Is this a malware domain and how do I tackle?.

JOJ
JOJ Posts: 3  Freshman Member
First Comment

Every day I am getting update in the dashboard that many connections to the malware domain is blocked from my android mobile . I installed a firewall in the first place since I suspected and believed some kind of eavesdropping. I have thrown away the old router and is using now a reputed broadband connection and router from a nationwide ISP. I have premium internet security in all my devices since last 6 months. I have setup auto schedule with tight scan settings but no sort of malicious apps or infections are reported by internet security. But the point is clear right , the firewall is blocking connections to malicious domains. In one case the connection was blocked to <www.duuuuuuuuumy.com>. I don't remember exactly. what is your recommendation in this case?. How do I wipe off the malware activity or the suspicious activity which is happening on a daily basis.

malwaredomain.jpg

Accepted Solution

  • Zyxel_Melen
    Zyxel_Melen Posts: 3,816  Guru Member
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate
    Answer ✓

    Hi @JOJ

    www.gooooooooooooooooogle.com is a domain that used by Samsung, and it is a false alert. We will fix this false. In shorten, you can add this domain to the allowed domain setting. Path: Site-wide > Configure > Security router > Threat management > Custom allowed/blocked domain

    image.png

    Hope this helps.

    Zyxel Melen


All Replies

  • Zyxel_Melen
    Zyxel_Melen Posts: 3,816  Guru Member
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate
    Answer ✓

    Hi @JOJ

    www.gooooooooooooooooogle.com is a domain that used by Samsung, and it is a false alert. We will fix this false. In shorten, you can add this domain to the allowed domain setting. Path: Site-wide > Configure > Security router > Threat management > Custom allowed/blocked domain

    image.png

    Hope this helps.

    Zyxel Melen


  • JOJ
    JOJ Posts: 3  Freshman Member
    First Comment

    OK(this is the same information that I got from the other users). I don't understand why Samsung is using such confusing domain names. Do you have some details on it?. It appears to me that some body is using a malicious domain name which normal public thinks as a genuine attempt to connect to google. I mean we all know that cyber scammers use confusing or similar domain names to trick the end users.