diff --git a/src/URLhaus.txt b/src/URLhaus.txt index 2a490486..5e9c969f 100644 --- a/src/URLhaus.txt +++ b/src/URLhaus.txt @@ -1,12 +1,148 @@ ################################################################ # abuse.ch URLhaus Plain-Text URL List (URLs only) # -# Last updated: 2019-06-06 23:43:07 (UTC) # +# Last updated: 2019-06-07 12:06:04 (UTC) # # # # Terms Of Use: https://urlhaus.abuse.ch/api/ # # For questions please contact urlhaus [at] abuse.ch # ################################################################ # # url +http://modestworld.top/sima/sima.exe +http://157.230.107.225:80/lmaoWTF/loligang.x86 +http://207.246.96.195/bins/UnHAnaAW.x86 +http://stfoods.ru/westyunioncopypayment.exe +http://oa.fnysw.com/weaverplugin/chinaexcel.exe +http://healthshop.pk/hdsf/newcrypt.exe +http://207.246.96.195/bins/UnHAnaAW.arm7 +http://207.246.96.195/bins/UnHAnaAW.arm5 +http://207.246.96.195/bins/UnHAnaAW.mips +http://207.246.96.195/bins/UnHAnaAW.ppc +http://207.246.96.195/bins/UnHAnaAW.sh4 +http://lhs.jondreyer.com/alg1b/files/090211%20Exp%20review%201%20Dreyer.doc +http://lhs.jondreyer.com/alg1b/files/090114%20Exp%20Grow%202.doc +http://lhs.jondreyer.com/alg1b/files/090114%20Exp%20Grow%202%20Web.doc +http://nexcontech.com/wp-content/Ay4TE/mdp5.exe +http://lhs.jondreyer.com/alg1b/files/090413%20More%20Combins%20Pascal%20Triangle.doc +http://update.igra123.com/flash/install.exe +http://207.246.96.195/bins/UnHAnaAW.arm6 +http://207.246.96.195:80/bins/UnHAnaAW.mips +http://207.246.96.195:80/bins/UnHAnaAW.ppc +http://207.246.96.195:80/bins/UnHAnaAW.arm5 +http://207.246.96.195:80/bins/UnHAnaAW.sh4 +http://207.246.96.195:80/bins/UnHAnaAW.arm7 +http://207.246.96.195/bins/UnHAnaAW.arm +http://207.246.96.195:80/bins/UnHAnaAW.x86 +http://207.246.96.195:80/bins/UnHAnaAW.arm6 +http://207.246.96.195:80/bins/UnHAnaAW.arm +https://charigaru.com/ktirvgidfgdsc/lodekrfjrnfdcd +http://myfile.qinlang.cn/myfile/fixtime.exe +http://xl.173wangba.com/OAClient.exe +http://gatco-gulf.com/wp-admin/includes/ch.exe +http://188.166.27.168/zehir/z3hir.ppc +http://98.159.110.79:789/ttffarm +http://188.166.27.168/zehir/z3hir.arm7 +http://188.166.27.168/zehir/z3hir.mips +http://188.166.27.168/zehir/z3hir.arm6 +http://188.166.27.168/zehir/z3hir.sh4 +http://188.166.27.168/zehir/z3hir.arm +http://188.166.27.168/zehir/z3hir.m68k +http://188.166.27.168/zehir/z3hir.arm5 +https://sbackservice.com/app +http://188.166.164.225/openssh +http://188.166.164.225/tftp +http://188.166.164.225/sh +http://188.166.164.225/wget +http://188.166.164.225/pftp +http://188.166.164.225/bash +http://188.166.164.225/ntpd +http://188.166.164.225/ftp +http://188.166.164.225/cron +http://188.166.164.225/sshd +http://188.166.164.225/apache2 +https://paste.ee/r/IBxWH +https://s.put.re/6ge1tsxb.exe +https://pastebin.com/raw/yy30ZSfm +http://auth.to0ls.com/l/sodd/udp +http://157.230.176.227/lmaoWTF/loligang.x86 +http://188.166.27.168/zehir/z3hir.x86 +http://157.230.176.227:80/lmaoWTF/loligang.ppc +http://188.166.27.168:80/zehir/z3hir.arm6 +http://188.166.27.168:80/zehir/z3hir.ppc +http://188.166.27.168:80/zehir/z3hir.arm +http://157.230.176.227:80/lmaoWTF/loligang.arm5 +http://188.166.27.168:80/zehir/z3hir.m68k +http://modestworld.top/kendrick/kendrick.exe +http://188.166.27.168:80/zehir/z3hir.arm5 +http://157.230.176.227:80/lmaoWTF/loligang.arm6 +http://157.230.176.227:80/lmaoWTF/loligang.arm +http://157.230.176.227:80/lmaoWTF/loligang.mips +http://188.166.27.168:80/zehir/z3hir.sh4 +http://157.230.176.227:80/lmaoWTF/loligang.arm7 +http://188.166.27.168:80/zehir/z3hir.arm7 +http://188.166.27.168:80/zehir/z3hir.mips +http://157.230.176.227:80/lmaoWTF/loligang.x86 +http://114.34.105.44:9245/.i +http://188.166.27.168:80/zehir/z3hir.x86 +https://uc56fc78cb85b1b0315939d407f9.dl.dropboxusercontent.com/cd/0/get/AiUkR5CLHPQmzvhuyVUceW8EWdeasKpplBHnEjPBNRS5SZvITcER5uSJLX2XMsxhLuX35GOlixJXJivnhnDZ48qCvQQX7_93WU6B1gLM7sk2bA/file?dl=1 +http://updtes.com/files/upd4.exe +http://209.97.132.77/lmaoWTF/loligang.ppc +http://209.97.132.77/lmaoWTF/loligang.m68k +http://updtes.com/files/upd3.exe +http://xcnn.bariqarabions.cf/9090.exe +http://209.97.132.77/lmaoWTF/loligang.mips +http://209.97.132.77/lmaoWTF/loligang.arm +http://209.97.132.77/lmaoWTF/loligang.arm7 +http://209.97.132.77/lmaoWTF/loligang.arm6 +http://209.97.132.77/lmaoWTF/loligang.x86 +http://209.97.132.77:80/lmaoWTF/loligang.arm +http://209.97.132.77:80/lmaoWTF/loligang.arm6 +http://209.97.132.77:80/lmaoWTF/loligang.arm7 +http://46.249.59.89/zxcn/bnc.exe +http://51.75.163.170/bins/hoho.mips +http://209.97.132.77:80/lmaoWTF/loligang.mips +http://209.97.132.77:80/lmaoWTF/loligang.x86 +http://tradingco.000webhostapp.com/EA_MaxiScalper_ForTrad.exe +http://modestworld.top/stannwama/stannwama.exe +http://46.29.165.212/ln/pftp +http://46.29.165.212/ln/bash +http://46.29.165.212/ln/watchdog +http://46.29.165.212/ln/tftp +http://46.29.165.212/ln/wget +http://46.29.165.212/ln/telnetd +http://46.29.165.212/ln/sshd +http://46.29.165.212/ln/cron +http://46.29.165.212/ln/ftp +http://46.29.165.212/ln/ntpd +http://46.29.165.212/ln/apache2 +http://51.75.163.170/bins/hoho.arm5 +http://51.75.163.170/bins/hoho.m68k +http://51.75.163.170/bins/hoho.arm6 +http://51.75.163.170/bins/hoho.x86 +http://51.75.163.170/bins/hoho.arm +http://46.249.59.89/zxcn/bnc.exe?email=23432@4884 +http://pixel.mobycare.website/ped/edinburgh.html?email=23432@4884 +http://51.75.163.170/bins/hoho.sh4 +http://51.75.163.170/bins/hoho.arm7 +http://51.75.163.170/bins/hoho.ppc +http://weldtech.com.mx/fonts/icomoon/ss2.exe +http://weldtech.com.mx/fonts/icomoon/ss.exe +http://222.186.52.155:21541/ser +http://222.186.52.155:21541/mm +http://222.186.52.155:21541/loligang.x86 +http://222.186.52.155:21541/loligang.mips +http://222.186.52.155:21541/loligang.mpsl +http://222.186.52.155:21541/loligang.arm7 +http://222.186.52.155:21541/loligang.arm6 +http://222.186.52.155:21541/loligang.arm +http://222.186.52.155:21541/loligang.arm5 +http://51.75.163.170:80/bins/hoho.arm6 +http://51.75.163.170:80/bins/hoho.sh4 +http://51.75.163.170:80/bins/hoho.m68k +http://51.75.163.170:80/bins/hoho.ppc +http://51.75.163.170:80/bins/hoho.x86 +http://51.75.163.170:80/bins/hoho.arm5 +http://51.75.163.170:80/bins/hoho.arm7 +http://51.75.163.170:80/bins/hoho.arm http://37.49.230.137/oof.mpsl http://37.49.230.137/oof.arm7 http://37.49.230.137/oof.mips diff --git a/urlhaus-filter.txt b/urlhaus-filter.txt index 3b40d263..fae627b5 100644 --- a/urlhaus-filter.txt +++ b/urlhaus-filter.txt @@ -1,5 +1,5 @@ ! Title: abuse.ch URLhaus Malicious URL Blocklist -! Updated: Fri, 07 Jun 2019 00:22:24 UTC +! Updated: Fri, 07 Jun 2019 12:21:43 UTC ! Expires: 1 day (update frequency) ! Repo: https://gitlab.com/curben/urlhaus-filter ! License: https://creativecommons.org/publicdomain/zero/1.0/ @@ -768,6 +768,7 @@ 114.33.233.96 114.33.53.66 114.33.70.48 +114.34.105.44 114.34.109.34 114.34.129.103 114.34.185.127 @@ -1852,6 +1853,7 @@ 157.230.102.141 157.230.103.117 157.230.103.246 +157.230.107.225 157.230.109.223 157.230.11.49 157.230.110.213 @@ -1901,6 +1903,7 @@ 157.230.174.65 157.230.175.112 157.230.175.134 +157.230.176.227 157.230.179.249 157.230.179.36 157.230.18.161 @@ -3854,6 +3857,7 @@ 188.166.151.206 188.166.158.242 188.166.161.57 +188.166.164.225 188.166.165.173 188.166.166.0 188.166.168.170 @@ -3861,6 +3865,7 @@ 188.166.21.86 188.166.24.72 188.166.25.58 +188.166.27.168 188.166.37.28 188.166.38.43 188.166.4.70 @@ -4968,6 +4973,7 @@ 207.180.251.220 207.246.123.143 207.246.82.87 +207.246.96.195 2077707.ru 208.110.69.98 208.110.71.194 @@ -5056,6 +5062,7 @@ 209.97.128.121 209.97.132.166 209.97.132.222 +209.97.132.77 209.97.133.141 209.97.133.32 209.97.133.9 @@ -5426,6 +5433,7 @@ 222.186.172.54 222.186.3.210 222.186.34.247 +222.186.52.155 222.186.56.152 222.186.57.99 222.187.238.16 @@ -6585,6 +6593,7 @@ 46.243.189.109 46.249.127.224 46.249.59.67 +46.249.59.89 46.249.62.199 46.25.58.190 46.251.239.92 @@ -6619,6 +6628,7 @@ 46.29.165.143 46.29.165.163 46.29.165.182 +46.29.165.212 46.29.165.33 46.29.166.106 46.29.166.125 @@ -6996,6 +7006,7 @@ 51.75.156.134 51.75.160.175 51.75.161.114 +51.75.163.170 51.75.17.9 51.75.18.88 51.75.25.66 @@ -8820,6 +8831,7 @@ 98.116.131.34 98.116.137.136 98.143.144.233 +98.159.110.79 98.196.79.17 98.200.233.150 98.253.113.227 @@ -12983,6 +12995,7 @@ autelite.com auter.hu autexchemical.com autfaciam.com +auth.to0ls.com authenticestate.online authenticfilmworks.com authenticinfluencer.com @@ -18189,6 +18202,7 @@ chargement-document.icu chargement-document.pro chargement-pro.icu chargeupyourbusinessbook.com +charigaru.com charihome.com chariottours.com charitasngo.org @@ -29347,6 +29361,7 @@ gasturbinescontrols.com gastvrijnoordholland.nl gatamode.com gataran.com +gatco-gulf.com gate.mindblowserverdocnetwork.xyz gateauction.com gatejam.icu @@ -31618,6 +31633,7 @@ healthprotectionplans.com healthsbouquet.com healthservicesus.com healthshiny.com +healthshop.pk healthsupplementstore.in healthtech.tn healthtiponline.com @@ -38531,6 +38547,7 @@ lgubusiness.ph lhelp.pl lhi.or.id lhjwshb.5gbfree.com +lhs.jondreyer.com lhtextiles.com lhub304.com lhypnoseetvous.fr @@ -43572,6 +43589,7 @@ myevery.net myexe2.s3-website-us-east-1.amazonaws.com myextremekit.com myfanout.com +myfile.qinlang.cn myfiles123.su myfileuploads.weebly.com/uploads/5/9/7/2/59724997/winactive_setup.exe myfingertoys.com @@ -44496,6 +44514,7 @@ newyorkmensuits.com nexanow.xyz nexbud.com.pl nexclick.ir +nexcontech.com nexigar.com nexio.online nexpltd.com @@ -45305,6 +45324,7 @@ o24o.ru o2pharma.top o3ozon.eu o8wqnw.db.files.1drv.com +oa.fnysw.com oa.kingsbase.com oa.szsunwin.com oa.zwcad.com @@ -46922,6 +46942,7 @@ pastebin.com/raw/tc4VpDFQ pastebin.com/raw/vCka2r6A pastebin.com/raw/wDvPz4jU pastebin.com/raw/y6R5nYzL +pastebin.com/raw/yy30ZSfm pasteboard.co/images/HHKrjPX.jpg/download pasteboard.co/images/HIzhg49.jpg/download pasteboard.co/images/HLNMUsd.png/download @@ -47772,6 +47793,7 @@ pivotqari.sk pixandflix.com pixat.eu pixel.as +pixel.mobycare.website pixelcrush.net pixeldra.in pixeldrain.com @@ -51299,6 +51321,7 @@ s-sibsb.ru s-vrach.com.ua s.51shijuan.com s.dbr.ee +s.put.re s.trade27.ru s01.solidfilesusercontent.com/YTMwZjFlYTU1ZDRjOWFmNjYxMTI2Nzk5YmExYmNlZDhmZGRjYTJhMToxaE9VYUk6R000eW1iU0Q3eVRLUGNSU0NvN1oybERJdVBj/gWvpLG4DrPQgB/263.exe s01.solidfilesusercontent.com/ZDYzMDE3MTMzNmEwZWQzODJkZWQ0YTIyODRkYWMyOTMwNzkyZTRhMzoxaE9qWlQ6eEZ4eXlNY1FCWlVvbGRKaERKTGFXaUdqcHV3/gWvpLG4DrPQgB/263.exe @@ -52112,6 +52135,7 @@ sazee.net sazias.nl sazovaparki.com sb-ob.de +sbackservice.com sbdpaddlinks.000webhostapp.com sbe.sa sbeducations.com @@ -55408,6 +55432,7 @@ steveterry.net stevewalker.com.au stewartandgreenltd.com stezhka.com +stfoods.ru stgblat.bariatriclatam.com stgroups.co sthb.ir @@ -59406,6 +59431,7 @@ tradiestimesheets.rymeradev.com trading-secrets.ru trading.mistersanji.com tradingamulets.com +tradingco.000webhostapp.com tradingmatic.youralgo.com tradingpartneredi.com traditionsfinegifts.com @@ -60295,6 +60321,7 @@ uc5632454abdd7dddafee4bc8202.dl.dropboxusercontent.com/cd/0/get/AP7JRGbpR1_-Q3Yh uc568c6edb38bbfd18da605f096e.dl.dropboxusercontent.com/cd/0/get/ARCOD13x_YhfmmdUoHpkHKj2PcjX253aeU0fJFM0ySknlwIBPQAMM5Dzei_CpL-hAxBx6TQrVEuHgsxPIK8riF-BYCJ0PLigl1QLv3Q_8ckYoYR_NxIplYc29dbBs1HSaSHKok6VOyEnPuTiOjXXbm52kZsjBMFxH5mXqir9jZG-u-yS94XEX8S2HtWSbYMyXgQ/file?dl=1 uc56bb5166afd0ecfd2ca1ed8d04.dl.dropboxusercontent.com/cd/0/get/AQ0drCdCkXrup8eUMEeAHoTW6P0cYTihtQsDOawGohtFI7qjvbZShF_pWbsfYaJ25vIBGqXhpwOCiIVfZ2JCB7IW2T0OW-8cMuFbqjSB2dz7hEGhQ-ImPP1acuRRuN9p4r7-bhK0iqXV4qI3DrNRoxt3hbwaB6Eb6pICrQxkIvhfiS6AUUlFQw1A4qm6X4DV5I8/file?dl=1 uc56c08c743d4e1e5fb86ad9f228.dl.dropboxusercontent.com/cd/0/get/AfpkUHeOzQYl_HUQ6EIs7cqiVbcKuzhAThgqpsmVyXz_xrx8KbmkOPRmF6NSW5_jNHKF0mmSjBTeApMg_HO47_Cp98EuquL-KeteIxmNXVkF9kGCbGAhpwe0EQcDNtWV3gc/file?dl=1 +uc56fc78cb85b1b0315939d407f9.dl.dropboxusercontent.com/cd/0/get/AiUkR5CLHPQmzvhuyVUceW8EWdeasKpplBHnEjPBNRS5SZvITcER5uSJLX2XMsxhLuX35GOlixJXJivnhnDZ48qCvQQX7_93WU6B1gLM7sk2bA/file?dl=1 uc572e05138ae95b732ae03b313a.dl.dropboxusercontent.com/cd/0/get/ASACrby7FtTwsyh97JjVuLWYuV1-j77AVSQ9PkJ2C4AKnGKA0ADCki7vZFtExh3tLjEMJNAgZnq6CjhSRs0GM1uo-wMhyfhekOs05Lr3TLTSEPo28pbbhEkscgqOMk9LXzkK_4qifruIdWGYxntnbdKNrNfJqkiL81J2J_iVnetkzCqTJVtP3mDfZWqglMaWDRc/file?dl=1 uc598c195a9422acaed91cc8e3ed.dl.dropboxusercontent.com/cd/0/get/AWBeCSyegWLf8muH2aN3wb11rvU4poabXZd427M3UYrqq5Vir-jW8PXW8nT-WNSD3ur0QP8KL_pE0AW_kD6gBslFNqJFFoJ9hyQthFRWuQkRDnnzgS-QttVK4AePucbzg5-fXLHv8u76QZhIOAZKSjmblwNuw1dKkyOTVhVrpcSgyAhDYensvrMvCCqwAxOhtc4/file?dl=1 uc59f2436825d3a31cdd9f379cca.dl.dropboxusercontent.com/cd/0/get/AaWOGe1hHj489ui5zIc8cHnButFq3H0YBlZyaveZ3kAO_QHOJK7-6jArVIWJIJQDDIIS07LZA17T74KdAi1qUvRqE1y6nUj09dFfVpAju7hA2Q/file?dl=1 @@ -60869,6 +60896,7 @@ update.drp.su/nps/online/bin/tools/run.hta update.drp.su/oc/oc.zip update.gk-mtm.ru update.hoiucvl.com +update.igra123.com update.jirisancapital.com update.joinbr.com update.joinbr.com/LMUpdate/BRmhttp.exe @@ -60891,6 +60919,7 @@ updates23.titanmc.eu updatesoftures.com updatetassk.top updeejay.com.br +updtes.com upebyupe.com upex.ee upgrade.shihuizhu.net @@ -62957,6 +62986,8 @@ weldconsultant.com weldexenergyservices.com weldjet.com weldpart.co.id +weldtech.com.mx/fonts/icomoon/ss.exe +weldtech.com.mx/fonts/icomoon/ss2.exe welfare-spa.co.jp welfiattackii.weebly.com/uploads/9/7/5/2/97520076/welfi_attack_2_update.exe welikeinc.com @@ -63944,6 +63975,7 @@ xizanglvyou.org xkld-nhatban-infinity.com xkvm.cn xl-powertree.com +xl.173wangba.com xlabsgaze.com xldeal4u.com xlds.de