Warning

 

Close
Confirm Action

Are you sure you wish to do this?

Cancel Confirm
AR15.COM
1/1/2015 4:35:01 PM EDT
2 days ago I went to update  my adobe flashplayer. I am not sure if it even got updated, but anyways, my computer downloaded some virus that has numerous fake google chrome processes running. I don't even have google chrome. These processes are eating up all my CPU and my computer is taking FOREVER to do simple things, like type this post, or open a blank tab in IE.

How do I remove this shit? I tried going to the process location and deleting the files, and that was useless. Whats the fix?
1/1/2015 4:38:16 PM EDT
[#1]
Adobe crap has gotten REALLY bad about installing other crap along with what you are trying to download.  It wouldn't surprise me if this is what happened with you.




1/1/2015 4:38:51 PM EDT
[#2]
Common bitcoin mining malware.

Reboot in safe mode and run scans with TDSSKiller and Malwarebytes. If it malware is still running in safe mode you'll have to download a bootable Kaspersky rescue disk and scan with that.
1/1/2015 4:39:37 PM EDT
[#3]
the free version of malwarebytes would be a good start

https://www.malwarebytes.org/
1/1/2015 4:41:01 PM EDT
[#4]
Quote History
Quoted:
Adobe crap has gotten REALLY bad about installing other crap along with what you are trying to download.  It wouldn't surprise me if this is what happened with you.

View Quote

This didn't come from Adobe. He got tricked into installing what he thought was an update to Flash, and isn't.

Unfortunately for the OP, I have next to zero interest in walking people through malware removal over a forum. Sorry guy!
1/1/2015 4:46:03 PM EDT
[#5]

Quote History
Quoted:





This didn't come from Adobe. He got tricked into installing what he thought was an update to Flash, and isn't.



Unfortunately for the OP, I have next to zero interest in walking people through malware removal over a forum. Sorry guy!
View Quote View All Quotes
View All Quotes
Quote History
Quoted:



Quoted:

Adobe crap has gotten REALLY bad about installing other crap along with what you are trying to download.  It wouldn't surprise me if this is what happened with you.





This didn't come from Adobe. He got tricked into installing what he thought was an update to Flash, and isn't.



Unfortunately for the OP, I have next to zero interest in walking people through malware removal over a forum. Sorry guy!




Hard to tell if it is Flash or a virus these days.  I think on the last Flash install I did they tried to get me to install McAffe and AskJeeves or some crap.  



I wish Adobe would buy Java so they would have the perfect trifecta of shitty software.  



 
1/1/2015 4:47:30 PM EDT
[#6]
Are you sure you de-selected Google Chrome install when updating? Check your browser for Google Chrome plug-ins. Check installed programs to see if you inadvertently installed Chrome.
1/1/2015 4:59:23 PM EDT
[#7]
Quote History
Quoted:

This didn't come from Adobe. He got tricked into installing what he thought was an update to Flash, and isn't.

Unfortunately for the OP, I have next to zero interest in walking people through malware removal over a forum. Sorry guy!
View Quote View All Quotes
View All Quotes
Quote History
Quoted:
Quoted:
Adobe crap has gotten REALLY bad about installing other crap along with what you are trying to download.  It wouldn't surprise me if this is what happened with you.


This didn't come from Adobe. He got tricked into installing what he thought was an update to Flash, and isn't.

Unfortunately for the OP, I have next to zero interest in walking people through malware removal over a forum. Sorry guy!


you said NEXT to zero. So that means I still have a chance? I am a great catch, don't throw me away.

Downloading and running Malwarebytes now.
1/1/2015 5:02:38 PM EDT
[#8]
Quote History
Quoted:
Are you sure you de-selected Google Chrome install when updating? Check your browser for Google Chrome plug-ins. Check installed programs to see if you inadvertently installed Chrome.
View Quote

I didn't give me an option to deselect chrome. When I showed the progress bar the "google chrome update" was there, and I clicked to cancel it. I didn't have chrome so i was confused as to why I was getting an update for it. Now I know why. So google can sabotage IE so I will use their
fucking product.
1/1/2015 5:05:19 PM EDT
[#9]
Quote History
Quoted:


you said NEXT to zero. So that means I still have a chance? I am a great catch, don't throw me away.

Downloading and running Malwarebytes now.
View Quote View All Quotes
View All Quotes
Quote History
Quoted:
Quoted:
Quoted:
Adobe crap has gotten REALLY bad about installing other crap along with what you are trying to download.  It wouldn't surprise me if this is what happened with you.


This didn't come from Adobe. He got tricked into installing what he thought was an update to Flash, and isn't.

Unfortunately for the OP, I have next to zero interest in walking people through malware removal over a forum. Sorry guy!


you said NEXT to zero. So that means I still have a chance? I am a great catch, don't throw me away.

Downloading and running Malwarebytes now.

Do that, and report back if it doesn't work.

I won't promise that I'll be around to help (after 10+ years of dealing with it for friends and family, my enthusiasm has long since evaporated), but somebody else will surely chime in with some helpful "next steps".
1/1/2015 5:06:32 PM EDT
[#10]
After a regular run it will ask to reboot and then it will continue.  If not start in safe mode and run it again.  Open Chrome in safe mode, click the 3 bars on the far right, click settings, click to show advanced settings, at bottom click to reset settings.  Restart system.  Run Malwarebytes again.  Start Chrome and see if it's fixed.

If you are still f'd you may have to do a system restore to a previous date.

I'm retired after 30 yrs helping folks but I'm not too adverse to helping out if I can.
1/1/2015 5:06:55 PM EDT
[#11]
Quote History
Quoted:

I didn't give me an option to deselect chrome. When I showed the progress bar the "google chrome update" was there, and I clicked to cancel it. I didn't have chrome so i was confused as to why I was getting an update for it. Now I know why. So google can sabotage IE so I will use their
fucking product.
View Quote View All Quotes
View All Quotes
Quote History
Quoted:
Quoted:
Are you sure you de-selected Google Chrome install when updating? Check your browser for Google Chrome plug-ins. Check installed programs to see if you inadvertently installed Chrome.

I didn't give me an option to deselect chrome. When I showed the progress bar the "google chrome update" was there, and I clicked to cancel it. I didn't have chrome so i was confused as to why I was getting an update for it. Now I know why. So google can sabotage IE so I will use their
fucking product.

Don't be mad at Google. Or Adobe. Neither had anything to do with this. Without looking over your shoulder, I'm pretty confident that you were tricked into installing an "update" to Adobe Flash that was anything but.
1/1/2015 5:24:46 PM EDT
[#12]
Quote History
Quoted:

Don't be mad at Google. Or Adobe. Neither had anything to do with this. Without looking over your shoulder, I'm pretty confident that you were tricked into installing an "update" to Adobe Flash that was anything but.
View Quote View All Quotes
View All Quotes
Quote History
Quoted:
Quoted:
Quoted:
Are you sure you de-selected Google Chrome install when updating? Check your browser for Google Chrome plug-ins. Check installed programs to see if you inadvertently installed Chrome.

I didn't give me an option to deselect chrome. When I showed the progress bar the "google chrome update" was there, and I clicked to cancel it. I didn't have chrome so i was confused as to why I was getting an update for it. Now I know why. So google can sabotage IE so I will use their
fucking product.

Don't be mad at Google. Or Adobe. Neither had anything to do with this. Without looking over your shoulder, I'm pretty confident that you were tricked into installing an "update" to Adobe Flash that was anything but.

That is exactly what it was.
1/1/2015 5:40:23 PM EDT
[#13]
Ok, well Malwarebytes took care of it.

Next question, my adobe reader is in my tray saying I have an update available but its in a different format then before. Should I update it or not? I am scared to click it now.
1/1/2015 5:42:57 PM EDT
[#14]
Quote History
Quoted:
Ok, well Malwarebytes took care of it.

Next question, my adobe reader is in my tray saying I have an update available but its in a different format then before. Should I update it or not? I am scared to click it now.
View Quote

Grab the latest version from Adobe's site, if you're worried about it.
1/1/2015 5:44:46 PM EDT
[#15]
Go into control panel, programs and features, to uninstall programs. Sort by date and uninstall anything from the day you tried to do the update.
1/1/2015 5:51:37 PM EDT
[#16]
Some questionable websites will pop up extra tabs or windows that tell you your flash player or chrome or java is out of date and to click to install an update. It's a tarp.

The legitimate install of adobe does have some extras with it, but they are not malware, just annoyware and can be deselected at install. You may have to pick the custom install to see the checkboxes to deselect.

Posted Via AR15.Com Mobile
1/1/2015 6:12:47 PM EDT
[#17]
Quote History
Quoted:
Some questionable websites will pop up extra tabs or windows that tell you your flash player or chrome or java is out of date and to click to install an update. It's a tarp.

The legitimate install of adobe does have some extras with it, but they are not malware, just annoyware and can be deselected at install. You may have to pick the custom install to see the checkboxes to deselect.

Posted Via AR15.Com Mobile
View Quote

That is EXACTLY what I clicked on. I thought it was legit...
1/1/2015 6:17:48 PM EDT
[#18]
Agree you should update from the Adobe site.  Like someone previously stated a lot of updates will have a check in the box for some other program like the ASK toolbar, always uncheck them before continuing.  You can get rid of them by resetting the browser settings as above.

Oh, you shouldn't have to do a custom install ordinarily to spot the addons.