root 3 سال پیش
والد
کامیت
e4fee6fb78
7فایلهای تغییر یافته به همراه823 افزوده شده و 367 حذف شده
  1. 134 73
      nethesis_level3.netset
  2. 37 37
      whitelist.global
  3. 104 7
      yoroi_malware_level1.ipset
  4. 175 3
      yoroi_malware_level2.dns
  5. 268 221
      yoroi_malware_level2.ipset
  6. 105 3
      yoroi_suspicious_level1.dns
  7. 0 23
      yoroi_suspicious_level2.dns

تفاوت فایلی نمایش داده نمی شود زیرا این فایل بسیار بزرگ است
+ 134 - 73
nethesis_level3.netset


+ 37 - 37
whitelist.global

@@ -14,37 +14,6 @@
 62.149.128.154
 62.149.128.151
 62.149.128.160
-104.248.94.94
-167.71.8.45
-188.166.85.49
-178.62.192.199
-167.99.40.163
-188.166.55.209
-161.35.88.180
-134.122.56.28
-188.166.28.60
-167.71.73.171
-161.35.95.211
-188.166.41.33
-167.99.219.82
-206.189.101.65
-104.248.87.189
-178.62.219.148
-206.189.11.13
-167.99.42.32
-188.166.77.48
-164.92.219.73
-188.166.34.36
-104.248.93.140
-188.166.85.76
-167.99.40.250
-64.225.71.170
-157.245.67.209
-134.209.202.70
-188.166.91.80
-167.71.79.14
-167.172.38.97
-188.166.83.149
 64.225.71.115
 164.92.215.172
 188.166.17.46
@@ -52,6 +21,7 @@
 188.166.48.29
 161.35.153.110
 174.138.5.216
+188.166.83.149
 188.166.91.196
 165.22.199.90
 128.199.53.157
@@ -82,13 +52,13 @@
 178.62.204.160
 188.166.68.157
 167.71.79.117
-157.245.78.190
 167.172.47.117
 161.35.82.120
 161.35.93.220
 128.199.60.18
 165.22.205.55
 104.248.207.61
+157.245.78.190
 206.189.110.255
 167.99.46.183
 174.138.2.121
@@ -103,24 +73,23 @@
 104.248.194.112
 167.172.38.137
 64.225.71.102
-167.71.11.73
 164.90.194.17
 178.62.200.175
 188.166.38.161
 134.209.192.110
 188.166.24.24
-165.22.198.217
+167.71.11.73
 178.128.246.16
 161.35.87.129
 178.62.222.164
 188.166.21.67
 167.71.76.184
+165.22.198.217
 167.172.45.223
 134.209.80.130
 104.248.196.207
 165.22.192.54
 164.92.220.56
-188.166.2.236
 104.248.193.30
 188.166.73.117
 188.166.80.143
@@ -128,6 +97,7 @@
 64.227.71.52
 188.166.70.107
 188.166.86.111
+188.166.2.236
 178.62.240.117
 188.166.36.213
 161.35.155.65
@@ -144,20 +114,50 @@
 159.223.0.121
 178.62.198.100
 188.166.69.24
-178.62.201.144
 188.166.31.25
 157.245.70.135
 165.22.207.243
 167.71.10.219
 134.122.51.143
 64.227.64.202
+178.62.201.144
 188.166.63.108
 134.209.93.118
 178.62.221.146
 159.65.197.198
-164.92.146.65
+104.248.94.94
+167.71.8.45
+188.166.85.49
+178.62.192.199
+167.99.40.163
+188.166.55.209
+161.35.88.180
+134.122.56.28
+188.166.28.60
+167.71.73.171
+161.35.95.211
+188.166.41.33
+167.99.219.82
+104.248.87.189
+178.62.219.148
+206.189.11.13
+167.99.42.32
+188.166.77.48
+206.189.101.65
+188.166.34.36
+104.248.93.140
+188.166.85.76
+167.99.40.250
+64.225.71.170
+164.92.219.73
+157.245.67.209
+134.209.202.70
+188.166.91.80
+167.71.79.14
+167.172.38.97
 104.248.92.34
 64.225.72.197
+164.92.146.65
 134.209.136.185
 134.209.206.121
 143.198.250.79

+ 104 - 7
yoroi_malware_level1.ipset

@@ -19,12 +19,18 @@
 52.161.86.181
 52.176.51.35
 52.172.89.107
+52.172.90.56
 52.183.2.191
 52.224.4.156
 52.178.73.194
 52.235.39.157
+52.140.193.223
+52.140.53.145
+52.140.48.197
+52.175.139.221
 52.226.197.29
 52.200.164.252
+103.9.36.191
 103.170.92.20
 103.116.178.85
 103.139.242.30
@@ -41,9 +47,15 @@
 103.79.77.200
 103.41.204.169
 101.36.126.176
+101.43.105.202
+101.43.231.30
 101.110.34.77
 104.244.74.28
 104.208.98.101
+104.208.92.32
+104.208.107.66
+104.208.111.204
+104.215.4.72
 104.206.128.34
 104.206.128.42
 104.140.188.2
@@ -58,6 +70,9 @@
 106.37.239.43
 106.13.19.154
 106.75.148.201
+106.75.190.116
+106.75.218.140
+106.75.84.37
 106.55.149.238
 107.175.17.192
 107.189.30.245
@@ -76,23 +91,37 @@
 109.248.6.95
 109.12.111.14
 112.85.42.41
+112.85.42.89
 112.26.212.21
 116.105.161.223
+116.105.161.99
 116.105.162.139
 116.105.164.13
 116.105.165.214
 116.105.210.208
 116.105.212.168
+116.105.212.31
 116.105.25.16
 116.105.72.113
+116.105.163.239
+116.105.211.60
+116.105.31.203
 116.103.19.148
 116.110.223.96
 116.110.77.47
 116.110.81.60
 116.110.87.172
+116.110.221.58
+116.110.255.0
+116.98.50.76
+116.98.168.106
+116.98.57.113
 116.124.128.206
 116.74.71.73
+117.7.125.252
+117.34.95.146
 117.34.87.61
+117.4.243.10
 117.22.144.40
 118.123.105.87
 118.123.105.83
@@ -106,6 +135,8 @@
 121.46.25.189
 124.223.61.165
 124.222.144.46
+124.221.117.45
+124.79.243.167
 124.90.53.148
 124.41.193.166
 128.199.192.135
@@ -123,6 +154,8 @@
 129.151.35.240
 129.232.188.93
 13.66.160.255
+13.73.237.72
+13.73.233.253
 13.78.184.59
 13.84.35.46
 136.232.34.70
@@ -142,6 +175,7 @@
 139.64.34.193
 140.82.63.183
 140.82.49.12
+143.110.252.155
 143.244.148.211
 143.198.107.139
 143.198.136.88
@@ -155,14 +189,17 @@
 144.202.3.39
 152.70.88.137
 154.89.5.74
+154.89.5.85
 154.94.234.107
 154.198.211.135
 157.245.80.109
 159.223.21.130
+159.223.101.214
 159.65.72.66
 159.65.80.197
 159.65.88.10
 159.89.230.105
+159.75.206.201
 159.8.59.82
 159.69.237.188
 164.52.24.180
@@ -171,12 +208,16 @@
 164.92.76.21
 164.92.143.168
 164.68.99.3
+165.154.21.120
 165.227.29.122
 167.248.133.119
 167.94.138.117
 167.94.138.46
 167.94.138.45
 168.197.250.14
+171.243.115.246
+171.251.17.87
+171.251.26.247
 171.251.24.46
 171.25.193.20
 171.12.10.137
@@ -184,6 +225,8 @@
 175.184.165.173
 175.137.153.178
 177.73.179.206
+177.207.67.234
+177.96.102.51
 177.205.182.145
 178.79.147.66
 178.32.197.94
@@ -229,11 +272,14 @@
 186.64.87.194
 191.232.240.186
 191.235.80.41
+191.239.243.95
 191.112.19.94
 191.252.103.16
 188.166.117.140
 188.244.13.155
+188.157.92.109
 188.127.227.144
+188.55.223.134
 188.44.20.25
 188.210.148.245
 193.118.53.194
@@ -253,6 +299,7 @@
 202.95.1.25
 203.153.216.46
 203.114.109.124
+203.212.24.90
 203.99.177.128
 206.189.137.34
 206.217.0.154
@@ -263,6 +310,8 @@
 211.36.141.6
 211.36.141.76
 211.36.141.32
+211.36.141.97
+211.219.119.13
 212.192.246.173
 212.237.17.99
 212.237.5.209
@@ -295,8 +344,10 @@
 3.83.124.113
 31.44.185.237
 31.215.206.13
+31.215.70.127
 31.35.28.29
 31.24.158.56
+34.125.86.70
 34.96.130.4
 34.96.130.11
 34.96.130.25
@@ -322,12 +373,15 @@
 37.211.189.48
 37.44.244.177
 42.193.23.161
+43.154.151.76
 43.129.40.155
 43.130.10.173
 43.130.79.244
 45.33.65.249
 45.9.20.200
+45.137.23.223
 45.137.21.166
+45.67.34.253
 45.153.160.135
 45.14.224.5
 45.129.99.212
@@ -338,6 +392,7 @@
 45.118.135.203
 45.142.114.231
 45.176.232.124
+46.101.134.65
 46.55.222.11
 46.196.124.188
 46.8.220.88
@@ -347,6 +402,7 @@
 47.180.172.159
 47.23.89.60
 47.23.89.61
+47.23.89.58
 51.107.211.207
 51.107.82.193
 51.107.78.98
@@ -354,6 +410,25 @@
 51.120.69.67
 51.120.82.161
 51.13.164.6
+51.13.164.27
+51.13.115.233
+51.13.121.223
+51.13.161.138
+51.13.105.221
+51.13.165.1
+51.103.155.76
+51.11.104.149
+51.12.93.7
+51.12.88.131
+51.12.94.222
+51.137.184.235
+51.137.185.163
+51.142.126.198
+51.142.127.112
+51.142.81.102
+51.140.119.253
+51.38.133.28
+51.178.61.60
 51.210.176.76
 51.254.140.238
 51.75.33.122
@@ -423,6 +498,7 @@
 86.98.148.17
 86.98.11.110
 86.98.55.231
+86.184.85.199
 86.108.123.52
 87.98.190.184
 87.109.192.230
@@ -440,6 +516,7 @@
 91.139.36.128
 91.243.59.39
 91.243.32.244
+92.255.85.237
 92.118.160.5
 92.118.160.33
 92.118.161.61
@@ -522,6 +599,7 @@
 192.241.217.237
 192.241.217.85
 192.241.219.136
+192.81.218.58
 192.99.251.50
 38.70.253.226
 41.130.133.118
@@ -529,6 +607,7 @@
 41.228.22.180
 41.76.108.46
 41.232.210.78
+41.205.12.24
 41.36.82.58
 41.84.242.153
 41.84.234.250
@@ -545,10 +624,12 @@
 82.152.39.39
 84.52.117.54
 84.241.8.23
+94.102.56.9
 94.102.56.10
 94.214.231.1
 94.140.114.213
 108.4.67.252
+108.60.213.141
 114.67.249.200
 114.79.148.170
 119.118.15.29
@@ -589,6 +670,7 @@
 181.98.246.214
 187.170.7.81
 187.59.18.65
+187.199.203.159
 190.189.33.6
 190.206.211.182
 190.73.3.148
@@ -598,11 +680,27 @@
 200.104.16.99
 200.17.134.35
 201.170.181.247
+201.145.160.158
 201.40.225.216
 216.158.226.206
 220.250.10.184
 156.194.119.235
 156.220.15.136
+113.31.161.87
+113.31.102.176
+113.206.128.249
+113.57.97.193
+223.241.72.123
+223.130.30.1
+40.112.91.70
+40.123.225.190
+40.74.114.194
+40.74.141.237
+40.74.84.217
+40.74.78.148
+40.117.224.141
+40.89.184.244
+40.134.247.125
 23.224.189.39
 23.224.189.15
 23.224.186.223
@@ -620,19 +718,12 @@
 23.234.200.130
 23.90.160.146
 23.128.248.23
-223.130.30.1
-40.117.224.141
-40.89.184.244
-40.134.247.125
 130.164.206.70
 170.106.115.39
 170.106.173.40
 170.130.187.54
 170.130.187.26
 170.130.187.46
-113.206.128.249
-113.57.97.193
-113.31.102.176
 111.13.63.92
 111.13.63.102
 111.13.63.98
@@ -647,6 +738,7 @@
 197.89.21.163
 197.92.132.79
 197.242.150.244
+90.74.16.2
 160.116.22.20
 160.16.102.168
 160.153.57.105
@@ -655,9 +747,12 @@
 210.57.209.142
 102.47.31.216
 102.65.38.67
+102.65.38.77
+102.184.187.50
 102.132.145.147
 100.1.108.246
 105.186.100.243
+105.186.127.127
 105.186.156.105
 105.184.116.32
 105.187.31.228
@@ -675,8 +770,10 @@
 24.152.37.138
 24.53.49.240
 24.43.99.75
+24.229.150.54
 24.231.158.110
 32.221.231.1
+32.221.225.247
 39.41.254.161
 39.44.188.102
 39.44.136.96

+ 175 - 3
yoroi_malware_level2.dns

@@ -2887,6 +2887,7 @@ www.vuxner.com
 xn--b1aglqd.net
 rus-po.ru
 antivito.ru
+jeremylee.co.nz
 1.basenews7.com
 1-800-660-bitch.com
 0398wcb.com
@@ -7378,6 +7379,11 @@ lubbyd.com
 getpdfdata.com
 brandtrustcom.cyou
 mmoam.com
+jorto.net
+jorto.cn
+gibson.cn
+trivalu.co
+ucheanalky.site
 primefavro.xyz
 loteria.nyc
 resultado.us
@@ -9709,6 +9715,174 @@ hipparion.net
 sadu-kz.com
 schulze-bremen.eu
 xg8888.top
+wajj.top
+tarogatoovoda.hu
+grandepuntofan.hu
+eloel.hu
+deta.hu
+sysconcept.hu
+ethermon.co
+smash-capital.com
+earnforbitcoin.xyz
+techbudblog.xyz
+easycrypto4u.xyz
+joshackland.com
+hqdsmokin.store
+parrotdipankarblogs.com
+parrotdipankarstores.com
+dddd28348.work
+ingason.net
+xianbaobaohe.com
+xianbaoku.net
+xianbaocool.cn
+xianbao.fun
+xianbaocool.com
+tellirobot.fr
+lichtnet.net
+creatersbank.com
+yunserver-apple.com
+icloud.appleid.5i213.cn
+lci0ud.com
+sqwz.cc
+apple-icloudid.top
+appieios.com
+gugui348.cn
+tabpay888.xyz
+grady-yang.com
+embarka.org
+ivlc.cl
+conferenciadunamis.org
+kingdomlab.xyz
+escuelaruah.com
+ntnxlab.ch
+jdskxk.xyz
+ivcjf.xyz
+adsfaf.xyz
+jymh123.top
+gfdrk.xyz
+ggwebmail.com
+ahcjpb.cn
+hosi.tk
+tarjetacencosud.club
+tarjetacencosud.link
+redllink.com
+emptymale.net
+pharmaguide.ca
+fuhejituan.com
+920vv.com
+fhag.vip
+foxyslut.com
+fruittube.us
+coy.cat
+www.ikkisushi.ca
+khronosbarbershop.ca
+ikkisushi.ca
+postracking.cc
+nomadapp.net
+nebula.ge
+hk81.site
+hk85.site
+hk82.site
+hk83.site
+ewcv.site
+hk84.site
+eexs.site
+evsa.site
+hjhkjsa.xyz
+intovoip.net
+lamenace.club
+kcre.pl
+rezareza.ir
+xmpldmn.xyz
+bravoiptv.net
+5gcore.com
+pinguingames.net
+headpoint.ru
+pereslavl-sale.ru
+propereslavl.ru
+pro-pereslavl.ru
+ledokol.digital
+codenearn.com
+kuplulekarstva.com
+eapteka.pro
+prodat-lekarstva.com
+999.818.cc
+818.cc
+hkjdk2.ren
+kmw888.top
+dk1122.com
+jhmsc.net
+dk1144.com
+dk1100.com
+fumaku.cn
+dk1199.com
+fumaku.cc
+62o.cc
+60o.cc
+jhmsc.cn
+jakubcendrowski.me
+eduphins.com
+sdogim.cc
+ryanlian.xyz
+goren-pnp.de
+shubiao.xyz
+jloongking.xyz
+ubcnet.xyz
+ksrbo.com
+rgbj668.com
+hybjtz.com
+syscphs.com
+slsxnjl.com
+kagemushadb.top
+meidezhuangshi.com
+arunrajiah.me
+fystdbsc.com
+eldakoff.com
+saodiao.top
+leap.vn
+qingmou.ltd
+zqzdsz.com
+1818q.top
+ds518.top
+njzy8.top
+xyys.club
+yy40.cn
+jubaohezi.com
+5i1.top
+pragnavedant.com
+pragnavedant.in
+iconictop100.com
+profusioncreatives.com
+technologyfarmer.online
+eastnwesttakeaway.com
+ihoops.uz
+ashewa.com
+rc-hourglass.com
+mindfield.in
+nikhilkamath.info
+imyanger.com
+sungar.ru
+prehraju.to
+wisscoffee.com
+tobu.xyz
+guiyuwbj.xyz
+4km2ts.com
+eranor.xyz
+swapvinyls.com
+yywang.xyz
+e-powerai.com
+ditith.top
+bhihiw.top
+ehlhll.top
+wjffanqiang.buzz
+whichlight.com
+estheticsupplies.cl
+enforcia.cloud
+yes4deal.com
+demo.ikm.gov.in
+gis.lsgkerala.gov.in
+shiweilyu.com
+vitavee.xyz
 kawashima-pack.com
 mgahwnvf.com
 ryjzbj.com
@@ -9738,7 +9912,6 @@ mir4fz.com
 maroungrey.com
 readysetforfineplayer.com
 nubavisions.com
-hjhkjsa.xyz
 worldviews.club
 worldviews.org
 elw.me
@@ -10003,6 +10176,7 @@ bartoszkobylinski.com
 binjee.tv
 poseti.online
 ssqcyx.com
+butafly.stream
 cloudattor.com
 jungwirth.tech
 datnentoanquoc.com
@@ -10105,7 +10279,6 @@ fffplqyzy.cn
 dadas6.cn
 xuncai.tech
 99325.vip
-tobu.xyz
 shitcointopia.net
 tyzoid.com
 inspectionmunicipal.com
@@ -10865,7 +11038,6 @@ snaaptt.com
 bittrt.com
 dimemarket.com
 syqxs.com
-arunrajiah.me
 lhsliquor.com
 esandesign.com
 buyid.net

تفاوت فایلی نمایش داده نمی شود زیرا این فایل بسیار بزرگ است
+ 268 - 221
yoroi_malware_level2.ipset


+ 105 - 3
yoroi_suspicious_level1.dns

@@ -9,6 +9,111 @@
 # Category        : Suspicious
 # Confidence      : 10
 #
+bjmcl1222.com
+bmcltlonline.tk
+dailychallenge.mrslove.com
+boxtesla.com
+cancel69866-binance-com.web.app
+deydafagne.temp.swtest.ru
+brayniame.jelityopakarizoneantre.link
+business-page-appeal-1670-0391.web.app
+wrangintya.klouraetyanherfilegertica.link
+business-page-appeal-1276-0352.web.app
+bnc.in24.site
+darkgreenthirstycalculator.fasminerimmer.repl.co
+snarlingcommonbusinesses.banoominerile.repl.co
+aeontty.shop
+bankofamerica.com.embsolutions.org
+mamusiqueplaylist.fr
+qwiqk.net
+bamboocosmeticos.online
+zap895387-1.plesk12.zap-webspace.com
+www.aldensip.cl
+banma.strawberrycatchbasin.com
+tduser.loginauthentication.drhatemnouman.com
+www.amazon.thekynutn.club
+web7583.web07.bero-webspace.de
+www.amazon.tdvf.club
+bncrtxt1233.medianewsonline.com
+generalbank.asesorgeneralbn.repl.co
+wwevpoaoss.icu
+cmr-clientes-en-linea.web.app
+live-assistant-supr.cf
+365mobileonliine.com
+amazon.co.jp.mocsno.com
+amazon.co.jp.mxose.com
+healthy-torch-lily.glitch.me
+amazon.rujandawadfa.live
+bnclgrlt.sportsontheweb.net
+easyblockauthenticator.com
+groundieos.com
+www.amazon.szbyu.club
+www1.aeonceon.icu
+hype-squad-join.com
+www.amazon.securevf.club
+mydepotassist.com
+paypal-lock-case.net
+rakutgn-fgh.com
+giaidaulmht.vn
+annsalbum.com
+neutralgroundservices.com
+mrbcomercioexterior.com
+safehousefsi.com
+moderation-exams.com
+janetruelove.com
+netflixes.netflixxnet.repl.co
+lightning-excellent-borogovia.glitch.me
+knowledge-peeing-climbing-create.trycloudflare.com
+bxvideo.net
+daniuchuanbo.net
+freshteimes.com
+nordicglue.com
+pipeflow.cl
+www2.aeoncesn.icu
+www1.aeoncesn.icu
+www1.aeoncezn.icu
+365updatedtermsboi.com
+a6tqhiqjarg73tyjoqpa.web.app
+santanapp-auth.com
+compettuns.com
+office0365auth002.5alarmbbq.com
+rid-american-hardcover-spouse.trycloudflare.com
+myxgxnv.cn
+www2.aeonceun.icu
+jcb-wtqa.tokyo
+michaelcorcoranmortgages.com
+paypal-lock-case.com
+joinrfor-teamhypesquad.com
+www.dccorc.net
+www.eth-pi.com
+teamhypesquad-events.com
+boxroyale22.com
+correos-pagos.com
+www.agimobiliare.ro
+wallet-linkdapps.net
+discord-exam.discordexam.repl.co
+candidfancyactiveserverpages.academypartners.repl.co
+humus-eli-yahoo.click2eat.co.il
+eleaninguality.com
+configurazionenexi.com
+erausijsim.com
+famous-zealous-balance.glitch.me
+member-grarena.com
+joyzdickerson.com
+wallet.roninchain.com
+formulary-programs-hypesquad.com
+ssl.securly45.com
+banquepostal.dsp2.top
+415165a6.office365onlinemails.pages.dev
+cleaninguality.com
+pulaubiru.xyz
+degradjsnd.com
+register-app-privati.com
+hiperconsultoria.com
+www.com-verify-helpcenter.com
+hipersuafamiliafeliz.com
+secure.xvhjtfjkl.workers.dev
+shy-snowflake-5200.micrologins.workers.dev
 midassbuy-international.net
 www3-mtverify.canalcoruna.net
 static-xx-fbcdn-net.healthproduct.biz
@@ -315,16 +420,13 @@ supendingds2311.sportsontheweb.net
 eposcard.co.jp.trmi.jp
 dfghjklghjklfghjk.weeblysite.com
 connecti-auonepay-jp.l905y4r.cn
-register-app-privati.com
 solanagiftsnft.net
-pulaubiru.xyz
 mpsiena-sistemastorno.com
 ghjkjkjkjkkklkkkrtyyu.weeblysite.com
 mazsuhcd.hyperphp.com
 bardgdf.hyperphp.com
 ettoyasqd.hyperphp.com
 alinstanteextracash.tuportalsegurolbk.click
-banquepostal.dsp2.top
 aowntimdmndf.com
 atomic-connect.com
 business-appeal-page-126-74563.web.app

+ 0 - 23
yoroi_suspicious_level2.dns

@@ -1070,35 +1070,12 @@ psd2-kunde65344.info
 psd2-kunde99772.info
 zex.link
 mikroed.ru
-lamenace.club
-kcre.pl
-rezareza.ir
 www.happyglobaldonations.org
 happyglobaldonations.org
 mortskugga.com
 rid.pl
 isoslownik.pl
 isowiki.eu
-jhmsc.net
-kmw888.top
-dk1122.com
-hkjdk2.ren
-dk1144.com
-dk1100.com
-dk1199.com
-fumaku.cn
-fumaku.cc
-60o.cc
-62o.cc
-jhmsc.cn
-evsa.site
-ewcv.site
-eexs.site
-hk85.site
-hk81.site
-hk83.site
-hk84.site
-hk82.site
 jp.co.tjlkwcs.cn
 www2.aoenauosm.icu
 axlleinfinity.com

برخی فایل ها در این مقایسه diff نمایش داده نمی شوند زیرا تعداد فایل ها بسیار زیاد است