1
0
root vor 1 Jahr
Ursprung
Commit
07b1f31764
4 geänderte Dateien mit 4029 neuen und 4076 gelöschten Zeilen
  1. 567 324
      yoroi_malware_level1.dns
  2. 3161 3706
      yoroi_malware_level2.dns
  3. 280 24
      yoroi_suspicious_level1.dns
  4. 21 22
      yoroi_suspicious_level2.dns

Datei-Diff unterdrückt, da er zu groß ist
+ 567 - 324
yoroi_malware_level1.dns


Datei-Diff unterdrückt, da er zu groß ist
+ 3161 - 3706
yoroi_malware_level2.dns


+ 280 - 24
yoroi_suspicious_level1.dns

@@ -9,6 +9,286 @@
 # Category        : Suspicious
 # Confidence      : 10
 #
+ggb.llopwhsfag.dns-dynamic.net
+ebay67.cc
+ftp.mellebit9.buzz
+hto29.vip
+refined-city-purring.on-fleek.app
+mybookingzone.com
+booking.secure8361.com
+permanent.davidsousadias.com
+s-teame.com
+late-tooth.granzinhannah.workers.dev
+segurosvirtualbac.temporary-demo.site
+complaint-complete6542.eu
+home-100856.weeblysite.com
+ols.kiujdyt5ga.dns-dynamic.net
+seguromensualescol.temporary-demo.site
+cc35rt8.top
+genipitorprofessionals.digital
+dirty.ozcatalogos.com
+baovieti.top
+omanpornvideos.real-vvip.com
+maindappnetwork.com
+dd.wimher.com
+ethgasfeesrefund.com
+miniature-printer-deep.on-fleek.app
+draw-wm-including-bush.trycloudflare.com
+nflix-accounts.com
+successfulpeopless.com
+tokenp0ckkt.shop
+att-15594.weeblysite.com
+084106917.com
+mail.gruppodimartino.securityaware.it
+dahi1.shop
+hemenhallediyoruz.net
+web-whtasapp-hk.cc
+web-whtasapp-hk.vip
+www.syracuseinvesting.com
+syracuseinvesting.com
+doladowania-orange.goodwillnashamuktikendra.com
+voken.im
+icloud-wbe.com
+santander.cf.sandbox.motrada.ch
+onedive.d46wuze0wcakb.amplifyapp.com
+sso-shaw.live
+omanpornvideorealvip.real-vvip.com
+serverattverifi-101271.weeblysite.com
+complete-complaint13843.eu
+ns1.carrier-ui.com
+dan4-id.tech-solutions.biz.id
+lioeueuj-939830.weeblysite.com
+att-108525.weeblysite.com
+danaid.tech-solutions.biz.id
+omanpornvideovip.real-vvip.com
+adminuser.tgchat.vip
+usps.com.amz677.vip
+emv1.mauritiushotels-direct.com
+www.karensclaypots.com
+karensclaypots.com
+cicapitalbeltwayhotel.com
+www.mauritiushotels-direct.com
+prcdajdeeeeosajksjkakd118283.kalaburagisante.com
+www.youhuibaoliao.com
+emv1.syracuseinvesting.com
+www.haodymedical.com
+prcdajdeeeeosajksjkakd118283.haodymedical.com
+prcdajdeeeeosajksjkakd118283.swazilandrugby.com
+prcdajdeeeeosajksjkakd118283.mauritiushotels-direct.com
+swazilandrugby.com
+emv1.haodymedical.com
+whatsapp-hk.club
+nickdiener.com
+adminuser.telegranam.com
+ebay-am.com
+www.allegroaixkxmuatap.vip
+www.allegroaixkxmuatap.shop
+www.allegroaixkxmuatap.net
+www.allegroaixkxmuatap.top
+billowing-unit-3e82.kem-datings.workers.dev
+summerblink.com
+www.gridinternational.pro
+patient-sun-cb77.wehop62550.workers.dev
+brown-alligator-ylemw8w49yskblvv.builder-preview.com
+ns2.carrier-ui.com
+www.allegroaixkxmuatap.org
+www.43-130-38-4.cprapid.com
+mail.43-130-38-4.cprapid.com
+ipv6.43-130-38-4.cprapid.com
+gsx2-portal.carrier-ui.com
+yahoo-103201-108200.weeblysite.com
+att-mail-100640.weeblysite.com
+cloudflare-workers-pages-vless.danalex.workers.dev
+17cf534fe70cb774.ngrok.app
+2-a-t-t-105855-mail-0987.weeblysite.com
+mailservverrs.weeblysite.com
+still-term-490c.hewoy15327.workers.dev
+www.gljyew.com
+danaindonesia-id-support-com.new-x.biz.id
+aipalae.za.com
+baovietv.top
+telegrqam.club
+303268.cc
+www.baovietbank-vn.com
+290360.cc
+630182.cc
+www.baoviet-vn.top
+www.baoviet-bankvn.com
+www.baovietz.top
+uzb-sovgaen.fun
+ozen-hyzmat.com
+craskami.kartyna-borotba.mom
+tokem.cc
+tokenpbmket.com
+utemt.com
+utejt.com
+utevt.com
+accountblizzardcataclysm.com
+lrtf.cn
+mobile-facebookk.xyz
+complete-signing9739.eu
+mobi-facebook.click
+3005193025478421598.xyz
+www.rpcresetapi.com
+hts45.vip
+omanpornvideovipreal.real-vvip.com
+www.pemulihan-akun-dana-24.webappsystem.store
+small-dawn-443d.layajox934.workers.dev
+isw-freising.de
+nvbvnco.com
+investors.spotify.com.kr.ryo.biz.id
+cache.netflix.com.kr.ryo.biz.id
+storevodafone.it
+tptoka.app
+98737a07262tsfav.cdsconstructionservices.workers.dev
+coinpay-rapide.com
+lingering-bar-d17f.triciadocs.workers.dev
+pubgx.go-midfer.com
+chat.telegraml.cloud
+terminal.lloyd-group.com
+imtaken.buzz
+aidvtklhg.net
+btaccesspagee.w3spaces.com
+vsktg.kalaburagisante.com
+1hrpr.kalaburagisante.com
+www.fedexidn.net
+xiazaiapp2.wallet9.app
+mail.pemulihan-akun.dana-24.webappsystem.store
+mail.perbaikan-kendala-aku.webappsystem.store
+mail.pemulihan-akun-dana-24.webappsystem.store
+feetbacksuportcaseid202115154.d3v52eryat4rqz.amplifyapp.com
+reveals-ns-machinery-devoted.trycloudflare.com
+danaxyax-tsphadiah10jt.gerosviz.xyz
+hto17.vip
+ledger-supportapp.com
+sea-lion-app-lrvia.ondigitalocean.app
+ftp.sadeerweb2.buzz
+yaoifhiaowi352.icu
+searchjobsinoman.real-vvip.com
+consulteitaufatura.shop
+ttw.whatsaptk.cyou
+tgchat.vip
+dhlcom-mxc.com
+45n.mauritiushotels-direct.com
+ekg.mauritiushotels-direct.com
+noq.mauritiushotels-direct.com
+cpcontacts.karensclaypots.com
+asdf.luxxeeu.com
+hnhaochi.com
+feedback-overview-12040133333.d3ewu8wg7qnvzu.amplifyapp.com
+dana-dwsa.tlkom.xyz
+mercadolaboral889.com
+info-id-145698556.com
+mail.iphonegadai2024.kjhgfrr.com
+ldpulihh-danaa.plcte.com
+sucursalvirtualbancoldinamica.w3spaces.com
+seguromensualvirtual.w3spaces.com
+activa-sucur1.w3spaces.com
+43pnm.kalaburagisante.com
+emv1.kalaburagisante.com
+emv1.cicapitalbeltwayhotel.com
+4yrsu.kalaburagisante.com
+emv1.karensclaypots.com
+emv1.youhuibaoliao.com
+e-sport.pubgxbest.com
+game-event.pubgxbest.com
+rakutensuper.net
+ns1.cicapitalbeltwayhotel.com
+zqp2n.kalaburagisante.com
+tappera23.anakembok.de
+yenib392.top
+leah.bet
+40.aaab.su
+dnvlkjkld.rsmii.org
+79.aaab.su
+www.ccollect.fun
+wwe.ewjtyu658asf.dns-dynamic.net
+99goog.com
+telegrarn.work
+kmm.rj57hberyh.dns-dynamic.net
+wcc.mktyhd6.dns-dynamic.net
+bgmiskin.xyz
+banking.seirasa.cfd
+notimetasthelper.click
+mail.skins.midasbuyplus.com
+pages.havefun-6699.cloudns.be
+mail.pubgm.kraftonevent.com
+qckx.org
+www.klydi.com
+liberaciones-de-transferencia-y-pagos-20247.webnode.cr
+validaefectivoenlinea.slutkissgirls.com
+att-107681-102731.weeblysite.com
+apply-restriction-review.surge.sh
+my-site-108844-101189.weeblysite.com
+www.woerkapp.com
+btinternetopenworldd.weeblysite.com
+free-5196083.webadorsite.com
+groupelzsw.chellak.shop
+bt-102724t.weeblysite.com
+ipkodizec.com
+u52860.webwave.dev
+rejestracjatransferu.online
+bt-inc-103845.weeblysite.com
+fghjkjh-101681.weeblysite.com
+acc.greerhoneywill.com
+webmailgrec.is-uberleet.com
+bt-105367.weeblysite.com
+www.allegroxau.cc
+blank-template-0-11444.gr-site.com
+www.allegrolin.cc
+outlook-100.weeblysite.com
+initt-8755.radedwsegr.workers.dev
+worker-patient-dew-5f4b.wccanvas.workers.dev
+repack-serve.shop
+cgd-litigios.com
+cgd-particular.com
+bccii.accedecl.sbs
+mpa31.com
+guangzhoudating.com
+nidahodreamhomes.com
+www.cawqscl.top
+pointninetrackclub.com
+fastlaneprintshop.com
+awardingfellowships.com
+entrepreneursfriend.com
+ljmjcltfnbvsqfo.com
+taiy12.com
+sp776707.sitebeat.crazydomains.com
+help4979.facebook-guidelines.com
+www.ing-area-clientes.com
+sdfgwertfdgfgbv.weeblysite.com
+kiolwojd0-983839.weeblysite.com
+ctt-pt.delivery
+webmail-emailmail.misconfused.org
+novobvnco.com
+nxch4.blogspot.tw
+service-trezor-wallet.com
+mailredirecto.fr
+a-109361.weeblysite.com
+allstarbt.mmm.page
+id-0659831.s4-tastewp.com
+allegroolokalnie.154215856.xyz
+www.bltbeer.cn
+www.nuhuolang.cn
+www.meeruit.cn
+www.bafene.cn
+www.runhongtao.cn
+www.lalacez.cn
+get-optus.com
+10412wolftrap.com
+rewfnash.com
+ilbr12-bradessco.online
+inc-103860-109496.weeblysite.com
+tolu-106753.weeblysite.com
+ecivres.weeblysite.com
+www.ilcaneessenziale.it
+certifieddiamondgems.com
+northernarizonarentals.com
+home-support100.weeblysite.com
+allegro.929368.xyz
+swiss.dj-partyservice.com
+allegro.ioop.pl
+www.allegroyuxuan.shop
 traderchrisai.com
 hellpprandomm-fanpagee.online
 investmentclubb.com
@@ -50,7 +330,6 @@ cms.gitlab.vpn.mail.756592.fun.cdn.1-z.com
 www.tailoredinterior.com
 loveplaylingerie.com
 www.boutwords.com
-outlook-100.weeblysite.com
 cf.wzhtlw.cf
 businessforsupport.com
 cainomoli.blogspot.tw
@@ -115,17 +394,11 @@ worker-nameless-breeze-1bac.futuresorgin.workers.dev
 zari25.zarikorvn.workers.dev
 hello-world.simis.workers.dev
 worker-polished-reci.wrytd.workers.dev
-att-107681-102731.weeblysite.com
 yg-workers-cfeather-15e8.qq45h7jhw.workers.dev
 officesoftnew.realtimesharepoint.workers.dev
 nms27665321.ywmrpdkqdj.workers.dev
-accountblizzardcataclysm.com
-craskami.kartyna-borotba.mom
 hotel-e777kx.eu
-lrtf.cn
-tokem.cc
 att-109630-107559.weeblysite.com
-tolu-106753.weeblysite.com
 complaint.visitor928231.eu
 konfirmasi-aktivasi-dana.dana-weg.biz.id
 klaimvcrmcdonald.rejekinomplok.biz.id
@@ -145,15 +418,10 @@ dalgalareerksiifsds.xyz
 unsiwap.com
 dana-paylater729.zxcax.art
 www.metamask.bond
-ecivres.weeblysite.com
 fmrw.net
 islandhouse-470927714.phsafarilodge.co.zm
 www.metamask.rocks
-btinternetopenworldd.weeblysite.com
 juno-webmail-107053.weeblysite.com
-inc-103860-109496.weeblysite.com
-bt-102724t.weeblysite.com
-u52860.webwave.dev
 inc-106288.weeblysite.com
 juno-104947.weeblysite.com
 home-104199.weeblysite.com
@@ -172,10 +440,7 @@ teciegram.xyz
 1oru4mqc.aaizaiz.me
 vg2kne.webwave.dev
 meta-submit-apply-info.surge.sh
-bt-inc-103845.weeblysite.com
-fghjkjh-101681.weeblysite.com
 www.paypaldetails.com
-bt-105367.weeblysite.com
 paypalhelpsupport.com
 complaint.hotel-a001mp97.eu
 visitor602937.eu
@@ -185,9 +450,7 @@ my.kituiparkvilla.com
 klarna.radicaltraining.mx
 u8x.ugghds42.dns-dynamic.net
 sky-psss-wrrd-change-request-f28.jidofeso.workers.dev
-www.allegrolin.cc
 wlse-transer.betterpropertiescayman.com
-www.allegroxau.cc
 arequire.com
 yah00supportnetwork.aasebrow1.workers.dev
 www.telegrampw.com
@@ -232,11 +495,8 @@ paypal.ediblelondon.net
 365microsoft-auth.com
 ttz1.e3e3.top
 contohweb.e-login.biz.id
-ipkodizec.com
 server-103275.weeblysite.com
 srvrupgrd.taplink.ws
-tokenpbmket.com
-utevt.com
 legal-associate.com
 www.sellmyhomefastohio.com
 dynamichb.com
@@ -412,7 +672,6 @@ cf11088.368211.xyz
 hk.xmsjza.link
 nastaran.mohsensutudeh.workers.dev
 ss.sannmmm33.workers.dev
-apply-restriction-review.surge.sh
 tw2.gonewest.topmoto.pl
 cloudflare-2023-09-28.86017838.workers.dev
 security-page-community-standards.blogspot.kr
@@ -620,7 +879,6 @@ bt-106259.weeblysite.com
 utrqa.com
 utenv.com
 utenb.com
-utemt.com
 utevu.com
 utevp.com
 uteve.com
@@ -1102,7 +1360,6 @@ att-101637-109174.weeblysite.com
 my-site-103667-107801.weeblysite.com
 vediceternity.com
 www.vediceternity.com
-legitimate-intentional-whale-3hygm8.teleporthq.app
 www.allegroau.com
 allegrolokalnie.oferta732873.pl
 btaccesssite.w3spaces.com
@@ -1273,7 +1530,6 @@ utegw.com
 utehq.com
 utefv.com
 utegr.com
-utejt.com
 utegt.com
 utehw.com
 cgd-restringir.com

+ 21 - 22
yoroi_suspicious_level2.dns

@@ -9,28 +9,28 @@
 # Category        : Suspicious
 # Confidence      : 8
 #
-vw6t7z.webwave.dev
-teiegornam.com
-364738-recovery.com
 aea28d6a-0fea-4711-8d7b-4f89b071c285-00-lqyp49eyq4mq.picard.replit.dev
 bantuan-customer-care-dana.anakdara9.art
+bbappupdate.biz
 central-terra-suporte-clie.fr-1.paas.massivegrid.net
+dkb-loginapp.com
 edvhzmtgncl.com
 etxchg.com
+familytbjw.shop
 grandyarn.com
 inapetgirletputain.com
 iolaos.com
 kenny141.com
 kyc-update-info.com
 ledger-live-app.biz
-login-mem.jingxiduoduo.com
 makkko.kz
+myonlinepackage.com
 pemulihan2729.fbzsa.com
 portalcurp.mx
 prectiomoeiny.xyz
 proxy.jiandaoshou.vip
-so-moe.com
 swiss.parklanechinese.co.uk
+tmallwsph.com
 tokecp0cket.top
 tokenpbeket.com
 tryan.anakembok.de
@@ -39,29 +39,35 @@ ulyqfavdthekoq.com
 uspsparcels.net
 utqag.com
 utwar.com
-utwfr.com
-utwdj.com
 utwcy.com
+utwdj.com
 utwek.com
+utwfr.com
 utwgx.com
-utwzrk.com
+utwqd.com
 utwta.com
 utwte.com
 utwqp.com
-utwqd.com
-wa-zc-ash.net
+utwzrk.com
 walletflarenodev.com
+wa-zc-ash.net
 wlygnet.com
 yamini.digital
 yinwzaih.com
 zj490.com
+andrewcrypto.com
 contravention-paiement.com
-dkb-loginapp.com
-myonlinepackage.com
-tmallwsph.com
+instantonlinearchitects.com
+telegramtw3.org
+utwgw.com
+www.telegramkd.com
+r7d.86d.mytemp.website
+vw6t7z.webwave.dev
+teiegornam.com
+364738-recovery.com
+login-mem.jingxiduoduo.com
+so-moe.com
 elisabungalov.com
-andrewcrypto.com
-bbappupdate.biz
 pemullhan-akun-danaa.anakdara9.art
 ka.method2024.vip
 7003659.com
@@ -1832,7 +1838,6 @@ att-107662-101293.weeblysite.com
 tg.sdfasdf.top
 advertising-policy-review.dm847kwrfqpw6.amplifyapp.com
 dana-customer-bantuann.anakdara9.art
-telegramtw3.org
 tg.telegram-tools.org
 amazon-a2.co
 aeon-com.top
@@ -2077,7 +2082,6 @@ www.icioudld.top
 littlepancakeswap.com
 www.bitdefenderlogin.com
 telegracm.org
-www.telegramkd.com
 me-airbnb.com
 takipcifox.com
 whatsapp.styyyuxp.shop
@@ -2363,7 +2367,6 @@ telstra-104461.weeblysite.com
 telstra-101081.weeblysite.com
 sky-109342.weeblysite.com
 sky-108941.weeblysite.com
-familytbjw.shop
 telstra-103048.weeblysite.com
 telstra-102330.weeblysite.com
 sky-108804.weeblysite.com
@@ -2589,7 +2592,6 @@ utwze.com
 utwyg.com
 utwty.com
 utwyz.com
-utwyh.com
 utwtt.com
 utwza.com
 utwxb.com
@@ -2618,7 +2620,6 @@ evrill.club
 utwhr.com
 utwgz.com
 utwqj.com
-utwgw.com
 utwgv.com
 utwhq.com
 utwgm.com
@@ -2788,7 +2789,6 @@ facebook.loginform.fyi
 www.hongtusw.com
 www.meskb.app
 slimhealth.us
-instantonlinearchitects.com
 telegreanm.xyz
 www.72611781-coinbase.com
 www.spotifyablumsandsinglesseo.com
@@ -4378,7 +4378,6 @@ ek.moilefxe43x.dns-dynamic.net
 att-102523.weeblysite.com
 whatsapp.waxchain.online
 review-page-01-01.replit.app
-r7d.86d.mytemp.website
 riddler.d1k9hg7dvh6w7i.amplifyapp.com
 enter-mantanetwork.com
 metamas1.metamaskapp.app

Einige Dateien werden nicht angezeigt, da zu viele Dateien in diesem Diff geändert wurden.