Malicious Command Line Detected, But Bitdefender Says I'm Safe. Any Explanation?
I'm pretty sure I have something causing issues but can't for the life of me figure out what. I've scanned with BitDefender several times yet I always come up clean. It started a week or so ago with my CPU using three cores at 100% (using HWMonitor to check this) and as soon as I opened Task Manager they stopped. Did some Googling and found that it may be a miner hiding somewhere.
I downloaded TCPViewer and found that conhost.exe looked a bit fishy as I have several of them (see image) and two of them, the highlighted ones, seem odd. If I check the Properties I don't have access to change their priority and there's no path to where it's running from either
Today, BitDefender gave me the Malicious Code message as I booted the PC after a Windows Update, and this has me confused. I know what PowerShell is but use it extremely rarely at work so I have little knowledge of what the code actually means and Google hasn't been real helpful.
Does anyone have any idea what my problem may be, what's causing it and how I get rid of it ><?
Best Answer
-
More information on conhost.exe can be found in below stated link
https://www.howtogeek.com/4996/what-is-conhost.exe-and-why-is-it-running/
Check if below steps helps you in any way.
1) Restart PC in safe mode: https://support.microsoft.com/en-us/windows/start-your-pc-in-safe-mode-in-windows-92c27cff-db89-8644-1ce4-b3e5e56fe234
2) Open run command and run below command one by one:
temp ,delete all the files in the folder
%temp% ,delete all the files in folder
prefetch ,delete all the files in folder
3) Restart your PC in general mode by unticking the option that you selected to run the system in safe mode and then click apply.
4) Now, to be on a safer side, I would also advise you to run these portable scanners which do not require any installation
* Download and run Malwarebytes AdwCleaner: https://www.malwarebytes.com/adwcleaner
* ESET Online Scanner: https://download.eset.com/com/eset/tools/online_scanner/latest/esetonlinescanner.exe
* Download and run a scan with Kaspersky Virus Removal Tool: https://devbuilds.s.kaspersky-labs.com/devbuilds/KVRT/latest/full/KVRT.exe .Make sure you checkmark System Memory, Startup Objects, Boot Sectors & System Drive before running a scan.
* Dr.Web CureIt!: https://cdn-download.drweb.com/pub/drweb/cureit/1673308974.271/l44hmkvh.exe
If issue persists,
Generate bitdefender support tool logs: https://www.bitdefender.com/consumer/support/answer/1733/
Generate bitdefender connectivity logs: https://www.bitdefender.com/consumer/support/answer/9689/
Share the logs & your query with bitdefender support team by dropping them an email at bitsy@bitdefender.com
The support team will reply back to your query within next 24-48 hours excluding weekends.
Regards
Life happens, Coffee helps!
Show your Attitude, when you reach that Altitude!
Bitdefender Ultimate Security Plus (user)
1