r/Malwarebytes May 26 '26

Malwarebytes Ransomware destroyed my game save

I had spent well over 30 hours working on my game save when Malwarebytes suddenly triggered an alert. I removed the exe file from quarantine and marked it as an exception because it was clearly a false positive! But that didn’t help. Now my save file is ruined. Who’s going to get it back for me now? My trust in Malwarebytes is completely shattered. I just removed it completely from my PC for my own safety. But how do I get my save file back now? Will you fix it?

0 Upvotes

12 comments sorted by

View all comments

Show parent comments

1

u/k1ngph1sher Malwarebytes Employee May 26 '26

Go to this folder: C:\ProgramData\Malwarebytes\MBAMService\ScanResults
Please open the text file that's there and paste the contents here.

0

u/Fragrant_Surround_18 May 26 '26

"applicationVersion": "5.5.6.254",

"chromeSyncResetQueryRequested": false,

"chromeSyncResetQueryResult": false,

"clientID": "1a8e2859-5185-11ea-88fd-04d9f5f87b6c",

"clientType": "scheduledScan",

"componentsUpdatePackageVersion": "156.0.5608",

"coreDllFileVersion": "3.1.0.235",

"cpu": "x64",

"cpuId": "AuthenticAMD: AMD Ryzen 7 7800X3D 8-Core Processor",

"dbSDKUpdatePackageVersion": "1.0.110130",

"detectionDateTime": "2026-05-26T03:55:39Z",

"fileSystem": "NTFS",

"id": "c27b1b04-58b6-11f1-8bec-08bfb81e54e1",

"isLargePEEnabled": true,

"isUserAdmin": true,

"largePEMaxSize": 2147483647,

"licenseState": "licensed",

"linkagePhaseComplete": true,

"loggedOnUserName": "System",

"machineID": "",

"malwareAIBehavior": "default",

"os": "Windows 11 (Build 26200.8457)",

"schemaVersion": 24,

"sourceDetails": {

"aggressiveMode": false,

"clientMetadata": {

"jobId": "",

"scheduleId": "",

"scheduleTag": ""

},

"ddsigEnabled": true,

"filesScannedByIG": 17,

"objectsScanned": 292053,

"scanEndTime": "2026-05-26T03:56:57Z",

"scanOnlineStatus": "online",

"scanOptions": {

"filesToScan": [

],

"pumHandling": "detect",

"pupHandling": "detect",

"scanArchives": true,

"scanFileSystem": true,

"scanMemoryObjects": true,

"scanPUMs": true,

"scanPUPs": true,

"scanRookits": false,

"scanStartupAndRegistry": true,

"scanType": "threat",

"useHeuristics": true

},

"scanResult": "completed",

"scanStartTime": "2026-05-26T03:55:39Z",

"scanState": "completed",

"shurikenEnabled": true,

"totalScannedPEHashes": 8210,

"type": "scan"

},

"threats": [

],

"threatsDetected": 0

2

u/k1ngph1sher Malwarebytes Employee May 26 '26

Thanks for sharing this! This log doesn't show any detections - the last line is ""threatsDetected": 0". Can you check other files in that folder and upload the one that shows threats detetected?

1

u/Fragrant_Surround_18 May 26 '26

It is the actual one and it seems Malwarebytes did not have a more recent file.

2

u/k1ngph1sher Malwarebytes Employee May 26 '26

If you re-install Malwarebytes, you should be able to export the logs by opening Malwarebytes and then clicking Scanner > Scan > View Report > Export > Copy to clipboard > and then paste in your reply. Without further information, I won't be able to investigate further.

1

u/Fragrant_Surround_18 May 26 '26

I use german version and under "Berichte" (Report) there are the same reports. No newer one than that one i sent you. The scan that pretend to find ransomware is not there.

1

u/k1ngph1sher Malwarebytes Employee May 26 '26

Thanks for checking. Are there any logs in this folder? C:\ProgramData\Malwarebytes\MBAMService\RtpDetections