Jump to content

Sitedrifter

Members
  • Content Count

    40
  • Joined

  • Last visited

About Sitedrifter

  • Rank
    New Member

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. My MWB just updated to version 3.8.3.2965 keeping fingers crossed
  2. Is it really blocking? I keep getting warnings but I cannot find in MWB where to unblock the sites.
  3. Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 7/30/19 Protection Event Time: 7:26 PM Log File: 7f1e737a-b321-11e9-b2a6-0492263ec4e9.json -Software Information- Version: 3.8.3.2965 Components Version: 1.0.613 Update Package Version: 1.0.11788 License: Premium -System Information- OS: Windows 10 (Build 18362.267) CPU: x64 File System: NTFS User: System -Blocked Website Details- Malicious Website: 1 , , Blocked, [-1], [-1],0.0.0 -Website Data- Category: Malware Domain: id.google.com IP Address: 216.58.221.195 Port: [50420] Type: Outbound File: D:\Mozilla Firefox\firefox.exe (end)
  4. Another one Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 7/30/19 Protection Event Time: 7:29 PM Log File: e4cbc100-b321-11e9-84b3-0492263ec4e9.json -Software Information- Version: 3.8.3.2965 Components Version: 1.0.613 Update Package Version: 1.0.11788 License: Premium -System Information- OS: Windows 10 (Build 18362.267) CPU: x64 File System: NTFS User: System -Blocked Website Details- Malicious Website: 1 , , Blocked, [-1], [-1],0.0.0 -Website Data- Category: Malware Domain: settings-win.data.microsoft.com IP Address: 20.36.218.63 Port: [64740] Type: Outbound File: (end)
  5. This seems to be built in windows program trying to access microsoft and I got three errors (see below) Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 7/30/19 Protection Event Time: 7:28 PM Log File: c1ed70c0-b321-11e9-840d-0492263ec4e9.json -Software Information- Version: 3.8.3.2965 Components Version: 1.0.613 Update Package Version: 1.0.11788 License: Premium -System Information- OS: Windows 10 (Build 18362.267) CPU: x64 File System: NTFS User: System -Blocked Website Details- Malicious Website: 1 , , Blocked, [-1], [-1],0.0.0 -Website Data- Category: Malware Domain: watson.telemetry.microsoft.com IP Address: 51.143.111.7 Port: [64687] Type: Outbound File: C:\Windows\System32\wermgr.exe Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 7/30/19 Protection Event Time: 7:28 PM Log File: c1ed70c0-b321-11e9-840d-0492263ec4e9.json -Software Information- Version: 3.8.3.2965 Components Version: 1.0.613 Update Package Version: 1.0.11788 License: Premium -System Information- OS: Windows 10 (Build 18362.267) CPU: x64 File System: NTFS User: System -Blocked Website Details- Malicious Website: 1 , , Blocked, [-1], [-1],0.0.0 -Website Data- Category: Malware Domain: watson.telemetry.microsoft.com IP Address: 51.143.111.7 Port: [64687] Type: Outbound File: C:\Windows\System32\wermgr.exe Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 7/30/19 Protection Event Time: 7:28 PM Log File: c1ed70c0-b321-11e9-840d-0492263ec4e9.json -Software Information- Version: 3.8.3.2965 Components Version: 1.0.613 Update Package Version: 1.0.11788 License: Premium -System Information- OS: Windows 10 (Build 18362.267) CPU: x64 File System: NTFS User: System -Blocked Website Details- Malicious Website: 1 , , Blocked, [-1], [-1],0.0.0 -Website Data- Category: Malware Domain: watson.telemetry.microsoft.com IP Address: 51.143.111.7 Port: [64687] Type: Outbound File: C:\Windows\System32\wermgr.exe I am not sure Malwarebytes has this correct. Please advise.
  6. Hi If you can scan https://www.monmouthcountyspca.org/ and if it is a false positive, could you please unblock it? I have attached my MB log. Also, VirusTotal says the site is clean. monmouthspca.txt
  7. https://www.virustotal.com/gui/url/62c63a709671380adc5cce94bc0c089a714c10f166fa8487c59bf916489e85f7/detection Seems clean there? Can the website in question be checked and if possible, the false positive be fixed? Thanks Site
  8. I tried going to https://www.blackstaramps.com/ and MB blocks it. I hope it is not compromised with malware and that it is a false positive. Please let me know. Attached is the output of the report. blackstaramps.txt
  9. Please help me determine if this is a false positive? Malwarebytes always has issues with this program (for years) but I need to be positive. Malwarebytes did something to the file as I cannot attach it, delete it, move it etc. Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 5/12/19 Protection Event Time: 10:04 AM Log File: de2b0a82-74be-11e9-aee2-c07cd1fbefdf.json -Software Information- Version: 3.7.1.2839 Components Version: 1.0.586 Update Package Version: 1.0.10568 License: Premium -System Information- OS: Windows 10 (Build 17763.475) CPU: x64 File System: NTFS User: System -Ransomware Details- File: 3 Malware.Ransom.Agent.Generic, C:\Users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Peace.lnk, Blocked, [0], [392685],0.0.0 Malware.Ransom.Agent.Generic, C:\EQUALI~1\config\Peace.exe, Blocked, [0], [392685],0.0.0 Malware.Ransom.Agent.Generic, C:\EqualizerAPO\config\Peace.exe, Blocked, [0], [392685],0.0.0 (end)
  10. Just got a response from support. I have one new license now but they need to get me a second one so I am waiting on that.
  11. This is starting to become a real annoyance. I know that is not helpful but it does reflect my dissatisfaction on how long this is taking to get revolved.
  12. here is the actual executable that I launch and get the quarantine issue.. Peace.zip
  13. Same issue 1. I removed the file from quarantine 2. I quit malwarebytes 3/. I deleted the Hubble file 4. restarted Malwarebytes 5. Executed the program PEACE and got the same thing (see below) Malwarebytes www.malwarebytes.com -Log Details- Protection Event Date: 5/3/19 Protection Event Time: 9:00 AM Log File: 7044efd2-6da3-11e9-bead-c07cd1fbefdf.json -Software Information- Version: 3.7.1.2839 Components Version: 1.0.586 Update Package Version: 1.0.10446 License: Premium -System Information- OS: Windows 10 (Build 17763.437) CPU: x64 File System: NTFS User: System -Blocked Malware Details- File: 1 Generic.Malware/Suspicious, C:\EqualizerAPO\config\Peace.exe, Quarantined, [0], [392686],1.0.10446 (end)
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.