guys please help superstar.io and bangsearch have taken over my browser

Sort:
AhmedAryan

alr i've removed fully all of the bangsearch and superstar.io files because there's supposed to be 3 files ServiceUI, UPCD velocity, and SearchUI, which ive found

i just need to find out if the last file created yesterday, Antimalware Service Executable, is actually harmful

gotta eat rn so uhhh cya when im back i guess

AhmedAryan

so it seems that file wasnt harmful after some digging around

tysm guys it seems all the malware is gone

x-7602588195
Be careful these next few days, also see if you can delete that security file it installed, you don’t want to take any chances harmful or not
EscherehcsE
AhmedAryan wrote:

so it seems that file wasnt harmful after some digging around

tysm guys it seems all the malware is gone

Hi. Here's my two cents on your situation.

To summarize: You downloaded some stuff and got at least one browser hijacker on your PC. You think you've gotten rid of the malware. (Maybe you did, maybe you didn't, idk.)

However, the fact that you don't even know if Windows Defender is enabled is troubling to me. I suspect it is enabled, as the "Antimalware Service Executable" file is part of the Windows Defender real-time service. However, another red flag to me is the fact that you said this file was created yesterday, which sounds a little janky to me.

If I were in your shoes, at the very minimum, I would go to the Bleepingcomputer.com site and download (and run) two programs: the free version of Malwarebytes and AdwCleaner.

https://www.bleepingcomputer.com/download/malwarebytes-anti-malware/

https://www.bleepingcomputer.com/download/adwcleaner/

After doing that, I would check Windows to verify that the Windows Defender real-time protection is enabled.

Good luck!

AhmedAryan
EscherehcsE wrote:
AhmedAryan wrote:

so it seems that file wasnt harmful after some digging around

tysm guys it seems all the malware is gone

Hi. Here's my two cents on your situation.

To summarize: You downloaded some stuff and got at least one browser hijacker on your PC. You think you've gotten rid of the malware. (Maybe you did, maybe you didn't, idk.)

However, the fact that you don't even know if Windows Defender is enabled is troubling to me. I suspect it is enabled, as the "Antimalware Service Executable" file is part of the Windows Defender real-time service. However, another red flag to me is the fact that you said this file was created yesterday, which sounds a little janky to me.

If I were in your shoes, at the very minimum, I would go to the Bleepingcomputer.com site and download (and run) two programs: the free version of Malwarebytes and AdwCleaner.

https://www.bleepingcomputer.com/download/malwarebytes-anti-malware/

https://www.bleepingcomputer.com/download/adwcleaner/

After doing that, I would check Windows to verify that the Windows Defender real-time protection is enabled.

Good luck!

ill try it

i only didnt delete it because it just wouldnt let me

APersonWhoYoyos
Kinda late, but Yep, sounds like a job for Malwarebytes. The anti malware executable is probably just a Trojan horse hiding the malware, especially if it says it was created yesterday. If it won’t let you delete it, Malwarebytes will garuntee if it is a virus or not, and it should be able to delete it if it is.
x-7602588195
29, this video is sponsored by nord vpn
EscherehcsE
Stormlightnoway wrote:

if that ever happened to me, I'd just format my drive and reinstall my OS to be safe and backup whatever I want to keep

Yep, nuke and pave is the one sure way of knowing everything's gone...

EscherehcsE

Of course, keeping regular backups would help too...

APersonWhoYoyos
True
APersonWhoYoyos
Bro what’s wrong with the guy who said “use a vpn” that ain’t gonna cure malware
Blazkowitzz

Malware bytes scan, hitman pro after, , scroll thro ur programs with Revo, then clean up any loose ends with emisoft and uninstall anything without a verified publisher or a incorrect publisher according to the software.

(offical links so u dont get EVEN more viruses

http://revouninstaller.com/

https://www.malwarebytes.com

https://www.hitmanpro.com/en-us

https://www.emsisoft.com/en/home/emergency-kit/

Blazkowitzz
Stormlightnoway wrote:

The best antivirus is common sense :3

weird way to spell hitman pro

EscherehcsE
Blazkowitzz wrote:
Stormlightnoway wrote:

The best antivirus is common sense :3

weird way to spell hitman pro

Stormlight is right, though. Common sense will often tip you off to stay away from Windows...