Windows 10: Windows Defender and Windows Update got disabled by a Malware

Discus and support Windows Defender and Windows Update got disabled by a Malware in AntiVirus, Firewalls and System Security to solve the problem; Windows Defender failed to protect my pc and the Trojian modified registry according to Malwarebytes. Now i can't even check for updates or run windows... Discussion in 'AntiVirus, Firewalls and System Security' started by Apostolos Tolios, Feb 13, 2020.

  1. Windows Defender and Windows Update got disabled by a Malware


    Windows Defender failed to protect my pc and the Trojian modified registry according to Malwarebytes. Now i can't even check for updates or run windows defender. The "Antimalware service executable" doesn't exist. Not even "Windows Security" I run the sfc/scannow command with administration, found 0 modifications. I run the windows update troubleshooter, it finds a problem but it doesn't fixes it. I don't know what to do next.


    Windows Defender and Windows Update got disabled by a Malware 99e1dbcc-2661-48de-a010-154c13c06651?upload=true.png


    Windows Defender and Windows Update got disabled by a Malware aac7d91b-3aab-4bbc-ab61-eae415ff6d46?upload=true.png


    Windows Defender and Windows Update got disabled by a Malware b14db9b1-7d66-4814-adb4-e7f587dbb572?upload=true.png

    :)
     
    Apostolos Tolios, Feb 13, 2020
    #1

  2. What the hell, windows defender?

    It is true, none my own personal machines have mining apps on them. But as an IT tech/consultant, and the family/friend/neighborhood "go-to" computer guy, I am no stranger to mining and crypto-currancy systems.

    My reply was referring to the fact I saw "none" of the issues on any of my systems you had on yours. Neither did any of the users of the dozens of other computers I am responsible for. None that run with alternative anti-malware solutions suddenly had WD enabled after installing those (or any) updates. And some of those users run mining programs. None of the computers had UAC settings changed. None of my computers had my custom settings revert back to the default settings. Nor did I receive any reports from any of my clients, friends, family complaining some Windows Update changed their custom settings back to the defaults. That was my point.

    And for the record, while I may not always hear from friends, family, and neighbors, most of my business clients always call us for problems because we are already contractually obligated to support those systems. Full disclosure - none of those contracted systems run mining programs, all run WD or an alternative solution.

    I don't think any company, regardless their product or services, should be so harshly bashed for not supporting the extreme 1% fringe portion of their customers - especially when they are erring on the side of increased security.

    Absolutely if you have an alternative anti-malware solution installed (and you have not instructed that solution keep Windows Defender active), then Windows should honor your choice and not enable Windows Defender when any new Windows Update is installed. No argument from me on that whatsoever!

    BUT, if you disabled Windows Defender and you have no alternative real-time anti-malware solution installed and running, IMO Microsoft is doing the right thing to enable Windows Defender again. Why? Because without some anti-malware solution running, if you connect to a network that has Internet access you are not just a threat to yourself, you are a threat to me, my family and the rest of society too. Whether you choose to believe it or not.

    *****

    To report any file/program to Microsoft you suspect might be malicious, or that you believe was incorrectly tagged by Windows Defender as malicious, see Submit a file for malware analysis.
     
    Bill_Bright, Feb 13, 2020
    #2
  3. trparky Win User
    What the hell, windows defender?

    But how does Microsoft distinguish between the user disabling Windows Defender and malware disabling it? If you make something so easy to disable the bad guys will do it too. Better to err on the side of caution (and re-enable it when no other malware protection exists on the system) than to potentially let malware run roughshod over the system in question.
     
    trparky, Feb 13, 2020
    #3
  4. Windows Defender and Windows Update got disabled by a Malware

    Windows defender's process running despite it being disabled.

    Windows Defender is integrated within Windows 10. So you have it and it is running (as it should be) unless you installed a 3rd party "real-time" anti-malware solution. If you are using an alternative security solution, it should have registered itself with Windows Action Center which would then disable the real-time component of Windows Defender - unless you specifically told the 3rd party solution not to register itself.

    For example, if you purchased Malwarebytes "Premium", it has a real-time scanner (the free version does not). When you install Malwarebytes Premium, it registers itself in Windows Action Center. But because Malwarebytes and Windows Defender play very well together without hogging resources or causing conflicts, it is often recommended to allow each to run at the same time. So to allow that, the user has to manually go into the Malwarebytes control panel Settings menu and select the option to "Never register Malwarebytes in the Windows Action Center".

    I suspect other 3rd party solutions provide similar options so you might check that out if you did indeed, install a 3rd party security solution.

    Both Windows Update and Windows Defender are supposed to step way back in to the background so they do not interfere with system performance when you are actively using your computer. But this is not always possible, especially if you regularly shut down your computer when you step away from it (instead of just letting it go to sleep), as too much time may have passed and your system is too far behind in Windows and security updates.

    Without you noting which program was actually consuming the lion's share of that 80%, there's no way to tell what, at this point, was causing the problem. However, I would not put it past a browser. Chrome, for example, is very good (or bad, I should say) at eating up a lot of RAM and failing to let it go when exited.
     
    Bill_Bright, Feb 13, 2020
    #4
Thema:

Windows Defender and Windows Update got disabled by a Malware

Loading...
  1. Windows Defender and Windows Update got disabled by a Malware - Similar Threads - Defender Update got

  2. Malware over windows defender

    in AntiVirus, Firewalls and System Security
    Malware over windows defender: A malware has added itself in windows defender exclusions folder... Can't remove it from there...And I'm not able to install any other Antivirus,It says "program blocked by administrator - contact your administrator"I can't even open "Program data" Folder.. It closes...
  3. Windows Defender deleted by malware

    in Windows 10 Software and Apps
    Windows Defender deleted by malware: Few days ago, I tried installing a video game from the internet, after the installation my PC began to over heat, I received various pop up on the screen.. I went to my windows Defender but the error message was that my defenders was not found, I had to reinstall a new...
  4. Malware has completely disabled Windows Defender in PC

    in AntiVirus, Firewalls and System Security
    Malware has completely disabled Windows Defender in PC: My Windows Defender has suddenly stopped working. It is not being shown only on the Search option in the PC. On opening Windows Security, it is showing a blank page. I searched for 'Quick Scan' and opened the quick scan page, but the quick scan is also not working. It is...
  5. Windows defender is not Identifying Malware

    in AntiVirus, Firewalls and System Security
    Windows defender is not Identifying Malware: Hello there, I ran an online scan today using one recognized AV provider and found 6 trojans/malwares in my machine where some of them were not able to detect by Defender. The windows 10 is up-to-date with latest updates. Build 1909. I have enabled UAC and protected...
  6. Windows Defender Malware Detection

    in AntiVirus, Firewalls and System Security
    Windows Defender Malware Detection: I get a notice into about half way through a quick scan that preliminary results show malware or unwanted programs may be on your computer. Results will be shown in Details after scan completes. I get this now on every scan I do including full scan. At completion there is...
  7. Malware removes Windows Defender

    in AntiVirus, Firewalls and System Security
    Malware removes Windows Defender: Hi! About two weeks ago I've got a virus, which not only wasn't found or blocked by Windows Defender but it has completely deleted Defender from system! I've used Malwarebytes to delete malware and then I used system restore to have Defender back. But two days ago the same...
  8. Malware disabled (or removed) Windows Defender

    in Windows 10 Ask Insider
    Malware disabled (or removed) Windows Defender: Here's what happened: i started my laptop normally and i went AFK for a while, the fan went full power, it was weird because I've never heard it going so fast, so I opened task manager to search for the culprit and the fan went slow again, I IMMEDIATELY thought "cryptominer",...
  9. Windows Defender Misses Malware

    in AntiVirus, Firewalls and System Security
    Windows Defender Misses Malware: I'm writing to you about an anti-virus that missed 79 threats. Sad. =( I would like to receive a report... Malwarebytes www.malwarebytes.com -Данные журнала- Дата проверки: 28.01.2019 Время проверки: 23:31 Файл журнала: 2361c266-2344-11e9-b13b-00ff12859955.json...
  10. Windows Defender claims malware

    in AntiVirus, Firewalls and System Security
    Windows Defender claims malware: Just by starting up I.E., Windows defender claims that it is taking action to clean delete malware. I have ran WD, Malwarebytes etc with no problems. Antisuperspyware claims "Trojan agent/gen-downloader" and adware.dealply/variant claims they were removed. Subsequent runs no...