starius/onion2web

antivirus companies consider the service to be a botnet

Opened this issue · 3 comments

Some botnet owners seem to use onion gates like onion.gq to connect infected machines to the master of the botnet which is located in onion. Some other people report this:

That is why my server serving service onion.gq was suspended again yesterday.

Does somebody know abuse resistant ISP to host it?

Another approach I want to try is adding JavaScript puzzle on confirmation page to make it harder to connect from non-browser HTTP agents (like botnet agents).

Created new VPS today.

  1. Why not add an option to deny non-GET request, and use it? If your public service allow POST request, bad people will use your service for C&C server(malware).
  2. For VPS candidate: https://trac.torproject.org/projects/tor/wiki/doc/GoodBadISPs

I want to try is adding JavaScript puzzle

And please don't do it. If you're using Tor, you'll notice many Cloudflare websites show captcha instead of content. And many people who use Tor didn't enable Javascript. Take a look at "onion.link". They serve .onion webpage content without Ads nor Captcha.