Skip to content

Commit

Permalink
add clarification about maliciousness
Browse files Browse the repository at this point in the history
  • Loading branch information
tma2024-iteg committed Mar 1, 2024
1 parent 2683149 commit 6c088a2
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions _pages/ptp.md
Original file line number Diff line number Diff line change
Expand Up @@ -32,6 +32,7 @@ The PTP algorithm can be run with docker and spark in the provided container.
The following tables show the IP addresses and domains with a score of 100% found with the blocked SSLBL certificates as input.
We checked each entry with Virus Total and appended the aggregated class (according to the paper).
Interestingly, even when scanning just the Tranco Top 1 Million websites, we found several Domains and IP addresses with a high threat score and also Virus Total identifies them as potentially malicious.
Just a high threat score does not mean that these addresses and domains are actually malicious, they are just somehow related to malicious entries through the ITEG; however, they can be a good starting point for a more thorough analysis searching for unknown threats.

| Domain | VT class |
|---------------------|------------|
Expand Down

0 comments on commit 6c088a2

Please sign in to comment.