root 1 рік тому
батько
коміт
aa44ffe746
5 змінених файлів з 1168 додано та 10139 видалено
  1. 87 106
      nethesis_level3.netset
  2. 105 105
      whitelist.global
  3. 237 226
      yoroi_malware_level1.ipset
  4. 715 9678
      yoroi_malware_level2.ipset
  5. 24 24
      yoroi_souspicious_level2.ipset

Різницю між файлами не показано, бо вона завелика
+ 87 - 106
nethesis_level3.netset


+ 105 - 105
whitelist.global

@@ -14,6 +14,110 @@
 62.149.128.154
 62.149.128.151
 62.149.128.160
+167.99.219.82
+128.199.61.15
+142.93.129.129
+64.227.78.25
+128.199.48.140
+167.172.38.97
+178.62.240.209
+178.62.221.146
+167.71.68.193
+159.223.237.208
+206.189.12.139
+159.223.215.242
+167.71.67.175
+164.92.157.134
+104.248.202.179
+178.62.217.110
+188.166.64.212
+104.248.95.193
+164.92.220.56
+164.92.145.142
+167.71.64.103
+161.35.84.164
+64.225.68.114
+188.166.73.43
+134.209.192.110
+161.35.81.169
+159.223.11.82
+159.223.236.183
+178.62.204.160
+167.172.33.231
+188.166.17.142
+188.166.95.89
+164.92.215.172
+159.223.215.34
+161.35.153.85
+164.90.192.245
+188.166.9.247
+188.166.85.76
+159.223.212.220
+164.90.204.45
+146.190.226.124
+104.248.95.189
+188.166.91.192
+104.248.194.112
+188.166.37.143
+178.128.251.154
+159.65.199.185
+164.92.209.130
+167.71.1.182
+146.190.237.107
+188.166.46.90
+64.225.71.102
+188.166.68.157
+159.223.225.41
+167.99.210.125
+188.166.29.153
+178.62.240.195
+188.166.48.29
+178.62.192.199
+167.172.38.137
+178.128.254.142
+167.71.78.214
+161.35.93.220
+167.71.73.171
+188.166.21.67
+167.71.71.43
+188.166.77.48
+143.198.131.11
+142.93.128.221
+152.42.138.49
+134.209.93.118
+64.225.71.170
+188.166.103.15
+188.166.85.242
+167.71.66.0
+174.138.15.105
+167.71.10.219
+104.248.205.106
+159.65.192.201
+165.232.94.151
+178.62.222.164
+206.189.99.25
+64.227.64.202
+159.223.0.121
+206.189.0.226
+165.22.205.55
+188.166.36.213
+159.223.215.77
+188.166.11.138
+104.248.87.189
+188.166.55.209
+142.93.230.36
+161.35.88.121
+64.227.75.231
+159.223.218.42
+146.190.18.242
+159.65.198.47
+146.190.228.120
+165.22.197.37
+104.248.93.140
+134.209.91.165
+159.223.0.173
+165.22.192.54
+164.90.197.63
 167.71.78.224
 167.172.35.81
 167.71.11.73
@@ -136,110 +240,6 @@
 178.62.238.76
 188.166.126.240
 134.122.63.204
-167.99.219.82
-128.199.61.15
-142.93.129.129
-64.227.78.25
-128.199.48.140
-167.172.38.97
-178.62.240.209
-178.62.221.146
-167.71.68.193
-159.223.237.208
-206.189.12.139
-159.223.215.242
-167.71.67.175
-164.92.157.134
-104.248.202.179
-178.62.217.110
-188.166.64.212
-104.248.95.193
-164.92.220.56
-164.92.145.142
-167.71.64.103
-161.35.84.164
-64.225.68.114
-188.166.73.43
-134.209.192.110
-161.35.81.169
-159.223.11.82
-159.223.236.183
-178.62.204.160
-167.172.33.231
-188.166.17.142
-188.166.95.89
-164.92.215.172
-159.223.215.34
-161.35.153.85
-164.90.192.245
-188.166.9.247
-188.166.85.76
-159.223.212.220
-164.90.204.45
-146.190.226.124
-104.248.95.189
-188.166.91.192
-104.248.194.112
-188.166.37.143
-178.128.251.154
-159.65.199.185
-164.92.209.130
-167.71.1.182
-146.190.237.107
-188.166.46.90
-64.225.71.102
-188.166.68.157
-159.223.225.41
-167.99.210.125
-188.166.29.153
-178.62.240.195
-188.166.48.29
-178.62.192.199
-167.172.38.137
-178.128.254.142
-167.71.78.214
-161.35.93.220
-167.71.73.171
-188.166.21.67
-167.71.71.43
-188.166.77.48
-143.198.131.11
-142.93.128.221
-152.42.138.49
-134.209.93.118
-64.225.71.170
-188.166.103.15
-188.166.85.242
-167.71.66.0
-174.138.15.105
-167.71.10.219
-104.248.205.106
-159.65.192.201
-165.232.94.151
-178.62.222.164
-206.189.99.25
-64.227.64.202
-159.223.0.121
-206.189.0.226
-165.22.205.55
-188.166.36.213
-159.223.215.77
-188.166.11.138
-104.248.87.189
-188.166.55.209
-142.93.230.36
-161.35.88.121
-64.227.75.231
-159.223.218.42
-146.190.18.242
-159.65.198.47
-146.190.228.120
-165.22.197.37
-104.248.93.140
-134.209.91.165
-159.223.0.173
-165.22.192.54
-164.90.197.63
 167.172.47.196
 167.71.12.235
 164.90.202.83
@@ -267,7 +267,7 @@
 167.99.16.60
 167.99.248.251
 174.138.107.200
-185.199.109.153
+185.199.111.153
 188.166.103.4
 188.166.10.67
 188.166.107.122

+ 237 - 226
yoroi_malware_level1.ipset

@@ -9,6 +9,208 @@
 # Category        : Malware
 # Confidence      : 10
 #
+139.28.36.243
+139.178.82.131
+139.196.176.1
+139.196.234.173
+139.59.40.66
+139.159.135.191
+139.180.145.178
+139.180.131.147
+139.180.209.232
+139.224.103.33
+139.224.80.219
+139.99.137.193
+139.198.124.249
+139.162.84.81
+139.162.84.95
+139.162.122.50
+139.64.37.72
+139.129.36.72
+139.84.132.251
+139.84.172.12
+139.9.192.127
+139.144.96.180
+103.118.244.27
+103.234.98.96
+103.234.98.97
+103.195.102.21
+103.52.154.107
+103.20.220.109
+103.164.226.125
+103.73.161.186
+103.87.10.214
+103.242.3.210
+103.27.111.247
+103.77.210.67
+103.37.125.232
+103.237.86.135
+103.186.116.168
+103.186.116.193
+103.186.116.111
+103.186.117.150
+103.97.179.174
+103.161.133.245
+103.56.19.194
+103.114.104.48
+103.207.38.216
+103.116.245.65
+103.194.184.67
+103.194.184.66
+103.194.184.70
+103.194.184.68
+103.194.184.69
+103.243.183.215
+103.198.26.72
+43.129.28.136
+43.136.76.210
+43.136.33.19
+43.139.161.196
+43.156.57.179
+43.132.172.73
+43.138.0.75
+43.143.211.29
+43.143.228.137
+43.131.241.162
+43.134.118.131
+43.154.103.195
+43.199.93.110
+8.213.223.94
+8.134.201.96
+8.134.148.103
+8.134.156.166
+8.134.251.198
+8.134.166.134
+8.134.196.58
+8.134.33.192
+8.220.223.113
+8.135.237.16
+8.135.112.178
+8.219.146.174
+8.219.15.69
+8.130.35.133
+8.130.70.194
+8.130.10.198
+8.130.52.13
+8.130.65.194
+8.137.58.206
+8.137.114.210
+8.137.56.177
+8.138.117.120
+8.138.123.57
+8.138.119.106
+8.138.23.33
+8.141.92.116
+8.141.13.130
+8.131.50.94
+8.153.65.109
+8.218.221.84
+8.142.5.148
+8.140.227.46
+8.136.103.224
+8.148.5.65
+151.236.16.70
+151.236.29.64
+223.26.52.27
+223.26.52.25
+223.26.52.26
+223.155.16.166
+223.155.16.26
+223.155.16.171
+223.155.16.22
+223.155.16.134
+223.155.16.137
+223.155.16.13
+223.155.16.34
+223.155.16.132
+223.155.16.73
+223.155.16.160
+223.155.16.201
+223.155.16.39
+223.155.16.96
+223.155.16.178
+223.155.16.154
+106.250.166.45
+106.14.240.31
+106.14.104.191
+106.14.241.179
+106.14.78.163
+106.54.52.7
+106.15.190.173
+106.15.239.161
+106.75.226.114
+106.75.184.240
+106.75.240.112
+3.14.148.166
+3.112.247.238
+3.88.139.247
+3.124.142.205
+3.125.223.134
+3.125.209.94
+3.125.102.39
+3.79.146.22
+3.84.34.54
+3.123.144.39
+3.91.102.69
+3.37.251.172
+3.13.191.225
+3.212.86.4
+3.86.94.200
+15.235.130.195
+31.177.76.32
+31.177.80.32
+31.192.107.196
+31.41.244.13
+31.49.244.152
+31.184.196.130
+31.222.238.188
+67.217.228.4
+67.207.166.172
+67.207.161.204
+67.203.7.223
+67.203.7.145
+207.148.66.49
+207.231.111.82
+207.246.99.14
+207.180.224.247
+207.211.144.153
+207.32.218.21
+207.32.219.79
+66.154.113.81
+66.165.244.226
+66.187.76.148
+66.42.50.189
+209.141.47.218
+209.141.53.56
+209.38.190.93
+209.126.4.168
+209.208.110.104
+209.146.125.129
+64.227.43.95
+64.227.141.114
+64.227.65.209
+64.23.213.61
+64.95.10.106
+64.188.12.208
+64.188.9.177
+64.49.14.19
+143.198.134.3
+143.198.143.45
+143.92.163.215
+143.92.60.29
+143.92.60.26
+143.92.60.24
+69.10.45.181
+69.46.15.185
+69.46.15.142
+156.238.236.33
+156.238.224.69
+156.238.233.63
+156.238.230.211
+156.238.230.153
+156.247.9.166
+156.236.75.199
+85.198.109.163
 45.61.137.15
 45.61.137.180
 45.61.136.156
@@ -82,76 +284,21 @@
 45.93.9.248
 45.14.165.5
 45.152.66.128
-3.14.148.166
-3.112.247.238
-3.88.139.247
-3.124.142.205
-3.125.223.134
-3.125.209.94
-3.125.102.39
-3.79.146.22
-3.84.34.54
-3.123.144.39
-3.91.102.69
-3.37.251.172
-3.13.191.225
-3.212.86.4
-3.86.94.200
-15.235.130.195
-31.177.76.32
-31.177.80.32
-31.192.107.196
-31.41.244.13
-31.49.244.152
-31.184.196.130
-31.222.238.188
-67.217.228.4
-67.207.166.172
-67.207.161.204
-67.203.7.223
-67.203.7.145
-66.154.113.81
-66.165.244.226
-66.187.76.148
-66.42.50.189
-64.227.43.95
-64.227.141.114
-64.227.65.209
-64.23.213.61
-64.95.10.106
-64.188.12.208
-64.188.9.177
-64.49.14.19
-207.148.66.49
-207.231.111.82
-207.246.99.14
-207.180.224.247
-207.211.144.153
-207.32.218.21
-207.32.219.79
-209.141.47.218
-209.141.53.56
-209.38.190.93
-209.126.4.168
-209.208.110.104
-209.146.125.129
-143.198.134.3
-143.198.143.45
-143.92.163.215
-143.92.60.29
-143.92.60.26
-143.92.60.24
-69.10.45.181
-69.46.15.185
-69.46.15.142
-156.238.236.33
-156.238.224.69
-156.238.233.63
-156.238.230.211
-156.238.230.153
-156.247.9.166
-156.236.75.199
-85.198.109.163
+23.82.12.29
+23.82.12.30
+23.94.169.124
+23.94.85.61
+23.88.32.34
+23.251.33.21
+23.106.238.209
+23.106.127.79
+23.95.44.80
+23.95.193.207
+23.95.173.183
+23.224.239.10
+23.224.144.131
+23.105.216.2
+23.158.232.33
 46.246.84.6
 46.246.84.17
 46.246.84.12
@@ -181,11 +328,6 @@
 46.105.140.131
 46.105.140.130
 46.226.165.237
-212.32.237.101
-212.113.120.69
-212.227.211.88
-212.162.149.53
-212.80.7.76
 213.252.245.22
 213.252.247.119
 213.21.237.110
@@ -210,20 +352,6 @@
 88.214.27.89
 88.170.194.154
 88.209.251.6
-23.94.169.124
-23.94.85.61
-23.82.12.30
-23.82.12.29
-23.251.33.21
-23.106.238.209
-23.106.127.79
-23.95.44.80
-23.95.193.207
-23.95.173.183
-23.224.239.10
-23.224.144.131
-23.105.216.2
-23.158.232.33
 52.172.98.7
 52.58.188.221
 52.189.253.111
@@ -232,8 +360,8 @@
 54.147.0.38
 54.94.248.37
 54.174.132.126
-54.227.99.217
 54.193.66.5
+54.227.99.217
 54.39.19.94
 54.144.209.115
 78.159.112.29
@@ -243,6 +371,12 @@
 83.229.124.37
 83.147.37.152
 83.147.243.18
+93.157.106.238
+93.123.85.199
+93.123.85.58
+93.123.85.247
+93.177.167.223
+93.177.76.142
 94.158.244.70
 94.131.11.107
 94.131.110.106
@@ -261,57 +395,20 @@
 94.141.120.151
 94.141.120.94
 94.103.84.230
-93.157.106.238
-93.123.85.199
-93.123.85.58
-93.123.85.247
-93.177.167.223
-93.177.76.142
 104.223.76.233
 104.243.47.56
 104.243.37.177
 104.243.242.235
 104.238.34.207
+104.168.101.215
 104.197.49.244
 104.194.158.61
 104.194.157.211
-104.168.101.215
 104.156.247.38
 104.237.135.249
 104.237.135.248
 104.237.135.234
 104.245.247.85
-103.234.98.96
-103.234.98.97
-103.195.102.21
-103.52.154.107
-103.20.220.109
-103.164.226.125
-103.73.161.186
-103.87.10.214
-103.242.3.210
-103.27.111.247
-103.77.210.67
-103.37.125.232
-103.237.86.135
-103.186.116.168
-103.186.116.193
-103.186.116.111
-103.186.117.150
-103.97.179.174
-103.161.133.245
-103.56.19.194
-103.114.104.48
-103.207.38.216
-103.118.244.27
-103.116.245.65
-103.194.184.67
-103.194.184.66
-103.194.184.70
-103.194.184.68
-103.194.184.69
-103.243.183.215
-103.198.26.72
 109.107.181.162
 109.110.184.176
 130.61.59.1
@@ -392,6 +489,11 @@
 206.201.3.228
 206.166.251.183
 206.123.152.101
+212.32.237.101
+212.113.120.69
+212.227.211.88
+212.162.149.53
+212.80.7.76
 219.78.165.215
 121.199.58.53
 121.199.9.142
@@ -428,18 +530,6 @@
 193.183.217.32
 193.222.99.16
 193.23.55.27
-43.136.76.210
-43.136.33.19
-43.139.161.196
-43.156.57.179
-43.132.172.73
-43.138.0.75
-43.143.211.29
-43.143.228.137
-43.131.241.162
-43.134.118.131
-43.154.103.195
-43.199.93.110
 117.72.71.193
 117.72.47.180
 117.72.39.83
@@ -588,6 +678,9 @@
 154.12.242.122
 154.12.22.136
 154.12.26.38
+154.91.84.206
+154.91.84.200
+154.91.84.205
 154.213.185.141
 154.213.192.24
 154.197.69.149
@@ -600,39 +693,6 @@
 154.204.56.105
 154.205.137.143
 154.242.28.251
-8.134.201.96
-8.134.148.103
-8.134.156.166
-8.134.251.198
-8.134.166.134
-8.134.196.58
-8.134.33.192
-8.220.223.113
-8.135.237.16
-8.135.112.178
-8.219.146.174
-8.219.15.69
-8.130.35.133
-8.130.70.194
-8.130.10.198
-8.130.52.13
-8.130.65.194
-8.137.58.206
-8.137.114.210
-8.137.56.177
-8.138.117.120
-8.138.123.57
-8.138.119.106
-8.138.23.33
-8.141.92.116
-8.141.13.130
-8.131.50.94
-8.153.65.109
-8.218.221.84
-8.142.5.148
-8.140.227.46
-8.136.103.224
-8.148.5.65
 95.164.22.42
 95.169.196.45
 95.169.23.185
@@ -889,27 +949,6 @@
 110.40.177.85
 110.41.3.35
 110.41.34.51
-139.178.82.131
-139.196.176.1
-139.196.234.173
-139.59.40.66
-139.159.135.191
-139.180.145.178
-139.180.131.147
-139.180.209.232
-139.224.103.33
-139.224.80.219
-139.99.137.193
-139.198.124.249
-139.162.84.81
-139.162.84.95
-139.162.122.50
-139.64.37.72
-139.129.36.72
-139.84.132.251
-139.84.172.12
-139.9.192.127
-139.144.96.180
 114.55.117.45
 114.55.230.35
 114.55.244.129
@@ -1150,16 +1189,6 @@
 60.204.206.68
 60.204.138.63
 60.205.218.2
-106.14.240.31
-106.14.104.191
-106.14.241.179
-106.14.78.163
-106.54.52.7
-106.15.190.173
-106.15.239.161
-106.75.226.114
-106.75.184.240
-106.75.240.112
 163.5.160.229
 163.172.125.253
 163.172.167.168
@@ -1207,11 +1236,12 @@
 4.185.109.49
 4.231.239.100
 80.240.16.246
-80.85.246.107
+80.66.75.98
 80.66.75.43
 80.66.75.9
 80.66.75.52
 80.66.75.53
+80.85.246.107
 80.76.49.178
 80.87.206.160
 80.78.26.4
@@ -1282,40 +1312,21 @@
 87.248.130.16
 87.251.67.74
 87.228.19.162
+204.12.203.65
+204.10.160.206
 63.141.237.145
 72.5.42.209
 136.0.11.193
 148.153.34.230
 148.135.76.164
-151.236.29.64
 155.138.205.64
 166.88.57.117
 173.255.246.83
 173.239.196.66
-204.10.160.206
 208.85.16.252
 168.119.120.21
 16.171.150.224
 16.170.221.168
-223.26.52.25
-223.26.52.26
-223.26.52.27
-223.155.16.166
-223.155.16.26
-223.155.16.171
-223.155.16.22
-223.155.16.134
-223.155.16.137
-223.155.16.13
-223.155.16.34
-223.155.16.132
-223.155.16.73
-223.155.16.160
-223.155.16.201
-223.155.16.39
-223.155.16.96
-223.155.16.178
-223.155.16.154
 84.32.44.79
 84.247.165.244
 190.70.119.188

Різницю між файлами не показано, бо вона завелика
+ 715 - 9678
yoroi_malware_level2.ipset


+ 24 - 24
yoroi_souspicious_level2.ipset

@@ -9,18 +9,35 @@
 # Category        : Suspicious
 # Confidence      : 8
 #
-45.141.215.21
-45.8.229.55
-85.70.45.245
-213.55.102.52
-94.73.219.205
-94.52.209.104
-93.123.194.205
+139.162.81.152
+139.155.176.42
 103.236.253.51
 103.143.73.86
 103.193.151.51
 103.247.13.244
 103.251.167.20
+43.251.95.246
+8.222.190.110
+8.222.163.108
+8.222.180.151
+8.222.134.169
+8.222.153.123
+8.222.165.93
+8.222.201.42
+8.222.176.53
+8.222.154.210
+8.222.169.160
+8.222.169.102
+8.222.177.108
+106.53.217.128
+106.58.169.205
+85.70.45.245
+45.141.215.21
+45.8.229.55
+213.55.102.52
+93.123.194.205
+94.73.219.205
+94.52.209.104
 109.120.135.123
 109.120.157.111
 157.230.97.85
@@ -32,7 +49,6 @@
 219.147.206.2
 121.163.199.97
 193.70.113.37
-43.251.95.246
 117.50.198.67
 117.219.14.193
 47.236.184.107
@@ -40,18 +56,6 @@
 47.236.170.64
 47.98.117.36
 5.42.76.63
-8.222.190.110
-8.222.163.108
-8.222.180.151
-8.222.134.169
-8.222.153.123
-8.222.165.93
-8.222.201.42
-8.222.176.53
-8.222.154.210
-8.222.169.160
-8.222.169.102
-8.222.177.108
 95.26.110.114
 101.126.69.223
 101.42.237.107
@@ -66,8 +70,6 @@
 149.78.186.161
 175.24.226.92
 62.36.40.105
-139.162.81.152
-139.155.176.42
 91.239.19.66
 74.48.44.145
 107.175.111.173
@@ -83,8 +85,6 @@
 36.71.207.10
 181.4.149.237
 81.70.27.122
-106.53.217.128
-106.58.169.205
 113.10.158.151
 196.219.224.230
 171.104.142.232

Деякі файли не було показано, через те що забагато файлів було змінено