root 1 год назад
Родитель
Сommit
acdd335499
4 измененных файлов с 1296 добавлено и 698 удалено
  1. 519 220
      yoroi_malware_level1.dns
  2. 413 424
      yoroi_malware_level2.dns
  3. 347 37
      yoroi_suspicious_level1.dns
  4. 17 17
      yoroi_suspicious_level2.dns

Разница между файлами не показана из-за своего большого размера
+ 519 - 220
yoroi_malware_level1.dns


Разница между файлами не показана из-за своего большого размера
+ 413 - 424
yoroi_malware_level2.dns


+ 347 - 37
yoroi_suspicious_level1.dns

@@ -9,6 +9,319 @@
 # Category        : Suspicious
 # Confidence      : 10
 #
+login.cystic.online
+tgagtgg.top
+telegrbmc.org
+telegravm.org
+telegram-i.org
+worker-polished-flower-e724.onlinevenmo89.workers.dev
+du-homepage.sanctionedrefunds.com
+du-home.umutsar.com
+du-home.fluirslowstudio.com
+wwa.t787td43dv.dns-dynamic.net
+92jbp.com
+uskn.ajeujc.cyou
+ks-yjs.com
+029manyy.com
+socialbytenetwork-slovakia.tempisite.com
+0760esjx.com
+uspq.us09wr131d6.co
+797alg.com
+esff.cuakss.biz.id
+wwe.bjkuiutterw2.dns-dynamic.net
+request-a-review-here.surge.sh
+goodthingsandmore.com
+form-wh.dikyt.site
+singapore2.website-my.biz.id
+77i7kn5.apps-down.com
+singapore01.website-my.biz.id
+ww.appid-com.cc
+ip-katespade.com
+bantuan-bansos.digitalis.biz.id
+tokenspocket.mom
+mandarin20986873.brizy.site
+mail-100080.weeblysite.com
+www.3534rdgdrr.cloudns.be
+yidaweidong.com
+anyuantech.com
+cswendeng.com
+tztjkgl.com
+mcli8398.com
+pa2233.com
+biaomei99.com
+qhjiaying.com
+cqcangzhen.com
+sousoucha.com
+currentlyy.univer.se
+whatsapp-web.xyz
+www.tjkjszb.com
+www.gyxwqy.com
+www.hbdzgrj.com
+home-100466.weeblysite.com
+www.nbzyjk.com
+so-moe.com
+imzhtoken.ltd
+siterise-production.up.railway.app
+a.dr-lube.com
+www.islamabadlubricants.com
+pemeliharan-akun-dana.webappsystem.com
+gdgltyn.com
+pubg-mobile-uc69246.like-blogs.com
+wllportlv7.com
+uskv.inmnti.top
+onlineweightlossclass.com.blackcustomerservice.shop
+outstanding-bee.static.domains
+microsoft-alliedtesting.com
+wwe.hjg78d478h.dns-dynamic.net
+group1-telegram.website-my.biz.id
+aaa-bbb.ggffch.com
+cn.im-tekon.net
+custom-anpost.help
+free-content-porn.app4u.lol
+penukaran-poiin-dana.anakdara9.art
+www.bbva-espana.net
+vixxenclothing.com
+review-submit.surge.sh
+basic-bundle-old-wind-d6db.noreplyaccountalert.workers.dev
+bysfjxh.com
+unibswap.xyz
+irntoken-zf.biz
+ek.moilefxe43x.dns-dynamic.net
+att-102523.weeblysite.com
+docc-ad09.omsecdwalaihn.workers.dev
+whatsapp.waxchain.online
+review-page-01-01.replit.app
+r7d.86d.mytemp.website
+riddler.d1k9hg7dvh6w7i.amplifyapp.com
+enter-mantanetwork.com
+metamas1.metamaskapp.app
+join-mantanetwork.app
+home-102119.weeblysite.com
+a-103488-mail-e-988ee.weeblysite.com
+1bb0135d-51fd-466b-aa54-0b027dda8eda-00-1rso8mz1owtvz.worf.replit.dev
+home-109456.weeblysite.com
+formdana00.link-vvip99.xyz
+netflix.rahulsbeelur.com
+yg-102.huvista.cloudns.biz
+worker-dry-moon-baa2.spursyang-46e.workers.dev
+yg-100.huvista.cloudns.biz
+wwe.kjy4889f.dns-dynamic.net
+home-104885.weeblysite.com
+www.yt6rt.dns-dynamic.net
+hbyryjy.com
+yg-101.huvista.cloudns.biz
+yg-105.huvista.cloudns.biz
+promociones-lcbc-clientesc.site
+raspberry20983273.brizy.site
+promociones-ciudad-clientes.site
+lcbc-exclusivas-promos.site
+telegromc.com
+www.malzcfdsghx.top
+kiwi20981579.brizy.site
+ea3f2e24wee8a92110d2r2w64wds15143.e27a2722.workers.dev
+bpges-identycnfrm-10928.ydns.eu
+nam11.cityadventures.click
+exclusivas-promos-lcbc.site
+daget-io.link-vvip99.xyz
+notls.godyang.buzz
+att-100606.weeblysite.com
+aktiv-push.info
+support247-108471.weeblysite.com
+metamas.metamaskapp.app
+tbscott212.bubbleapps.io
+efos221n32.wiki
+wwe.09iu7j5f3w.dns-dynamic.net
+www.cataclysmblizzard.com
+poe-105679.weeblysite.com
+perfectemnioyee.click
+telegramcnz.com
+234995938472796922308244432465.servicecheck.cc
+whatsapp.toparn.com
+vn443.com
+giegie-word.blz0321.workers.dev
+adminuser.locogp.com
+contact-mufg.com
+itusoyb.com
+okv386.com
+turkiyecumhuriyetiziraatbankasi.com
+ups-returns.net
+vvahts-app-iu.com
+www.bgrxc.com
+www.chbtz.com
+support1.accountscenter.click
+review-violation-apply-support.surge.sh
+mufg-customerc.shop
+paidlah.club
+popcorn.joneso.workers.dev
+sebastianhorsley.com
+linglog.com
+samantharding.com
+exoduis.com
+895895r.com
+bestfxstreet.xyz
+prefcetiemoneis.xyz
+prefectmnoye.shop
+prefectiomonys.shop
+prfcntomonyye.shop
+rechargequickdu.xyz
+scottsorchids.com
+utgrpbg.com
+mank85387sfyrukkuy8yuyfygfmank85387sfyrukkuy8yuyfygfg.weeblysite.com
+paylah.shop
+pay-lah.life
+wedsffs.does-it.net
+dbs888.click
+webmailpagggo.doesntexist.com
+allegro.pl-zaloguj.online
+webbamil.servebbs.com
+www.allegro.pl-zaloguj.online
+btinternet-105817.weeblysite.com
+nam3681.bizsolutions.click
+wwebmail685.dontexist.com
+bbtt-103197.weeblysite.com
+6cxlrfd.imvolleyball.org
+business-verification.bizsolutions.click
+mail.186-2-171-38.cprapid.com
+syderybaba.site
+bt-home-105344.weeblysite.com
+denizfirsatgsmtektikbuo.xyz
+vvalletrys-aj.xyz
+www.socialadirecionar.online
+et289.com
+trustwallet.dsd.com.mk
+att-105804.weeblysite.com
+pagesinfring.free.nf
+www.pancake.apperswap.xyz
+kkk.btrv.dns-dynamic.net
+senmeitefs.com
+telstra-101740.weeblysite.com
+juno-102923.weeblysite.com
+webmail-105137.weeblysite.com
+juno-102144.weeblysite.com
+att-105622.weeblysite.com
+cfpagesvless.wyw1018.cloudns.org
+att-108071.weeblysite.com
+juno-109442.weeblysite.com
+whatsapp-hk.shop
+changer.simsun.com
+penukaran-points-danaaa.anakdara9.art
+szrlnc.com
+rrpostoffice.com
+ebaite.cn
+penerima-dana.anakdara9.art
+waypl.pl
+fipobot447.convertbuilder.com
+att-106747-101594.weeblysite.com
+webmail-109059.weeblysite.com
+att-107550.weeblysite.com
+wk.448836.xyz
+att-101388-103065.weeblysite.com
+att-107016.weeblysite.com
+btinternet-104434.weeblysite.com
+bt-108596.weeblysite.com
+mail-100867.weeblysite.com
+tt-107899.weeblysite.com
+yxym.qzw.life
+m-learnonthego.com
+x0bak.imtokend.top
+metabusiness.equipesmbl.com
+ebay777.cc
+chatgpt.hkyiu.com
+back.aircloud.top
+help-supportads.info
+0821.yklsysn.link
+hxr.hxrhxr.link
+admin-form-fn-pre-ods.insolvency-development.co.uk
+worker-polished-cloud-bc5e.evilcode.workers.dev
+mgttm.top
+ipwsla.com
+proxy.jiandaoshou.vip
+sapreoffice.top
+uniswapone.top
+ji-usps.shop
+activa-dinamica3.brizy.site
+17vip10.com
+www.356659.com
+rapierbit.org
+www.unitechuniverse.com
+servermain.fly.dev
+www.eatcoeg.com
+yenib322.top
+activa-dinamica1.brizy.site
+dianliangyingyu.com
+jiamiaoyiliao.com
+zxlphi.com
+golddrgon.com
+linkdana3.websitedana.biz.id
+trentsherrill.com
+annaraye.com
+thetakeonadventure.com
+921409.com
+shy-star-c010.jackie1102.workers.dev
+sencanshangmao.com
+530586.com
+550395.com
+www.sonadimislemnz.com
+079458.com
+3jimx.shop
+event.pilotxpubg.com
+mid5gt63.anakembok.de
+www.onlneaidtat-iadaleri.com
+295905.com
+adminuser.qdk63awv8g.com
+telstra-100968.weeblysite.com
+ka.method2024.vip
+plser.org
+usig.kyhtiw.top
+ehyyrrqqqkk9.nexdus.nov.ru
+qsdqsd.bestphon.in
+2502570390444.zeiran.ir
+toppgeldbest.com
+voice-ourtime.ifoselovec.workers.dev
+onlinewebue8w.boxmode.io
+vvhtas.top
+ewf33.privrendom.com
+7003659.com
+validar-cuenta-mx.hstn.me
+dhl-event.app
+dunkcurrant20983206.brizy.site
+blibli.com.id1.putrivpn.biz.id
+dana-kaget.myvnc.com
+freviewlearning.onpagepro.com
+whm.allegro.mx
+obc.sorch.pro
+wwrlok.is-with-theband.com
+rftgvgyhu.univer.se
+najdhkialsm.onepage.me
+weebmialo9785.dnsdojo.org
+izebay.com
+stancorporation-tl.xyz
+indemnite-sfr.info
+sscomswiss.online
+ldmevaiidation.in
+818purduee.top
+webmail959.is-a-conservative.com
+hyperfollow.com
+help-center.cheerfulliving.click
+attmail-108018.weeblysite.com
+virginmoneyweb.com
+off-bike.net
+ing.proceso-direct.com
+bt-104037ufr6y.weeblysite.com
+mailserviceattyahoogd.brizy.site
+www.allegroaixnwxa.online
+www.allegroaixnwxa.store
+hdfcg.weeblysite.com
+bt-109622.weeblysite.com
+ar-stroi.ru
+go-help.cheerfulliving.click
+swissuporti3.online
+ce3ss1.webwave.dev
+sats-102673.weeblysite.com
+homeyahoomailing.weeblysite.com
+ewayrealt457899889.weeblysite.com
+yahoomail3455.onepage.me
+my-site-102813-107298.weeblysite.com
 bet895k.com
 bet895t.com
 bet895x.com
@@ -36,16 +349,7 @@ efr35.com
 istaanlikhaberleri.xyz
 authrbcroyalonline.com
 24en.site
-895895r.com
-adminuser.locogp.com
-itusoyb.com
 pixelse.shop
-rechargequickdu.xyz
-scottsorchids.com
-turkiyecumhuriyetiziraatbankasi.com
-vvahts-app-iu.com
-www.bgrxc.com
-www.chbtz.com
 allegrolokalnie.pl-oferta750275472.in
 tgpremoling.com
 premiumni.store
@@ -107,11 +411,7 @@ szilagyipal.com
 shijiebei67567.com
 allegrolokalnie.8v7a92.pl
 allegrolokalnie.4912481209-id.pl
-bestfxstreet.xyz
-prefcetiemoneis.xyz
-prefectmnoye.shop
 prefcetimneoiyes.buzz
-prefectiomonys.shop
 planos-gigante-portal-terr-mail.clicketcloud.com
 8ffd53mank85387sfyrukkiokoghgf8ffd53mank85387sfyrukkiokoghgf8f.weeblysite.com
 att-104506-106732.weeblysite.com
@@ -176,13 +476,9 @@ bt-internet-106032.weeblysite.com
 shew.privrendom.com
 n9fb3.shop
 home-105929.weeblysite.com
-support1.accountscenter.click
 downfrs.hzq.workers.dev
 discord.aixos.cc
 b7217.com
-prfcntomonyye.shop
-ups-returns.net
-utgrpbg.com
 www.musgocoea.top
 smtp.allegro.mx
 allegrolokalnie.v8a729c.pl
@@ -196,34 +492,19 @@ acount-service.weeblysite.com
 correctcakedata.online
 at7t.univer.se
 gfyth.univer.se
-poe-105679.weeblysite.com
 fhdf.univer.se
 cgd-anexar.com
 id-0251562.s4-tastewp.com
-kiwi20981579.brizy.site
 rvmc1.com
-nam11.cityadventures.click
 auth-irsbill5050.com
-att-100606.weeblysite.com
 derspk-aktualisierung369.xyz
 blank-template-5-31348.getresponsesite.com
 sparka-sicherheitscenter.net
 email-login-page-102318.weeblysite.com
 unlockpypl0.site
-tbscott212.bubbleapps.io
-a-103488-mail-e-988ee.weeblysite.com
-home-104885.weeblysite.com
-support247-108471.weeblysite.com
-mandarin20986873.brizy.site
-raspberry20983273.brizy.site
-aktiv-push.info
-bpges-identycnfrm-10928.ydns.eu
 bb65b.xyz
-home-102119.weeblysite.com
-home-109456.weeblysite.com
 homeyahoo90.weeblysite.com
 pojokinvestasi.com
-review-submit.surge.sh
 luxelivingkorner.com
 myinfo-rekutam-co-jp.yeahme99.com
 privee-messagerie02-ed7d79.ingress-erytho.ewp.live
@@ -237,7 +518,40 @@ sparka-vorgang-sicherheit.net
 sparka-hilfe.net
 ijelmpjoozeiw.com
 shfengkui.com
-sencanshangmao.com
+link.mail.beehiiv.com
+cataclysmblizzard.com
+uspwed.top
+deutschegroupe.de
+www.jv797.com
+www.weixinfxsc.com
+uht707.com
+yet39.com
+wpo748.com
+rwl504.com
+sru128.com
+ket59.com
+pzw163.com
+jzn43.com
+nha21.com
+neu508.com
+il863.com
+ace982.com
+hfu86.com
+htc35.com
+dtd26.com
+fha723.com
+fmp281.com
+fdp938.com
+chn418.com
+ayn809.com
+drfacx732.com
+usps.usapsgy.us
+usps.usapsni.us
+usps.usapsim.us
+usps.usapsvk.us
+business-suite-temp-97495457956.surge.sh
+utwas.com
+urghq.com
 www.adminxigua.top
 wlygnet.com
 wtm248.com
@@ -471,7 +785,6 @@ sound-f27f.zoe1107.workers.dev
 ngcxp.com
 news.tolledmo.click
 c4775.top
-business-suite-temp-97495457956.surge.sh
 zvnhgbjaxbdzw.com
 durechargees.bond
 instaproo.download
@@ -613,7 +926,6 @@ dashboard.a338cb7b46bc66082bf90b21.01fzrra-z1.com
 dashboard.opdfgxzv7.com
 dashboard.baa8cb7b46bc66082bf90c31s.02lnnkll-p3.com
 cool-violet-5e7b.8s6x2zv4.workers.dev
-contact-mufg.com
 credit-agricole-suivi.com
 com-cxa.com
 co-connect.org
@@ -1657,7 +1969,6 @@ atendenteindeniza.online
 segurogestionpersona.brizy.site
 air.bnb-id8301.com
 prefceitomnoieyr.monster
-wedrac.com
 preefctmoye.shop
 prefceitomnoieyr.art
 prectiomoeiny.xyz
@@ -1950,7 +2261,6 @@ support.ae.cbdarise.com
 support.ae.ychoutell.com
 enlineaperuformulario.happehtheory.com
 bancodecredito-cl.com
-myprepaidcentercard.com
 airplus.website
 att-103676.weeblysite.com
 att-104467.weeblysite.com

+ 17 - 17
yoroi_suspicious_level2.dns

@@ -9,26 +9,24 @@
 # Category        : Suspicious
 # Confidence      : 8
 #
-366228.com
 613365.cc
 apply-page-profile-1.replit.app
 az453.com
 brkedevletttttttt.arabayorumlarim.com
+contact-meta-policy-here.replit.app
+coynbase-wallet.com
+gocisyx2.top
 imtoken-qb.one
 imtoken-xo.mom
 lycamobedile.shop
 mail.nhffurd.indianxevent.com
 manto-hetwork.com
 marketfreshcomms.com
-neeaar.shop
-ogn579.com
 orezervasyon.com
-page-violation-1-remove.replit.app
 rr04327.com
 stitchesbychloe.com
-sudanesesport.com
-t0kenpoekct.moe
 t0keop0cket.top
+t0kenpoekct.moe
 teiegrom-g.com
 telegraem.fit
 telegrambotforminecraft.xyz
@@ -40,22 +38,26 @@ www.10bear.com
 www.my-go2.com
 www.shalix.ru
 www.update.antivirus-cleaner.com
-93269.xyz
-contact-meta-policy-here.replit.app
-coynbase-wallet.com
+366228.com
+bwgteamstar.com
 gugeapp.xyz
+neeaar.shop
+page-violation-1-remove.replit.app
+shoppfalaa.com
+sudanesesport.com
+appedosndles.shop
+appdownlsds.shop
+exoticegy.com
+mydreamproducts.com
+ogn579.com
+93269.xyz
 yaihooserviceteam.jigija-edogus.workers.dev
 worker-gentle-disk-cbab.sshgstklppliyyu.workers.dev
 worker-solitary-hill-2132.riydeletru.workers.dev
-gocisyx2.top
-shoppfalaa.com
 newtie.net
 bbspwl.com
 coinbase-task.com
-appdownlsds.shop
-appedosndles.shop
-bwgteamstar.com
-mydreamproducts.com
+bar-a6b6.att0serv.workers.dev
 qixing08.com
 ourtopads.com
 nqlnwpqzuj.com
@@ -76,7 +78,6 @@ spectahub.net
 www.login.lossocios.cl
 telepgrnc.top
 officecb4ba046d1b9e07db369576f8e44de8bcb4ba046d1b9e07db369576f8.mail2sendm.workers.dev
-bar-a6b6.att0serv.workers.dev
 brainstarnes.nuqabiwo.workers.dev
 aqujnpl.johnpaulson871.workers.dev
 91892dream-3a8f.bardoglet.workers.dev
@@ -164,7 +165,6 @@ daehdog.org
 www.hpqqp.com
 4233.henanwanjin.com
 shezsoft.top
-exoticegy.com
 bestreath.com
 ftp.maletiebnk1.buzz
 wals.saigow.top

Некоторые файлы не были показаны из-за большого количества измененных файлов