PowerShell virus

Anonymous
2022-05-30T09:03:34+00:00

For some reasons unknown, my Bitdefender Antivirus has been flagging my PowerShell.exe app in this folder C:\Windows\System32\WindowsPowerShell\v1.0 saying it was blocked from trying to access http://api.private-chatting. com/api/file/download/Watchdog.p and it has been popping up nonstop. please how do i fix it and stop it from not displaying. i had to install MalwareByte and it was also detecting it.

Windows for home | Windows 11 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Anonymous
    2022-05-30T09:59:11+00:00

    Hey there Oyinbra!

    My name is Miguel Ángel and I'm an independent advisor, also a Microsoft user just like you! I'll try to help you today with your issue.

    It is not detecting Powershell as a virus, but rather Powershell is trying to access a specific website that is trying to inject a trojan. It may be a script that you have downloaded or that is running on startup.

    You should run a check with HitmanPro (https://www.hitmanpro.com/en-us), a check with MalwareBytes (https://www.malwarebytes.com/mwb-download), a check with AdwCleaner (https://www.malwarebytes.com/adwcleaner) and then a final check with MalwareBytes Anti-Rootkit (https://www.malwarebytes.com/antirootkit). You can run a final check with HitmanPro again, which is a very strict and exhaustive antivirus.

    Let me know about the results.

    I'll wait for your reply! Don't worry, everything will be okay :)


    Note: This is a non-Microsoft website. The page appears to be providing accurate, safe information. Watch out for ads on the site that may advertise products frequently classified as a PUP (Potentially Unwanted Products). Thoroughly research any product advertised on the site before you decide to download and install it. All files have been analysed for malware with VirusTotal, and have shown a positive output, being completely safe to install.

    11 people found this answer helpful.
    0 comments No comments
  2. Anonymous
    2022-06-02T11:53:27+00:00

    So I had to wait 48 hours to make sure it doesn't pop up again before replying. I scanned my Laptop first with Malwarebytes and it was able to detect about 36 threats. And after that, the threat message stopped showing. Malwarebytes already took care of. I wasn't able to Install Hitman Pro but was able to scan again with Malwarebytes Anti rootkit and was able to detect another 8 threats. Thanks for your assistant.

    7 people found this answer helpful.
    0 comments No comments