Jump to content

Welcome to Geeks to Go
Geeks to Go Welcome
Create Account Login to Account
Photo

Removal instructions for BackupGenie

- - - - -

  • Please log in to reply
No replies to this topic

#1
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 33,101 posts
Content is republished with permission from Malwarebytes.

What is BackupGenie?

The Malwarebytes research team has determined that BackupGenie is nagware. This one typically gets bundled with other software or promoted heavily through dubious advertisers.
Once installed it keeps reminding the user to register the full version.

How do I know if I am infected with BackupGenie?

This is how the main screen of the potentially unwanted application looks:

warning6.png

and you may have seen these warnings during install:

warning1.png

warning2.png

warning5.png

You will find these icons in your taskbar, startmenu and on your desktop:

icons.png

and you may see this entry in your list of installed programs:

warning4.png

and this task in your Task Scheduler:

warning3.png

How did BackupGenie get on my computer?

These so-called registry cleaners use different methods of getting installed. This particular one was bundled by other software.

How do I remove BackupGenie?

Our program Malwarebytes Anti-Malware can detect and remove this potentially unwanted application.
  • Please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mbam-setup-{version}.exe and follow the prompts to install the program.
  • At the end, be sure a check-mark is placed next to:
    Launch Malwarebytes Anti-Malware
  • Then click Finish.
  • Once the program has loaded, select Scan Now. Or select the Threat Scan from the Scan menu.
  • If an update is available, it will be implemented before the rest of the scanning procedure.
  • When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
  • Restart your computer when prompted to do so.
Is there anything else I need to do to get rid of BackupGenie?
  • No, Malwarebytes' Anti-Malware removes BackupGenie completely.
  • This PUP creates some scheduled tasks. You can read here how to check for and, if necessary, remove Scheduled Tasks.
  • The shortcut called Sync Folder on the desktop can be deleted if it belonged to the rogue.
How would the full version of Malwarebytes Anti-Malware help protect me?

We hope our application and this guide have helped you eradicate this nagware.

As you can see below the full version of Malwarebytes Anti-Malware would have protected you against the BackupGenie installer. It would have warned you before the application could install itself, giving you a chance to stop it before it became too late.

protection1.png


Technical details for experts

You may see these entries in FRST logs:

 () C:\Program Files (x86)\BackupGenie\Signup Wizard.exe
 Startup: C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BackupGenie.lnk [2016-12-01]
 ShortcutTarget: BackupGenie.lnk -> C:\Program Files (x86)\BackupGenie\BackupGenie.exe ()
 S2 BackupStack; C:\Program Files (x86)\BackupGenie\BackupStack.exe [57768 2016-03-14] () <==== ATTENTION
 C:\Windows\System32\Tasks\LaunchSignup
 C:\Users\{username}\Desktop\Sync Folder.lnk
 C:\Program Files (x86)\BackupGenie
 C:\Users\{username}\Desktop\BackupGenie.lnk
 C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie

BackupGenie 1.0.0 (HKLM\...\BackupGenie) (Version: 1.0.0 - BackupGenie)
Task: {E698EEB6-121F-4775-A4A3-D17390B08019} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\BackupGenie\Signup Wizard.exe [2016-03-14] ()
() C:\Program Files (x86)\BackupGenie\Shared Stack.dll
() C:\Program Files (x86)\BackupGenie\GetText.dll
() C:\Program Files (x86)\BackupGenie\UIKit.dll
() C:\Program Files (x86)\BackupGenie\MPCBClient.dll
() C:\Program Files (x86)\BackupGenie\LinqBridge.dll
() C:\Program Files (x86)\BackupGenie\AlphaFS.dll
Alterations made by the installer:

File system details [View: All details] (Selection)
---------------------------------------------------
    Adds the folder C:\Program Files (x86)\BackupGenie
       Adds the file AlphaFS.dll"="3/14/2016 5:53 PM, 270336 bytes, A
       Adds the file AlphaVSS.51.x86.dll"="3/14/2016 5:53 PM, 126976 bytes, A
       Adds the file AlphaVSS.52.x64.dll"="3/14/2016 5:53 PM, 161280 bytes, A
       Adds the file AlphaVSS.52.x86.dll"="3/14/2016 5:53 PM, 142336 bytes, A
       Adds the file AlphaVSS.60.x64.dll"="3/14/2016 5:53 PM, 177152 bytes, A
       Adds the file AlphaVSS.60.x86.dll"="3/14/2016 5:53 PM, 159744 bytes, A
       Adds the file AlphaVSS.Common.dll"="3/14/2016 5:53 PM, 72192 bytes, A
       Adds the file BackupGenie.exe"="3/14/2016 6:09 PM, 2508736 bytes, A
       Adds the file BackupGenie.exe.config"="3/14/2016 5:53 PM, 203 bytes, A
       Adds the file BackupGenie.ico"="3/14/2016 5:53 PM, 471766 bytes, A
       Adds the file BackupStack.exe"="3/14/2016 6:09 PM, 57768 bytes, A
       Adds the file BackupStack.exe.config"="3/14/2016 5:53 PM, 203 bytes, A
       Adds the file BplusDotNet.dll"="3/14/2016 5:53 PM, 65536 bytes, A
       Adds the file de_DE.mo"="3/14/2016 5:53 PM, 66304 bytes, A
       Adds the file es_ES.mo"="3/14/2016 5:53 PM, 66926 bytes, A
       Adds the file fr_FR.mo"="3/14/2016 5:53 PM, 67831 bytes, A
       Adds the file GetText.dll"="3/14/2016 5:54 PM, 12288 bytes, A
       Adds the file InstMgr.dll"="3/14/2016 5:54 PM, 10240 bytes, A
       Adds the file Ionic.Zip.dll"="3/14/2016 5:53 PM, 462336 bytes, A
       Adds the file it_IT.mo"="3/14/2016 5:53 PM, 61983 bytes, A
       Adds the file LinqBridge.dll"="3/14/2016 5:53 PM, 60928 bytes, A
       Adds the file Microsoft.Win32.TaskScheduler.dll"="3/14/2016 5:53 PM, 207360 bytes, A
       Adds the file MPCBClient.dll"="3/14/2016 5:54 PM, 193536 bytes, A
       Adds the file NativeHashWrapper.dll"="3/14/2016 5:53 PM, 7680 bytes, A
       Adds the file Newtonsoft.Json.dll"="3/14/2016 5:53 PM, 494080 bytes, A
       Adds the file ObjectListView.dll"="3/14/2016 5:53 PM, 428032 bytes, A
       Adds the file PipeDiff.dll"="3/14/2016 5:53 PM, 39936 bytes, A
       Adds the file pt_PT.mo"="3/14/2016 5:53 PM, 65761 bytes, A
       Adds the file Service Start.exe"="3/14/2016 6:09 PM, 18368 bytes, A
       Adds the file Service Start.exe.config"="3/14/2016 5:53 PM, 203 bytes, A
       Adds the file Shared Stack.dll"="3/14/2016 6:07 PM, 1468928 bytes, A
       Adds the file Signup Wizard.exe"="3/14/2016 6:09 PM, 1369536 bytes, A
       Adds the file Signup Wizard.exe.config"="3/14/2016 5:53 PM, 203 bytes, A
       Adds the file syncicon.ico"="3/14/2016 5:53 PM, 61787 bytes, A
       Adds the file System.Data.SQLite.DLL"="3/14/2016 5:53 PM, 282624 bytes, A
       Adds the file UIKit.dll"="3/14/2016 5:54 PM, 44544 bytes, A
       Adds the file uninst.exe"="12/1/2016 1:12 PM, 77880 bytes, A
       Adds the file Updater.exe"="3/14/2016 6:09 PM, 1101264 bytes, A
       Adds the file Updater.exe.config"="3/14/2016 5:53 PM, 203 bytes, A
       Adds the file websocket-sharp.dll"="3/14/2016 5:53 PM, 236032 bytes, A
    Adds the folder C:\Program Files (x86)\BackupGenie\Config
       Adds the file api.cred"="12/1/2016 1:45 PM, 238 bytes, A
       Adds the file api.ts2"="12/1/2016 1:27 PM, 56 bytes, A
    Adds the folder C:\Program Files (x86)\BackupGenie\Database
       Adds the file mpcb_backup_conf.db"="12/1/2016 1:45 PM, 10240 bytes, A
       Adds the file mpcb_file_cache.db"="12/1/2016 1:44 PM, 6144 bytes, A
       Adds the file mpcb_settings.db"="12/1/2016 1:45 PM, 15360 bytes, A
    Adds the folder C:\Program Files (x86)\BackupGenie\log
       Adds the file APPLICATION.log"="12/1/2016 1:13 PM, 542 bytes, A
       Adds the file AUTH.log"="12/1/2016 1:45 PM, 651 bytes, A
       Adds the file CORE.log"="12/1/2016 1:27 PM, 311 bytes, A
       Adds the file GRID_RECOVERY_INIT.log"="12/1/2016 1:27 PM, 131 bytes, A
       Adds the file LICENCE.log"="12/1/2016 1:45 PM, 5315 bytes, A
       Adds the file NETWORK_SHARES.log"="12/1/2016 1:45 PM, 730 bytes, A
       Adds the file REMOTING.log"="12/1/2016 1:45 PM, 584 bytes, A
       Adds the file REQUEST.log"="12/1/2016 1:27 PM, 1039 bytes, A
       Adds the file RESTRICTIONS.log"="12/1/2016 1:45 PM, 91 bytes, A
       Adds the file SETTINGS.log"="12/1/2016 1:45 PM, 555 bytes, A
       Adds the file SIGNUP_WIZ.log"="12/1/2016 1:27 PM, 1151 bytes, A
       Adds the file WAIT_HANDLES.log"="12/1/2016 1:13 PM, 1954 bytes, A
    Adds the folder C:\Program Files (x86)\BackupGenie\Resources\cache
    Adds the folder C:\Program Files (x86)\BackupGenie\x64
       Adds the file SQLite.Interop.dll"="3/14/2016 5:53 PM, 1136128 bytes, A
    Adds the folder C:\Program Files (x86)\BackupGenie\x86
       Adds the file SQLite.Interop.dll"="3/14/2016 5:53 PM, 891392 bytes, A
    Adds the folder C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie
       Adds the file BackupGenie.lnk"="12/1/2016 1:12 PM, 1105 bytes, A
    In the existing folder C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
       Adds the file BackupGenie.lnk"="12/1/2016 1:12 PM, 1079 bytes, A
    In the existing folder C:\Users\{username}\Desktop
       Adds the file BackupGenie.lnk"="12/1/2016 1:12 PM, 1069 bytes, A
       Adds the file Sync Folder.lnk"="12/1/2016 1:13 PM, 1969 bytes, A
    In the existing folder C:\Windows\Installer
       Adds the file 79628a.msi"="8/8/2008 3:46 PM, 242176 bytes, A
       Adds the file SourceHash{8220EEFE-38CD-377E-8595-13398D740ACE}"="12/1/2016 1:13 PM, 20480 bytes, A
    In the existing folder C:\Windows\System32\Tasks
       Adds the file LaunchSignup"="12/1/2016 1:13 PM, 4030 bytes, A

Registry details [View: All details] (Selection)
------------------------------------------------
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BackupGenie]
       "DisplayIcon"="REG_SZ"", "C:\Program Files (x86)\BackupGenie\BackupGenie.exe"
       "DisplayName"="REG_SZ"", "BackupGenie 1.0.0"
       "DisplayVersion"="REG_SZ"", "1.0.0"
       "HelpLink"="REG_SZ"", "http://www.backupgenie.com"
       "ProductVersion"="REG_SZ"", "1.0.0"
       "Publisher"="REG_SZ"", "BackupGenie"
       "UninstallString"="REG_SZ"", "C:\Program Files (x86)\BackupGenie\uninst.exe"
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BackupStack]
       "DisplayName"="REG_SZ"", "Computer Backup (BackupGenie)"
       "ErrorControl"="REG_DWORD"", 1
       "ImagePath"="REG_EXPAND_SZ, "C:\Program Files (x86)\BackupGenie\BackupStack.exe"
       "ObjectName"="REG_SZ"", "LocalSystem"
       "Start"="REG_DWORD"", 2
       "Type"="REG_DWORD"", 16
       "WOW64"="REG_DWORD"", 1
Malwarebytes Anti-Malware log:

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 12/7/2016
Scan Time: 8:51 AM
Logfile: mbamBackupGenie.txt
Administrator: Yes

Version: 2.2.1.1043
Malware Database: v2016.12.07.05
Rootkit Database: v2016.11.20.01
License: Premium
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Enabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: {username}

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 304460
Time Elapsed: 9 min, 15 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 1
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Signup Wizard.exe, 1468, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63]

Modules: 0
(No malicious items detected)

Registry Keys: 4
PUP.Optional.BackupGenie, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BackupStack, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BackupGenie, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0A3F942C-5B18-4C8A-B1CB-72FA5D1BCDBB}, Delete-on-Reboot, [443deef60c8e94a29e6d2227f60a827e], 
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\LaunchSignup, Delete-on-Reboot, [582963819a00b4826661c188e719ba46], 

Registry Values: 3
PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0A3F942C-5B18-4C8A-B1CB-72FA5D1BCDBB}|Path, \LaunchSignup, Delete-on-Reboot, [443deef60c8e94a29e6d2227f60a827e]
PUP.Optional.BackupGenie, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BACKUPGENIE|HelpLink, http://www.backupgenie.com, Quarantined, [b4cda83c7822ba7c673e2f6ff10f32ce]
PUP.Optional.BackupGenie, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BACKUPSTACK|ImagePath, C:\Program Files (x86)\BackupGenie\BackupStack.exe, Quarantined, [641d1dc7b0eac3735c9d603ebc440df3]

Registry Data: 0
(No malicious items detected)

Folders: 6
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Database, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x64, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x86, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie, Quarantined, [60219b494e4c04326174a38144bf738d], 

Files: 53
PUP.Optional.BackupGenie, C:\Users\{username}\Desktop\BackupGenie_WebInstaller.exe, Quarantined, [fe83796b9bffe65037a0dcc2aa566f91], 
PUP.Optional.MyPCBackup, C:\Windows\System32\Tasks\LaunchSignup, Quarantined, [b0d1a73d1189a78fa238f653b64a20e0], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Service Start.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaFS.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.51.x86.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.52.x64.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.52.x86.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.60.x64.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.60.x86.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.Common.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupGenie.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupGenie.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupGenie.ico, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupStack.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupStack.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BplusDotNet.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\de_DE.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\es_ES.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\fr_FR.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\GetText.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\InstMgr.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Ionic.Zip.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\it_IT.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\LinqBridge.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Microsoft.Win32.TaskScheduler.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\MPCBClient.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\NativeHashWrapper.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Newtonsoft.Json.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\ObjectListView.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\PipeDiff.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\pt_PT.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Service Start.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Shared Stack.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Signup Wizard.exe, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Signup Wizard.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\syncicon.ico, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\System.Data.SQLite.DLL, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\UIKit.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\uninst.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Updater.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Updater.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\websocket-sharp.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Database\mpcb_settings.db, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\APPLICATION.log, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\CORE.log, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\SIGNUP_WIZ.log, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\WAIT_HANDLES.log, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x64\SQLite.Interop.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x86\SQLite.Interop.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], 
PUP.Optional.MobileGenie, C:\Users\{username}\AppData\Local\Temp\backupgenie_pp.7z, Quarantined, [166bfbe9079356e063b94c53d8282bd5], 
PUP.Optional.BackupGenie, C:\Users\{username}\Desktop\BackupGenie.lnk, Quarantined, [d5ac35af1288f046884cc361946f60a0], 
PUP.Optional.BackupGenie, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie\BackupGenie.lnk, Quarantined, [60219b494e4c04326174a38144bf738d], 
PUP.Optional.BackupGenie, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BackupGenie.lnk, Quarantined, [463b93511c7ef83edcfacb59a95a36ca], 

Physical Sectors: 0
(No malicious items detected)


(end)
As mentioned before the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):
  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention
Save yourself the hassle and get protected.
  • 0

Advertisements





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

featured
Malware Removal How to Guides Windows 7 System Building Download Files Register welcome

Never used a forum? Learn how.