Это видео недоступно.
Сожалеем об этом.

How to Remove Malware/Viruses From Your Windows PC

Поделиться
HTML-код
  • Опубликовано: 25 янв 2022
  • How to Remove Malware/Viruses From Your Windows PC
    Today we will take a look at removing a nasty pc virus from your computer. This trojan is a XMRig Minor Trojan, this can be difficult to remove because it uses 100% of the CPU and Memory, which makes the pc unusable. I will show you a nice trick to suspend the process which gives you back control of your pc so you can remove the trojan virus.
    Process Explorer
    docs.microsoft...
    ESET’s Free Online Scanner
    www.eset.com/i...
    Advanced Malware Scanning and Removal Tools
    www.hitmanpro....
    📃Watch related playlists and videos
    ✅ / britec09
    ❤️ Join Britec RUclips Members: / @britec09
    🚩 Connect with me on social:
    ✅ Follow on Twitter - / britec09
    ✅ Follow on Facebook: / briteccomputers
    🎬 View my Website: BritecComputers...
    💻Discord Access: / discord
    🛍 Support me with your Amazon purchases:
    UK amzn.to/3diZslY
    US amzn.to/2OwZWux
    💯Merch teespring.com/...

Комментарии • 193

  • @Britec09
    @Britec09  2 года назад +57

    This was a nasty trojan virus to remove. Drop us a LIKE 👍

    • @f9k4ksu8goij
      @f9k4ksu8goij 2 года назад

      pretty sure you need XMrigminer when running cudo, mining monero. not to say this one wasnt a virus particularly. but the program is for mining

    • @Paintwritelive
      @Paintwritelive 2 года назад

      This was after I put it in excluded folder in windows defender

  • @arthurshugars1974
    @arthurshugars1974 2 года назад +20

    Nice video and thanks! It really is a shame that some people take pleasure in screwing other people over with these trojans/malware. It is a nice breathe of fresh air having you show us on what to do in cases like these happening to us! :)

    • @Britec09
      @Britec09  2 года назад +7

      Love removing malware

    • @CPUjunkie
      @CPUjunkie 2 года назад

      @@Britec09 pppppppoppooooooooooooo

    • @Narobloxx
      @Narobloxx 2 года назад

      @@Britec09 same

  • @philonutube100
    @philonutube100 2 года назад +7

    Excellent work.... I learn so much from your flicks and a pleasure to watch as well.

  • @sebastian19745
    @sebastian19745 2 года назад +1

    I had the same issue many years ago (2007 or so). I worked with a P3 computer with XP that commanded a machine through a proprietary software. One day, when I started the computer in the morning I noticed that was slower than usual (I made a coffee and the machine was ready to go usually, but then I drank half of the cup until the program was ready). Well, the program was very lagged, it took minutes to send a command to the machine. The antivirus (avast I think it was) did not started and could not install anything, IT guy tried Panda, malware-something and nothing installed.
    So, I took the same approach: with taskmanager I tried to find the program that hog the CPU, but taskmanager did not started: need admin privileges. When browsing to its location was nowhere to be found, only a .lnk file instead (and I used Total Commander instead Windows explorer). I disconnected the network cable and form a CD (that I made in the IT office) I ran Process Explorer (that I made default taskmanager later). So I was able to find where its program was. Rebooted in safe mode, deleted its files, checked the registry for its name/location and deleted all the entries. Also checked the startup sequence to make sure that no other instance was ran. Rebooted and was OK. Virus removed. All in less than one hour.
    My colleague from the other shift was playing a new game at the time that he had on CD (some swf flash thing) while the machine was doing its job and that infected the computer. I disconnected the CD drive and no problems again. For that, we lost half day of work (almost all my shift), but I got a nice bonus for being the antivirus. The IT guy at the time was busy searching for another machine to replace that computer and eventually found one next day, so we had a spare (that we never used). And for the next two years while I worked there, I was called for every problem with the staff personal computers (viruses, BSOD, installing the OS, downgrading from Vista to XP, upgrading the hardware, etc).
    Often I took same approach, used same technique and always worked. That is why I only have the Windows default antivirus and never installed an antivirus program on my computers.

  • @film49uk
    @film49uk 2 года назад +1

    Wow, really impressed with this clip. Glad you showed us your method and keep them coming, many thanks Paul

  • @1965kings
    @1965kings 2 года назад +1

    In an Enterprise environment this would be painstakingly done if at all.
    Also, MSI's Rivatuner statistics side kick upon attempt to uninstall, it stops you from uninstalling. If you go to task manager and kill process, it restarts making impossible to do so. One scheme is to do as per uploader video. Instead I used a process lasso which I have been using for 2-3 years to kill off RTSS.

  • @ionamygdalon2263
    @ionamygdalon2263 2 года назад +1

    Very smart thinking Brian! Really enjoyed this video, as if it were a crime/thriller movie haha :)

  • @proulxr2002
    @proulxr2002 2 года назад +5

    Great video. I think my system is pretty clean but this is a super helpful video for future use.
    Thank you!

    • @Britec09
      @Britec09  2 года назад +3

      Glad it was helpful!

  • @sludgefactory241
    @sludgefactory241 2 года назад +3

    Hell yeah, always wondered how to manually remove that crap, cuz I don't really trust any one program myself to remove things properly. Another great video where I learned alot

    • @Britec09
      @Britec09  2 года назад

      Glad I could help

    • @dreamdream011
      @dreamdream011 2 года назад

      restart in safe mode and delete the folder, no need for extra programs

  • @fookingsog
    @fookingsog 2 года назад +4

    Interesting!!! When you rename the files, it breaks the reference links between the files as well as nullifying the executable attribute!!!

    • @Britec09
      @Britec09  2 года назад +2

      That is correct .exe to .old it can't run. But you need to kill process first

    • @fookingsog
      @fookingsog 2 года назад

      @@Britec09 Suspend Process!!!😉👍🏻...remember you had to put it to sleep before renaming?!

    • @saddamhossen8249
      @saddamhossen8249 2 года назад

      A@aaaaa

  • @lenn8089
    @lenn8089 2 года назад +1

    Great work Brian sorting that out, bit beyond me tho, I appreciate your knowhow.

  • @_Jay_Maker_
    @_Jay_Maker_ 2 года назад

    Awesome instructional guide, and very easy to do, too. I'll definitely add this practice to my typical removal process if other programs don't work. Great stuff.

  • @digitalillustration604
    @digitalillustration604 2 года назад +2

    As always, save this video in case I need it 👍Thank you!

    • @Britec09
      @Britec09  2 года назад +2

      Glad it was helpful!

  • @o0Sazie0o
    @o0Sazie0o 2 года назад

    Very helpful tips, I'll definitely try this if I get a similar problem

  • @deciodasilva3960
    @deciodasilva3960 2 года назад +3

    This was very useful mate thanks...i would actually go into a live CD and remove them...I like the technique you used

    • @Britec09
      @Britec09  2 года назад +4

      I could not do that when in remote session

    • @deciodasilva3960
      @deciodasilva3960 2 года назад

      @@Britec09 ahh forgot you mentioned that at the beginning 😅😅

  • @raylopez99
    @raylopez99 2 года назад +1

    Sounds pretty ad hoc. I'm sure a competent virus writer will make it so you cannot suspend or sleep any active malware app to prevent this fix in the future.

  • @dreamdream011
    @dreamdream011 2 года назад

    Instead of downloading additional programs and and doing all that work, just start in safe mode, and delete the folder, then scan with good anti-malware program.

  • @11Stormtrooper
    @11Stormtrooper Год назад

    Nice solution suspending the processes!
    Wouldn't something like LockHunter work too for this case?

  • @nonavailable4000
    @nonavailable4000 2 года назад +2

    Great Job Mr Britec !!! , i really missed these trojans & virus removing videos !!! :-) , this really kinda made my boring day lol

    • @Britec09
      @Britec09  2 года назад +1

      Glad you enjoyed!

  • @geraldthorburn1123
    @geraldthorburn1123 2 года назад

    One of your best vids ever, Brian

  • @climjames1677
    @climjames1677 2 года назад

    The only thing remaining is to find it in the 'start up list' and 'registry' and remove it there too. Well I would try that but it might not be the thing others should try. What do you think?

  • @PaulHoyle777
    @PaulHoyle777 2 года назад +1

    Thank you so very much. I learn a great deal from you. 🙂

    • @Britec09
      @Britec09  2 года назад

      You are so welcome

  • @boiseptic138
    @boiseptic138 2 года назад

    Just use autoruns to disable it perm then get tron to destroy the malware

  • @vincemorath676
    @vincemorath676 2 года назад

    Great video. Thanks for sharing. That was a rather nasty critter to kill.

  • @Revolutionized
    @Revolutionized 2 года назад

    Yeah, you could do that, or you could have some essential system security (premium version with auto update functionality and routine background scanning) installed in the first place and have these stuff avoided for close to a hundred percent of the time.

  • @200andahalf
    @200andahalf 2 года назад +1

    How about using Rkill to stop those processes?

  • @JCO2002
    @JCO2002 2 года назад +1

    Here's the best way - insert a USB live stick with Linux on it, then select erase disk and install. No more viruses.

  • @Daisy.florina
    @Daisy.florina Год назад

    This is so good for us to know thank you .

  • @Mobenforcer
    @Mobenforcer 2 года назад +1

    Another great video, thanks.

    • @Britec09
      @Britec09  2 года назад

      Glad you enjoyed it

  • @tridens6708
    @tridens6708 2 года назад

    Wouldn't pc antivirus softwear find and delete the trojan?

  • @BeltsandBuckles01
    @BeltsandBuckles01 2 года назад

    Nice work great work👍

  • @Frobard
    @Frobard 2 года назад

    So where did the malware come from? How did it start at boot? Any service involved? Registry entries?

    • @user-ut1cy8sb1p
      @user-ut1cy8sb1p 2 года назад

      👆👆👆👆👆 contact him for help, he is the best.

  • @obasaar68
    @obasaar68 2 года назад +1

    Hello, Thank for a very detailed informative video!

    • @Britec09
      @Britec09  2 года назад

      Glad it was helpful!

    • @user-si5tr5wg4p
      @user-si5tr5wg4p 2 года назад

      @@Britec09 Hello, I'm grateful to you for taking a moment to reply!

  • @MrLuiszao
    @MrLuiszao 2 года назад

    great job amazing thinking

  • @robpet4424
    @robpet4424 2 года назад

    Nice.... now I know what to do !

  • @MrTr3D
    @MrTr3D 2 года назад

    what if the trojan is still in the registry? Why not just use bitdefender to eliminate the trojan, rather than doing each one? It might be hidden in another folder

  • @RootTheLucario
    @RootTheLucario 2 года назад

    I wouldn’t advise clicking on related sites as some of them are infected websites with malicious download files. To be honest i’d say be careful about sites you click on.

  • @garyalexander5686
    @garyalexander5686 2 года назад

    Brilliant work. Thanks.

  • @anshumanmishraw
    @anshumanmishraw 2 года назад

    Thanks for great content video it's much more helpful I learned about it.

    • @Britec09
      @Britec09  2 года назад

      Glad it was helpful!

  • @ASO-F5B
    @ASO-F5B 2 года назад

    Good review

  • @stevevivien4431
    @stevevivien4431 Год назад

    Hi britec09 I have a problem where I can't connect to the internet. I've tried everything to fix it but no cigar. I get err_connection_failed, not even the network troubleshooting works, it can't detect the problem. Funny thing is every else seems to work with the internet except my PC. Help!

  • @rasedul_islam_rashed
    @rasedul_islam_rashed 2 года назад

    Very nice video. Thanks a lot.

  • @crumblingsanity6455
    @crumblingsanity6455 2 года назад

    Would it have been better to try and run malwarebytes in safe mode?

  • @HEROfps452
    @HEROfps452 2 года назад

    I just had an issue where my gpu usage was 100 percent at idle and right when I opened my task manger it went to 1 percent. I had to serach for like 30 min on the issue to fix it. I suggest everyone get Malwarebytes it helped me get rid of undected trojans in my pc.

  • @tombecker2055
    @tombecker2055 2 года назад

    Would booting up in safe mode have allowed normal deletion of these programs?

  • @Uglylizard66
    @Uglylizard66 2 года назад

    that one lil nasty virus, thanks for this great video. saved to my bookmarks

    • @Britec09
      @Britec09  2 года назад

      You're welcome!

    • @1967KID
      @1967KID 2 года назад

      Nice information video nice job keep up with the good work.

  • @babakgholian3467
    @babakgholian3467 2 года назад

    Hi I got a question . How do you see all the extentions in the browser Taskbar opera or other if you have more than 5 extentions you can't see them and then you can't use them ! How do you get tow rows of extentions in the browser bar ?

  • @MrCino000
    @MrCino000 2 года назад

    maybe some idea, it doesn't want me to install the latest update in W 11. W 11Pro is installed without TPM verification.

  • @puyat2000
    @puyat2000 2 года назад

    the very simple question is why computer viruses is created in any kind of it. then you want to remove it using another created program called anti-virus or vise versa. look if computer viruses not created, the anti-virus not created also. imagine you are using any types of operating system without existing of viruses i think you are happy with them.

  • @thesnare100
    @thesnare100 2 года назад

    the clickable image for this video said remove any virus 100% very bold claim I'd like to see how it stands up to tests

  • @erwinperciva5708
    @erwinperciva5708 2 года назад

    Nice my pc is infected by trojan that infecting all .exe files. And anti-virus can't remove it. I'll try it manually
    Thank for sharing

  • @Robinrpv
    @Robinrpv 2 года назад

    Why not just boot to safe mode and delete the program file then go through regedit and after that run something like Advanced System Repair Pro

  • @welshtony1
    @welshtony1 2 года назад

    This was fun to watch live.

  • @MortalRhythm
    @MortalRhythm 2 года назад

    When I open task manager it's turn off automatically can make me a solution

  • @karthiksarmavalluri5022
    @karthiksarmavalluri5022 2 года назад

    Bro please make a video on high cpu usage of windows 10 in vmware

  • @thestudioroom5883
    @thestudioroom5883 2 года назад

    Hi Brian. Something like this happened to me last week. a thing called "tailhook" was flooding my computer. uninstalled it and it reappears. All my junior sport tricks to repair failed. End up reloading Windows 10. Many thanks for the advice.

  • @BrianJohnson-lh2ek
    @BrianJohnson-lh2ek 3 месяца назад

    Wow. Great job.

  • @samvictor1472
    @samvictor1472 2 года назад

    My laptop was affected with udla malware please help me to remove that malware

  • @V530-15ICR
    @V530-15ICR 2 года назад +1

    Oh it's that annoying xmrig, I saw it on a pc and had to do ctrl alt delete the whole time

    • @Britec09
      @Britec09  2 года назад +1

      ctrl alt delete would not do anything with the trojan

    • @V530-15ICR
      @V530-15ICR 2 года назад +1

      @@Britec09 but i would have to click log out and log back in to be able to delete the file before it runs

  • @sanamthapa8786
    @sanamthapa8786 2 года назад

    MME ramsomware virus has infected my PC. Can you please help me and how can I decrypt the files

  • @johnsenchak1428
    @johnsenchak1428 2 года назад

    That sounds like a file less malware that hides in memory , A lot of that comes from drive by down loads from websites that run aggressive ads. This is one of the main reason why you have to use a ad-blocker extensions At the very end I would use a clean folder and files utility to remove all garbage including what's in the trash bin from all the terminating

    • @Britec09
      @Britec09  2 года назад

      It was a nasty one.

  • @123IGRACH
    @123IGRACH 2 года назад +1

    Check for autorun and reboot in safe mode?

    • @Britec09
      @Britec09  2 года назад +1

      It was a remote support session, so I needed internet

  • @journeyon1983
    @journeyon1983 2 года назад

    Brian. Couldn't you have booted into "Safe Mode" rather than manually putting to sleep all those running processes from the virus? If this idea works, then you could just delete the folder with the infected files and you're done.

    • @Britec09
      @Britec09  2 года назад +2

      I was remoted in to machine.

  • @Bunyi_Logam
    @Bunyi_Logam 2 года назад

    I will try this.. 🙏🙏🙏 Thanks

  • @MrTr3D
    @MrTr3D 2 года назад

    use revo to remove all files, rather than doing it manually

  • @jessevokal7127
    @jessevokal7127 2 года назад

    @Britec09 Hey, so I do have a problem. I tried to suspend the suspected malware with this program and it keeps telling me "Access Denied" not sure how to get around this? Also do you fix PCs like this guys? I'll pay you to fix mine please🙏 I've been trying for over a month

  • @johnsenchak1428
    @johnsenchak1428 2 года назад

    Brian the process "TERMINATOR" "Another bites the dust" and another gone and another gone "Another bites the dust"

  • @MrBadboy418
    @MrBadboy418 2 года назад

    The king!

  • @mike5636
    @mike5636 2 года назад

    There's is tron, why didn't you use that?

  • @ParisubalanCreations
    @ParisubalanCreations 2 года назад

    Hai Bro I am Tamilnadu and my laptop was attacked for moia ransomware then my files are corrupted, it also added .moia extension for example my file name is Parisubalan.jpeg.moia so how to recover my files please ask me bro please... Waiting for your reply 🤝

  • @markae0
    @markae0 2 года назад

    Thanks for the education.

  • @diveallz1044
    @diveallz1044 Год назад

    I'm curious how long it took you to remote into that PC since the CPU usage was at 100%🤔

    • @Britec09
      @Britec09  Год назад

      Malware has a tendency of utilising all of the system resources

    • @diveallz1044
      @diveallz1044 Год назад

      @@Britec09 I'm well aware of that sir 😂 🤦 as you mentioned numerous times in the video. You had said that you remoted into that system and I'm curious how long it took you to do that with the system resources being at 100% like that.

  • @MrSonic1953
    @MrSonic1953 2 года назад

    what about running rkill ?

  • @-WhizzBang-
    @-WhizzBang- 2 года назад

    If you can rename them, why not just delete them?

  • @speckles4783
    @speckles4783 2 года назад

    I just watched a video from 2 years ago about the 144 hertz monitors. My screen runs at 144hz but when I go into a game such as seige. It will default back to 60hz. When I change the games screen to 144hz. It still stays on 60hz. This happens to overwatch aswell. I've done what you've said and went through amd drivers and still its not working. Any ideas on what is causing this

    • @Britec09
      @Britec09  2 года назад

      Pop on our discord for help

  • @renew2781
    @renew2781 2 года назад

    Thanks brother pls help to remove Usb
    Write protected issue

    • @Britec09
      @Britec09  2 года назад

      join discord

    • @renew2781
      @renew2781 2 года назад

      @@Britec09 didn't understand is this Ur RUclips channel ?

  • @spektrumB
    @spektrumB 2 года назад

    Learn a few tricks. Big thumb up.

  • @ivanlimzg
    @ivanlimzg 2 года назад +1

    Would a pc reset work?

  • @Paintwritelive
    @Paintwritelive 2 года назад

    Just to let you know I downloaded test disk to remove malware and windows defender flagged it as a trojan. it was the wrong link. It was me. Now I feel stupid. Sorry.

  • @nathanphillips6423
    @nathanphillips6423 Год назад

    How does your average George know what files are part of malware?

  • @Duraputer
    @Duraputer 2 года назад +1

    How I remove Corona viris

  • @JimInYamaguchi
    @JimInYamaguchi 2 года назад +2

    Your tips are pretty good, so I've got a question for you: I have my taskbar set to a specific height, but every time Windows updates something, it readjusts the taskbar height to what looks like two lines high (my preference is four). Do you know how I can stop/prevent it doing that?

    • @Britec09
      @Britec09  2 года назад +2

      Windows updates has a habit of changing settings back, especially feature updates. Make a batch files will all your settings and run it after update.

    • @JimInYamaguchi
      @JimInYamaguchi 2 года назад +1

      @@Britec09 Sounds good. But, how? Output my settings to a .reg file and have the batch file load it on startup? Not sure how to output the settings (what registry entries they're in). :/

  • @reducetheme585
    @reducetheme585 2 года назад

    How did you record this?

  • @edw6114
    @edw6114 Год назад

    what if i cant suspend ?

  • @WillyEckaslike
    @WillyEckaslike 2 года назад

    will a system restore to an earlier point g3t rid of it?

    • @Britec09
      @Britec09  2 года назад

      Nope and the restore points could hold malware

  • @djdoolittle1315
    @djdoolittle1315 2 года назад

    Wotcha Bri ,Malwarebytes Free. Job done ✅

    • @Britec09
      @Britec09  2 года назад

      Nope, he tried that

  • @sleepwalker6825
    @sleepwalker6825 Год назад

    Snore Fest ... So many easier ways to kill these processes ... Brian Used to be a GOTO channel but the the Lag is now painful

  • @maxthecaddy8451
    @maxthecaddy8451 2 года назад

    would Malwarebytes be good to sort that viruses out👍

    • @Britec09
      @Britec09  2 года назад +1

      He run Malwarebytes and could not remove it. Think he said it was crashing the program.

  • @MrJavapiet
    @MrJavapiet 2 года назад

    Nice one

    • @Britec09
      @Britec09  2 года назад

      Thanks for watching

  • @DCS026
    @DCS026 2 года назад

    Nice!

  • @fernandozornosa6398
    @fernandozornosa6398 2 года назад

    Great worlk killing and delete nasty stuff from a system,Is great to Learn about security on Windows,thanks

  • @garymucher4082
    @garymucher4082 2 года назад

    Nice video. Obviously this isn't for the computer illiterate type folks. So many things to do to clean a PC up to work correct again. The average user probably won't have the knowledge of how to accomplish such things. But a great idea all the same.

  • @breakingthe4thwall260
    @breakingthe4thwall260 2 года назад

    Out of curiosity is this client running a paid version of antivirus?

    • @Britec09
      @Britec09  2 года назад +1

      No, just windows security

  • @RebMordechaiReviews
    @RebMordechaiReviews 2 года назад

    I do use Process Explorer and Process Monitor, but would have used UVK to deal with this. Are you sure that there wasn't an associated Windows Service which was restarting the processes? I would have also done a search for files created at the same time, looked for an associated Windows Service.
    Your method of renaming the exe files is exactly what I would have done except I rename them .BAD.😀

    • @Britec09
      @Britec09  2 года назад

      What ever works I guess.

    • @RebMordechaiReviews
      @RebMordechaiReviews 2 года назад

      @@Britec09 It was you who recommended Ultra Virus Killer to me in the first place!
      Great product. there is an option to kill ALL non essential processes as well. Very useful. Also to list associated processes and services..great for problems like this.

    • @Britec09
      @Britec09  2 года назад

      @@RebMordechaiReviews Yes its a very good product, wanted to show how to manually remove it.

  • @anthonynowlan9765
    @anthonynowlan9765 2 года назад

    Taskkill from cmd?

    • @Britec09
      @Britec09  2 года назад

      taskkill /F /PID pid_number

  • @user-rn9ux1qm2q
    @user-rn9ux1qm2q 2 года назад

    У нас 6 летний установит "unlocker" и завершит все ненужные процессы с последующим удалением зараженных папок. Людям нужно проще и быстрее решать проблемы. В этом видео все хорошо.... все в ручную с пониманием всех действий, но это много кому будет лень учить. А ведь лень, это двигатель прогресса.

  • @SA77888
    @SA77888 2 года назад

    I hate tasks re-start themselves.......should be a law against it lol. If I end the task, its cos I want the task to end....not to it can end and then re-start itself.

  • @Knards
    @Knards 2 года назад

    Brilliant.

  • @georgihristakiev9375
    @georgihristakiev9375 2 года назад

    I removed the trojan virus from my laptop with Malwarebytes

  • @sd2go
    @sd2go Год назад

    easiest way is not to install them in the first place