root 3 years ago
parent
commit
7d0762efe0
6 changed files with 2364 additions and 2730 deletions
  1. 69 38
      nethesis_level3.netset
  2. 48 48
      whitelist.global
  3. 631 828
      yoroi_malware_level1.dns
  4. 1233 1358
      yoroi_malware_level2.dns
  5. 183 260
      yoroi_suspicious_level1.dns
  6. 200 198
      yoroi_suspicious_level2.dns

+ 69 - 38
nethesis_level3.netset

@@ -191,6 +191,7 @@
 1.122.149.44
 1.123.211.133
 1.123.237.45
+1.128.111.80
 1.129.28.246
 1.129.29.25
 1.129.29.34
@@ -488,7 +489,6 @@
 2.139.215.91
 2.139.217.129
 2.139.220.58
-2.140.162.235
 2.140.169.125
 2.144.4.113
 2.144.7.162
@@ -539,7 +539,6 @@
 2.229.211.85
 2.230.110.21
 2.230.219.196
-2.236.139.173
 2.238.146.114
 2.238.193.174
 2.247.248.102
@@ -849,6 +848,7 @@
 5.161.112.32
 5.161.135.31
 5.161.140.82
+5.162.131.2
 5.164.24.205
 5.164.26.98
 5.165.84.113
@@ -1082,7 +1082,6 @@
 8.210.202.131
 8.210.205.13
 8.210.220.40
-8.210.232.130
 8.210.239.78
 8.210.245.40
 8.210.251.233
@@ -1698,7 +1697,6 @@
 20.5.67.66
 20.5.90.89
 20.5.106.110
-20.9.22.7
 20.9.24.226
 20.22.208.201
 20.24.83.24
@@ -1746,7 +1744,6 @@
 20.49.201.49
 20.50.196.43
 20.51.225.98
-20.52.2.91
 20.52.6.51
 20.52.136.207
 20.52.186.207
@@ -1879,7 +1876,6 @@
 20.124.177.18
 20.124.219.184
 20.124.220.25
-20.125.114.19
 20.126.8.45
 20.126.70.157
 20.126.97.244
@@ -1943,7 +1939,6 @@
 20.206.121.17
 20.208.129.84
 20.210.53.189
-20.210.135.33
 20.210.139.46
 20.210.192.147
 20.210.242.109
@@ -1976,7 +1971,6 @@
 20.218.73.19
 20.218.73.119
 20.218.117.102
-20.218.120.164
 20.219.12.39
 20.219.59.56
 20.219.74.105
@@ -2012,6 +2006,7 @@
 20.226.17.151
 20.226.19.123
 20.226.21.36
+20.226.22.40
 20.226.24.19
 20.226.25.17
 20.226.31.148
@@ -3398,6 +3393,7 @@
 34.207.152.44
 34.207.181.135
 34.209.115.207
+34.211.46.187
 34.211.190.179
 34.212.83.31
 34.214.192.98
@@ -3650,7 +3646,6 @@
 35.240.137.176
 35.240.139.97
 35.240.140.17
-35.240.204.250
 35.240.205.160
 35.241.158.66
 35.241.182.82
@@ -4946,7 +4941,6 @@
 43.128.237.56
 43.128.237.124
 43.128.253.135
-43.129.24.224
 43.129.33.99
 43.129.35.207
 43.129.36.145
@@ -6309,6 +6303,7 @@
 45.133.1.13
 45.133.1.36
 45.133.1.52
+45.133.1.73
 45.133.1.91
 45.133.1.97
 45.133.1.103
@@ -7478,6 +7473,7 @@
 49.48.77.10
 49.48.103.200
 49.48.197.5
+49.48.207.69
 49.49.14.31
 49.49.15.254
 49.49.36.98
@@ -7572,7 +7568,6 @@
 49.85.143.0
 49.85.143.37
 49.85.218.223
-49.86.9.40
 49.86.65.25
 49.86.65.103
 49.87.63.251
@@ -7673,6 +7668,7 @@
 49.187.34.89
 49.187.53.134
 49.189.95.138
+49.189.106.205
 49.191.9.211
 49.191.16.75
 49.191.201.224
@@ -8166,6 +8162,7 @@
 51.161.50.184/31
 51.161.50.187
 51.161.50.188/30
+51.161.59.72
 51.161.70.116
 51.161.152.172
 51.178.37.102
@@ -8218,7 +8215,6 @@
 51.210.108.253
 51.210.149.251
 51.210.158.156
-51.210.251.22
 51.211.175.175
 51.222.75.252
 51.222.102.53
@@ -8438,7 +8434,6 @@
 54.37.22.180
 54.37.22.223
 54.37.23.100
-54.37.23.114
 54.37.23.120
 54.37.23.159
 54.37.23.163
@@ -8551,6 +8546,7 @@
 54.254.21.184
 54.255.89.144
 58.2.0.0/17
+58.7.195.82
 58.8.136.118
 58.11.7.184
 58.14.0.0/15
@@ -8703,6 +8699,7 @@
 58.105.74.149
 58.105.80.187
 58.105.104.52
+58.105.197.18
 58.107.25.86
 58.107.160.212
 58.109.27.159
@@ -9465,6 +9462,7 @@
 60.43.101.9
 60.48.26.216
 60.48.206.155
+60.48.207.57
 60.50.148.32
 60.52.16.72
 60.52.19.17
@@ -9495,6 +9493,7 @@
 60.113.120.161
 60.113.205.171
 60.117.84.137
+60.121.172.127
 60.127.236.161
 60.130.140.231
 60.132.115.145
@@ -9536,11 +9535,11 @@
 60.167.239.99
 60.168.133.74
 60.168.145.135
-60.168.206.22
 60.168.206.48
 60.169.24.79
 60.169.35.245
 60.169.89.106
+60.169.94.214
 60.169.95.144
 60.169.95.193
 60.169.102.139
@@ -10171,6 +10170,7 @@
 62.24.58.3
 62.28.62.82
 62.28.74.147
+62.28.93.232
 62.28.137.98
 62.28.222.221
 62.30.116.175
@@ -10643,6 +10643,7 @@
 65.182.3.163
 65.182.141.51
 65.185.72.94
+65.185.92.110
 65.185.105.114
 65.189.59.32
 65.190.102.226
@@ -11187,6 +11188,7 @@
 69.172.87.101
 69.172.87.121
 69.174.169.251
+69.175.19.182
 69.176.95.153
 69.180.55.98
 69.180.153.9
@@ -11762,7 +11764,6 @@
 74.109.214.34
 74.113.180.209
 74.114.148.0/22
-74.117.130.101
 74.124.55.222
 74.129.245.13
 74.135.161.36
@@ -11960,6 +11961,7 @@
 76.108.109.69
 76.108.196.189
 76.109.22.223
+76.109.88.197
 76.111.204.92
 76.111.208.119
 76.114.126.71
@@ -11967,7 +11969,6 @@
 76.119.31.86
 76.129.74.125
 76.134.60.69
-76.164.180.163
 76.164.201.50
 76.166.166.73
 76.167.151.236
@@ -12000,6 +12001,7 @@
 76.232.50.46
 77.0.91.87
 77.0.212.251
+77.1.146.17
 77.3.31.108
 77.3.187.169
 77.6.53.172
@@ -12519,6 +12521,7 @@
 79.6.22.239
 79.6.155.202
 79.6.221.5
+79.7.2.248
 79.7.93.227
 79.7.186.65
 79.8.0.246
@@ -13004,7 +13007,6 @@
 81.88.52.134
 81.88.52.163
 81.88.52.205
-81.88.52.210
 81.88.52.221
 81.88.52.222
 81.88.179.2
@@ -14142,7 +14144,6 @@
 86.135.16.186
 86.135.118.164
 86.135.128.172
-86.135.135.154
 86.135.182.127
 86.135.211.129
 86.136.122.178
@@ -14805,6 +14806,7 @@
 89.163.255.134
 89.164.99.110
 89.165.48.250
+89.166.224.245
 89.169.0.247
 89.169.24.206
 89.171.51.210
@@ -15042,6 +15044,7 @@
 91.37.159.60
 91.43.237.193
 91.45.88.151
+91.45.221.246
 91.49.216.104
 91.49.217.232
 91.60.21.89
@@ -15118,6 +15121,7 @@
 91.121.171.183
 91.121.181.180
 91.122.52.247
+91.122.137.170
 91.123.18.217
 91.123.64.87
 91.123.183.29
@@ -15620,7 +15624,6 @@
 92.184.116.223
 92.184.116.225
 92.184.116.246
-92.184.116.248
 92.184.117.36
 92.184.117.48
 92.184.117.59
@@ -15855,6 +15858,7 @@
 93.135.4.105
 93.140.253.170
 93.141.136.25
+93.143.47.149
 93.144.111.106
 93.145.162.19
 93.145.165.49
@@ -16158,7 +16162,9 @@
 94.181.119.232
 94.182.18.92
 94.182.176.136
+94.183.110.222
 94.183.112.60
+94.183.119.6
 94.183.119.85
 94.183.158.141
 94.183.174.240
@@ -16366,6 +16372,7 @@
 95.112.87.86
 95.116.62.92
 95.116.77.103
+95.116.255.36
 95.120.208.247
 95.121.68.16
 95.123.230.153
@@ -16535,7 +16542,6 @@
 96.44.142.254
 96.44.144.22
 96.45.144.0/20
-96.45.170.232
 96.45.183.46
 96.46.115.179
 96.47.224.42
@@ -17188,6 +17194,7 @@
 101.188.92.184
 101.188.98.231
 101.189.22.207
+101.189.75.184
 101.190.22.39
 101.190.23.96
 101.190.52.39
@@ -17744,7 +17751,6 @@
 103.127.180.12
 103.127.207.190
 103.129.95.136
-103.129.178.69
 103.129.213.100
 103.129.221.188
 103.129.222.91
@@ -18501,6 +18507,7 @@
 104.231.123.196
 104.232.32.184
 104.232.98.3
+104.232.172.118
 104.233.108.157
 104.233.173.143
 104.236.2.45
@@ -19266,6 +19273,7 @@
 107.14.226.102
 107.14.227.106
 107.20.41.60
+107.21.155.124
 107.128.11.73
 107.128.210.35
 107.130.223.91
@@ -19723,6 +19731,7 @@
 109.239.58.22
 109.242.7.226
 109.242.81.208
+109.242.137.21
 109.242.180.243
 109.245.39.4
 109.245.210.165
@@ -20207,6 +20216,7 @@
 111.77.71.78
 111.77.71.83
 111.77.71.99
+111.77.71.112
 111.77.71.114
 111.77.71.125
 111.77.71.132
@@ -21333,6 +21343,7 @@
 114.34.222.176
 114.34.225.187
 114.34.227.129
+114.34.227.193
 114.34.243.76
 114.34.246.236
 114.34.247.114
@@ -22063,6 +22074,7 @@
 115.56.181.40
 115.56.236.90
 115.58.203.38
+115.64.93.26
 115.64.163.25
 115.64.181.184
 115.65.94.169
@@ -22472,7 +22484,6 @@
 116.92.224.146
 116.95.35.90
 116.96.128.232
-116.96.232.87
 116.98.160.2
 116.98.160.207
 116.98.161.51
@@ -23192,7 +23203,6 @@
 117.218.174.250
 117.218.245.194
 117.220.15.119
-117.220.161.146
 117.221.67.50
 117.222.202.154
 117.223.136.107
@@ -23627,6 +23637,7 @@
 119.23.250.61
 119.23.251.234
 119.23.255.171
+119.24.234.96
 119.27.64.27
 119.27.160.58
 119.27.168.200
@@ -24396,6 +24407,7 @@
 120.147.2.209
 120.147.132.98
 120.148.9.115
+120.148.14.41
 120.148.76.166
 120.148.132.233
 120.148.143.79
@@ -24425,6 +24437,7 @@
 120.155.75.117
 120.155.130.199
 120.156.108.159
+120.156.138.1
 120.156.143.223
 120.156.153.118
 120.156.221.135
@@ -25618,7 +25631,6 @@
 122.169.105.168
 122.169.108.73
 122.169.111.191
-122.169.111.224
 122.169.111.253
 122.169.113.12
 122.169.113.63
@@ -25693,6 +25705,7 @@
 122.187.229.153
 122.187.229.220
 122.187.229.228
+122.187.230.83
 122.187.233.80
 122.189.87.241
 122.189.202.4
@@ -25718,6 +25731,7 @@
 122.202.209.78
 122.202.209.227
 122.202.231.121
+122.202.232.247
 122.222.0.132
 122.222.2.98
 122.222.71.146
@@ -25747,6 +25761,7 @@
 122.224.213.66
 122.224.222.210
 122.224.226.218
+122.225.71.238
 122.225.82.168
 122.225.85.62
 122.225.87.141
@@ -26754,7 +26769,6 @@
 125.92.174.20
 125.93.55.34
 125.93.83.110
-125.94.80.1
 125.94.80.56
 125.94.80.65
 125.94.80.91
@@ -27449,6 +27463,7 @@
 130.61.226.125
 130.61.235.54
 130.93.23.205
+130.93.137.72
 130.105.41.10
 130.105.194.19
 130.148.0.0/16
@@ -27760,6 +27775,7 @@
 136.50.166.30
 136.50.207.55
 136.52.13.251
+136.52.102.56
 136.53.110.30
 136.56.41.122
 136.57.161.88
@@ -28366,6 +28382,7 @@
 139.81.0.0/16
 139.99.28.116
 139.99.62.124
+139.99.69.160
 139.99.72.163
 139.99.88.110
 139.99.124.97
@@ -28699,7 +28716,6 @@
 141.98.169.27
 141.98.215.214
 141.98.215.216
-141.98.215.219
 141.98.215.228
 141.98.215.232
 141.98.255.146
@@ -29658,6 +29674,7 @@
 149.143.46.245
 149.154.132.188
 149.167.129.236
+149.167.252.17
 149.200.187.88
 149.200.190.217
 149.202.42.143
@@ -30326,7 +30343,6 @@
 156.38.72.172
 156.38.193.245
 156.54.148.58
-156.57.243.119
 156.67.214.175
 156.67.219.34
 156.67.220.72
@@ -31788,7 +31804,6 @@
 165.22.76.55
 165.22.76.91
 165.22.82.113
-165.22.84.61
 165.22.85.217
 165.22.86.118
 165.22.88.238
@@ -32560,7 +32575,6 @@
 168.232.197.26
 168.253.78.8
 168.253.78.39
-168.253.78.84
 168.253.78.163
 168.253.78.189
 168.253.78.216
@@ -32609,6 +32623,7 @@
 170.83.232.0/22
 170.84.8.49
 170.84.23.104
+170.84.28.209
 170.84.99.210
 170.106.33.94
 170.106.38.142
@@ -32844,6 +32859,7 @@
 171.241.77.70
 171.243.14.143
 171.243.168.86
+171.243.249.118
 171.244.0.91
 171.244.15.53
 171.244.17.110
@@ -33355,7 +33371,9 @@
 175.30.205.249
 175.32.10.82
 175.32.175.228
+175.33.31.130
 175.33.105.64
+175.33.153.49
 175.33.200.236
 175.34.113.75
 175.34.120.235
@@ -34038,7 +34056,6 @@
 177.157.245.225
 177.158.171.225
 177.162.27.246
-177.162.106.115
 177.162.165.245
 177.170.20.12
 177.170.42.120
@@ -34267,7 +34284,6 @@
 178.79.189.232
 178.88.31.109
 178.88.112.242
-178.88.130.99
 178.88.160.58
 178.88.224.229
 178.88.233.198
@@ -34343,7 +34359,6 @@
 178.128.154.225
 178.128.163.135
 178.128.175.12
-178.128.184.213
 178.128.187.183
 178.128.195.38
 178.128.197.129
@@ -35785,6 +35800,7 @@
 181.120.25.8
 181.120.180.218
 181.120.226.243
+181.120.253.80
 181.121.22.7
 181.121.70.44
 181.121.91.231
@@ -35828,6 +35844,7 @@
 181.165.95.159
 181.166.3.224
 181.166.146.132
+181.167.84.197
 181.169.62.145
 181.169.230.29
 181.171.38.85
@@ -36214,6 +36231,7 @@
 182.52.201.201
 182.52.246.118
 182.53.160.230
+182.54.164.79
 182.54.238.192
 182.55.99.226
 182.57.16.58
@@ -36483,6 +36501,7 @@
 182.233.203.116
 182.236.10.214
 182.237.230.75
+182.239.146.197
 182.239.152.237
 182.239.199.61
 182.240.1.187
@@ -36528,6 +36547,7 @@
 183.17.60.165
 183.17.228.192
 183.17.231.220
+183.45.154.224
 183.47.51.237
 183.48.80.147
 183.48.122.59
@@ -36600,6 +36620,7 @@
 183.89.65.83
 183.89.138.240
 183.89.144.239
+183.89.148.179
 183.89.154.21
 183.89.188.49
 183.89.244.56
@@ -37183,6 +37204,7 @@
 185.102.217.160
 185.102.217.166
 185.102.217.197
+185.103.6.60
 185.103.24.166
 185.103.159.96
 185.103.199.27
@@ -37269,6 +37291,7 @@
 185.130.47.58
 185.130.52.209
 185.130.80.85
+185.131.227.4
 185.132.8.0/22
 185.132.36.176
 185.132.41.182
@@ -37626,7 +37649,6 @@
 185.220.101.160
 185.220.101.179
 185.220.101.184
-185.220.101.186
 185.220.101.188
 185.220.102.4
 185.220.102.6/31
@@ -37789,6 +37811,7 @@
 186.42.182.40
 186.42.192.22
 186.45.5.17
+186.45.133.12
 186.45.134.43
 186.45.254.250
 186.47.213.34
@@ -38041,7 +38064,6 @@
 186.253.75.112
 187.0.16.102
 187.2.120.20
-187.3.109.133
 187.3.141.101
 187.6.3.3
 187.7.123.50
@@ -38188,6 +38210,7 @@
 187.141.124.226
 187.141.135.181
 187.142.38.228
+187.143.3.167
 187.143.13.226
 187.143.210.74
 187.143.229.123
@@ -38436,6 +38459,7 @@
 188.79.21.190
 188.79.90.122
 188.80.42.236
+188.81.29.234
 188.81.133.7
 188.82.162.207
 188.83.232.69
@@ -38463,6 +38487,7 @@
 188.120.239.113
 188.121.122.141
 188.121.146.238
+188.123.33.79
 188.124.42.102
 188.124.228.246
 188.125.56.238
@@ -39003,6 +39028,7 @@
 189.234.160.53
 189.234.193.219
 189.234.238.15
+189.234.250.5
 189.234.251.169
 189.235.88.228
 189.235.102.71
@@ -39041,7 +39067,7 @@
 190.0.159.86
 190.0.246.7
 190.1.202.12
-190.3.5.88/31
+190.3.5.88
 190.3.5.90
 190.3.23.122
 190.4.29.203
@@ -39372,7 +39398,6 @@
 190.224.35.12
 190.224.35.74
 190.224.173.152
-190.225.7.99
 190.225.169.19
 190.226.83.13
 190.226.103.40
@@ -39397,6 +39422,7 @@
 190.249.156.163
 190.250.156.76
 190.252.16.109
+190.252.170.160
 190.252.242.69
 190.254.77.44
 191.5.125.140
@@ -40484,6 +40510,7 @@
 193.233.191.21
 193.233.191.52
 193.233.191.76
+193.233.191.80
 193.233.191.107
 193.233.191.133
 193.233.191.137
@@ -41058,6 +41085,7 @@
 197.232.98.223
 197.232.101.144
 197.234.74.57
+197.234.219.29
 197.235.10.121
 197.237.124.51
 197.237.150.214
@@ -41619,7 +41647,6 @@
 200.220.149.28
 200.225.247.53
 200.226.128.0/17
-200.229.211.50
 200.232.15.41
 200.232.36.222
 200.232.114.45
@@ -42209,6 +42236,7 @@
 203.88.191.246
 203.91.232.32
 203.91.246.163
+203.91.247.21
 203.94.92.146
 203.95.222.26
 203.95.222.237
@@ -42930,6 +42958,7 @@
 209.126.77.46
 209.126.77.166
 209.126.136.3
+209.127.24.6
 209.127.24.22
 209.127.24.42
 209.141.32.152
@@ -43139,6 +43168,7 @@
 210.195.24.10
 210.195.46.54
 210.195.135.130
+210.195.155.206
 210.196.250.246
 210.202.61.2
 210.204.182.103
@@ -43960,9 +43990,9 @@
 216.164.3.245
 216.166.135.23
 216.170.150.229
-216.174.100.70
 216.174.105.38
 216.175.18.184
+216.175.29.82
 216.177.161.216
 216.177.187.78
 216.179.128.0/17
@@ -45788,6 +45818,7 @@
 222.141.15.137
 222.143.24.172
 222.150.67.140
+222.150.90.251
 222.150.255.22
 222.153.12.174
 222.153.41.240

+ 48 - 48
whitelist.global

@@ -14,12 +14,49 @@
 62.149.128.154
 62.149.128.151
 62.149.128.160
+167.71.64.103
+188.166.34.36
+128.199.60.18
+167.99.40.163
+188.166.77.48
+178.62.198.100
+164.92.220.56
+161.35.150.89
+188.166.80.143
+178.128.246.16
+188.166.109.135
+188.166.85.49
+206.189.11.13
+134.122.56.28
+64.225.71.102
+164.92.215.172
+167.71.8.45
+206.189.2.123
+157.245.65.18
+167.71.71.43
+167.99.219.82
+146.190.228.120
+146.190.18.242
+104.248.94.94
+104.248.93.140
+134.209.80.130
+188.166.89.164
+68.183.7.251
+167.172.47.117
+165.22.196.33
+134.122.50.84
+188.166.48.29
+159.65.199.185
+178.62.242.162
+188.166.23.162
+178.62.192.199
+188.166.116.155
+167.99.40.27
 165.22.205.55
 206.189.101.48
 167.99.211.228
 159.223.237.208
 188.166.104.96
-167.172.34.27
 134.122.63.204
 159.223.218.42
 104.248.87.189
@@ -27,7 +64,7 @@
 188.166.91.196
 164.92.222.171
 206.189.0.226
-188.166.72.23
+167.172.34.27
 134.209.91.165
 188.166.28.60
 64.227.71.52
@@ -35,33 +72,33 @@
 165.22.192.54
 188.166.38.161
 188.166.41.33
-188.166.24.24
+188.166.72.23
 206.189.103.231
 104.248.207.61
 64.225.71.170
 174.138.5.216
 188.166.83.149
-142.93.131.113
+188.166.24.24
 161.35.87.129
 167.71.79.14
 165.22.199.90
 161.35.153.110
 161.35.159.44
+142.93.131.113
 161.35.95.211
 165.22.198.217
-167.99.212.195
 157.245.67.209
 167.172.45.223
 159.223.225.41
 206.189.110.255
 167.172.38.137
-134.122.60.110
+167.99.212.195
 161.35.93.220
 167.99.42.32
 161.35.144.29
 188.166.68.157
 159.65.198.26
-167.71.11.73
+134.122.60.110
 157.245.78.190
 164.90.206.223
 174.138.2.121
@@ -69,13 +106,14 @@
 206.189.6.50
 178.62.201.144
 64.225.71.115
-64.227.75.231
+167.71.11.73
 146.190.225.192
 167.71.73.171
 178.62.247.86
 104.248.196.207
 134.209.93.118
 178.62.238.76
+64.227.75.231
 178.62.219.148
 206.189.99.25
 128.199.48.140
@@ -85,15 +123,14 @@
 188.166.21.67
 167.71.76.184
 188.166.126.240
-167.99.43.70
 142.93.134.189
 134.122.51.143
 161.35.157.15
 178.62.204.160
 161.35.88.180
+167.99.43.70
 178.128.254.180
 178.62.229.70
-188.166.2.236
 188.166.36.213
 161.35.155.65
 178.128.251.154
@@ -101,6 +138,7 @@
 164.90.194.17
 188.166.70.107
 178.62.222.164
+188.166.2.236
 188.166.46.90
 178.128.254.64
 167.99.46.183
@@ -139,44 +177,6 @@
 178.62.240.195
 167.99.216.203
 128.199.53.157
-164.92.220.56
-167.71.64.103
-188.166.34.36
-128.199.60.18
-167.99.40.163
-188.166.77.48
-178.62.198.100
-134.122.56.28
-161.35.150.89
-188.166.80.143
-178.128.246.16
-188.166.109.135
-188.166.85.49
-206.189.11.13
-167.99.219.82
-64.225.71.102
-164.92.215.172
-167.71.8.45
-206.189.2.123
-157.245.65.18
-167.71.71.43
-146.190.228.120
-167.172.47.117
-146.190.18.242
-104.248.94.94
-104.248.93.140
-134.209.80.130
-188.166.89.164
-68.183.7.251
-165.22.196.33
-134.122.50.84
-188.166.48.29
-159.65.199.185
-178.62.242.162
-188.166.23.162
-178.62.192.199
-188.166.116.155
-167.99.40.27
 104.248.92.34
 159.223.4.127
 188.166.23.55

File diff suppressed because it is too large
+ 631 - 828
yoroi_malware_level1.dns


File diff suppressed because it is too large
+ 1233 - 1358
yoroi_malware_level2.dns


+ 183 - 260
yoroi_suspicious_level1.dns

@@ -9,6 +9,189 @@
 # Category        : Suspicious
 # Confidence      : 10
 #
+centralmax.xyz
+facebook-issues214.tk
+facebook-issues215.tk
+facebook-issues213.tk
+bafybeiflzxbohzfxey2c2kwrfp5lmcc4wl4dy23lghikkrahpbxnlseun4.ipfs.nftstorage.link
+facebook-issues218.tk
+facebook-issues216.tk
+facebook-issues220.tk
+facebook-issues234.tk
+facebook-issues219.tk
+facebook-issues235.tk
+facebook-issues221.tk
+facebook-issues232.tk
+facebook-issues233.tk
+facebook-issues212.tk
+khgfhejd.tk
+usbbbps.com
+kingkuna.com
+mybillupdate.com
+mkj-aq.top
+connect-microsoft.com
+mtib0.info
+1aa82c50-2aa0-428d-bb5c-47394393d9cc.id.repl.co
+form-hype-squad.gq
+amazon-shcpping.com
+dscsordgfta.xyz
+mcoxo-3iaaa-aaaad-qcvba-cai.ic0.app
+nectarine12198028.brizy.site
+squuareup.online
+bryansnyderloans.com
+bankofameric-7fb08.web.app
+folder889849894040-e89uiekje.web.app
+folder788983is38i-3933.web.app
+folder737873u0e0-89ui3.web.app
+f2ax5-jqaaa-aaaad-qcutq-cai.ic0.app
+forms-hypeteam.gq
+forms-hypesquad-invite.com
+www.inc7f-securejp.com
+fundacionmovimundo.org
+unusual-new-attempt.com
+f0684166.xsph.ru
+aprackspace.serveuser.com
+www.nnbc.online
+hel.biz
+helbiz.biz
+donyeasboutique.com
+connect-us-en-support-jpmorgon-chase.4dq.com
+www.amazo-jp.uuajfi.top
+payee.cancellation928.com
+dapps-live.web.app
+strawberry12201635.brizy.site
+reports-dev.totalsales.com
+winlogic.org
+www.pending-new-manage.com
+jall.zosnrdysb.cyou
+pm22.live
+www.apsrackspace.serveuser.com
+capital05one.com
+modified-daniel-complaint-copper.trycloudflare.com
+autoupdatefailofficeuseradminctrladmin.pages.dev
+apsrackspace.serveuser.com
+realizfatura2via.com
+vk-fest.org.ru
+lechatblancboutique.com
+tunnelcb.com
+steamcommunityzivc.top
+qssi.link
+dcordgift.xyz
+apsrackspace.serveusers.com
+amazonma.co.jp-shop.mxase.top
+locate-depot.com
+leverinbenrcfg.shop
+happy-poincare.62-210-119-210.plesk.page
+web8112.web07.bero-webspace.de
+bafybeiftzohkrib6r53fopstlrvjezrwqnsty5yifswepvaxtzphi3ctfa.ipfs.dweb.link
+www.justarrangethewords12phrase.draydns.de
+bafybeihg5qtqb5nuvcoa4rpb5adwfjfmeuxbrjumbi2ftawdy6nrsyikou.ipfs.nftstorage.link
+amazon.jp-on.top
+microsofterro.xyz
+helbiz.co
+helbiz.bike
+greenvisionacquisition.com
+helbiz-motor.com
+helbigo.com
+pbft.link
+datiot.com
+amazon.works.ga
+saison.klsdfnl.com
+solor.com.uy
+steamcommucnity.com.ru
+my-eeaccount.com
+simply-treating-institutional-mpg.trycloudflare.com
+sucursalpersonas.transaccioness.soldesanges.com
+home.barclbn.com
+picnicsbypavi.com
+www3-53rdservice.changeip.us
+validate-wallet.in
+www.personasvlle.com
+hype-squad-vote.gq
+bimcellliaysems.com
+www.bmcellcimsewmem.ga
+process-review-channel.glitch.me
+amazon-mon.xyz
+proposal.putabygo.workers.dev
+8c6e6087-1f75-498f-8f9b-4dee31d26ebb.id.repl.co
+www.discordpolicy.repl.co
+www.rakuten.weihaimba.com
+access-decline-payment-help.com
+realizemodasfinnanceiirass.com
+mtbsecure.glenroad.com
+3mm-ttb.vercel.app
+346jnw4s46s35h2wty.gq
+80365.bet
+ajudaliiive.com
+amazon.fazjggv.cn
+arbeefi-6fdca.web.app
+beta-teams-developers.ga
+daleemeen-61391.web.app
+etc.narnoo.com
+events-hypesquad-join.ga
+fleet-net.co.uk
+hypesquadeventspart.com
+inf0rmations-ver1fication-order-apps-785319421.opensaesauea.com
+lookinqatar.com
+nordiccave.co
+noseoul.com
+onedrive022.web.app
+online.activate-au.com
+outlook-office-50793.web.app
+pdf.file-documents.workers.dev
+rbspro-e9564.web.app
+share-1657f.web.app
+votreactivation.monsystem-enlignerapport.com
+vsup.czv0vcp2cq895xjqvdzfnr.tekyolbilim.com
+wallconect.com
+www.trustwallet-verify.newdmain.com
+ysbz.ml
+bmykcllil.com
+dxo.quest
+importvalidator.org
+ionos.zimapp.workers.dev
+jall.yuelsiokeanlsuomsm4.cyou
+lendars.shaharziv.com
+mahalle.club
+pushsentnow.gq
+support-hypeacademy.gq
+apexpixelated.com
+bt-104585webflow.weeblysite.com
+bt-101194.weeblysite.com
+access-reject-payment-help.com
+docusign.mosaik-travel.com
+petra-ordern.de
+www.personasv.com
+dovcbcdfjd.weeblysite.com
+svllesocios.com
+fdjnhbvgjsc.weeblysite.com
+declined-payment.com
+5th3rd-oh.com
+uniswap-v4.com
+aib-user.com
+nw-cwonlinesecuremessagingservice.on.fleek.co
+bafybeic5c4ah7ur3sbqrkxo4vuhife3jgffs2fzk4xkcb5gpow7hrrfo7q.ipfs.nftstorage.link
+itie.sn
+bafybeigxncl6wojhkzofmdbxkbp5xy6hxh4ulna7d2ldiveato4fuabpci.ipfs.nftstorage.link
+bafybeiau3yx4kc54yejhbcdj72njk2lvo57ikookj5zt6jxd6anukdgffu.ipfs.nftstorage.link
+amazon.cojp.club
+www.www3-53rdlogin.changeip.us
+document.project-shared-adobe.workers.dev
+www.mtbsecure.dgalaranch.com
+tozzclean.click
+xn--app-penea-86a16i.com
+instagram.helpgravity.com
+www.amazo-n.jp-uh.top
+cold-king-e857.marilyn.workers.dev
+united-states-moc-gov.com
+f2f8zd.csb.app
+card558.xyz
+mtbsecure.dgalaranch.com
+discontinue-submitted-amx.com
+www.amazonfj.ml
+bafybeiegrefcxhme2af4mjfdak7md2qsa4bhccwssssa5pgbojacgixpmq.ipfs.nftstorage.link
+ffpan-d3.cf
+inbdshop.com
 amuledesd9834.web.app
 quote53454.web.app
 quoiytrr44.web.app
@@ -19,10 +202,8 @@ ruuel-bbeure-09.web.app
 qwweewer67.web.app
 qwyetr72634.web.app
 hechangedeverything.org
-share-1657f.web.app
 www.inc88f-securejp.com
 www.inc77f-securejp.com
-www.amazonb.gq
 www.infoyoungroyaltygroup.com
 gyvkc-zaaaa-aaaad-qcuyq-cai.ic0.app
 www.inc0f-securejp.com
@@ -41,7 +222,6 @@ kjrv3-hyaaa-aaaad-qcktq-cai.raw.ic0.app
 mtbsecure.online.serumcantik.online
 business-page-appeal-12627-12.web.app
 346jnw4s46s35h2wty.ga
-346jnw4s46s35h2wty.gq
 www.jummymarker.shop
 elliech.life
 romantic-colden.62-210-119-210.plesk.page
@@ -123,70 +303,6 @@ sipastikbimcell.com
 secureameli.fr
 bafybeie4z5bgyvlgozv3o7qqu244gattp3e7vzv3xbmt2l5gszh2w2alzy.ipfs.nftstorage.link
 bys-santan.byssantan.repl.co
-3-network-confirmation.glitch.me
-3mm-ttb.vercel.app
-account.sansumg.world
-amazon.fazjggv.cn
-beta-apply-for.gq
-beta-teams-developers.ga
-bgmikaal.royalepassmaxx.cyou
-bmykcllil.com
-bwmcellaksam.com
-cfrimatiosindentityspageshelsp.co.vu
-daleemeen-61391.web.app
-disassistant.com
-dxo.quest
-easskg.tk
-etc.narnoo.com
-ffpan-d3.cf
-join-events.ga
-lendars.shaharziv.com
-login-anz-access.visitparramatta.com.au
-lookinqatar.com
-mint-sketchyapebookclub.com
-onedrive022.web.app
-pdf.file-documents.workers.dev
-subscribe-to-hypeteams.gq
-support-hypeacademy.gq
-update-doc.list-project-shared.workers.dev
-ups-usatool.com
-votreactivation.monsystem-enlignerapport.com
-www.aib-login-review.com
-www.trustwallet-verify.newdmain.com
-www.x836594.com
-xnmpfm.top
-ysbz.ml
-80365.bet
-apply-for-hypeteam.gq
-arbeefi-6fdca.web.app
-atthelpdesk.co.vu
-discstatistic.com
-domainregisters.co.za
-events-hypesquad-join.ga
-fatuhip.xyz
-importvalidator.org
-inbdshop.com
-inf0rmations-ver1fication-order-apps-785319421.opensaesauea.com
-jukfqvd.cf
-mahalle.club
-nordiccave.co
-noseoul.com
-outlook-office-50793.web.app
-pagesuportaccountsidentitycentersasd.co.vu
-paxful-vendors.com.360cubes.com
-pubgspin75.dubya.net
-pushsentnow.gq
-rbspro-e9564.web.app
-runescapecaptcha.cf
-securedconnecttool.com
-streamcommunnity.net.ru
-sveltesparklingproduct.javier2022.repl.co
-telifitiraaz.com
-usaups-business.com
-wallconect.com
-wellsfargocustomerloginerror.xyz
-www.pubgspin78.dubya.net
-yellow-wind-3732.on.fleek.co
 discrod-egift.com
 justarrangethewords12phrase.draydns.de
 voteplus.shop
@@ -212,8 +328,6 @@ ff.lienquan-giftcode-garena.com
 walletresolveserver.com
 zugangsdaten-netzwerk.top
 nice-moss-059dd8003.1.azurestaticapps.net
-online.activate-au.com
-cool-dawn-8d7d.officeselect.workers.dev
 fipdrexxo.com
 q-cgg-e.top
 sanshin101.com
@@ -230,7 +344,6 @@ www.amozon.co.g5l9ls.cn
 form-hypesquad-invite.gq
 new-unusual-request.com
 gleneagleschurch.co.uk
-fleet-net.co.uk
 mit1bonline.info
 gu-global.one
 tph786.com
@@ -301,7 +414,6 @@ www.amazon-jp.xytdov.top
 learntousechopsticks.co.uk
 7804.gazelleoil.beingmurshad.com
 lmcbodywork.co.uk
-hypesquadeventspart.com
 www.amazon-co.meislai.top
 www.amazo-n.jp-ui.top
 anzid-aus.com
@@ -314,14 +426,6 @@ gatesgreen.co.uk
 scaryhiddenreentrant.geemandine.repl.co
 gerqt-oaaaa-aaaad-qcu2q-cai.ic0.app
 free.bgmirewardsfree.xyz
-ajudaliiive.com
-discordgifts.gq
-hypesquad-testers.ga
-ingresosvsocios.com
-ionos.zimapp.workers.dev
-jall.yuelsiokeanlsuomsm4.cyou
-bafybeicjm4ppw5jvcpdisyd4bhucqd3n4wlk2il6xdtimol4p3zoqnu5ha.ipfs.dweb.link
-bafybeiegrefcxhme2af4mjfdak7md2qsa4bhccwssssa5pgbojacgixpmq.ipfs.nftstorage.link
 bjjmceellxxd.com
 forum-twt.epizy.com
 checkpoint-20000058795346.tk
@@ -465,7 +569,6 @@ bznzimicllel.com
 get-app.dev
 hjuikk.com
 infosetspinmaterial.com
-www.coinbase-support.cimigen.org.mx
 keyupdatestonehompagebnk.dynvpn.de
 keyupdatestonedsdbanh.dynvpn.de
 waucampt.com
@@ -503,7 +606,6 @@ pubgshun.com
 accounverifytoday.discoververifysekoko.workers.dev
 check-info-session96.ga
 hospital-comparative-includes-mae.trycloudflare.com
-vsup.czv0vcp2cq895xjqvdzfnr.tekyolbilim.com
 the-hypesquad-on-application.com
 joinhypeteamnow.com
 jdjcecdcdcidocni.verification.didirrbrbe.gracerockfarmsltd.co.ke
@@ -559,7 +661,6 @@ telenorgroup.info
 itaban9889.atspace.cc
 5third-secure04online.dnset.com
 lwaybareste.c1.biz
-coinbase-support.cimigen.org.mx
 acceso-cuenta-arg.com
 p7lsz4.cmep-ci.com
 qmauh-vyaaa-aaaad-qcq5q-cai.raw.ic0.app
@@ -644,7 +745,6 @@ www.airbnb.chrisphotographs.com
 meta-user.io.web8102.web07.bero-webspace.de
 www.aumygov-services.com
 pubgspin89.dubya.net
-ghfcghf.com
 exceptional-terrace-par-expand.trycloudflare.com
 support-flndmyid.com
 update.santander.uk.ref-7472829.com
@@ -1107,13 +1207,9 @@ skinfreemlbbterbaru.tterbaru-2022.xyz
 apply-beta-register.gq
 apply-hypeteam-register.gq
 myinfoupdate.com
-form-hypesquad-svents.com
 grubwhatsapp18.tterbaru-2022.xyz
 zain-kuwait.com
-becu8unlock.my-vigor.de
-kunden-secure-info.online
 official1990.xyz
-onlaiarrrbovilleen.net
 ace-documents-adsl-infection.trycloudflare.com
 goodkit.net
 serc-03mtb.serveirc.com
@@ -1295,7 +1391,6 @@ support.bitvestnetwork.info
 bafybeia2qwbh2pmzlrqswpi643uy7kmqin7dqc4c4oixsmdcmmcrcqrc4e.ipfs.dweb.link
 daapsnetwork.live
 www.managelogon-attempts.com
-assetsmint.co
 www2.aenosuia.cyou
 mediaforticket.ml
 www2.aenoseau.icu
@@ -1353,176 +1448,4 @@ www.smartauthrestore.com
 www.vincilafinale.com
 copyrightcenter-feedback.ml
 resparked.co
-foldr78883893s0-siusjkkjo3.web.app
-documnet3678iu-s8saakkwi.web.app
-meta-business-settings0120015.web.app
-hyperfuturosemanal.com
-foconopagamentohip.xyz
-midasbuysport.blogspot.ba
-midasbuysport.blogspot.am
-midasbuysport.blogspot.ug
-midasbuysport.blogspot.sn
-midasbuysport.blogspot.cl
-loginfor-events.gq
-midasbuysport.blogspot.com.mt
-hyperbrasilonline.com
-midasbuysport.blogspot.bg
-www.coubanne.com
-icscards-nl.nl.service.online-identificatie.ckinternet.com
-consensus-florist-delivered-mac.trycloudflare.com
-exoduswallet36.mypixieset.com
-deactivate-link.com
-bv7ycgflctlxoom014iop2e45afd59h0.ui.nabu.casa
-facebook-issues68.tk
-kmctartskuttippuram.org
-amareshabeautysalon.co.uk
-tan-update.de
-recoverysafetyaccount.co.vu
-lkxejtio9rty-ioesu5ioqaj.ga
-d0m41nb9h3ru1.co.vu
-acess-for-hypeteams.com
-serversimplified.com
-hype-invitation.gq
-mtbankonlineservices.seyari.co.ke
-hypesquads-modregisters.com
-belize-he-stakeholders-matched.trycloudflare.com
-ondrvshrpnt.on.fleek.co
-bafybeic4comq3krmg3eaxr4cssdgcinknuckpliy3yzj2dsyxbkmpft7zi.ipfs.dweb.link
-filname-pool.hostfree.pw
-www.login.carterforestsproduct.com
-hype-invite.gq
-littlewinsproject.org
-mighty-furry-distance.glitch.me
-apply-for-hypeteam.com
-acess-hype-events.com
-www.365-customercare.com
-igformmetalive.tk
-www.umiswap.de
-igformmetalive.cf
-get-in-hypesquad.com
-igconfirmform-meta.gq
-igconfirmform-meta.tk
-www.helpformmetalives.gq
-www.helpformmetalives.ml
-chat-whatsappp-cnm-bqnd4rif7fu2ohfkli8min.net
-mtbankonlineservices.com
-www.helpformmetalives.ga
-helpformmetalives.cf
-3dsmith.co.uk
-cimbmalaysia.top
-badgecenter-form.com
-payee.cancellation688.com
-santander.loginreviewal.guide
-ie-open24.net
-web8056.web07.bero-webspace.de
-crfimationsidentitypagessuggestuois.co.vu
-amazon.co.jp.0ew02k.cn
-elorscollection.com
-cfrimastionspagesshelpsidentity.co.vu
-support.att0n1ine.workers.dev
-icscards-nl.nl.service.online-identificatie.infotecvs.com
-icscards-nl.nl.service.online-identificatie.zagoglass.com
-bgmiind.com
-hjjp.co.uk
-jacobstoebner.com
-frommetaservices.xyz
-4n0004f7f7f.operatingsystemu.com
-azureoauth365.elementor.cloud
-svsociosweb.com
-vftraderindo.com
-hipersua-fatura.com
-realizasolucoesfinanceiras.com
-link-mps.me
-juliporero.byethost17.com
-eresnuestroganador.liveblog365.com
-www.st-bet.com
-hilton-distinction-shops-levy.trycloudflare.com
-tensenloks.org
-f0687090.xsph.ru
-moldova-chicks-worcester-obviously.trycloudflare.com
-private-pdf.iteroageme.workers.dev
-07lwsolucoes.xyz
-financeapp.xyz
-swedbank.lt-patikrinti.com
-signup-hypemember.com
-aftermarket-ups.com
-arebimcell.com
-promotionsjoliettesubaru.ca
-meta-recovery.info
-hairbowsandcornrows.com
-return-events.gq
-siteacq.co.za
-metamask.io-get-verification-auth.ga
-personasvonline.com
-xn--pn-cke-itad.com
-www.aib-online-update.com
-free-facebookaccounts.blogspot.am
-pubgspin79.dubya.net
-aeon.co.jp.miky.top
-free-facebookaccounts.blogspot.co.ke
-lamboxsuit.com
-steamcommunitypia.top
-apply-events.ga
-old-lt-biol-pursuit.trycloudflare.com
-fig12122052.brizy.site
-bjmcelleeodemelexr.com
-bjjmcellodemeleri.com
-igconfirmform-meta.ga
-bjmcellturkiyee.com
-loving-joins-context-relatives.trycloudflare.com
-gymbudz.net
-connect.ico-sale.com
-www.mail-outlookclientportal.imantia.info
-discdetails.com
-www.opensee-marketplace.com
-register-citid.com
-320101.tk
-verifyinfo-sessio137.ml
-allinonecases.com
-disctotal.com
-arundell-alexander.co.uk
-lift-brunei-cyber-arbitration.trycloudflare.com
-lsrael-post.com
-document-project-view.deendfoush.workers.dev
-config-outlook.pages.dev
-teq-ex.co.uk
-looksrare.pw
-invite-events.gq
-join-hypesquad.ga
-give-hypesquad.prismotools.xyz
-login.prismotools.xyz
-support-hypeteam.ga
-rubensruckus.ca
-new-register-hype.com
-form-hypesquad-test.gq
-bafybeibmwi2wudxzarz4d23pmct5ahaypxxr73gwzculeqoczn62fki3gi.ipfs.nftstorage.link
-xeroxfx.com
-superioroasis-3be49.web.app
-office365.sydneyboatshow.com.au
-pubgspin78.dubya.net
-matflaztd.com
-shiny-wildflower-9214.on.fleek.co
-pancakewap.ml
-bafkreifxuvaubyccyolneitchfdqkvqzkibgniczocbn64mdig4or4wcyi.ipfs.nftstorage.link
-signup-events.gq
-graciousmediocrelistener.milikesecadobe.repl.co
-words-lenders-chen-looking.trycloudflare.com
-donated-abandoned-space-moss.trycloudflare.com
-exmykjb.tk
-www.x836590.com
-event-tothemoon.space
-i-connect.shop
-conrinmatiospagessidentitys.co.vu
-jukfqvd.ga
-b1mclltar1fecinizzz.gq
-crimson-frost-1593.on.fleek.co
-www.xx8365901.com
-www.x836591.com
-signrepository.org
-urge-coordination-in-lord.trycloudflare.com
-tpusa-citrix.com
-muralhaconsultahip.xyz
-servieskontenservices.xyz
-tournamentpbgsquad.co
-icscards.nl.service.online-identificatie.itfosters.com
 mycrashed.tech

File diff suppressed because it is too large
+ 200 - 198
yoroi_suspicious_level2.dns


Some files were not shown because too many files changed in this diff