LandzDown Forum

Security => Security Software Programs => Topic started by: pastywhitegurl on August 22, 2018, 09:12:27 PM

Title: MalwareBytes is flagging a site as Riskware
Post by: pastywhitegurl on August 22, 2018, 09:12:27 PM
i.cubeupload.com
MBAM is blocking this as a Riskware site.
Does anyone know if it is safe to make a webexclusion for that address?  It seems to be a free image host, but not one I am familiar with.
Title: Re: MalwareBytes is flagging a site as Riskware
Post by: winchester73 on August 22, 2018, 09:41:28 PM
https://forums.malwarebytes.com/topic/233020-icubeuploadcom/

Your computer, your choice. I’m curious, though, why you would entertain making a web exclusion for any site you weren’t familiar with.
Title: Re: MalwareBytes is flagging a site as Riskware
Post by: satrow on August 22, 2018, 10:25:55 PM
hpHosts, part of the Malwarebytes group, have it classified as EMD, extremely high risk of malware: https://hosts-file.net/default.asp?s=i.cubeupload.com (might take some time to populate). I see other sites listing it as having malware recently as well.

I see comments around that it 'died' as an image host in 2015, perhaps it's been resuscitated by some low life wanting to infect unwary visitors.

 
Title: Re: MalwareBytes is flagging a site as Riskware
Post by: pastywhitegurl on August 22, 2018, 10:56:10 PM
@Winchester,
I got the warning on a site that was offering a forum tool I was interested in, and is recommended on the forum's software support board.    The site offering the tool apparently uses it as an image host, and claims it is safe.  I'm suspicious, so I thought I'd ask here.
MBAM is protecting me from it at the moment.
Title: Re: MalwareBytes is flagging a site as Riskware
Post by: Paddy on August 23, 2018, 09:45:54 AM
https://blog.cubeupload.com/2017/10/malwarebytes-blocking/

Paddy... :o
Title: Re: MalwareBytes is flagging a site as Riskware
Post by: Pete! on August 23, 2018, 11:20:39 AM
It's not just Malwarebytes.
McAfee is blocking it as well.
Title: Re: MalwareBytes is flagging a site as Riskware
Post by: Aaron Hulett on August 23, 2018, 02:59:43 PM
Can't wait for when OneDrive, Dropbox, Google Drive, ... are blocked.

Could also argue that the detection engine and definitions should be able to catch malware regardless of download point, soooooooo...

But there is a balance for blocking known malware domains and blocking general services that are being abused.

If the goal is to get CubeUpload to monitor for malware on its service, I suppose this is one way to push for it to happen.