Custom Search

Monday, February 8, 2016

Botnet Statistics for January 2016

detection period: 2016-01-01 00:00 - 2016-01-31 23:59 UTC
total number of suspected botnet IPs: 29277
number of blocked spams: 178591
recipient count of blocked spams: 2142408

The vps I use for data file backup disappeared around Jan 21, so I lost about 2/3 of the data needed for calculating number of blocked spams and recipient count of blocked spams (botnet IPs are unaffected by this). That is the reason why they seem to be much less this month.

The top 25 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China22551
2Viet Nam2056
3Taiwan1303
4India367
5Mexico315
6United States298
7Brazil287
8Russian Federation244
9Ukraine177
10Indonesia124
11Argentina112
12Turkey110
13Romania95
14Iran83
15Kazakhstan67
16Poland56
17Germany55
18Thailand52
19South Korea50
20Colombia42
21Canada42
22France40
23Hong Kong36
24Bulgaria36
25Azerbaijan34

The top 25 countries (as defined by the 2-character country code), ordered by number of blocked spams are:

RankCountry# of blocked spams
1Brazil145299
2United States9023
3Taiwan6951
4China4373
5Mexico3018
6Hong Kong1822
7Viet Nam1004
8Colombia984
9Chile867
10Argentina836
11Thailand774
12India691
13Turkey433
14Bolivia337
15Russian Federation312
16Israel293
17France272
18Spain209
19Macau155
20Panama144
21Romania109
22Indonesia109
23Venezuela87
24Malaysia78
25Italy72

The top 25 countries (as defined by the 2-character country code), ordered by recipient count of blocked spams are:

RankCountryrecipient count of blocked spams
1Brazil1456012
2Taiwan190523
3China115358
4United States57220
5Hong Kong55220
6Mexico50304
7Viet Nam27066
8Colombia26767
9Chile23723
10Argentina22643
11Thailand21261
12India18692
13Turkey11419
14Bolivia9045
15France8340
16Russian Federation7850
17Spain5697
18Israel4395
19Macau4288
20Panama3717
21Indonesia3631
22Romania3337
23Venezuela2402
24Italy2327
25Malaysia2186

The top 25 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1CHINANET-AH5606
2CHINANET-ZJ-JH3016
3CHINANET-JS2684
4CHINANET-HB2438
5CHINANET-ZJ2316
6UNICOM-AH2094
7CHINANET-SC1470
8HINET-NET1241
9VNPT-VNNIC-VN1070
10WASU600
11CHINANET-GD536
12UNICOM-ZJ531
13WASU-BB420
14FPT-VN222
15MX-MSCV17-LACNIC203
16VIETEL-VNNIC-VN192
17VIETEL-VN187
18ETC-VNNIC-VN147
19UNICOM-SD110
20CHINANET-ZJ-SX105
21UNICOM-BJ97
22BSNLNET95
23IPxDSL-NET72
24FPT-NET53
25BHARTI-IN52

The top 25 networks (as found in WHOIS), ordered by number of blocked spams are:

RankNetwork# of blocked spams
1005.200.140/0001-27145053
2QUADRANET7180
3HINET-NET3870
4ALISOFT2083
5MX-MSCV17-LACNIC1967
6CTIHK1426
7TFN-NET1402
8tonghnetwork1105
9CL-VPNS-LACNIC867
10TANET-BNETA678
11RAYON_IN676
121AN1-NETWORK662
13AR-ATSA17-LACNIC535
14TANET-B515
15CO-CTSE-LACNIC498
16DSV4-2495
17RELIABLESITE-NETBLOCK460
18MX-MTSC2-LACNIC395
19CAT375
20CO-ETBE-LACNIC368
21Broadbandethernet-NET362
22BO-ACBS1-LACNIC337
23MX-USCV4-LACNIC309
24HINET-TW308
25EDIS-PI-4293

The top 25 networks (as found in WHOIS), ordered by recipient count of blocked spams are:

RankNetworkrecipient count of blocked spams
1005.200.140/0001-271449148
2HINET-NET105740
3ALISOFT55543
4CTIHK45474
5TFN-NET38293
6tonghnetwork29807
7MX-MSCV17-LACNIC23892
8CL-VPNS-LACNIC23723
9TANET-BNETA18629
10RAYON_IN18428
111AN1-NETWORK18099
12AR-ATSA17-LACNIC14669
13TANET-B14415
14DSV4-213719
15CO-CTSE-LACNIC13468
16RELIABLESITE-NETBLOCK12460
17MX-MTSC2-LACNIC10650
18CAT10307
19CO-ETBE-LACNIC10038
20Broadbandethernet-NET9939
21BO-ACBS1-LACNIC9045
22MX-USCV4-LACNIC8523
23HINET-TW8515
24VTDC-VNNIC-VN7967
25QUADRANET7180

No comments:

Post a Comment