# Copyright (c) 2014-2020 Maltrail developers (https://github.com/stamparm/maltrail/)
# See the file 'LICENSE' for copying permission

# Reference: https://github.com/pan-unit42/iocs/blob/master/gorgon/domains.txt

0-day.us
acorn-paper.com
asaigoldenrice.com
brevini-france.cf
diamondfoxpanel.ml
fast-cargo.com
guelphupholstery.com
ocha-gidi.xyz
onedrivenet.xyz
panelonetwothree.ga
panelonetwothree.ml
securebotnetpanel.tk
stemtopx.com
stevemike-fireforce.info
stevemikeforce.com
t2m.io
xyz-storez.xyz
zupaservices.info

# Reference: https://twitter.com/h4ckak/status/1145984273985331200
# Reference: https://otx.alienvault.com/pulse/5d1b49a55c01f486b6ff8cf2

bylgay.hopto.org
microsoftoutlook.duckdns.org

# Reference: https://github.com/StrangerealIntel/CyberThreatIntel/blob/master/Pakistan/APT/Gorgon/23-08-19/Malware%20analysis%2025-08-19.md
# Reference: https://otx.alienvault.com/pulse/5d68fb8d77464e86898969f5

1688jtn.com
41230077.net
6474sss.com
grupomsi.com
hongmenwenhua.com
ichoubyou.net
klapki.online
qp0o1j3-dmv4kwncw8e.win
sukfat.com
theaterloops.com
thedip.zone
tourismmanagement.mba
xaasxasxasx.blogspot.com
ycsfuoabdicating.review

# Reference: https://twitter.com/Rmy_Reserve/status/1171381881461338112
# Reference: https://app.any.run/tasks/bb1279af-7fff-4b37-8439-7b303f113082/

sxasxasxssaxxsasxasx.blogspot.com

# Reference: https://twitter.com/MisterCh0c/status/1188219763660591107
# Reference: https://app.any.run/tasks/c32b295c-08f4-4337-8f7f-378ba7f9e02b/

asdiamecwecw8cew.blogspot.com

# Reference: https://unit42.paloaltonetworks.com/aggah-campaign-bit-ly-blogspot-and-pastebin-used-for-c2-in-large-scale-campaign/

bjm9.blogspot.com
buydildoonline.blogspot.com
emawattttson.blogspot.com
miganshumarataa.blogspot.com
treffictesgn.blogspot.com

# Reference: https://twitter.com/Zhx_8885/status/1227219569095262208
# Reference: https://www.virustotal.com/gui/domain/gritodopovo.com.br/relations

gritodopovo.com.br

# Reference: https://twitter.com/Arkbird_SOLG/status/1272512736795283456

dixis.bounceme.net
