Pythunder / maltrail

MIT License
4 stars 1 forks source link

Remove stillnorth.net from blacklist #2

Open phanuel opened 1 year ago

phanuel commented 1 year ago

Hello,

My domain stillnorth.net is listed in your repository in the file "kazy.txt" (committed by @stamparm) and I assume this may be one of the reasons why my domain is being blocked by several antivirus softwares. Let me know what I can do to prove to you that this is not a malicious domain...

Have a nice day Phanuel

stamparm commented 1 year ago

@phanuel sorry for the inconvenience. Your domain name has been generated by the DGA algorithm used by the Kazy malware. Just removed it from maltrail (https://github.com/stamparm/maltrail/commit/a9bb48b0218aea1b8d8daedb5e7c63edd77798ac)

Also, I would like to point that the Kazy malware is to blame here, where all those dummy domain names were automatically blacklisted by lots of AV companies