Custom Search

Monday, June 30, 2014

Suspected Bot List [2014-06-29]

detection period: 2014-06-29 00:00-23:59 UTC
number of suspected bots' IPs listed here: 42

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
CL200.111.103.72Chile
CO190.60.39.186Colombia
EG62.117.58.109Egypt
GB176.35.77.154United Kingdom
IN27.251.106.249India
IN59.90.91.95India
IN117.247.241.27India
IN202.62.67.250India
IN203.90.114.228India
IN203.90.124.171India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
PE200.110.35.150Peru
PH58.69.100.234Philippines
PH121.96.88.55Philippines
SA94.77.199.148Saudi Arabia
SG112.140.185.208Singapore
TR193.255.143.62Turkey
TR193.255.143.63Turkey
US50.201.42.106United States
US68.189.142.171United States
US174.139.165.154United States
US199.36.73.42United States
US199.217.113.176United States
VE190.202.116.101Venezuela
VE201.248.102.102Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-29]

detection period: 2014-06-29 00:00-23:59 UTC
total number of suspected botnet IPs: 2377
number of botnet IPs notified to network operators: 2335
number of spam blocked: 163369
recipient count of spam blocked: 5520178

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1190
2HICHINA291
3CRTC178
4CHINANET-GD141
5CHINANET-FJ35
6UNICOM-GD33
7UNICOM-BJ26
8CHINANET-HB25
9CMNET13
10SA-BAYANAT-2005042812

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1197
2China895
3Russian Federation43
4United States37
5Brazil25
6Saudi Arabia14
7Indonesia13
8Thailand12
9India11
10United Kingdom11

Sunday, June 29, 2014

Suspected Bot List [2014-06-28]

detection period: 2014-06-28 00:00-23:59 UTC
number of suspected bots' IPs listed here: 72

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.148.30Bangladesh
CL200.86.134.7Chile
CL200.111.103.72Chile
CO190.60.39.186Colombia
GB176.35.77.154United Kingdom
HN190.107.140.77Honduras
IN27.251.106.249India
IN59.90.91.95India
IN117.247.241.27India
IN122.160.239.46India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN203.90.124.171India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
PE190.116.13.99Peru
PE200.110.35.150Peru
PH121.96.88.55Philippines
PK103.4.92.88Pakistan
PL213.92.171.169Poland
SA94.77.199.148Saudi Arabia
SG112.140.185.208Singapore
SK178.41.51.165Slovakia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TW180.218.159.85Taiwan
US50.201.42.106United States
US68.189.142.171United States
US75.136.148.41United States
US199.36.73.42United States
US199.217.113.176United States
VE190.202.116.101Venezuela
VE201.248.102.102Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-28]

detection period: 2014-06-28 00:00-23:59 UTC
total number of suspected botnet IPs: 2477
number of botnet IPs notified to network operators: 2408
number of spam blocked: 171739
recipient count of spam blocked: 5924795

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1183
2HICHINA293
3CRTC169
4CHINANET-GD154
5UNICOM-GD49
6CHINANET-FJ33
7UNICOM-BJ18
8CHINANET-HB18
9SA-BAYANAT-2005042812
10UNICOM-HN11

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1191
2China903
3Brazil46
4Russian Federation43
5United States37
6Italy21
7Indonesia18
8Thailand17
9India16
10Saudi Arabia14

Saturday, June 28, 2014

Suspected Bot List [2014-06-27]

detection period: 2014-06-27 00:00-23:59 UTC
number of suspected bots' IPs listed here: 72

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
AR190.189.92.132Argentina
BD180.211.148.30Bangladesh
CL200.86.134.7Chile
CL200.111.103.72Chile
CO190.60.39.186Colombia
GB176.35.77.154United Kingdom
HN190.107.140.77Honduras
IN27.251.106.249India
IN122.160.239.46India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN203.90.124.171India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
PE190.116.13.99Peru
PE200.110.35.150Peru
PH121.96.88.55Philippines
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
SG112.140.185.208Singapore
SK178.41.51.165Slovakia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
US50.201.42.106United States
US68.189.142.171United States
US199.217.113.176United States
VE190.202.116.101Venezuela
VE201.248.102.102Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-27]

detection period: 2014-06-27 00:00-23:59 UTC
total number of suspected botnet IPs: 2372
number of botnet IPs notified to network operators: 2300
number of spam blocked: 111409
recipient count of spam blocked: 3867657

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET840
2HICHINA284
3CHINANET-GD183
4CRTC162
5UNICOM-HN86
6WASU83
7WASU-BB64
8UNICOM48
9UNICOM-GD32
10CHINANET-SH24

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1144
2Taiwan843
3Russian Federation50
4Brazil38
5United States32
6South Korea18
7Indonesia16
8Saudi Arabia14
9India14
10Ukraine12

Friday, June 27, 2014

Suspected Bot List [2014-06-26]

detection period: 2014-06-26 00:00-23:59 UTC
number of suspected bots' IPs listed here: 73

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL200.111.103.66Chile
CL200.111.103.72Chile
CO190.60.39.186Colombia
EG62.117.58.109Egypt
GB176.35.77.154United Kingdom
IN27.251.106.249India
IN122.160.239.46India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX187.210.25.138Mexico
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
PE200.110.35.150Peru
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
SK178.41.51.165Slovakia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
US50.201.42.106United States
US68.189.142.171United States
US199.217.113.176United States
VE190.202.116.101Venezuela
VE201.248.102.102Venezuela

List from greylisting:

Botnet Statistics [2014-06-26]

detection period: 2014-06-26 00:00-23:59 UTC
total number of suspected botnet IPs: 2713
number of botnet IPs notified to network operators: 2640
number of spam blocked: 127836
recipient count of spam blocked: 4446215

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1105
2HICHINA287
3CHINANET-GD266
4CRTC143
5WASU96
6UNICOM-HN75
7UNICOM58
8WASU-BB44
9CHINANET-FJ35
10CHINANET-HB31

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1218
2Taiwan1115
3Russian Federation60
4Brazil36
5United States31
6Indonesia19
7Italy16
8India15
9Ukraine13
10Colombia13

Thursday, June 26, 2014

Suspected Bot List [2014-06-25]

detection period: 2014-06-25 00:00-23:59 UTC
number of suspected bots' IPs listed here: 84

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL200.111.103.66Chile
CO190.60.39.186Colombia
EG62.117.58.109Egypt
GB176.35.77.154United Kingdom
IN27.251.106.249India
IN59.90.91.95India
IN122.160.239.46India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
PH58.69.100.234Philippines
PH121.96.88.55Philippines
SA94.77.199.148Saudi Arabia
SG112.140.185.208Singapore
SK178.41.51.165Slovakia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
TW180.218.159.85Taiwan
US50.201.42.106United States
US192.157.242.187United States
US199.217.113.176United States
VE190.202.116.101Venezuela
VE201.248.102.102Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-25]

detection period: 2014-06-25 00:00-23:59 UTC
total number of suspected botnet IPs: 2911
number of botnet IPs notified to network operators: 2827
number of spam blocked: 215826
recipient count of spam blocked: 4643541

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1194
2CHINANET-GD289
3HICHINA278
4CRTC167
5UNICOM-HN90
6WASU82
7WASU-BB66
8UNICOM55
9UNICOM-GD37
10CHINANET-FJ37

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1303
2Taiwan1204
3Russian Federation52
4United States32
5Brazil29
6India20
7Indonesia18
8Saudi Arabia15
9Viet Nam14
10Ukraine13

Wednesday, June 25, 2014

Suspected Bot List [2014-06-24]

detection period: 2014-06-24 00:00-23:59 UTC
number of suspected bots' IPs listed here: 86

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
EG62.117.58.109Egypt
GB176.35.77.154United Kingdom
IN122.160.239.46India
IN202.62.67.250India
IN203.90.114.228India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
PH58.69.100.234Philippines
SA94.77.199.148Saudi Arabia
SG112.140.185.208Singapore
SK178.41.51.165Slovakia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
TW180.218.159.85Taiwan
US50.201.42.106United States
US67.229.56.106United States
US68.189.142.171United States
US199.217.113.176United States
VE190.202.116.101Venezuela

List from greylisting:

Botnet Statistics [2014-06-24]

detection period: 2014-06-24 00:00-23:59 UTC
total number of suspected botnet IPs: 2692
number of botnet IPs notified to network operators: 2606
number of spam blocked: 151207
recipient count of spam blocked: 3942587

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1052
2HICHINA275
3CHINANET-GD171
4CRTC141
5UNICOM-HN110
6WASU108
7WASU-BB67
8CHINANET-FJ62
9UNICOM-GD38
10UNICOM38

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1205
2Taiwan1060
3United States51
4Russian Federation49
5Brazil31
6Italy22
7Indonesia21
8Saudi Arabia15
9India15
10Japan14

Tuesday, June 24, 2014

Suspected Bot List [2014-06-23]

detection period: 2014-06-23 00:00-23:59 UTC
number of suspected bots' IPs listed here: 69

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL200.111.103.66Chile
CO190.60.39.186Colombia
EG41.33.169.36Egypt
EG62.117.58.109Egypt
GB176.35.77.154United Kingdom
HN190.107.140.76Honduras
HN190.107.140.77Honduras
IN27.251.106.249India
IN59.90.91.95India
IN122.160.239.46India
IN202.62.67.250India
IN203.90.114.228India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT95.227.105.203Italy
KZ89.218.47.226Kazakhstan
LB194.126.140.247Lebanon
MX200.94.17.244Mexico
MX201.116.227.163Mexico
PH58.69.100.234Philippines
PL213.92.171.169Poland
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
US50.201.42.106United States
US68.189.142.171United States
US199.217.113.176United States
VE190.202.116.101Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-23]

detection period: 2014-06-23 00:00-23:59 UTC
total number of suspected botnet IPs: 2896
number of botnet IPs notified to network operators: 2829
number of spam blocked: 105697
recipient count of spam blocked: 3417142

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1213
2CHINANET-GD323
3HICHINA261
4CRTC150
5UNICOM-HN98
6UNICOM67
7WASU64
8WASU-BB53
9CHINANET-FJ51
10UNICOM-GD47

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1326
2Taiwan1218
3United States47
4Russian Federation39
5Brazil29
6Indonesia19
7India15
8Saudi Arabia14
9Viet Nam13
10Ukraine12

Monday, June 23, 2014

Suspected Bot List [2014-06-22]

detection period: 2014-06-22 00:00-23:59 UTC
number of suspected bots' IPs listed here: 53

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CO190.60.39.186Colombia
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
HN190.107.140.76Honduras
IN27.251.106.249India
IN59.90.91.95India
IN202.62.67.250India
IN203.90.114.228India
IT95.227.105.203Italy
LB194.126.140.247Lebanon
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
US50.201.42.106United States
US68.189.142.171United States
US199.217.113.176United States
VE190.202.116.101Venezuela

List from greylisting:

Botnet Statistics [2014-06-22]

detection period: 2014-06-22 00:00-23:59 UTC
total number of suspected botnet IPs: 2463
number of botnet IPs notified to network operators: 2410
number of spam blocked: 89776
recipient count of spam blocked: 2818121

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1190
2HICHINA256
3CHINANET-GD194
4CRTC132
5WASU72
6WASU-BB55
7CHINANET-FJ33
8UNICOM-GD27
9CHINANET-HB27
10UNICOM-HN25

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1194
2China968
3Russian Federation58
4United States31
5Brazil19
6Indonesia16
7Saudi Arabia15
8Viet Nam14
9United Kingdom10
10Ukraine9

Sunday, June 22, 2014

Suspected Bot List [2014-06-21]

detection period: 2014-06-21 00:00-23:59 UTC
number of suspected bots' IPs listed here: 70

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL200.111.103.66Chile
CO190.60.39.186Colombia
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
HN190.107.140.76Honduras
HN190.107.140.77Honduras
IN27.251.2.67India
IN27.251.106.249India
IN59.90.91.95India
IN122.160.239.46India
IN202.62.67.250India
IN203.90.114.228India
IN210.212.97.179India
IR94.182.162.242Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX201.116.227.163Mexico
PH121.96.88.55Philippines
PL213.92.171.169Poland
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
US50.193.90.104United States
US50.201.42.106United States
US68.189.142.171United States
US199.217.113.176United States
VE190.202.116.101Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-21]

detection period: 2014-06-21 00:00-23:59 UTC
total number of suspected botnet IPs: 2357
number of botnet IPs notified to network operators: 2287
number of spam blocked: 96923
recipient count of spam blocked: 3006742

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1023
2HICHINA256
3CHINANET-GD205
4CRTC145
5WASU61
6UNICOM-HN51
7UNICOM43
8WASU-BB34
9CHINANET-FJ33
10UNICOM-GD31

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1029
2China997
3Russian Federation47
4United States29
5Brazil22
6India21
7Indonesia17
8Viet Nam15
9Saudi Arabia14
10Thailand11

Saturday, June 21, 2014

Suspected Bot List [2014-06-20]

detection period: 2014-06-20 00:00-23:59 UTC
number of suspected bots' IPs listed here: 77

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL190.96.47.12Chile
CL200.111.103.66Chile
CO190.60.39.186Colombia
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
HN190.107.140.77Honduras
IN27.251.2.67India
IN27.251.106.249India
IN59.90.91.95India
IN122.160.239.46India
IN202.62.67.250India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX200.94.17.244Mexico
MX201.116.227.163Mexico
PH58.69.100.234Philippines
PH121.96.88.55Philippines
PL213.92.171.169Poland
RU95.188.112.11Russian Federation
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
US50.201.42.106United States
US68.189.142.171United States
US199.217.113.176United States
VE190.202.116.101Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-20]

detection period: 2014-06-20 00:00-23:59 UTC
total number of suspected botnet IPs: 2560
number of botnet IPs notified to network operators: 2483
number of spam blocked: 109814
recipient count of spam blocked: 3487616

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1129
2HICHINA254
3CHINANET-GD248
4WASU158
5WASU-BB75
6CRTC74
7CHINANET-FJ42
8UNICOM-GD28
9CHINANET-HB25
10CHINANET-SC19

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1136
2China1090
3Russian Federation36
4Brazil34
5United States33
6Indonesia22
7India15
8Saudi Arabia14
9Thailand13
10Viet Nam11

Friday, June 20, 2014

Suspected Bot List [2014-06-19]

detection period: 2014-06-19 00:00-23:59 UTC
number of suspected bots' IPs listed here: 195

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2014-06-19]

detection period: 2014-06-19 00:00-23:59 UTC
total number of suspected botnet IPs: 2320
number of botnet IPs notified to network operators: 2125
number of spam blocked: 60462
recipient count of spam blocked: 1782836

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1201
2CHINANET-GD241
3WASU142
4CRTC93
5WASU-BB74
6UNICOM-HN61
7CHINANET-FJ49
8VNPT-VNNIC-VN44
9UNICOM-GD29
10UNICOM23

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1210
2China814
3Viet Nam76
4Russian Federation21
5United States17
6Colombia14
7Tunisia11
8Peru11
9Argentina10
10Poland8

Thursday, June 19, 2014

Suspected Bot List [2014-06-18]

detection period: 2014-06-18 00:00-23:59 UTC
number of suspected bots' IPs listed here: 32

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2014-06-18]

detection period: 2014-06-18 00:00-23:59 UTC
total number of suspected botnet IPs: 2129
number of botnet IPs notified to network operators: 2097
number of spam blocked: 57558
recipient count of spam blocked: 1685892

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1169
2CRTC146
3WASU119
4CHINANET-GD112
5UNICOM-HN88
6WASU-BB81
7UNICOM66
8CHINANET-FJ57
9UNICOM-GD39
10CHINANET-HB33

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1178
2China822
3Russian Federation16
4United States9
5Viet Nam8
6South Korea7
7India6
8Indonesia6
9Argentina6
10Colombia5

Wednesday, June 18, 2014

Suspected Bot List [2014-06-17]

detection period: 2014-06-17 00:00-23:59 UTC
number of suspected bots' IPs listed here: 83

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
EG41.33.169.36Egypt
HN190.107.140.77Honduras
IN122.160.52.15India
IN125.17.32.130India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IR91.98.109.4Iran
IT95.227.105.203Italy
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
PH58.69.100.234Philippines
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR195.244.39.195Turkey
US50.201.42.106United States
UZ217.29.114.86Uzbekistan

List from greylisting:

Botnet Statistics [2014-06-17]

detection period: 2014-06-17 00:00-23:59 UTC
total number of suspected botnet IPs: 1495
number of botnet IPs notified to network operators: 1412
number of spam blocked: 34085
recipient count of spam blocked: 1286844

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1CHINANET-GD238
2HICHINA197
3CRTC166
4UNICOM-HN105
5WASU84
6UNICOM76
7WASU-BB62
8CHINANET-FJ33
9CHINANET-HB27
10VNPT-VNNIC-VN16

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1128
2United States37
3Viet Nam28
4Russian Federation25
5Brazil19
6France18
7India17
8Indonesia17
9South Korea15
10Ukraine12

Tuesday, June 17, 2014

Suspected Bot List [2014-06-16]

detection period: 2014-06-16 00:00-23:59 UTC
number of suspected bots' IPs listed here: 102

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
EG41.33.169.36Egypt
HN190.107.140.77Honduras
IN125.17.32.130India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IR91.98.109.4Iran
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR195.244.39.195Turkey
US50.201.42.106United States
UZ217.29.114.86Uzbekistan

List from greylisting:

Botnet Statistics [2014-06-16]

detection period: 2014-06-16 00:00-23:59 UTC
total number of suspected botnet IPs: 1499
number of botnet IPs notified to network operators: 1397
number of spam blocked: 35737
recipient count of spam blocked: 1245360

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA188
2CRTC150
3CHINANET-GD150
4WASU99
5UNICOM-HN94
6UNICOM58
7WASU-BB47
8CHINANET-SH28
9CHINANET-FJ28
10CHINANET-HB21

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China975
2United States76
3Brazil40
4Russian Federation37
5France37
6Italy33
7Viet Nam18
8Argentina18
9Taiwan17
10Iran17

Monday, June 16, 2014

Suspected Bot List [2014-06-15]

detection period: 2014-06-15 00:00-23:59 UTC
number of suspected bots' IPs listed here: 36

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
EG41.33.169.36Egypt
HN190.107.140.77Honduras
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IR91.98.109.4Iran
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR195.244.39.195Turkey
US50.201.42.106United States
US174.139.203.202United States

List from greylisting:

Botnet Statistics [2014-06-15]

detection period: 2014-06-15 00:00-23:59 UTC
total number of suspected botnet IPs: 1071
number of botnet IPs notified to network operators: 1035
number of spam blocked: 44714
recipient count of spam blocked: 1672858

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA190
2CRTC138
3CHINANET-GD113
4UNICOM-HN87
5WASU80
6UNICOM51
7WASU-BB43
8CHINANET-FJ30
9CHINANET-HB27
10CHINANET-SH16

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China866
2Russian Federation26
3United States17
4Indonesia17
5Ukraine11
6India10
7Brazil9
8South Korea8
9Viet Nam6
10Iran6

Sunday, June 15, 2014

Suspected Bot List [2014-06-14]

detection period: 2014-06-14 00:00-23:59 UTC
number of suspected bots' IPs listed here: 26

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
HN190.107.140.77Honduras
IN125.17.32.130India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IR91.98.109.4Iran
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
TR195.244.39.195Turkey
US50.201.42.106United States

List from greylisting:

Botnet Statistics [2014-06-14]

detection period: 2014-06-14 00:00-23:59 UTC
total number of suspected botnet IPs: 1021
number of botnet IPs notified to network operators: 995
number of spam blocked: 46973
recipient count of spam blocked: 1780515

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA192
2CHINANET-GD181
3CRTC163
4WASU76
5WASU-BB59
6CHINANET-FJ35
7CHINANET-HB22
8UNICOM-GD15
9HOSTNOC-4BLK10
10CMNET8

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China831
2United States33
3Russian Federation21
4Indonesia14
5Viet Nam9
6Ukraine9
7India9
8Brazil9
9South Korea8
10United Kingdom7

Saturday, June 14, 2014

Suspected Bot List [2014-06-13]

detection period: 2014-06-13 00:00-23:59 UTC
number of suspected bots' IPs listed here: 67

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
HN190.107.140.77Honduras
IN27.251.106.249India
IN125.17.32.130India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.109.4Iran
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
SG112.140.187.201Singapore
TR195.244.39.195Turkey
US50.201.42.106United States
UZ217.29.114.86Uzbekistan
VE190.202.116.101Venezuela

List from greylisting:

Botnet Statistics [2014-06-13]

detection period: 2014-06-13 00:00-23:59 UTC
total number of suspected botnet IPs: 1119
number of botnet IPs notified to network operators: 1052
number of spam blocked: 51036
recipient count of spam blocked: 1934945

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA192
2CHINANET-GD149
3CRTC97
4WASU52
5UNICOM-GD36
6UNICOM-HN33
7WASU-BB32
8CHINANET-FJ27
9CHINANET-HB22
10UNICOM21

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China777
2Russian Federation39
3United States37
4Brazil32
5Italy19
6India19
7Indonesia14
8Ukraine13
9South Korea12
10Argentina12

Friday, June 13, 2014

Suspected Bot List [2014-06-12]

detection period: 2014-06-12 00:00-23:59 UTC
number of suspected bots' IPs listed here: 78

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL200.111.103.73Chile
CO190.60.39.186Colombia
EC186.47.122.61Ecuador
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
GH41.189.167.27Ghana
HN190.107.140.77Honduras
IN27.251.106.249India
IN122.160.239.46India
IN125.17.32.130India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
KE41.207.65.165Kenya
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
NP202.79.52.53Nepal
PH58.69.100.234Philippines
PH58.71.94.176Philippines
PH121.96.88.55Philippines
PL79.133.210.30Poland
RU95.188.112.11Russian Federation
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
SG112.140.187.201Singapore
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
TW180.218.159.85Taiwan
US50.201.42.106United States
VE190.202.116.101Venezuela
VE200.84.109.84Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-12]

detection period: 2014-06-12 00:00-23:59 UTC
total number of suspected botnet IPs: 1277
number of botnet IPs notified to network operators: 1202
number of spam blocked: 54420
recipient count of spam blocked: 1975389

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA197
2CHINANET-GD154
3WASU79
4WASU-BB60
5CHINANET-SH44
6UNICOM-HN38
7CHINANET-FJ32
8CHINANET-HB28
9CRTC25
10UNICOM23

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China884
2Russian Federation48
3United States44
4Brazil31
5Thailand24
6Indonesia21
7India14
8Ukraine13
9South Korea13
10Iran12

Thursday, June 12, 2014

Suspected Bots' IP List for June 2014

To encourage cyber security information sharing (as some form of open data) while still giving victims enough time to clean up their computers, the IP list of suspected infected computers will be released here (as shown below) 10 days after its respective botnet statistics gets published.

New data will be added here daily. You are free to use them to create more effective defenses, discover latest trends in cyber attacks, etc.

Suspected Bots IP [2014-06-30]
Suspected Bots IP [2014-06-29]
Suspected Bots IP [2014-06-28]
Suspected Bots IP [2014-06-27]
Suspected Bots IP [2014-06-26]
Suspected Bots IP [2014-06-25]
Suspected Bots IP [2014-06-24]
Suspected Bots IP [2014-06-23]
Suspected Bots IP [2014-06-22]
Suspected Bots IP [2014-06-21]
Suspected Bots IP [2014-06-20]
Suspected Bots IP [2014-06-19]
Suspected Bots IP [2014-06-18]
Suspected Bots IP [2014-06-17]
Suspected Bots IP [2014-06-16]
Suspected Bots IP [2014-06-15]
Suspected Bots IP [2014-06-14]
Suspected Bots IP [2014-06-13]
Suspected Bots IP [2014-06-12]
Suspected Bots IP [2014-06-11]
Suspected Bots IP [2014-06-10]
Suspected Bots IP [2014-06-09]
Suspected Bots IP [2014-06-08]
Suspected Bots IP [2014-06-07]
Suspected Bots IP [2014-06-06]
Suspected Bots IP [2014-06-05]
Suspected Bots IP [2014-06-04]
Suspected Bots IP [2014-06-03]
Suspected Bots IP [2014-06-02]
Suspected Bots IP [2014-06-01]

Suspected Bot List [2014-06-11]

detection period: 2014-06-11 00:00-23:59 UTC
number of suspected bots' IPs listed here: 115

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL186.67.57.82Chile
CL186.67.60.155Chile
CL200.111.103.73Chile
CO190.60.39.186Colombia
EC186.47.122.61Ecuador
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
GH41.189.167.27Ghana
IN27.251.106.249India
IN59.90.91.95India
IN117.247.241.27India
IN122.160.239.46India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.36.84Iran
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
KE41.207.65.165Kenya
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
NP202.79.52.53Nepal
PH58.69.100.234Philippines
PH58.71.94.176Philippines
PH121.96.88.55Philippines
PL79.133.210.30Poland
RU95.188.112.11Russian Federation
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
SG112.140.187.201Singapore
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
US50.201.42.106United States
US107.181.153.86United States
US146.148.246.2United States
VE190.202.116.101Venezuela
VE200.84.109.84Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-11]

detection period: 2014-06-11 00:00-23:59 UTC
total number of suspected botnet IPs: 1352
number of botnet IPs notified to network operators: 1238
number of spam blocked: 51788
recipient count of spam blocked: 1916772

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA176
2CHINANET-GD137
3UNICOM-HN98
4WASU43
5UNICOM36
6CHINANET-FJ32
7CRTC27
8UNICOM-GD25
9CHINANET-SH25
10CHINANET-HB23

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China834
2Russian Federation58
3Brazil41
4United States35
5Indonesia31
6Italy25
7Thailand24
8India22
9Turkey16
10Saudi Arabia16

Wednesday, June 11, 2014

Suspected Bot List [2014-06-10]

detection period: 2014-06-10 00:00-23:59 UTC
number of suspected bots' IPs listed here: 65

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL186.67.57.82Chile
CL186.67.60.155Chile
CL200.111.103.73Chile
CO190.7.129.204Colombia
CO190.60.39.186Colombia
EC186.47.122.61Ecuador
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
GH41.189.167.27Ghana
IN27.251.106.249India
IN59.90.91.95India
IN122.160.239.46India
IN125.17.32.130India
IN202.62.67.250India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.36.84Iran
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
KE41.207.65.165Kenya
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX200.94.17.244Mexico
MX201.116.227.163Mexico
NP202.79.52.53Nepal
PH58.71.94.176Philippines
PH121.96.88.55Philippines
PL79.133.210.30Poland
RU95.188.112.11Russian Federation
SA94.77.199.148Saudi Arabia
SG112.140.187.201Singapore
TR176.43.0.142Turkey
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
US50.201.42.106United States
US146.148.246.2United States
VE190.202.116.101Venezuela
VE200.84.109.84Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-10]

detection period: 2014-06-10 00:00-23:59 UTC
total number of suspected botnet IPs: 1188
number of botnet IPs notified to network operators: 1124
number of spam blocked: 50231
recipient count of spam blocked: 1628832

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA155
2UNICOM-HN135
3CHINANET-GD102
4UNICOM63
5CHINANET-FJ48
6CHINANET-SH33
7CRTC27
8CHINANET-HB26
9UNICOM-GD23
10idc-csloxinfo15

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China798
2Russian Federation48
3Brazil43
4United States27
5Indonesia26
6Thailand22
7Saudi Arabia16
8South Korea15
9Iran14
10India14

Tuesday, June 10, 2014

Suspected Bot List [2014-06-09]

detection period: 2014-06-09 00:00-23:59 UTC
number of suspected bots' IPs listed here: 81

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL186.67.57.82Chile
CL186.67.60.155Chile
CL200.111.103.73Chile
CO190.7.129.204Colombia
CO190.60.39.186Colombia
EC186.47.122.61Ecuador
GB176.35.77.154United Kingdom
GH41.189.167.27Ghana
IN27.251.106.249India
IN125.17.32.130India
IN182.72.131.50India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
KE41.207.65.165Kenya
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX201.116.227.163Mexico
NP202.79.52.53Nepal
PH58.71.94.176Philippines
PH121.96.88.55Philippines
PL79.133.210.30Poland
RU95.188.112.11Russian Federation
SA94.77.199.148Saudi Arabia
SG112.140.187.201Singapore
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
TW180.218.159.85Taiwan
US50.201.42.106United States
US146.148.246.2United States
VE190.202.116.101Venezuela
VE200.84.109.84Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-06-09]

detection period: 2014-06-09 00:00-23:59 UTC
total number of suspected botnet IPs: 1078
number of botnet IPs notified to network operators: 998
number of spam blocked: 56359
recipient count of spam blocked: 1989171

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HICHINA114
2CHINANET-GD81
3UNICOM-GD46
4UNICOM42
5UNICOM-HN39
6CHINANET-FJ35
7CHINANET-SH33
8CRTC28
9CHINANET-HB23
10idc-csloxinfo15

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China617
2Russian Federation59
3Brazil54
4United States26
5Thailand19
6Italy18
7Saudi Arabia17
8Indonesia16
9Colombia16
10South Korea14

Monday, June 9, 2014

Suspected Bot List [2014-06-08]

detection period: 2014-06-08 00:00-23:59 UTC
number of suspected bots' IPs listed here: 72

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD180.211.180.18Bangladesh
CL200.111.103.73Chile
CO190.60.39.186Colombia
EC186.47.122.61Ecuador
EG41.33.169.36Egypt
GB176.35.77.154United Kingdom
GH41.189.167.27Ghana
IN27.251.106.249India
IN59.90.91.95India
IN125.17.32.130India
IN202.164.47.221India
IN203.90.114.228India
IN210.212.97.179India
IR91.98.36.84Iran
IR91.98.109.4Iran
IR94.182.162.242Iran
IT37.186.201.149Italy
KE41.207.65.165Kenya
KZ89.218.47.226Kazakhstan
LB194.126.140.247Lebanon
MX200.78.130.3Mexico
MX201.116.227.163Mexico
NP202.79.52.53Nepal
PH58.71.94.176Philippines
PH121.96.88.55Philippines
PL79.133.210.30Poland
RU95.188.112.11Russian Federation
RU109.167.201.26Russian Federation
SA94.77.199.148Saudi Arabia
SG112.140.187.201Singapore
SK178.41.97.151Slovakia
TR193.255.143.62Turkey
TR193.255.143.63Turkey
TR195.244.39.195Turkey
US50.201.42.106United States
US146.148.246.2United States
US174.139.83.170United States
VE190.202.116.101Venezuela
VE200.84.109.84Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting: