Good to know
Signs Your Windows PC Might Be Infected
- Sudden slowness — your PC takes much longer to start up, open programs, or load websites
- Pop-ups and ads appearing on the desktop or inside browsers, even on sites that normally have no ads
- Browser changes you did not make — a new homepage, default search engine, or unfamiliar toolbar
- Redirects when you click links — you end up on a different site than expected
- Unknown programs in your Start menu, taskbar, or Settings > Apps list
- High disk, CPU, or network activity when you are not actively doing anything
- Antivirus or Windows Update is disabled and you cannot turn it back on
- Files or shortcuts you did not create appearing on your desktop
- Friends receiving messages from you that you never sent
Step 1: Download Malwarebytes from the Official Site
- Open your browser and go to malwarebytes.com/mwb-download
- Check the address bar — it should read
https://www.malwarebytes.comwith a padlock icon - Click Free Download (you do not need to enter an email or create an account)
- The installer file
MBSetup.exewill download to your Downloads folder
Important
Step 2: Install Malwarebytes
- Open your Downloads folder and double-click
MBSetup.exe - If Windows shows a User Account Control prompt, click Yes to allow the installer to run
- When asked who you are installing it for, choose Personal computer (the Free version) — not Work computer
- Click Install and wait about 30–60 seconds for the files to copy
- When prompted to add the browser extension Browser Guard, you can choose either option — it is optional and can be added later
- Click Done. Malwarebytes will open automatically
- You will see an offer for the Premium 14-day trial. To stay on the free version, click Skip or Maybe later — when the trial ends it will simply revert to free
Tip
Step 3: Update the Threat Database
- In Malwarebytes, look at the dashboard for the line Real-Time Protection and the date next to Last update
- Click the gear icon (Settings) in the top right, then go to the General tab
- Scroll to Application updates and click Check for updates
- If updates are available, let them download and install before scanning
Step 4: Run Your First Scan
What each scan type does
- Threat Scan (recommended) — Scans memory, startup items, the registry, and key system folders. Takes 5–15 minutes. This catches almost everything for the average user.
- Custom Scan — Lets you pick specific drives or folders. Useful if you suspect something is on an external drive or a particular folder.
- Hyper Scan (Premium only) — A faster, lighter version of Threat Scan.
Tip
Step 5: Understanding the Scan Results
✅ Result: "No threats found"
Good to know
⚠️ Result: Threats detected — what each category means
PUP.Optional (Potentially Unwanted Program)
PUM.Optional (Potentially Unwanted Modification)
Adware
Spyware / Stalkerware
Trojan / Backdoor
Ransom / Ransomware
Other categories you may see
- Worm (High) — self-replicating malware that spreads to other devices on your network. Quarantine immediately and scan other PCs on the same Wi-Fi.
- Virus / Malware.Generic (High) — classic malicious code, often attached to executables. Quarantine, then run a second scan.
- Exploit / Hijacker (High) — code that takes advantage of a software flaw, often delivered via a web browser. Quarantine and make sure Windows and your browser are fully up to date.
- RiskWare (Medium) — legitimate tools that can be misused (remote-access utilities like TeamViewer or AnyDesk). If you did not install it, quarantine it.
- Rootkit (Critical) — hides deep in the operating system. If detected, follow the deeper recovery steps below.
Step 6: Quarantine the Threats
Tip
Step 7: After You Clean — What to Do Next
- Restart and re-scan to confirm the system is clean.
- Run Windows Defender as a second opinion: Windows Security > Virus & threat protection > Scan options > Microsoft Defender Offline scan. This reboots the PC and scans before Windows fully loads, catching anything hiding in active memory.
- Update everything — Windows Update, your browser, and any out-of-date software. Most malware enters through known vulnerabilities in unpatched software.
- Reset your browser if you saw adware or hijacker detections (Chrome: Settings > Reset settings; Edge: Settings > Reset settings).
- Change your passwords for important accounts (email, banking, social media) from a different, trusted device — especially if a trojan, spyware, or keylogger was detected.
- Enable two-factor authentication on those accounts if you haven't already.
Quick Reference
Was this guide helpful?
Know someone who needs this? Send them the guide.
Written by
Jordan DicksonFounder, CyberSecurityGuides
Founder of CyberSecurityGuides, writing practical, jargon-free guides that help everyday people recover from and protect against online attacks.
Reviewed by CSG Security Engineers