Merge pull request #298 from iam-py-test/master

Submission to the antimalware list
This commit is contained in:
Imre Kristoffer Eilertsen
2021-10-10 03:26:42 +02:00
committed by GitHub
+105 -1
View File
@@ -1,6 +1,6 @@
[Adblock Plus 3.6]
! Title: 💊 Dandelion Sprout's Anti-Malware List
! Version: 07October2021v2-Beta
! Version: 09October2021v1-Beta
! Expires: 5 days
! Description: This list goes the extra kilometer to prevent more malware than other mainstream anti-malware lists. It blocks heavily abused top-level domains (and even search engine results for them), blocks domains used in malware redirection trains and in domain parking schemes, blocks sponsored Windows PUP nags on PC guide articles, uses mass blocking of domains belonging to bad IPs, and has many other subcategories that give it a solid advantage over similar lists out there.
! For other security-specific lists I've made, check out https://github.com/DandelionSprout/adfilt/tree/master/Special%20security%20lists
@@ -1237,6 +1237,110 @@ zombooru.com##a[href="http://www.hard55.com"]
! https://github.com/DandelionSprout/adfilt/commit/f7f114945c83b339be5cdd848e229680d9918abb#commitcomment-57642875
||23.94.26.138^$all
||ispco.shop^$all
! https://github.com/DandelionSprout/adfilt/pull/298
! https://www.virustotal.com/gui/file/ac5a95221b895545eb04cfea29693288d7b432ad313f6bfc9db2ddf86f085a63/community
||205.185.126.200^$all
||medpro-131.getfoxyproxy.org^$doc
! https://www.virustotal.com/gui/url/337dd5e5c53558dc7d6c8910b5ebe14a7390a78e13830b367363465b85ca8dd6?nocache=1
||trytogoi.xyz^$all
! https://www.virustotal.com/gui/url/0f8791a82ee4d2c229ccbe3328092cdb2135027439778c280f1d2d3b0fdba1bb
||apple-technicalsupport-icloud.com^$all
! https://www.virustotal.com/gui/file/3ef65ce27d39b037d75bdc16b197e04f3b391f76c2da5f2f755e2ded38bb9078/community
||185.243.56.167^$all
! https://www.virustotal.com/gui/file/12013662c71da69de977c04cd7021f13a70cf7bed4ca6c82acbc100464d4b0ef/community
||123.10.224.135^$all
||59.47.187.147^$all
||39.68.172.210^$all
||122.192.177.176^$all
||112.27.124.108^$all
||123.110.176.246^$all
||219.155.105.98^$all
||171.35.161.209^$all
||60.16.255.36^$all
||112.30.4.52^$all
||182.121.191.201^$all
||121.61.48.170^$all
||39.81.68.45^$all
||27.222.220.164^$all
||113.233.215.135^$all
||151.77.100.133^$all
||125.120.13.184^$all
||120.12.138.133^$all
||27.194.115.185^$all
||104.128.199.228^$all
||183.92.123.145^$all
||110.89.8.126^$all
||125.43.211.184^$all
||1.0.218.230^$all
||221.208.4.56^$all
||60.13.60.19^$all
||171.37.29.87^$all
||124.91.237.188^$all
||115.56.137.49^$all
||115.52.240.69^$all
||112.252.132.185^$all
||117.198.240.157^$all
||42.53.240.249^$all
||116.179.138.68^$all
||110.241.119.159^$all
||115.56.31.133^$all
||103.19.128.222^$all
||202.12.80.74^$all
||61.52.8.62^$all
||182.122.252.69^$all
||219.155.26.50^$all
||120.4.141.185^$all
||119.102.7.115^$all
||72.51.127.213^$all
||111.224.199.91^$all
||119.250.236.122^$all
||112.30.110.58^$all
! https://www.virustotal.com/gui/file/715eef1fb3bbf84ade848d97d4ec05d380cf8595298b51af134385de70be9d08/community
||pcae.de^$doc
! https://www.virustotal.com/gui/file/4293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7/community
||117.196.49.21^$all
||115.55.54.234^$all
||115.52.17.123^$all
||182.59.69.21^$all
! https://www.virustotal.com/gui/file/3db0e385eb53a32d61a5a35908a99317868b571e4cf7079db67fd68604da662c/community
||chip-secured-download.de^$all
! https://www.virustotal.com/gui/url/5b1dc9b2ec70e28b5f6cbb282a598a1b2ecd4df2aebb66953ca9194fa1c9c4fb
! Domains which resolve to this (already blocked) IP - for users of HOSTs/Domains/uBlock Origin
||ujgjyjltunl.com^$all
||pvyvglaf.com^$all
||ecsfunhget.com^$all
||xemfrctctdnlhe.com^$all
||tgxcmcoikpgek.com^$all
||lghdoxzulv.com^$all
||knxntpsd.com^$all
||nctylivpwhpby.com^$all
||phhitgjxsit.com^$all
! https://www.virustotal.com/gui/url/b2936e74f35940d2f09cabf4e089a0d655e62a5fc08ad32e1fae79a62683683f?nocache=1
||saimission.org^$all
! https://www.virustotal.com/gui/url/4c2c3cf2e4f5b9ac9765eb9c58f2756d8f0f4632ec707107afe3c111f4749025?nocache=1
||grub-wa-saya.duckdns.org^$all
! https://www.virustotal.com/gui/file/a6e89d2bb1c2da1d852fb8e248f39cf7b3d4b0ea05a8d8f343d1b8e74d271d43/relations
||driversupport.com^$doc
! Copied over from URLHaus
||thehotelshowdev.bitkit.dk^$all
! Domains related to the above
||big5constructnigeria-staging.bitkit.dk^$all
||big5-nigeria.bitkit.dk^$all
||bromic-staging.bitkit.dk^$all
! A PUP
||mycleanpc.com^$doc
! Related domains owned by the same company and used for payment (the first is for 'tech support' scams, the second for their 'ID protection')
||ustechsupport.com^$doc
||mycleanid.com^$doc
! The main website for the MyCleanPC company
||realdefen.se^$doc
! Vermilion Strike
! https://www.virustotal.com/gui/file/294b8db1f2702b60fb2e42fdc50c2cee6a5046112da9a5703a548a4fa50477bc/relations
||160.202.163.100^$all
! https://www.virustotal.com/gui/ip-address/160.202.163.100/relations
||microsoftkernel.com^$all
||hksupd.com^$all
||microsofthk.com^$all
! ——— Standard malware that I stumbled upon on my own ———
! http://www.toorgle.net/results.php?q=fetishkitsch&security=666