Please verify and reclassify www.hamrick.com

Started by dinguz, September 18, 2024, 08:23:53 PM

Previous topic - Next topic
The site www.hamrick.com is the website of Vuescan software. However, this is currently being classified as Botnet C&C. Could you please verify this to be correct and adjust if necessary?
They may have been hacked, or been hacked in the past and remedied this since, or perhaps this is a misclassification of some sort.
In theory there is no difference between theory and practice. In practice there is.

A notification has been made to the Zenarmor AI-based Web Categorization and Threat Intelligence team for "www.hamrick.com" to be re-categorized.
Please note that it may take some time to complete the process.

You can perform the Cloud Cache process to get the change immediately.

Use the Clear Cache in Cloud Threat Intelligence - Cloud Cache.

As a workaround, you can also add "hamrick.com" to your whitelist policies.

https://www.zenarmor.com/docs/policies/exclusions

I hope this information has been useful for you.

Hi Dinguz,

Could you please provide a screenshot from the Threats tab filtering "hamrick.com" during the live sessions? Also, please mark the "src IP" from the layout.

Here they are, the source IP is just a 192.168.1.x address as is visible in the screenshots.





In theory there is no difference between theory and practice. In practice there is.

Are you using the paid or free version of Zenarmor?

I was able to go to his site without issue on the free version, though I might not have turned on all the selections.

September 21, 2024, 07:46:46 AM #5 Last Edit: September 21, 2024, 02:11:36 PM by dinguz
I'm using the paid (Home) version, and the site is being blocked because it's classified as 'Botnet C&C.' It's possible that your current policy doesn't block this, or this setting might not be available in the free version.
In theory there is no difference between theory and practice. In practice there is.