Pi-hole strange query

Hello,
Today i reconfigured my pihole to a new router with the pihole -r command. Everything went well and i imported all my old settings. However a minute or so later my pihole blocks a domain which came from the raspberry pi itself. This seems very suspicious to me. Im wondering if my raspberry pi might be compromised?

This is what i found in pihole.log
ug 15 18:54:55 dnsmasq[7938]: query[A] hocvientaichinh.com.vn from 127.0.0.1
Aug 15 18:54:55 dnsmasq[7938]: /etc/pihole/gravity.list hocvientaichinh.com.vn is 192.168.1.133
Aug 15 18:54:55 dnsmasq[7938]: query[A] hocvientaichinh.com.vn from 192.168.1.133
Aug 15 18:54:55 dnsmasq[7938]: /etc/pihole/gravity.list hocvientaichinh.com.vn is 192.168.1.133

hocvientaichinh.com.vn is indeed a domain present on malware blocklists.

Something is querying that domain and of you are not requesting it, something (that shouldn't), is.

This topic was automatically closed 21 days after the last reply. New replies are no longer allowed.