Skip to content

Commit

Permalink
Update README.md
Browse files Browse the repository at this point in the history
  • Loading branch information
ecstatic-nobel authored Oct 23, 2019
1 parent c7d2917 commit e037abc
Showing 1 changed file with 2 additions and 0 deletions.
2 changes: 2 additions & 0 deletions README.md
Original file line number Diff line number Diff line change
Expand Up @@ -12,6 +12,8 @@ With malware causing havoc across the globe, this browser extension is a PoC for
- Hightlight and open the URL in a new tab
- Not AV detects it, file download is blocked, and the browser is redirected to 127.0.0.1

**NOTE: Out of the box, this will block the majority of Emotet (or other file download) that has a cookie name built with the PHP uniqid function (or something similar) in the Set-Cookie header. This PoC can be strengthened by adding other indicators found in the response (or request) headers to avoid false-positives.**

![Not Anti-Virus](https://raw.githubusercontent.com/ecstatic-nobel/Not-Anti-virus/master/notav.gif)

Support: notav [at] protonmail

0 comments on commit e037abc

Please sign in to comment.