SIEM & other integrations

Connect Q-Feeds to Pi-hole, AdGuard & Technitium DNS

Subscribe your DNS filter to the Q-Feeds malware domains list so clients that use AdGuard Home, Pi-hole or Technitium DNS cannot resolve known-malicious domains.

Create your API key and domain feed URL in the portal. See Get your threat feeds. Replace the token in the URL before saving. Do not refresh more often than every 20 minutes; Community, Plus and Premium differ in how often new indicators are published. See pricing.

Domain feed URL

Use the malware domains feed:

https://api.qfeeds.com/api?feed_type=malware_domains&api_token=YOUR_TOKEN&limit=130000

Test with:

curl -v -u api_token:YOUR_TOKEN "https://api.qfeeds.com/api?feed_type=malware_domains&limit=1000"

AdGuard Home

  1. Open the AdGuard management console and go to Filters > DNS Blocklists.
  2. Select Add Blocklist, then Add a custom list.
  3. Give the list a clear name and paste the domain feed URL (with your API token).
  4. Save the list.

Pi-hole

  1. Open your Pi-hole admin UI and go to Lists.
  2. Paste the domain feed URL, add a recognizable comment, and select Add blocklist. Ensure api_token is filled in the URL.
  3. Force an update: Tools > Update Gravity > Update.

Technitium DNS

  1. Go to Settings > Blocking.
  2. Scroll to Allow / Block List URLs and paste the domain feed URL with your API token.
  3. Set the update interval according to your Q-Feeds license.
  4. Select Update Now to pull the list immediately.

Download the PDF manual

Evaluate our intelligence today!

Simplify your security operations, start your free Q-Feeds trial and experience the difference.

Activate free access