RedLad
Active member
Hi,
Yesterday I opened a folder in my downloads that I didn't recognise and immediately got a pop-up alert saying it was suspicious. Windows security was saying it was a trojan. I did manage to take a pic of it and it said it was called Trojan:MSIL/AgentTesla.HB!MTB. The Status was 'Active' and it said it it was 'Severe.'
After running the Full scan in Windows Security, it was still there. But I noticed more in the list. Some of them, it let me perform the remove action. But that main one I mentioned I think that is the one that was hanging around.
So after doing a bit of looking online I came across this article:
Basically it said it keeps the scan records in Protection History in C:\ProgramData\Microsoft\Windows Defender\Scans\History\Service and by deleting that folder it will stop Windows Security from showing the threat over and over again.
I did that and it seemed to have worked. Virus and threat protection now shows no red exclamation marks and is all green checkmarks. But what I wanted to ask people here - is it really gone from my system and am I safe now? I was actually planning a full system wipe until I found this article. So keen to hear what people have to say about it.
Am I being too paranoid to think any of my details have been stolen and are not in the hands of these snakey little hackers? Any help will be greatly appreciated.
Thanks
Yesterday I opened a folder in my downloads that I didn't recognise and immediately got a pop-up alert saying it was suspicious. Windows security was saying it was a trojan. I did manage to take a pic of it and it said it was called Trojan:MSIL/AgentTesla.HB!MTB. The Status was 'Active' and it said it it was 'Severe.'
After running the Full scan in Windows Security, it was still there. But I noticed more in the list. Some of them, it let me perform the remove action. But that main one I mentioned I think that is the one that was hanging around.
So after doing a bit of looking online I came across this article:
Basically it said it keeps the scan records in Protection History in C:\ProgramData\Microsoft\Windows Defender\Scans\History\Service and by deleting that folder it will stop Windows Security from showing the threat over and over again.
I did that and it seemed to have worked. Virus and threat protection now shows no red exclamation marks and is all green checkmarks. But what I wanted to ask people here - is it really gone from my system and am I safe now? I was actually planning a full system wipe until I found this article. So keen to hear what people have to say about it.
Am I being too paranoid to think any of my details have been stolen and are not in the hands of these snakey little hackers? Any help will be greatly appreciated.
Thanks
My Computer
System One
-
- OS
- Windows 11 Professional
- Computer type
- PC/Desktop
- Manufacturer/Model
- Custom build
- CPU
- AMD Ryzen™ 9 7950X
- Motherboard
- ASUS ROG Strix X670E-E Gaming WiFi
- Memory
- DOMINATOR® PLATINUM RGB 64GB (2x32GB) DDR5 DRAM 5200MHz
- Graphics Card(s)
- MSI GeForce RTX™ 3080 Ti SUPRIM X 12GB
- Hard Drives
-
980 PRO NVMe M.2 SSD 1TB
970 EVO Plus NVMe M.2 SSD 2TB
- PSU
- Corsair HX1000 1000 W 80+ Platinum
- Case
- Fractal Design Meshify 2
- Cooling
- iCUE H150i ELITE LCD Display Liquid CPU Cooler