I just started having some problems on my PC. I'm using Windows 10, x64, Professional edition. Non-secure boot.
I got a notification from Windows to the effect of "Warning you are not running any security software".
I immediately tried to open Windows Defender but what I got instead was all sliders disabled. On opening my Updates tab I saw the message "Some settings are managed by your organization".
On trying to open Windows Security Center I didn't get anything. Checking services showed me it had been set to disabled.
Steps taken so far:
I tried setting it back to Automatic delayed start and restarting the service but immediately it was disabled again.
At this point I was running a malwarebytes scan. Malwarebytes found a "Chromebrowser.exe" PUP which I removed.
On a rescan it has so far yet to detect anything.
Checking Group Policy shows all entries are set to default "Not Configured" except one for automatic removal which I disabled myself when I first installed Windows 10.
Changing group policy settings for Allow Telemetry under Data collection and Telemetry (under Computer Configuration, Admin templates, Windows components) to full, then disabling again resulted in the "Some settings are managed by organizatio" notice going away, the previously disabled "Get Started" button for Insider Program became enabled again.
Possible cause of infection:
The only thing I did download off the internet was a crack file for a game. This is the VirusTotal analysis result:
Precautions steps and security tools I use:
I am also using a custom host file with 23,000 entries, all ad servers and known malware content hosters. I hope this will at least serve to slow down the infection, if I do have one.
I am using Malwarebytes (trial, no real-time), Windows Defender, and NoScript in Firefox to disable all scripting on websites and domains I do not explicitly trust.
The rest are the same old common sense "Don't open unknown attachements, Don't click links, Don't go to unknown domains, Don't fall for obvious clickbait and spam, etc".
This is the first time I'm facing a problem in a long while, I normally take strict measures and precautions, haven't been infected in over 6 years.
Edited by blackroseblade, 23 November 2015 - 06:51 AM.