A mediocre blogpost from March. Read with embarrasment.
The home page of MinecraftInside.
Hollow is a Minecraft mod for 1.20.1 which adds features that Mojang has promised. Find out more on the Modrinth page.
When the lead developer of Hollow, CallMeEcho found out that Hollow was being hosted on a Russian mod reuploader, named MinecraftInside, they instantly took action and contacted them.
Echo used the site's built-in reporting feature, so I could not get hold of the original request.
A couple days later, the page was gone. Echo and I thought they had won. Then I started digging. I found a Russian blog post with the mod's name on Google, and started us down the rabbit hole.
The blog post which featured a suspicious download link to Hollow, auto-translated from Russian.
When we visited the links, we were met with many URL shorteners. This is when we decided to switch to malware analysing software. Neither of us wanted to risk everything on this.
When I downloaded the file, I got a ZIP file encompassing two (most likely fake or dangerous) EXE installers. One for a VPN named Adguard, and another for an unbranded 'Download Assistant'.
Obviously, you shouldn't be using mod repost services. They both steal from passionate creators and are likely to harm your computer.
Thanks for reading.