Marvel Rivals

Marvel Rivals

View Stats:
Why powershell.sys?
Aside from the RCE vulnerability in Marvel Rivals which the devs completely ignored... Any reason why people are complaining about powershell.sys in the latest update? Is it really required for a game to run powershell commands?
< >
Showing 1-15 of 102 comments
ChocoBisous Feb 21 @ 4:57am 
My Norton blocked powershell.sys but the game is still launched. Don't know what Neatease tried to do with this powershell command.
Its the chinese spyware
Hiro Feb 21 @ 5:48am 
I don't know and I don't care.
KVM and Linux FTW!
I think this is just like Epic's backdoor program—it's the price to pay for using Chinese software. As long as there are no passwords, credit card numbers, or other personal data stored on the computer, it should be fine.
Last edited by Odinmask 風之力; Feb 21 @ 6:47am
Originally posted by ChocoBisous:
My Norton blocked powershell.sys but the game is still launched. Don't know what Neatease tried to do with this powershell command.

Same... im glad Im running Norton.
People thinking Powershell is spyware is so funny
Literally just type into your taskbar search for Powershell if on windows and you'll see both the ISE and x86 applications
It's used by multiple programs on your computer to automate processes

No, it's not some chinese spyware

No, you can't disable PowerShell unless you want to royally bork over your WIndows OS

No, it not a recent addition. It's been there since launch and is only being flagged now by your antivirus so more than likely a false positive.
got the same on Avast something is sus here...

Originally posted by ChocoBisous:
My Norton blocked powershell.sys but the game is still launched. Don't know what Neatease tried to do with this powershell command.
Originally posted by BigCatRob:
People thinking Powershell is spyware is so funny
Literally just type into your taskbar search for Powershell if on windows and you'll see both the ISE and x86 applications
It's used by multiple programs on your computer to automate processes

No, it's not some chinese spyware

No, you can't disable PowerShell unless you want to royally bork over your WIndows OS

No, it not a recent addition. It's been there since launch and is only being flagged now by your antivirus so more than likely a false positive.


powershell can be used by hackers to get around antivirus just wanna let you know...
Hiro Feb 21 @ 7:08am 
Originally posted by BigCatRob:
People thinking Powershell is spyware is so funny
Literally just type into your taskbar search for Powershell if on windows and you'll see both the ISE and x86 applications
It's used by multiple programs on your computer to automate processes

No, it's not some chinese spyware

No, you can't disable PowerShell unless you want to royally bork over your WIndows OS

No, it not a recent addition. It's been there since launch and is only being flagged now by your antivirus so more than likely a false positive.

Powershell.sys does NOT equal to Powershell.exe

The powershell program is an "advanced" command prompt, a program / application that comes built-in on Windows.

Powershell.sys is something different.
.Sys[en.wikipedia.org] are normally used for kernel level programs.
Originally posted by ◬ illumiTriX ◬:
Originally posted by BigCatRob:
People thinking Powershell is spyware is so funny
Literally just type into your taskbar search for Powershell if on windows and you'll see both the ISE and x86 applications
It's used by multiple programs on your computer to automate processes

No, it's not some chinese spyware

No, you can't disable PowerShell unless you want to royally bork over your WIndows OS

No, it not a recent addition. It's been there since launch and is only being flagged now by your antivirus so more than likely a false positive.


powershell can be used by hackers to get around antivirus just wanna let you know...

Ah yes, the hacker wants you, yes specifically YOU the random individual, and your everyday boring gamer information. If somebody really wanted to get at you, they would've done it by now with the extensive amount of applications that communicate with each other.
Hiro Feb 21 @ 7:10am 
Originally posted by ◬ illumiTriX ◬:
powershell can be used by hackers to get around antivirus just wanna let you know...

As Edge can also be used by hackers do get around antivirus...
Either way, you are mistaking "Powershell application" with the "Powershell.sys" driver.
Originally posted by Hiro:
Originally posted by BigCatRob:
People thinking Powershell is spyware is so funny
Literally just type into your taskbar search for Powershell if on windows and you'll see both the ISE and x86 applications
It's used by multiple programs on your computer to automate processes

No, it's not some chinese spyware

No, you can't disable PowerShell unless you want to royally bork over your WIndows OS

No, it not a recent addition. It's been there since launch and is only being flagged now by your antivirus so more than likely a false positive.

Powershell.sys does NOT equal to Powershell.exe

The powershell program is an "advanced" command prompt, a program / application that comes built-in on Windows.

Powershell.sys is something different.
.Sys[en.wikipedia.org] are normally used for kernel level programs.

It's literally a .sys file that's used to interact with Steam and online servers. What were you looking for here?
Hiro Feb 21 @ 7:14am 
Originally posted by BigCatRob:
It's literally a .sys file that's used to interact with Steam and online servers. What were you looking for here?

Programs can use IPC[en.wikipedia.org] to talk with Steam, they do not require a kernel level driver for that.
Bunny Feb 21 @ 7:14am 
Originally posted by Hiro:
Originally posted by ◬ illumiTriX ◬:
powershell can be used by hackers to get around antivirus just wanna let you know...

As Edge can also be used by hackers do get around antivirus...
Either way, you are mistaking "Powershell application" with the "Powershell.sys" driver.

Ok so my avast blocked this but I cant seem to make an exception for it ? cause if its a false alarm and that stuff is important I want it to work lol I tried to make an exception and then verify data but I just blocked it again.
KeV Feb 21 @ 7:16am 
Originally posted by BigCatRob:
Originally posted by Hiro:

Powershell.sys does NOT equal to Powershell.exe

The powershell program is an "advanced" command prompt, a program / application that comes built-in on Windows.

Powershell.sys is something different.
.Sys[en.wikipedia.org] are normally used for kernel level programs.

It's literally a .sys file that's used to interact with Steam and online servers. What were you looking for here?
The blockage of the sys file in question, which (from what ive read here) is being used to communicate between Steam and the servers could also explain the mini stutters that ppl are now experiencing? Is that in the realm of possibility?

Because then the devs should have no issue to implement a hotfix for it if the fault lies in there
Last edited by KeV; Feb 21 @ 7:17am
< >
Showing 1-15 of 102 comments
Per page: 1530 50

Date Posted: Feb 21 @ 3:08am
Posts: 102