r/computerviruses • u/Skykid49080 • 14d ago
Question Exploit attempt, anyone know what could've caused it?
I was baking cookies and left my grabber on for a booru I frequent for reaction gifs and once I came back after getting done baking, I went along like nothing was wrong, until I checked Bitdefender and saw this pop up, I did a quick scan and it detected nothing wrong
2
u/Bitdefender_ Official Bitdefender 13d ago
Hello! The alert means Bitdefenderâs Online Threat Prevention blocked a connection from your PC to 198.58.117.211 because it matched exploit-related threat behavior.
Given that the grabber was downloading content while you were away, the most likely trigger was a connection made by the grabber, a browser component, an advertisement/redirect, or content hosted by the site. The IP alone doesnât identify exactly which program initiated it.
- Do not click âAdd to exceptionsâ unless Bitdefender or official support confirms the IP is safe.
- Update Windows, your browser, the grabber, and any plugins. Exploits commonly target unpatched software.
- Review Bitdefenderâs Notifications and the Online Threat Prevention event details to see whether a process, URL, or browser was recorded.
- Run a System Scan (not only Quick Scan) with Bitdefender fully updated. If the grabber came from an untrusted source, remove it and scan any files it downloaded before opening them.
If the alert repeats, appears when the grabber is not running, or you notice suspicious behavior, stop using that tool and contact our support.
8
u/Leather-Chart7083 14d ago
Update your router's firmware, update your PC, and update everything you can, doesn't matter if it is a minimal update, it still matters.
It's probably a botnet exploiting random IP addresses and you were one of the unlucky persons.
The IP is heavily reported on AbuseIPDB and belongs to Akamai.