iwan2travel.com
g0d33p3rsec opened this issue · comments
Scott Petty commented
Blacklist domain as
- Wildcard, The domain should be entirely blacklisted
- Subdomain, We should not blacklist the entire domain, only sub-domains
- Both types, category depended, How to Blacklist, depends on category assign per (sub-)domain
Comments
This site is now hosting the kit that was previously at applesforfred[.]com, theaerie[.]ca , nico[.]sa, and ajstelecom[.]com[.]mx.
Domain records
iwan2travel.com|phishing
Hosts specific records, not used by DNS RPZ firewalls
No response
Screenshots
Links to external sources
https://urlscan.io/result/5fac7988-c559-4b51-bca3-c00ecfa5c843/
https://radar.cloudflare.com/scan/482cdb8e-6aea-492d-a2af-d4b41c39c722/
https://radar.cloudflare.com/scan/c0f533bd-0a95-41d4-934d-ddd6a693f48f/
https://radar.cloudflare.com/scan/c2154606-6eb6-46a9-bac9-086ff70adcb1/
https://urlscan.io/result/c7fa2160-54b4-4776-b79d-e4bc799f7abc/
https://urlscan.io/result/86ff1031-bf54-4379-8d93-697c841d1230/
https://urlscan.io/result/e5b6dca7-8950-4985-a7f0-bd72be549367/
https://radar.cloudflare.com/scan/1c693b23-8b3d-4dbb-8800-4af34eca2960/
https://radar.cloudflare.com/scan/696df281-714f-4524-8f06-ef8732a0b504/
https://urlscan.io/result/f8443413-c7bc-46da-998e-fb626eb8a3c4/
https://radar.cloudflare.com/scan/9e48c4fd-3410-4a43-9ede-4b2ba18802e1/
https://radar.cloudflare.com/scan/f7569e83-01cc-4e9c-8560-b98fd8ab54fe/
https://radar.cloudflare.com/scan/180eaf85-5dc0-4a51-b380-c81e5a8a7eb3/
https://radar.cloudflare.com/scan/b690ca5b-929c-495d-a7b1-ac7cf1f5757a/
https://radar.cloudflare.com/scan/1859aa37-c48d-49a6-a774-50f277d00e24/
https://radar.cloudflare.com/scan/b50e4e9c-6fec-4580-bf82-6e603202dcc3/
https://radar.cloudflare.com/scan/61579873-e6b4-46ea-81aa-3fc75f83ca0a/
### logs from uBlock Origin
_No response_
spirillen commented
Thanks a bunch for your contribution