<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Malware Blocking on Sooraj Sathyanarayanan</title>
  <link rel="alternate" href="https://profincognito.me/tags/malware-blocking/" />
  <link rel="self" href="https://profincognito.me/tags/malware-blocking/index.xml" />
  <subtitle>Recent content in Malware Blocking on Sooraj Sathyanarayanan</subtitle>
  <id>https://profincognito.me/tags/malware-blocking/</id>
  <generator uri="http://gohugo.io" version="0.147.8">Hugo</generator>
  <language>en-us</language>
  <updated>2026-05-25T14:44:10-07:00</updated>
  <author>
    <name>Sooraj Sathyanarayanan</name>
    
  </author>
  <rights>[CC BY-SA 4.0](https://creativecommons.org/licenses/by-sa/4.0/)</rights>
      <entry>
        <title>Cloudflare 1.1.1.1</title>
        <link rel="alternate" href="https://profincognito.me/tools/dns-resolvers/cloudflare-1111/" />
        <id>https://profincognito.me/tools/dns-resolvers/cloudflare-1111/</id>
        <published>2026-05-04T00:00:00-07:00</published>
        <updated>2026-05-25T14:44:10-07:00</updated>
        <summary type="html">Fast public DNS resolver with encrypted DNS and privacy commitments</summary>
          <content type="html"><![CDATA[<p>Cloudflare 1.1.1.1 is a widely used public DNS resolver focused on speed, availability, and encrypted DNS support. It is a good mainstream option, especially for users who want simple setup and strong performance.</p>
<p>Why it is included:</p>
<ul>
<li>Very easy to configure across routers, browsers, and operating systems</li>
<li>Supports DNS over HTTPS and DNS over TLS</li>
<li>Offers optional Families variants for malware blocking and malware plus adult-content blocking</li>
<li>Cloudflare documents commitments not to sell or use Public Resolver personal data for ad targeting and to delete limited public resolver logs within 25 hours</li>
</ul>
<p>Recommended setup:</p>
<ul>
<li>Standard resolver:
<ul>
<li>IPv4: 1.1.1.1 and 1.0.0.1</li>
<li>IPv6: 2606:4700:4700::1111 and 2606:4700:4700::1001</li>
<li>DoH: <a href="https://cloudflare-dns.com/dns-query">https://cloudflare-dns.com/dns-query</a></li>
<li>DoT: one.one.one.one</li>
</ul>
</li>
<li>Malware blocking:
<ul>
<li>IPv4: 1.1.1.2 and 1.0.0.2</li>
<li>IPv6: 2606:4700:4700::1112 and 2606:4700:4700::1002</li>
<li>DoH: <a href="https://security.cloudflare-dns.com/dns-query">https://security.cloudflare-dns.com/dns-query</a></li>
<li>DoT: security.cloudflare-dns.com</li>
</ul>
</li>
<li>Malware plus adult-content blocking:
<ul>
<li>IPv4: 1.1.1.3 and 1.0.0.3</li>
<li>IPv6: 2606:4700:4700::1113 and 2606:4700:4700::1003</li>
<li>DoH: <a href="https://family.cloudflare-dns.com/dns-query">https://family.cloudflare-dns.com/dns-query</a></li>
<li>DoT: family.cloudflare-dns.com</li>
</ul>
</li>
</ul>
<p>Tradeoffs:</p>
<ul>
<li>This is listed as Cloudflare 1.1.1.1, not just Cloudflare, to avoid confusing it with the separate Domain &amp; Hosting entry</li>
<li>Best framed as the fast mainstream option, not the strictest privacy-minimization option</li>
<li>Cloudflare&rsquo;s model relies on privacy commitments, audits, and short retention rather than a pure no-logs posture</li>
<li>Avoid treating this as Cloudflare WARP or a VPN; this entry is only for the public DNS resolver</li>
<li>Encrypted DNS protects the DNS lookup in transit, but it does not make browsing anonymous</li>
</ul>
<p>Verdict:</p>
<p>Use Cloudflare 1.1.1.1 when performance, broad compatibility, and easy setup matter. Prefer Quad9 or Mullvad DNS when strict privacy minimization is the top priority.</p>
<p>Sources:</p>
<ul>
<li><a href="https://developers.cloudflare.com/1.1.1.1/">https://developers.cloudflare.com/1.1.1.1/</a></li>
<li><a href="https://developers.cloudflare.com/1.1.1.1/privacy/public-dns-resolver/">https://developers.cloudflare.com/1.1.1.1/privacy/public-dns-resolver/</a></li>
<li><a href="https://developers.cloudflare.com/1.1.1.1/setup/">https://developers.cloudflare.com/1.1.1.1/setup/</a></li>
<li><a href="https://developers.cloudflare.com/1.1.1.1/encryption/dns-over-tls/">https://developers.cloudflare.com/1.1.1.1/encryption/dns-over-tls/</a></li>
<li><a href="https://developers.cloudflare.com/1.1.1.1/encryption/dns-over-https/make-api-requests/">https://developers.cloudflare.com/1.1.1.1/encryption/dns-over-https/make-api-requests/</a></li>
</ul>
]]></content>
      </entry>
      <entry>
        <title>Mullvad DNS</title>
        <link rel="alternate" href="https://profincognito.me/tools/dns-resolvers/mullvad-dns/" />
        <id>https://profincognito.me/tools/dns-resolvers/mullvad-dns/</id>
        <published>2026-05-04T00:00:00-07:00</published>
        <updated>2026-05-25T14:44:10-07:00</updated>
        <summary type="html">No-logging encrypted DNS with simple optional blocking filters</summary>
          <content type="html"><![CDATA[<p>Mullvad DNS is a public encrypted DNS service from Mullvad. It supports DNS over HTTPS and DNS over TLS, works even for non-Mullvad VPN customers, and offers several simple blocking presets.</p>
<p>Why it is included:</p>
<ul>
<li>Strong no-logging posture</li>
<li>Simple encrypted DNS service with no account required</li>
<li>Optional blocking presets for ads, trackers, malware, adult content, gambling, and social media</li>
<li>Good fit for users who value privacy minimization over dashboard customization</li>
</ul>
<p>Recommended setup:</p>
<ul>
<li>No filtering:
<ul>
<li>DoT hostname: dns.mullvad.net</li>
<li>DoH: <a href="https://dns.mullvad.net/dns-query">https://dns.mullvad.net/dns-query</a></li>
</ul>
</li>
<li>Ads plus trackers:
<ul>
<li>DoT hostname: adblock.dns.mullvad.net</li>
<li>DoH: <a href="https://adblock.dns.mullvad.net/dns-query">https://adblock.dns.mullvad.net/dns-query</a></li>
</ul>
</li>
<li>Ads plus trackers plus malware:
<ul>
<li>DoT hostname: base.dns.mullvad.net</li>
<li>DoH: <a href="https://base.dns.mullvad.net/dns-query">https://base.dns.mullvad.net/dns-query</a></li>
</ul>
</li>
<li>Maximum preset:
<ul>
<li>DoT hostname: all.dns.mullvad.net</li>
<li>DoH: <a href="https://all.dns.mullvad.net/dns-query">https://all.dns.mullvad.net/dns-query</a></li>
</ul>
</li>
</ul>
<p>Tradeoffs:</p>
<ul>
<li>Preset filters are useful, but this is not a full dashboard-based filtering product</li>
<li>If you already use Mullvad VPN, prefer the VPN tunnel&rsquo;s DNS unless there is a specific reason to override it</li>
<li>Encrypted DNS helps against on-path DNS snooping, but it does not make browsing anonymous</li>
</ul>
<p>Verdict:</p>
<p>Use Mullvad DNS when the priority is a clean, no-logging encrypted resolver with simple optional filters.</p>
<p>Sources:</p>
<ul>
<li><a href="https://mullvad.net/en/help/dns-over-https-and-dns-over-tls">https://mullvad.net/en/help/dns-over-https-and-dns-over-tls</a></li>
<li><a href="https://mullvad.net/en/help/no-logging-data-policy">https://mullvad.net/en/help/no-logging-data-policy</a></li>
<li><a href="https://mullvad.net/en/help/all-about-dns-servers-and-privacy">https://mullvad.net/en/help/all-about-dns-servers-and-privacy</a></li>
</ul>
]]></content>
      </entry>
      <entry>
        <title>Quad9</title>
        <link rel="alternate" href="https://profincognito.me/tools/dns-resolvers/quad9/" />
        <id>https://profincognito.me/tools/dns-resolvers/quad9/</id>
        <published>2026-05-04T00:00:00-07:00</published>
        <updated>2026-05-25T14:44:10-07:00</updated>
        <summary type="html">Nonprofit DNS resolver with malware blocking and strong no-IP-logging privacy policy</summary>
          <content type="html"><![CDATA[<p>Quad9 is a nonprofit public DNS resolver focused on security and privacy. Its recommended service blocks malicious domains, validates DNSSEC, and avoids EDNS Client Subnet by default.</p>
<p>Why it is included:</p>
<ul>
<li>Strong daily-driver pick for privacy plus malware protection</li>
<li>Explicit privacy policy: Quad9 says it does not collect or record IP addresses and does not correlate IPs with DNS query data</li>
<li>No account or dashboard required</li>
<li>Good default for routers, operating systems, and browsers that support custom DNS</li>
</ul>
<p>Recommended setup:</p>
<ul>
<li>IPv4: 9.9.9.9 and 149.112.112.112</li>
<li>IPv6: 2620:fe::fe and 2620:fe::9</li>
<li>DoH: <a href="https://dns.quad9.net/dns-query">https://dns.quad9.net/dns-query</a></li>
<li>DoT: dns.quad9.net</li>
</ul>
<p>Tradeoffs:</p>
<ul>
<li>Malware blocking can occasionally create false positives</li>
<li>It is not customizable like dashboard-based filtering resolvers</li>
<li>Encrypted DNS protects the DNS lookup in transit, but it does not make traffic anonymous</li>
</ul>
<p>Verdict:</p>
<p>Use Quad9 when you want a simple, trustworthy default resolver with strong privacy posture and useful security blocking.</p>
<p>Sources:</p>
<ul>
<li><a href="https://quad9.net/privacy/policy/">https://quad9.net/privacy/policy/</a></li>
<li><a href="https://quad9.net/service/service-addresses-and-features/">https://quad9.net/service/service-addresses-and-features/</a></li>
</ul>
]]></content>
      </entry>

</feed>
