The reason i'm asking I have relied on Windows Security Center as my own form of virus/malware protection since the release of Windows 10, and somehow I discovered I had a problem with it when I tried to add a folder into it's exclusion list, It wouldn't let me add anything. The ON/OFF Real Time Protection switch was greyed out, and the Protection/Scan Histories was blank, etc.
Since it looked like it wasn't even working at all, I got very worried so I installed Malwarebytes with the 15 day trial. Scanned and it found 17 Threats, the threats seem to explain why my Windows Defender seems corrupt:
This PUM.Optional.DisabledSecurityCenter, seems like the answer to my problem.
Anyway I let it Quarantine all the Items, restarted PC, unfortunately Windows Defender doesn't still seem to be working, but not too worried for now , as I got Malwarebytes running and protecting my system.
And I have also got the speed of my PC back, I was getting a lot of Frame Rate Freezes jumps/laggy moments with was very noticeable in playing games.
If this is the case it just shows me how awful the Windows Security. If a worm can do this thats some "Security" I thought I was getting.
Since it looked like it wasn't even working at all, I got very worried so I installed Malwarebytes with the 15 day trial. Scanned and it found 17 Threats, the threats seem to explain why my Windows Defender seems corrupt:
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 12/23/20
Scan Time: 7:50 PM
Log File: 0e25d90c-4500-11eb-8da0-001a7dda710a.json
-Software Information-
Version: 4.3.0.98
Components Version: 1.0.1130
Update Package Version: 1.0.34657
License: Trial
-System Information-
OS: Windows 10 (Build 18362.778)
CPU: x64
File System: NTFS
User: GREENFACE-PC\GreenFace
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 287330
Threats Detected: 17
Threats Quarantined: 0
Time Elapsed: 1 min, 7 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 1
RiskWare.BitCoinMiner, C:\WINDOWS\SYSTEM32\WINLOGUI.EXE, No Action By User, 1710, 604807, , , , , 6B0F42756B43F8D7224EB9178A5B0550, 54BD65A9BB49912AB6A28267955E16DFC5FDC2F346D9B6633BDCF6207183418D
Module: 1
RiskWare.BitCoinMiner, C:\WINDOWS\SYSTEM32\WINLOGUI.EXE, No Action By User, 1710, 604807, , , , , 6B0F42756B43F8D7224EB9178A5B0550, 54BD65A9BB49912AB6A28267955E16DFC5FDC2F346D9B6633BDCF6207183418D
Registry Key: 6
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C4845940-B9B6-4AC7-B3CA-378AE91EA065}, No Action By User, 7, 782993, 1.0.34657, , ame, , ,
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{C4845940-B9B6-4AC7-B3CA-378AE91EA065}, No Action By User, 7, 782994, , , , , ,
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\MICROSOFT\WINDOWS\APPLICATION EXPERIENCE\StartupCheckLibrary, No Action By User, 7, 782994, 1.0.34657, , ame, , ,
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Microsoft\Windows\Application Experience\StartupCheckLibrary, No Action By User, 7, 735770, , , , , ,
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C4845940-B9B6-4AC7-B3CA-378AE91EA065}, No Action By User, 7, 735770, , , , , ,
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{C4845940-B9B6-4AC7-B3CA-378AE91EA065}, No Action By User, 7, 735770, , , , , ,
Registry Value: 2
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C4845940-B9B6-4AC7-B3CA-378AE91EA065}|PATH, No Action By User, 7, 782993, 1.0.34657, , ame, , ,
RiskWare.BitCoinMiner, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|WINLOGUI, No Action By User, 1710, 604807, 1.0.34657, , ame, , ,
Registry Data: 3
PUM.Optional.DisabledSecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|ANTIVIRUSDISABLENOTIFY, No Action By User, 7412, 293294, 1.0.34657, , ame, , ,
PUM.Optional.DisabledSecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|FIREWALLDISABLENOTIFY, No Action By User, 7412, 293295, 1.0.34657, , ame, , ,
PUM.Optional.DisabledSecurityCenter, HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER|UPDATESDISABLENOTIFY, No Action By User, 7412, 293296, 1.0.34657, , ame, , ,
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 4
Trojan.Agent, C:\WINDOWS\SYSTEM32\TASKS\MICROSOFT\WINDOWS\APPLICATION EXPERIENCE\STARTUPCHECKLIBRARY, No Action By User, 7, 782994, , , , , 2DF372C67198C50224BDE7BEF53F273F, FC18AA887DBC7CA5FA49455068E6139F4008F077C2BE527AB19B081928CD9768
Trojan.Agent, C:\WINDOWS\SYSTEM32\TASKS\MICROSOFT\WINDOWS\APPLICATION EXPERIENCE\STARTUPCHECKLIBRARY, No Action By User, 7, 735770, 1.0.34657, , ame, , 2DF372C67198C50224BDE7BEF53F273F, FC18AA887DBC7CA5FA49455068E6139F4008F077C2BE527AB19B081928CD9768
RiskWare.BitCoinMiner, C:\WINDOWS\SYSTEM32\WINLOGUI.EXE, No Action By User, 1710, 604807, , , , , 6B0F42756B43F8D7224EB9178A5B0550, 54BD65A9BB49912AB6A28267955E16DFC5FDC2F346D9B6633BDCF6207183418D
Trojan.FakeMS.TskLnk, C:\WINDOWS\SYSTEM32\STARTUPCHECKLIBRARY.DLL, No Action By User, 10511, 676769, 1.0.34657, , ame, , BBF0FF45510CF6EA849F593801E1C8D0, 29B06E1E0CA0318B3E876C8ED8BA58AC0C39728D656DD640B80B5E43F5BF926C
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)
This PUM.Optional.DisabledSecurityCenter, seems like the answer to my problem.
Anyway I let it Quarantine all the Items, restarted PC, unfortunately Windows Defender doesn't still seem to be working, but not too worried for now , as I got Malwarebytes running and protecting my system.
And I have also got the speed of my PC back, I was getting a lot of Frame Rate Freezes jumps/laggy moments with was very noticeable in playing games.
If this is the case it just shows me how awful the Windows Security. If a worm can do this thats some "Security" I thought I was getting.