this post was submitted on 27 Aug 2023
11 points (60.0% liked)

Piracy: ꜱᴀɪʟ ᴛʜᴇ ʜɪɢʜ ꜱᴇᴀꜱ

54803 readers
429 users here now

⚓ Dedicated to the discussion of digital piracy, including ethical problems and legal advancements.

Rules • Full Version

1. Posts must be related to the discussion of digital piracy

2. Don't request invites, trade, sell, or self-promote

3. Don't request or link to specific pirated titles, including DMs

4. Don't submit low-quality posts, be entitled, or harass others



Loot, Pillage, & Plunder

📜 c/Piracy Wiki (Community Edition):


💰 Please help cover server costs.

Ko-Fi Liberapay
Ko-fi Liberapay

founded 2 years ago
MODERATORS
 

Windows defender showed it as being a trojan- it appeared as a popup with a sports betting page popup anytime I opened my browser. I quarantined it and took care of it and did a few different scans with windows defender and malware bytes, all of which came back negative after the initial scan.

The sites I visited were:

sportssurge (v2)

steameast (v2)

freesports

susflix

themoviearchive

I went through and scanned all of these websites with virustotal this morning, and it came back with a detection on susflix for phishing. Susflix was listed as a goated site in the FMHY wiki, so maybe I should reach out and let them know about it just in case?

I assume this is the site that installed it as I have used every site other than that on both PC's and have had no problems whatsoever on my other one. Either that, or one of the links that was given by sportsurge had a virus in the stream or otherwise somewhere else in the link- either way, I didn't download anything so I got it straight from the browser.

Just thought I'd let y'all know to keep your guard up! Happy sailing!

edit: As much as I appreciate a good bit of sarcasm, I was indeed using uBlock origin as well as Brave's built in browser adblocker. Both are always turned on. Never had any sort of issues before now and I never download anything from non recommended sites or click on anything sketchy on the page (which nothing sketchy usually pops up with the adblockers running). Maybe some pages with streaming can still infect you with something even if you have adblock?And yes, I realize susflix is a weird sounding name for a site, but it seemed pretty nice and was listed as one of the few options to stream movies in 4k on the FMHY wiki. It was also a favorite according to the FMHY guide, so I figured it was safe. Guess I won't trust as much from that site anymore

top 19 comments
sorted by: hot top controversial new old
[–] [email protected] 31 points 1 year ago (1 children)

noted, don’t use a website that calls itself sus

[–] [email protected] 4 points 1 year ago (1 children)

as it were, I wouldn't have, but it was in the FMHY wiki as a starred site, so I figured it was trusted

[–] [email protected] -1 points 1 year ago (1 children)

Never trust anything that's usually paid?

[–] [email protected] 1 points 1 year ago

it wasn't actually netflix, it's literally a site like Fmovies but with the name susflix??

[–] [email protected] 20 points 1 year ago (2 children)

You never visit this kind of sites without a minimum of an ad blocker installed. My advice :

  1. uBlock Origin with the recommended filters installed > https://github.com/yokoffing/filterlists
  2. A Userscript Managers (I use Tampermonkey) with an anti ad-block killers scripts.
[–] [email protected] 8 points 1 year ago (1 children)

Instead of tempermonkey i use violentmonkey it's open source and does the same thing.

[–] [email protected] 4 points 1 year ago

violentmonkey

It's still in beta, maybe will give it a try when a stable release is out.

[–] [email protected] 5 points 1 year ago (1 children)

I presently have both uBlockorigin and Brave's native adblockers at work, so not sure how it slipped through there. Definitely gonna look at the userscript manager though

[–] [email protected] 8 points 1 year ago

dont do that if you are gonna play to use ublock origin stick to ublock origin as braves built in adblock can interfere with ublock origin which can make sites slower to load

[–] [email protected] 15 points 1 year ago (1 children)

I didn't get malware yesterday, here are the sites I visited:

getfirefox.com

[–] [email protected] 4 points 1 year ago (1 children)
[–] [email protected] 4 points 1 year ago (1 children)

That's interesting. Less than one minute after posting this, you said you used Brave.

[–] [email protected] 1 points 1 year ago

indeed. I use both. I happen to have brave AND firefox on my laptop, as I've been making the transition to firefox the last few months. I'm entirely on firefox on my desktop, but I mainly use brave on my laptop. I used it to stream the aforementioned things on Saturday

[–] [email protected] 8 points 1 year ago (1 children)

This was a popup in browser only? Closing browser closed popup?

[–] [email protected] 2 points 1 year ago

so the way it worked was that it would only open the popup when the browser was opened and it would open it in a separate window. I could close it out but upon restarting the browser the popup would come back up.

After this I performed a scan with windows defender, which found and quarantined two things it labeled as trojans, and then with malware bytes, which found a couple of other bits of malware that I can't remember how it was labeled. Seems like it's all cleaned up now

[–] [email protected] 3 points 1 year ago* (last edited 1 year ago) (1 children)

What type of media were you pirating?

[–] [email protected] 2 points 1 year ago

movie and tv streaming and sports. I wonder if it wasn't one of the sports sites as it was a sports betting pop up, but the susflix was the only site that seemed to have anything bad according to the virustotal site.

[–] [email protected] 0 points 1 year ago (1 children)

sickomogusflix should have seen that coming ngl.

[–] [email protected] 1 points 1 year ago

probably but it was on the FMHY wiki with a star, so idk. Kinda weird that one of the best and most trusted pirated resources would have a malware site listed as one of the best options