zoonderkins / blahdns

A small hobby ads block dns project with doh, dot, dnscrypt support.
https://blahdns.com
GNU Affero General Public License v3.0
447 stars 26 forks source link

BlahDNS filterlist is outdated and whitelist some domains #133

Closed obeho closed 3 years ago

obeho commented 4 years ago

Hi,

I've seen your post about filterlists, and the blahdns's blacklist {Please update this}.

But what combination of blacklists is used in BlahDNS? You must have some sources, right?

obeho commented 4 years ago

cn.pool.ntp.org from which list @ookangzheng ??

zoonderkins commented 4 years ago

ouo.io whitelisted.

cn.pool.ntp.org is under my custom blocklist on the server. I remember it used to be some attack (kinda), which slows down the entire server.

obeho commented 4 years ago

Yeah, thats because, each device android/windows/linux pings pool server every few minutes, so you will be looking at a lot of queries continuously. 😄

obeho commented 4 years ago

Blocking www.google.com now? @ookangzheng

obeho commented 4 years ago

didnt see #146 ✌️ . I'm curious, which blocklist it came from?

zoonderkins commented 4 years ago

No idea. bcuz of blacklist continue update, when I notice this issue, it became untraceable.

obeho commented 4 years ago

please whitelist trk.mail.ru

zoonderkins commented 4 years ago

trk.mail.ru fixed.

obeho commented 4 years ago

whitelist ghostbin.co please

zoonderkins commented 4 years ago

ghostbin.co Not found in blacklist source, but added into whitelist

danyeet commented 4 years ago

Could you please whitelist 24chasa.bg ?

zoonderkins commented 4 years ago

24chasa.bg Done ~

obeho commented 4 years ago

please whitelist softonic.com

zoonderkins commented 4 years ago

Done ~ softonic.com

obeho commented 4 years ago

www.godaddy.com @ookangzheng why is this still blocked?

I thought it was whitelisted after our discussion.

zoonderkins commented 4 years ago

Whitelisted www.godaddy.com Found in https://github.com/notracking/hosts-blocklists Commit: https://raw.githubusercontent.com/notracking/hosts-blocklists/f9cd3439f43afe339a1f454ee6847ed47649e4ea/dnscrypt-proxy/dnscrypt-proxy.blacklist.txt issue: https://github.com/notracking/hosts-blocklists/issues/461

obeho commented 3 years ago

whitelist fc-resources.fastcompany.com please. I think one of its CNAME is being blocked.

Edit: Thought so, it points to cname.tradepub.com, which is blocked.

obeho commented 3 years ago

please whitelist mailchimp.com 🤦

zoonderkins commented 3 years ago

mailchimp.com fixed and found from source: https://gitlab.com/quidsup/notrack-blocklists/raw/master/notrack-blocklist.txt cname.tradepub.com fixed.

obeho commented 3 years ago

@ookangzheng Do we want to include a blocklist that doesn't have a mechanism to take false positive reports? (Like the above mentioned quidsup/notrack-blocklists)

I think such blocklists should be removed.

zoonderkins commented 3 years ago

Indeed, will remove it.

obeho commented 3 years ago

whitelist leechpremium.link please

eiden2233 commented 3 years ago

Since recent blacklist update, pornhub.com player, menu and search stopped working

zoonderkins commented 3 years ago

Try again

Since recent blacklist update, pornhub.com player, menu and search stopped working

obeho commented 3 years ago

I just checked, I think he meant the .org, anyways the issue is still persisting. I think because of this domain ss.phncdn.com. I tried this domain in the 'Check domain status' in the website, but it seems no domain is working there. Each domain I checked just shows 'Timeout', there seems to be an issue.

obeho commented 3 years ago

Please whitelist twilio.com @ookangzheng

obeho commented 3 years ago

Please add these domains to blacklist @ookangzheng pepodownload.mediatek.com qepodownload.mediatek.com pgepodownload.mediatek.com qgepodownload.mediatek.com

In fact, please add everything (except #porn i.e., from Line #753) from this list to the blacklist.

obeho commented 3 years ago

@ookangzheng ??

zoonderkins commented 3 years ago

I already add mediatek into block list though, qq, xiaomi, oppo, snapchat still takes time to observe, test and gather feedback

obeho commented 3 years ago

firebaseinstallations.googleapis.com if you see no issue blocking this domain, please add it to the blacklist (apparently it creates a unique ID for anytime a Firebase enabled application is installed)

zoonderkins commented 3 years ago

👌 I will try to on Japan server first. firebaseinstallations.googleapis.com will break some app which heavy rely on firebase config, permission, db, etc..

firebaseinstallations.googleapis.com if you see no issue blocking this domain, please add it to the blacklist (apparently it creates a unique ID for anytime a Firebase enabled application is installed)

obeho commented 3 years ago

Cool.

qq, xiaomi, oppo, snapchat still takes time to observe, test and gather feedback

These are being tested on Japan server too?

zoonderkins commented 3 years ago

Usually Xiaomi, Snapchat and others already applies on both regions. But I will exclude few domains which may break the app or bring bad UX for users. For example Xiaomi: account.xiaomi.com Snapchat: snap.com Chinese site: qq.com 360.com sina.cn baidu.com sogou.com m.baidu.com Huawei's cloud: dbankcloud.com grs.dbankcloud.eu grs.dbankcloud.com

zoonderkins commented 3 years ago

I prefer block subdomains instead entire root domain. If that site already compromised or got hacked, then will consider block the entire domain.

obeho commented 3 years ago

both regions

what do you mean?

zoonderkins commented 3 years ago

both regions

what do you mean?

Japan, Singapore, Finland, Germany, Switzerland

zoonderkins commented 3 years ago

👌 I will try to on Japan server first. firebaseinstallations.googleapis.com will break some app which heavy rely on firebase config, permission, db, etc..

firebaseinstallations.googleapis.com if you see no issue blocking this domain, please add it to the blacklist (apparently it creates a unique ID for anytime a Firebase enabled application is installed)

I tested out like mobile app OpenSignal (Speedtest app) wont work without allowing firebaseinstallations.googleapis.com

eiden2233 commented 3 years ago

Please whitelist https://deezer.page.link/

obeho commented 3 years ago

Some explanation/reason would be nice.

obeho commented 3 years ago

@ookangzheng edthoutfre.fun add to blacklist please. category : 'Adware'

obeho commented 3 years ago

Also, could you add this list to the blacklists source list?

zoonderkins commented 3 years ago

edthoutfre.fun done and ABP oisd is the default block list in my server

obeho commented 3 years ago

I'm talking about BlahDNS servers. I couldn't find oisd list in here.

zoonderkins commented 3 years ago

I'm talking about BlahDNS servers. I couldn't find oisd list in here.

I updated the source list

obeho commented 3 years ago

kdnuggets.com whitelist please

obeho commented 3 years ago

Now pornhub.com is blocked. Whitelist please

Now working. I think some list added and dropped one of the necessary domains.

@ookangzheng you added any new blocklists at the resolving server?

obeho commented 3 years ago

www.pornhub.com or its CNAME pornhub.com is blocked. But these two domains are not necessary for normal usage of the website. I suggest you to visit pornhub.org website which is still working fine with all videos being played. If you could elaborate not working for me that would be good.

zoonderkins commented 3 years ago

Www.pornhub.com or pornhub.org shows "refused to connect". Error goes away on other dns resolvers. At least on the sg server

Is this issue still existed?

0450 commented 3 years ago

No its not anymore

What-Zit-Tooya commented 3 years ago

@ookangzheng some domains content.garena.com should not be blocked, because it breaks garena app to work, full link is content.garena.com/gas/game_info/XX.json XX is location game, like TH for Thailand, ID for Indonesia. but there is also ads link like this: content.garena.com/gas/ad_banner/splash_banner_id.json Dunno how to blacklist & whitelist these case.

Probably this work: ||content.garena.com/gas/ad_banner/ @@||content.garena.com/gas/game_info/