Jump to content

Anti-Exploit False Positive: VLC 3.0.4 win32


bhabel

Recommended Posts

Exploit payload file blocked         BLOCK           C:\Users\****\AppData\Local\Temp\vlc-3.0.4-win32.exe             ****       VLC Player           C:\Program Files (x86)\VideoLAN\VLC\vlc.exe   Attacked application: C:\Program Files (x86)\VideoLAN\VLC\vlc.exe; Parent process name: SpillmanClient.exe; Layer: Application Behavior Protection; API ID: 205; Address: ; Module: ; AddressType: ; StackTop: ; StackBottom: ; StackPointer: ; Extra:

Malwarebytes Management Console > Policy > ***** (Default) > Right Click > Edit > Anti-Exploit > Advanced > Application Behavior Protection
We do not have Application Behavior Protection enabled for Media Players.

Object Scanned: C:\users\****\AppData\Local\vlc-3.0.4-win32.exe
I can't add the scanned object to Anti-Exploit Exclusion List: Selected threat does not contain a valid payload checksum, it cannot be added into exclusion list.


The alert only occurs if we try to pay a video from the Spillman application with VLC. Playing the videos directly does not seem to be affected.

This issue started after the update on 9/20/2018.

Link to post
Share on other sites

  • Staff

Hi bhabel,

Thanks for posting in a separate thread. The other thread in the forum was dealing with a false positive with VLC player which has been fixed. But yours looks like a conflict with another product from the looks of it.

It looks like you have the Malwarebytes Anti-Exploit Business version being managed by Malwarebytes Management console. I will send you a PM with details on how we can proceed to fix this for you. Thanks.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.