Custom Search

Saturday, December 10, 2016

Suspected Bot List [2016-12-09]

detection period: 2016-12-09 00:00-23:59 UTC
number of suspected bots' IPs listed here: 141

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
AO41.72.57.250Angola
AR190.108.35.2Argentina
BD43.240.100.199Bangladesh
BD58.147.173.36Bangladesh
BD103.16.73.207Bangladesh
BD116.193.219.109Bangladesh
BD116.193.219.141Bangladesh
BD116.193.219.163Bangladesh
BD116.193.220.3Bangladesh
BD202.5.37.132Bangladesh
CM41.211.106.148Cameroon
CR186.32.186.58Costa Rica
CV197.255.143.108Cape Verde
CV197.255.143.121Cape Verde
CV197.255.143.122Cape Verde
CV197.255.143.123Cape Verde
ES62.14.160.198Spain
ES62.15.75.212Spain
FR82.98.48.220France
GA197.231.141.29Gabon
GA197.231.143.122Gabon
GE37.131.224.106Republic Of Georgia
HT200.113.196.77Haiti
HT200.113.196.252Haiti
HT200.113.221.17Haiti
HT200.113.221.134Haiti
ID118.98.125.58Indonesia
ID202.75.97.154Indonesia
ID203.190.113.186Indonesia
IN59.145.146.94India
IN125.17.80.106India
IN125.99.255.146India
IN182.71.16.154India
IN182.71.25.62India
IN182.71.119.162India
IN182.72.25.86India
IN182.72.26.130India
IN182.72.36.34India
IN182.72.63.238India
IN182.72.89.138India
IN182.72.98.186India
IN182.72.100.238India
IN182.72.149.230India
IN182.72.158.134India
IN182.73.105.34India
IN182.73.149.126India
IN182.73.193.250India
IN182.73.245.86India
IN182.74.31.134India
IN182.74.50.70India
IN182.74.112.246India
IN182.74.232.178India
IN182.74.247.122India
IN182.75.19.2India
IN182.75.77.50India
IN182.75.107.222India
IN182.75.110.198India
IN182.75.114.174India
IN182.75.119.150India
IN182.75.205.202India
IN182.75.213.102India
IN203.192.221.86India
IN203.192.221.87India
KH103.12.161.70Cambodia
KH103.12.161.187Cambodia
KH103.12.163.67Cambodia
KH103.239.54.178Cambodia
KZ2.133.92.26Kazakhstan
KZ89.218.26.142Kazakhstan
NI190.124.32.202Nicaragua
NL213.34.69.164Netherlands
PK110.36.32.105Pakistan
PK110.36.33.37Pakistan
PK110.36.38.210Pakistan
PK110.36.63.25Pakistan
PK110.38.217.63Pakistan
PK110.38.217.82Pakistan
PK110.38.217.122Pakistan
PK110.38.217.161Pakistan
PK110.38.217.162Pakistan
PK110.38.219.211Pakistan
RO89.165.156.233Romania
SA88.85.228.90Saudi Arabia
SC41.86.56.47Seychelles
SV179.5.32.178El Salvador
SV179.5.32.182El Salvador
SV179.5.32.186El Salvador
SV179.5.32.190El Salvador
SV179.5.32.194El Salvador
SV179.5.33.137El Salvador
SV179.5.33.190El Salvador
SV179.5.33.202El Salvador
ZM155.0.27.5Zambia

List from greylisting:

Botnet Statistics [2016-12-09]

detection period: 2016-12-09 00:00-23:59 UTC
total number of suspected botnet IPs: 1078
number of botnet IPs notified to network operators: 937
number of spam blocked: 25129
recipient count of spam blocked: 39614

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1CHINANET-HN157
2UNICOM-ZJ48
3BHARTI-IN42
4WASU-BB36
5BSNLNET36
6VNPT-VNNIC-VN31
7CMNET31
8CHINANET-HB28
9UNICOM-HE22
10UNICOM-JX12

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

1China505
2India127
3Viet Nam62
4Brazil23
5Indonesia21
6Antigua And Barbuda19
7Russian Federation18
8Bangladesh18
9Pakistan15
10Mexico15

Friday, December 9, 2016

Suspected Bot List [2016-12-08]

detection period: 2016-12-08 00:00-23:59 UTC
number of suspected bots' IPs listed here: 165

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
AR190.108.35.2Argentina
BD43.240.100.199Bangladesh
BD58.147.173.36Bangladesh
BD103.36.100.16Bangladesh
BD116.193.219.109Bangladesh
BD116.193.219.141Bangladesh
BD116.193.219.163Bangladesh
BD202.5.37.132Bangladesh
CM41.211.106.148Cameroon
CR186.32.186.58Costa Rica
CV197.255.143.108Cape Verde
CV197.255.143.121Cape Verde
CV197.255.143.122Cape Verde
CV197.255.143.123Cape Verde
ES62.14.160.198Spain
ES88.28.199.245Spain
ES88.28.209.187Spain
FR80.11.102.142France
FR82.98.48.220France
FR85.203.80.206France
FR85.203.105.93France
FR85.203.107.46France
FR85.203.111.157France
FR85.203.111.200France
FR85.203.120.51France
FR85.203.121.115France
FR85.203.123.53France
FR109.1.102.56France
FR193.252.26.9France
GA197.231.141.29Gabon
GA197.231.143.122Gabon
GE37.131.224.106Republic Of Georgia
HT200.113.221.17Haiti
HT200.113.221.105Haiti
HT200.113.221.134Haiti
IN59.145.146.94India
IN125.17.80.106India
IN182.71.16.154India
IN182.71.25.62India
IN182.71.119.162India
IN182.72.25.86India
IN182.72.26.130India
IN182.72.36.34India
IN182.72.63.238India
IN182.72.89.138India
IN182.72.98.186India
IN182.72.100.238India
IN182.72.149.230India
IN182.72.158.134India
IN182.73.105.34India
IN182.73.149.126India
IN182.73.193.250India
IN182.73.245.86India
IN182.74.31.134India
IN182.74.50.70India
IN182.74.112.246India
IN182.74.217.38India
IN182.74.232.178India
IN182.74.247.122India
IN182.75.19.2India
IN182.75.77.50India
IN182.75.107.222India
IN182.75.110.198India
IN182.75.114.174India
IN182.75.119.150India
IN182.75.205.202India
IN182.75.213.102India
IN203.192.212.52India
IN203.192.221.86India
IN203.192.221.87India
KH103.12.161.187Cambodia
KH103.12.163.67Cambodia
KH103.239.54.178Cambodia
KZ2.133.92.26Kazakhstan
KZ89.218.26.142Kazakhstan
NI190.124.32.202Nicaragua
NL213.34.69.164Netherlands
NL213.34.69.176Netherlands
PK110.36.32.105Pakistan
PK110.36.33.37Pakistan
PK110.36.35.128Pakistan
PK110.36.38.210Pakistan
PK110.36.63.25Pakistan
PK110.38.217.63Pakistan
PK110.38.217.82Pakistan
PK110.38.217.122Pakistan
PK110.38.217.161Pakistan
PK110.38.217.162Pakistan
PK110.38.219.211Pakistan
RO89.165.156.233Romania
SA88.85.228.90Saudi Arabia
SC41.86.56.47Seychelles
SV179.5.32.178El Salvador
SV179.5.32.182El Salvador
SV179.5.32.186El Salvador
SV179.5.32.190El Salvador
SV179.5.32.194El Salvador
SV179.5.33.10El Salvador
SV179.5.33.137El Salvador
SV179.5.33.190El Salvador
SV179.5.33.202El Salvador
US69.36.65.214United States
ZM155.0.27.5Zambia

List from greylisting: