How to rid my xbox one of a potential virus/malware?

Discus and support How to rid my xbox one of a potential virus/malware? in XBoX on Consoles to solve the problem; I will try to be as brief as possible, but here goes: 1. I recently got out of my cable tv package and a friend had told me about Kodi. 2. I... Discussion in 'XBoX on Consoles' started by Dimitri1027, Oct 14, 2018.

  1. Dimitri1027
    Dimitri1027 Guest

    How to rid my xbox one of a potential virus/malware?


    I will try to be as brief as possible, but here goes:

    1. I recently got out of my cable tv package and a friend had told me about Kodi.

    2. I downloaded Kodi through the Xbox App Store on my Xbox One, and followed steps to get live tv (I believe it is the legal one, but I have no idea what is considered "legal", I was just following steps on a video that said it wasn't illegal - didn't even
    know some ways are considered illegal, but I guess it makes sense)

    3. After about a week, my Xbox wouldn't connect to Xbox Live. Kept telling my there was an issue and to visit xbox.com----Toredo.

    4. When I decided to delve further into the details (again, following online videos), it led me to my Modem's IP address page/settings page (or whatever its called - just searching numbers in the address bar).

    5. I noticed in the "System Logs" there were a number of "DNS name resolution failure" 's. I searched one of these addresses on laptop, wouldn't load anything. I searched it on google, and it says it is a Malware.

    6. I searched to see if Xbox One's can even get a Malware, and indeed they can under certain circumstances.

    For the record, the Kodi add-on was NOT an official Kodi add-on.

    So, assuming that there IS some kind of malware or virus of some sort, is there a sure way to diagnose this / figure out what I have in my system? Further, is there a simple way to just wipe the drive clean to fix everything altogether (maybe a factory reset?

    Thanks in advance for the replies! And I know it was probably not smart to even try this route regardless, I was just following people's "recommendations" -_-

    :)
     
    Dimitri1027, Oct 14, 2018
    #1
  2. sswhitebeard
    sswhitebeard Guest
    Xbox One Browser Problem

    my Xbox one browser has been hijacked by a virus! I can't get the page back until I call and pay! Usual scam. How can I clear browsing data, Cache to get rid of this please?
     
    sswhitebeard, Oct 14, 2018
    #2
  3. CBlueBand
    CBlueBand Guest
    Virus on XBox One

    Hi,

    Since last night (March 6th), my Xbox One has been infected by some kind of virus. A female voice is saying the alphabet, saying the names of all the games that I have and my account name (my real name, not my user name). Many of my games don't work anymore.

    Any idea on how I can get rid of this?
     
    CBlueBand, Oct 14, 2018
    #3
  4. CIDkidzPILLZ
    CIDkidzPILLZ Guest

    How to rid my xbox one of a potential virus/malware?

    A factory reset would probably be your best option to try. Follow the steps provided in the following link to learn the methods of performing a factory reset on your console.

    Reset Xbox One Console to Factory Defaults

    In this case you would probably want to reset and remove everything.
     
    CIDkidzPILLZ, Oct 14, 2018
    #4
  5. Arminator
    Arminator Guest
    First of all: The Xbox One can't get a Virus.

    The Xbox One runs every app and game in a locked, virtualized environment, and will ONLY run an app, if it is digitally signed by Microsoft.

    Every app you see on the store page, has been certified to be harmless, and you can't get any app to run on the Xbox that isn't signed and checked by Microsoft.

    As to your issue number 2: Teredo is a tunneling protocol. The Xbox One mainly tries to use IPv6 traffic to communicate. Since not all Internet Providers have switched to IPv6 yet, several tunneling techniques were developed, to transmit IPv6 through IPv4.
    Teredo is a tunneling mechanism that Microsoft developed. If you get Teredo error messages, your internet provider or your router did an update, and somehow filters Teredo packets.

    As for DNS resolution failure: If these errors come from the router, then it means you have an incorrect DNS entered in your router, or on your Xbox.

    In the internet, DNS helps your computer or console to connect to a specific server. Since it's difficult for humans to remember numbers (i.e. IP-Adresses), most websites and internet services have a "human readable" Domain Name (like www.xbox.com instead
    of 104.43.195.251, or www.amazon.com instead of 2.23.48.196)

    A Domain Name Service (DNS) will translate the human readable domain name to a computer readable IP address. So if you go on your computer, and type "www.xbox.com" into your browser's address bar, your computer will ask the nearest DNS Server (usually your
    router) "Hey Router, do you know the IP address for 'www.xbox.com'?", and if the router doesn't know, they will check their settings and ask the DNS server in their settings. Usually a DNS you get from your Internet Provider, or a DNS you manually set.

    Sometimes, a custom DNS entry can allow you to get around country lockouts from YouTube Videos or from streaming services like Hulu or Netflix in other countries.

    However, these custom DNS servers are also often (ab-)used for malicious purposes, so they show up as malicious.

    Consider the following scenario:

    You want to do some internet banking, so you go to "www.myBank.com" or something like that.

    The computer will ask your router "Hey router, what's the IP to 'www.mybank.com'?", and if the router asks a trustable DNS, it would get the proper IP from your bank at (let's say for example): 123.45.67.89

    Now imagine this: A criminal set up a malicious DNS server, that replies to requests for banking websites with different IP addresses. Let's say the criminal set up a PC with fake banking websites at 98.76.54.32

    When your PC asks that malicious DNS for the IP to "www.mybank.com", the malicious DNS could tell your PC that the website of your bank is at this malicious IP 98.76.54.32 instead of the correct IP at 123.45.67.89

    And in order to get people to use their criminal DNS, they advertise this DNS as a service, that "reroutes" addresses for "interesting" services like Netflix or Hulu, so that people outside the US can connect to those US services, hoping that people will
    want to use this DNS, so the criminal can route people that want to do some banking to their criminal banking websites instead, trying to steal your login data.

    So if you set up your Xbox or your Router to use a custom DNS server, because an internet video told you so, think hard again WHY the instructions specifically told you to change your DNS server.

    Did you want to watch video streams from other countries through KODI? Did some KODI Plugins try to "unlock" video services from different countries?

    If so, this is NOT a virus infection.

    However, be aware that DNS manipulations can cause serious trouble, if you try to connect to an important website like your bank, and the manipulated DNS doesn't lead you to your bank, but to a malicious phishing banking website.
     
    Arminator, Oct 14, 2018
    #5
  6. Dimitri1027
    Dimitri1027 Guest
    Thanks! I did this yesterday and I have yet to have any internet/connection issues, and the console itself seems to be 1000x faster already (before it would take a minute before letting my do anything when opening certain apps, now there is no delay). Usually
    I would need to unplug/plug in my modem (hard reset) once daily as my xbox would keep failing to get into the network - this was all the DNS name resolution errors I kept getting I believe, but I may be wrong.

    Nevertheless, thanks for the advice and instructions! It seems to be working great now!
     
    Dimitri1027, Oct 16, 2018
    #6
  7. Dimitri1027
    Dimitri1027 Guest
    Yeah, the addons were NOT Kodi addons and were used from third parties over the internet. These addons were from different websites (one was "lvtvv.com/repo" and "mavericktv.net/mavrepo" for two different addons) and not from the actual, Microsoft Appoved,
    Kodi app that was downloaded through the Microsoft App Store.

    In all honesty, I figured I would give this a try to see if I could get free sports, but it ended up biting me in ___. I feel like I did get a virus from one (or both) of these repos as there were constant failures to connect to my home WiFi which had never
    occurred before. There were constant (daily) notifications to "reset your home modem" and lots of glitches in different apps that took a little bit of time to respond when opening the app (Kodi being the main issue one).

    All being said and done, I reset my laptop by the recommendation of another user and it seems to have fixed the issue... for now :$

    Thanks for the insight and info!
     
    Dimitri1027, Nov 3, 2018
    #7
  8. Arminator Win User

    How to rid my xbox one of a potential virus/malware?

    First of all: The Xbox One can't get a Virus.

    The Xbox One runs every app and game in a locked, virtualized environment, and will ONLY run an app, if it is digitally signed by Microsoft.

    Every app you see on the store page, has been certified to be harmless, and you can't get any app to run on the Xbox that isn't signed and checked by Microsoft.

    As to your issue number 2: Teredo is a tunneling protocol. The Xbox One mainly tries to use IPv6 traffic to communicate. Since not all Internet Providers have switched to IPv6 yet, several tunneling techniques were developed, to transmit IPv6 through IPv4.
    Teredo is a tunneling mechanism that Microsoft developed. If you get Teredo error messages, your internet provider or your router did an update, and somehow filters Teredo packets.

    As for DNS resolution failure: If these errors come from the router, then it means you have an incorrect DNS entered in your router, or on your Xbox.

    In the internet, DNS helps your computer or console to connect to a specific server. Since it's difficult for humans to remember numbers (i.e. IP-Adresses), most websites and internet services have a "human readable" Domain Name (like www.xbox.com instead
    of 104.43.195.251, or www.amazon.com instead of 2.23.48.196)

    A Domain Name Service (DNS) will translate the human readable domain name to a computer readable IP address. So if you go on your computer, and type "www.xbox.com" into your browser's address bar, your computer will ask the nearest DNS Server (usually your
    router) "Hey Router, do you know the IP address for 'www.xbox.com'?", and if the router doesn't know, they will check their settings and ask the DNS server in their settings. Usually a DNS you get from your Internet Provider, or a DNS you manually set.

    Sometimes, a custom DNS entry can allow you to get around country lockouts from YouTube Videos or from streaming services like Hulu or Netflix in other countries.

    However, these custom DNS servers are also often (ab-)used for malicious purposes, so they show up as malicious.

    Consider the following scenario:

    You want to do some internet banking, so you go to "www.myBank.com" or something like that.

    The computer will ask your router "Hey router, what's the IP to 'www.mybank.com'?", and if the router asks a trustable DNS, it would get the proper IP from your bank at (let's say for example): 123.45.67.89

    Now imagine this: A criminal set up a malicious DNS server, that replies to requests for banking websites with different IP addresses. Let's say the criminal set up a PC with fake banking websites at 98.76.54.32

    When your PC asks that malicious DNS for the IP to "www.mybank.com", the malicious DNS could tell your PC that the website of your bank is at this malicious IP 98.76.54.32 instead of the correct IP at 123.45.67.89

    And in order to get people to use their criminal DNS, they advertise this DNS as a service, that "reroutes" addresses for "interesting" services like Netflix or Hulu, so that people outside the US can connect to those US services, hoping that people will
    want to use this DNS, so the criminal can route people that want to do some banking to their criminal banking websites instead, trying to steal your login data.

    So if you set up your Xbox or your Router to use a custom DNS server, because an internet video told you so, think hard again WHY the instructions specifically told you to change your DNS server.

    Did you want to watch video streams from other countries through KODI? Did some KODI Plugins try to "unlock" video services from different countries?

    If so, this is NOT a virus infection.

    However, be aware that DNS manipulations can cause serious trouble, if you try to connect to an important website like your bank, and the manipulated DNS doesn't lead you to your bank, but to a malicious phishing banking website.
  9. Dimitri1027 Win User

    How to rid my xbox one of a potential virus/malware?

    Yeah, the addons were NOT Kodi addons and were used from third parties over the internet. These addons were from different websites (one was "lvtvv.com/repo" and "mavericktv.net/mavrepo" for two different addons) and not from the actual, Microsoft Appoved,
    Kodi app that was downloaded through the Microsoft App Store.

    In all honesty, I figured I would give this a try to see if I could get free sports, but it ended up biting me in ___. I feel like I did get a virus from one (or both) of these repos as there were constant failures to connect to my home WiFi which had never
    occurred before. There were constant (daily) notifications to "reset your home modem" and lots of glitches in different apps that took a little bit of time to respond when opening the app (Kodi being the main issue one).

    All being said and done, I reset my laptop by the recommendation of another user and it seems to have fixed the issue... for now :$

    Thanks for the insight and info!
  10. CIDkidzPILLZ Win User

    How to rid my xbox one of a potential virus/malware?

  11. Dimitri1027 Win User

    How to rid my xbox one of a potential virus/malware?

    Thanks! I did this yesterday and I have yet to have any internet/connection issues, and the console itself seems to be 1000x faster already (before it would take a minute before letting my do anything when opening certain apps, now there is no delay). Usually
    I would need to unplug/plug in my modem (hard reset) once daily as my xbox would keep failing to get into the network - this was all the DNS name resolution errors I kept getting I believe, but I may be wrong.

    Nevertheless, thanks for the advice and instructions! It seems to be working great now!
  12. Obsessive Power Win User

    Xbox one elite purchased 30/1/16 has virus

    Both the Xbox One OS and Edge on Xbox One are in lock down. You could go to the most nastiest virus, malware infested website on the web and your console still won't get a virus.
Thema:

How to rid my xbox one of a potential virus/malware?

Loading...
  1. How to rid my xbox one of a potential virus/malware? - Similar Threads - rid potential virus

  2. how to get rid of a guest pin

    in XBoX Accessibility
    how to get rid of a guest pin: i was getting on my xbox to play a game and it had said to change my age restrictions so i went to do that but when i tried to access my restrictions a guest pin popped up but im not sure how or...
  3. How do i get rid of hacked achievements from hackers

    in XBoX Games and Apps
    How do i get rid of hacked achievements from hackers: I was playing black ops 2 zombies with teammates and one of them was hacking which gave me all the achievements that i havent unlocked. Every time i restart my console they still appear. Could you...
  4. How do I sign an appeal to get rid of false bans or mass false reports?

    in XBoX Accessibility
    How do I sign an appeal to get rid of false bans or mass false reports?: I have been false reported by a person named [mod removed] who keeps false reporting me and making fun of me in which I asked him to stop but he said no while mass reporting me with alternate...
  5. I have error message 0x8007003b I cant get rid of it

    in XBoX Accessibility
    I have error message 0x8007003b I cant get rid of it: I have error 0x8007003b on box xboxs I cannot sign in any idea how to fix it ee784a2d-42ab-48a4-af60-af280e1d84d8
  6. Is there anyway I can get rid of a strike on my account that is there due to a...

    in XBoX Accessibility
    Is there anyway I can get rid of a strike on my account that is there due to a...: Hello so I've gotten a suspension and a strike on my account from what seems to be a misunderstanding with an automated enforcement system I believe? I don't entirely know this is the first time...
  7. How can I get rid of the xbox game pass age restriction in games?

    in XBoX on Windows
    How can I get rid of the xbox game pass age restriction in games?: I've been trying to install a game on gamepass and it gives me the next message: This is rated above (account name)'s age restrictions. Game is rated above the restrictions set on this account. To...
  8. How do I get rid of this screen or unlink the account

    in XBoX Games and Apps
    How do I get rid of this screen or unlink the account: I’m trying to play online but I need to sign in in order to do that but every time I try it does not work I tried two accounts old and new but they still don’t work please help....
  9. How Do I get rid of an Old Xbox account from minecraft PS5.

    in XBoX Accessibility
    How Do I get rid of an Old Xbox account from minecraft PS5.: My Uncle accidentally add an old Microsoft account that he lost access to and I already try asking Mojang to help me but they directly said to ask Microsoft since it's a Microsoft issue. And I try...
  10. How can i get rid of the infinite loading screen when i put in my password on my Xbox?

    in XBoX Accessibility
    How can i get rid of the infinite loading screen when i put in my password on my Xbox?: I have been having this problem for almost a month,where when i turn on my Xbox to play and insert my password It loads for forever,the way to get rid of It is inconsistent,i need to wait for...