-
Posts
1,772 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Everything posted by blender
-
Hello, This should no longer be blocked in the next database update. Usually takes about an hour. Thanks for reporting.
-
Mrpack changelogger detected as Generic.Malware/Suspicious
blender replied to TheBossMagnus's topic in File Detections
Hello, This file should no longer be detected. Might take 10 mins or so to take effect. Thanks for reporting. -
Hello, Block will be removed next database update. Usually takes about an hour. Thanks for reporting.
- 1 reply
-
- 1
-
Hello, Block will be removed next database update. Usually takes about an hour. Thanks for reporting.
-
Hello, This is an old block. It was blocked due to malicious content hosted on the site. It has been cleaned up though so the block will be removed. Thanks for reporting.
-
My website Homesteadacademy.com gets incorrectly flagged as suspicious cont
blender replied to HomesteadAC's topic in Chrome
Hello, This should no longer be blocked in about 1/2 hour or so. Might need to apply database updates to BrowserGuard itself. Thank you for reporting. -
Here are the files (VT scan on links + file). There was 2 but I can't find the other anymore. It has been a while. https://www.virustotal.com/gui/url/2ce9d639ee45cec7c5726525cc0601b723606c42598d236c737b6657bb8d1aaa https://www.virustotal.com/gui/file/aa1b00f53b9ee1ee1edeaeab7b7d272d1c8e84cd3140b32e9a15a89f90a7166a
-
Hello, Thank you for reporting. Site was blocked because it had some malicious files hosted on it. It has since been cleaned so block will be removed next database update.
-
Malwarebytes false positive concerning Avast access to its server?
blender replied to mlvezina's topic in Website Blocking
Hello, I unblocked that IP for now because I can see a lot of Avast/AVG users getting blocks on that IP. We'll be investigating further to fine-tune the block better so not to affect AVG/Avast, etc. -
Hello, This site should no longer be blocked by Browser Guard in about 1/2 hour. Because it is not a secure site (http rather than https) though, I would exercise caution before purchasing anything on that site if there is anything to pay for. None of your info entered is encrypted. I wouldn't use same login creds on there that are used on anything else either.
-
Thank you for posting that. Keep well and have a great New Year!
-
My personal website is being blocked for phishing
blender replied to ajjka's topic in Website Blocking
Hello, This site should no longer be blocked. Give it about 15 mins to 1/2 to take affect. Thanks for reporting. -
Hello, We are not blocking bestclassiccars[.]net or its IP. We are blocking the IP that shows in the screenshot of your notification though. A bunch of malvertising links there. Not seeing anything on bestclassiccars site that would trigger that alert.
-
Hello, Looks like there was some malicious scripts hosted on the site a while back. Since been cleaned so will unblock the site. Thanks for reporting.
-
mbst grab attached, website wrongly classified as riskware
blender replied to alyarb's topic in Website Blocking
Hello, I see Virustotal has a couple false positives on your site. This is probably what triggered research on our end to blocklist the site. Specific file in question: https://www.virustotal.com/gui/file/1adca049fdb28d7c8a34c5e81a08b78c9592aba1007f921aebae033065f448d9 which is in the /files/ directory. I have unblocked it on our end and the update will go out in probably about an hour. Thanks for reporting. -
OK, just wanted to make sure. Sure, please zip/attach here preferably with password on the zip (use 'infected') Might be some links inside those pages we have not yet blocked. Thank you,
-
It looks like it was a false positive on our end. Thanks again for reporting. We can usually fix false positives pretty fast if reported quickly so not to affect many users.
-
False Positive for https://claritycrm.com
blender replied to Claritysoft's topic in Website Blocking
Hello, Site was blocked because of a malicious script on it. It has since been cleaned up so block will be removed next database update. This usually takes about an hour. Thanks for reporting. -
Hello, Block will be removed in next database update. Normally takes about an hour. Thanks for reporting.
-
I'm not getting any detection with test.zip or anything inside it if I unzip it. What are you seeing?
-
Good to hear. Yeah -- we found the jtalert.exe that seems to have triggered the detection for the file you uploaded today. Quite the number of VT hits. https://www.virustotal.com/gui/file/d02ee01d4d6fe6adfff501285d562b24ae018884a3f356922e1c74968ccf0a2a/detection Hit rate at VT for the installer itself: https://www.virustotal.com/gui/file/158feba2ba9a6ad1550388f7e57c96c10d08c7eba4d8f3263b0d218c5946929b/detection And the one you started this thread with: https://www.virustotal.com/gui/file/a991a2f06b823cc6b8f8d0322fb20c38c453d3ad675fdc62082bfe1111302db1 You'll probably want to contact the vendors showing detections at VT to get it cleared up with them as well. AV contact info for False positives: (scroll down a bit for the list) https://github.com/yaronelh/False-Positive-Center Once someone from the other vendors actually LOOK AT the files involved and also remove detection, this will probably be less of an issue in the future. We also often advise creators sign their files as well.