# Copyright (c) 2014-2021 Maltrail developers (https://github.com/stamparm/maltrail/)
# See the file 'LICENSE' for copying permission

# Aliases: billgates, gates, setag, ganiw

# Reference: https://otx.alienvault.com/pulse/560c150e67db8c47d4ce2b14/

mou521.f3322.org
say.f322.net

# Reference: https://otx.alienvault.com/pulse/55cb66f24637f20b6e54ab88/

liunx.200jh.com

# Reference: https://otx.alienvault.com/pulse/557b7ca6b45ff5450f63f4f5/

wuzu520.com

# Reference: https://twitter.com/michalmalik/status/1143879771878830080

auth.to0ls.com
111.90.140.35:80

# Reference: https://twitter.com/michalmalik/status/1143887109599748097

vpn.to0ls.com
115.231.218.64:8226

# Reference: https://www.virustotal.com/gui/file/4b5f1e8d5e804ca7d52a9d58e5bfc0626e912a3a0c89545cf057a65fdb31b119/behavior

oa.to0ls.com

# Reference: https://www.virustotal.com/gui/domain/to0ls.com/detection

to0ls.com

# Reference: https://otx.alienvault.com/pulse/5d37185951ea5a026c813388

aduidc.xyz

# Reference: https://twitter.com/m00zh33/status/855714481757855744
# Reference: https://www.virustotal.com/gui/file/f2ea3350868cc02969c73777faf7ada5d988528ed4fbd9f72c8a8aa7bd56b705/detection

115.231.218.64:13864

# Reference: https://www.virustotal.com/gui/file/87f56f8ef4379adeff48e059d6ee9dce0891457f6fb21c6baadd426ce617ce32/detection

119.10.151.120:36000

# Reference: https://www.virustotal.com/gui/file/79f58ac03859146971c7299b0b52db54b92428d4303b206433ab3c853b1e27b1/detection

216.58.203.46:2221
216.58.203.46:6001
wysps.cn

# Reference: https://www.virustotal.com/gui/file/912625884c6239cf6a81fb9309b79fbd7f85fb9176797b5548779cb551f9e1c9/detection

103.59.113.150:2021
jkx3.com

# Reference: https://www.virustotal.com/gui/file/54e12d4c510e50fa0a615ca98355fda23a3dc4e3a5fb5bf24a4cf105475f635a/detection

103.45.147.37:8080
103.59.113.150:8899

# Reference: https://www.virustotal.com/gui/file/11c898566e20d41510dded64bcc305b89f765a89ca520c3d3e34c4e2f07b20f8/detection

114.118.98.185:8081

# Reference: https://www.virustotal.com/gui/file/062d1ba24ade9b04bb1acb272950c323b07fc86d7c99b9173ea15e8fd82ea754/detection

91.195.240.82:8080
autumn.f3322.com

# Reference: https://www.virustotal.com/gui/file/414e092e5d9683fb40824db7571f9b1c6fd954fb620c89c5ee44a6b29fb9ef6f/detection

103.45.174.24:4570

# Reference: https://www.virustotal.com/gui/file/08d3ba9d45ef8a5ceac9786498083263809c84005283ed6ec82b51ec8d6478d6/detection

193.218.38.152:2019

# Reference: https://www.virustotal.com/gui/file/df5e62cc034557cdc18bf7588bcc0ff4fc5a2b0e15a8ee8f93b7b0e0a838c347/detection

45.158.21.91:8080

# Reference: https://www.virustotal.com/gui/file/640f5e05ea64ab85f0892cffd212e0b123dbcfc0b2e636cf825caa673528c9da/detection

152.136.255.75:8000
152.136.255.75:8080

# Reference: https://www.virustotal.com/gui/file/ece2e79c764df03afef7dcc0916ce1573d806d2d38074e63d744300506f6da27/detection

103.59.113.150:8000

# Reference: https://www.virustotal.com/gui/file/b63c638840c7182497a5667076a89d2838398e92c7cbf064f4de71e95b246526/detection

62.234.147.170:2020

# Reference: https://www.virustotal.com/gui/file/e83e40c09a86bd40f6abc5dd0c65b001c190c9db4cdd827e98928db10de87e05/detection

103.59.113.150:52

# Reference: https://www.virustotal.com/gui/file/193b05153d594ea6e37d4666e4de85d13a90532ee5bb02e3b650acb9cffc5129/detection

41.216.178.180:6666

# Generic trails

/ddos2.4
/ddos32-64
/syn25000
/udp25000
