root 3 лет назад
Родитель
Сommit
aa8bf3b07d
4 измененных файлов с 4873 добавлено и 4848 удалено
  1. 940 918
      yoroi_malware_level1.dns
  2. 3427 3463
      yoroi_malware_level2.dns
  3. 212 171
      yoroi_suspicious_level1.dns
  4. 294 296
      yoroi_suspicious_level2.dns

Разница между файлами не показана из-за своего большого размера
+ 940 - 918
yoroi_malware_level1.dns


Разница между файлами не показана из-за своего большого размера
+ 3427 - 3463
yoroi_malware_level2.dns


+ 212 - 171
yoroi_suspicious_level1.dns

@@ -9,6 +9,210 @@
 # Category        : Suspicious
 # Confidence      : 10
 #
+maile-logn.query17297.workers.dev
+www.pancaketransfer.com
+amazon.meikks.net
+ts3card.obxytoc.cn
+accounts.no-reply-instagram.link
+phantom-error.app
+webmail-105254.weeblysite.com
+bikkkoli.shop
+ashmeyer.net
+according-status.web.app
+ejuxxei.ml
+2g015rc32uagbsngfrj4ldd9cc4o8prek63f2sc2u43f6i2spohh6ko.siasky.net
+steamcommunityxe.top
+2g07tjibpeuc6vbju8ndujgl2vksk2a74cv1kn6j4cr1l5flitm4a08.siasky.net
+qaweqa21.web.app
+mytb0.com
+new-harmonyinn.org
+secure-onedrive.pages.dev
+secure-office365.pages.dev
+authenticatemtb.web.app
+grapefruit12647853.brizy.site
+pemulihan-akun-facebook34.weeblysite.com
+www.mycomm-alerts.com
+ca-interacc.info
+c2101595.ferozo.com
+help.jl73abgv1pnetzfzy.gq
+www.multiwalletconnectbot.com
+apricot12650129.brizy.site
+mb1tverify.us
+sicherheits-verifizerung.com
+www.amazon654.ga
+dry-cell-1d4c.mullinsdavi.workers.dev
+steamcommunitsy.com
+uniswap.ninja
+clickmtb.web.app
+www.solifact01.com
+ramseyconsultant.com
+mtbhelp.kidslands.ir
+com-yyz.xyz
+bafybeihjipjqk24ggubvca37gnoebokaqltad3gdweuh3y67kn5tt2wcay.ipfs.dweb.link
+accessmtbank.web.app
+moiseslaprendiofeisiimaaaa2k22.pagedemo.co
+tdigon.net
+www.ramp.app-uniswapp.org
+www.confident-driscoll.179-43-140-172.plesk.page
+discstatus.com
+projectxsuit.com
+discorddetails.com
+discordinfos.com
+discnumber.com
+discordtrack.com
+grbbokpwhatsapptrbruhottenaknyauh.nzv0.xyz
+online.new.hs-sites-eu1.com
+grubwhatsappbkptrbruh0tindonyamandeshnya.ng-0.xyz
+bthomeser-105867.weeblysite.com
+mlcrosoft.com.metasoption.com
+status-motors.com
+mail-events-applications.gq
+forms-agehypehse.gq
+opennft.cf
+battlegroundtreasure.com
+helpline-aswzz.info
+pagesabuserepostedterms.co.vu
+login-servicesinbox.com
+orendafs.doordashes.ga
+action-remove-newdevice.info
+zcarh.ml
+xyzclaim.ml
+av0supqpe1s3pry.we9ixzz.co
+3hhxapchty4.we9ixzz.co
+nanqim.com
+amfc-auth.web.app
+collabconnectwallet.com
+elitewellnessmd.com
+www.facebook.peruicloud.es
+anz.validate-au.com
+customde-supported24.de
+rm7ons0h1x.we9ixzz.co
+qhuvmno7veqc5fmfdh1hpw4tgkra.wusps.xyz
+yg8fqdp6wqnvncsttblhcd.wusps.xyz
+brscapim.com.intensificabrasil.com
+yyn9czo3nd.wusps.xyz
+bt-homepage103059.weeblysite.com
+bafybeiacmpupjpph65fxze7lif6fppjnloxfma6k242qaerq3nopkxmmke.ipfs.nftstorage.link
+btbullser-108966.weeblysite.com
+rbfcu-service07252022.diskstation.eu
+posb-sg-secure.com
+qgj65qgepxafshvbdeymoaf5aq38ea.wusps.xyz
+bvlmckell.com
+teeny-bread.surge.sh
+0099extuyafeliciades092.c1.biz
+puffy-trouble.surge.sh
+daulink-tins-au.top
+service2nowmtb.diskstation.org
+www.newcrest-support.com
+onedriveslive.servehalflife.com
+metasupportcontacts.ml
+shxxavie.weeblysite.com
+updatedbs.com
+bt-101100.weeblysite.com
+perpetual-erratic-hollyhock.glitch.me
+meta.com-ytx.xyz
+1files.nobadycando.co
+bt-page-106976.weeblysite.com
+jqn3gioknrilutuwe4olgzvix.qwo231sdx.club
+signup.breezstrime.com
+newapply-now.gq
+gvn0tj.qwo231sdx.club
+katiebransonphotography.com
+general-services-verify-and-validate-mail-provider.dmcvir617yqcy.amplifyapp.com
+sparkassen-agb-verifizierung.com
+steamcommunityxz.top
+www.opeanseea.com
+3mttbb.com
+www.3mttbb.com
+amazon936.com
+amarggg.com
+www3-mtblogin.serveirc.com
+5xy32hyvzmud62b2s3zps1fz8i.qwo231sdx.club
+unlockmtbank.barman-a.com
+discordarea.com
+discordinformations.com
+discordnumber.com
+leboncoin-paiement-securise.co
+fierce-raccoon.w5.wpsandbox.pro
+siaesp8w.wusps.xyz
+anazon.co.jp.lnhtsm.cn
+aib-webapp-secure.com
+aibmobile-auth.com
+rdbrhz8cjgvcheteh1bcz.wusps.xyz
+voicemail-refbe4d.sharedfiles-auth.workers.dev
+hma2mqozbhov8f1dindr.qwo231sdx.club
+www.microsoft-en-au.com
+ezdzsell.com
+sg-comptes.com
+mysecurity.myvnc.com
+ts3card.vmmmymh.cn
+ts3card.npdmdya.cn
+hjhgsdfghjhgsdfghjdfgxcv.weeblysite.com
+vtbancgaliciaeminent.com
+bt-home-page.weeblysite.com
+bgmiomi.bgmic6.cyou
+ts3card.zcqhnyc.cn
+ts3card.pgzyvsi.cn
+bt-internet-107602.weeblysite.com
+populaire-sec.com
+www.boi-security-check.com
+bumfell.com
+bt-page-sign547.weeblysite.com
+wellsfargoonline.ssmailer.com
+bvoemuq.cf
+fvcjfvhjgfvijkdfvhhbkhjfvjdfvc.weeblysite.com
+pmgc.xyz
+reject-consulent.me
+welcome-hypesquad.ml
+bvoemuq.ga
+mtbonlinetrust.diskstation.org
+www.mtbonlinetrust.diskstation.org
+chainsupportextension.net
+cirious.com
+lu3xz-kqaaa-aaaad-qdd6a-cai.raw.ic0.app
+mtbtrust.diskstation.org
+alloallo.mijnsnap-wijziging.cc
+nnetannask.protocol-process.me
+blueberry12649295.brizy.site
+atyttttuttt0ttya0tyyw.usleadset.com
+unusual-logon.info
+xudoqt2pn7mnly.we9ixzz.co
+www.nzitaotao.cn
+welcome-hypesquad.ga
+meta-securityhelp.ml
+www.pre-sale.online
+www.3-esecure.dynamic-dns.net
+anz.eportal-aus.com
+suncoas1credi1union.digital
+cnhefdwds2oox2sk.qwo231sdx.club
+thamesmount.co.uk
+timtv.biz
+yg2e6hgqw7oshki.we9ixzz.co
+ocjogblqn.we9ixzz.co
+un12oeoouizjvw506dq3fhlxnus.we9ixzz.co
+b6kzu5nvythmeb.we9ixzz.co
+auuzenorc8d.we9ixzz.co
+svuyvmmweyrfgeqgvchk910u53u.we9ixzz.co
+3mpg7lbzt2h2jfiqqsz8.we9ixzz.co
+lsykz0cgsvc2afwrexhbhaast5t.we9ixzz.co
+facebookwatch-co-live.webnode.page
+7akxylo.we9ixzz.co
+vuwi4gmtd52dxqjkdkj609p.we9ixzz.co
+zdcwbawz3yzqqx1hwyoqtsgett7lmx.we9ixzz.co
+pak1a0inx4rfd3qxs3ppmdky5tijr.we9ixzz.co
+c8o85aefgmmobmg.we9ixzz.co
+gscayignjhb5bjzai7b2lnzqp5.we9ixzz.co
+kjvitlnfeponrpr2hnl66w.we9ixzz.co
+xi52owjaibcoi0eskkub3w.we9ixzz.co
+na58t1othlcuwbutbgibpxhin.we9ixzz.co
+kgjph0nh0t.qwo231sdx.club
+psgdq2omnpqrpvcufgol.we9ixzz.co
+otni8by8pxyu.qwo231sdx.club
+puetko9xh.qwo231sdx.club
+6g0a2me4bfhjo8hgpif45iivmbo1cagot36bijal75rvhttl5mkkhh8.siasky.net
+biblioudv.ro
+discordchart.com
+blognewstv.hs-sites-eu1.com
 opensea-one.com
 confirm-page-456789.pw
 hypeapplyclub.gq
@@ -22,7 +226,6 @@ jpm-ch.com
 jpm-organ.com
 lyanjherico1.josgandosuc.cyou
 mtbsupportl.web.app
-withered-poetry-7542.on.fleek.co
 bitdsppconn.info
 denyaddrequest.com
 ts3card.sulnlrr.cn
@@ -69,7 +272,6 @@ redlandsfinancialgroup.com
 tdwalker.co.uk
 casoboa7682354.hostfree.pw
 www.baas.ltd
-anazon.co.jp.baas.ltd
 mtb9nk.web.app
 bafybeibcnohmrxefirpvcnmftti7gzd2sfdbgsfhxka3dfujtbinf4zoju.ipfs.nftstorage.link
 erb911.com
@@ -107,9 +309,6 @@ reactivatepage-347564.click
 us-modifier-ups.com
 www3mtb.myvnc.com
 us-serverside-ups.com
-anz.validate-au.com
-elitewellnessmd.com
-www.facebook.peruicloud.es
 plain-cloud-4920.on.fleek.co
 www.offchainnode-websupport.org
 ebay-spediteur.site
@@ -122,7 +321,6 @@ ejuxxei.cf
 clothesaleson.shop
 steamcommunityxc.top
 steamcommunityro.top
-collabconnectwallet.com
 tan-farkas.org
 secure-ie-aib.com
 400789789.com
@@ -165,7 +363,6 @@ mtverifyn0w.info
 ts3card.zlsafmw.cn
 signclaim.sitelink1.xyz
 updatedsidnrmtyisonsecytt.co.vu
-secitysuupdatedinfdormatos.co.vu
 gotosettingsverifyaccountby.co.vu
 9j4jm8.we9ixzz.co
 ts3card.fivqamq.cn
@@ -181,7 +378,6 @@ mts7mp2wjemj4ugxcs49x4z4eh7.we9ixzz.co
 uc4e2kpep.we9ixzz.co
 sgjzi47znhuh8nqwr.we9ixzz.co
 dspp2gkyn.we9ixzz.co
-rm7ons0h1x.we9ixzz.co
 ts3card.ytrrejc.cn
 autovalidatechain.com
 squadteam-badge.gq
@@ -211,10 +407,8 @@ ts3card.szqrhbr.cn
 m3tillb.info
 dolphin-app-7pe2q.ondigitalocean.app
 www.mit3bib.com
-amfc-auth.web.app
-biblioudv.ro
-pancakesvap.finance
 thriftiesnewspaper.com
+6g0577nk513lh11a8l47lrbjfu7d97b2e5ghs3j873q93qpsu300moo.siasky.net
 rouninwalet.mobirisesite.com
 u1738401.plsk.regruhosting.ru
 claim.redundancy-payments.org.uk
@@ -223,6 +417,7 @@ optimihealthwd.mschlsmn.one
 uk-dpd.com
 goldpagafatura.com
 a0698311.xsph.ru
+6g006bcoiulqgr5h1helbnq5mdnvtd0qugpcg5tccgbkl8f14hke66g.siasky.net
 sxmartdohot.jelastic.regruhosting.ru
 appsdiezric.5gjdv9azyu-yk26e5knz679.p.runcloud.link
 bafybeib2excuvsdgcr44b3u6rpphnzicwokgcczkw2ktena5fop3bndvou.ipfs.nftstorage.link
@@ -274,8 +469,6 @@ amankan-akun-tautan.com
 amazon2.ifllaq.shop
 amazon1.hsxjma.shop
 classactinteractive.com
-blognewstv.hs-sites-eu1.com
-customde-supported24.de
 sjallad.alphagg7.cyou
 bpautha.temp.swtest.ru
 bt-page-101157.weeblysite.com
@@ -329,6 +522,7 @@ validation4921.app
 www.decentralizedchain-support.net
 arwmnwahs.co.vu
 stampcrazed.com
+logn-folder-fdfa.maile-er.workers.dev
 www.card558.xyz
 freemembernew98.64-b.it
 verify-3xm.pages.dev
@@ -340,7 +534,6 @@ wewesaz.co.vu
 www.kontoservice-amazon.xyz
 zulldigital.com
 banncoorronlinepernas.com
-webwalletconnects.co
 lala1.sachipink.cyou
 wcqcwzxddzf67qewwahflxc.we9ixzz.co
 sarah-forderungslink.de
@@ -359,6 +552,8 @@ reactivatepage-347564.online
 reactivatepage-347564.space
 marketplace.axieinfinity.gq
 deliveries.africa
+logn-folder-8a9e.maile-r.workers.dev
+maile-folder-79c4.xihixi2835.workers.dev
 payu.fids.in
 www.newswax.us
 fig12643383.brizy.site
@@ -376,9 +571,9 @@ bafybeidssqquhq4gcdnnyn2r7ppjhlcldxo2nbdncndf2qp3ix3jlxscue.ipfs.nftstorage.link
 masakra-strona.eu
 m8tibverify.com
 pfmycs.webwave.dev
-discordchart.com
 uspsfastway.com
 c3s7.com
+leblancbrothers.leblancbrothers.workers.dev
 pilirood.shop
 dpoaapp.pages.dev
 aavelp.org
@@ -413,7 +608,6 @@ yuruweioreoiw2.oversurvey.workers.dev
 usp-renimsdto.us
 m-discord-nitro.tk
 arkgaz.com
-myasset-managements.com
 metaverse-bridge.com
 bimcellyuklemetr.com
 paypal.assured.fun
@@ -718,6 +912,7 @@ pesquisaonline1.com
 ethtrust.ml
 caso-285235235.hostfree.pw
 confirmation.upgrade-dashboard.workers.dev
+amazon.mgxetr.top
 now-hypesquad-team.gq
 mercadcreditoline.site
 mturkiye-gov-tr-aidat-geri-iade.ml
@@ -739,6 +934,7 @@ seemyface.co.uk
 freemlgiftsnew.hosthorde.net
 lightboarduniversity.com
 247comm.com
+publicdappnetwork.com
 sankalp.xs1.sale
 latamlponlinesharefiles.on.fleek.co
 www3.mbts.workers.dev
@@ -1139,158 +1335,3 @@ myspa.work
 www.myspa.work
 usp-gomkadso.us
 chromaticflight.com
-watermelon12544895.brizy.site
-trustwallet.linkupz.website
-mijnics-kaartformulier.camdvr.org
-chumas-lheatsajahs893260314.strashimirov5.com
-aplly-hype.ml
-americaexpreaccount.myhemiwoverification.workers.dev
-mtb3ank.web.app
-imagesinstagram.com
-vote-in-hypesquad.gq
-metamask-about-sample-5wq4btp6b-leonardbrown495.vercel.app
-biimcellhizmetlerii.com
-www.importvalidator.org
-faturamagalu21.me
-moballied-activity.com
-m4ti1b.info
-verify-americafirst.top
-www.offchain-websync.com
-bitwalletsecure.com
-amazon-cardupdata.kyvzj8.xyz
-new-hypesquad.cf
-new-formulary-hypesquad.ga
-infoups.com
-avocado12526884.brizy.site
-assurevisal-6d87a5.ingress-baronn.ewp.live
-tgppqxz.cn
-hypesquad-team-2022.gq
-services.onlineatt.workers.dev
-ticketchain.pages.dev
-sewmehappy.co.uk
-request-payments-decline.com
-pendingtransactionsparemtbprocessed.mein-vigor.de
-quince12505398.brizy.site
-reject-payment-request.com
-hypesquad-resgistration-events-support.gq
-m3itb0.info
-www.aib-app.com
-grupviral18plus.hotbaru.live
-steamcumnunlty.com
-app-beier.kezunlxgra-ewl6n1jmj352.p.runcloud.link
-mufg.much-jqosp.cloud
-www.much-jqosp.cloud
-mtbnk.4nmn.com
-turneypubgmonline.com
-lbanquepostalecerticoplusds.ml
-loginhelp-auth.com
-new-event-hype.gq
-fatura-magazine-luiza.tk
-verifyafcucount.servegame.com
-daddy.newupdate.cyou
-app-access-require.com
-fintrakk.xyz
-www.mi3iiltb.com
-confirmpage-385976.space
-a.petsinn.pt
-af4b5.petsinn.pt
-steamgift.org.ru
-service-homegate-wichtigzugangsdaten-konto.wpdevcloud.com
-royaleboxm11.com
-app-require-access.com
-www.safety-steps-help.com
-happy-river-03cbd7b10.1.azurestaticapps.net
-login-maile-547a.query831428.workers.dev
-53rd.com.login.secured.muscleheadmeals.com
-pubg-event-free.bwoajt.cf
-uspsprioritydlvr.com
-steamcommunuity.top
-support-exam-hse.gq
-www.fb-login.b0tnet.com
-mijnics-procedure.camdvr.org
-perfection-service-ups.com
-whatsappgrub18plus39.tk
-addressups.com
-etc-mieisais.ptxhge.cn
-click-remove-app.com
-change-customer-ups.com
-hse-email.gq
-discords-gift-free-nitro.com
-outlook-owa-987690.web.app
-decline-transaction-request.com
-shy-snowflake-9046ded8de51993dae2dcb50b8d97b7c4f03ded8de51993da.micheal-singh824ded8de51993dae2dcb50b8d97b7c4f03.workers.dev
-bt-102474.weeblysite.com
-mhomujiuanwih8k3.wusps.xyz
-7ue2y.wusps.xyz
-200bsmagm0nt6q0rcuo5h0k0egraamlchqc55m4rjbgvgig3t2gto60.siasky.net
-devis.quest
-74g09pojd2emgnihj.we9ixzz.co
-1lg0episvsn19lri8afn0kppfbrwt.we9ixzz.co
-btinternet-page.weeblysite.com
-citezennss.com
-bjmcellibbibibbtlyuk.com
-bimcellhgs.com
-meine-bestsign-update.web.app
-app-meta-0x36d2.xyz
-logintest.citistorehk.com
-www.support-fb.ml
-aib-webapp-security.com
-lili980.tech
-apps-bots.online
-filesen.d3nr2bijxmuzfk.amplifyapp.com
-holding-energy.ru
-bt-email-login-102056.weeblysite.com
-tournament22.itsaol.com
-wee2.dg4u2hxr9nmcn.amplifyapp.com
-aib-applogin-services.com
-mtaccess.us
-bt-email-login-107469.weeblysite.com
-jp-amazon.amacion-q5di3v5.ga
-mailer7.onedrive0001.workers.dev
-bgmieventskinz.xyz
-vsmr9sfgsw2ao2rby9z29v7du5xa6.wusps.xyz
-0i21t93.wusps.xyz
-39oof7oney0bjbqk.wusps.xyz
-7l7pq2as.wusps.xyz
-fckavzwmja1oxvx.wusps.xyz
-reject-transaction-request.com
-snowy-block-c05f.vijew29269.workers.dev
-hype-form-club.tk
-migratenewverupdatecable4.com
-hlyccuopwml.weeblysite.com
-usa-battle.com
-12howwyw.weeblysite.com
-cvhjcxghxghxghbcghbcv.weeblysite.com
-webmail-www.weeblysite.com
-aib-login-security.com
-bvgdjkiugffbhgcgbjffhfgb.weeblysite.com
-insta-images.com
-webmail-one.weeblysite.com
-ayls6-5iaaa-aaaad-qdccq-cai.raw.ic0.app
-gmfhx-jaaaa-aaaad-qc7ka-cai.raw.ic0.app
-etc-mieisais.qxrgmbp.cn
-dfcghbncxhjcxhbxhjbchc.weeblysite.com
-dfchjnfchjbndxhbvcghbc.weeblysite.com
-bmcxlclxl.com
-clubncor-ar.ml
-confirmpage-67890556.site
-confirmpage-385976.site
-amacion-oisnoui.ga
-www.estat-homes.com
-accedinexi.quachnham.com
-resotrargsantder19378250.qc.lu
-www.bluebadgesupportcanter.com
-www.metamask-trading.com
-bjnmcodemeibb.com
-m8t1b0.info
-xu5sja0jvcji69j5u1s.wusps.xyz
-ctzsn.online
-m3ittb.info
-mtsecureverify.com
-yqbtmq.wusps.xyz
-jmyrrhydq43r1j1z3h.wusps.xyz
-bendiigobank-au1.com
-vhvxevclr.wusps.xyz
-bdmcellimlex.com
-nitro-gift-discord.ru
-safety-advice-help.com

Разница между файлами не показана из-за своего большого размера
+ 294 - 296
yoroi_suspicious_level2.dns


Некоторые файлы не были показаны из-за большого количества измененных файлов