Jump to content
Robert0117

MBAM Premium 3.3.1 Blocking 255.255.255.255

Recommended Posts

Started happening to me today also.

MBAM Premium 3.2.2, updates current.  Happening with 2 executables... I use dropbox, and the former is a part of the Canon printer / scanner suite of tools.

C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe

C:\Program Files (x86)\Dropbox\Client\Dropbox.exe

Share this post


Link to post
Share on other sites

Just turn off alerts to be safe, and let MB continuing blocking those outbound requests for now.

MB support will have to address this soon, as there are many of us experiencing this problem

Share this post


Link to post
Share on other sites

I am having same problem - just started today:

Malwarebytes
www.malwarebytes.com

-Log Details-
Protection Event Date: 11/20/17
Protection Event Time: 12:50 PM
Log File: 00624cb8-ce2c-11e7-acae-34e6d7096a9e.json
Administrator: Yes

-Software Information-
Version: 3.2.2.2018
Components Version: 1.0.212
Update Package Version: 1.0.3304
License: Premium

-System Information-
OS: Windows 10 (Build 14393.1884)
CPU: x64
File System: NTFS
User: System

-Blocked Website Details-
Malicious Website: 1
, , Blocked, [-1], [-1],0.0.0

-Website Data-
Domain: 
IP Address: 255.255.255.255
Port: [17500]
Type: Outbound
File: C:\Program Files (x86)\Dropbox\Client\Dropbox.exe

(end)

 

Share this post


Link to post
Share on other sites

Same problem here, svchost only thing being flagged (not Dropbox).  I'm not going to exclude anything until Malwarebytes let's us know what's going on.  But I did turn off the constant notifications.

Edited by benhere

Share this post


Link to post
Share on other sites

Seems like this is just normal network traffic.  The pc is looking for it's ip address from the router/modem etc.  

Share this post


Link to post
Share on other sites

Same here.
IP Address: 255.255.255.255
Port: 68
Type: Outbound
File: C:\Windows\System32\svchost.exe

and

IP Address: 255.255.255.255
Port: 51727, 51737, 59320, 52999, 50281, 57837 (and more, a lot of diffrent ports for this one!!!)
Type: Outbound
File: C:\Program Files (x86)\BlueStacks\HF-Frontend.exe

Share this post


Link to post
Share on other sites
Quote

Seems like this is just normal network traffic.  The pc is looking for it's ip address from the router/modem etc.  

Ah, that sounds reasonable.....

Share this post


Link to post
Share on other sites

Same problem here.  Not dropbox for me, but allegedly something to do with a ScanSnap driver.  But also 255.255.255.255.  The popup is really annoying.  I'm running Malwarebytes Premium 3.3.1.  I don't see any way to turn off Toolkit notifications.  No such options under Protection tab for me.  Are they somewhere else?  Am I going to have to allow 255.255.255.255 exclusion in order to shut off the damn popup?

Share this post


Link to post
Share on other sites

Same here, Dropbox and svchost both being blocked at 255.255.255.255, around every 20 seconds.

I wouldn't add anything to exclusions yet, just turn off the annoying notifications. 

Share this post


Link to post
Share on other sites

In Malwarebytes program: Settings, Application tab, "Show Malwarebytes notifications in the Windows System Tray" - turn that off to stop seeing notifications

Share this post


Link to post
Share on other sites

This just started happening to me when my VPN (Private Internet Access) tries to connect to a server. I cannot connect to a server unless I exclude 255.255.255.255. It says it comes from svchost.exe...

spg6rTI.png

Edited by AmokOwe

Share this post


Link to post
Share on other sites

Please update the database, the blocks should no longer be occurring. Can you please confirm that for us?

Share this post


Link to post
Share on other sites

Yer, getting the same here. But mine seems to be flagging Dropbox.exe however

Been getting 3 every minute for the past 37mins, 111+ block events :/

Share this post


Link to post
Share on other sites

I'm getting blocked for DropBox on port 17500, PMA.exe on Port 55257, and EPCP.exe on port 59648 all since about 2:30 or so this afternoon.

image.png.799a3d49f039bb40d1577b9881cb37bf.png

image.png.798db3be3fb033e0f58586f7351705f7.png

image.png.8571dea3e573d36bd14c7820b258e834.png

Share this post


Link to post
Share on other sites
1 minute ago, Ried said:

Please update the database, the blocks should no longer be occurring. Can you please confirm that for us?

How does one "update the database"?  

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.