thank you! here was another one that came up this afternoon on the clients computer. it may be yet another false positive (note last entry)
Malwarebytes
www.malwarebytes.com
-Log Details-
Protection Event Date: 11/30/20
Protection Event Time: 3:48 PM
Log File: 6f5b1e18-334d-11eb-80c8-00a0cc5ef683.json
-Software Information-
Version: 4.2.3.96
Components Version: 1.0.1122
Update Package Version: 1.0.33662
License: Premium
-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: System
-Ransomware Details-
File: 6
Malware.Ransom.Agent.Generic, d:\Users\shans002\Desktop\M3DGraphics.lnk, Quarantined, 0, 392685, 0.0.0, 4A001F53D5756C2B57708E39AE77D3A2, B000D386B99F70C31522AA57E1CD6DEC566929614FE19F19394BBBF89713B677
Malware.Ransom.Agent.Generic, D:\USERS\SHANS001-BACKUP\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\User Pinned\StartMenu\McHenry3DGraphics.lnk, Quarantined, 0, 392685, , ,
Malware.Ransom.Agent.Generic, D:\USERS\SHANS002\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\User Pinned\StartMenu\McHenry3DGraphics.lnk, Quarantined, 0, 392685, , ,
Malware.Ransom.Agent.Generic, C:\MSoft3D\MCHENR~1\MCHENR~1.EXE, Quarantined, 0, 392685, 0.0.0, 1358D71E0DB9AE9158AA35CDFF643A9A, 78058CA96F5C2DEEF06D96C5AFF5EF4F6C9902FC90A9B5BAF03FFF159DC74594
Malware.Ransom.Agent.Generic, C:\MSoft3D\McHenry3DGraphics\MCHENR~1.EXE, Removal Failed, 0, 392685, 0.0.0, 1358D71E0DB9AE9158AA35CDFF643A9A, 78058CA96F5C2DEEF06D96C5AFF5EF4F6C9902FC90A9B5BAF03FFF159DC74594
Malware.Ransom.Agent.Generic, C:\MSoft3D\McHenry3DGraphics\McHenry3DGraphics.exe, Quarantined, 0, 392685, 0.0.0, 1358d71e0db9ae9158aa35cdff643a9a, 78058ca96f5c2deef06d96c5aff5ef4f6c9902fc90a9b5baf03fff159dc74594
(end)