forked from stamparm/maltrail
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathapt_aoqindragon.txt
142 lines (137 loc) · 4.16 KB
/
apt_aoqindragon.txt
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
# Copyright (c) 2014-2025 Maltrail developers (https://github.com/stamparm/maltrail/)
# See the file 'LICENSE' for copying permission
# Aliases: Heyoka, Mongall, UNC94
# Reference: https://www.sentinelone.com/labs/aoqin-dragon-newly-discovered-chinese-linked-apt-has-been-quietly-spying-on-organizations-for-10-years/
# Reference: https://www.virustotal.com/gui/ip-address/172.111.192.233/relations
# Reference: https://www.virustotal.com/gui/ip-address/210.209.118.165/relations
# Reference: https://www.virustotal.com/gui/ip-address/45.77.11.148/relations
# Reference: https://www.virustotal.com/gui/ip-address/59.188.234.233/relations
# Reference: https://www.virustotal.com/gui/file/c57bc203dca9dfd24cad72bee445b3dabdcc7cad6dc30640033335e32e833389/detection
# Reference: https://www.virustotal.com/gui/file/d7d29522157423cd4ccaab42612f7db7ddf5670db9841dce02e438baea64d92e/detection
# Reference: https://www.virustotal.com/gui/file/313355f5ecf62401247c61e147b43f74eb7fcbfdf4856c7270079265cac07026/detection
# Reference: https://www.virustotal.com/gui/file/908bdcb18265b0a3d93e7070d093050a028099a0af261ff0250a0b44a23cd3fe/detection
# Reference: https://www.virustotal.com/gui/file/9211a584ce32883437fba00adaa8df462683daad165bd740e43f2a4d6022b9a4/detection
# Reference: https://www.virustotal.com/gui/file/7e31a7da7322546220f74b3f0556467cc1c2c41846dd9d31f4e942128b3a894f/detection
# Reference: https://www.virustotal.com/gui/file/4d082fbd76b9f8f83e29ea8fe5d2355558584e9dfb3b60b855537c786e8552e7/detection
# Reference: https://www.virustotal.com/gui/file/2110627fc40daaa7903210e310ee0f9ee8b79f47b6188431eb67b5f94e03a139/detection
# Reference: https://www.virustotal.com/gui/file/73125d33e358395f067849497b1694e81f0a23795bc9029ac1632ebb70f07338/detection
http://64.27.4.157
http://64.27.4.19
http://67.210.114.99
64.27.4.157:53
64.27.4.157:8080
67.210.114.99:443
67.210.114.99:8080
adsoft.name
bluesky1234.com
bush2015.net
comnnet.net
dellyou.com
dinhk.net
dungk.com
facebookmap.top
followag.org
foodforthought1.com
fushing.org
hotcup.pw
longvn.net
manlish.net
neverdropd.com
philstar2.com
phung123.com
satunusa.org
softad.net
telorg.net
tiger1234.com
vdcvn.com
vietnamflash.com
vnptnet.info
welikejack.com
yyppmm.com
zdungk.com
back.satunusa.org
baomoi.vnptnet.info
bbw.fushing.org
bca.zdungk.com
bkav.manlish.net
bkav.welikejack.com
bkavonline.vnptnet.info
cl.weststations.com
cloundvietnam.com
cpt.vnptnet.inf
cvb.hotcup.pw
dns.foodforthought1.com
dns.lioncity.top
dns.satunusa.org
dns.zdungk.com
ds.vdcvn.com
ds.xrayccc.top
fbcl2.adsoft.name
fbcl2.softad.net
flower2.yyppmm.com
game.vietnamflash.com
hello.bluesky1234.com
ipad.vnptnet.info
ks.manlish.net
lepad.fushing.org
lllyyy.adsoft.name
lucky.manlish.net
ma550.adsoft.name
ma550.softad.net
mail.comnnet.net
mail.tiger1234.com
mail.vdcvn.com
mass.longvn.net
mcafee.bluesky1234.com
media.vietnamflash.com
mil.dungk.com
mil.zdungk.com
missyou.longvn.net
mmchj2.telorg.net
mmslsh.tiger1234.com
mobile.vdcvn.com
moit.longvn.net
movie.vdcvn.com
news.philstar2.com
news.welikejack.com
npt.vnptnet.info
ns.fushing.org
nycl.neverdropd.com
phcl.followag.org
phcl.neverdropd.com
pna.adsoft.name
pnavy3.neverdropd.com
sky.bush2015.net
sky.vietnamflash.com
tcv.tiger1234.com
telecom.longvn.net
telecom.manlish.net
test.facebookmap.top
th-y3.adsoft.name
th550.adsoft.name
th550.softad.net
three.welikejack.com
thy3.softad.net
trend.welikejack.com
video.philstar2.com
viet.vnptnet.info
viet.zdungk.com
vietnam.vnptnet.info
vnet.fushing.org
vnn.bush2015.net
vnn.phung123.com
webmail.philstar2.com
yok.fushing.org
yote.dellyou.com
zing.vietnamflash.com
zingme.dungk.com
zingme.longvn.net
zw.dinhk.net
zw.phung123.com
# Reference: https://twitter.com/alex_lanstein/status/1757855436261245194
# Reference: https://twitter.com/AndreGironda/status/1757929271962550534
# Reference: https://www.virustotal.com/gui/file/cc1f543cbb4930e045f49e681fd0a1cc7c9d27eb0a03208a75b6608fcecab3a4/detection
# Reference: https://www.virustotal.com/gui/file/bec277998b7780eb67dc6f436282652ca3f34a812a2555c8bfee87a5b890b2e7/detection
# Reference: https://www.virustotal.com/gui/file/929eefaafc3906ae27371366addb838fba597091ab684a80117da97378164d73/detection
soap.free.cloudns.asia
/rrd9cutaenieyb9hro6v_qgo2fvjgablyrklaqvbgwr1swjo