Jump to content

Malwarebytes blocked sites via listed addresses but can't find info


Recommended Posts

I tried looking up 3 different quarantined RTP detections via search box in MWB labs, 2 trojans and one malvertising. Nothing on the trojans, it does find the malvertising. For instance Trojan at alphapanda.com or another Trojan which shows location vast-prod...trick.com. Any suggestions? Happy customer this doesn't get past MWB's!

Link to post
Share on other sites

Hello Admin, these items are on my sister's Lenovo Desktop. I can try to access and obtain the files via my account on it.  I have MWB installed on this HP laptop, her desktop and my Acer desktop. If I get around to it in a few days I will get back to this reply and reply again ok? Thanks. 

Link to post
Share on other sites

Hello @Idontknow    The Malwarebytes for Windows real-time Web protection is keeping the system & the Chrome browser from potential harm.

What was Stopped was an attempted outbound attempt to reach a certain IP.   IP 37.1.209.213  when Chrome was apparently in use.

Do you recall what Chrome was into at that block-event-notice message ?   maybe reading email online ?  or reading a site that perhaps has a lot of ads ?

.

[   small tip  ]   Just be real sure Malwarebytes for Windows is all up to date with the latest Component package & latest definitions.

Start Malwarebytes.  Click the Settings icon.  Look for & click on the General tab.   Click the "Check for Updates" button.

.

[ other helpful tips]

Now do a regular Threat scan    https://support.malwarebytes.com/hc/en-us/articles/360038984773-Scan-types-in-Malwarebytes-for-Windows

[ These will really help ]

[   1   ]

Set the Chrome "sync"  to OFF.

Use Chrome browser   to go to https://www.google.com/settings/chrome/sync and sign into your account.
Scroll down until you see the "reset sync" button and click on the button
At the prompt click on "Ok".

 

After we are all finished with this case, you may if you wish / if you need to /  turn the Google Sync back On.

[   2   ]

for Chrome, while Chrome is running:
Press & hold SHIFT+CTRL+Del keys  on keyboard to get menu for clearing browsing data:

Check mark the line  "Browsing history"

Check mark the line "Download history"

Check mark the lined "Cached images and files"
and press Clear Data button  ( in blue )

[   3   ]

After that, make real sure that Chrome is "NOT" set to reload the pages from the last session

Go into the settings menu of Chrome by first clicking  the control icon of Chrome on upper right of the adress bar

Then look deeper in SETTINGS

image.png.bfcbff4c25a7a1a131de4b71555efd0c.png

 

Make real sure it is "NOT" set to "continue where you left off"

.

[   4   ]

I suggest you install the Malwarebytes Browser guard for Chrome.

To get & install the Malwarebytes Browser Guard extension for Chrome,

Open this link in your Chrome   browser: 

https://chrome.google.com/webstore/detail/malwarebytes/ihcjicgdanjaechkgeegckofjjedodee

 

Then proceed with the setup.    Close Chrome when done.    Just be sure it is closed by the time before you press Scan on the next section below

Link to post
Share on other sites

All concerned, I appreciate the advice. I will call it good on this. Thanks. I regularly update my app and have regular scheduled scans. It rarely ever if ever finds anything. That goes for all 3 pc's.  I mostly am interested in the incidents it finds from the ooh what is it oh whoa it's a good thing it didn't get in my machine aspect as a curiosity. I am intrigued by the threat and what it does I guess.  Thanks. 

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.