How SECDNS works
SECDNS uses DataHouse DNS Protect+ to filter and monitor DNS queries at the first stage of Internet communication.
DNS query
A computer, server, phone, router or application asks DNS for a domain address.
Analysis and filtering
The query is checked against threat intelligence databases covering malware, phishing, botnets and C2 hosts.
Hit monitoring
Suspicious queries can be recorded as hits, helping detect a potential infection earlier.
Who this service is for
SECDNS is suitable for business Internet links, Cloud and Dedicated servers, RDP environments, business applications, Android devices and office infrastructure.
- Cloud / Dedicated / VPS
- RDP / Windows Server / Active Directory
- Linux servers and workstations
- Android / macOS / Windows clients
- MikroTik / Ubiquiti / TP-Link / OpenWrt / pfSense
- Internet links and business networks
DNS configuration guide
Expand the relevant section and set DNS servers to 80.72.32.60 and 80.72.32.61.
Windows 11 — DNS for Wi‑Fi or Ethernet
- Open Settings → Network & Internet.
- Select your active connection: Wi‑Fi or Ethernet.
- Open network properties.
- Next to DNS server assignment, click Edit.
- Choose Manual and enable IPv4.
- Preferred DNS: 80.72.32.60.
- Alternate DNS: 80.72.32.61.
- Save changes and run
ipconfig /flushdns.
Windows 10 — Control Panel
- Open Control Panel → Network and Internet → Network and Sharing Center.
- Click your active Ethernet or Wi‑Fi connection.
- Click Properties.
- Select Internet Protocol Version 4 (TCP/IPv4) and open Properties.
- Select Use the following DNS server addresses.
- Enter 80.72.32.60 and 80.72.32.61.
- Confirm and run
ipconfig /flushdns.
Windows Server / RDP
- Log in via RDP as administrator.
- Run
ncpa.cpl. - Open properties of the active network adapter.
- Open IPv4 and set DNS to 80.72.32.60 and 80.72.32.61.
- Run
ipconfig /flushdns. - Test with
nslookup example.com 80.72.32.60.
Active Directory DNS — forwarders
- Open DNS Manager on the domain controller.
- Right-click the DNS server name and choose Properties.
- Open the Forwarders tab.
- Add 80.72.32.60 and 80.72.32.61.
- Save and test from a domain workstation with
nslookup example.com.
Linux Ubuntu / Debian — NetworkManager
nmcli con show sudo nmcli con mod "CONNECTION_NAME" ipv4.dns "80.72.32.60 80.72.32.61" sudo nmcli con mod "CONNECTION_NAME" ipv4.ignore-auto-dns yes sudo nmcli con down "CONNECTION_NAME" && sudo nmcli con up "CONNECTION_NAME" resolvectl status
Replace CONNECTION_NAME with the name shown by the first command.
Linux Server — Netplan
Edit a file in /etc/netplan/, for example sudo nano /etc/netplan/01-netcfg.yaml:
network:
version: 2
ethernets:
eth0:
dhcp4: true
nameservers:
addresses: [80.72.32.60, 80.72.32.61]Apply with sudo netplan apply and check with resolvectl dns.
Linux — systemd-resolved
Edit /etc/systemd/resolved.conf:
[Resolve] DNS=80.72.32.60 80.72.32.61 FallbackDNS=
Restart with sudo systemctl restart systemd-resolved and verify using resolvectl status.
Red Hat / Rocky / AlmaLinux / CentOS
nmcli con show sudo nmcli con mod "CONNECTION_NAME" ipv4.dns "80.72.32.60 80.72.32.61" sudo nmcli con mod "CONNECTION_NAME" ipv4.ignore-auto-dns yes sudo nmcli con up "CONNECTION_NAME"
For older systems, set DNS1=80.72.32.60, DNS2=80.72.32.61 and PEERDNS=no in the interface configuration.
Android — Wi‑Fi and Private DNS
Android Private DNS requires a DoT hostname, not an IP address. For SECDNS IP addresses, configure DNS per Wi‑Fi network.
- Open Settings → Network & Internet → Wi‑Fi.
- Long-press the network and choose Modify.
- Open advanced options.
- Change IP settings to Static.
- DNS 1: 80.72.32.60, DNS 2: 80.72.32.61.
- Save and reconnect.
macOS
- Open System Settings → Network.
- Select Wi‑Fi or Ethernet.
- Click Details → DNS.
- Add 80.72.32.60 and 80.72.32.61.
- Save changes.
- Optionally run:
sudo dscacheutil -flushcache; sudo killall -HUP mDNSResponder.
MikroTik RouterOS
/ip dns set servers=80.72.32.60,80.72.32.61 allow-remote-requests=yes /ip dns print
DHCP for clients:
/ip dhcp-server network print /ip dhcp-server network set [find] dns-server=80.72.32.60,80.72.32.61
Ubiquiti UniFi Network
- Log in to UniFi Network.
- Open Settings → Networks.
- Select the LAN or VLAN network.
- In DHCP settings, set manual DNS.
- Enter 80.72.32.60 and 80.72.32.61.
- Save and renew client DHCP leases.
TP-Link / ASUS / D-Link / other routers
- Log in to the router, usually 192.168.0.1 or 192.168.1.1.
- Open Internet/WAN, LAN, DHCP, DNS or Network settings.
- Enter DNS 1: 80.72.32.60.
- Enter DNS 2: 80.72.32.61.
- Save settings.
- Reconnect devices or restart the router outside business hours.
Some models configure DNS under WAN, others under DHCP. The important point is that LAN clients receive SECDNS addresses.
OpenWrt
uci set network.wan.peerdns='0' uci -q delete network.wan.dns uci add_list network.wan.dns='80.72.32.60' uci add_list network.wan.dns='80.72.32.61' uci commit network /etc/init.d/network restart
pfSense / OPNsense
- Open System → General Setup.
- Add DNS servers 80.72.32.60 and 80.72.32.61.
- Disable DNS received from WAN if you want to enforce SECDNS.
- Check DNS Resolver or DNS Forwarder.
- Set client DNS in DHCP Server for LAN.
Latest hits
A dynamic list of the latest detected queries from the MySQL table.
| Time | Client | Source | Domain | Category | Action | Severity |
|---|---|---|---|---|---|---|
| 2026-06-03 21:58:43 | unknown | 79.133.202.22 | vps140923.inmotionhosting.com | malware | blocked | high |
| 2026-06-03 21:54:28 | unknown | 31.31.168.178 | vmi3338359.contaboserver.net | malware | blocked | high |
| 2026-06-03 21:45:37 | unknown | 79.133.207.101 | e4341e5u4d9q0aa826ca27y7e.vercel.app | malware | blocked | high |
| 2026-06-03 21:43:59 | unknown | 31.31.168.178 | vmi3338359.contaboserver.net | malware | blocked | high |
| 2026-06-03 21:37:15 | unknown | 185.7.107.148 | e4341e5u4d9q0aa826ca27y7e.vercel.app | malware | blocked | high |
| 2026-06-03 21:04:24 | unknown | 77.95.237.2 | usc1.contabostorage.com | malware | blocked | high |
| 2026-06-03 21:01:07 | unknown | 79.133.202.37 | gdghhfhdnhhfdgnnxcbnddddvn-dpl0cm801n86.edgeone.dev | malware | blocked | high |
| 2026-06-03 20:58:52 | unknown | 185.40.196.146 | usc1.contabostorage.com | malware | blocked | high |
| 2026-06-03 20:57:53 | unknown | 79.133.207.100 | usc1.contabostorage.com | malware | blocked | high |
| 2026-06-03 19:47:58 | unknown | 80.72.47.234 | gdghhfhdnhhfdgnnxcbnddddvn-dpl0cm801n86.edgeone.dev | malware | blocked | high |
| 2026-06-03 19:28:52 | unknown | 79.133.207.101 | dailybeautywellness.com | malware | blocked | high |
| 2026-06-03 19:06:51 | unknown | 79.133.202.5 | ip93.ip-198-50-202.net | malware | blocked | high |
| 2026-06-03 18:59:50 | unknown | 77.95.237.2 | soaries.com | malware | blocked | high |
| 2026-06-03 18:58:50 | unknown | 79.133.207.100 | soaries.com | malware | blocked | high |
| 2026-06-03 18:44:12 | unknown | 77.95.237.2 | c0-m9w0489dfgychjk-bsh3cs6t2s.edgeone.dev | malware | blocked | high |
| 2026-06-03 18:24:54 | MY | 80.72.32.10 | everycarebd.com | malware | blocked | high |
| 2026-06-03 18:10:11 | unknown | 185.73.229.138 | alsulmicpa.com | malware | blocked | high |
| 2026-06-03 18:07:30 | unknown | 185.73.229.138 | alsulmicpa.com | malware | blocked | high |
| 2026-06-03 17:22:27 | unknown | 77.95.236.41 | gdghhfhdnhhfdgnnxcbnddddvn-dpl0cm801n86.edgeone.dev | malware | blocked | high |
| 2026-06-03 17:02:15 | unknown | 79.133.202.5 | ip93.ip-198-50-202.net | malware | blocked | high |
Would you like to use SECDNS free of charge?
Submit a request using the form or by email to dat@etop.pl with the subject DataHouse Protect. Provide your IP address or IP range and an email address for threat notifications.
After approval, the indicated infrastructure, services or Internet connection can be covered by an additional DNS protection layer.


