Firewall notifs : RarSFX0\installer.exe to 93.184.220.29/0 Port : HTTP

Vincent63
edited January 17 in General Topics

Hello,

I have this strange notification from Bitdefender Firewall

Chemin : C:\Users\...\AppData\Local\Temp\RarSFX0\installer.exe

Destination : 93.184.220.29/0

Protocole : TCP

Port : HTTP

What worries me, is the bad reputation of the Ip adresse and it's http and not https ...

I did analysis and an other with adwCleaner, and nothing ...


Sometime i had this kind of firewall notifications too (but never the same IP adress)

Chemin : C:\Users\...\AppData\Local\Temp\uqsgtqqb.fyz\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe

Destination : 13.107.5.88/0

Protocole : TCP

Port : HTTPS


Someone can help me and help me if it's a malware , or i'm just paranoid ^^ ?


Thanks

Best Answer

Answers

  • Thanks you vers much for your answer, it helps a lot :)

    After checking for 13.107.5.88 on virustotal.com i think it's malware even if it's not 100 % ( 6 on 88)

Featured content

bitdefender review banner

Romance Fraudster in UK to Spend 2 Years Behind Bars

A serial romance fraudster was sentenced to 28 months in prison for conning several women out of £20,000.

Read more
bitdefender review banner

Europol Shuts Down Hackers’ Favorite VPN Service

Europol earlier this week coordinated joint action to take down VPNLab.net.

Read more
bitdefender review banner

Top Five Security Tips for Mac Users in 2022

In this simple guide, we look at five basic cybersecurity hygiene practices every Mac user should read, and use,in 2022.

Read more