Domains getting listed as Phishing

Amaz0n

Senior Member
Joined
Apr 9, 2020
Messages
845
Reaction score
720
So I have legit domains for CPL (email submit forms) and they are constantly listed as phishing by various antivirus programs like Kaspersky, ESET and so on.


Any idea of how to prevent that? The content is clearly not phishing and nothing illegal going on.
 
It could me your tld, try using .com, .net or .org or it could me lander, try changing that.
Use a spy tool and find put what people are doing for the same network, also check with your affiliate manager.
 
So I have legit domains for CPL (email submit forms) and they are constantly listed as phishing by various antivirus programs like Kaspersky, ESET and so on.


Any idea of how to prevent that? The content is clearly not phishing and nothing illegal going on.
Use clean hosting/SSL, avoid aggressive pop-ups or redirects, add legit branding and policy pages, and submit false-positive reports to AV vendors to get whitelisted.
 
I have the same issue, I am using .de domains and clean landing pages and I am using CloakingHouse. Any solutions?
 
Some networks are blacklisted. So, there is not much you can do. Many people are resorting to temporary alternatives for CPA.
 
AVs flag CPL sites as phishing use HTTPS, clean content, check blacklists, and request whitelisting.
 
AH i see CPA. Well to us its not all that bad. But to the world they see it as a seller just trying to sell them some other 'thing'. So its perspective, cant really do much about it. The general public just thinks differently and so do security teams that work for these big corps. So, iam not sure how much whitelisting or trying to get approval will work. Its like trying to get whitelisted by windows app dev teams. Its generally really hard. What i would do is use more traditional marketing channels. Alongside cpa. It helps alot hell even leaflets and use a leaflet company to send leaflets out? I dont know, just a thought.
 
So I have legit domains for CPL (email submit forms) and they are constantly listed as phishing by various antivirus programs like Kaspersky, ESET and so on.


Any idea of how to prevent that? The content is clearly not phishing and nothing illegal going on.
That’s a common headache with CPL offers. A lot of antivirus tools auto-flag landing pages even when they’re clean. Best move is to double-check your SSL and page content, then send a false positive report to Kaspersky/ESET. Once they review it, they usually whitelist you.
 
AH i see CPA. Well to us its not all that bad. But to the world they see it as a seller just trying to sell them some other 'thing'. So its perspective, cant really do much about it. The general public just thinks differently and so do security teams that work for these big corps. So, iam not sure how much whitelisting or trying to get approval will work. Its like trying to get whitelisted by windows app dev teams. Its generally really hard. What i would do is use more traditional marketing channels. Alongside cpa. It helps alot hell even leaflets and use a leaflet company to send leaflets out? I dont know, just a thought.

In simple terms, CPA is just a name, email, phone form. You seem to misunderstand what it means. Leaflets? Tf.
 
That’s a common headache with CPL offers. A lot of antivirus tools auto-flag landing pages even when they’re clean. Best move is to double-check your SSL and page content, then send a false positive report to Kaspersky/ESET. Once they review it, they usually whitelist you.

I sent once to Fortinet who classified my page as phishing. They manually review and re-classified it as malware and house later 5 other antivirus companies listed the page. Imagine, it's simple email, name, phone form with a clean landing page (ie. just information and so on). It's a joke.
 
So I have legit domains for CPL (email submit forms) and they are constantly listed as phishing by various antivirus programs like Kaspersky, ESET and so on.


Any idea of how to prevent that? The content is clearly not phishing and nothing illegal going on.
Focus on your traffic source quality. AVs often flag domains based on the referrer. If your traffic comes from spammy or cloaked sources, even a clean page will get flagged. Test a whitelisted, high-quality traffic source to see if the alerts stop.
 
Focus on your traffic source quality. AVs often flag domains based on the referrer. If your traffic comes from spammy or cloaked sources, even a clean page will get flagged. Test a whitelisted, high-quality traffic source to see if the alerts stop.

Yeah, I am doing all kinds of tricks but I have an issue with specifically Fortinet "Phishing" (all the time) and ESET "Suspicious" (sometimes).

Fortinet lists the site because virustotal.com sends them all the inputs. I literally tested a clean domain, never used anywhere -> a day later Fortinet listed. I have no idea how to prevent that.

I guess ESET lists based on refer domains (sometimes the refer domains get hard red Phishing label and the target domain is Suspicious (changes to phishing sometiomes after days)/
 
Use a clean landing page design, enable HTTPS, add proper WHOIS and business details, and proactively submit false-positive reports to antivirus vendors’ whitelisting portals.
 
So I have legit domains for CPL (email submit forms) and they are constantly listed as phishing by various antivirus programs like Kaspersky, ESET and so on.


Any idea of how to prevent that? The content is clearly not phishing and nothing illegal going on.
Even legit CPL sites can get flagged if antivirus sees patterns like mass email collection. To reduce false positives, make sure your site uses HTTPS, avoid suspicious scripts or pop-ups, and submit your domains to antivirus vendors for review.
 
In this thread:

"use/enable https" = ai spam.
 
Back
Top