Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[FALSE-POSITIVE] #898

Open
thechakmasaju opened this issue Jul 14, 2024 · 8 comments
Open

[FALSE-POSITIVE] #898

thechakmasaju opened this issue Jul 14, 2024 · 8 comments
Assignees
Labels
false positive Should not be listed

Comments

@thechakmasaju
Copy link

Domains or links
https://gontop.app

More Information
How did you discover your web site or domain was listed here?

  1. Website was hacked
  2. Incorrectly marked as Phishing on Phishtank or OpenPhish

These both. I have installed GPL plugin in my woocomerce site which added virus in my site. Now I have removed the folder of that site & created my site newly. But virustotal still showing virus in my site.

Have you requested removal from other sources?
Please include all relevant links to your existing removals / whitelistings.

Additional context
I am writing to address an important concern regarding the URL and files associated with https://gontop.app. Our site is completely free of viruses, malware, or any phishing activities. However, it has come to our attention that several URL-checking sites are incorrectly flagging our site as a potential threat.
This information is categorically false. We have thoroughly checked our site and all associated files, ensuring they are secure and safe for users. We request a re-evaluation to rectify these false positives and reflect the true nature of our site's security.
Thank you for your attention to this matter.

We understand being listed on a Phishing Database like this can be frustrating and embarrassing for many web site owners. The first step is to remain calm. The second step is to rest assured one of our maintainers will address your issue as soon as possible. Please make sure you have provided as much information as possible to help speed up the process.

Send a Pull Request for faster removal
Users who understand github and creating Pull Requests can assist us with faster removals by sending a PR to mitchellkrogza/phishing repository, on the falsepositive.list file

https://github.com/mitchellkrogza/phishing/blob/main/falsepositive.list
Please include the same above information to help speed up the whitelisting process.

@spirillen
Copy link
Contributor

I'm not convinced this domain have solved it's issues...

image

@spirillen
Copy link
Contributor

Logger output
+17 gontop.app 1 get doc https://gontop.app/
+17 behind-the-scene 0,3 get xhr https://[ff00::]/nscl/moz-extension://7f5a4c01-d385-48df-9101-326bb6e1c065/syncMessage?id=e69e2cd70f.9838%2Chttps%3A%2F%2Fgontop.app%2F.well-known%2Fsgcaptcha%2F%3Fr%3D%252F%26sol%3DMjA6MTcyMDk1NzE2ODo0NDhhNzQ1YTpmMDdhODVmYmNlMmQ5YzVhM2QwNDBjZjY3ZDM1ODcwODcxZTZiZWMxY2NjNGI0YmZkMGU1ZTRkNWQ3NmRlZmIyOgEZguU%253D%26s%3D1783%3A1098514&url=https%3A%2F%2Fgontop.app%2F.well-known%2Fsgcaptcha%2F%3Fr%3D%252F%26sol%3DMjA6MTcyMDk1NzE2ODo0NDhhNzQ1YTpmMDdhODVmYmNlMmQ5YzVhM2QwNDBjZjY3ZDM1ODcwODcxZTZiZWMxY2NjNGI0YmZkMGU1ZTRkNWQ3NmRlZmIyOgEZguU%253D%26s%3D1783%3A1098514&top=true&msg=%7B%22id%22%3A%22fetchChildPolicy%22%2C%22url%22%3A%22https%3A%2F%2Fgontop.app%2F.well-known%2Fsgcaptcha%2F%3Fr%3D%252F%26sol%3DMjA6MTcyMDk1NzE2ODo0NDhhNzQ1YTpmMDdhODVmYmNlMmQ5YzVhM2QwNDBjZjY3ZDM1ODcwODcxZTZiZWMxY2NjNGI0YmZkMGU1ZTRkNWQ3NmRlZmIyOgEZguU%253D%26s%3D1783%3A1098514%22%7D
+16 gontop.app 1 get doc https://gontop.app/.well-known/sgcaptcha/?r=%2F&sol=MjA6MTcyMDk1NzE2ODo0NDhhNzQ1YTpmMDdhODVmYmNlMmQ5YzVhM2QwNDBjZjY3ZDM1ODcwODcxZTZiZWMxY2NjNGI0YmZkMGU1ZTRkNWQ3NmRlZmIyOgEZguU%3D&s=1783:1098514
+13 behind-the-scene 0,3 get xhr https://[ff00::]/nscl/moz-extension://7f5a4c01-d385-48df-9101-326bb6e1c065/syncMessage?id=1056b9d181d.05e%2Chttps%3A%2F%2Fgontop.app%2F.well-known%2Fsgcaptcha%2F%3Fr%3D%252F%26y%3Dipr%3A94.177.106.55%3A1720957167.845&url=https%3A%2F%2Fgontop.app%2F.well-known%2Fsgcaptcha%2F%3Fr%3D%252F%26y%3Dipr%3A94.177.106.55%3A1720957167.845&top=true&msg=%7B%22id%22%3A%22fetchChildPolicy%22%2C%22url%22%3A%22https%3A%2F%2Fgontop.app%2F.well-known%2Fsgcaptcha%2F%3Fr%3D%252F%26y%3Dipr%3A94.177.106.55%3A1720957167.845%22%7D
+13 gontop.app 3 get image https://d1rozh26tys225.cloudfront.net/loader.svg
+13 gontop.app 3 get image https://d1rozh26tys225.cloudfront.net/robot-suspicion.svg
+12 gontop.app 1 get doc https://gontop.app/.well-known/sgcaptcha/?r=%2F&y=ipr:94.177.106.55:1720957167.845
+12 behind-the-scene 0,3 get xhr https://[ff00::]/nscl/moz-extension://7f5a4c01-d385-48df-9101-326bb6e1c065/syncMessage?id=29d11657d0.a126%2Chttps%3A%2F%2Fgontop.app%2F&url=https%3A%2F%2Fgontop.app%2F&top=true&msg=%7B%22id%22%3A%22fetchChildPolicy%22%2C%22url%22%3A%22https%3A%2F%2Fgontop.app%2F%22%7D
+0 gontop.app 1 get doc https://gontop.app/

@thechakmasaju
Copy link
Author

thechakmasaju commented Jul 14, 2024 via email

@spirillen
Copy link
Contributor

and is it cleaned for for your fingerprinter? and opened for the public domain to visit? last time you used fingerprinter from cloudflare to prohibit the public internet to access your site and only allow members of the walled garden, which are limiting the number of people who can/will visit your site in the first place and you are loosing costumers.

/.well-known/sgcaptcha/?r=%2F&y=ipr:94.177.106.55:1720957167.845

@thechakmasaju
Copy link
Author

thechakmasaju commented Jul 15, 2024 via email

@spirillen
Copy link
Contributor

spirillen commented Jul 15, 2024

Your domain is still not on the open web and controlled by cloudflare.

image

I (@spirillen) can not help you in https://github.com/mitchellkrogza/phishing/ unless you release the site to the public. As public declared, I no longer accessing the walled garden https://matrix.rocks/notes/9vkszovs0v

GitHub
Central Repository for Adding Domains / Links to the Phishing.Database project - https://github.com/mitchellkrogza/Phishing.Database/ - mitchellkrogza/phishing
Matrix Rocks
Feels god no longer to be slaving for propertarian OS, that Ubuntu have turned into, withheld update for ransom. This gives the meaning of #ransomeware a new twist of meaning.

Yes, this gives me back a good feeling in my stomachs, knowing I'm back on FOSS OS form #Debian, even tho a lot of package are outdated and need personal actions to get up to date, such as the unbound v1.17 with a lot of security issues which isn't addressed and fixed until version 1.20, but that one is still held in the testing (former SID) repo, rather than getting it released.

And this makes me wondering on how they determine which Alpha releases should be force down to the stable repo, such as wayland, that can't recover displey:0 from the sleep state, unless you reboot the system, while stable releases like unbound are withheld. This would make the first time experience of Debian as a buggy and not properly maintained distro, making people running away screaming, only to never come back. Yes, it took me a couple of days to notice the dropdown on the #SDDM login screen, allowing me to switch back to good old stable #x11 window system.

Please Debian-devs, set X11 as default windows engine and leave waylands to the experimental group running on the testing releases. The rest of us have chosen Debian for stability not a endless counts of total brake downs, while actually doing literally nothing...

IF you are using Debian stable, please share your stories.

This said, I've become rather firmly determined that no more packages/apps/programs that gets in touch with the walled Garden/big5/BigTech surveillance network, will be installed on my network anymore, this includes and is not limited to Element (Chat client) using matrix.org network as primary network, this in running over cloudflare.

A few exception would be vsCode and my sponsored IDE's from jetbrains's opensource license.

Have a nice wet/sunny summer depending on your current location... (Can see it looks a tad moist somewhere this summer https://matrix.rocks/notes/9vkrkl6g8z)

#debian #ubuntu #wayland #x11 #internetsecurety #dnsbomb #walledgarden #cloudflare #big5 #bigtech #anime #rain (📎1)

@thechakmasaju
Copy link
Author

thechakmasaju commented Jul 15, 2024 via email

@thechakmasaju
Copy link
Author

thechakmasaju commented Jul 15, 2024 via email

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
false positive Should not be listed
Projects
None yet
Development

No branches or pull requests

4 participants