Custom Search

Sunday, November 30, 2014

Suspected Bot List [2014-11-29]

detection period: 2014-11-29 00:00-23:59 UTC
number of suspected bots' IPs listed here: 34

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CM195.24.217.58Cameroon
GB176.35.77.154United Kingdom
IN59.176.110.228India
IR82.99.220.219Iran
IR194.33.124.42Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
LB62.84.79.242Lebanon
PH58.69.100.234Philippines
RU193.107.19.105Russian Federation
TR88.247.164.136Turkey
US50.201.42.106United States
US68.188.75.219United States
US69.197.128.170United States
US75.134.10.103United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela

List from greylisting:

Botnet Statistics [2014-11-29]

detection period: 2014-11-29 00:00-23:59 UTC
total number of suspected botnet IPs: 1156
number of botnet IPs notified to network operators: 1122
number of spam blocked: 68899
recipient count of spam blocked: 2335274

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET577
2CHINANET-GD62
3BROADRIVER54
4UNICOM-SD15
5UNICOM-GD14
6UNICOM-HA13
7CHINANET-ZJ8
8UNICOM-HL7
9KORNET-KR7
10HICHINA7

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan587
2China227
3United States117
4Russian Federation28
5Indonesia18
6Iran12
7Brazil12
8South Korea11
9Viet Nam10
10Ukraine10

Saturday, November 29, 2014

Suspected Bot List [2014-11-28]

detection period: 2014-11-28 00:00-23:59 UTC
number of suspected bots' IPs listed here: 40

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
CM195.24.217.58Cameroon
IN59.90.91.95India
IN59.176.110.228India
IR82.99.220.219Iran
IR194.33.124.42Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.134.10.103United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela

List from greylisting:

Botnet Statistics [2014-11-28]

detection period: 2014-11-28 00:00-23:59 UTC
total number of suspected botnet IPs: 1338
number of botnet IPs notified to network operators: 1298
number of spam blocked: 82818
recipient count of spam blocked: 2808792

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET782
2BROADRIVER51
3CHINANET-GD27
4UNICOM-HA20
5UNICOM-SD17
6UNICOM-HL12
7UNICOM-GD12
8CHINANET-JX11
9UNICOM-SC7
10HICHINA7

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan787
2China225
3United States104
4Russian Federation28
5Brazil15
6South Korea12
7Indonesia12
8India11
9Hong Kong9
10Poland8

Friday, November 28, 2014

Suspected Bot List [2014-11-27]

detection period: 2014-11-27 00:00-23:59 UTC
number of suspected bots' IPs listed here: 31

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
CM195.24.217.58Cameroon
DZ41.98.143.249Algeria
IN59.90.91.95India
IN59.176.110.228India
IR82.99.220.219Iran
IR194.33.124.42Iran
IT37.186.201.149Italy
IT95.227.105.203Italy
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.134.10.103United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-27]

detection period: 2014-11-27 00:00-23:59 UTC
total number of suspected botnet IPs: 1364
number of botnet IPs notified to network operators: 1333
number of spam blocked: 86979
recipient count of spam blocked: 2961276

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET803
2BROADRIVER51
3UNICOM-FJ41
4CHINANET-GD41
5UNICOM-SD15
6CHINANET-JX12
7UNICOM-HA9
8UNICOM-CN9
9UNICOM-HL8
10CHINANET-ZJ7

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan807
2China246
3United States105
4Russian Federation23
5Brazil18
6Indonesia13
7France10
8Viet Nam9
9Poland9
10India9

Thursday, November 27, 2014

Suspected Bot List [2014-11-26]

detection period: 2014-11-26 00:00-23:59 UTC
number of suspected bots' IPs listed here: 55

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
BI197.231.251.3Burundi
CL200.111.103.69Chile
CM195.24.217.58Cameroon
GB176.35.77.154United Kingdom
IN59.176.110.228India
IN210.212.119.74India
IR82.99.220.219Iran
IR91.99.8.141Iran
IR194.33.124.42Iran
IT95.227.105.203Italy
LB62.84.79.242Lebanon
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.134.10.103United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-26]

detection period: 2014-11-26 00:00-23:59 UTC
total number of suspected botnet IPs: 1440
number of botnet IPs notified to network operators: 1385
number of spam blocked: 81089
recipient count of spam blocked: 2744579

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET769
2CHINANET-GD63
3BROADRIVER51
4CHINANET-JX24
5UNICOM-SD19
6UNICOM-HA18
7UNICOM-FJ17
8CHINANET-AH12
9UNICOM-HL10
10CHINANET-ZJ10

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan779
2China289
3United States104
4Russian Federation23
5India20
6Brazil18
7Indonesia17
8Hong Kong13
9Iran12
10South Africa11

Wednesday, November 26, 2014

Suspected Bot List [2014-11-25]

detection period: 2014-11-25 00:00-23:59 UTC
number of suspected bots' IPs listed here: 62

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
IN59.176.110.228India
IR82.99.220.219Iran
IR91.99.8.141Iran
IR194.33.124.42Iran
IT95.227.105.203Italy
LB62.84.79.242Lebanon
PH58.69.100.234Philippines
RU193.107.19.105Russian Federation
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.134.10.103United States
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-25]

detection period: 2014-11-25 00:00-23:59 UTC
total number of suspected botnet IPs: 1457
number of botnet IPs notified to network operators: 1395
number of spam blocked: 82090
recipient count of spam blocked: 2721024

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET766
2CHINANET-GD94
3BROADRIVER42
4UNICOM-HA18
5UNICOM-SD17
6CHINANET-JX12
7CHINANET-ZJ10
8CMNET9
9CHINANET-AH9
10UNICOM-GD8

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan780
2China270
3United States94
4Russian Federation35
5India30
6Indonesia21
7South Korea15
8South Africa14
9Viet Nam14
10Ukraine13

Tuesday, November 25, 2014

Suspected Bot List [2014-11-24]

detection period: 2014-11-24 00:00-23:59 UTC
number of suspected bots' IPs listed here: 77

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CZ88.83.233.160Czech Republic
IN59.176.110.228India
IR82.99.220.219Iran
IR194.33.124.42Iran
IT95.227.105.203Italy
MX200.76.251.78Mexico
PH58.69.100.234Philippines
PL212.109.162.83Poland
RU91.230.72.214Russian Federation
RU193.107.19.105Russian Federation
TR88.247.164.136Turkey
UA37.57.153.98Ukraine
US50.201.42.106United States
US69.197.128.170United States
US75.134.10.103United States
VE190.202.116.101Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-24]

detection period: 2014-11-24 00:00-23:59 UTC
total number of suspected botnet IPs: 935
number of botnet IPs notified to network operators: 858
number of spam blocked: 34734
recipient count of spam blocked: 1184491

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET299
2CHINANET-GD52
3BROADRIVER32
4UNICOM-HA25
5UNICOM-SD15
6CMNET14
7UNICOM-FJ13
8UNKNOWN11
9UNICOM-HL9
10UNICOM-GD8

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan309
2China252
3United States82
4Russian Federation26
5India24
6Indonesia22
7South Korea17
8Viet Nam14
9Brazil14
10South Africa11

Monday, November 24, 2014

Suspected Bot List [2014-11-23]

detection period: 2014-11-23 00:00-23:59 UTC
number of suspected bots' IPs listed here: 0

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2014-11-23]

detection period: 2014-11-23 00:00-23:59 UTC
total number of suspected botnet IPs: 502
number of botnet IPs notified to network operators: 502
number of spam blocked: 33710
recipient count of spam blocked: 1003787

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET502

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan502

Sunday, November 23, 2014

Suspected Bot List [2014-11-22]

detection period: 2014-11-22 00:00-23:59 UTC
number of suspected bots' IPs listed here: 25

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2014-11-22]

detection period: 2014-11-22 00:00-23:59 UTC
total number of suspected botnet IPs: 1080
number of botnet IPs notified to network operators: 1055
number of spam blocked: 54446
recipient count of spam blocked: 1616962

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET780
2CHINANET-GD49
3UNICOM-FJ38
4UNICOM-GD10
5KORNET-KR6
6UNICOM-CN5
7MSFT-GFS5
8HICHINA5
9CHINANET-AH5
10UNICOM-SD4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan783
2China154
3United States26
4India15
5Ukraine9
6Viet Nam7
7Russian Federation7
8South Korea6
9France6
10Spain5

Saturday, November 22, 2014

Suspected Bot List [2014-11-21]

detection period: 2014-11-21 00:00-23:59 UTC
number of suspected bots' IPs listed here: 69

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
IR194.33.124.42Iran
PH58.69.100.234Philippines
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-21]

detection period: 2014-11-21 00:00-23:59 UTC
total number of suspected botnet IPs: 1220
number of botnet IPs notified to network operators: 1151
number of spam blocked: 55223
recipient count of spam blocked: 1637480

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET794
2CHINANET-GD47
3UNICOM-GD14
4UNICOM-HA10
5KORNET-KR8
6HICHINA8
7BSNLNET6
8VNPT-VNNIC-VN5
9BHARTI-IN5
10MSFT-GFS4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan799
2China136
3United States33
4India28
5Russian Federation27
6Indonesia20
7South Korea15
8Viet Nam12
9Turkey11
10Brazil9

Friday, November 21, 2014

Suspected Bot List [2014-11-20]

detection period: 2014-11-20 00:00-23:59 UTC
number of suspected bots' IPs listed here: 34

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
GB176.35.77.154United Kingdom
IN59.90.91.95India
IR194.33.124.42Iran
IT37.186.201.149Italy
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-20]

detection period: 2014-11-20 00:00-23:59 UTC
total number of suspected botnet IPs: 1232
number of botnet IPs notified to network operators: 1198
number of spam blocked: 67792
recipient count of spam blocked: 2082388

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET807
2CHINANET-GD88
3UNICOM-GD12
4HICHINA12
5CHINANET-JX10
6UNICOM-HA9
7UNICOM-SD4
8CHINANET-SH4
9CHINANET-JS4
10VNPT-VNNIC-VN3

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan814
2China194
3United States33
4Russian Federation28
5Brazil17
6Indonesia14
7Viet Nam10
8South Korea8
9Iran8
10Poland6

Thursday, November 20, 2014

Suspected Bot List [2014-11-19]

detection period: 2014-11-19 00:00-23:59 UTC
number of suspected bots' IPs listed here: 47

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
GB176.35.77.154United Kingdom
IN59.90.91.95India
IR194.33.124.42Iran
IT37.186.201.149Italy
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-19]

detection period: 2014-11-19 00:00-23:59 UTC
total number of suspected botnet IPs: 1293
number of botnet IPs notified to network operators: 1246
number of spam blocked: 78457
recipient count of spam blocked: 2503081

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET839
2CHINANET-GD72
3UNICOM-GD14
4CHINANET-JX14
5HICHINA11
6KORNET-KR7
7VNPT-VNNIC-VN5
8UNICOM-SD5
9TFN-NET5
10CHINANET-SH5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan847
2China189
3United States30
4Russian Federation22
5Brazil16
6South Korea15
7India15
8Indonesia13
9Viet Nam11
10Iran8

Wednesday, November 19, 2014

Suspected Bot List [2014-11-18]

detection period: 2014-11-18 00:00-23:59 UTC
number of suspected bots' IPs listed here: 49

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
GB176.35.77.154United Kingdom
IR194.33.124.42Iran
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-18]

detection period: 2014-11-18 00:00-23:59 UTC
total number of suspected botnet IPs: 1388
number of botnet IPs notified to network operators: 1339
number of spam blocked: 83228
recipient count of spam blocked: 2738221

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET823
2CHINANET-GD138
3UNICOM-GD19
4MSFT-GFS17
5CHINANET-JX9
6UNICOM-FJ8
7HICHINA8
8KORNET-KR7
9AE-EMIRNET-200401205
10VNPT-VNNIC-VN4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan828
2China245
3United States55
4Russian Federation28
5Indonesia23
6India17
7Viet Nam16
8Brazil16
9Arab Emirates14
10Turkey12

Tuesday, November 18, 2014

Suspected Bot List [2014-11-17]

detection period: 2014-11-17 00:00-23:59 UTC
number of suspected bots' IPs listed here: 64

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
GB176.35.77.154United Kingdom
IR194.33.124.42Iran
IT37.186.201.149Italy
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-17]

detection period: 2014-11-17 00:00-23:59 UTC
total number of suspected botnet IPs: 1301
number of botnet IPs notified to network operators: 1237
number of spam blocked: 89832
recipient count of spam blocked: 2986033

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET817
2CHINANET-GD56
3VNPT-VNNIC-VN40
4UNICOM-GD14
5UNICOM-SD8
6BHARTI-IN8
7VIETEL-VNNIC-VN7
8HICHINA7
9TFN-NET6
10TELKOMNET5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan834
2China153
3Viet Nam55
4United States38
5Indonesia25
6India18
7Russian Federation17
8Brazil13
9Argentina13
10Iran8

Monday, November 17, 2014

Suspected Bot List [2014-11-16]

detection period: 2014-11-16 00:00-23:59 UTC
number of suspected bots' IPs listed here: 80

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
GB176.35.77.154United Kingdom
IN59.90.91.95India
IR194.33.124.42Iran
LB62.84.79.245Lebanon
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-16]

detection period: 2014-11-16 00:00-23:59 UTC
total number of suspected botnet IPs: 1507
number of botnet IPs notified to network operators: 1427
number of spam blocked: 94822
recipient count of spam blocked: 3163432

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET824
2VNPT-VNNIC-VN103
3CHINANET-GD63
4VIETEL-VNNIC-VN18
5CHINANET-HB16
6UNICOM-GD11
7UNICOM-SD8
8CHINANET-JS6
9ADSL-CUSTOMER-CONNECTION6
10CHINANET-SH5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan839
2China168
3Viet Nam143
4United States33
5Poland22
6Brazil20
7Indonesia19
8United Kingdom19
9India18
10Russian Federation17

Sunday, November 16, 2014

Suspected Bot List [2014-11-15]

detection period: 2014-11-15 00:00-23:59 UTC
number of suspected bots' IPs listed here: 68

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
GB176.35.77.154United Kingdom
IN59.90.91.95India
IN59.176.110.228India
IN117.218.50.134India
IR91.98.234.195Iran
IR194.33.124.42Iran
IT31.199.192.20Italy
IT37.186.201.149Italy
LB62.84.79.245Lebanon
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
UZ89.236.219.106Uzbekistan
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
ZA197.245.7.103South Africa

List from greylisting:

Botnet Statistics [2014-11-15]

detection period: 2014-11-15 00:00-23:59 UTC
total number of suspected botnet IPs: 1346
number of botnet IPs notified to network operators: 1278
number of spam blocked: 99139
recipient count of spam blocked: 3296272

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET820
2CHINANET-GD35
3CHINANET-HB26
4UNICOM-FJ24
5UNICOM-SD13
6VNPT-VNNIC-VN12
7UNICOM-GD6
8CHINANET-JS6
9BHARTI-IN5
10VIETEL-VNNIC-VN4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan829
2China179
3United States43
4Viet Nam26
5Indonesia24
6Brazil21
7Russian Federation20
8India14
9Argentina13
10Iran12

Saturday, November 15, 2014

Suspected Bot List [2014-11-14]

detection period: 2014-11-14 00:00-23:59 UTC
number of suspected bots' IPs listed here: 86

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
GB176.35.77.154United Kingdom
IN59.90.91.95India
IN59.176.110.228India
IN117.218.50.134India
IR91.98.234.195Iran
IR194.33.124.42Iran
IT37.186.201.149Italy
LB62.84.79.245Lebanon
MX201.116.227.163Mexico
PH58.69.100.234Philippines
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
UZ89.236.219.106Uzbekistan
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela

List from greylisting:

Botnet Statistics [2014-11-14]

detection period: 2014-11-14 00:00-23:59 UTC
total number of suspected botnet IPs: 1471
number of botnet IPs notified to network operators: 1385
number of spam blocked: 81431
recipient count of spam blocked: 2574819

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET846
2CHINANET-GD62
3CHINANET-HB42
4UNICOM-SD25
5UNICOM-GD10
6TFN-NET7
7KORNET-KR7
8HICHINA7
9RCOM6
10CL-ECSA-LACNIC6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan859
2China231
3Russian Federation51
4United States42
5India28
6Indonesia27
7Viet Nam18
8Turkey17
9South Korea15
10Iran15

Thursday, November 13, 2014

Suspected Bot List [2014-11-12]

detection period: 2014-11-12 00:00-23:59 UTC
number of suspected bots' IPs listed here: 29

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
GB176.35.77.154United Kingdom
IR91.98.234.195Iran
LB62.84.79.245Lebanon
MX201.116.227.163Mexico
PH58.69.100.234Philippines
PK202.154.226.90Pakistan
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
VE201.248.227.12Venezuela

List from greylisting:

Botnet Statistics [2014-11-12]

detection period: 2014-11-12 00:00-23:59 UTC
total number of suspected botnet IPs: 1274
number of botnet IPs notified to network operators: 1245
number of spam blocked: 92465
recipient count of spam blocked: 3039577

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET817
2CHINANET-GD108
3CHINANET-HB39
4UNICOM-GD14
5UNICOM-SD5
6UNICOM-BJ5
7TFN-NET5
8HICHINA5
9CHINANET-JX5
10UNICOM-HN4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan825
2China248
3United States48
4Indonesia17
5Viet Nam12
6Brazil12
7Russian Federation11
8Poland10
9Hong Kong8
10United Kingdom8

Wednesday, November 12, 2014

Suspected Bots' IP List for November 2014

To encourage cyber security information sharing (as some form of open data) while still giving victims enough time to clean up their computers, the IP list of suspected infected computers will be released here (as shown below) 10 days after its respective botnet statistics gets published.

New data will be added here daily. You are free to use them to create more effective defenses, discover latest trends in cyber attacks, etc.

Suspected Bots IP [2014-11-30]
Suspected Bots IP [2014-11-29]
Suspected Bots IP [2014-11-28]
Suspected Bots IP [2014-11-27]
Suspected Bots IP [2014-11-26]
Suspected Bots IP [2014-11-25]
Suspected Bots IP [2014-11-24]
Suspected Bots IP [2014-11-23]
Suspected Bots IP [2014-11-22]
Suspected Bots IP [2014-11-21]
Suspected Bots IP [2014-11-20]
Suspected Bots IP [2014-11-19]
Suspected Bots IP [2014-11-18]
Suspected Bots IP [2014-11-17]
Suspected Bots IP [2014-11-16]
Suspected Bots IP [2014-11-15]
Suspected Bots IP [2014-11-14]
Suspected Bots IP [2014-11-12]
Suspected Bots IP [2014-11-11]
Suspected Bots IP [2014-11-10]
Suspected Bots IP [2014-11-09]
Suspected Bots IP [2014-11-08]
Suspected Bots IP [2014-11-07]
Suspected Bots IP [2014-11-06]
Suspected Bots IP [2014-11-05]
Suspected Bots IP [2014-11-04]
Suspected Bots IP [2014-11-03]
Suspected Bots IP [2014-11-02]
Suspected Bots IP [2014-11-01]

Suspected Bot List [2014-11-11]

detection period: 2014-11-11 00:00-23:59 UTC
number of suspected bots' IPs listed here: 95

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
GB176.35.77.154United Kingdom
IN59.90.91.95India
IR91.98.234.195Iran
IT37.186.201.149Italy
LB62.84.79.245Lebanon
PH58.69.100.234Philippines
PK202.154.226.90Pakistan
SD196.202.153.146Sudan
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE201.248.227.12Venezuela

List from greylisting:

Botnet Statistics [2014-11-11]

detection period: 2014-11-11 00:00-23:59 UTC
total number of suspected botnet IPs: 1504
number of botnet IPs notified to network operators: 1409
number of spam blocked: 98484
recipient count of spam blocked: 3264212

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET801
2CHINANET-GD73
3CHINANET-HB42
4UNICOM-FJ16
5UNICOM-SD15
6CHINANET-JX13
7KORNET-KR12
8UNICOM-GD8
9HICHINA7
10MX-USCV4-LACNIC6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan810
2China260
3United States80
4Russian Federation42
5South Korea25
6Indonesia17
7Brazil16
8Turkey15
9Chile15
10Mexico13

Tuesday, November 11, 2014

Suspected Bot List [2014-11-10]

detection period: 2014-11-10 00:00-23:59 UTC
number of suspected bots' IPs listed here: 77

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
GB176.35.77.154United Kingdom
IN59.90.91.95India
IR91.98.234.195Iran
IT37.186.201.149Italy
LB62.84.79.245Lebanon
PH58.69.100.234Philippines
PK202.154.226.90Pakistan
SD196.202.153.146Sudan
US23.88.2.15United States
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE201.248.227.12Venezuela
ZA209.203.59.30South Africa

List from greylisting:

Botnet Statistics [2014-11-10]

detection period: 2014-11-10 00:00-23:59 UTC
total number of suspected botnet IPs: 1526
number of botnet IPs notified to network operators: 1449
number of spam blocked: 117473
recipient count of spam blocked: 3487669

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET795
2CHINANET-GD69
3CHINANET-HB52
4KORNET-KR30
5UNICOM-SD14
6CHINANET-JX14
7BORANET-KR14
8VNPT-VNNIC-VN11
9UNICOM-GD10
10AE-EMIRNET-200401207

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan808
2China260
3South Korea58
4United States54
5Russian Federation46
6Indonesia31
7India29
8Viet Nam28
9Arab Emirates17
10Hong Kong14

Monday, November 10, 2014

Suspected Bot List [2014-11-09]

detection period: 2014-11-09 00:00-23:59 UTC
number of suspected bots' IPs listed here: 35

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CA184.107.73.239Canada
CL200.111.103.69Chile
EG62.117.58.109Egypt
GB176.35.77.154United Kingdom
IN59.90.91.95India
IN117.240.116.226India
IR91.98.234.195Iran
IR194.33.124.42Iran
IT37.186.201.149Italy
LB62.84.79.245Lebanon
MX201.116.227.163Mexico
PH58.69.100.234Philippines
PK202.154.226.90Pakistan
SD196.202.153.146Sudan
SG116.251.209.66Singapore
TR88.247.164.136Turkey
US23.88.2.15United States
US23.245.213.51United States
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE200.84.152.112Venezuela
VE201.248.227.12Venezuela
ZA209.203.59.30South Africa

List from greylisting:

Botnet Statistics [2014-11-09]

detection period: 2014-11-09 00:00-23:59 UTC
total number of suspected botnet IPs: 1263
number of botnet IPs notified to network operators: 1228
number of spam blocked: 116346
recipient count of spam blocked: 3448893

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET770
2CHINANET-GD73
3CHINANET-HB36
4UNICOM-SD19
5ALIBABA-US-CDN12
6UNICOM-BJ11
7HICHINA8
8CHINANET-JX8
9UNICOM-HA6
10UNICOM-GD6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan775
2China253
3United States54
4Russian Federation21
5Indonesia18
6Hong Kong16
7Brazil11
8United Kingdom10
9Viet Nam9
10Iran9

Sunday, November 9, 2014

Suspected Bot List [2014-11-08]

detection period: 2014-11-08 00:00-23:59 UTC
number of suspected bots' IPs listed here: 37

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
AR190.109.53.240Argentina
BD203.76.147.70Bangladesh
CA184.107.73.239Canada
EG62.117.58.109Egypt
GB176.35.77.154United Kingdom
IR91.98.234.195Iran
IR194.33.124.42Iran
LB62.84.79.245Lebanon
LB194.126.140.247Lebanon
MX201.116.227.163Mexico
PH58.69.100.234Philippines
PK202.154.226.90Pakistan
RU95.188.112.11Russian Federation
SD196.202.153.146Sudan
SG116.251.209.66Singapore
TR88.247.164.136Turkey
US23.89.232.22United States
US23.245.213.51United States
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
UZ89.236.219.106Uzbekistan
VE200.84.152.112Venezuela
VE201.248.227.12Venezuela

List from greylisting:

Botnet Statistics [2014-11-08]

detection period: 2014-11-08 00:00-23:59 UTC
total number of suspected botnet IPs: 1222
number of botnet IPs notified to network operators: 1185
number of spam blocked: 119653
recipient count of spam blocked: 3480424

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET765
2CHINANET-GD66
3CHINANET-HB28
4ALIBABA-US-CDN15
5UNICOM-BJ10
6HICHINA6
7CHINANET-JX6
8UNICOM-SD5
9UNICOM-HA5
10CHINANET-JS5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan769
2China205
3United States65
4Russian Federation20
5Indonesia17
6Hong Kong16
7Iran11
8Brazil11
9United Kingdom10
10Viet Nam9

Saturday, November 8, 2014

Suspected Bot List [2014-11-07]

detection period: 2014-11-07 00:00-23:59 UTC
number of suspected bots' IPs listed here: 34

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CA184.107.73.239Canada
GB176.35.77.154United Kingdom
IR91.98.234.195Iran
IR194.33.124.42Iran
LB62.84.79.245Lebanon
LB194.126.140.247Lebanon
PH58.69.100.234Philippines
PK202.154.226.90Pakistan
RU95.188.112.11Russian Federation
SA94.77.199.148Saudi Arabia
SD196.202.153.146Sudan
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US75.133.246.119United States
US174.139.8.82United States
UZ89.236.219.106Uzbekistan
VE201.248.227.12Venezuela
ZW41.220.28.138Zimbabwe

List from greylisting:

Botnet Statistics [2014-11-07]

detection period: 2014-11-07 00:00-23:59 UTC
total number of suspected botnet IPs: 1259
number of botnet IPs notified to network operators: 1225
number of spam blocked: 116892
recipient count of spam blocked: 3397091

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET780
2CHINANET-GD78
3CHINANET-HB19
4UNICOM-HA11
5UNICOM-BJ9
6ALIBABA-US-CDN9
7UNICOM-SD7
8HICHINA7
9TFN-NET5
10TELKOMNET5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan788
2China215
3United States69
4Indonesia21
5Russian Federation20
6Hong Kong16
7Brazil13
8United Kingdom12
9Viet Nam11
10Iran9

Friday, November 7, 2014

Suspected Bot List [2014-11-06]

detection period: 2014-11-06 00:00-23:59 UTC
number of suspected bots' IPs listed here: 51

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
IR91.98.234.195Iran
IR194.33.124.42Iran
LB62.84.79.245Lebanon
LB194.126.140.247Lebanon
PK202.154.226.90Pakistan
SA94.77.199.148Saudi Arabia
SD196.202.153.146Sudan
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
VE201.248.227.12Venezuela

List from greylisting:

Botnet Statistics [2014-11-06]

detection period: 2014-11-06 00:00-23:59 UTC
total number of suspected botnet IPs: 1373
number of botnet IPs notified to network operators: 1322
number of spam blocked: 119083
recipient count of spam blocked: 3505193

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET781
2CHINANET-GD94
3CHINANET-HB34
4CHINANET-JX15
5UNICOM-HA13
6UNICOM-BJ13
7UNICOM-SD12
8ALIBABA-US-CDN7
9UNICOM-GD6
10HICHINA6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan786
2China276
3United States67
4Russian Federation26
5Indonesia22
6Hong Kong15
7Viet Nam14
8Brazil14
9India11
10United Kingdom11

Thursday, November 6, 2014

Suspected Bot List [2014-11-05]

detection period: 2014-11-05 00:00-23:59 UTC
number of suspected bots' IPs listed here: 37

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CO190.60.39.186Colombia
IN59.180.233.90India
IR91.98.234.195Iran
IR194.33.124.42Iran
IT31.199.192.17Italy
LB62.84.79.245Lebanon
MX201.116.227.163Mexico
SA94.77.199.148Saudi Arabia
SD196.202.153.146Sudan
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
VE201.248.227.12Venezuela

List from greylisting:

Botnet Statistics [2014-11-05]

detection period: 2014-11-05 00:00-23:59 UTC
total number of suspected botnet IPs: 1425
number of botnet IPs notified to network operators: 1388
number of spam blocked: 111521
recipient count of spam blocked: 3033116

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET857
2CHINANET-GD79
3CHINANET-HB42
4MSFT-GFS17
5UNICOM-BJ16
6UNICOM-HA15
7UNICOM-SD14
8ALIBABA-US-CDN11
9UNICOM-GD8
10TFN-NET6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan865
2China260
3United States95
4Indonesia21
5Russian Federation18
6United Kingdom14
7Brazil14
8Hong Kong12
9Viet Nam11
10Iran10

Wednesday, November 5, 2014

Suspected Bot List [2014-11-04]

detection period: 2014-11-04 00:00-23:59 UTC
number of suspected bots' IPs listed here: 69

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CO190.60.39.186Colombia
GB176.35.77.154United Kingdom
IR194.33.124.42Iran
IT31.199.192.17Italy
IT31.199.192.20Italy
LB62.84.79.245Lebanon
MX201.116.227.163Mexico
SA94.77.199.148Saudi Arabia
SD196.202.153.146Sudan
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States

List from greylisting:

Botnet Statistics [2014-11-04]

detection period: 2014-11-04 00:00-23:59 UTC
total number of suspected botnet IPs: 1465
number of botnet IPs notified to network operators: 1396
number of spam blocked: 111163
recipient count of spam blocked: 2922192

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET892
2CHINANET-GD57
3CHINANET-HB45
4UNICOM-BJ15
5UNICOM-HA14
6CHINANET-JX10
7UNICOM-SD9
8ALIBABA-US-CDN9
9UNICOM-GD6
10HICHINA6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan897
2China226
3United States73
4India32
5Russian Federation20
6Indonesia19
7United Kingdom16
8Brazil16
9South Korea13
10Viet Nam12

Tuesday, November 4, 2014

Suspected Bot List [2014-11-03]

detection period: 2014-11-03 00:00-23:59 UTC
number of suspected bots' IPs listed here: 77

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
BD203.76.147.70Bangladesh
CL200.111.103.69Chile
CO190.60.39.186Colombia
GB176.35.77.154United Kingdom
IN59.180.233.90India
IR194.33.124.42Iran
IT31.199.192.17Italy
IT31.199.192.20Italy
LB62.84.79.245Lebanon
MX201.116.227.163Mexico
SA94.77.199.148Saudi Arabia
SD196.202.153.146Sudan
TR88.247.164.136Turkey
US50.201.42.106United States
US69.197.128.170United States
US174.139.8.82United States
VE190.202.116.101Venezuela
VE201.248.227.12Venezuela

List from greylisting:

Botnet Statistics [2014-11-03]

detection period: 2014-11-03 00:00-23:59 UTC
total number of suspected botnet IPs: 1529
number of botnet IPs notified to network operators: 1452
number of spam blocked: 110217
recipient count of spam blocked: 2959572

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET892
2CHINANET-GD69
3CHINANET-HB50
4UNICOM-FJ16
5UNICOM-HA14
6ALIBABA-US-CDN9
7VNPT-VNNIC-VN7
8HICHINA7
9CHINANET-JX7
10BT-CENTRAL-PLUS7

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan901
2China245
3United States67
4United Kingdom31
5India27
6Russian Federation20
7Indonesia20
8Viet Nam19
9Brazil16
10South Korea15