root hace 3 años
padre
commit
a284d04a2a
Se han modificado 4 ficheros con 4853 adiciones y 4601 borrados
  1. 758 720
      yoroi_malware_level1.dns
  2. 3684 3345
      yoroi_malware_level2.dns
  3. 173 295
      yoroi_suspicious_level1.dns
  4. 238 241
      yoroi_suspicious_level2.dns

La diferencia del archivo ha sido suprimido porque es demasiado grande
+ 758 - 720
yoroi_malware_level1.dns


La diferencia del archivo ha sido suprimido porque es demasiado grande
+ 3684 - 3345
yoroi_malware_level2.dns


+ 173 - 295
yoroi_suspicious_level1.dns

@@ -9,10 +9,179 @@
 # Category        : Suspicious
 # Confidence      : 10
 #
+transparancycreatormediapageslink.co.vu
+halpcantre254875124525875.co.vu
+id-chase.com
+page-infringement16624.web.app
+verifyholders.com
+paypal-resolution.net
+document.shared-reconnects.workers.dev
+discrods-egift.com
+tiny-river-7039.on.fleek.co
+amazon-b.live
+collect-s19.com
+aaapp.cc
+bafybeib42w24fvrjuqd4vdcbankjjvx5fj5zaanmwfraodxvetyvzvhvra.ipfs.dweb.link
+crackgunskins.xyz
+amazcbn.mkasdad.shop
+patient-darkness-4573.on.fleek.co
+degurpubg.com
+akumexcloud.com
+jazzy-basalt-bugle.glitch.me
+a0664249.xsph.ru
+a0664243.xsph.ru
+hypesquad-tester-academy.com
+wayuai.com
+allskinscracked.xyz
+tokenconnectfixer.com
+page-repair-service.com
+domainsco.myartsonline.com
+llbbvanetcash.mx-ask982.casa
+natwest.auth-user-10.net
+llbbvanetcash.mx-aosj39.casa
+shi.harmonizeyourdata.com
+autoatencion-web.web.app
+guntyahofa.jeroftradwepombaviawe.link
+fiatermsnua.minjetriomolagraciusferto.link
+onlinedapppsrestore.com
+syncsoluctions.xyz
+walletv2-dapps.net
+amazhbn.amasddaz.shop
+indexchaincod.com
+dhl.thlyh.com
+amazon.securitycenter.homes
+metamask.io.web7783.web07.bero-webspace.de
+sparkasse.online-umgebung.cc
+ddockeallbern.blogspot.com.by
+metaserviceform.ml
+hypesquad-reedem.com
+www.jp-amazon.inn-co.top
+bafybeiaawdaqabhlpvsz2hpzpxaft7xqms5donrdqtl4aszp4sffsk57ra.ipfs.dweb.link
+americafirstcu.smogotv.com
+departmentofrevenue-casefile.sitorueda.com
+paypal-resolution.org
+kinxstrike.com
+impots-gouv-authentification.com
+skinscrackall.xyz
+hendumc01.bitbucket.io
+official-form-hypesquad-events.com
+aplication-hypesquad-official.com
+key.com-mobile.ransomthemoors.com
+m54af8.webwave.dev
+y3s2ye.webwave.dev
+h5brzd.webwave.dev
+alternatifklinik.com
+viewofferpro.myvnc.com
+secured-9.com
+metamask-onlineconnect.com
+quibghpqos.web.app
+irs-tax-page-refund.com
+orange-credit-2254.on.fleek.co
+hypesquadteam-exam.com
+hypesquadteam-redeem.com
+fblogin.pythonanywhere.com
+20483-3265.s1.webspace.re
+aeon-udkxnher.shop
+suafaturahiper.tk
+www.hiperabrilajuda.com
+join-grup-whatsapp-berbagi-vidio-viral-2022.viral-terbaru.xyz
+pubgspin.ns01.info
+api-2space-ap.web.app
+karafuru-airdrop.com
+moihe.com
+nhsapply-covid-pass.com
+walletsrectificationdapp.com
+www.securelinkedin.treeduk.com
+5e-zhesucn.com
+anyapiliang.co.vu
+securedvalidate.support
+uhrrktirgt.web.app
+buynewtoys.com
+instagram.pakcyberz.com
+huliqianbao.com
+diascomagaiu.com
+postofffice-missed.com
+youknowyourfromtexaswhen.com
+walletautorization.info
+inn-co.top
+amuzon.jp.cc.an6oa3.shop
+thlyh.com
+hypesquadteam-moderators.com
+starfish-consultants.com
+webin1.xyz
+banana10782783.brizy.site
+reaload-web.com
+cflaxii.com
+wypadek-gwiazdyttv.pl
+acesseitaucard.com
+nagranietv-wypadek.pl
+my-gr.xyz
+metamask-verifyprocess.com
+pancakeswapv3.me
+instantdexverifications.com
+provinces-dodge-parenting-titten.trycloudflare.com
+deborah-currency-diego-wallace.trycloudflare.com
+alextsaiisanadult.com
+threedotbox.com
+discordcdn.co
+webin3.xyz
+next-group.biz
+nikhilsharma.biz
+meta-reactivate.io
+renew-moderators-academy-events.com
+swarggaming.xyz
+assistenza-webonline.com
+bafybeifhy2ovqgfoulqfvbsr55e3ecs4grn5eb3iy7fp6g2xe4gicezjly.ipfs.dweb.link
+jacob-comments-improving-expanding.trycloudflare.com
+authenti31.temp.swtest.ru
+broad-disk-a0ef.mailswith0452.workers.dev
+8d65bebf-11c5-410c-8d8f-8d6127fa6320.id.repl.co
+amazan-co-jp.aonoca.info
+jp.mercari.iexgrsw.xyz
+pancakeswap-finance.cf
+companiaamericar.xyz
+bakamericae.xyz
+amazan-co-jp.sondxca.info
+www.craigslist.bond
+www.danabak.bond
+pancakeswap.network
+middleeast-aircargo.com
+santander.co.uk.accessolb.com
+withered-forest-0912.fredwad.workers.dev
+ajuda-cliente.xyz
+amazdgn.mk021asd.shop
+usps-tracking-international-package.com.goldpliseperde.com
+www.usps-tracking-international-package.com.goldpliseperde.com
+nghf.fhiue.xyz
+mastercard.ausocusen.com
+paypal-account-setting.org
+arnazom.cn.jp.aonoca.info
+arnazom.cn.jp.sondxca.info
+aeon.co.osucnmse.com
+www.wallet-websync.com
+esports-xzoo.com
+myalpha-b44fe.web.app
+banditcoil.augeprint.com
+consumidores-en-lines.web.app
+owa0039300304.web.app
+pdf-27e04.web.app
+sunoffice4.web.app
+sunoffice1.web.app
+sunoffice3-87706.web.app
+sunoffice2.web.app
+suncomcast5.web.app
+netflix-klient.com
+aeon.co.ncusmeua.com
+grb13.lallyformation.com
+www.au-asceon.pmmkhmp.cn
+business-page-appeal-153262-21.web.app
+business-page-appeal-16343-023.web.app
+nacionalcrfi.banconacional24.repl.co
+www.au-acoen.pcebzge.cn
+www1.aenocens.icu
 installing-inappropriate-dvds-stomach.trycloudflare.com
 edmonton-notebooks-gary-tcp.trycloudflare.com
 revealed-solaris-nothing-exit.trycloudflare.com
-pay-optus.com
 independently-gilbert-facility-medieval.trycloudflare.com
 wagnerandwilliams.com
 contentremoveclient.com
@@ -80,7 +249,6 @@ moderation-signatory.com
 bimcellcf23nisan.com
 b1mmcellerdi.com
 alert-findmyus.com
-walletsrectificationdapp.com
 www2.aenocecs.icu
 www2.aenocers.icu
 www1.aenoccus.icu
@@ -97,12 +265,7 @@ bokeplinktrbru.bbkan.xyz
 chrome-extension-nkbihfbeogaeaoehlefnkodbefgpgknn.nest-moonbird.xyz
 hypesquad-house-events.club
 creativelygreat.com
-joancornella-fwenclub.com
-moihe.com
 jeeeyee.net
-securedvalidate.support
-uhrrktirgt.web.app
-uwygoi546.vip
 spk-push.net
 cool-credit-8183.on.fleek.co
 paypal-account-setting.com
@@ -137,7 +300,6 @@ grupbokep-terbaru-viral-2022.eventffgarenaclaim.com
 grup-vcs-free.whatsappid.xyz
 invite-for-hypesquad-team.com
 www.web7809.web07.bero-webspace.de
-aglsicropc.web.app
 metamask.manyuak.com
 login-ourtime.members-datings.workers.dev
 new-programs-hypesquad.com
@@ -175,15 +337,10 @@ www.syncdappsonline.com
 retrievalplanet.com
 www.282489753185907.xyz
 discord-hypesquad-register.com
-grb13.lallyformation.com
-rs-shared-0utl00k-as.web.app
-rs-shared-0utl00k-st.web.app
 suica.oiiseuhsewa.com
-yjtjh.urgpibryr.cn
 inof-auoneo-jp.krutiaj.cn
 kontoservice-sparkasse.de
 sessexp.web.app
-www.securelinkedin.treeduk.com
 fac3book.glitch.me
 office365notify.com
 forms-connects-academy-new.com
@@ -290,17 +447,13 @@ www.s.aenoccs.icu
 www.c.aenoces.icu
 mainnetconnectdefi.net
 opensea-official.com
-learnewwordsokd.com
 www.au-acoen.svvfkhv.cn
-www.au-acoen.pcebzge.cn
-www.au-asceon.pmmkhmp.cn
 formulary-events-hypesquad.com
 whatsapp.grub-18.xyz
 office365.ridgewaytechnology.co.uk
 dpd-courier.co.uk
 pubgtournamenonline.com
 pantafives.com
-www1.aenocens.icu
 swissarmybrands.ch
 www.test.bayoucitybadges.org
 wcfsbelgrade2018.com
@@ -342,7 +495,6 @@ macuonlinesmsverlfy.myvnc.com
 trustwallet.mytoolkit.ir
 verif-sher.uieevdg.workers.dev
 lnstgrm-post.com
-anyapiliang.co.vu
 uspsdiscreeteslogistic.com
 jp.mercari.jqdnkhr.xyz
 servicea39.temp.swtest.ru
@@ -352,7 +504,6 @@ toketiga.com
 activacion-consumidores.web.app
 luckyspinmaterial.net
 post-usp.com
-misty-band-9f1c.driveloadve.workers.dev
 yt.pamj.cf
 mudace.xyz
 my-gmail.ir
@@ -367,11 +518,6 @@ www.facebook-com-messenger.ml
 eu-pushtan.online
 8bvanetcash.mx-ask2e.casa
 nestilos.com
-business-page-appeal-153262-21.web.app
-business-page-appeal-16343-023.web.app
-discordes-gift.com
-karafuru-airdrop.com
-plantvsundead.billtimely.com
 business-page-appeal-1256126-2.web.app
 business-page-appeal-125132-26.web.app
 business-page-appeal-1253692-2.web.app
@@ -390,7 +536,6 @@ mcglrn.com
 harmonizeyourdata.com
 sumbulkaio.smogierthuinumasikalo.link
 palaranghui.fuilostrherimonuashio.link
-nacionalcrfi.banconacional24.repl.co
 grub-bokep-viral.teerbaaruu2022.cf
 vloanteribo.mayustirlogahitubunai.link
 jioewigehp.cyou
@@ -407,6 +552,7 @@ discgift.gq
 bondgroupe.com
 moderator-academy.school
 login-microsoftonline-hrresolutions-secure-mail.on.fleek.co
+fbfuerpolitik.de
 aunsac.com
 fbcasereview1002349875.com
 www.linkedinaccount.ttmilitaria.com
@@ -550,10 +696,10 @@ macusecuredverlfy.myddns.me
 amenable-dark-spectroscope.glitch.me
 www.au-acoen.yzvyxyy.cn
 axiesbox.com
-nhsapply-covid-pass.com
 smartcsv.com
 axiemarkets-validation.com
 moneytechconsulting.co.uk
+ssh03-4rts98ft24h.xyz
 www.securelinkedin.melloinfortec.com
 mainonlinesolution.com
 www.web3auths.com
@@ -640,7 +786,6 @@ bmcellgvnli1.com
 www.edemhomes.com
 bxmsell.com
 bimcellleonlineekontor71.tk
-5e-zhesucn.com
 www.bankofamericallc.com
 www.dapps.activateaccess.com
 www.au-caeon.zbcosyw.cn
@@ -708,7 +853,6 @@ excel-2.on.fleek.co
 ekl-neett.xyz
 business-page-appeal-126430932.web.app
 business-page-appeal-12569820.web.app
-api-2space-ap.web.app
 pzkorea.com
 pwkorea.com
 pykorea.com
@@ -827,92 +971,14 @@ inof-auoneo-jp.qnqkbcpv.cn
 inof-auoneo-jp.kbehqdu.cn
 solicituddeampliaciondecreditope.site
 metamask-validation.179-43-176-123.plesk.page
-agimobiliare.ro
-business-case012267.web.app
-konfirmasigratisongkir-lazada.com
-reservation-caution.fr
-woliot-pejygem.com
-polygones.us
-violationforappeal.ml
-mmprevencion.com
-walletpolygon.exchange
-support-auth365onlinebanking.com
-2050logistics.org
-dappslaunch.com
-cfxaian.com
-breaklambodonw.com
-bestokn.online
-syncappconnect.com
-authdsappsfixed.com
-cresprotocol.digital
-wallsconnet.com
-supportwebdefi.com
-unircgen.com
-goodlovee.com
-madstsvvdfocxxxm-6079492.jcloud.kz
-fixitserver.com
-uozmart.com
-alldappsconnection.com
-discord-unblocked.com
-pancake-swap-finance.net
-dapp.chainserverconnect.org
-142sandpiper.com
-long-snow-5316.on.fleek.co
-portal-caf.com
-www.postofficeupdate-tracking358258585.gfffcdujhyopukr.com
-www.freefire.member.garenaa.vn
-moderators-forms-hypesquad-events.com
-concertifyonwall.org
-payee.87review.com
-walletdappnetwork.app
-facebook-posts.net
-arlzdy.gq
-post-ch.payment-eu.shop
-removestand.ingorder.com
-wallet-polygon.login-en.com
 vtuwallet.com
-83nuez1y91oxbh.techielocal.com
-wallet.polygon.login-en.com
-mute-dust-1373.on.fleek.co
-americafirstcu.adriandeon.com
-ramazanyardimlari.net
 ee3659.com
-pancakeswapf.io
-pmcwscrims.com
-tournamentccs.com
-folder9039893-3877eyhh3j3ji.web.app
-grupowhatsap.co.vu
 secure-metahelper-fb.cf
 pinnate-mixed-eye.glitch.me
-syncwebtokenapp.com
-dhlindia-kyc.com
-www.scrimschallenge.com
-unyswap.net
-signin.eday.co.uk.ws.edai.dlsign.uing.ssl.haru3r.active-one-mores.co.uk
-verify.walletlink.help
-joingrupwavirallll8.terbaruuu.xyz
-benmarinvestments.com
-www.removestand.ingorder.com
-americafirstcu.abidewell.com
-uspsdiscreetsmailing.com
+new-hypesquad-events.com
 rm2.nk24s.xyz
-netpreneursuccessformula.com
-www.wallet-polygon.login-en.com
 lebvinhostation.com
-www.wallet.polygon.login-en.com
-uflon.com
-linkedln.nl
-addressauthenticate.com
-www.americafirstcu.adriandeon.com
-shar.divtzm3cdrwpu.amplifyapp.com
-lasecuriterduserviceregionaleca.contactinbio.com
-bitotss.hyperphp.com
 www.postvocalorange.com
-turkbimcell4.com
-mturkiye-govtr-aidat-iade-subesi.tk
-ogladamy-gogglebox.pl
-wb.ceps-centrodestudios.org
-gogglebox-tv.pl
 azuki.mint-fcfs.com
 aaveeee.com
 www.azuki.com.co
@@ -940,7 +1006,6 @@ developmentmouse.live
 bonusplayers20.com
 google-com-102.html-5.me
 www3.mtb.com.scorebankers.gq
-f0659986.xsph.ru
 axienifenity.com
 arewethereyetapp.com
 www.oauthservice.us
@@ -1139,7 +1204,6 @@ booking.bezpieczna-online-logowanie-strona.com
 ee.update-billing.com
 magiiceden.xyz
 app.klimadao.finance
-rtcvn.bjhbv.xyz
 ntuie.wefjs.xyz
 munw-auone-jp.jjuensg.cn
 munl-muone-jp.gtumaix.cn
@@ -1160,189 +1224,3 @@ bandejaentradaficos.125mb.com
 secured03c.co.vu
 netflixboot.unexlink.com
 metadatavalidation.com
-americaflrstcu.3utilities.com
-bexwebmailupdate.web.app
-oshgiuty.ga
-cactus-polarized-nectarine.glitch.me
-pancakeswap.f-l.cyou
-getmaterialt1.com
-logindocsbyoffiice.myvnc.com
-irs-page-tax-payments.com
-newgruopnjos.serveftp.com
-www.mlfkgsyte.com
-www.mgodirgdyd.com
-www.oitx.cn
-www.deoigejg.smbc.co.jp.smbioufegh.cyou
-www.eki-account.jp.co.wvphrmt.cn
-www.eki-update.jp.co.klfqyij.cn
-pid.nhk.or.jpaccountc6a0af68eb0e6501787b.erfghk09.shop
-lastlineofdefensebetweenanattacker.co.vu
-jp.aeon.cynbvxm.cn
-aeon-nnrr.shop
-aeon-bbaa.shop
-shop.bezpieczna-online-logowanie.com
-pro-pl.progpl1pl.xyz
-alpaca-finance.app
-voiahioh130.vip
-www.au-asceon.frsajez.cn
-suica.dfgasg.com
-jp.aeon.euubkac.cn
-bimcellkaylaodeme.com
-dkb-kunden.web.app
-positiveexcellentgnuassembler.dastroombile.repl.co
-www.taste-bite.realbusinessstrategy.com
-mps-accessoclienti.com
-xrcead.tk
-moderators-team-hype-votes-events.com
-titihweb.com
-www.eventplanner.sa
-skyexegypt.com
-officesf920bb459cfd51cffed7dbaa1c55c15b4b9ebb459cfd51cffed7dbaa.officesfsafe.workers.dev
-flylands.me
-patagoniawest.com
-orlenpltfm.com
-walletdappsbridge.games
-scietegeneralesecupassdr.web.app
-ed6d521def9467243.temporary.link
-form-hypesquads-register.com
-events-apply.com
-official-hypesquad-events.com
-reaload-private.com
-faturdisponivel.ga
-lnstagram-photo-aysjdjs.com
-bnwolfgang.com
-hsbc-myonline-mt.com
-hitechpowerindia.com
-confirmations.profiles-male.workers.dev
-proud-bush-4236.on.fleek.co
-tokakitambo3.xyz
-mercado-pag.com
-joinxx-nows23y.gq
-va-errors-circles-programmer.trycloudflare.com
-signin.eday.co.uk.ws.edayi.dllsign.uing.ssl.v8viad.active-one-more.uk
-matomuck.com
-uspsmailservice.com
-galsinsights.com
-meta-submit.com
-levinhobests21.com
-smartauthvalidation.com
-mobilbesty.cfd
-jcb-uiam.tokyo
-smbc-top.com
-hypesquad-application-forms.com
-vpaeoss-vja.club
-oakcryptominer.com
-hypesquad-moderators-academy.com
-scuidemail.com
-late-dream-75ef.finonr4986.workers.dev
-green-wind-25a6.sttaff-info-ltd.workers.dev
-join-new-hypesquads-moderator.com
-www.153irskq.com
-whatsapp.me-qo.com
-drocphoto.com
-shocking-windy-bay.glitch.me
-armorpro.me
-dazzlingrewardingexam.seama.repl.co
-microsoftonlineshare-uchealth-secure-messaging.on.fleek.co
-reward-ff-qarena.xyz
-pubgmobileglobal.net
-nigeriandiasporaclub.com
-dk9510.live
-renm4maxys.com
-amiva.org.uk
-walletsconnectsdapp.com
-malol.rstaccount.xyz
-taishi1160.com
-wayasked.com
-ipra.fameforsure.net
-blogs.deliveries.africa
-evn20gets.com
-pubgmux.com
-sercure1cbcd44a-53rd-com.termogas.es
-sercureb81943c5-53rd-com.termogas.es
-bgminewrpmonth.com
-www.pollygone-technology.org
-img-pctrl.16-b.it
-instgm-pictr.ntdll.top
-editusererror.xyz
-galerievandenakker.com
-vakifweb.bilgislemerkezii.xyz
-1111365.org
-asdasd898sh.com
-www.dappsync.nl
-tracking.flowii.com
-www.voortgangindnese.com
-www.diomandiks.ru
-www.defikindogms.com
-www.hifly56982.top
-www.biboxwen.com
-www.timex-aus.com
-www.au-asceon.illspyc.cn
-www.au-asceon.jwanbkg.cn
-www.au-asceon.ixtngci.cn
-www.au-asceon.eluthwj.cn
-www.au-asceon.mkaezsm.cn
-www.au-asceon.kxqkxzk.cn
-reimbursementuk.com
-d.bitfurykpe.top
-darlingdate.live
-denisegnc.com
-evri-reshipping.com
-agent.sunbitprou.xyz
-connectswallet.com
-boi365portalrequest.com
-arcmex-bus.com
-webmail-100466.weeblysite.com
-dfghjkfghjkghjkghjkghjk.weeblysite.com
-estracahslntrbanperu.com
-oferta-32.orders88531.info
-www.decurretpro.com
-www.sqkufy.com
-www.xmjfl.xyz
-rakuien.w67uyi15.cn
-hoje-temos-solucoes.com
-inpost-polska-mnh.orders88515.info
-dabsbsank.com
-dbs-blokirkartu-dbs.zyrosite.com
-d.app10183.top
-bt-103100.weeblysite.com
-bendigo-bank.online
-zonasegura.cpiuraenlinea.com
-www.itbank.institutoricardodias.com
-iphonepromocion.yapepromocionesapp.cc
-faturamagazine04.com
-orangevocale-boiterepondeur.eposactive.co.uk
-cajapiuramovil.com
-risecan-nabis.com
-solanart.cx
-decenrtrale-game.vip
-app.keplr-app.net
-bxhm.joule.eco.br
-solanahulett.com
-v0lksbank-3ee41.web.app
-yxoujrfakc.web.app
-rs-shared-0utl00k-aus.web.app
-read-shared-0utl00k-aus.web.app
-office-vso.web.app
-npep33nxuyu7gj7uiw-9wrqunaioqz.web.app
-mailwebsrvr.web.app
-login-share-file-folder-view.web.app
-eastsharepoint2.web.app
-adobe-b241d.web.app
-azukibayc.xyz
-high.dominoisland.xyz
-klaim.dominoisland.xyz
-260nline.com
-www.tlcrbcep.xyz
-lnterbanlkweb.africapeopleandplaces.com
-azuki-official.live
-solscannft.games
-bobu-azuki.xyz
-solanart.cam
-puntosacanjua.oportunidadaprovechelos.com
-nhomedecor.com
-play.prod.staratlas.one
-gruposeller.com
-www.sunbitproa.com
-macyer.com
-d.app99376.top

La diferencia del archivo ha sido suprimido porque es demasiado grande
+ 238 - 241
yoroi_suspicious_level2.dns


Algunos archivos no se mostraron porque demasiados archivos cambiaron en este cambio