able to look through my favorite pages on my tabs, like reading a book lol.
Title: Re: Malware?
Post by: bob.gas on August 27, 2020, 06:02:37 PM
Right guys. This is driving me mad.
Like I said in my last post...
since resetting Edge, I cannot get the tabs I "open from start" to stay put (open on wake up from sleep)
What has happened? :blush:
Title: Re: Malware?
Post by: Alex Atkin UK on August 27, 2020, 08:54:07 PM
Right guys. This is driving me mad.
Like I said in my last post...
since resetting Edge, I cannot get the tabs I "open from start" to stay put (open on wake up from sleep)
What has happened? :blush:

Well your first mistake was that you used Edge.  :P
Title: Re: Malware?
Post by: bob.gas on August 28, 2020, 08:27:34 AM
really?
I thought it was supposed to be the Bees Knees.
I was using Chrome but had problems with it, so went to Edge.
What browser do you recommend then?
Title: Re: Malware?
Post by: broadstairs on August 28, 2020, 09:48:45 AM
Well they all have their pros and cons... I run Linux so Edge is not an option  ;D Personally I would always prefer something other than Microsoft if I were to run Windows. I am currently testing Brave as a browser, based on Chromium and seems to be fast, my only reservation right now is that the Android version does not support extensions. I also use Chromium and Waterfox (both versions) but then I like playing ;)

Stuart
Title: Re: Malware?
Post by: bob.gas on August 28, 2020, 10:14:10 AM
Must admit to wanting to check out Linux a while ago, but being an old F*rt, I couldn't get my head around it.  :-[

I used F/Fox for years and did venture into waterfox. Wasn't there another something- fox as well?
But everywhere I looked Chrome was recommended, so went with that. Was great for some time, but then got some problems.
Hence with Edge now.
But as I can't get my tabs to open straight away, I'm back on Chrome and just hoping I don't get any probs again as re-installed.

What do you or anyone think about the Opera browser?


Title: Re: Malware?
Post by: broadstairs on August 28, 2020, 11:00:41 AM
I did try Opera some time ago but was not impressed at all, some versions (cant remember which) had some remote (off site) formatting which I did not like. Anyway never gone back to it. If you only need a PC browser then Brave seems quite good and it's based on Chromium which is the open source version of Chrome so should be somewhat familiar. Does have an Android version but as I mentioned it does not support (yet) extensions which the PC version does. It is supposed to be very secure as well.

As for Linux you could always download a ready built version to run from a USB stick so you can try it out without changing anything on your PC if/until you are happy and want to install it, if you do go that way get a version which has the KDE desktop as this is very similar to Windows in may ways. Years ago I converted my wife's laptop to Linux KDE and she really could not see anything significantly different from her Windows desktop. By the way if you do try this go for a stable and not rolling release sometimes called 'long term support' which does get updates but is not leading edge. Once such version is openSUSE Leap 15.2.

Stuart
Title: Re: Malware?
Post by: bob.gas on August 28, 2020, 11:42:47 AM
Thanks again, Stuart.

I will download Brave.
And maybe take your advice on Linux, when time allows.

Cheers

Bob
Title: Re: Malware?
Post by: bob.gas on August 28, 2020, 12:56:31 PM
Have downloaded Brave.
Haven't looked through all of it just yet, but seems OK so far.
Managed to keep all my favourite tabs on start-up :)
Wonder if I'll get the McAfee pop-up with it?

Will check it all out soon.
Title: Re: Malware?
Post by: Alex Atkin UK on August 29, 2020, 02:57:47 AM
To be fair, I've used Edge a few times and it seems fine.  But personally I avoid all Chromium browsers for normal day to day use as they seem overly heavy.  Not that Firefox is perfect, but it seems to handle a bazillion tabs much better.

That said, I have Firefox, Chrome and Brave installed on Linux.  It doesn't hurt to have options.
Title: Re: Malware?
Post by: bob.gas on August 29, 2020, 09:47:14 AM
I have removed Chrome now and only have Edge & Brave.

I'm using Brave as the default, and not had the dreaded pop-up yet. :fingers:
Not sure if it's my imagination, but it seems to be faster.
Is there a technical way to check the speed of browsers?
Title: Re: Malware?
Post by: bob.gas on August 29, 2020, 12:12:20 PM
Well, that's interesting.

I just opened Edge and guess what?
Yes, the McAfee popped up again.
Still nothing on Brave yet though. :)
Title: Re: Malware?
Post by: bob.gas on August 31, 2020, 11:04:07 AM
Oh dear, it hasn't gone away completely.
It shows it's ugly head whilst first starting the PC from sleep.
It doesn't pop up frequently like before in the EDG browser. ::)
Title: Re: Malware?
Post by: petef on August 31, 2020, 08:31:22 PM
Opera used to have a feature in its ad blocker to compare the speed of pages with and without ads. There were often big  differences.

If you want to measure speeds now you will need to use your browser's developer tools. Those will show in detail what content and ads are taking time but it leaves you to do the adding up.

One big advantage that Opera has is that ad blocking is built in and so it can outperform any extension. I have not been tempted to try Brave as I understand that it substitutes ads rather than completely blocking. I whitelist ads from Kitz and a few other sites.
Title: Re: Malware?
Post by: watcher on August 31, 2020, 09:44:15 PM
As this seems to be malware maybe you should consider using something like Malwarebytes (https://www.malwarebytes.com/mwb-download/). It has a free trial period during which you could scan and see what it finds, and also establish whether it can fix this issue permanently.
Title: Re: Malware?
Post by: Alex Atkin UK on September 01, 2020, 11:49:17 AM
Ads are almost always the biggest page hog, web page loading speed is lightening with them disabled but I morally don't like doing that as if everyone did it we wouldn't HAVE websites to visit.
Title: Re: Malware?
Post by: bob.gas on September 02, 2020, 09:43:35 AM
That's true.
One forum I visit regularly won't let me into some of it if I have a blocker.
Title: Re: Malware?
Post by: bob.gas on September 02, 2020, 03:22:35 PM
It's back again.
Brave didn't stop it afraid.
Title: Re: Malware?
Post by: broadstairs on September 02, 2020, 03:44:14 PM
When you posted an image of the pop up it did not show the entire window, its not clear if this is displayed in a browser pop up or some other kind of pop up window can you post a whole screen image when it next happens so we can see how it appears. Hopefully there wont be anything private in the background  ;)

Stuart
Title: Re: Malware?
Post by: bob.gas on September 02, 2020, 04:55:50 PM
OK Stuart, thank you.
I'll try again when it shows it's ugly head.
Title: Re: Malware?
Post by: pxr5 on September 03, 2020, 09:34:17 AM
The guys on this site will guide you through what to do regarding malware/viruses. I've not had the misfortune to actually use them, but I've read through a couple of caes in the past. Worth a shot:

https://www.bleepingcomputer.com/forums/f/22/virus-trojan-spyware-and-malware-removal-help/
Title: Re: Malware?
Post by: bob.gas on September 03, 2020, 05:36:12 PM
The guys on this site will guide you through what to do regarding malware/viruses. I've not had the misfortune to actually use them, but I've read through a couple of caes in the past. Worth a shot:

https://www.bleepingcomputer.com/forums/f/22/virus-trojan-spyware-and-malware-removal-help/

Thanks for the advice,
 I am actually in the middle of dealing with one of their gurus on this problem.
But because I'm pretty useless with the Tech side of PC's, I'm struggling. :blush:
He is very patient with me I must say.

If I manage to get it right, then I'll let you all know the outcome.
Title: Re: Malware?
Post by: petef on September 03, 2020, 05:42:20 PM
I've just noticed that my bank offers Malwarebytes Premium for free. That is RBS but presumably applies to NatWest too, perhaps other banks offer similar.
Title: Re: Malware?
Post by: bob.gas on September 03, 2020, 06:31:33 PM
I have premium on a 14 day trial at the moment.
Title: Re: Malware?
Post by: j0hn on September 04, 2020, 10:25:00 AM
I've just noticed that my bank offers Malwarebytes Premium for free. That is RBS but presumably applies to NatWest too, perhaps other banks offer similar.

Free for both RBS and NatWest customers.

They give you a free license to use on up to 10 devices.

https://personal.natwest.com/personal/fraud-and-security/malwarebytes.html

https://personal.rbs.co.uk/personal/fraud-and-security/malwarebytes.html
Title: Re: Malware?
Post by: bob.gas on September 04, 2020, 02:30:39 PM
Unfortunately, I'm with <a different bank>.  ::)

[Moderator edited to remove the name of the bank, as it is wise not to make that public knowledge.]
Title: Re: Malware?
Post by: Floydoid on October 05, 2020, 08:38:33 AM
I find that the free version of Malware Bytes (https://www.malwarebytes.com/mwb-download/) does a darned good job.

Other excellent free spyware removal tools that I can recommend you install and run are:

Super Anti Spyware (https://www.superantispyware.com/free-edition.html)

ADW Cleaner (https://www.malwarebytes.com/adwcleaner/)

Hitman Pro (https://www.bleepingcomputer.com/download/hitmanpro/)

Junk Removal Tool (https://www.bleepingcomputer.com/download/junkware-removal-tool/)

In each case, install, update if prompted, then run the app's scanning process and let it deal with everything that it finds.

[I merely provide this as information for anyone browsing this topic who also has been infested with malware.]
Title: Re: Malware?
Post by: bob.gas on October 09, 2020, 07:14:02 PM
thank you for your input.

I already have Malwarebytes free, Superantispyware and used ADW.
Haven't tried the other two though, so will have a look into them thanks.

Bob
Title: Re: Malware?
Post by: Floydoid on October 15, 2020, 08:23:11 AM
They are very powerful and effective tools - it's always worth running more than one scanner as they tend to find different issues, depending on how the programs have been written.
Title: Re: Malware?
Post by: bob.gas on October 15, 2020, 05:18:55 PM
Many thanks everyone.
I'm sorted at last.
Robin (parkdale) ironically lives close to me, and kindly came and rectified the PC.
No more McAfee thank God, and Robin :)
He's now my go to PC guru ;)
Title: Re: Malware?
Post by: parkdale on October 15, 2020, 05:40:06 PM
Glad you're all all sorted now... and were both out of the dog house now :fingers:
Title: Re: Malware?
Post by: Alex Atkin UK on October 15, 2020, 06:07:13 PM
They are very powerful and effective tools - it's always worth running more than one scanner as they tend to find different issues, depending on how the programs have been written.

I assume you mean one-off not realtime, as you should NEVER run more than realtime scanner as they will conflict with each other.
Title: Re: Malware?
Post by: bob.gas on October 15, 2020, 06:51:00 PM
Glad you're all all sorted now... and were both out of the dog house now :fingers:

 :D :D
Title: Re: Malware?
Post by: bob.gas on October 15, 2020, 06:53:17 PM
I assume you mean one-off not realtime, as you should NEVER run more than realtime scanner as they will conflict with each other.

Yes, I thought that too.
I've decided to just use defender and not bothering with others unless i really need to.
Title: Re: Malware?
Post by: Floydoid on October 15, 2020, 07:20:21 PM
I assume you mean one-off not realtime, as you should NEVER run more than realtime scanner as they will conflict with each other.

Yes of course you are right, ADW, HitmanPro & JRT cleaners are only designed to scan on an as and when basis, they don't run in real time.

Personally I've used Comodo Internet Security Premium (the free version) for years and it's helped keep my system as clean as a whistle, I prefer to disable Windows Defender.

https://www.comodo.com/home/internet-security/free-internet-security.php
Title: Re: Malware?
Post by: bob.gas on October 15, 2020, 07:31:47 PM
I looked into Comodo some years agao, as the reviews were good.
But being a dummy, I didn't fully understand it.
I was using Avast with win XP then. :D
Title: Re: Malware?
Post by: Floydoid on October 15, 2020, 07:57:39 PM
You don't really have to understand much with Comodo - it looks after itself mostly. It does also install the Comodo Dragon browser (a distant cousin of Firefox), which you can play with, or it's easy enough to uninstall the browser.