Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

False Positive | https://flyairprestige.com/ #994

Open
gdwss opened this issue Jan 7, 2025 · 3 comments
Open

False Positive | https://flyairprestige.com/ #994

gdwss opened this issue Jan 7, 2025 · 3 comments
Assignees
Labels
false positive Should not be listed WIP

Comments

@gdwss
Copy link

gdwss commented Jan 7, 2025

What are the subjects of the false-positive (domains, URLs, or IPs)?

https://flyairprestige.com/
https://flyairprestige.com/index.php/en/

Why do you believe this is a false-positive?

I believe this is a false-positive because...
Site is all clean

How did you discover this false-positive(s)?

VirusTotal

Where did you find this false-positive if not listed above?

I discovered this false-positive by...
manually cleaning the site of its malware

Have you requested a review from other sources?

I have requested a review from...
https://www.virustotal.com/gui/url/f884ee1dc6afcb3c9a60a10cbec5450cce43f3438b3afe28e99fb820aef08489

Do you have a screenshot?

Screenshot

Additional Information or Context

I have also noticed that...

@spirillen
Copy link
Contributor

First of, I can see you have a habit of getting attacked by phishing sites, this make me wondering if you are capable to manage a secure web environment

Verdict

Your previously whitelisted domains WILL be removed, as insecure domain management

As your account solely have been used to request removals from https://github.com/Phishing-Database/ the faith in the account are dropping and we most ask you to contact us at https://www.mypdns.org/contact using the same email address as you have use at secureserver.net, alternative a corporate mail for the underlying domains in question, for witch we can verify online ie through webarchives.

The external board, are used, in lack of any public information to contact you.
You will be requested to perform a task that should only be durable by a legal admin.

Disclaimer for mypdns.org

My Privacy DNS (https://www.mypdns.org/ & https://kb.mypdns.org/) is a privacy aware organization. that offer the best privacy possible. This means we do not track you in any way, shape or form.

Once this issue are solved, we will on your request, only. remove your account and any related data.

Tip

Do your self the favor of blacklisting resources.jetbrains.com and jetbrains.com while visiting the domain https://kb.mypdns.org/, these domain are not used tracking purpose, they are so called "News"(spam) related within the portal.

160.153.0.166 166.0.153.160.host.secureserver.net.
160.153.0.69 69.0.153.160.in-addr.arpa.      3600    IN      PTR     69.0.153.160.host.secureserver.net.
72.167.59.89 89.59.167.72.in-addr.arpa.      3600    IN      PTR     89.59.167.72.host.secureserver.net.

Team note

This issue is put on hold for security measures.

@spirillen spirillen moved this from 👀 In review to 🚫 Blocked / Waiting in Phishing Database Backlog Jan 7, 2025
@funilrys funilrys added the false positive Should not be listed label Jan 7, 2025
@phishing-database-bot
Copy link
Member

Verification Required

@gdwss, thank you for submitting a false positive report! To help us verify your ownership of the affected domain(s), please complete the following steps:

  1. Set a DNS TXT record for the domain(s) listed in this issue with the following details:

    • Record Name: _phishingdb
    • Record Value: antiphish-40b9ac4613ffcea948adfa8817d172bf42e65b5c

    Your Verification ID: antiphish-40b9ac4613ffcea948adfa8817d172bf42e65b5c

  2. Wait for DNS propagation (this may take a few minutes to a few hours).

  3. Reply to this issue once the TXT record has been set.

Important Notes

  • Verification does not guarantee whitelisting. The Phishing.Database team will review your report after verifying ownership, but the decision to whitelist depends on further investigation and analysis.
  • If the record cannot be set or you need alternative methods of verification, please contact us at [email protected] - preferably from the domain's official email address.

How to Check the TXT Record ?

You can verify that the TXT record is properly set using:

Thank you for your cooperation! We will address your issue as soon as possible after verification.

The Phishing.Database Project Team.

@funilrys
Copy link
Contributor

funilrys commented Jan 7, 2025

@gdwss, please comply with the comment above.

I appreciate your patience.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
false positive Should not be listed WIP
Projects
Status: 🚫 Blocked / Waiting
Development

No branches or pull requests

6 participants