I discovered a trojan called ‘trojanwin33’ during a deep scan today. I’ve quarantined and removed it along with a few other files. I checked my accounts for any suspicious activity and didn’t find anything unusual. I also deleted all previous snapshot backups, installed Malwarebytes, and performed a rootkit scan, which came back clean. Am I safe now, or is there more I should check aside from changing my passwords?
2 Answers
If your data isn’t critical, just wipe everything and reinstall Windows. If it is, back it up first, then reinstall. If that’s not an option, just keep a close eye on your system. But seriously, it’s crucial to figure out how that Trojan got in in the first place.
So you’re saying I should definitely wipe it even if I think I’ve fully removed it?
If you’re sure there’s a virus in your system, the safest bet is to wipe the drive and do a fresh install of Windows. It can be really tough to completely eliminate a virus, and there’s a risk it could be tracking your new passwords with a keylogger or something similar. Better safe than sorry!
I have 2FA on everything and changed my passwords on my phone. I believe it’s gone since Malwarebytes isn’t finding anything now.
That’s not the only option though. If you’ve got another computer, disconnect the infected drive, plug it into that one, and boot from the non-infected drive. You can then use that computer to clean the infected one.
That’s what I want to know too. I think it might have been linked to a Minecraft mod, but I’m not sure.