# Copyright (c) 2014-2021 Maltrail developers (https://github.com/stamparm/maltrail/)
# See the file 'LICENSE' for copying permission

# Aliases: nixscare

# Reference: https://twitter.com/MBThreatIntel/status/1240389621638402049
# Reference: https://twitter.com/James_inthe_box/status/1240400306858573825
# Reference: https://app.any.run/tasks/9bde133d-2b57-4c69-82b2-ce92afc70617/

poullight.ru

# Reference: https://app.any.run/tasks/23c181f3-e5f2-4d9a-904b-633cb012c1e8/

f0427103.xsph.ru
ru-uid-507352920.pp.ru

# Reference: https://app.any.run/tasks/b66ff3b4-4759-4a20-afb3-c990a292d3a2/

trygame.space

# Reference: https://yoroi.company/research/poulight-stealer-a-new-comprehensive-stealer-from-russia/

fff.gearhostpreview.com
u43692210a.ha003.t.justns.ru

# Reference: https://app.any.run/tasks/62249e09-2e7e-4f32-be86-49f088b7376f/

f0438390.xsph.ru
ru-uid-507352920.pp.ru

# Reference: https://app.any.run/tasks/212e60a0-040d-493b-83ae-8fb76d35866a/

a0445863.xsph.ru

# Reference: https://www.virustotal.com/gui/file/9fbeb15b04961823c2515cfc616771ee35223843e25e948f4d3f026c649c3edd/detection

a0448257.xsph.ru

# Reference: https://www.virustotal.com/gui/file/7c8a8c2512efcf4404041d3209f29c8c36847b240d6d068b7c31d71e0cba31c6/detection

a0437968.xsph.ru

# Reference: https://www.virustotal.com/gui/file/0cb672ae92c9060554c56d0d258bd12911b04ab39a64dc3b7a5aa6c650be3f2e/detection

a0439894.xsph.ru

# Reference: https://www.virustotal.com/gui/file/8d90d2620d1d78e64a9698aa82d82faf3a55fe82930819fe95b94c619b9d4354/detection

a0438444.xsph.ru

# Reference: https://www.virustotal.com/gui/file/bcc1d08cf7ef2bf8cb9237cfe7733887bb7d92016be227884ffa1d0d237cd4c2/detection

a0446373.xsph.ru

# Reference: https://app.any.run/tasks/ce6080f0-e59e-407a-82b5-7ea30fc07626/

a0458095.xsph.ru

# Reference: https://www.virustotal.com/gui/file/e9b2559e5ba7876b670ecced318041832ffbf732cf41eec6961059d266db7846/detection

f0448893.xsph.ru

# Reference: https://www.virustotal.com/gui/file/d3449368c6443b3f49bdbc3db8f88dc092bf85d105bd79024d5de2a435ca8519/detection

a0465927.xsph.ru

# Reference: https://twitter.com/ViriBack/status/1302231419595427840
# Reference: https://app.any.run/tasks/cb8f5a85-ac33-4c11-942c-504a357a2147/

f0467229.xsph.ru

# Reference: https://www.virustotal.com/gui/file/d089b0fa5b668a5d9609fb508b4cb54589a6b7175e251aabe49d55daaadbb909/detection

a0462628.xsph.ru

# Reference: https://www.virustotal.com/gui/file/640e849e13872d89e7202377a80f03b24d8d5416eb7ff20d15b43f99953bff7b/detection

pappys-bot.ru

# Reference: https://app.any.run/tasks/d2555b1f-0b96-4944-b994-a85c95b53054/

f0479078.xsph.ru
ru-uid-507352920.pp.ru

# Reference: https://www.virustotal.com/gui/file/2511f20fdac1eb6540abc14a517ef581b56d490720c24d2cf15b7a62dbf11f24/detection

j1120688.myjino.ru
