Jump to content

bjm

Honorary Members
  • Posts

    175
  • Joined

Posts posted by bjm

  1. On 5/20/2020 at 8:25 PM, tonguetwister said:

    Hell, even this forum racks up five for www.googletagmanager.com

    as test -
    Firefox Tracking Protection - Strict
    uBlock Origin - 22 filters checked
    png_10254.png.dc0737a8ca852e2b4f9129bad094ee4d.png
    Does BG detect/block google marketing tags on 'forums.malwarebytes.com' because BG happens to see "googletagmanager" before Firefox & uBlock Origin....or, ....BG is better than Firefox Tracking Protection + uBlock Origin 22 filters.   Maybe, Firefox + uBlock Origin allow "googletagmanager"? 

    btw ~ same observation with Edge Tracking Prevention - Strict + uBlock Origin - 22 filters.  

    Curious....BG sees "googletagmanager" before Firefox & uBlock Origin..... or ___________?
    Thanks

  2. 2 hours ago, gatortail said:

    The reason browser.pipe.aira.microsoft.com was blocked even with Ads/Trackers off is because it was flagged as malicious, not as an Ad or Tracker.  That is why it was shown in red with a little bug to the left.  It didn't require a complete page block because the call could just be skipped.  I'm guessing research reviewed that item and updated how it's categorized.  

    Hmm, numbers on BG button for - "malicious" - Malware category? 
    Thanks for your interest n' info.  

  3. 2 minutes ago, Porthos said:

    I use Firefox 98%of the time.😉

    So, BG from Firefox was reporting ...browser.pipe.aira.microsoft.com ...too. 
    Just seemed odd, for me, to see numbers on BG toolbar button. 
    Seeing numbers on BG button made me curious.  

  4. 10 minutes ago, Porthos said:

    Mine is gone now as well. I do have all options on though.

    Yeah, I tried with Ads/Trackers on when I was seeing ....browser.pipe.aira.microsoft.com ...trying to understand why Ads/Trackers off was reporting ....browser.pipe.aira.microsoft.com.  
    I run uBlock Origin.  I run Edge Tracking Prevention off and BG Ads/Trackers off.  Just me. 
    Thanks

  5. 2 minutes ago, gonzo said:

    I asked one of our devs for his input on the subject.  This is a brand new tracker, and I don't have enough knowledge of it or its behavior to speak intelligently on the subject.

    Okay....Thanks for your interest.   
    FWIW ~ at this time "Nothing to block"
    1379912152_Nothingtoblock.png.471a44e3ff34838bc2e4544dcc0ecbbe.png
    Something updated/changed my side or your side? 
    Thanks again for Malwarebytes Community interest.  

  6. png_9930.png.d7009b832083c70e6c1ebaa7241f1d09.png

    -Log Details-
    Scan Date: 4/1/21
    Scan Time: 8:10 PM
    Log File: e2f7f396-9347-11eb-b849-3c2c30e5a972.json

    -Software Information-
    Version: 4.3.0.98
    Components Version: 1.0.1236
    Update Package Version: 1.0.38996
    License: Premium

    -System Information-
    OS: Windows 10 (Build 19042.804)
    CPU: x64
    File System: NTFS
    User: DESKTOP-DELL\bjm

    -Scan Summary-
    Scan Type: Threat Scan
    Scan Initiated By: Manual
    Result: Completed
    Objects Scanned: 344653
    Threats Detected: 0
    Threats Quarantined: 0

  7. png_9923.thumb.png.c250b54947150b579f6566b362afd3fb.png

    png_9924.png.9e32168f3c5ad086a4f79e28573115c4.png

    png_9925.png.a4b042978e480b9eac327692d5e13ec5.png

    Malwarebytes
    www.malwarebytes.com

    -Log Details-
    Scan Date: 4/1/21
    Scan Time: 2:34 PM
    Log File: efe1802e-9318-11eb-863c-3c2c30e5a972.json

    -Software Information-
    Version: 4.3.0.98
    Components Version: 1.0.1236
    Update Package Version: 1.0.38982
    License: Premium

    -System Information-
    OS: Windows 10 (Build 19042.804)
    CPU: x64
    File System: NTFS
    User: DESKTOP-DELL\bjm

    -Scan Summary-
    Scan Type: Threat Scan
    Scan Initiated By: Manual
    Result: Completed
    Objects Scanned: 344869
    Threats Detected: 2
    Threats Quarantined: 0
    Time Elapsed: 1 min, 57 sec

    -Scan Options-
    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Enabled
    Heuristics: Enabled
    PUP: Detect
    PUM: Detect

    -Scan Details-
    Process: 0
    (No malicious items detected)

    Module: 0
    (No malicious items detected)

    Registry Key: 0
    (No malicious items detected)

    Registry Value: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Data Stream: 0
    (No malicious items detected)

    Folder: 0
    (No malicious items detected)

    File: 2
    Generic.Malware/Suspicious, C:\USERS\BJM\DESKTOP\ASSASSINS.CREED.VALHALLA_V1.0.2-V1.2.0_PLUS_19.TRAINER-FLING.ZIP, No Action By User, 0, 392686, 1.0.38982, , shuriken, , 16AFF4E61BDD648DA01DF3A3C03C7479, 3B6CA12F75F88B8EA8AB32B5FF22A73BC7145F27263AD21E973243F656FC5EA3
    Generic.Malware/Suspicious, C:\USERS\BJM\DESKTOP\ASSASSINS CREED VALHALLA V1.0.2-V1.2.0 PLUS 19 TRAINER.EXE, No Action By User, 0, 392686, 1.0.38982, , shuriken, , 73B81E1864C485FCF12BD1648BBEC00A, C2D011739B7DD167D983B572E63F05A0C0E0456BCAA1B08E922D6339AACB2648

    Physical Sector: 0
    (No malicious items detected)

    WMI: 0
    (No malicious items detected)


    (end)

  8. Yes, I had "expert system algorithms" On.

    Now, with "expert system algorithms" Off.
    png_9919.png.0c34e0d2aa0d45e39819ce6c288633b2.png

    786031447_HubbleRecycle.thumb.png.8bcfd06c0c2862781d2adfd70a376de9.png

    png_9917.png.4b9603d1b226989c074b48d653493aef.png

    Malwarebytes
    www.malwarebytes.com

    -Log Details-
    Scan Date: 4/1/21
    Scan Time: 1:45 AM
    Log File: 7e7af03e-92ad-11eb-b6e7-3c2c30e5a972.json

    -Software Information-
    Version: 4.3.0.98
    Components Version: 1.0.1236
    Update Package Version: 1.0.38962
    License: Premium

    -System Information-
    OS: Windows 10 (Build 19042.804)
    CPU: x64
    File System: NTFS
    User: DESKTOP-DELL\bjm

    -Scan Summary-
    Scan Type: Threat Scan
    Scan Initiated By: Manual
    Result: Completed
    Objects Scanned: 344915
    Threats Detected: 2
    Threats Quarantined: 2
    Time Elapsed: 1 min, 51 sec

    -Scan Options-
    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Enabled
    Heuristics: Enabled
    PUP: Detect
    PUM: Detect

    File: 2
    Generic.Malware/Suspicious, C:\USERS\BJM\DESKTOP\ASSASSINS.CREED.VALHALLA_V1.0.2-V1.2.0_PLUS_19.TRAINER-FLING.ZIP, Quarantined, 0, 392686, 1.0.38962, , shuriken, , 16AFF4E61BDD648DA01DF3A3C03C7479, 3B6CA12F75F88B8EA8AB32B5FF22A73BC7145F27263AD21E973243F656FC5EA3
    Generic.Malware/Suspicious, C:\USERS\BJM\DESKTOP\ASSASSINS CREED VALHALLA V1.0.2-V1.2.0 PLUS 19 TRAINER.EXE, Quarantined, 0, 392686, 1.0.38962, , shuriken, , 73B81E1864C485FCF12BD1648BBEC00A, C2D011739B7DD167D983B572E63F05A0C0E0456BCAA1B08E922D6339AACB2648

    (end)

  9. Malwarebytes
    www.malwarebytes.com

    -Log Details-
    Scan Date: 4/1/21
    Scan Time: 1:16 AM
    Log File: 5d58815e-92a9-11eb-b05d-3c2c30e5a972.json

    -Software Information-
    Version: 4.3.0.98
    Components Version: 1.0.1236
    Update Package Version: 1.0.38962
    License: Premium

    -System Information-
    OS: Windows 10 (Build 19042.804)
    CPU: x64
    File System: NTFS
    User: DESKTOP-DELL\bjm

    -Scan Summary-
    Scan Type: Custom Scan
    Scan Initiated By: Manual
    Result: Completed
    Objects Scanned: 1
    Threats Detected: 1
    Threats Quarantined: 0
    Time Elapsed: 0 min, 25 sec

    -Scan Options-
    Memory: Disabled
    Startup: Disabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Detect
    PUM: Detect

    -Scan Details-
    Process: 0
    (No malicious items detected)

    Module: 0
    (No malicious items detected)

    Registry Key: 0
    (No malicious items detected)

    Registry Value: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Data Stream: 0
    (No malicious items detected)

    Folder: 0
    (No malicious items detected)

    File: 1
    Generic.Malware/Suspicious, C:\USERS\BJM\DESKTOP\ASSASSINS CREED VALHALLA V1.0.2-V1.2.0 PLUS 19 TRAINER.EXE, No Action By User, 0, 392686, 1.0.38962, , shuriken, , 73B81E1864C485FCF12BD1648BBEC00A, C2D011739B7DD167D983B572E63F05A0C0E0456BCAA1B08E922D6339AACB2648

    Physical Sector: 0
    (No malicious items detected)

    WMI: 0
    (No malicious items detected)


    (end)

  10. Malwarebytes
    www.malwarebytes.com

    -Log Details-
    Scan Date: 3/31/21
    Scan Time: 9:14 PM
    Log File: aa45203e-9287-11eb-887a-3c2c30e5a972.json

    -Software Information-
    Version: 4.3.0.98
    Components Version: 1.0.1236
    Update Package Version: 1.0.38954
    License: Premium

    -System Information-
    OS: Windows 10 (Build 19042.804)
    CPU: x64
    File System: NTFS
    User: DESKTOP-DELL\bjm

    -Scan Summary-
    Scan Type: Custom Scan
    Scan Initiated By: Manual
    Result: Completed
    Objects Scanned: 1
    Threats Detected: 1
    Threats Quarantined: 1
    Time Elapsed: 0 min, 21 sec

    -Scan Options-
    Memory: Disabled
    Startup: Disabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Detect
    PUM: Detect

    -Scan Details-
    Process: 0
    (No malicious items detected)

    Module: 0
    (No malicious items detected)

    Registry Key: 0
    (No malicious items detected)

    Registry Value: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Data Stream: 0
    (No malicious items detected)

    Folder: 0
    (No malicious items detected)

    File: 1
    Generic.Malware/Suspicious, C:\USERS\BJM\DESKTOP\ASSASSINS CREED VALHALLA V1.0.2-V1.2.0 PLUS 19 TRAINER.EXE, Quarantined, 0, 392686, 1.0.38954, , shuriken, , 73B81E1864C485FCF12BD1648BBEC00A, C2D011739B7DD167D983B572E63F05A0C0E0456BCAA1B08E922D6339AACB2648

    Physical Sector: 0
    (No malicious items detected)

    WMI: 0
    (No malicious items detected)


    (end)

  11. 5 minutes ago, Porthos said:

    You are correct about the following.

    Malwarebytes has no control on the Virus Total results. They usually change (get removed) after several days.

    Okay....regarding "no control on the Virus Total results".

    My understanding .... Malwarebytes command-line engine employs different configuration and detection techniques/heuristics which might detect more than the commercial product. Malwarebytes employs false-positive suppression mechanisms in the commercial product which are not present in the Virus Total command-line engine.

    With my opening post Malware.AI.1254230990 detection was reported with my Malwarebytes commercial product, as with Virus Total.  
    So, either AI detection evolved over time or Malwarebytes manually changed detection with commercial product.  

    Thanks

     

  12. Please advise has AI detection been fixed?....remains under review?

    Malwarebytes static scan
    Version: 4.3.0.98
    Components Version: 1.0.1217
    Update Package Version: 1.0.38351
    License: Premium
    Objects Scanned: 1
    Threats Detected: 0

    File: tomb4.exe
    File size: 1.77 MB (1,851,392 bytes)
    MD5 checksum: 1D97D0BDE7A64CB81DEB31F547B471A1
    SHA1 checksum: 403522D7E43F9508D082F5B83ACDBFC4FA5F312D
    SHA256 checksum: 4AC9D22DC556E4D485C8A1E46FD556311605D4D4AB414A24ED7CA19211FB811A

    My understanding is that VirusTotal uses the command-line scanner versions of the products that support VirusTotal. Some of the solutions included in VirusTotal are configured according to the parameters requested by the vendor, with a more aggressive level of heuristic detection than the official end-user default configuration would offer. 

  13. -Software Information-
    Version: 4.3.0.98
    Components Version: 1.0.1173
    Update Package Version: 1.0.38053
    License: Premium

    -System Information-
    OS: Windows 10 (Build 19042.804)
    CPU: x64
    File System: NTFS
    User: DESKTOP-DELL\bjm

    File: 1
    Malware.AI.896372918, C:\USERS\BJM\DESKTOP\0.7.2 - 5.49.0\SANDBOXIE-PLUS-X64-V0.7.2.EXE, No Action By User, 1000000, 0, 1.0.38053, FDD3A3D8DB903DFA356D90B6, dds, 01154351, 1BCE5F2B705F0BB24CAC84E85D797AF7, 7EE710C0182215B2C8C51F39708E7C83F63CB08183BC55A8B71F8C9351DE6678

     

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.