-
Notifications
You must be signed in to change notification settings - Fork 2
/
AgentTesla - Malware Domain Feed V2
181 lines (179 loc) · 4.65 KB
/
AgentTesla - Malware Domain Feed V2
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
# AgentTesla - Malware Domain Feed V2
# Command and Control domains for malware known as AgentTesla. These domains are extracted from malware sandbox reports using a Machine Learning model trained on a corpus of good and bad domains.
# Source: https://otx.alienvault.com/user/otxrobottwo/pulses
#
# UPDATED: 10-05-2022
#
# Every link reported should be considered harmefull and could result in an unwanted malware download. Use this file carrefully.
#
#
# **** Therefor my advice is ****
# **** If you experience sites that are being blocked ****
# **** please double check your input in search field and ****
# **** see if it's correct and verify that it is the correct page you ****
# **** are going too! If it is correct then whitelist that site ****
#
# USE THIS LIST WITH CAUTION!
#
#
# *****The list is released without any warranty to the end users.*****
#
# *** This list contains domains and hosts ***
# *******************************************************************************************************************************************************************
# AgentTesla - Malware Domain Feed V2
# Source: https://otx.alienvault.com/pulse/5cc6acd2f09b1969a10255f7
# Domains
huaweitunisie.tn
apaverydennison.space
arianaspawn.com
modeirninsulators.com
justsecurityinc.com
sabaint.me
jimasun.online
bdmtradingltd.live
webpanelsetup.ml
6llion.com
originlogs.ru
angelsnetwork.fr
eyeover.it
timecforgoodnes.ml
sass-se.com
strollchief.com
ergon.club
foxcylical.com.ng
aarque.co
adgalactica.com
transportmada.com
alexknives.com
potentpharm.guru
xeodu.com
3bots.xyz
nonpratisan.com
softflexicompany.com
exide-co.in
onwamay.in
smithscope.info
onwajuly.com
cssimme.com
bellinasution.ml
baharanvilla.ir
csebullk.com
hsbnonline.com
papiking.com
dogoodtomendothers.com
senseint.info
infonalytics.us
binar.ir
novindam.ir
baileybluesclothing.com
beninaintonio.com
pccarpat.com
demknowusalot.ltd
vikashs-adcoconstruct.com
globebambi.com
norllock.com
hbrservices.in
crilod.com
eastbrightness.com
sasecurity.pro
bawsymoney.ga
coolhead.xyz
commercialoffshorebanking.com
konstantinidis-sp.gr
emtelakproperties.com
limmergarden.com
rigdps1.com
esecurty.ru
equipmentsandmachines.com
agenttesla.tk
groupbizconsulting.com
nortonlilly.info
meublesinde.in
udememadman.com
wieda-mc.com
herbsel.com
tmwina.com
securitynsection.com
bauremediaus.com
mblasta.com
manchestergardensllc.com
lucasacc.com
hitek-pk.com
jxcoders.com
regattaxiamen.info
easternvibez.com
grindtreu.online
jtcmachinery.com
fizafr.com
wttxt.info
effetka.com
plumberspro.us
lamefrp.xyz
bnpparis.co
shivsons.info
hresys.info
phareizforsales.xyz
regencyship.info
zacwon.com
# Hosts
0.0.0.0 48982689868.home.anadolu.edu.tr
0.0.0.0 nayoi.themiyakaja.com
0.0.0.0 ojpop.themiyakaja.com
0.0.0.0 syncav.ms-sync.com
0.0.0.0 www.transportmada.com
0.0.0.0 www.abcsd.info
0.0.0.0 www.newsandbooks.xyz
0.0.0.0 webmail.ocenmasters.com
0.0.0.0 mail.rnfreight.com
0.0.0.0 mail.casabarros.com
0.0.0.0 mail.oceanskylogistics.in
0.0.0.0 mail.atifnazar.com
0.0.0.0 mail.ocenmasters.com
0.0.0.0 mail.orientalgroupbd.com
0.0.0.0 www.usarmyvacations.info
0.0.0.0 chile-boss.comie.ru
0.0.0.0 blacknet.riskpi.xyz
0.0.0.0 www.progress-sampling.co.za
0.0.0.0 www.mshhmasvx.com
0.0.0.0 www.deveinsun.com
0.0.0.0 www.breakinglimits2020.com
0.0.0.0 www.servicee.com.ng
0.0.0.0 www.svmarketingindia.com
0.0.0.0 www.absfiresafety.com.au
0.0.0.0 www.sczomen.com
0.0.0.0 sm.rooderoofing.com.au
0.0.0.0 www.appleconnect.online
0.0.0.0 www.hamryrechalka.com
0.0.0.0 www.onwaego.xyz
0.0.0.0 www.sery.ga
0.0.0.0 figure.alphadeltas.in
0.0.0.0 www.agentfalco.xyz
0.0.0.0 www.ink-qlobal.com
0.0.0.0 ike.alphadeltas.in
0.0.0.0 backupc.ddns.net
0.0.0.0 kalicobalt.ddns.net
0.0.0.0 krmben.mooo.com
0.0.0.0 freeman.alphadeltas.in
0.0.0.0 f0541260.xsph.ru
0.0.0.0 bigbag.wootraining.certificacion.cl
0.0.0.0 whesilo.alphadeltas.in
0.0.0.0 4dkhw6q65mtym4r7.bounceme.net
0.0.0.0 small-kelly.alphadeltas.in
0.0.0.0 www.fedinkom.pw
0.0.0.0 riza.manaeger-sale.com
0.0.0.0 www.agenttesla.com
0.0.0.0 tankantswebhosting.mywire.org
0.0.0.0 mail.escueladeseguridadmaritima.com
0.0.0.0 mail.indiacarpet.in
0.0.0.0 mail.narbon-co.com
0.0.0.0 mail.flowersforever.ae
0.0.0.0 mail.daito-inc.co.jp
0.0.0.0 mail.centraldefiltros.cl
0.0.0.0 mail.morabitur.com
0.0.0.0 smtp.taizingshipping.com
0.0.0.0 mail.zealaqua.com
0.0.0.0 mail.butterflymotors.com
0.0.0.0 mail.sumait.ac.tz
0.0.0.0 mail.contrivekota.in
0.0.0.0 webmail.mdist.us
0.0.0.0 mail.framafilms.com