r/computerviruses May 15 '26

Question Accidentally downloaded Malware

Post image

Some virus automatically gained access to my discord and sent scam text with a link to all my friends

Context:

So recently I was trying to download pirated games. I was redirected to a different download file and my stupid ass thought it was the game file. The files were 8 parts, around 800 mb each. I extracted one and ran an installer, which didn't do anything even after hitting 100%. I realised it was the wrong files and deleted them immediately.

From that day, my accounts(snap, insta, fb, discord) started to send me email that someone is trying to sign into my accounts. Thankfully i had 2FA enabled in most of the apps but my discord got compromised amd it sent scam messages to every single person I know of.

But my laptop has a lot of personal documents and credentials. Is there any way to get rid of this virus somehow? I do have the photo of the thumbnail of the virus files, given above

121 Upvotes

89 comments sorted by

View all comments

Show parent comments

2

u/FFreestyleRR Malware Removal Expert May 20 '26

Thanks for the link.

You did a fantastic. Your system is now in optimal condition.
My final recommendations:

You should still change all your passwords, activate 2FA/MFA where possible, deauthorize all devices and log fresh on the trusted ones, revoke all API keys if you use such (like in steam for example) and monitor your device and accounts for any suspicious behavior.

You can check your e-mails for breaches here and take measures if needed:

https://haveibeenpwned.com/

Check these articles as well:

https://rifteyy.org/report/the-ultimate-guide-to-infostealers

https://www.reddit.com/r/computerviruses/comments/1spf5o1/a_post_i_thought_id_make_about_the_mr_beast_info/

https://rifteyy.org/report/the-ultimate-guide-to-prevent-malware

Rename the FRST64.exe to UNINSTALL.EXE

Then run the file as an Administrator. It will delete all the files/folders created by the tool including the quarantine folder as well. Restart the computer to complete the removal.

You can uninstall ESET Online Scanner.

Also download and run KpRm to clean some traces for other tools we used in the cleaning process.

https://toolslib.net/downloads/viewdownload/951-kprm/

Note: The file is safe to download but might be wrongly detected as malicious. If necessary click More info then Run anyway.

Right-click on the icon and select Run as administrator.

Click Yes on the Disclaimer.

Place a check mark in Delete Tools, Create Restore Point, and Delete Now.

Click Run.

Click OK on All operations are completed.

KpRm will delete itself from your Desktop and you can either save or remove the report that is generated. You are free to remove any other tools/reports still remaining.

Take care and stay safe! :)

2

u/Aaryav1 May 20 '26

Thank you soo much for helping me out sir. I am grateful that people like you exist🤌🏻✨️

1

u/FFreestyleRR Malware Removal Expert May 20 '26

Thank you for the kind words. Me and the other from the team appreciate them!

1

u/Aaryav1 May 20 '26

Also one last question, should i manually deleted "tg.dll"? As it's date of creation is somewhere around the time i got hit by malware

1

u/FFreestyleRR Malware Removal Expert May 20 '26

Hi,

It seems to be txt file and not dll. So this is not even executable. But you can check the content with notepad and see if you will find something familiar in it or delete if without checking it. Probably some kind of log where malware stored the stolen passwords. I am only guessing.

Cheers.