Good day,
Since a few days, Malwarebytes scanner reports Deepl.exe or related autostart.exe as a Malware.AI.
Tried to quarantine / uninstall - scanner doesn't report new threat.
Installing it from official website (https://www.deepl.com/) brings back the threat result.
Here attached the Deelp.exe file.
Unsure those would be false positive or real threat.
Kind regards,
Yves.
------------------------------------------------------------------------------------------------------------------------------------------------------------
------------------------------------------------------------------------------------------------------------------------------------------------------------
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 9/20/22
Scan Time: 9:27 AM
Log File: b994dd60-38b5-11ed-ac14-309c23a05e09.json
-Software Information-
Version: 4.5.14.210
Components Version: 1.0.1751
Update Package Version: 1.0.60295
License: Premium
-System Information-
OS: Windows 11 (Build 22000.978)
CPU: x64
File System: NTFS
User: YB-Desktop-W11\becke
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 368483
Threats Detected: 1
Threats Quarantined: 0
Time Elapsed: 3 min, 9 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 1
Malware.AI.4156049150, C:\USERS\CCCCCC\APPDATA\ROAMING\0INSTALL.NET\DESKTOP-INTEGRATION\STUBS\90D46B1A865BF05507B9FB0D2B3698B63CBA3A15FBCAFD836AB5523E7A3EFB99\DEEPL.EXE, No Action By User, 1000000, -138918146, 1.0.60295, 3B0BED560282BBA4F7B846FE, dds, 01955884, 7C9E3C7548C89CE1C9CD3E98832FE879, 8766C825337F416DDA386F67676DEEAF2A4BD9A36408F4B4DED5C566E1CCE63D
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)
auto-start.zip
DeepL.zip