Browser-only demoSynthetic dataInteractive demo · no DNS traffic leaves your browser · modelled on the DNS Daddy v0.3 development interface.View project on GitHubVisit dnsdaddy.dev

DNS Daddy Dashboard

Protection state, query activity and what was stopped.

Updated —

PROTECTED

DNS protection is active. Queries are checked against loaded threat intelligence before they are answered.

last query —

DNS queries

1,982

Last 24 hours, synthetic

Threats blocked

44

2.2% of all queries

Detections

6

Alert-only, experimental

Threat intelligence

2,396,283

Indexed domains across 7 active feeds

Needs attention

Configuration observations from this demo session.

  • Warning

    One network allows a wider CIDR range than recommended.

  • Warning

    Cryptomining pools (demo) is using last-known-good data.

Threat activity

Simulated queries and blocks, updating as you watch.

Stream pausedQueries · peak 16/bucketBlocked
oldestnow

Recently blocked

Reserved demo domains — none are real threat infrastructure.

Investigate
DomainCategoryClientWhen
phishing-demo.examplePhishing192.168.20.22—
login-verify-demo.testPhishing192.168.10.24—
dropper-demo.invalidMalware192.168.30.5—
metrics-demo.testAds & tracking192.168.20.7—
payload-lab.testMalware192.168.30.41—
tracker-demo.exampleAds & tracking192.168.20.22—

Resolver

Status
Operational
Uptime
Demo session
Networks
3
Policies
4
Version
demo · v0.3-era interface

DNSSEC status

Verdicts reported by the validating upstream.

  • Validated41.2% · 758
  • Unvalidated57.9% · 1,065
  • SERVFAIL0.9% · 17

These are the verdicts reported by the validating upstream resolver. DNS Daddy does not perform local DNSSEC validation in the resolution path.

External intelligence

Reputation providers and their operating mode.

Configure
  • VirusTotalCache only · 184 msHealthy
  • Google Safe BrowsingCache only · 96 msHealthy
  • Custom HTTP/JSONOffNot configured

A provider timeout or failure resolves to unknown — never to malicious.

Recent detections

Behavioural findings. Alert-only, experimental.

Review
  • tunnel-demo.testhigh

    dns_tunnel

  • kqzrmwdyth.examplemedium

    dga_like

  • multiple namesmedium

    nxdomain_anomaly

  • txt-demo.examplelow

    txt_anomaly

Behavioural detections alert only. They do not automatically block DNS traffic.

Protection breakdown

Blocks by category this session.

  • Ads & tracking3
  • Malware2
  • Phishing2

Threat intelligence

Synthetic, representative feeds.

Manage
  • Malware domains (demo)1,284,402 domainsActive
  • Phishing intelligence (demo)612,118 domainsActive
  • Command & control indicators (demo)148,940 domainsActive
  • Cryptomining pools (demo)24,806 domainsLast known good
  • Newly registered domains, 30d (demo)96,233 domainsActive
  • Advertising & tracking (demo)141,770 domainsActive

Top clients

Busiest simulated devices.

  • guest-laptop28 queries
  • guest-phone20 queries
  • lab-thermostat18 queries
  • nas-0117 queries
  • lab-camera-0114 queries
  • lab-build-0113 queries

Repeat offenders

Domains blocked most often in the demo window.

DomainCategoryBlocksLast seen
phishing-demo.examplePhishing1511:19 UTC
malware-sim.testMalware911:12 UTC
c2-lab.testC2 / Botnet611:04 UTC
mining-pool-demo.testCryptomining410:52 UTC
beacon-demo.exampleC2 / Botnet310:41 UTC
login-verify-demo.testPhishing311:19 UTC
tracker-demo.exampleAds & tracking311:10 UTC
fresh-domain-3f21.exampleNewly registered209:58 UTC
Session activity
140
7 blocked since this page loaded