<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Thank you for the information in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999504#M1318</link>
    <description>&lt;P&gt;Thank you for the information&amp;nbsp;@kwalcott. I really appreciate it!&lt;/P&gt;</description>
    <pubDate>Thu, 17 Nov 2016 15:58:48 GMT</pubDate>
    <dc:creator>delynn</dc:creator>
    <dc:date>2016-11-17T15:58:48Z</dc:date>
    <item>
      <title>Source Fire Black List</title>
      <link>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999502#M1316</link>
      <description>&lt;P&gt;A customer of mine claims that the IP address of&amp;nbsp;184.168.221.28 (which is associated with the ipadr.co domain) has made it into the Source Fire black list. I'm wondering if anyone here knows how IP addresses are added to this black list and what I might be able to do to get it removed.&lt;/P&gt;
&lt;P&gt;We do not have an account with Cisco, so I am unable to open a ticket with, and the customer has been unwilling to cooperate and start a ticket on their side.&lt;/P&gt;
&lt;P&gt;Any assistance anyone might be able to provide would be very much appreciated. Thanks.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;DeLynn Berry&lt;B&gt;&lt;BR /&gt;&lt;/B&gt;&lt;/SPAN&gt;&lt;SPAN&gt;Director of Engineering&lt;/SPAN&gt;&lt;SPAN&gt;&lt;A href="mailto:delynn@theipadreceptionist.com" target="_blank"&gt;&lt;U&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/U&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 05:02:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999502#M1316</guid>
      <dc:creator>delynn</dc:creator>
      <dc:date>2020-02-21T05:02:44Z</dc:date>
    </item>
    <item>
      <title>Hello DeLynn,</title>
      <link>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999503#M1317</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;SPAN&gt;DeLynn,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Multiple URLs that resolve to this IP address are hosting Malware which is why the IP address has been blacklisted.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;You can review this here:&amp;nbsp;https://www.virustotal.com/en/ip-address/184.168.221.28/information/&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;You can also use &lt;A href="https://community.cisco.com/www.brightcloud.com" target="_blank"&gt;www.brightcloud.com&lt;/A&gt; or other IP Reputation services to check the IP address.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;As long as the IP is associated with Malware it will be blocked by Cisco and other IP blacklists.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 19:20:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999503#M1317</guid>
      <dc:creator>kwalcott</dc:creator>
      <dc:date>2016-11-16T19:20:41Z</dc:date>
    </item>
    <item>
      <title>Thank you for the information</title>
      <link>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999504#M1318</link>
      <description>&lt;P&gt;Thank you for the information&amp;nbsp;@kwalcott. I really appreciate it!&lt;/P&gt;</description>
      <pubDate>Thu, 17 Nov 2016 15:58:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999504#M1318</guid>
      <dc:creator>delynn</dc:creator>
      <dc:date>2016-11-17T15:58:48Z</dc:date>
    </item>
    <item>
      <title>You are most welcome Delynn.</title>
      <link>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999505#M1319</link>
      <description>&lt;P&gt;You are most welcome Delynn.&lt;/P&gt;
&lt;P&gt;Thank you for choosing Cisco.&lt;/P&gt;</description>
      <pubDate>Thu, 17 Nov 2016 19:09:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/source-fire-black-list/m-p/2999505#M1319</guid>
      <dc:creator>kwalcott</dc:creator>
      <dc:date>2016-11-17T19:09:29Z</dc:date>
    </item>
  </channel>
</rss>

