137 lines
2.7 KiB
Plaintext
137 lines
2.7 KiB
Plaintext
|
#
|
|||
|
# dyndns_ponmocup
|
|||
|
#
|
|||
|
# ipv4 hash:ip ipset
|
|||
|
#
|
|||
|
# [DynDNS.org]
|
|||
|
# (http://security-research.dyndns.org/pub/malware-feeds/)
|
|||
|
# Ponmocup. The malware powering the botnet has been around
|
|||
|
# since 2006 and it’s known under various names, including
|
|||
|
# Ponmocup, Vundo, Virtumonde, Milicenso and Swisyn. It has
|
|||
|
# been used for ad fraud, data theft and downloading
|
|||
|
# additional threats to infected systems. Ponmocup is one of
|
|||
|
# the largest currently active and, with nine consecutive
|
|||
|
# years, also one of the longest running, but it is rarely
|
|||
|
# noticed as the operators take care to keep it operating
|
|||
|
# under the radar.
|
|||
|
#
|
|||
|
# Maintainer : DynDNS.org
|
|||
|
# Maintainer URL : http://security-research.dyndns.org/pub/malware-feeds/
|
|||
|
# List source URL : http://security-research.dyndns.org/pub/malware-feeds/ponmocup-infected-domains-shadowserver.csv
|
|||
|
# Source File Date: Tue Jun 18 19:28:26 UTC 2019
|
|||
|
#
|
|||
|
# Category : malware
|
|||
|
# Version : 359
|
|||
|
#
|
|||
|
# This File Date : Tue Jun 18 19:40:07 UTC 2019
|
|||
|
# Update Frequency: 1 day
|
|||
|
# Aggregation : none
|
|||
|
# Entries : 97 unique IPs
|
|||
|
#
|
|||
|
# Full list analysis, including geolocation map, history,
|
|||
|
# retention policy, overlaps with other lists, etc.
|
|||
|
# available at:
|
|||
|
#
|
|||
|
# http://iplists.firehol.org/?ipset=dyndns_ponmocup
|
|||
|
#
|
|||
|
# Generated by FireHOL's update-ipsets.sh
|
|||
|
# Processed with FireHOL's iprange
|
|||
|
#
|
|||
|
31.186.8.63
|
|||
|
46.30.213.229
|
|||
|
46.30.215.11
|
|||
|
46.30.215.180
|
|||
|
46.182.5.20
|
|||
|
46.242.145.96
|
|||
|
46.242.242.32
|
|||
|
50.62.27.1
|
|||
|
54.153.111.129
|
|||
|
62.149.140.104
|
|||
|
63.111.67.20
|
|||
|
63.247.141.235
|
|||
|
64.70.19.52
|
|||
|
64.71.33.129
|
|||
|
66.96.149.32
|
|||
|
66.147.240.186
|
|||
|
67.23.254.129
|
|||
|
67.222.22.117
|
|||
|
69.89.31.137
|
|||
|
69.90.25.210
|
|||
|
72.172.132.43
|
|||
|
74.50.4.239
|
|||
|
74.63.193.170
|
|||
|
74.208.215.229
|
|||
|
74.208.236.193
|
|||
|
74.208.236.230
|
|||
|
76.74.158.89
|
|||
|
77.92.75.4
|
|||
|
77.105.36.226
|
|||
|
77.111.240.62
|
|||
|
79.99.5.164
|
|||
|
79.124.76.10
|
|||
|
80.94.98.99
|
|||
|
81.169.145.81
|
|||
|
82.118.24.217
|
|||
|
82.163.73.59
|
|||
|
85.13.140.101
|
|||
|
85.13.152.178
|
|||
|
85.128.202.101
|
|||
|
87.98.239.19
|
|||
|
89.221.250.12
|
|||
|
93.90.146.106
|
|||
|
94.130.152.121
|
|||
|
94.136.160.106
|
|||
|
94.152.142.131
|
|||
|
95.142.65.77
|
|||
|
97.74.143.124
|
|||
|
104.24.105.54
|
|||
|
107.180.41.171
|
|||
|
107.181.169.73
|
|||
|
111.118.181.161
|
|||
|
112.213.87.130
|
|||
|
119.59.104.32
|
|||
|
124.150.132.6
|
|||
|
136.243.80.165
|
|||
|
138.197.103.178
|
|||
|
144.76.45.43
|
|||
|
156.54.179.186
|
|||
|
157.7.144.5
|
|||
|
159.69.61.92
|
|||
|
162.213.3.199
|
|||
|
162.241.216.23
|
|||
|
162.255.164.228
|
|||
|
173.209.47.104
|
|||
|
173.254.28.119
|
|||
|
176.31.222.193
|
|||
|
178.211.49.4
|
|||
|
181.214.31.157
|
|||
|
182.18.145.17
|
|||
|
187.45.240.68
|
|||
|
190.111.229.183
|
|||
|
192.99.161.26
|
|||
|
192.116.109.121
|
|||
|
192.169.196.1
|
|||
|
194.8.30.56
|
|||
|
199.67.250.59
|
|||
|
200.170.151.200
|
|||
|
202.28.24.105
|
|||
|
203.174.34.49
|
|||
|
206.188.193.120
|
|||
|
207.21.228.180
|
|||
|
208.113.213.71
|
|||
|
208.180.24.52
|
|||
|
212.227.171.163
|
|||
|
213.186.33.18
|
|||
|
213.186.33.19
|
|||
|
216.250.121.2
|
|||
|
216.250.121.102
|
|||
|
216.251.32.98
|
|||
|
217.76.132.246
|
|||
|
217.160.0.174
|
|||
|
217.160.0.237
|
|||
|
217.160.0.240
|
|||
|
217.160.0.254
|
|||
|
217.160.223.120
|
|||
|
217.198.114.93
|
|||
|
219.84.217.10
|