detection period: 2025-01-21 00:00-23:59 UTC
total number of suspected botnet IPs: 23853
number of botnet IPs notified to network operators (best case, if all mail were sent out successfully): 22382
number of spam blocked: 0
recipient count of spam blocked: 0
The top 10 networks (as found in WHOIS), ordered by the number of suspected botnet IPs are:
Rank | Network | # of suspected botnet IPs |
---|---|---|
1 | HINET-NET | 1318 |
2 | GOOGLE-CLOUD | 995 |
3 | PAN-22 | 944 |
4 | MSFT | 856 |
5 | BSNLNET | 760 |
6 | UK-MICROSOFT-20000324 | 557 |
7 | AL-3 | 492 |
8 | CENSY | 399 |
9 | VOLCANO-ENGINE | 360 |
10 | HURRICANE-4 | 351 |
The top 10 countries (as defined by the 2-character country code), ordered by the number of suspected botnet IPs are:
The top 10 TCP ports, ordered by the number of connection attempts received are:
Rank | Country/Region | # of suspected botnet IPs |
---|---|---|
1 | United States | 7045 |
2 | China | 5006 |
3 | Taiwan | 1568 |
4 | India | 1542 |
5 | United Kingdom | 930 |
6 | Russian Federation | 521 |
7 | South Korea | 487 |
8 | Singapore | 470 |
9 | Indonesia | 454 |
10 | Brazil | 438 |
Subscribe to:
Post Comments (Atom)
Rank | TCP port number | # of connection attempts received |
---|---|---|
1 | 3322 | 64901 |
2 | 8888 | 61710 |
3 | 2024 | 57394 |
4 | 22 | 54389 |
5 | 5900 | 39837 |
6 | 2049 | 34258 |
7 | 7722 | 29127 |
8 | 8622 | 24529 |
9 | 6622 | 21792 |
10 | 2255 | 21090 |
No comments:
Post a Comment