Что такое CONHOY.EXE?
CONHOY.EXE — это вирус, который очень навязчив!
- Показывает CONHOY.EXE нежелательную всплывающую рекламу.
- CONHOY.EXE перенаправляет щелчки в браузере на вредоносные веб сайты.
- CONHOY.EXE показывается регулярно, даже если закрываешь браузер.
- CONHOY.EXE появляется в строке ввода браузера при выборе новой вкладки.
- CONHOY.EXE меняет настройки поиска в браузере.
- CONHOY.EXE меняет ярлыки браузера на рабочем столе и в меню, чтобы вместе с запуском браузера показывалась реклама.
Как происходит заражение рекламным вирусом CONHOY.EXE?
Иногда я на себя просто умиляюсь. Вчера с умным видом писал про то, как важно соблюдать правила при установке приложений, чтобы не заразиться какой нибудь заразой или вирусом с рекламой. А сегодня сам же установил вместе с одной графической утилитой этот чертов вирус.
А всего то стоило установить ее по-умолчанию! И все! Реклама CONHOY.EXE просто заполонила все рабочее пространство. Ну что делать, надо лечить.
Как избавиться от рекламы CONHOY.EXE в Chrome/Firefox/Internet Explorer/Edge?
Я на этом деле конечно уже собаку съел, так что трудностей не возникло. Но прежде, чем закидывать вас инструкциями, давайте повторим сами себе, с чем имеем дело.
Это обычный рекламный вирус, коих стало пруд пруди. И имен у него много: может быть просто CONHOY.EXE, а может с дописанной строкой после имени домена CONHOY.EXE. В любом случае вирус закидывает вас рекламой, и про ваше любимое казино Вулкан не забывает. До кучи он заражает и свойства ярлыков браузеров.
Кроме того, вирус обожает создавать расписания для запуска самого себя, чтоб жизнь медом не казалась. В результате его деятельности вы вполне можете случайно кликнуть на нежелательную ссылку и скачать себе что-нибудь более серьезное.
Поэтому данный рекламный вирус следует удалять как можно быстрее. Ниже я приведу инструкции по избавлению от вируса CONHOY.EXE, но рекомендую использовать автоматизированный вариант.
Инструкция по ручному удалению рекламного вируса CONHOY.EXE
Для того, чтобы самостоятельно избавиться от рекламы CONHOY.EXE, вам необходимо последовательно выполнить все шаги, которые я привожу ниже:
-
Проверить недавно установленные программы и удалить все неизвестные, а также те, в которых не полностью уверены. Чтобы попасть в управление приложениями, достаточно нажать Win + I.








И все же автоматика лучше!
Если ручной метод — не для вас, и хочется более легкий путь, существует множество специализированного ПО, которое сделает всю работу за вас. Я рекомендую воспользоваться UnHackMe от Greatis Software, выполнив все по пошаговой инструкции.
Шаг 1. Установите UnHackMe. (1 минута)
Шаг 2. Запустите поиск вредоносных программ в UnHackMe. (1 минута)
Шаг 3. Удалите вредоносные программы. (3 минуты)
UnHackMe выполнит все указанные шаги, проверяя по своей базе, всего за одну минуту.
При этом UnHackMe скорее всего найдет и другие вредоносные программы, а не только редиректор на CONHOY.EXE.
При ручном удалении могут возникнуть проблемы с удалением открытых файлов. Закрываемые процессы могут немедленно запускаться вновь, либо могут сделать это после перезагрузки. Часто возникают ситуации, когда недостаточно прав для удалении ключа реестра или файла.
UnHackMe легко со всем справится и выполнит всю трудную работу во время перезагрузки.
И это еще не все. Если после удаления редиректа на CONHOY.EXE какие то проблемы остались, то в UnHackMe есть ручной режим, в котором можно самостоятельно определять вредоносные программы в списке всех программ.
Итак, приступим:
Шаг 1. Установите UnHackMe (1 минута).
- Скачали софт, желательно последней версии. И не надо искать на всяких развалах, вполне возможно там вы нарветесь на пиратскую версию с вшитым очередным мусором. Оно вам надо? Идите на сайт производителя, тем более там есть бесплатный триал. Запустите установку программы.


Шаг 2. Запустите поиск вредоносных программ в UnHackMe (1 минута).
- Итак, запускаем UnHackMe, и сразу стартуем тестирование, можно использовать быстрое, за 1 минуту. Но если время есть — рекомендую расширенное онлайн тестирование с использованием VirusTotal — это повысит вероятность обнаружения не только вируса CONHOY.EXE, но и остальной нечисти.

Шаг 3. Удалите вредоносные программы (3 минуты).
- Обнаруживаем что-то на очередном этапе. UnHackMe отличается тем, что показывает вообще все, и очень плохое, и подозрительное, и даже хорошее. Не будьте обезьяной с гранатой! Не уверены в объектах из разряда ‘подозрительный’ или ‘нейтральный’ — не трогайте их. А вот в опасное лучше поверить. Итак, нашли опасный элемент, он будет подсвечен красным. Что делаем, как думаете? Правильно — убить! Ну или в английской версии — Remove Checked. В общем, жмем красную кнопку.


Итак, как вы наверное заметили, автоматизированное лечение значительно быстрее и проще! Лично у меня избавление от вируса CONHOY.EXE заняло 5 минут! Поэтому я настоятельно рекомендую использовать UnHackMe для лечения вашего компьютера от любых нежелательных программ!
Андрей «Вирусолог»
Андрей — обычный парень, который пользуется компьютером каждый день, и ненавидит, когда неприятности наполняют его жизнь. А еще он любит петь. Но не переживайте, его голос не будет досаждать вам. Только текст )
Об авторе
Андрей — обычный парень, который обожает компьютеры и пользуется ими каждый день. Он ненавидит, если в его размеренную жизнь врываются неприятности. Еще он очень любит петь. Но не переживайте, он не будет доставать вас своим пением. Только текстом.
Conhoy exe как удалить
Junior Member
Регистрация 18.08.2020 Сообщений 6 Вес репутации 7
Mysa, ok, conhou. — помогите спасти удаленного сотрудника [HEUR:Trojan.Win32.Generic, UDS:DangerousObject.Multi.Generic]
Аутсорс-сотрудник нахватал вирусов. Несколько установлены на уровне драйвера, некоторые блокируют установку антивирусного ПО. Многочисленные чистки системы ни к чему не приводят — один из вирусов (mysa1) все еще запускается из планировщика заданий и самостоятельно восстанавливается. Из-за того, что сотрудник на удаленке (в другом городе), о переустановке ОС речи не идет. Очень надеюсь на Вашу помощь. 
- CollectionLog-2020.08.18-09.50.zip (63.7 Кб, 5 просмотров)

- Просмотр профиля
- Найти все сообщения
- Найти все темы
Cyber 









Регистрация 11.05.2011 Сообщений 2,289 Вес репутации 369
Информация
- Просмотр профиля
- Найти все сообщения
- Найти все темы
Senior Helper 









Регистрация 06.05.2008 Адрес Тула Сообщений 33,869 Вес репутации 1015
- Просмотр профиля
- Найти все сообщения
- Найти все темы
Junior Member
Регистрация 18.08.2020 Сообщений 6 Вес репутации 7
- CollectionLog-2020.08.18-21.46.zip (63.5 Кб, 5 просмотров)
- Просмотр профиля
- Найти все сообщения
- Найти все темы
Senior Helper 









Регистрация 06.05.2008 Адрес Тула Сообщений 33,869 Вес репутации 1015
- Просмотр профиля
- Найти все сообщения
- Найти все темы
Junior Member
Регистрация 18.08.2020 Сообщений 6 Вес репутации 7
Сотрудника проинструктировал, сеть отключили, KVRT отработал, обновление встало. После перезагрузки следов вирусов не вижу — планировщик чистый, память чистая. Огромное Вам спасибо!
Я видел следы вирусов, но так и не смог понять, что они используют эксплойт системы безопасности. Вы видите гораздо глубже, искренний Вам респект.
- report_20200819_200049.klr.enc1.zip (109.7 Кб, 1 просмотров)
- Просмотр профиля
- Найти все сообщения
- Найти все темы
Senior Helper 









Регистрация 06.05.2008 Адрес Тула Сообщений 33,869 Вес репутации 1015
- Просмотр профиля
- Найти все сообщения
- Найти все темы
Junior Member
Регистрация 18.08.2020 Сообщений 6 Вес репутации 7
- FRST.zip (23.6 Кб, 1 просмотров)
- Просмотр профиля
- Найти все сообщения
- Найти все темы
Senior Helper 









Регистрация 06.05.2008 Адрес Тула Сообщений 33,869 Вес репутации 1015
Conhost.exe*32(TODO(ups.exe)) + mysa1,2,3,ok
Тема закрыта
#1 Tom Keen
- cureit.log14,32Мб 0 Скачано раз
- cureit-2.log15,18Мб 0 Скачано раз
- hijackthis.log5,9К 4 Скачано раз
- Безымянный.png471,71К 0 Скачано раз
#2 Dr.Robot
conhoy.exe Windows process – What is it?

What this suggests, is that when the miners are running you will certainly find that your computer is running slower and also video games are stuttering or freezing since the conhoy.exe is using your computer system’s resources to produce income for themselves. This will trigger your CPU to run at really warm temperature levels for extensive amount of times, which could shorten the life of the CPU.
conhoy.exe Technical Summary.
| File Name | conhoy.exe |
| Type | Trojan Coin Miner |
| Detection Name | Trojan:Win32/CoinMiner |
| Distribution Method | Software bundling, Intrusive advertisement, redirects to shady sites etc. |
| Similar behavior | Ww30, Injector, Epsilon |
| Removal | Download and install GridinSoft Anti-Malware for automatic conhoy.exe removal. |
Slowing down your computer, running at peek degree for lengthy times may trigger damage to your equipment and increase electricity costs.
When a PC is infected with conhoy.exe trojan, common signs include:
- Extremely high CPU as well as graphics cards usage
- Windows reduce and also make best use of slowly, as well as programs run slower.
- Programs do not launch as rapidly.
- General sluggishness when utilizing the computer.

conhoy.exe – Very high CPU and also graphics cards use
How to detect conhoy.exe Miner Malware?
Unlike ransomware, cryptocurrencies extracting dangers are not obtrusive as well as are most likely to stay undetected by the sufferer.
Identifying conhoy.exe threat is fairly very easy. If the sufferer is making use of a GridinSoft Anti-Malware it is virtually specific to discover any mining malware. Also without a safety and security remedy, the victim is most likely to believe there is something incorrect due to the fact that mining bitcoin or various other cryptocurrencies is a really resource intensive process. The most usual sign is a visible and usually continuous decrease in performance.
This signs and symptom alone doesn’t tell the victim what the precise problem is. The user can experience comparable problems for a variety of reasons. Still, conhoy.exe malware can be really turbulent due to the fact that it will certainly hog all readily available computing power and also the sudden change in the way the infected gadget performs is most likely to make the victim look for remedies. If the hardware of the affected device is effective enough, as well as the target does not discover as well as eliminate the hazard rapidly, the power consumption as well as subsequently the electrical energy expense will increase visibly also.
Exactly how to Remove conhoy.exe Malware?
Once the sufferer has ascertained that their problem is conhoy.exe threat, for the common user there are a couple of options.
Most importantly usage GridinSoft Anti-Malware would certainly be the best remedy. There is no scarcity of offered cybersecurity software application that will detect and also remove mining malware.
Additionally, if the contaminated device doesn’t have essential information or the victim has supported such data in a tidy area, and the individual has some experience, formatting the hard disks might function. This remedy may not be adequate if the infection has infiltrated several networks the machine is a part of.
Download Removal Tool.
Reasons why I would recommend GridinSoft 1
The is an excellent way to deal with recognizing and removing threats – using Gridinsoft Anti-Malware. This program will scan your PC, find and neutralize all suspicious processes. 2 .
Решена Блокируется антивирус и закрывается браузер при упоминании антивируса
Здравствуйте. Проблема следующая:
Ноутбук моей девушки лежал пару лет без дела, думал мертвый. Включил, восстановил, все нормально. Решил поставить антивирус, при упоминании любого защитного ПО, браузер вылетает. В дисптчере висит процесс conhoy.exe. В CCleaner в запланированных задачах тоже непонятные программы: Mysa, Mysa1, Mysa2, Mysa3, ok, oka, MicrosoftWindowsy. В папке debag файл item.dat.
С помощью ProcessHacker морозил conhoy.exe и пробовал скачать антивирус. Ни один не поставился. Попутно появилась проблема, что нет обновлений Windows для последних версий антивирусов. Обновления так же не устанавливаются. Чистил системные папки: $Recycle.Bin, Prefetch, Temp (в Windows, Local, LocalLow и Roaming) через Del+Shift. Запускал Ccleaner, AdwCleaner — часть проблем они решили. Удалось установить Malwarebytes и в безопасном режиме просканировать комп и удалить вредонос. Если все это сделать без интернета, то все норм. Но после перезагрузки с доступом к интернету, все по новой, все процессы появляются заного.
Самостоятельно решить проблему не получается, прошу вашей помощи. Логи прикрепляю.
Guide to remove conhoy.exe malware (2022 Guide)

conhoy.exe is deemed as highly baleful infection capable of generating variants in your system and runs amuck to degrade your system performance severely. You may get this virus by clicking malicious links, opening unknown attachment or visiting pornographic website. It can reborn in your system over and over again, no matter how many times your antivirus program removes it. If we cannot delete it at early stage, conhoy.exe will damage your system without scruple and give the system more and more errors and exploits.
At the same time, other viruses came with conhoy.exe will cause bigger trouble to you. Browser hijacker changes your homepage and redirects it to some dangerous websites, spyware will monitor your activities to collect your confidential information, rogue antivirus software will scam you to buy its malicious product, and ransomware locks your system and force you to pay ransom. Finally, your system will be slow as snail, since lots of malicious harmful processes will eat up your system RAM and CPU room gradually. Moreover, it allows remote access to compromise your computer by changing your PC system settings, endangering your privacy and everything on your computer. You should eliminate conhoy.exe ASAP.
conhoy.exe Removal Steps
Part I – Remove conhoy.exe on Win OS
Part I – Remove conhoy.exe on Windows OS
Step 1 – Uninstall conhoy.exe and related malware from Windows:
To uninstall conhoy.exe and related malware from Windows OS, follow these steps:
Windows 11
1. Click the Start button >> Click Settings

2. Once Settings is open, click Apps from the column on the left >> Click on Apps & Features

Scroll down and find conhoy.exe and other malware >> Click the Options button (three dots) to the app’s left >> Click Uninstall.

Windows 10

- Click Start menu at bottom-left corner of your Win 10 screen and then select Settings:

- In Settings screen, Select System :

- Select Apps & features, and then select conhoy.exe related apps or unwanted programs, then click Uninstall:

Windows 8

– Press the Windows Key to open Start Screen. If it does not comes out, then use this option:
- Win 8 User – Hover the cursor in the bottom-left corner of your win 8 screen and wait for the Start Screen appears, then click on the icon to toggle over to the Start Screen

- Win 8.1 User – Click on the Start icon in the lower left-hand corner to open the Start Screen.
– Locate conhoy.exe and related apps or unwanted programs, and then click on Uninstall:

Win7 & Vista

- Click Start button and select Control Panel:

- Select “Uninstall a program”

- Locate conhoy.exe or related unsafe apps , and then click Uninstall

Step 2 – Remove malicious browser extensions related with conhoy.exe.
Chrome

1. Start Chrome browser and click on “Customize and control Google Chrome” icon ((three vertical dots) at top right corner >> Select More Tools and click Extensions:

Locate malicious extensions related with conhoy.exe or malware, then click trash icon to remove it:

If you have enabled Extensions function on Edge, follow the steps here to delete conhoy.exe and adware related extensions:
Start Edge: Click the More (…) button ahe tog right corner and click Extensions:

Locate the malicious extensions and click Uninstall:


Firefox

Start Firefox and click the 3 parallel lines icon at the top right corner and Click Add-ons :

Under Extensions tab: Locate conhoy.exe and adware related add-ons, select it and click Remove:

Start IE: Click on the cogwheel icon at the top right corner and click Manage Add-ons

Under Toolbar and Extension tab: Select suspicious extensions and click Disable button

Free Remover allows you, subject to a 48-hour waiting period, one remediation and removal for results found. Read our EULA, Privacy Policy, Cookie Policy . See more Free SpyHunter Remover details.
Step 3 – Delete malicious files related with conhoy.exe in Regedit Editor.
1. Press Windows key and R key at the same time to launch “Run” window >> Input regedit and click OK to launch Registry Editor:


2. In Registry Editor: Select Edit button and click Find >> Then type the virus name and click Find Next:


3. Right-click on the malicious registry files you find and click Delete:

Free Remover allows you, subject to a 48-hour waiting period, one remediation and removal for results found. Read our EULA, Privacy Policy, Cookie Policy . See more Free SpyHunter Remover details.
Step 4 Re-check your computer for any remaining unwanted components or possible malware infections:
To eliminate all possible malware infections and any remaining unwanted components of conhoy.exe, it’s neccessary to scan entire computer with another legitimate anti-malware \ anti-virus software. Our security researchers recommend using Wipersoft Anti-malware to re-check your computer:
Note – To understand WiperSoft’s policies and practices, please visit EULA, and Privacy Policy. Learn more about WiperSoft and its key features. If you wish to uninstall WiperSoft, follow the steps to uninstall instructions. WiperSoft scanner is free. Once it detects a virus or malware, you’ll need to purchase its full version to remove the threat.
Step 5 Eliminate remaining browser hijacker to avoid re-installation of malware. (Optional)
conhoy.exe and related malware may hijack web browser with malicious websites, which display scam pop-up and notifications to trick people to download malware again. To ensure that no more malicious programs will be installed on your computer, we recommend resetting web browsers to eliminate possible hijacker and remaining adware. Follow these steps:
Part II- Remove conhoy.exe on Mac OS
Step 1 – Uninstall conhoy.exe and related malicious apps from Mac:
- In Finder window, clicking “Applications” in the sidebar
- In the applications folder, right-click on conhoy.exe related apps or other suspicious apps and click Move to Trash.


* Limited seven days free trial available. To use full-featured product, you have to purchase a license for Combo Cleaner. More information about Combo Cleaner, steps to uninstall, EULA, and Privacy Policy.
Step 2 – Remove malicious files generated by conhoy.exe or malware from Mac
1. Click the Finder icon from the menu bar >> choose “Go” then click on “Go to Folder“:

2. In the Go to Folder… bar, type the name of the following four folders to open them one by one:

/Library/LaunchAgents



3. In each folder, search for any recently-added suspicious files and move them to the Trash. Here are some examples of files generated by malware:
“installmac.AppRemoval.plist”, conhoy.exe”, “com.genieo.completer.download.plist” “com.genieoinnovation.macextension.plist” “com.genieo.engine.plist” “com.adobe.fpsaud.plist” , “myppes.download.plist”, “mykotlerino.ltvbit.plist”,
* Limited seven days free trial available. To use full-featured product, you have to purchase a license for Combo Cleaner. More information about Combo Cleaner, steps to uninstall, EULA, and Privacy Policy.
Step 3 – R emove malicious browser extensions and browser hijackers.
Safari
On Safari
1. Start Safari: Select Safari menu and click Preferences:

2. Select Extensions tab>> Look for the unsafe or suspicious extensions and click Uninstall:

3. Select Search tab >> click the Search Engine menu and make your choice. Safari lets you use Google, Yahoo, Bing, or DuckDuckGo.

4. Select the General tab >> In the Homepage bar, type the URL you want to set as the Safari homepage.

Google Chrome
On Google Chrome
1. Open Google Chrome and click the “Customize and control Google Chrome” icon at the top right corner >> Select More Tools and click Extensions;

2. Search for suspicious extensions related with conhoy.exe and click trash icon to remove it:

3. Reset default search engine on Chrome:
- Open Google Chrome and click the “Customize and control Google Chrome” icon >> Select Settings
- Scroll down until you locate the Search engine section
- Click the drop-down menu accompanying the option labeled Search engine used in the address bar
- Select Google, Bing or Yahoo! as your default search engine.
4. Reset homepage on Chrome:
- Open Google Chrome and click the “Customize and control Google Chrome” icon >> Select Settings;
- In the “On Startup” section, click the “Set pages” link near to the “Open a specific page or set of pages” option.
- Remove the URL of the browser hijacker (for example SearchMine.net) and enter your preferred URL (for example, google.com).
* Limited seven days free trial available. To use full-featured product, you have to purchase a license for Combo Cleaner. More information about Combo Cleaner, steps to uninstall, EULA, and Privacy Policy.
Step 4 – Re-check your Mac for any possible malware infections:
In this final step, it’s neccessary to scan Mac with another Mac Anti-virus Software, ensuring that no other malware are installed on your computer. Our security researchers recommend SpyHunter Anti-malware For Mac:
(Free Remover allows you, subject to a 48-hour waiting period, one remediation and removal for results found. Read itsEULA, Privacy Policy See more Free SpyHunter Remover details.)
2. Double-click SpyHunter-1.2-15-7043-Installer.dmg to install Spyhunter For Mac:

3. Once SpyHunter For Mac is installed, run a scan to search for possible malware infections. You can use Spyhunter to remove all malicious objects on your Mac if you register its full version.
Я видел следы вирусов, но так и не смог понять, что они используют эксплойт системы безопасности. Вы видите гораздо глубже, искренний Вам респект.