Author Topic: Conflicting reports...  (Read 975 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33931
  • malware fighter
Conflicting reports...
« on: June 17, 2023, 10:07:25 AM »
Here the domain IP is a 100% flagged: https://www.abuseipdb.com/check/95.214.27.232
and here it has a 0% fraud score: https://scamalytics.com/ip/isp/des-capital-b-v

So we cannot trust some sources. Vuln. on domain -e.g.  CVE-2019-6109, 6110, 6111 - 2018-15919, 15473, 15778 - 2021 -41617, 36388.
See: https://www.shodan.io/host/185.28.39.9

polonus
« Last Edit: June 17, 2023, 02:36:39 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89336
  • No support PMs thanks
Re: Conflicting reports...
« Reply #1 on: June 17, 2023, 11:23:02 AM »
Interesting, uMatrix was actually blocking the abuseipdb links cloudflare security check, only when allowed did it move on to the site :)
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.5.6116 (build 24.5.9153.762) UI 1.0.808/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33931
  • malware fighter
Re: Conflicting reports...
« Reply #2 on: June 17, 2023, 01:23:54 PM »
Hi DavidR,

Could be different IPs flagged - but shodan gives a full list of abusable vulnerabilities at -des.capital.
More conflicts as this website domain seems for sale: blackhat dot directory

Trust comes cheap these days.

pol
« Last Edit: June 17, 2023, 03:31:04 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89336
  • No support PMs thanks
Re: Conflicting reports...
« Reply #3 on: June 17, 2023, 05:06:59 PM »
Well uMatrix, can be strict on what 3rd party stuff it allows (without user input), which is fine by me. 

This one was blocking the Frame content, this was the cloudflare security check, ensuring my connection was secure.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.5.6116 (build 24.5.9153.762) UI 1.0.808/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security