uBlockOrigin / uAssets

Resources for uBlock Origin, uMatrix: static filter lists, ready-to-use rulesets, etc.
GNU General Public License v3.0
4.16k stars 772 forks source link

ets2.gr: badware #20400

Closed ghost closed 1 year ago

ghost commented 1 year ago

Prerequisites

URL(s) where the issue occurs.

https://ets2.gr/

Description

According to VirusTotal[1] and ThreatFox[2], this website is confirmed as malicious, serves as a malware payload delivery host and the domain is used by GOOTLOADER. It is actively being blocked by custom filters like OISD.nl, but not by uBlock's default filters.

Other extensions used

none

Screenshot(s)

Screenshot(s)

Configuration

Details ```yaml ```
gorhill commented 1 year ago

I don't see the site listed in ThreatFox's hosts file, suggesting it's no longer an issue? It says "Last seen: 2023-08-25".

ghost commented 1 year ago

Although I am not a professional analyst, the following second opinion scanners indicate that the website is still malicious.

Results #1 Results #2