Since midday yesterday (Monday Jan 26th) we've seen an explosion in sinkhole detections. Previous moths sees one ot two a day in average, latest 24 hrs we've had more than 16.000 detections. This started after the antivirusupdate on Monday. When checki ng a few of the domains via on-line URL-checking tools, no suspicious content is detected. Latest antivirus signature contained a lot of Suspicious DNS adresses, but none of 'ours' Has anyone else seen this ? All DNS requests are blocked so no dangerous situation appears , but we suspect most of these requests to be false positive. Can someone at PaloAlto check on this please?
... View more