Hi everyone! I recently dealt with a malware issue that compromised my Humble Bundle account, and while I've taken steps to regain control, I'm worried my machine might still be unsafe. Here's what happened:
- I accidentally downloaded a utility that was actually malware, which was identified as *Trojan:Win32/Gracing.I* and *Trojan:Win64/Lazy.GBX!MTB*.
- The malware deleted itself after executing some harmful code, but I lost access to my Humble Bundle account due to session hijacking. Thankfully, after contacting support, I got my account back and received refunds for the unauthorized purchases.
- To be safe, I've changed my passwords and enabled 2FA on my accounts. I also scanned my system with Microsoft's Malicious Software Removal Tool and ESET online scanner, which reported no threats.
However, I'm worried about two issues:
1. My Gmail flagged Humble Bundle as spam, and I'm concerned my Google account might have been compromised, although it shows no sign of foreign access.
2. When I type "Humble Bundle" on my PayPal account, I'm experiencing strange keystroke behavior, like random characters being deleted, which makes me fear there might be a keylogger.
I've restored Windows to a point before the malware attack, but I'm still unsure if my system is truly clean. Any advice on how to check for remaining threats and ensure my machine is safe would be greatly appreciated!
3 Answers
Hey! That sounds like a really tough situation, but it seems like you caught some of the signs early. Based on what you described, I'm worried that the malware could still be affecting your system. The fact that your Gmail was marked as spam might indicate compromised access. You should definitely consider reinstalling Windows to be absolutely sure everything is clean.
Also, that weird keystroke issue on PayPal suggests some sort of keylogger or program that’s still active. If the malware executed and was running before being removed, simply deleting it won’t guarantee it's gone. I'd recommend resetting passwords across the board and using a password manager for better security moving forward. Watch for suspicious behavior too!
The only foolproof way to ensure your system is safe is a complete drive wipe and OS reinstall. You could run a million scans, but nothing beats a fresh start. As for your strange PayPal typing issues, that sounds concerning. If you aren’t able to identify any malware after scans, a clean installation would eliminate any hidden stuff you might’ve missed.
Isn’t it annoying how difficult it is to be sure sometimes? I get it!
Sorry to hear about this mess! From the info you've given, it sounds like the malware could still be lurking somewhere. Malware often embeds itself deep within the system, so doing a complete wipe and reinstall of Windows might be the best route.
Your experience with the Gmail spam filtering could suggest that the malware accessed and manipulated your account settings, which is something they often do to cover their tracks. Just changing your passwords isn’t always sufficient; it’s essential to clean the system first. After the reinstall, make sure to set up everything fresh, and take precautions like using a secure password manager.
Totally agree on the clean install. It’s a pain but can save a lot of headaches later!

That’s a solid point regarding the reinstalling. It's a hassle but better safe than sorry for sure!