root 1 year ago
parent
commit
61d0579f86
5 changed files with 400 additions and 381 deletions
  1. 32 22
      nethesis_level3.netset
  2. 66 67
      whitelist.global
  3. 87 77
      yoroi_malware_level1.ipset
  4. 212 212
      yoroi_malware_level2.ipset
  5. 3 3
      yoroi_souspicious_level2.ipset

+ 32 - 22
nethesis_level3.netset

@@ -879,8 +879,8 @@
 5.89.169.7
 5.89.200.61
 5.89.215.226
-5.90.200.49
 5.91.218.76
+5.94.9.154
 5.94.58.106
 5.94.58.113
 5.94.120.130
@@ -1367,6 +1367,7 @@
 8.218.166.108
 8.218.173.88
 8.218.177.5
+8.218.180.216
 8.218.186.25
 8.218.186.72
 8.218.203.129
@@ -3563,6 +3564,7 @@
 36.95.145.2
 36.95.184.37
 36.96.44.78
+36.99.41.174
 36.99.44.86
 36.99.44.192
 36.99.116.189
@@ -4551,6 +4553,7 @@
 42.203.68.4
 42.208.0.0/12
 42.224.77.217
+42.227.207.169
 42.228.19.165
 42.228.58.109
 42.236.68.38
@@ -4706,6 +4709,7 @@
 44.218.6.93
 44.220.2.97
 44.220.185.5
+44.220.185.42
 44.220.188.163
 44.221.37.41
 44.221.105.234
@@ -5460,7 +5464,6 @@
 45.154.2.9
 45.154.2.49
 45.154.2.104
-45.154.2.129
 45.154.2.136
 45.154.3.163
 45.154.3.236
@@ -5889,6 +5892,7 @@
 47.76.78.75
 47.76.80.6
 47.76.80.141
+47.76.82.67
 47.76.82.81
 47.76.87.183
 47.76.92.150
@@ -6811,7 +6815,6 @@
 47.128.41.97
 47.128.41.107
 47.128.41.140
-47.128.41.152
 47.128.41.164
 47.128.41.171
 47.128.41.186
@@ -6828,6 +6831,7 @@
 47.128.42.87
 47.128.42.99
 47.128.42.189
+47.128.42.191
 47.128.42.198
 47.128.42.211
 47.128.43.33
@@ -6890,6 +6894,7 @@
 47.128.47.11
 47.128.47.12
 47.128.47.72
+47.128.47.74
 47.128.47.116
 47.128.47.119
 47.128.47.124
@@ -7055,7 +7060,6 @@
 47.128.58.194/31
 47.128.58.223
 47.128.58.239
-47.128.58.241
 47.128.58.250
 47.128.59.14
 47.128.59.17
@@ -7103,6 +7107,7 @@
 47.128.62.91
 47.128.62.95
 47.128.62.107
+47.128.62.131
 47.128.62.140
 47.128.62.150
 47.128.62.154
@@ -7827,6 +7832,7 @@
 47.236.200.32
 47.236.200.120
 47.236.202.30
+47.236.202.83
 47.236.202.227
 47.236.204.180
 47.236.204.202
@@ -7877,6 +7883,7 @@
 47.236.248.96
 47.236.249.74
 47.236.249.81
+47.236.249.163
 47.236.250.79
 47.236.250.252
 47.236.251.34
@@ -8647,6 +8654,7 @@
 49.75.185.171
 49.77.198.199
 49.77.198.213
+49.77.198.229
 49.77.199.37
 49.77.199.55
 49.77.199.60
@@ -10132,12 +10140,12 @@
 60.205.230.9
 60.205.230.246
 60.205.234.223
-60.205.235.32
 60.208.45.122
 60.208.108.52
 60.208.197.218
 60.211.206.17
 60.211.242.34
+60.212.0.13
 60.213.27.250
 60.213.28.166
 60.214.102.37
@@ -10303,6 +10311,7 @@
 61.152.109.237
 61.153.111.134
 61.153.187.221
+61.153.187.238
 61.153.191.162
 61.153.208.38
 61.154.11.185
@@ -10377,6 +10386,7 @@
 61.187.180.200
 61.188.178.199
 61.188.205.76
+61.188.233.47
 61.188.233.189
 61.189.61.162
 61.190.18.46
@@ -11276,6 +11286,7 @@
 74.88.2.102
 74.90.213.28
 74.91.115.210
+74.94.56.139
 74.94.234.151
 74.95.13.185
 74.95.130.117
@@ -11404,7 +11415,6 @@
 77.32.148.38
 77.32.148.46
 77.32.148.247
-77.33.200.131
 77.36.112.0/21
 77.36.167.37
 77.36.167.38
@@ -11461,7 +11471,6 @@
 77.107.44.113
 77.109.33.120
 77.109.139.87
-77.118.35.35
 77.124.45.41
 77.137.41.62
 77.157.174.51
@@ -12076,7 +12085,6 @@
 84.41.74.70
 84.42.28.190
 84.46.240.241
-84.51.31.138
 84.52.103.234
 84.54.64.50
 84.54.115.46
@@ -12322,6 +12330,7 @@
 87.70.38.107
 87.70.218.124
 87.71.22.3
+87.76.61.125
 87.90.129.50
 87.98.154.151
 87.98.242.75
@@ -12746,7 +12755,6 @@
 90.151.171.106
 90.151.249.164
 90.154.125.157
-90.154.143.124
 90.160.139.163
 90.161.217.228
 90.176.67.60
@@ -12810,6 +12818,7 @@
 91.134.185.88/30
 91.134.185.92/31
 91.134.185.95
+91.134.218.239
 91.135.103.7
 91.135.108.160
 91.141.48.242
@@ -12965,7 +12974,6 @@
 92.204.190.235
 92.205.231.90
 92.221.101.111
-92.222.108.131
 92.222.171.6
 92.222.177.43
 92.222.181.145
@@ -14076,7 +14084,7 @@
 103.63.108.14
 103.63.108.25
 103.65.41.205
-103.65.202.34/31
+103.65.202.35
 103.65.202.38/31
 103.65.202.41
 103.65.202.42/31
@@ -14103,6 +14111,7 @@
 103.72.195.29
 103.72.195.48
 103.72.195.75
+103.72.200.60
 103.72.200.87
 103.73.160.237
 103.73.162.38
@@ -15218,6 +15227,7 @@
 106.120.42.106
 106.120.43.108
 106.120.246.2
+106.122.238.62
 106.124.32.181
 106.138.62.29
 106.195.39.74
@@ -15392,7 +15402,6 @@
 109.111.191.129
 109.115.3.43
 109.115.28.51
-109.115.28.245
 109.115.41.115
 109.115.47.119
 109.115.48.186
@@ -16103,6 +16112,7 @@
 112.112.134.219
 112.116.103.116
 112.116.122.253
+112.116.164.136
 112.120.146.42
 112.120.181.164
 112.124.9.1
@@ -16201,7 +16211,6 @@
 112.184.61.153
 112.184.135.67
 112.184.141.69
-112.184.169.224
 112.186.68.217
 112.186.112.55
 112.186.229.119
@@ -16254,6 +16263,7 @@
 113.8.26.28
 113.11.36.139
 113.11.36.140
+113.11.176.83
 113.11.231.121
 113.16.193.177
 113.22.87.102
@@ -16875,7 +16885,6 @@
 114.119.151.50
 114.119.151.59
 114.119.151.72
-114.119.151.74
 114.119.151.93
 114.119.151.119
 114.119.151.146
@@ -18310,7 +18319,6 @@
 120.77.24.128
 120.77.35.39
 120.77.58.44
-120.77.84.25
 120.77.99.30
 120.77.99.213
 120.77.148.123
@@ -18921,7 +18929,6 @@
 122.151.131.211
 122.154.48.30
 122.154.58.8
-122.154.129.2
 122.154.149.42
 122.155.0.205
 122.155.129.43
@@ -19973,7 +19980,7 @@
 132.226.197.171
 132.232.3.161
 132.247.164.6
-132.247.214.103
+132.247.214.102/31
 132.248.12.52
 132.248.99.18
 132.248.99.225
@@ -20637,7 +20644,6 @@
 142.93.147.63
 142.93.147.244
 142.93.152.65
-142.93.160.9
 142.93.166.65
 142.93.168.92
 142.93.169.212
@@ -21789,7 +21795,6 @@
 156.251.226.67
 156.253.5.48
 157.7.200.152
-157.7.220.59
 157.10.29.15
 157.10.161.229
 157.10.172.135
@@ -26607,6 +26612,7 @@
 188.218.229.239
 188.218.231.59
 188.218.231.115
+188.218.247.143
 188.219.104.210
 188.226.132.113
 188.227.137.85
@@ -27124,7 +27130,6 @@
 193.3.53.4/30
 193.3.53.8/30
 193.3.164.0/24
-193.13.169.31
 193.23.55.226
 193.25.216.0/24
 193.25.217.28
@@ -27565,6 +27570,7 @@
 197.134.255.82
 197.146.207.148
 197.153.57.103
+197.155.74.150
 197.156.76.57
 197.156.97.198
 197.156.115.37
@@ -27600,6 +27606,7 @@
 197.255.196.227
 197.255.198.218
 197.255.202.137
+197.255.204.119
 197.255.205.114
 197.255.212.158
 197.255.224.193
@@ -28207,7 +28214,6 @@
 202.175.123.220
 202.177.247.179
 202.179.22.233
-202.179.85.98
 202.180.16.44
 202.182.112.28
 202.183.0.0/19
@@ -28780,6 +28786,7 @@
 209.38.19.191
 209.38.20.175
 209.38.21.243
+209.38.22.191
 209.38.23.49
 209.38.23.77
 209.38.23.81
@@ -29040,6 +29047,7 @@
 211.55.133.91
 211.55.204.203
 211.56.238.5
+211.57.78.222
 211.57.111.99
 211.59.180.214
 211.62.111.247
@@ -29278,6 +29286,7 @@
 213.76.68.246
 213.89.219.3
 213.89.220.189
+213.95.48.129
 213.96.11.230
 213.109.65.105
 213.109.202.0/24
@@ -29374,6 +29383,7 @@
 213.238.171.124
 213.238.241.83
 213.238.247.117
+213.244.240.193
 213.254.134.82
 216.9.227.172
 216.9.227.183
@@ -30296,6 +30306,7 @@
 222.92.94.178
 222.94.13.46
 222.95.199.156
+222.95.199.161
 222.95.199.167
 222.95.199.170
 222.95.199.174
@@ -30463,7 +30474,6 @@
 223.8.205.90
 223.8.206.72
 223.8.237.234
-223.8.239.217
 223.9.147.31
 223.10.70.138
 223.10.186.120

+ 66 - 67
whitelist.global

@@ -14,6 +14,58 @@
 62.149.128.154
 62.149.128.151
 62.149.128.160
+188.166.17.46
+64.225.71.115
+134.122.56.28
+159.65.207.198
+164.92.212.150
+188.166.72.23
+188.166.83.149
+167.99.46.183
+128.199.34.191
+164.90.199.233
+142.93.138.82
+161.35.148.219
+188.166.38.161
+178.128.254.180
+178.62.238.76
+188.166.126.240
+134.122.63.204
+188.166.112.196
+167.99.219.82
+128.199.61.15
+142.93.129.129
+64.227.78.25
+128.199.48.140
+167.172.38.97
+178.62.240.209
+178.62.221.146
+167.71.68.193
+159.223.237.208
+206.189.12.139
+159.223.215.242
+164.92.157.134
+104.248.202.179
+178.62.217.110
+188.166.64.212
+104.248.95.193
+164.92.220.56
+164.92.145.142
+167.71.64.103
+161.35.84.164
+64.225.68.114
+188.166.73.43
+134.209.192.110
+161.35.81.169
+159.223.11.82
+159.223.236.183
+178.62.204.160
+167.172.33.231
+188.166.17.142
+188.166.95.89
+164.92.215.172
+159.223.215.34
+161.35.153.85
 164.90.192.245
 188.166.9.247
 188.166.85.76
@@ -113,13 +165,13 @@
 167.99.40.163
 161.35.157.15
 178.62.210.100
+146.190.238.76
 167.71.8.45
 142.93.134.189
 161.35.95.211
 167.99.40.250
 161.35.153.110
 146.190.238.4
-146.190.238.76
 167.99.217.178
 134.122.50.84
 104.248.207.61
@@ -192,88 +244,36 @@
 206.189.2.123
 104.248.201.37
 188.166.89.180
-188.166.17.46
-64.225.71.115
-134.122.56.28
-159.65.207.198
-164.92.212.150
-188.166.72.23
-188.166.83.149
-167.99.46.183
-128.199.34.191
-164.90.199.233
-142.93.138.82
-188.166.38.161
-178.128.254.180
-178.62.238.76
-188.166.126.240
-134.122.63.204
-188.166.112.196
-161.35.148.219
-167.99.219.82
-128.199.61.15
-142.93.129.129
-64.227.78.25
-128.199.48.140
-167.172.38.97
-178.62.240.209
-178.62.221.146
-167.71.68.193
-159.223.237.208
-206.189.12.139
-159.223.215.242
-164.92.157.134
-104.248.202.179
-178.62.217.110
-188.166.64.212
-104.248.95.193
-164.92.220.56
-164.92.145.142
-167.71.64.103
-161.35.84.164
-64.225.68.114
-188.166.73.43
-134.209.192.110
-161.35.81.169
-159.223.11.82
-159.223.236.183
-178.62.204.160
-167.172.33.231
-188.166.17.142
-188.166.95.89
-164.92.215.172
-159.223.215.34
-161.35.153.85
-164.90.199.31
-206.189.109.68
-146.190.30.164
-188.166.62.26
-174.138.8.225
-188.166.124.152
 64.225.72.197
 142.93.138.48
 188.166.95.119
+68.183.11.180
+159.223.224.128
+157.245.72.239
 164.92.149.184
 209.38.43.246
 159.223.10.131
 165.232.87.125
 164.90.194.29
-68.183.11.180
-159.223.224.128
-157.245.72.239
 174.138.6.126
 209.38.34.255
 159.223.225.225
+164.92.217.234
+64.225.74.83
+142.93.134.87
 134.122.55.122
 128.199.57.143
 188.166.10.131
 164.92.212.76
 134.209.93.115
-164.92.217.234
-64.225.74.83
-142.93.134.87
 104.248.195.22
 164.90.196.79
+164.90.199.31
+206.189.109.68
+146.190.30.164
+188.166.62.26
+174.138.8.225
+188.166.124.152
 134.209.136.185
 134.209.206.121
 138.197.176.207
@@ -294,8 +294,7 @@
 167.99.16.60
 167.99.248.251
 174.138.107.200
-185.199.108.153
-185.199.110.153
+185.199.111.153
 188.166.103.4
 188.166.10.67
 188.166.107.122

+ 87 - 77
yoroi_malware_level1.ipset

@@ -9,6 +9,20 @@
 # Category        : Malware
 # Confidence      : 10
 #
+38.54.115.139
+38.54.45.41
+38.54.82.115
+38.180.242.206
+38.180.242.26
+38.180.141.203
+38.180.75.197
+38.180.75.202
+38.180.91.117
+38.6.177.11
+38.6.189.85
+38.242.135.61
+38.55.193.31
+38.14.254.9
 104.233.245.4
 104.238.141.143
 104.238.35.155
@@ -24,20 +38,6 @@
 104.129.180.62
 104.234.119.29
 104.234.10.89
-38.54.115.139
-38.54.45.41
-38.54.82.115
-38.180.242.206
-38.180.242.26
-38.180.141.203
-38.180.75.197
-38.180.75.202
-38.180.91.117
-38.6.177.11
-38.6.189.85
-38.242.135.61
-38.55.193.31
-38.14.254.9
 165.192.158.140
 165.22.62.189
 165.227.220.254
@@ -102,8 +102,8 @@
 45.146.253.140
 195.231.58.21
 195.178.110.112
-195.178.110.113
 195.178.110.114
+195.178.110.113
 195.245.191.240
 195.211.98.185
 195.14.123.88
@@ -111,6 +111,7 @@
 195.10.205.144
 195.54.160.241
 149.28.159.61
+149.28.238.241
 149.28.140.167
 149.104.30.175
 149.104.28.211
@@ -154,6 +155,7 @@
 103.27.132.240
 103.147.12.201
 103.80.86.199
+103.144.139.157
 103.20.222.134
 103.178.57.159
 103.186.117.77
@@ -161,7 +163,6 @@
 103.186.117.76
 103.94.76.9
 103.163.208.7
-103.144.139.157
 103.79.120.69
 103.194.105.98
 103.194.105.84
@@ -194,8 +195,8 @@
 64.176.69.95
 64.176.167.19
 64.176.199.40
-64.227.35.185
 64.227.115.107
+64.227.35.185
 64.227.140.222
 64.227.79.222
 64.23.153.152
@@ -239,8 +240,8 @@
 156.238.252.65
 156.238.226.201
 156.67.105.193
-85.209.134.186
 85.209.134.45
+85.209.134.186
 85.209.134.106
 85.209.134.188
 85.209.11.15
@@ -251,10 +252,9 @@
 85.239.54.36
 85.235.205.36
 46.249.102.151
-46.101.164.163
-46.101.222.148
-46.101.190.36
-46.101.131.129
+46.246.84.17
+46.246.84.2
+46.246.84.20
 46.246.82.14
 46.246.82.21
 46.246.82.5
@@ -269,9 +269,11 @@
 46.246.12.14
 46.246.12.3
 46.246.12.10
-46.246.84.2
-46.246.84.20
 46.246.86.10
+46.101.164.163
+46.101.222.148
+46.101.190.36
+46.101.131.129
 46.17.43.154
 46.8.70.168
 46.23.108.62
@@ -279,10 +281,10 @@
 46.23.108.61
 46.23.108.159
 46.23.108.58
+46.23.108.64
+46.23.108.109
 46.23.108.110
 46.23.108.111
-46.23.108.109
-46.23.108.64
 46.23.108.65
 46.183.222.126
 213.176.67.24
@@ -473,6 +475,7 @@
 77.220.213.58
 77.221.143.57
 77.73.131.97
+77.243.85.54
 77.32.148.107
 8.134.207.214
 8.155.11.115
@@ -511,6 +514,12 @@
 106.54.220.113
 106.51.16.29
 106.52.236.88
+123.57.75.191
+123.60.220.223
+123.60.144.32
+123.207.220.119
+123.56.164.28
+123.112.242.186
 47.242.50.82
 47.98.164.129
 47.121.183.19
@@ -559,12 +568,6 @@
 47.116.43.223
 47.90.142.15
 47.93.187.74
-123.57.75.191
-123.60.220.223
-123.60.144.32
-123.207.220.119
-123.56.164.28
-123.112.242.186
 154.90.61.0
 154.213.187.91
 154.213.187.12
@@ -593,6 +596,7 @@
 154.205.130.120
 154.22.5.68
 128.90.106.215
+128.90.106.249
 128.90.106.50
 128.90.102.115
 128.90.113.118
@@ -634,15 +638,17 @@
 172.93.193.231
 172.81.60.45
 92.113.144.56
+92.38.135.77
+92.38.135.176
 92.118.9.61
 92.118.59.32
 92.42.96.51
+92.41.156.65
 92.40.114.224
 92.255.85.76
 92.255.85.200
 92.255.85.63
 92.243.66.51
-92.38.135.176
 147.45.78.18
 147.45.47.210
 147.45.44.105
@@ -667,14 +673,50 @@
 36.24.21.199
 177.52.84.20
 177.69.126.122
-3.238.251.153
-3.33.130.190
-3.38.251.220
-3.80.117.23
+221.234.44.21
+111.229.123.199
+111.229.7.205
+111.229.28.231
+111.173.104.246
+111.67.196.122
+111.231.21.165
+111.231.140.197
+111.90.140.83
+111.90.140.34
+111.230.94.25
+111.230.244.189
+111.91.178.253
+107.172.61.115
+107.172.21.113
+107.172.133.197
+107.172.88.160
+107.172.60.29
+107.174.180.24
+107.174.39.159
+107.174.69.167
+107.148.36.43
+107.148.32.206
+107.175.17.10
+107.178.223.183
+107.191.36.218
+107.173.201.226
+107.213.250.99
+118.89.66.192
+118.89.124.190
+118.25.182.25
+118.25.102.58
+118.25.26.93
+118.178.134.226
+118.31.18.77
+118.68.53.7
 176.96.138.110
 176.10.111.126
 176.111.174.140
 176.65.128.240
+3.238.251.153
+3.33.130.190
+3.38.251.220
+3.80.117.23
 95.217.103.20
 95.217.87.142
 95.217.220.103
@@ -737,7 +779,6 @@
 136.244.116.245
 136.32.29.219
 136.144.220.174
-221.234.44.21
 158.247.252.152
 158.247.199.37
 5.89.219.20
@@ -776,10 +817,10 @@
 101.42.104.135
 101.201.64.217
 101.43.100.209
+101.99.92.203
 101.34.79.85
 101.35.211.50
 101.132.177.174
-101.99.92.203
 101.108.0.93
 80.66.89.52
 80.66.75.248
@@ -811,17 +852,6 @@
 202.131.82.135
 202.144.192.25
 202.91.36.213
-111.173.104.246
-111.67.196.122
-111.231.21.165
-111.231.140.197
-111.90.140.83
-111.90.140.34
-111.230.94.25
-111.230.244.189
-111.229.7.205
-111.229.28.231
-111.91.178.253
 114.55.100.165
 114.113.238.83
 114.132.214.4
@@ -838,14 +868,6 @@
 192.236.163.13
 182.255.45.244
 182.92.222.153
-118.25.182.25
-118.25.102.58
-118.25.26.93
-118.89.66.192
-118.89.124.190
-118.178.134.226
-118.31.18.77
-118.68.53.7
 34.70.255.193
 34.70.133.246
 34.214.67.226
@@ -901,12 +923,12 @@
 159.89.35.178
 159.223.54.213
 159.223.36.127
-159.223.73.145
 159.223.80.165
+159.223.73.145
 159.65.114.94
 159.65.172.125
-159.65.63.190
 159.65.163.100
+159.65.63.190
 159.65.87.74
 159.203.101.139
 159.203.25.192
@@ -963,8 +985,8 @@
 167.71.60.109
 167.172.242.179
 167.172.52.203
-167.172.59.85
 167.172.251.250
+167.172.59.85
 167.172.36.131
 167.172.246.59
 167.172.85.227
@@ -1027,6 +1049,7 @@
 193.32.178.182
 193.233.113.184
 193.233.113.179
+193.233.201.112
 193.233.254.126
 193.233.112.188
 193.124.205.51
@@ -1059,8 +1082,8 @@
 223.155.16.75
 223.155.16.163
 223.155.16.40
-223.155.16.142
 223.155.16.211
+223.155.16.142
 223.155.16.164
 223.155.16.209
 223.155.16.104
@@ -1079,20 +1102,6 @@
 31.172.83.15
 135.125.189.140
 135.148.208.49
-107.174.180.24
-107.174.39.159
-107.174.69.167
-107.148.36.43
-107.148.32.206
-107.175.17.10
-107.178.223.183
-107.172.21.113
-107.172.133.197
-107.172.88.160
-107.172.60.29
-107.191.36.218
-107.173.201.226
-107.213.250.99
 148.113.165.11
 148.135.76.59
 148.178.22.104
@@ -1175,6 +1184,7 @@
 2.45.248.149
 2.57.215.85
 196.119.120.229
+70.24.242.42
 112.124.71.123
 112.124.60.149
 112.186.229.163
@@ -1199,8 +1209,8 @@
 86.225.166.212
 102.96.189.23
 35.225.36.88
-35.95.25.89
 35.92.132.207
+35.95.25.89
 35.173.48.184
 35.181.93.190
 168.235.72.134

File diff suppressed because it is too large
+ 212 - 212
yoroi_malware_level2.ipset


+ 3 - 3
yoroi_souspicious_level2.ipset

@@ -35,13 +35,13 @@
 47.237.31.52
 92.255.196.218
 91.165.234.109
+221.120.49.111
+111.70.17.58
+118.27.69.252
 121.5.146.163
 59.125.237.154
 59.23.39.135
-221.120.49.111
 181.52.238.13
-111.70.17.58
-118.27.69.252
 152.32.250.188
 14.99.66.28
 68.183.95.81

Some files were not shown because too many files changed in this diff