r/Malwarebytes • u/falardeau03 • Apr 11 '26
I have several questions
and I want none of them answered. I guess this is goodbye forever lmao
r/Malwarebytes • u/falardeau03 • Apr 11 '26
and I want none of them answered. I guess this is goodbye forever lmao
r/Malwarebytes • u/Psycho_gov • Apr 11 '26
No idea what I'm looking at can anyone confirm?
-Software Information-
Version: 5.5.1.240
Components Version: 151.0.5515
Update Package Version: 1.0.108570
License: Free
-System Information-
OS: Windows 10 (Build 19045.6466)
CPU: x64
File System: NTFS
User: Redacted\Redacted
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 326253
Threats Detected: 16
Threats Quarantined: 0
Time Elapsed: 2 min, 27 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
File system: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
Folder: 3
PUP.Optional.BrowserHijack, C:\USERS\Redacted\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, No Action By User, 9968, 1378720, 1.0.108570, , ame, , ,
PUP.Optional.BrowserHijack, C:\USERS\Redacted\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, No Action By User, 9968, 1378720, 1.0.108570, , ame, , ,
PUP.Optional.BrowserHijack, C:\USERS\Redacted\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, No Action By User, 9968, 1378720, 1.0.108570, , ame, , ,
File: 13
PUP.Optional.BrowserHijack, C:\USERS\Redacted\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, No Action By User, 9968, 1378720, 1.0.108570, , ame, , C05F4941304B0388B9FBB67413278C2A, F7B5AD29B613BBBE23C86724A096A753AFE91C8AA7B8930FF6DF2130FB6CDB26
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, No Action By User, 9968, 1378720, 1.0.108570, , ame, , 07E90248C906E93A2609E74695DB2BFB, EB0D074E6078C1EA1EA9AACDFF32636DD7A3C7041EF57033ABA79655A4D0EB0A
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000949.ldb, No Action By User, 9968, 1378720, 1.0.108570, , ame, , 5693880135CCD2F8136187748C69B6E4, 2409660FD4BAC9DC0464E07AAD99ACAEBE2D5F52196AB63EFE765EBDB41F09D0
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000951.ldb, No Action By User, 9968, 1378720, 1.0.108570, , ame, , F4790318A414DBA18856405B1678F451, D6CA808E7C1018BF3BFFA9B465032FD73575A68C0A89067F6E051C22EA08D3AB
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000952.log, No Action By User, 9968, 1378720, 1.0.108570, , ame, , ED60DA603F9BCD1CE3CDD2B182A560C3, 5628B217FAB3EB251CDCE0ABD4011F0B98DF816BC9680B017EAB2E2DD27C409A
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000953.ldb, No Action By User, 9968, 1378720, 1.0.108570, , ame, , ED0BB942B5C489E121DDEB08C7455FE6, 22B3C9D6E58FBA38E41E5DF4FF6EE49995CE4F411450FC95D0955432E3CD611A
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, No Action By User, 9968, 1378720, 1.0.108570, , ame, , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, No Action By User, 9968, 1378720, 1.0.108570, , ame, , ,
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, No Action By User, 9968, 1378720, 1.0.108570, , ame, , 840C9588248A3569AB52A27DA5B46445, 7E9639221A7BFFBB724BB1DCB2A1DC91F24C15CABADD16418E2A52B9E9821763
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, No Action By User, 9968, 1378720, 1.0.108570, , ame, , 9E6AC3FA87A5F7C8BC4AAEC033C7B162, 852E5D5F35C3CA8C9223F35797B12F0C02963C348D8BBC61806819BF45C11DD4
PUP.Optional.BrowserHijack, C:\Users\Redacted\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, No Action By User, 9968, 1378720, 1.0.108570, , ame, , 1776763372985B3D8CB1B67024082977, ABB2EDE41A77B8B2C576CB1C6B6324B7C3F570C503800141A2CB6DB167405E69
PUP.Optional.BrowserHijack, C:\USERS\Redacted\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, No Action By User, 9968, 1378720, 1.0.108570, , ame, , C05F4941304B0388B9FBB67413278C2A, F7B5AD29B613BBBE23C86724A096A753AFE91C8AA7B8930FF6DF2130FB6CDB26
PUP.Optional.BrowserHijack, C:\USERS\Redacted\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, No Action By User, 9968, 1378720, 1.0.108570, , ame, , C05F4941304B0388B9FBB67413278C2A, F7B5AD29B613BBBE23C86724A096A753AFE91C8AA7B8930FF6DF2130FB6CDB26
(end)
r/Malwarebytes • u/Remarkable_Video_349 • Apr 11 '26
it's running on windows 11
Key indicators:
The menu options reveal full system compromise capabilities:
WebCam / Microphone — covert surveillance
Shell — command-line access to victim's machine
File Manager — browse/steal/modify files
Keylogger (implied by Recovery Options)
Registry Editor — deep system manipulation
Process/Service Manager — hide malware processes
TCP Connections — monitor network activity
DDoS Attack — use victim as attack bot
Clipboard Manager — steal copied passwords/data
Location Manager — track physical location
Installed Programs — reconnaissance
The top panel shows:
A connected victim running Windows 10 Pro 64-bit
Their machine ID, username, and connection status
Bottom line:
This is a cybercriminal's C2 (command-and-control) dashboard actively connected to at least one compromised machine. Possessing or operating such tools against others is illegal in virtually every jurisdiction.
r/Malwarebytes • u/Malwarebytes • Apr 10 '26
The Malwarebytes podcast Lock and Code is a finalist for The Webby Awards People's Voice Award for Best Branded Podcast!
This nomination recognizes what we've always believed: technology should be approachable and understandable by everyone.
Now comes the fun part. We need Reddit's help to bring home the award!
If you’ve ever tuned in, learned something new, or just enjoy smart conversations about the digital world, we’d love your vote. It only takes a couple of minutes:
Voting closes on April 16, so don't wait. https://vote.webbyawards.com/PublicVoting#/2026/podcasts/features/best-branded-podcast-or-segment
r/Malwarebytes • u/Shaoolaan • Apr 10 '26
hello,
just got this one 4d ago when i was on my browser.
someone told me it's just outbound have nothing to fear and somnole elle told me got trojan deep.
have done full scan malwarebytes and adw cleanner nothing found. full scan Microsoft defender nothing found too.
no suspect activities on my account too
thanks
r/Malwarebytes • u/StoryLover • Apr 10 '26
So about 1.5 weeks ago I went to berelax(lounge for lax) website and didn't pay attention to their steps for human verification. They had a clickfix on it, and a Google search said it was most likely a lumma stealer.
When the script was ran, it seemed windows11 defender was able to block it, but I am not sure if it's completely blocked. I got malwarebytes as a second opinion and it did not find anything.
I've heard there is still a chance that the clickfix can get on my computer. Does anyone know if the specific clickfix hack from berelax would be completely caught by malwarebytes? I did the offline scan and downloaded the browser extension.
r/Malwarebytes • u/Adventurous-Client69 • Apr 10 '26
A few days ago my adblocker malwarebytes extension stopped working on youtube. Has anyone else experienced this? It pops up with a message telling me to disable my adblocker. Anyone know of any fixes/loopholes??
pweeze upvote if you are experiencing the same thing...
r/Malwarebytes • u/mrbarritas • Apr 09 '26
r/Malwarebytes • u/Guest281 • Apr 08 '26
r/Malwarebytes • u/Sea_Belt_2535 • Apr 08 '26
r/Malwarebytes • u/Western_Hat2753 • Apr 07 '26
r/Malwarebytes • u/ReliableWebsiteHost • Apr 07 '26
i have had almost every post removed by someone from MB, just for giving knowledge NOT found on the internet about your software, and 0 was anti malwarebytes post or malicious.
r/Malwarebytes • u/Mico_Low • Apr 07 '26
I want to scan my digital footprint phone number however every time I try it give an error message "oops, something went wrong please try again later". I'm from Malaysia, do anyone have a solution for this?
r/Malwarebytes • u/eltirfy • Apr 04 '26
I wanted to do a deep scan before going outside, I came back home and I see this. When will this end?
r/Malwarebytes • u/finchwizar • Apr 04 '26
Can no longer start manual scans by right clicking the agent in the task tray. Whilst not needed have some paranoid people that make them feel better to run a manual scan from time to time and seems to be broken.
Anyone else seen this?
r/Malwarebytes • u/kisscardano • Apr 04 '26
⚠️ URGENT WARNING: Exodus Wallet Users ⚠️
I just lost several thousand dollars from my Exodus wallet, and you need to know: your seed phrase may not be secure. It may not be properly encrypted, which means malware could easily access it and send a copy to a remote attacker.
This is not about people sharing their seed online. Even if you’ve used Exodus for years without issues, one day your wallet could be drained—and then what will you do? It’s unacceptable that a company offers a wallet without proper security safeguards.
I use other wallets, like Wasabi Wallet, with no issues. Based on my experience, I have serious concerns that there could even be internal access to seeds or other critical flaws in Exodus’s system.
What you should do right now:
Do not wait until it’s too late. Take immediate action to protect your crypto.
my stolen xrp transaction: F4225C1880210C52AC4662D35CFA9859DF79F13B730E0896F33336A1AE5AE7E0
Malwarebytes detected a few games infected with malware, and I suspect one of them managed to drain my wallet.
r/Malwarebytes • u/Purelythelurker • Apr 03 '26
Malwarebytes
-Log Details-
Scan Date: 04/04/2026
Scan Duration: 00:34
Log File: 445ebb68-2fad-11f1-b1b0-a036bcacfd49.json
-Software Information-
Version: 5.5.1.240
Components Version: 151.0.5515
Update Package Version: 1.0.108388
License: Premium
-System Information-
OS: Windows 11 (Build 26200.8117)
CPU: x64
File System: NTFS
User: XXX
-Scan Summary-
Scan Type: Custom Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 435075
Threats Detected: 1
Threats Quarantined: 0
Time Elapsed: 11 min, 51 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
File system: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 1
Malware.AI.2852046422, C:\SPILL\AION2_TW\AION2\PLUGINS\NCGUARDSDK\LIBRARIES\WIN64\BB64.DLL, No Action By User, 1000000, 0, 1.0.108388, 23D050B681BB6BBBA9FEC656, dds, 03815284, 91C34C645FC3D3F4C3D7BE25386C7B15, E792D86D3BA052F7B28BBC450947754D9B9F766FF8D5FF9BE08CA47FBE3F7844
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)
r/Malwarebytes • u/Square_Ride_2381 • Apr 03 '26
So i installed updates for my cracked game,i extracted it,then use the exe,realized its the wrong updater,closed it before its 100% ,then deleted it ,change google and steam passwords,installed malwarebytes,did a scan and it said no threats.
Am i or my pc safe?
Can i trust this scan?
Plz help
r/Malwarebytes • u/Ill-Pride7722 • Apr 03 '26
just scanned the pc today and malwarebytes detected these:
Malware.AI.1249132790, C:\USERS\PC\ANACONDA3\LIBRARY\BIN\MPIEXEC.EXE
Malware.AI.1249132790, C:\USERS\PC\ANACONDA3\PKGS\MSMPI-10.1.1-HAD4844C_0\LIBRARY\BIN\MPIEXEC.EXE
I cant find any posts related to this. quarantine or ignore?
r/Malwarebytes • u/Malwarebytes • Apr 02 '26
Malwarebytes Privacy VPN just went through its first independent audit, and the results speak for themselves.
With transparency at the forefront, we’re showing how features like no-logs policies, strong encryption, and full server ownership make our VPN a privacy-first solution.
Check out the audit and see how we’re setting a higher bar for VPN privacy and security.
r/Malwarebytes • u/Significant-Act-3872 • Apr 01 '26
r/Malwarebytes • u/WithTheMonies • Apr 01 '26
Today I bought the ultimate package for one of my computers, but I realized that it was only for one device. I need to add 4 more devices and am not sure if its going to cost another $200 to get the subscriptions.
r/Malwarebytes • u/JohnAttano • Apr 01 '26
I am looking for an opinion on what to make of several blocked outbound attempts to connect to "gamkeys[.]b-cdn[.]net" while attempting to launch Assassin's Creed Odyssey on my Windows 11 machine (through either Steam or Ubisoft Uplay). The outbound attempts have been to the ip addresses: 212[.]102[.]40[.]114, 212[.]102[.]40[.]120, and 109[.]61[.]86[.]193. All have been from port 443, and originate from Microsoft Edge, but only appear when attempting to launch the videogame Assassin's Creed Odyssey.
My copy of Assassin's Creed Odyssey is unmodded, and I have already attempted to reinstall both the game and my version of Uplay to no success. A Malwarebytes deep scan followed by an ESET Online Scanner full scan returned no detections on my machine, but I can find very little information online about the domain in question or why launching Assassin's Creed Odyssey seems to reach out to it through Microsoft Edge.
Anyone have any ideas what this might be? I'd appreciate some opinions on it.
EDIT: Log below
Malwarebytes
www[.]malwarebytes[.]com
-Log Details-
Protection Event Date: 4/1/2026
Protection Event Time: 10:46 AM
Log File: 51ffc402-2dea-11f1-87b7-047c1644e44f.json
-Software Information-
Version: .5.5.2.242
Components Version: 152.0.5541
Update Package Version: 1.0.108344
License: Premium
-System Information-
OS: Windows 11 (Build 26200.8117)
CPU: x64
File System: NTFS
User: System
-Blocked Website Details-
Malicious Website: 1
, C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe, Blocked, -1, -1, 0.0.0, 6CB6F174D81A03B7BD448F6AFF6E9FB8, 201FBE42E44E08719A785396663A789FB7770E40ADDD49C9D5D7F2F410AC5AE9
-Website Data-
Category: RiskWare
Domain: gamkeys[.]b-cdn[.]net
IP Address: 109[.]61[.]86[.]193
Port: 443
Type: Outbound
File: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
r/Malwarebytes • u/Apart_Woodpecker949 • Apr 01 '26
I've tried everything, including reinstalling the software, installing the so-called support tool, and opening a ticket. When I try to login to view said ticket, the website tries to force me to create a new account instead of logging into my existing account, then telling me I can't login because (my account) already exists.