stamparm/maltrail

Bad domains

Closed this issue · 2 comments

Describe the bug
The source https://www.cyberresilience.com/threatonomics/resilience-threat-researchers-identify-new-campaigns-from-scattered-spider/

These domains should not be present: powerdms.com, polaris.me, docusign.net

How To Reproduce
Link: https://github.com/stamparm/maltrail/blob/master/trails/static/malware/0ktapus.txt

Expected behavior
A clear and concise description of what you expected to happen.

Screenshots
If applicable, add screenshots to help explain your problem.

Environment:

  • Device: [e.g. Linux-based device, OPNSense plugin]
  • OS: [Linux, *BSD]
  • Type of Maltrail installation: [e.g. git clone command]
  • Problematic Maltrail component: [e.g. server, sensor, web-interface]
  • Maltrail version: [e.g. 0.59]
  • python-pcapy-ng version: [e.g. 1.0.9]

Additional context
Add any other context about the problem here.

Hello!

Fixed: 916ce06
Whitelisted: 249d61e

Thank you for alerting!

Considering as resolved.