Windows 10: Domain has been flagged as malicious

Discus and support Domain has been flagged as malicious in AntiVirus, Firewalls and System Security to solve the problem; The domain central-compliance.com was falsely reported by Microsoft in regards to being a phishing attack. These domains belong to a SaaS platform,... Discussion in 'AntiVirus, Firewalls and System Security' started by Rudi Schenck, Aug 2, 2019.

  1. Domain has been flagged as malicious


    The domain central-compliance.com was falsely reported by Microsoft in regards to being a phishing attack. These domains belong to a SaaS platform, PhishingBox. PhishingBox provides tools to generate simulated phishing campaigns for authorized clientele. We do not collect any personal information that is submitted in these testing campaigns performed by our clients. There are templates/pages that will have input fields to simulate a would-be phishing attack, but that data does not get stored or used in anyway.

    These domains are part of many dynamic templates that are generated daily for our clients to run their internal auditing. PhishingBox provided to clients who have the authorization to audit legitimate businesses and employees of that business. Our system is an education tool used to help fight phishing attacks.

    Please let us know what information we need to provide to get our domains/ip addresses whitelisted through Microsoft.

    :)
     
    Rudi Schenck, Aug 2, 2019
    #1
  2. changari Win User

    Raising the windows domain and forest issues?


    hi,

    I run a domain that was all 2003 r2 servers. I recently upgraded all my domain controllers to windows 2012 r2.
    That went off without any problems.. Our trust relationships had no issues also.

    My first step was to raise the Domain and Forest levels past 2003 to 2008. This went off without a hitch.
    These are the features for raising the levels to 2008:

    • Features and benefits include all default Active Directory features, all features from the Windows Server 2003 domain functional level, plus:
    • Read-Only Domain Controllers – Allows implementation of domain controllers that only host read-only copy of NTDS database.
    • Advanced Encryption Services – (AES 128 and 256) support for the Kerberos protocol.
    • Distributed File System Replication (DFSR) – Allows SYSVOL to replicate using DFSR instead of older File Replication Service (FRS). It provides more robust and detailed replication of SYSVOL contents.

    Forest Level Windows Server 2008

    • Features and benefits include all of the features that are available at the Windows Server 2003 forest functional level, but no additional features. All domains that are subsequently added to the forest will operate at the Windows Server 2008 domain functional level by default.


    My next step is to raise the domain and forest to 2008 r2, then 2012, and finally 2012 r2. I have been trying to find out exactly what I could expect from raising the Domain and Forest for each step.

    The step involving 2008 r2 seems relatively a non issue. But getting the couple of new features seem very nice

    Domain Level Windows Server 2008 R2

    • All default Active Directory features, all features from the Windows Server 2008 domain functional level, plus 2 new features

    Forest Level Windows Server 2008 R2

    • All of the features that are available at the Windows Server 2003 forest functional level, plus the following features:


    • Active Directory Recycle Bin, which provides the ability to restore deleted objects in their entirety while AD DS is running. <== New Feature very cool
    • All domains subsequently added to the forest will operate at the Windows Server 2008 R2 domain functional level by default.

    Here is my big concerns for the next raising of domain and forest to 2012.

    Forest Level Windows Server 2012:

    • All of the features that are available at the Windows Server 2008 R2 forest functional level, but no additional features.
    • All domains subsequently added to the forest will operate at the Windows Server 2012 domain functional level by default.

    Domain Level Windows Server 2012 R2: <=====
    Need to investigate more and why this post

    • DC-side protections for Protected Users. Protected Users authenticating to a Windows Server 2012 R2 domain can no longer:


    • Authenticate with NTLM authentication <==============(what issues may arise)
    • Use DES or RC4 cipher suites in Kerberos pre-authentication
    • Be delegated with unconstrained or constrained delegation
    • Renew user tickets (TGTs) beyond the initial 4-hour lifetime


    Will this affect my exchange anywhere users with remote access authenticating either clear of NTLM???
    and what would/may not to work properly day 1 when I raise the domain and forest to 2012. I cant really find anyone that can answer a straight question.

    Has anyone gone through this? what problems did you have, if any , if a lot???

    Any thoughts and suggestions will be much appreciated??

    thanks


    - - - Updated - - -

    One more point... I am not sure if I posted this to the correct forum.. So if I was wrong and it should be in a different one..
    PLEASE LET ME KNOW
     
    changari, Aug 2, 2019
    #2
  3. robos Win User
    Getting a domain name...

    Just simple 3 steps to make your website glow to millions…
    Step 1: Sign up now and get a FREE domain!
    Step 2: Design your new website in minutes!
    Step 3: You are live! Share your life online!

    Click here…
     
    robos, Aug 2, 2019
    #3
  4. Domain has been flagged as malicious

    Windows 'domain'?

    Hello,

    Thank you for sharing your concern in the Microsoft Community. Follow these steps to find the domain name:

    • Press the Windows key + R then choose System.
    • The name of your computer will be listed as the Full computer name.
    • The domain your computer belongs to will be listed as the Domain. If, instead of Domain, you see Workgroup, your computer
      is not a member of any domain.

    If you have any questions or things you'd like to clarify, feel free to ask.
     
    Marvin Barc, Aug 2, 2019
    #4
Thema:

Domain has been flagged as malicious

Loading...
  1. Domain has been flagged as malicious - Similar Threads - Domain has been

  2. Why is uhssvc.exe flagged as malicious?

    in Windows 10 Gaming
    Why is uhssvc.exe flagged as malicious?: I've been exploring autoruns by Microsoft's Sysinternal suite. Some of Microsoft entries are not verified in Autoruns. Then I checked with VirusTotal. All are clean except for uhssvc.exe, the Microsoft Update Health Tools. The Digital signatures is OK and the signer is...
  3. Why is uhssvc.exe flagged as malicious?

    in Windows 10 Software and Apps
    Why is uhssvc.exe flagged as malicious?: I've been exploring autoruns by Microsoft's Sysinternal suite. Some of Microsoft entries are not verified in Autoruns. Then I checked with VirusTotal. All are clean except for uhssvc.exe, the Microsoft Update Health Tools. The Digital signatures is OK and the signer is...
  4. system32 DLLs flagged as malicious

    in Windows 10 Gaming
    system32 DLLs flagged as malicious: I downloaded Autoruns to help me identify malware on my computer. My computer is experiencing incoming and outgoing connections to IPs that are flagged as malicious by Virustotal and/or AbuseIPDB. In addition to dropped connections.Initially 14 microsoft files were flagged as...
  5. system32 DLLs flagged as malicious

    in Windows 10 Software and Apps
    system32 DLLs flagged as malicious: I downloaded Autoruns to help me identify malware on my computer. My computer is experiencing incoming and outgoing connections to IPs that are flagged as malicious by Virustotal and/or AbuseIPDB. In addition to dropped connections.Initially 14 microsoft files were flagged as...
  6. system32 DLLs flagged as malicious

    in Windows 10 Installation and Upgrade
    system32 DLLs flagged as malicious: I downloaded Autoruns to help me identify malware on my computer. My computer is experiencing incoming and outgoing connections to IPs that are flagged as malicious by Virustotal and/or AbuseIPDB. In addition to dropped connections.Initially 14 microsoft files were flagged as...
  7. OneDriveUpdateTask.exe being flagged as malicious

    in Windows 10 Gaming
    OneDriveUpdateTask.exe being flagged as malicious: Hello, my PC is constantly executing the file "OneDriveUpdateTask.exe", which is creating temporary files that are being flagged as malicious by my antivirus software. I'm not sure if these are actually malicious or false flagged. Thank you for your time....
  8. OneDriveUpdateTask.exe being flagged as malicious

    in Windows 10 Software and Apps
    OneDriveUpdateTask.exe being flagged as malicious: Hello, my PC is constantly executing the file "OneDriveUpdateTask.exe", which is creating temporary files that are being flagged as malicious by my antivirus software. I'm not sure if these are actually malicious or false flagged. Thank you for your time....
  9. OneDriveUpdateTask.exe being flagged as malicious

    in AntiVirus, Firewalls and System Security
    OneDriveUpdateTask.exe being flagged as malicious: Hello, my PC is constantly executing the file "OneDriveUpdateTask.exe", which is creating temporary files that are being flagged as malicious by my antivirus software. I'm not sure if these are actually malicious or false flagged. Thank you for your time....
  10. This website has been classified as malicious.

    in AntiVirus, Firewalls and System Security
    This website has been classified as malicious.: Our website A is routing to a different website B. Website A is only being for the purpose of forwarding or redirecting to website B. Website B is a website where we sell cosmetics items. We have been selling it for many years now. Website B is newly built website with...