Jump to content

possible false positive? related to steam.exe


Go to solution Solved by JPopovic,

Recommended Posts

hi, for the past few days every now and then when I have steam running i get the following from malwarebytes:

 

Malwarebytes
www.malwarebytes.com

-Protokolldetails-
Datum des Schutzereignisses: 25.10.20
Uhrzeit des Schutzereignisses: 13:40
Protokolldatei: 4b4ef86e-16bf-11eb-9018-408d5c5b56e7.json

-Softwaredaten-
Version: 4.2.1.89
Komponentenversion: 1.0.1070
Version des Aktualisierungspakets: 1.0.31976
Lizenz: Testversion

-Systemdaten-
Betriebssystem: Windows 10 (Build 19041.572)
CPU: x64
Dateisystem: NTFS
Benutzer: System

-Einzelheiten zu blockierten Websites-
Bösartige Website: 1
, C:\Program Files (x86)\Steam\steam.exe, Blockiert, -1, -1, 0.0.0, , 

-Website-Daten-
Kategorie: Trojaner
Domäne: steam.naeu.qtlglb.com.cdn20.com
IP-Adresse: 163.171.132.19
Port: 80
Typ: Ausgehend
Datei: C:\Program Files (x86)\Steam\steam.exe
 

 

end

 

any idea if this is a false positive?

Link to post
Share on other sites
  • Staff
  • Solution

Hello,

There is a potentially malicious file on this IP address.

Due to that, we still wouldn't be able to remove the block.

Here is the link to that file:

 http://163.171.132.19/2865400.s21d-2.faiusrd.com/0/abuiabblgaag0utvuwuoquqlhac?wsiphost=ipdb&wsrid_tag=5f2f0636_PSdgflkfFRA2od6_16593-14206 

And this is a link to VirusTotal file:

https://www.virustotal.com/gui/file/6ea27426ff47b4abd8a8e53f7d3452c981aa6fe86ca07ef15e45f6f8fcae3108/detection

 

Thank you for your understanding and please let us know if you need any additional help!

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.