[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

Malwarebytes frequent outbound connections blocked

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 6
Thread images: 1

File: malwarebytes capture.png (38KB, 886x615px) Image search: [Google]
malwarebytes capture.png
38KB, 886x615px
Every day I get notices from Malwarebytes telling me an outbound connection was blocked. It's always the same two urls. tradeexchange(.)com and popcash(.)net.

Any idea what the cause is?

Prior to installing Malwarebytes, Norton Security Suite was telling me "intrusion attempt prevented" almost every day. I ran the entire malware removal guide from Reddit's /r/techsupport sub which included installing Malwarebytes. Norton has been quiet since then but now Malwarebytes is the one constantly blocking stuff.

What's up?
>>
>>353481
Gee, maybe your web browser?

What do you think happens to the witchfinder that doesn't find any witches? What incentive does Malwarebytes have to not exaggerate non-issues so they look big and scary?
>>
>>353514
If it was just an occasional thing I might believe they were false positives but this happens literally every day.
>>
>>353481
>>353514
>Gee, maybe your web browser?

Why don't you use "netstat -a -o" from a command prompt, or ProcessExplorer to see what process is opening the socket?

TCP 192.168.0.103:54819 104.16.62.249:http ESTABLISHED 1592

PID 1593 is chrome.exe, and 104.16.*.* is 4chan.org.
>>
>>353623
I just tried the command and I have no idea how to make sense of the results. What should I be looking for?
>>
>>353631
You're looking for an IP address in the same subnet as the website:

>ping -a thetradexchange.com

Pinging thetradexchange(.)com [104.27.129.67] with 32 bytes of data:
Reply from 104.27.129.67: bytes=32 time=14ms TTL=58

(I mistyped the URL, your target doesn't respond to pings.)

Odds are it is your browser. If you really, really don't want it talking to that website you can block it at your router or make malwarebytes do it for you.
Thread posts: 6
Thread images: 1


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.