GameOverlayUI.exe contains a Trojan
Hello, few days back my malwarebytes updated so i got free premium for 14 days and now it detecting that GameOverlayUI.exe is accessing an "infected web resource" when i start games, i already reinstalled steam so i have no problems now but what this virus could do ? anybody knows ?
here are screens of detection

http://imgur.com/a/4p1GrnJ
Zuletzt bearbeitet von GeneralZero; 6. Dez. 2019 um 17:38
< >
Beiträge 1619 von 19
Ursprünglich geschrieben von christmaS:
Ursprünglich geschrieben von CORBINLORD:
NO...he needs to check his stuff, NOW
It's a false positive. GameOverlay.exe is part of Steam.
Something is causing his system to pick it up. DO NOT make an exemption. You are a fool to do this for something that is NEVER FLAGGED
There are viruses that will take over software to manipulate you into deleting things from the system that are keeping it secure. You don't know much about viruses, do you?
Next it's gonna tell him to delete registry entries that keep the system stable.
You got something on your computer mate...Do not make the exception and clean install that stuff and scan....from safe mode if possible.
After you fresh instal a legit updated version of malwarebytes, run safe mode with NO INTERNET CONNECTION...UNPLUG YOUR MODEM and run a full scan.
Zuletzt bearbeitet von CORBINLORD; 7. Dez. 2019 um 15:25
If he's running the currently-free trial version of malwarebytes it may have an out of date or incorrect list of viruses known.

That .exe is not now nor has it ever been a virus.


(editing)

Ah I see what is being talked about now, thanks Satoru and corbin - it's mistakenly deciding that whatever is going wrong, it's trying to address a symptom, not the actual issue.

I agree now, doing a deep scan and isolation is a good idea OP.
Zuletzt bearbeitet von Zekiran; 7. Dez. 2019 um 17:20
Satoru 7. Dez. 2019 um 16:47 
Your system has a trojan

The trojan is scouring any open browsers and attempting to hijack them to send you to suspicious websites

Steam is functionally a browser. So the trojan you have is blindly hijacking it to redirect to malware sites

Your computer is infected with malware. Clean it. Steam is not the problem. Its simply how the malware is trying to communicate.
So not fixed but now with same IP(with random ports) it showing when im going to server browser in ARK or in steam server browser with filter to ARK, i found server with that IP too but port is different. But why its not showing in GameOverlay anymore when i start games, thats weird for me.
< >
Beiträge 1619 von 19
Pro Seite: 1530 50

Geschrieben am: 6. Dez. 2019 um 17:11
Beiträge: 19