From 94c981c878ce6d725806a09da227593de2a34a00 Mon Sep 17 00:00:00 2001 From: Imre Kristoffer Eilertsen Date: Fri, 18 Dec 2020 02:55:12 +0100 Subject: [PATCH] Update Dandelion Sprout's Anti-Malware List.txt --- Dandelion Sprout's Anti-Malware List.txt | 11 ++++++----- 1 file changed, 6 insertions(+), 5 deletions(-) diff --git a/Dandelion Sprout's Anti-Malware List.txt b/Dandelion Sprout's Anti-Malware List.txt index fc541e901..9b7d04dc1 100644 --- a/Dandelion Sprout's Anti-Malware List.txt +++ b/Dandelion Sprout's Anti-Malware List.txt @@ -1,6 +1,6 @@ [Adblock Plus 3.4] ! Title: 💊 Dandelion Sprout's Anti-Malware List -! Version: 16December2020v1-Beta +! Version: 18December2020v1-Beta ! Expires: 5 days ! Description: Most anti-malware lists are pretty big and can cover a 5- or 6-digit amount of specific domains. But my list hereby claims to remove more than 25% of all known malware sites with just a 2-digit amount of entries. This is mostly done by blocking top-level domains that have become devastatingly abused by spammers, usually because they allowed for free and uncontrolled domain registrations. There's also additional categories that cover unusual malware and phishing domains that very few other lists seem to cover. ! For other security-specific lists I've made, check out https://github.com/DandelionSprout/adfilt/tree/master/Special%20security%20lists @@ -395,6 +395,7 @@ toorgle.net##.join ||hitnslab.xyz^ ||lavrov.in^ ||fe18.ru^ +||1x1.cz^ !#endif ! ——— Zero-width spaces/hyphens in lookalike domains ——— @@ -415,7 +416,8 @@ toorgle.net##.join ||rgithub.com^ ! ——— Usually used by various groups who buy old domains and display illicit ads on them ——— -://ww5.$doc +://ww4.$doc +://ww5.$doc,domain=~ww5.msu.ac.zw ://ww6.$doc,domain=~ww6.generali.pt ://ww7.$doc,domain=~ww7.be|~ww7.readsnk.com ://ww8.$doc,domain=~ww8.co|~ww8.ikea.com|~ww8.tiki.ne.jp|~ww8.erovoice.us|~ww8.anyanime.com|~ww8.bakushpal.az|~ww8.tokyoghoulre.com @@ -425,7 +427,7 @@ toorgle.net##.join ://ww12.$doc ://ww13.$doc ://ww14.$doc -://ww15.$doc +://ww15.$doc,domain=~ww15.nl ://ww16.$doc ://ww17.$doc ://ww18.$doc @@ -464,8 +466,7 @@ toorgle.net##.join ! ——— Temp hotfix for https://github.com/AdguardTeam/AdGuardHome/issues/1835 ——— /\\/$doc -@@/_udp\.\\/ -@@/_udp\..*\\/ +@@/_udp\.(.*)?\\/ ! Oddly enough, there seems to be no need to couple it with "@@/:\\/", since web browsers convert Windows filenames from backwards to forwards slashes. ! ——— User-submitted entries ———