  1. Maltrail is a malicious traffic detection system, utilizing publicly
  2. available (black)lists containing malicious and/or generally suspicious
  3. trails, along with static trails compiled from various AV reports and
  4. custom user defined lists, where trail can be anything from domain name
  5. (e.g. for Banjori malware),
  6. URL (e.g. for known malicious executable),
  7. IP address (e.g. for known attacker) or HTTP User-Agent header
  8. value (e.g. sqlmap for automatic SQL injection and database takeover tool).
  9. Also, it uses (optional) advanced heuristic mechanisms that can help in
  10. discovery of unknown threats (e.g. new malware).
