Gold app
AI summary
Local DNS filtering proxy that blocks ads and trackers via a split-tunnel VPN. Queries multiple upstream servers concurrently and caches responses for speed. Version 3.1.0 adds negative caching, serve-stale expired entries, CNAME cloaking detection, and improved network-switching behavior.
Generated by AI. May contain inaccuracies.
About this app
A fast local DNS filtering proxy for Android. Intercepts DNS queries via Android's VpnService, blocks ads and tracking domains using customizable blocklists, and forwards to multiple upstream servers concurrently for the fastest response.
Features
- Local VPN-based DNS Proxy — Routes only DNS traffic into the app via split-tunnel VPN, all other traffic goes through normally - Domain Blocking — Filters against AdAway-format blocklists. Supports multiple lists, add/remove/toggle, and manual refresh - Concurrent Multi-Server Queries — Sends DNS queries to all enabled upstream servers simultaneously, uses the fastest successful response - DNS Response Caching — 16,384-entry LRU cache with bounded TTL (30s–60min), stale-while-revalidate, and popular-domain prefetch - In-flight Query Deduplication — Concurrent requests for the same domain share a single upstream query - UDP Socket Pooling — Reusable socket pool per upstream server (4 per server) reduces connection overhead - Statistics — In-memory query counter with batched persistence (every 5s), live display (total, blocked, block rate, avg response time) - Dashboard — Protection status, start/stop toggle, statistics grid - DNS Server Management — Configure multiple upstream servers with enable/disable toggle - Foreground Service — Runs as a foreground service with notification and stop action - Low Overhead — Packet buffer recycling, lock-free cache, minimal allocations in hot path
How It Works
1. Creates a local VPN interface routing only traffic to virtual DNS addresses (10.10.10.10, fd00::10) 2. Reads raw IP/UDP packets from the VPN interface 3. Parses the DNS question from each packet 4. Checks against loaded blocklists — blocked domains get an immediate NXDOMAIN response 5. Checks the local LRU cache — fresh entries skip the upstream query entirely 6. Forwards to all enabled upstream DNS servers concurrently via plain UDP 7. Returns the fastest successful response, caches it, patches back into the original packet
License
Apache 2.0
What's new
- DNS Resolution Speed
- Negative caching for NXDOMAIN/NODATA (RFC 2308) and short SERVFAIL caching (RFC 9520). - Serve-stale expired entries (RFC 8767, up to 3 days) with background refresh. - Popular domain prefetching. - Switching between Wi-Fi and mobile data no longer clears the cache — expired entries answer first, new ones load in the background. - Upstream UDP truncation (TC=1) automatically retries over TCP to the same server (RFC 7766). - Larger UDP socket pool, pre-warmed on VPN start and network changes. - TUN writes now use a single writer to eliminate lock contention. - TTL tiers by query type (A/AAAA: 1–6 hours; others: 10 min–2 hours).
- Ad Blocking
- Added CNAME cloaking detection — CNAME chains matching the blocklist return NXDOMAIN without polluting the cache.
About this version
- Version
- 3.1.0 (38)
- Size
- 2.79 MB
- Requires Android
- 10
- Target SDK
- 29
- Architecture
- armeabi-v7a, x86, x86_64, arm64-v8a
- Downloads
- 39
- Updated
- Sep 11, 2026
- Package
- com.deatrg.dnsfilter
Similar apps
Ratings & reviews
- 51
- 40
- 30
- 20
- 10
Write a review
Recent reviews
Showing 1 of 1
oooXotoday