Link to home
Start Free TrialLog in
Avatar of hermesalpha
hermesalphaFlag for Paraguay

asked on

Has someone taken control of my computer when a Malwarebytes option suddenly can not be switched on?

Very strange, this morning when I turned on the computer I got a message that Malwarebytes (I have Pro version) has been turned off. When I turned it on, the option "Protection against malicious code" was switched off, and I can not switch it on! All other options are selectable and can be switched on, but not this option.

Last time I was in Manila I had similar problems with strange things happening. Then when I left the problems disappeared. And most often here in Manila I get warnings when connecting to the hotel wifi about insecure network or dangerous connection.

All kinds of small problems since 2 days when suddenly I got this problem with the message "Waiting for proxy tunnel" in Google Chrome and "TLS handshake" in Mozilla Firefox:

https://www.experts-exchange.com/questions/29058931/How-should-I-get-rid-of-the-message-Waiting-for-Proxy-Tunnel-in-Google-Chrome.html

Other problems: Can not use Google API any longer for connection to Google Translate API for my CAT tool. Can not switch input language any longer. Can not run Windows Update any longer:

https://www.experts-exchange.com/questions/29058918/Why-do-I-get-Windows-could-not-search-for-new-updates-in-my-Windows-7-Home-when-checking-for-updates.html

Other problems (continued):

Takes ages to save a text document or other document ("Not responding").
"Google has authentication problems" when logged in to Gmail.

Etc. etc. (new issues coming up all the time).
SOLUTION
Avatar of Dr. Klahn
Dr. Klahn

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of hermesalpha

ASKER

Considering what the landlord told me when I moved in, that their wifi just had been hacked, I suspect the worst.

It worked using Mozilla Firefox for 1 day, now I get TLS handshake all the time and it's as sluggish as Google Chrome.

The problem is I am stuck with work I have to complete on this computer.
I have asked these related questions here at EE:

Is the wireless network unsecure if it says "Can't connect securely to this page"?
How should I get rid of the message "Waiting for Proxy Tunnel..." in Google Chrome?
Why do I get "Windows could not search for new updates" in my Windows 7 Home when checking for updates?
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
These were checked already:

Use TLS 1.0
Use TLS 1.1
Use TLS 1.2

But I had to uncheck in Chrome for "Use a web service to help resolve navigation errors".

Is it enough to delete this in Chrome?:

Download history
Cached pictures and files

(No need to delete cookies and other website data?)
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Knock on wood, but now after I deleted cookies and other site data also, the Google search is hyper quick! I try working for a while now and see so it won't come back again.

Before going to bed last night I downloaded Combofix from the official website, but then was prompted to download Plumbytese Anti-Malware even though I have Windows 7 Home Premium (the website told me only if I have Windows 8.1 or Windows 10 do I have to use Plumbytes Anti-Malware). So I did that, installed it and started a malware search (which took whole night). When waking up, it detectected 27 threats (among them a hijacker, which was classified as only a 50 % threat, which sounds strange), and said I must purchase it first before the threats can be removed?

Is this just bogus, and should I ignore this and just uninstall the program?

I've run my own Malwarebytes several times, and it never finds anything. I also run Rougekiller, which did not either find anything.

Now I am running my own Malwarebytes again, and it immediately foundt his Plumbytes which it labelled as a "Potentially unwanted program".
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
So far Malwarebytes has found 3 potentially unwanted programs. In the meantime as the search goes on I'll check some of the other issues (it seems the Google searches work as normal again in both Chrome and Mozilla Firefox): Windows can't search for new updates, not possible to switch on protection against malicious code in Malwarebytes, etc.
Windows can't still search for any new updates, so this problem is serious also. But I've asked that as another threat, let's see what they reply there. The original cause of all these problems that started on the 26th must still be an infection/malicious code via a network with weak security which already is hacked. Why otherwise would Malwarebytes automatically be turned off on the 27th and impossible to switch on the protection against malicious code?
I am really glad you found out about your solution in ID: 42311982 Ramin, thanks!

Oh, I haven't completed your 3rd step with the System Update Readiness Tool. Should I wait with that perhaps until Malwarebytes has finished (so far has found 7 potentially unwanted programs)?
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I had this tool from your 3rd step successfully installed now (took a long time, about 30 minutes), closed the dialogue and then initiated a Windows Update again. Let's see what the results will be this time. Or should I have restarted my computer after having run this tool from your 3rd step?

No, Windows Update did not work, same error message as last time.

By the way, this with proxy tunnel in Chrome and TLS handshake in Mozilla Firefox, even my landlord got these messages on his computer, and I also got this message just now. But now there is  no sluggishness on my computer anymore, and it was no sluggishness on my landlord's computer either even when these messages were displayed.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
There is no doubt something hacked my landlord's network again. I hardly could use Google translate in any web browser, took ages to make a single search, got this "proxy tunnel" and "TLS handshake" all the time. And new strange things happening. So I went to the IP provider to get myself a portable internet, plugged it in when returning home and at once I had quick, normal internet again. And Windows Update worked again. And Malwarebytes worked again. Immediately when I used my own portable internet.

But this portable internet, it also only has password (not username and password). So it's probably easy to hack as well. And now it seems something has happened even with my portable internet, something hacked that also!
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
It has definitely happened something now, this time with my own portable internet.

Router, do you mean the portable device I have connected to my laptop now? Do I make the changes you suggest from Control Panel?

For my connection's properties it says now "WPA2-Personal".
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I didn't get time to go on with Ramin's last solutions before I left, but so far I have no problems with my laptop after I left Manila. Thanks Ramin for your solution that helped me to get curb this.
Avatar of Ramin
Ramin

You are welcome and I was happy to help.
Thanks.