I am also getting TrojanDownloader:MSIL/Heracles.ARA!MTB
this virus and is not getting removed did you found any solution?
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
So i found this virus Trojan:MSIL/Heracles.MBAR!MTB, and each time I restart I cannot remove it, and It seems each time i restart it also reintalls itself somehow, and the affected items is my windows powershell.amsi: \Device\HarddiskVolume3\Windows$sxr-powershell.exe.
So how do i get rid of this virus? it also messes with my windows defender and sometime even disables it.
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
I am also getting TrojanDownloader:MSIL/Heracles.ARA!MTB
this virus and is not getting removed did you found any solution?
Hi sunny, please scan with Farbar Recovery Scan Tool (FRST), and I'll help you remove it.
https://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/
Run FRST as administrator, use default settings and press Scan. Two logs are created in the folder that FRST is run from, FRST.txt and Addition.txt. Zip the logs and share on OneDrive, Google Drive or any file sharing service, then post the share link.
* Note: If you are downloading FRST with Edge, smartscreen will initially block it.
Click on the 3 dots next to the warning and select Keep -> Show more -> Keep anyway.
Also, when i ran the safety scanner it marked 4 files as virus, but in the end, it said my computer was safe, I'm pretty sure the virus named heracles modified the ending, as it does this is the other scans aswell. How do I fix this?
Hello Paul,
Ive tried both and each time I start my computer it still sends a report saying heracles still is on my computer and even though I quarantine it each time, when I restart my computer it is always there. Do you have any other viable solutions that target the heracles virus directly?
Hi sunny,
I'm Paul and I'm here to help you with your concern.
I will recommend that you try to use Microsft Safety Scanner or Malwarebytes to remove the malware.
You can download them from the link below.
-https://www.malwarebytes.com/mwb-download/thankyou
-https://go.microsoft.com/fwlink/?LinkId=212732
I hope this helps. Feel free to ask back any questions and keep me posted.