Jump to content

False Positive - 91.239.200.48 - Wisden.com


JH-SM

Recommended Posts

IP - 91.239.200.48

URL - hxxps://wisden.com/

Flagged and blocked by Malware Bytes, the reason for being blocked is 'Trojan', which can be seen in the log below:

-Log Details-
Protection Event Date: 01/09/2020
Protection Event Time: 10:39
Log File: 154c136c-ec37-11ea-8e2f-9828a62ce123.json

-Software Information-
Version: 4.2.0.82
Components Version: 1.0.1025
Update Package Version: 1.0.29301
Licence: Trial

-System Information-
OS: Windows 10 (Build 18362.1016)
CPU: x64
File System: NTFS
User: System

-Blocked Website Details-
Malicious Website: 1
, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Blocked, -1, -1, 0.0.0, , 

-Website Data-
Category: Trojan
Domain: wisden.com
IP Address: 91.239.200.48
Port: 443
Type: Outbound
File: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

I believe this to be a false positive, having never been flagged by any other protection software, as well as having a clean bill of health from: 

VirusTotal - https://www.virustotal.com/gui/url/bd64617044fac03229d8dd50fad94de606f691624010cac3356304a70ea34ee8/details

AbuseIPDB - https://www.abuseipdb.com/check/91.239.200.48

Edited by TeMerc
Disabled link
Link to post
Share on other sites

  • Staff
10 minutes ago, JH-SM said:

IP - 91.239.200.48

URL - hxxps://wisden.com/

Flagged and blocked by Malware Bytes, the reason for being blocked is 'Trojan', which can be seen in the log below:

-Log Details-
Protection Event Date: 01/09/2020
Protection Event Time: 10:39
Log File: 154c136c-ec37-11ea-8e2f-9828a62ce123.json

-Software Information-
Version: 4.2.0.82
Components Version: 1.0.1025
Update Package Version: 1.0.29301
Licence: Trial

-System Information-
OS: Windows 10 (Build 18362.1016)
CPU: x64
File System: NTFS
User: System

-Blocked Website Details-
Malicious Website: 1
, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Blocked, -1, -1, 0.0.0, , 

-Website Data-
Category: Trojan
Domain: wisden.com
IP Address: 91.239.200.48
Port: 443
Type: Outbound
File: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

I believe this to be a false positive, having never been flagged by any other protection software, as well as having a clean bill of health from: 

VirusTotal - https://www.virustotal.com/gui/url/bd64617044fac03229d8dd50fad94de606f691624010cac3356304a70ea34ee8/details

AbuseIPDB - https://www.abuseipdb.com/check/91.239.200.48

Hello, thanks for bringing this to our attention. We've reviewed the site again and have determined it no longer warrants being blocked so we've removed it from our database. 

Removal should be reflected in the next database update going out in a few hours or so.

Link to post
Share on other sites

  • TeMerc locked this topic
Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.