Ultimate-Hosts-Blacklist / whitelist

The whitelist of the Ultimate Hosts Blacklist project, infrastructure and beyond.
MIT License
50 stars 13 forks source link

hairbodysoul.ca #114

Closed ghost closed 4 years ago

ghost commented 4 years ago

@sjjgd commented on Feb 26, 2020, 10:08 PM UTC:

false positive https://hairbodysoul.ca blacklist removal request

This issue was moved by funilrys from mitchellkrogza/Ultimate.Hosts.Blacklist#544.

ghost commented 4 years ago

@dnmTX commented on Feb 27, 2020, 2:57 AM UTC:

funilrys when you have time,move it to US so i can whitelist it.It's indeed false-positive(it's a website of hair salon and spa 😄) and it comes from DShield.org as suspicious 🤔. Thank you 👍

smed79 commented 4 years ago

The site was hosting malicious code at

http:// hairbodysoul.ca/installation1/template/images/virginmedia1.html

https://www.virustotal.com/gui/url/699d7d283f7d4f45606dee1980e0fe1705bbcff12ba3afe1bf6e57c7df28d37f/detection

dnmTX commented 4 years ago

@smed79 thanks for double checking this. So what do you think,is it better to remove it from the whitelist just to be on the safe side cause i just checked with VirusTotal and it shows the last scan was 7 months ago and there were still some malicious URL's? VirusTotal

smed79 commented 4 years ago

I still have a doubt about the safety of the site.

I trust the anti-virus rather than a user who took the time to register on github just to say "blacklist removal request" without providing any details.

@sjjgd If you think it is a false positive, request a removal by sending an email to

info @ dshield.org
newvirus @ kaspersky.com
malwaresubmit @ avlab.comodo.com 
dnmTX commented 4 years ago

@smed79 my thoughts exactly,i'll remove it from the whitelist. Thanks for double checking it and the help 👍

@sjjgd whatever @smed79 advised above ☝️ plus if you are frequent visitor of that website just whitelist it on your end as it is too questionable to leave our users expose to some malicious code.

funilrys commented 4 years ago

Nicely handled @smed79 @dnmTX.

Let me add that if you need a whitelisting tool, we have a universal one: