DNS enhancement catches malware sites by understanding sneaky domain names

MustISO

Lifer
Oct 9, 1999
11,928
12
81
Very nice. Unfortunately the criminals are always working on new ways. I'd personally like to see the process of purchasing a domain more scrutinized. Some of these botnets register thousands of domains to keep from being detected. That just shouldn't be allowed.
 

VirtualLarry

No Lifer
Aug 25, 2001
56,449
10,119
126
Wow, that sounds great. Friend of mine got a popup ad while browsing on linux, and the domain name was something like alert.norton.com.ok-pc-alert.com . It popped up a page that looked kind of like a Norton AV alert, and claimed that you "had to" call their toll-free number, because there was something wrong with your computer.
 

Chiefcrowe

Diamond Member
Sep 15, 2008
5,049
182
116
Completely with you on this one.. registration and probably SSL certificates should have a more rigorous confirmation process to weed out the bots!


Very nice. Unfortunately the criminals are always working on new ways. I'd personally like to see the process of purchasing a domain more scrutinized. Some of these botnets register thousands of domains to keep from being detected. That just shouldn't be allowed.
 

John Connor

Lifer
Nov 30, 2012
22,840
617
121
Been using OpenDNS for about 6 years now. It gets better and better. Everyone should use OpenDNS manually entered in their laptop's WIFI adapter so you don't risk DNS poisoning. I read about that as a warning to people that may be attending Defcon in Vegas and using the hotel's WIFI. LOL
 

seepy83

Platinum Member
Nov 12, 2003
2,132
3
71
IF you only use your system at home on the same router (FIOS in this case) is it sufficient to change the DNS server to OpenDNS on the router only?

That's sufficient until your router has a vulnerability that allows an attacker to change the DNS settings. Same goes for setting the DNS servers on your hosts...it's all good until there is a vulnerability that gets exploited.

Or, until your network (not necessarily your SOHO router, itself), or a host on your home network, is exploited and an attacker can MitM or impersonate your router to poison DNS (or do anything else, for that matter)
 
Last edited:

PliotronX

Diamond Member
Oct 17, 1999
8,883
107
106
Been using OpenDNS for about 6 years now. It gets better and better. Everyone should use OpenDNS manually entered in their laptop's WIFI adapter so you don't risk DNS poisoning. I read about that as a warning to people that may be attending Defcon in Vegas and using the hotel's WIFI. LOL
Same! Their servers tend to have lower latency than Google's and 100% less creep factor. This is definitely icing on the cake :wub:
 

John Connor

Lifer
Nov 30, 2012
22,840
617
121
IF you only use your system at home on the same router (FIOS in this case) is it sufficient to change the DNS server to OpenDNS on the router only? I am running win 7 and Bodhi Linux (ubuntu 14.04 variant). Thanks for any tips or advise. IS this a good procedure to follow if kids may use your system once in a while? https://support.opendns.com/entries/46060260-FamilyShield-Router-Configuration-Instructions


Yes. And if you have a router that is compatible with the third party firmware DD-WRT that would be even better. But you must do it right. Mine is flashed with DD-WRT and I use OpenDNS in the router.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |