Jump to content

Paszu

Honorary Members
  • Posts

    82
  • Joined

  • Last visited

Reputation

0 Neutral

Recent Profile Visitors

853 profile views
  1. -Dane strony WWW- Kategoria: RiskWare Domena: dl.buzzheavier.com Adres IP: 172.67.71.74 Port: 443 Typ: Wychodzące
  2. -Dane strony WWW- Kategoria: RiskWare Domena: juba-get.com Adres IP: 104.21.11.233 Port: 443 Typ: Wychodzące
  3. yes Baymax Patch Tools
  4. false positive imo https://www.virustotal.com/gui/file/760fcf7fc2ce0bc6fda5471dc620f5843fac92922f27496413173e2c41f70a86 https://www.virustotal.com/gui/file/d9cc34f7bc396f783fe42e6795fd391d00e23d6d16a3b9d0dee520ae5a0602ec PYG64.zip PYG64.zip
  5. -Website Data- Category: RiskWare Domain: simp.cyberfile.me IP Address: 195.16.73.32 Port: 443 Type: Outbound https://www.virustotal.com/gui/ip-address/195.16.73.32 https://www.virustotal.com/gui/url/6860ffc098e9d1940444b9642d73957e09d58b8a25f4044e148a7c49c5d22999/detection
  6. Category: Malware Domain: IP Address: 188.114.96.13 Port: 443 Type: Outbound Category: Malware Domain: IP Address: 188.114.97.13 Port: 443 Type: Outbound https://www.virustotal.com/gui/url/64585771dde7c03425e5f10bd569e2c5f845d86e80746bbaa0733fb897f34ed1/detection
  7. -Szczegóły zablokowanej strony WWW- Złośliwa strona WWW: 1 , C:\Program Files\Mozilla Firefox\firefox.exe, Zablokowano, -1, -1, 0.0.0, , -Dane strony WWW- Kategoria: Trojan Domena: Adres IP: 185.61.137.137 Port: 443 Typ: Wychodzące Plik: C:\Program Files\Mozilla Firefox\firefox.exe
  8. Paszu

    oshi.at

    -Dane strony WWW- Kategoria: Trojan Domena: oshi.at Adres IP: 51.68.141.111 Port: 443 Typ: Wychodzące
  9. here is mine emcds.exe from ESET Internet Security 15.2.11.0 no detection 0/69 https://www.virustotal.com/gui/file/fb343885ae8b4b47ac3a6a89cb588320cd15e1fb5ff879102df294081f1f1d04
  10. I have the same issue can't update MBAM :( latest update was DoIncrementalUpdate (DB pkg version: 1.0.57097), First: Yes, Last: Yes
  11. Paszu

    oshi.at

    @TeMerc File removed please remove the block
  12. Paszu

    oshi.at

    reported yesterday to the owner site should be removed by now
  13. Paszu

    oshi.at

    Kategoria: Trojan Domena: oshi.at Adres IP: 51.68.141.111 Port: 443 Typ: Wychodzące
  14. 6/26/22 " 20:44:41.824" 33407707 059c 0924 WARNING ArwSDK arw::decoy::tracker::track "arw.decoy.tracker.cpp" 260 "tid: 96c - Process is already tracked {PID: 6744}" 06/26/22 " 20:44:51.662" 33417551 059c 0924 WARNING ArwSDK arw::decoy::tracker::track "arw.decoy.tracker.cpp" 260 "tid: 970 - Process is already tracked {PID: 1796}" 06/26/22 " 20:44:51.822" 33417707 059c 0924 WARNING ArwSDK arw::decoy::tracker::track "arw.decoy.tracker.cpp" 260 "tid: 96c - Process is already tracked {PID: 1448}" 06/26/22 " 20:45:04.012" 33429891 059c 0924 WARNING ArwSDK arw::decoy::tracker::track "arw.decoy.tracker.cpp" 260 "tid: 970 - Process is already tracked {PID: 3808}" 06/26/22 " 20:28:30.956" 32436834 0004 0044 WARNING MBAMChameleon ScrubCertificateRevocationListsWorker "watchdog-common.c" 994 "Failed to open user revocation list (0xc0000034(STATUS_OBJECT_NAME_NOT_FOUND)) (S-1-5-19\Software\Microsoft\SystemCertificates\Disallowed\Certificates)" 06/26/22 " 20:28:30.956" 32436834 0004 0044 WARNING MBAMChameleon ScrubCertificateRevocationListsWorker "watchdog-common.c" 994 "Failed to open user revocation list (0xc0000034(STATUS_OBJECT_NAME_NOT_FOUND)) (S-1-5-19\Software\Policies\Microsoft\SystemCertificates\Disallowed\Certificates)" 06/26/22 " 20:28:30.956" 32436834 0004 0044 WARNING MBAMChameleon ScrubCertificateRevocationListsWorker "watchdog-common.c" 994 "Failed to open user revocation list (0xc0000034(STATUS_OBJECT_NAME_NOT_FOUND)) (S-1-5-21-249553779-350208642-1257657893-1000_Classes\Software\Microsoft\SystemCertificates\Disallowed\Certificates)" 06/26/22 " 20:28:30.956" 32436834 0004 0044 WARNING MBAMChameleon ScrubCertificateRevocationListsWorker "watchdog-common.c" 994 "Failed to open user revocation list (0xc0000034(STATUS_OBJECT_NAME_NOT_FOUND)) (S-1-5-21-249553779-350208642-1257657893-1000_Classes\Software\Policies\Microsoft\SystemCertificates\Disallowed\Certificates)"
  15. hello could please tell me why MBAM is detecting those IPs i just installed qbitorrent from official site i'm not doing anything in the app no downloading or seeding anything yet those were detected immediately when i run app for a first time ? -Szczegóły zablokowanej strony WWW- Złośliwa strona WWW: 1 , C:\Program Files\qBittorrent\qbittorrent.exe, Zablokowano, -1, -1, 0.0.0, , -Dane strony WWW- Kategoria: Trojan Domena: Adres IP: 103.41.24.72 Port: 24962 Typ: Wychodzące Plik: C:\Program Files\qBittorrent\qbittorrent.exe -Szczegóły zablokowanej strony WWW- Złośliwa strona WWW: 1 , C:\Program Files\qBittorrent\qbittorrent.exe, Zablokowano, -1, -1, 0.0.0, , -Dane strony WWW- Kategoria: Oprogramowanie riskware Domena: Adres IP: 213.34.163.254 Port: 50239 Typ: Wychodzące Plik: C:\Program Files\qBittorrent\qbittorrent.exe -Szczegóły zablokowanej strony WWW- Złośliwa strona WWW: 1 , C:\Program Files\qBittorrent\qbittorrent.exe, Zablokowano, -1, -1, 0.0.0, , -Dane strony WWW- Kategoria: Trojan Domena: Adres IP: 117.194.167.195 Port: 62939 Typ: Wychodzące Plik: C:\Program Files\qBittorrent\qbittorrent.exe
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.