2021-08-14 10:00:35 +00:00
|
|
|
0report.syzs.qq.com
|
2022-02-08 12:50:15 +00:00
|
|
|
1618175.bunitu.eu.org
|
2022-02-04 13:44:56 +00:00
|
|
|
1fd6aa.kipoks.eu.org
|
2022-02-10 13:59:02 +00:00
|
|
|
65893ff.utsde.eu.org
|
|
|
|
83c25f18.koples.eu.org
|
2022-02-03 12:02:58 +00:00
|
|
|
89c8c1d728.bunitu.eu.org
|
2022-02-16 11:41:23 +00:00
|
|
|
946c20.gartenleben.eu.org
|
2022-02-08 12:50:15 +00:00
|
|
|
95891f.dwerls.eu.org
|
|
|
|
9e771dd8.sunid.eu.org
|
2021-10-29 04:16:21 +00:00
|
|
|
a.ad.gt
|
|
|
|
ad.gt
|
2021-08-14 10:00:35 +00:00
|
|
|
alb.reddit.com
|
2021-11-18 13:57:15 +00:00
|
|
|
app-measurement.com
|
2021-08-14 10:00:35 +00:00
|
|
|
asia-analyzer-appstore.vivoglobal.com
|
2021-09-01 17:11:14 +00:00
|
|
|
asia-comonrt-stsdk.vivoglobal.com
|
2021-08-14 10:00:35 +00:00
|
|
|
asia-vcode-od.vivoglobal.com
|
2021-10-29 04:16:21 +00:00
|
|
|
beacon.wikia-services.com
|
2021-08-14 10:00:35 +00:00
|
|
|
bodis.com
|
|
|
|
btrace.qq.com
|
Blocked : [Read Commit Desc] hgufs.eu.org, kubi.one, mediastream1.blogspot.com, bunitu.eu.org, tystreammovies.blogspot.com, khi1.kubi.one, d1a81fc.hgufs.eu.org, 89c8c1d728.bunitu.eu.org
These domain marked as suspected to be a malware that spread on Media Page on Facebook Thailand Lately . The method of these kind of spam is use url shorter(like s.id, bit.do) to short their domain at [A].eu.org and proceed to [A].blogspot.com
kubi.one is cname of [A].eu.org, when facebook crawl that url, Url Preview usually look like this [01] (Please note that Catdumb is 100% Legitimate media and had no public/known relationship with Spammer anyways)
[A] Refer to subdomains of domains that added to blocklist on commit Message
[01](https://serv.1w1.one/content/image/FB-spam-commit/1.png)
2022-02-03 11:40:05 +00:00
|
|
|
bunitu.eu.org
|
2021-08-14 10:00:35 +00:00
|
|
|
c.gj.qq.com
|
2021-11-09 14:30:49 +00:00
|
|
|
ccleaner.org
|
2021-10-29 04:16:21 +00:00
|
|
|
cdn-gl.imrworldwide.com
|
2022-02-04 03:48:08 +00:00
|
|
|
cdn.kull.eu.org
|
2021-08-14 10:00:35 +00:00
|
|
|
cdn.syndication.twimg.com
|
2021-12-07 06:01:00 +00:00
|
|
|
ced.sascdn.com
|
2021-08-14 10:00:35 +00:00
|
|
|
comingsoon.namebright.com
|
|
|
|
config.gamedl.qq.com
|
2022-02-03 12:02:58 +00:00
|
|
|
d1a81fc.hgufs.eu.org
|
2021-11-19 07:47:05 +00:00
|
|
|
d3eaoagkr70p1.cloudfront.net
|
2021-08-14 10:00:35 +00:00
|
|
|
dldir1.qq.com
|
|
|
|
downloadtpt.gamedl.qq.com
|
2022-02-08 12:50:15 +00:00
|
|
|
dwerls.eu.org
|
2022-02-04 03:48:08 +00:00
|
|
|
e1b17116f.sewdo.eu.org
|
2021-08-14 10:00:35 +00:00
|
|
|
err-up.vivoglobal.com
|
|
|
|
excfgfile-vivofs-asia.vivo.com.cn
|
|
|
|
expired.namebright.com
|
2021-11-25 05:04:08 +00:00
|
|
|
external.simpleanalytics.com
|
2022-02-08 12:50:15 +00:00
|
|
|
f386d9.gartenleben.eu.org
|
2021-10-29 04:16:21 +00:00
|
|
|
fastly-insights.com
|
2021-08-14 10:00:35 +00:00
|
|
|
footprints-pa.googleapis.com
|
|
|
|
ga.gamedl.qq.com
|
|
|
|
gamedl.qq.com
|
|
|
|
gameloop.fun
|
2022-02-08 12:50:15 +00:00
|
|
|
gartenleben.eu.org
|
2021-08-14 10:00:35 +00:00
|
|
|
get-express-vpn.com
|
|
|
|
get-express-vpn.net
|
2021-08-14 13:09:30 +00:00
|
|
|
get-express-vpn.online
|
2021-08-14 10:00:35 +00:00
|
|
|
get-express-vpn.org
|
2021-11-09 14:39:24 +00:00
|
|
|
get-express-vpn.space
|
2021-08-14 10:00:35 +00:00
|
|
|
get-express-vpn.xyz
|
2021-08-18 09:10:22 +00:00
|
|
|
goat.blahdns.com
|
2021-08-14 10:00:35 +00:00
|
|
|
graph.fbpigeon.com
|
|
|
|
guanjia.qq.com
|
Blocked : [Read Commit Desc] hgufs.eu.org, kubi.one, mediastream1.blogspot.com, bunitu.eu.org, tystreammovies.blogspot.com, khi1.kubi.one, d1a81fc.hgufs.eu.org, 89c8c1d728.bunitu.eu.org
These domain marked as suspected to be a malware that spread on Media Page on Facebook Thailand Lately . The method of these kind of spam is use url shorter(like s.id, bit.do) to short their domain at [A].eu.org and proceed to [A].blogspot.com
kubi.one is cname of [A].eu.org, when facebook crawl that url, Url Preview usually look like this [01] (Please note that Catdumb is 100% Legitimate media and had no public/known relationship with Spammer anyways)
[A] Refer to subdomains of domains that added to blocklist on commit Message
[01](https://serv.1w1.one/content/image/FB-spam-commit/1.png)
2022-02-03 11:40:05 +00:00
|
|
|
hgufs.eu.org
|
2022-01-02 04:11:05 +00:00
|
|
|
huyts.eu.org
|
2021-08-14 10:00:35 +00:00
|
|
|
in-os-config-appstore.vivoglobal.com
|
2021-08-14 13:32:08 +00:00
|
|
|
incoming.telemetry.mozilla.org
|
2021-11-04 07:23:58 +00:00
|
|
|
innity.net
|
2022-02-04 03:48:08 +00:00
|
|
|
ir.shareaholic.com
|
2022-02-03 12:02:58 +00:00
|
|
|
khi1.kubi.one
|
2022-02-04 13:44:56 +00:00
|
|
|
kipoks.eu.org
|
2022-02-10 13:59:02 +00:00
|
|
|
koples.eu.org
|
Blocked : [Read Commit Desc] hgufs.eu.org, kubi.one, mediastream1.blogspot.com, bunitu.eu.org, tystreammovies.blogspot.com, khi1.kubi.one, d1a81fc.hgufs.eu.org, 89c8c1d728.bunitu.eu.org
These domain marked as suspected to be a malware that spread on Media Page on Facebook Thailand Lately . The method of these kind of spam is use url shorter(like s.id, bit.do) to short their domain at [A].eu.org and proceed to [A].blogspot.com
kubi.one is cname of [A].eu.org, when facebook crawl that url, Url Preview usually look like this [01] (Please note that Catdumb is 100% Legitimate media and had no public/known relationship with Spammer anyways)
[A] Refer to subdomains of domains that added to blocklist on commit Message
[01](https://serv.1w1.one/content/image/FB-spam-commit/1.png)
2022-02-03 11:40:05 +00:00
|
|
|
kubi.one
|
2022-02-04 03:48:08 +00:00
|
|
|
kull.eu.org
|
2021-08-14 10:00:35 +00:00
|
|
|
lamssettings-pa.googleapis.com
|
|
|
|
master.etl.desktop.qq.com
|
|
|
|
masterconn.qq.com
|
|
|
|
masterconn11.qq.com
|
|
|
|
masterconn2.qq.com
|
|
|
|
matomo.1984.is
|
|
|
|
myapp.com
|
2022-01-10 04:45:49 +00:00
|
|
|
p.gitjournal.io
|
2021-08-14 10:00:35 +00:00
|
|
|
p2pupdate.gamedl.qq.com
|
|
|
|
p2pupgrade.gamedl.qq.com
|
|
|
|
parkingcrew.net
|
|
|
|
people-pa.googleapis.com
|
|
|
|
pepodownload.mediatek.com
|
2021-10-29 04:16:21 +00:00
|
|
|
permutive.com
|
2021-08-14 10:00:35 +00:00
|
|
|
pgepodownload.mediatek.com
|
|
|
|
picanalysis.vivo.com.cn
|
2021-08-16 14:06:25 +00:00
|
|
|
pipeline-incoming-prod-elb-149169523.us-west-2.elb.amazonaws.com
|
2021-08-14 10:34:15 +00:00
|
|
|
platform.cdninstagram.com
|
|
|
|
platform.cf.kik.com
|
2021-09-21 01:42:24 +00:00
|
|
|
platform.facebook.com
|
2021-08-14 10:34:15 +00:00
|
|
|
platform.foursquare.com
|
2021-08-14 10:00:35 +00:00
|
|
|
platform.instagram.com
|
2021-08-14 10:34:15 +00:00
|
|
|
platform.kik.com
|
|
|
|
platform.linkedin.com
|
|
|
|
platform.meetme.com
|
|
|
|
platform.tumblr.com
|
2021-08-14 10:00:35 +00:00
|
|
|
platform.twitter.com
|
2021-08-15 10:20:27 +00:00
|
|
|
prod.data-ingestion.prod.dataops.mozgcp.net
|
2021-08-14 13:32:08 +00:00
|
|
|
prod.telemetry.ros.rockstargames.com
|
2021-08-14 10:00:35 +00:00
|
|
|
ps2.gamedl.qq.com
|
|
|
|
qbwup.imtt.qq.com
|
|
|
|
qepodownload.mediatek.com
|
|
|
|
qgepodownload.mediatek.com
|
|
|
|
ro-up.vivoglobal.com
|
|
|
|
s.gameloop.fun
|
|
|
|
s.syzs.qq.com
|
|
|
|
sedoparking.com
|
2021-10-29 04:16:21 +00:00
|
|
|
seg.ad.gt
|
2021-12-15 02:08:24 +00:00
|
|
|
settings-win.data.microsoft.com
|
2022-01-02 04:11:05 +00:00
|
|
|
sewdo.eu.org
|
2022-02-04 03:48:08 +00:00
|
|
|
shareaholic.com
|
2022-01-15 17:21:08 +00:00
|
|
|
sora.yue.sh
|
2021-11-04 07:23:58 +00:00
|
|
|
ssl-avd.innity.net
|
2021-08-14 10:00:35 +00:00
|
|
|
stat.gamedl.qq.com
|
|
|
|
stun.qqlive.qq.com
|
2022-02-08 12:50:15 +00:00
|
|
|
sunid.eu.org
|
2021-08-14 10:00:35 +00:00
|
|
|
sy.gameloop.fun
|
|
|
|
sy.guanjia.qq.com
|
|
|
|
syzs.qq.com
|
2021-12-07 06:01:00 +00:00
|
|
|
tagmanager.smartadserver.com
|
2021-08-14 13:32:08 +00:00
|
|
|
telemetry-incoming.r53-2.services.mozilla.com
|
|
|
|
telemetry.soundcloud.com
|
2022-02-10 13:59:02 +00:00
|
|
|
utsde.eu.org
|
2021-10-29 04:16:21 +00:00
|
|
|
www.fastly-insights.com
|
2021-08-14 13:09:30 +00:00
|
|
|
www.get-express-vpn.com
|
|
|
|
www.get-express-vpn.net
|
|
|
|
www.get-express-vpn.online
|
|
|
|
www.get-express-vpn.org
|
2021-11-09 14:39:24 +00:00
|
|
|
www.get-express-vpn.space
|
2021-08-14 13:09:30 +00:00
|
|
|
www.get-express-vpn.xyz
|