What is BackupGenie?
The Malwarebytes research team has determined that BackupGenie is nagware. This one typically gets bundled with other software or promoted heavily through dubious advertisers.
Once installed it keeps reminding the user to register the full version.
How do I know if I am infected with BackupGenie?
This is how the main screen of the potentially unwanted application looks:
and you may have seen these warnings during install:
You will find these icons in your taskbar, startmenu and on your desktop:
and you may see this entry in your list of installed programs:
and this task in your Task Scheduler:
How did BackupGenie get on my computer?
These so-called registry cleaners use different methods of getting installed. This particular one was bundled by other software.
How do I remove BackupGenie?
Our program Malwarebytes Anti-Malware can detect and remove this potentially unwanted application.
- Please download Malwarebytes Anti-Malware to your desktop.
- Double-click mbam-setup-{version}.exe and follow the prompts to install the program.
- At the end, be sure a check-mark is placed next to:
Launch Malwarebytes Anti-Malware - Then click Finish.
- Once the program has loaded, select Scan Now. Or select the Threat Scan from the Scan menu.
- If an update is available, it will be implemented before the rest of the scanning procedure.
- When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
- Restart your computer when prompted to do so.
- No, Malwarebytes' Anti-Malware removes BackupGenie completely.
- This PUP creates some scheduled tasks. You can read here how to check for and, if necessary, remove Scheduled Tasks.
- The shortcut called Sync Folder on the desktop can be deleted if it belonged to the rogue.
We hope our application and this guide have helped you eradicate this nagware.
As you can see below the full version of Malwarebytes Anti-Malware would have protected you against the BackupGenie installer. It would have warned you before the application could install itself, giving you a chance to stop it before it became too late.
Technical details for experts
You may see these entries in FRST logs:
() C:\Program Files (x86)\BackupGenie\Signup Wizard.exe Startup: C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BackupGenie.lnk [2016-12-01] ShortcutTarget: BackupGenie.lnk -> C:\Program Files (x86)\BackupGenie\BackupGenie.exe () S2 BackupStack; C:\Program Files (x86)\BackupGenie\BackupStack.exe [57768 2016-03-14] () <==== ATTENTION C:\Windows\System32\Tasks\LaunchSignup C:\Users\{username}\Desktop\Sync Folder.lnk C:\Program Files (x86)\BackupGenie C:\Users\{username}\Desktop\BackupGenie.lnk C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie BackupGenie 1.0.0 (HKLM\...\BackupGenie) (Version: 1.0.0 - BackupGenie) Task: {E698EEB6-121F-4775-A4A3-D17390B08019} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\BackupGenie\Signup Wizard.exe [2016-03-14] () () C:\Program Files (x86)\BackupGenie\Shared Stack.dll () C:\Program Files (x86)\BackupGenie\GetText.dll () C:\Program Files (x86)\BackupGenie\UIKit.dll () C:\Program Files (x86)\BackupGenie\MPCBClient.dll () C:\Program Files (x86)\BackupGenie\LinqBridge.dll () C:\Program Files (x86)\BackupGenie\AlphaFS.dllAlterations made by the installer:
File system details [View: All details] (Selection) --------------------------------------------------- Adds the folder C:\Program Files (x86)\BackupGenie Adds the file AlphaFS.dll"="3/14/2016 5:53 PM, 270336 bytes, A Adds the file AlphaVSS.51.x86.dll"="3/14/2016 5:53 PM, 126976 bytes, A Adds the file AlphaVSS.52.x64.dll"="3/14/2016 5:53 PM, 161280 bytes, A Adds the file AlphaVSS.52.x86.dll"="3/14/2016 5:53 PM, 142336 bytes, A Adds the file AlphaVSS.60.x64.dll"="3/14/2016 5:53 PM, 177152 bytes, A Adds the file AlphaVSS.60.x86.dll"="3/14/2016 5:53 PM, 159744 bytes, A Adds the file AlphaVSS.Common.dll"="3/14/2016 5:53 PM, 72192 bytes, A Adds the file BackupGenie.exe"="3/14/2016 6:09 PM, 2508736 bytes, A Adds the file BackupGenie.exe.config"="3/14/2016 5:53 PM, 203 bytes, A Adds the file BackupGenie.ico"="3/14/2016 5:53 PM, 471766 bytes, A Adds the file BackupStack.exe"="3/14/2016 6:09 PM, 57768 bytes, A Adds the file BackupStack.exe.config"="3/14/2016 5:53 PM, 203 bytes, A Adds the file BplusDotNet.dll"="3/14/2016 5:53 PM, 65536 bytes, A Adds the file de_DE.mo"="3/14/2016 5:53 PM, 66304 bytes, A Adds the file es_ES.mo"="3/14/2016 5:53 PM, 66926 bytes, A Adds the file fr_FR.mo"="3/14/2016 5:53 PM, 67831 bytes, A Adds the file GetText.dll"="3/14/2016 5:54 PM, 12288 bytes, A Adds the file InstMgr.dll"="3/14/2016 5:54 PM, 10240 bytes, A Adds the file Ionic.Zip.dll"="3/14/2016 5:53 PM, 462336 bytes, A Adds the file it_IT.mo"="3/14/2016 5:53 PM, 61983 bytes, A Adds the file LinqBridge.dll"="3/14/2016 5:53 PM, 60928 bytes, A Adds the file Microsoft.Win32.TaskScheduler.dll"="3/14/2016 5:53 PM, 207360 bytes, A Adds the file MPCBClient.dll"="3/14/2016 5:54 PM, 193536 bytes, A Adds the file NativeHashWrapper.dll"="3/14/2016 5:53 PM, 7680 bytes, A Adds the file Newtonsoft.Json.dll"="3/14/2016 5:53 PM, 494080 bytes, A Adds the file ObjectListView.dll"="3/14/2016 5:53 PM, 428032 bytes, A Adds the file PipeDiff.dll"="3/14/2016 5:53 PM, 39936 bytes, A Adds the file pt_PT.mo"="3/14/2016 5:53 PM, 65761 bytes, A Adds the file Service Start.exe"="3/14/2016 6:09 PM, 18368 bytes, A Adds the file Service Start.exe.config"="3/14/2016 5:53 PM, 203 bytes, A Adds the file Shared Stack.dll"="3/14/2016 6:07 PM, 1468928 bytes, A Adds the file Signup Wizard.exe"="3/14/2016 6:09 PM, 1369536 bytes, A Adds the file Signup Wizard.exe.config"="3/14/2016 5:53 PM, 203 bytes, A Adds the file syncicon.ico"="3/14/2016 5:53 PM, 61787 bytes, A Adds the file System.Data.SQLite.DLL"="3/14/2016 5:53 PM, 282624 bytes, A Adds the file UIKit.dll"="3/14/2016 5:54 PM, 44544 bytes, A Adds the file uninst.exe"="12/1/2016 1:12 PM, 77880 bytes, A Adds the file Updater.exe"="3/14/2016 6:09 PM, 1101264 bytes, A Adds the file Updater.exe.config"="3/14/2016 5:53 PM, 203 bytes, A Adds the file websocket-sharp.dll"="3/14/2016 5:53 PM, 236032 bytes, A Adds the folder C:\Program Files (x86)\BackupGenie\Config Adds the file api.cred"="12/1/2016 1:45 PM, 238 bytes, A Adds the file api.ts2"="12/1/2016 1:27 PM, 56 bytes, A Adds the folder C:\Program Files (x86)\BackupGenie\Database Adds the file mpcb_backup_conf.db"="12/1/2016 1:45 PM, 10240 bytes, A Adds the file mpcb_file_cache.db"="12/1/2016 1:44 PM, 6144 bytes, A Adds the file mpcb_settings.db"="12/1/2016 1:45 PM, 15360 bytes, A Adds the folder C:\Program Files (x86)\BackupGenie\log Adds the file APPLICATION.log"="12/1/2016 1:13 PM, 542 bytes, A Adds the file AUTH.log"="12/1/2016 1:45 PM, 651 bytes, A Adds the file CORE.log"="12/1/2016 1:27 PM, 311 bytes, A Adds the file GRID_RECOVERY_INIT.log"="12/1/2016 1:27 PM, 131 bytes, A Adds the file LICENCE.log"="12/1/2016 1:45 PM, 5315 bytes, A Adds the file NETWORK_SHARES.log"="12/1/2016 1:45 PM, 730 bytes, A Adds the file REMOTING.log"="12/1/2016 1:45 PM, 584 bytes, A Adds the file REQUEST.log"="12/1/2016 1:27 PM, 1039 bytes, A Adds the file RESTRICTIONS.log"="12/1/2016 1:45 PM, 91 bytes, A Adds the file SETTINGS.log"="12/1/2016 1:45 PM, 555 bytes, A Adds the file SIGNUP_WIZ.log"="12/1/2016 1:27 PM, 1151 bytes, A Adds the file WAIT_HANDLES.log"="12/1/2016 1:13 PM, 1954 bytes, A Adds the folder C:\Program Files (x86)\BackupGenie\Resources\cache Adds the folder C:\Program Files (x86)\BackupGenie\x64 Adds the file SQLite.Interop.dll"="3/14/2016 5:53 PM, 1136128 bytes, A Adds the folder C:\Program Files (x86)\BackupGenie\x86 Adds the file SQLite.Interop.dll"="3/14/2016 5:53 PM, 891392 bytes, A Adds the folder C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie Adds the file BackupGenie.lnk"="12/1/2016 1:12 PM, 1105 bytes, A In the existing folder C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Adds the file BackupGenie.lnk"="12/1/2016 1:12 PM, 1079 bytes, A In the existing folder C:\Users\{username}\Desktop Adds the file BackupGenie.lnk"="12/1/2016 1:12 PM, 1069 bytes, A Adds the file Sync Folder.lnk"="12/1/2016 1:13 PM, 1969 bytes, A In the existing folder C:\Windows\Installer Adds the file 79628a.msi"="8/8/2008 3:46 PM, 242176 bytes, A Adds the file SourceHash{8220EEFE-38CD-377E-8595-13398D740ACE}"="12/1/2016 1:13 PM, 20480 bytes, A In the existing folder C:\Windows\System32\Tasks Adds the file LaunchSignup"="12/1/2016 1:13 PM, 4030 bytes, A Registry details [View: All details] (Selection) ------------------------------------------------ [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BackupGenie] "DisplayIcon"="REG_SZ"", "C:\Program Files (x86)\BackupGenie\BackupGenie.exe" "DisplayName"="REG_SZ"", "BackupGenie 1.0.0" "DisplayVersion"="REG_SZ"", "1.0.0" "HelpLink"="REG_SZ"", "http://www.backupgenie.com" "ProductVersion"="REG_SZ"", "1.0.0" "Publisher"="REG_SZ"", "BackupGenie" "UninstallString"="REG_SZ"", "C:\Program Files (x86)\BackupGenie\uninst.exe" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BackupStack] "DisplayName"="REG_SZ"", "Computer Backup (BackupGenie)" "ErrorControl"="REG_DWORD"", 1 "ImagePath"="REG_EXPAND_SZ, "C:\Program Files (x86)\BackupGenie\BackupStack.exe" "ObjectName"="REG_SZ"", "LocalSystem" "Start"="REG_DWORD"", 2 "Type"="REG_DWORD"", 16 "WOW64"="REG_DWORD"", 1Malwarebytes Anti-Malware log:
Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 12/7/2016 Scan Time: 8:51 AM Logfile: mbamBackupGenie.txt Administrator: Yes Version: 2.2.1.1043 Malware Database: v2016.12.07.05 Rootkit Database: v2016.11.20.01 License: Premium Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Enabled OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: {username} Scan Type: Threat Scan Result: Completed Objects Scanned: 304460 Time Elapsed: 9 min, 15 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 1 PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Signup Wizard.exe, 1468, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63] Modules: 0 (No malicious items detected) Registry Keys: 4 PUP.Optional.BackupGenie, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BackupStack, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BackupGenie, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0A3F942C-5B18-4C8A-B1CB-72FA5D1BCDBB}, Delete-on-Reboot, [443deef60c8e94a29e6d2227f60a827e], PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\LaunchSignup, Delete-on-Reboot, [582963819a00b4826661c188e719ba46], Registry Values: 3 PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{0A3F942C-5B18-4C8A-B1CB-72FA5D1BCDBB}|Path, \LaunchSignup, Delete-on-Reboot, [443deef60c8e94a29e6d2227f60a827e] PUP.Optional.BackupGenie, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BACKUPGENIE|HelpLink, http://www.backupgenie.com, Quarantined, [b4cda83c7822ba7c673e2f6ff10f32ce] PUP.Optional.BackupGenie, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BACKUPSTACK|ImagePath, C:\Program Files (x86)\BackupGenie\BackupStack.exe, Quarantined, [641d1dc7b0eac3735c9d603ebc440df3] Registry Data: 0 (No malicious items detected) Folders: 6 PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Database, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x64, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x86, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie, Quarantined, [60219b494e4c04326174a38144bf738d], Files: 53 PUP.Optional.BackupGenie, C:\Users\{username}\Desktop\BackupGenie_WebInstaller.exe, Quarantined, [fe83796b9bffe65037a0dcc2aa566f91], PUP.Optional.MyPCBackup, C:\Windows\System32\Tasks\LaunchSignup, Quarantined, [b0d1a73d1189a78fa238f653b64a20e0], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Service Start.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaFS.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.51.x86.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.52.x64.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.52.x86.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.60.x64.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.60.x86.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\AlphaVSS.Common.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupGenie.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupGenie.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupGenie.ico, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupStack.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BackupStack.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\BplusDotNet.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\de_DE.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\es_ES.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\fr_FR.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\GetText.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\InstMgr.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Ionic.Zip.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\it_IT.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\LinqBridge.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Microsoft.Win32.TaskScheduler.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\MPCBClient.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\NativeHashWrapper.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Newtonsoft.Json.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\ObjectListView.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\PipeDiff.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\pt_PT.mo, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Service Start.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Shared Stack.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Signup Wizard.exe, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Signup Wizard.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\syncicon.ico, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\System.Data.SQLite.DLL, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\UIKit.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\uninst.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Updater.exe, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Updater.exe.config, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\websocket-sharp.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\Database\mpcb_settings.db, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\APPLICATION.log, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\CORE.log, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\SIGNUP_WIZ.log, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\log\WAIT_HANDLES.log, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x64\SQLite.Interop.dll, Delete-on-Reboot, [770a73711f7b65d192725e4121df9d63], PUP.Optional.BackupGenie, C:\Program Files (x86)\BackupGenie\x86\SQLite.Interop.dll, Quarantined, [770a73711f7b65d192725e4121df9d63], PUP.Optional.MobileGenie, C:\Users\{username}\AppData\Local\Temp\backupgenie_pp.7z, Quarantined, [166bfbe9079356e063b94c53d8282bd5], PUP.Optional.BackupGenie, C:\Users\{username}\Desktop\BackupGenie.lnk, Quarantined, [d5ac35af1288f046884cc361946f60a0], PUP.Optional.BackupGenie, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BackupGenie\BackupGenie.lnk, Quarantined, [60219b494e4c04326174a38144bf738d], PUP.Optional.BackupGenie, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BackupGenie.lnk, Quarantined, [463b93511c7ef83edcfacb59a95a36ca], Physical Sectors: 0 (No malicious items detected) (end)As mentioned before the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):
- Dynamically Blocks Malware Sites & Servers
- Malware Execution Prevention