Jump to content

"Compromised" detection for Acronis True Image auto updater


compromised

Recommended Posts

I've been using Acornis True Image for Western Digital (external backup software) for a few years with no problems.

Yesterday I got an alert from Malwarebytes saying that the Acronis updater was blocked due to "compromised".

I saw in the news that Acronis had a breach for a single user's credentials (no mention whatsoever of any relation to their servers being compromised or software being compromised).

-Log Details-
Protection Event Date: 4/17/23
Protection Event Time: 10:39 PM
Log File: [redacted].json

-Software Information-
Version: 4.5.26.259
Components Version: 1.0.1976
Update Package Version: 1.0.68158
License: Premium

-System Information-
OS: Windows 10 (Build [redacted])
CPU: x64
File System: NTFS
User: System

-Blocked Website Details-
Malicious Website: 1
, C:\Program Files (x86)\Acronis\Agent\bin\updater.exe, Blocked, -1, -1, 0.0.0, ,

-Website Data-
Category: Compromised
Domain:
IP Address: 94.102.61.39
Port: 6888
Type: Inbound
File: C:\Program Files (x86)\Acronis\Agent\bin\updater.exe


(end)

 

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.