Jump to content

Recommended Posts

I just got a detection for "usocoreworker.exe". I'm assuming it's an FP because it looks like the domain it tried to connect to was legit. It seems like maybe this is a fairly new file from a windows update?

 

Malwarebytes
www.malwarebytes.com

-Log Details-
Protection Event Date: 7/30/19
Protection Event Time: 8:06 PM
Log File: 0a95c0e8-b327-11e9-84e3-6805ca8467e5.json

-Software Information-
Version: 3.8.3.2965
Components Version: 1.0.613
Update Package Version: 1.0.11788
License: Premium

-System Information-
OS: Windows 10 (Build 18362.239)
CPU: x64
File System: NTFS
User: System

-Blocked Website Details-
Malicious Website: 1
, , Blocked, [-1], [-1],0.0.0

-Website Data-
Category: Malware
Domain: settings-win.data.microsoft.com
IP Address: 20.36.218.63
Port: [60619]
Type: Outbound
File: C:\Windows\System32\usocoreworker.exe

(end)

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.