F5F Stay Refreshed Power Users Networks Unusual unexpected Pi-hole DNS queries appearing unexpectedly.

Unusual unexpected Pi-hole DNS queries appearing unexpectedly.

Unusual unexpected Pi-hole DNS queries appearing unexpectedly.

P
PurpleShay
Member
65
03-11-2016, 02:31 AM
#1
Last week I installed a Raspberry Pi with Pi-hole on my network. It handles DNS through Unbound, and I set the router to use Pi-hole as its DNS provider. Generally everything functions well. But recently, my Pi-hole has received random DNS queries from my PC to unfamiliar domains (see attached image). My router shows no open ports, and I’ve tried all available malware scans without success. Could anyone suggest what might be behind these requests?
P
PurpleShay
03-11-2016, 02:31 AM #1

Last week I installed a Raspberry Pi with Pi-hole on my network. It handles DNS through Unbound, and I set the router to use Pi-hole as its DNS provider. Generally everything functions well. But recently, my Pi-hole has received random DNS queries from my PC to unfamiliar domains (see attached image). My router shows no open ports, and I’ve tried all available malware scans without success. Could anyone suggest what might be behind these requests?

B
Braad
Junior Member
7
03-11-2016, 08:47 AM
#2
Current activities include running programs and accessing various websites.
B
Braad
03-11-2016, 08:47 AM #2

Current activities include running programs and accessing various websites.

8
88Phoenix
Member
92
03-11-2016, 10:17 AM
#3
You notice these DNS queries because your browser is connecting to Russian, Ukrainian, Chinese, and Polish domains while you're streaming Netflix. It can happen when your network routes through multiple servers, especially if you're using a proxy or VPN. Sometimes the volume spikes to around 2k requests in just a short time due to high traffic or server load.
8
88Phoenix
03-11-2016, 10:17 AM #3

You notice these DNS queries because your browser is connecting to Russian, Ukrainian, Chinese, and Polish domains while you're streaming Netflix. It can happen when your network routes through multiple servers, especially if you're using a proxy or VPN. Sometimes the volume spikes to around 2k requests in just a short time due to high traffic or server load.

V
Valinn
Junior Member
14
03-11-2016, 04:19 PM
#4
It's unusual. Is your PC the sole device using the pi-hole DNS? If yes, I haven't experienced these problems during testing. For now, consider adding the *.domain extension to your blocklist. Recent updates seem to include that, which should resolve the issue. I haven't needed to do this before, so Firefox is able to connect to many different servers. Are you running other applications that handle routing differently? Or is this just a DNS adjustment? You might also want to check your smartphone's firewall settings—Android and iOS tend to block ads and data collection more effectively.
V
Valinn
03-11-2016, 04:19 PM #4

It's unusual. Is your PC the sole device using the pi-hole DNS? If yes, I haven't experienced these problems during testing. For now, consider adding the *.domain extension to your blocklist. Recent updates seem to include that, which should resolve the issue. I haven't needed to do this before, so Firefox is able to connect to many different servers. Are you running other applications that handle routing differently? Or is this just a DNS adjustment? You might also want to check your smartphone's firewall settings—Android and iOS tend to block ads and data collection more effectively.