Hello everyone I think I caught the BitcoinMiner virus. I don't want to be removed by antivirus. A moment after I delete infected files, the virus notification pops up again. Over and over again... Could the virus get into your computer through pop-up ads? I paste logs from OTL. Help.
I did as written by krzychupar. I don't know enough to tell if everything is alright, that's why I paste FRST files. Is everything ok now?
EDIT Kolobos: Antivirus detects infected files in: C: \ Users \ Garvi \ AppData \ Local \ Chromium \ User Data \ f_008d3. After each scan, the file (f_008d3) the antivirus displayed a different name for the infected file; they were names like: f_008d4, f_008d38 etc. In an alert he said that this file is in the archive (like zip) and cannot delete it. I found files with similar names in the Ceche folder, but the target file was not there. That's why I deleted the entire Ceche folder. But it gave nothing. Over and over - an infection notification popped up -> I deleted the entire Ceche folder. After some time the infection window popped up again, so I deleted Ceche. After some time, I guessed that the virus may be associated with pop-up ads on the alltuve.tv website or with the alltube.tv website itself ... After opening it on a second computer, the fun with Bitcoin file infection began. Now I have the same on the other device ... Returning to the subject - can I not worry about this topic here yet, is the virus still lurking somewhere?
I ask because I wasn't sure. Thank you for your help. When I got infected with a second BitcoinMiner computer, I scanned it with anti-virus, but (as before on the previous device) it did not delete the files. I deleted them manually, but the browser is still mussels and consumes up to 99% of memory when used. I think the virus is still in the computer. I put files from FRST below, please check that everything is OK.
Zawsze mozesz tez usunac przegladarke razem z katalogiem profilu C:\Documents and Settings\misio\Local Settings\Application Data\Chromium\ i zainstalowac ponownie.
Wczesniej zrob kopie zakladek itp. o ile sa potrzebne.
Why did I write to you that the contents of the cache and entries from this browser can not be seen in the logs? What I've provided is just a few unnecessary entries, you don't have to post logs.
The discussion revolves around a persistent BitcoinMiner virus infection that resists deletion by antivirus software. The user reports repeated notifications of the virus after attempting to delete infected files, particularly in the cache of the Chromium browser. Several participants suggest using the Farbar Recovery Scan Tool (FRST) instead of the OTL program for better log analysis. They recommend updating software like Adobe Reader and uninstalling unnecessary programs such as SpyBot. The conversation highlights the importance of clearing the browser cache and the potential for the virus to be linked to specific websites, particularly those displaying pop-up ads. Users share logs indicating the detection of the BitcoinMiner virus and discuss methods to ensure complete removal. Summary generated by the language model.