-
-
Notifications
You must be signed in to change notification settings - Fork 6
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
False Positive | *.exo.io #1027
Comments
Verification Required@lcrt5, thank you for submitting a false positive report! To help us verify your ownership of the affected domain(s), please complete the following steps:
Important Notes
How to Check the TXT Record ?You can verify that the TXT record is properly set using:
Thank you for your cooperation! We will address your issue as soon as possible after verification. The Phishing.Database Project Team. |
TXT record now set for exo.io |
Any update on the case by any chance? cc @mitchellkrogza @funilrys @spirillen @g0d33p3rsec |
Yeah, I'm taking a break, as my own project is re-creating its issues, so I'm rewriting all my scripts, meaning only my matrix script, is back up, and it is not supporting this project; @g0d33p3rsec is in school and doing a lot of homework; @funilrys and @mitchellkrogza ?? but what is |
Thanks @spirillen
There are different subdomains corresponding to the different zones (for example Cheers |
you got whitelisted in https://github.com/Phishing-Database/Phishing 1bec061e752fae2dc84bd612f9b54dd50e06c947 |
Hi @spirillen thanks a lot for the update and the whitelisting. Though, I noticed that these domains still appear as being flagged in VirusTotal. Is there anything else to be done to solve this issue? Cheers |
Standard answer, as per README
If you want more, you'll need to contact VT as we do not PUSH, they PULL |
Strike previous msg.... found these new records in the DB
|
|
I confirm that all these links are now dead and that the files that may have been stored there in the past were taken down. There is no malicious file anymore under these URLs (including the one that still shows an ACTIVE status in the list above). |
What are the subjects of the false-positive (domains, URLs, or IPs)?
Why do you believe this is a false-positive?
These domains appeared in this blocklist a few weeks ago (even though the content had already been taken down weeks before).
Since, the list has been updated and these domains do not appear anymore in Phishing Database (thanks for your reactivity on this!). However, they still do appear to be listed by Phishing Database on Virus Total. Could there be a broken integration between Phishing Database and Virus Total?
Thanks for your help and support on this.
Cheers
How did you discover this false-positive(s)?
VirusTotal
Where did you find this false-positive if not listed above?
Have you requested a review from other sources?
Do you have a screenshot?
The domains mentioned above are not listed on PhishTank or OpenFish.
Screenshot
Additional Information or Context
No response
The text was updated successfully, but these errors were encountered: