- Local time
- 10:57 PM
- Posts
- 11,880
- Location
- The Lone Star State of Texas
- OS
- Windows 11 Pro 25H2 26200.8655
Last week I acquired on of those scareware Edge popups saying my Norton had expired (I've never used Norton) and a green scan bar trying to make me believe Norton was scanning my machine and finding oodles of infections. I quickly copied the URL and closed Edge. (that URL went to threatdefender.info) I ran scans with Defender, Malwarebytes, HitmanPro, Adwarecleaner but nothing was found. I added threatdefender.info to my HOSTS file
I used the "clear all cookies" button in Edge, closed and reopened Edge only to find there were 52 cookies still in Edge for Axios.com. I tried to manually remove them but they came right back when I reopened Edge. After about 30 minutes of browsing that same scareware popped up again still with a URL of threatdefender.info.
I restored a month old image thinking I would be OK....and I was for 2 days before it came back. I then found this, telling how hackers are using Axios.com to steal user credentials. ( Nothing in my Microsoft account online shows a login from anywhere but my location but I changed the windows credential password on all my devices)
Axios Abuse and Salty 2FA Kits Fuel Advanced Microsoft 365 Phishing Attacks
Since I didn't know what to do, this time I first blocked both Axios.com and threatdefender. info in the HOSTS file and then cleared cookies. Axios.com cookies stayed gone this time. I haven't gotten the scareware since.
I then found this that tells how to protect yourself against this vulnerability. It might make sense to all you advanced guys here but it did not to me. So if you can decepher it and explain in simpler terms that this old woman can understand as to what she should do, I would appreciate it. (hint, hint) @garlin @pseymour @hsehestedt and anyone else who knows IT. I have older images. Should I restore one of those?
I used the "clear all cookies" button in Edge, closed and reopened Edge only to find there were 52 cookies still in Edge for Axios.com. I tried to manually remove them but they came right back when I reopened Edge. After about 30 minutes of browsing that same scareware popped up again still with a URL of threatdefender.info.
I restored a month old image thinking I would be OK....and I was for 2 days before it came back. I then found this, telling how hackers are using Axios.com to steal user credentials. ( Nothing in my Microsoft account online shows a login from anywhere but my location but I changed the windows credential password on all my devices)
Axios Abuse and Salty 2FA Kits Fuel Advanced Microsoft 365 Phishing Attacks
Since I didn't know what to do, this time I first blocked both Axios.com and threatdefender. info in the HOSTS file and then cleared cookies. Axios.com cookies stayed gone this time. I haven't gotten the scareware since.
I then found this that tells how to protect yourself against this vulnerability. It might make sense to all you advanced guys here but it did not to me. So if you can decepher it and explain in simpler terms that this old woman can understand as to what she should do, I would appreciate it. (hint, hint) @garlin @pseymour @hsehestedt and anyone else who knows IT. I have older images. Should I restore one of those?
My Computers
System One System Two
-
- OS
- Windows 11 Pro 25H2 26200.8655
- Computer type
- PC/Desktop
- Manufacturer/Model
- Dell Optiplex 7080
- CPU
- i9-10900 10 core 20 threads
- Motherboard
- DELL 0J37VM
- Memory
- 32 gb
- Graphics Card(s)
- none-Intel UHD Graphics 630
- Sound Card
- Integrated Realtek
- Monitor(s) Displays
- Benq 27
- Screen Resolution
- 2560x1440
- Hard Drives
- 2x1tb Solidigm m.2 nvme /External drives 512gb Samsung m.2 sata+2tb Kingston m2.nvme
- PSU
- 500w
- Case
- MT
- Cooling
- Dell Premium
- Keyboard
- Logitech wired
- Mouse
- Logitech wireless
- Internet Speed
- so slow I'm too embarrassed to tell
- Browser
- #1 Edge #2 Firefox
- Antivirus
- Defender+MWB Premium
-
- Operating System
- Windows 11 Pro 24H2 26200.8457
- Computer type
- PC/Desktop
- Manufacturer/Model
- Beelink Mini PC SER5
- CPU
- AMD Ryzen 7 6800U
- Memory
- 32 gb
- Graphics card(s)
- integrated
- Sound Card
- integrated
- Monitor(s) Displays
- Benq 27
- Screen Resolution
- 2560x1440
- Hard Drives
- 1TB Crucial nvme
- Keyboard
- Logitech wired
- Mouse
- Logitech wireless
- Internet Speed
- still too embarrassed to tell
- Browser
- Firefox
- Antivirus
- Defender
- Other Info
- System 3 is non compliant Dell 9020 i7-4770/24gb ram Win11 PRO 26200.8457




