publicsuffix / list

The Public Suffix List
https://publicsuffix.org/
Mozilla Public License 2.0
2.08k stars 1.23k forks source link

c.la #2042

Closed wdhdev closed 3 months ago

wdhdev commented 4 months ago

Hi there, I stumbled across c.la in the PSL file. I looked at the entry and there is no submitter information as seen here. I looked up the site in my browser and when you go to http://c.la it shows this: image

In the title bar it says c.la - This Domain Is For Sale !. I just wanted to report this as I believe this is against the PSL terms as well as just in case this is a security risk, I couldn't find a PR for it either, so it must've been added before the PSL moved to GitHub.

groundcat commented 3 months ago

Indeed, this appears to be an abandoned or terminated service. Based on archive.org, it used to be a subdomain registration service around 2008 (see archived page here), but now the domain has been available for sale for some years.

The website http://www.c.la/ is malfunctioning.

According to the archive, the subdomain service used to be operated by a company in France. Translation:

The company www1redirectcla, which provides a domain name service in CLA, Sitepersonet, SUPFR, or WEBCVINFO, has its head office located at: The River, 35440 Dingé, France. It is registered at Rennes RCS under registration number 480401108.

Per WHOIS, the creation date of the domain is 2004-06-11T01:00:00.0Z, which is before it was repurposed, so I assume this domain was sold and transferred instead of let expired. Now, the registrar is West263 International Limited in China, and judging from the information on the "domain for sale" page, the current registrant appears to be in mainland China.

I checked the certificate transparency reports and found no active SSL certificates in use (for certs that allow CT).

A Google search for "site:c.la" shows no active site except for one "c.la - This Domain Is For Sale!" search result.

Based on the above, I guess it is safe to say that this domain is no longer used for the original purpose and should be removed from the PSL.

wdhdev commented 3 months ago

It does seem to have changed hands as you've said, I would say it is for the best to remove it from the PSL to prevent any possible abuse.

I've opened a pull request removing it, #2044.