Custom Search

Friday, July 31, 2015

Suspected Bot List [2015-07-30]

detection period: 2015-07-30 00:00-23:59 UTC
number of suspected bots' IPs listed here: 20

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
CA167.114.20.225Canada

List from greylisting:

Botnet Statistics [2015-07-30]

detection period: 2015-07-30 00:00-23:59 UTC
total number of suspected botnet IPs: 2988
number of botnet IPs notified to network operators: 2968
number of spam blocked: 245236
recipient count of spam blocked: 3067031

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1073
2CHINANET-ZJ-JH364
3UNICOM-ZJ256
4WASU225
5CHINANET-AH210
6CHINANET-GD206
7WASU-BB197
8CHINANET-SC105
9VNPT-VNNIC-VN32
10CHINANET-JS22

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1684
2Taiwan1080
3Viet Nam80
4United States20
5Brazil19
6Russian Federation15
7Kazakhstan8
8Hong Kong8
9India7
10Ukraine6

Thursday, July 30, 2015

Suspected Bot List [2015-07-29]

detection period: 2015-07-29 00:00-23:59 UTC
number of suspected bots' IPs listed here: 23

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-29]

detection period: 2015-07-29 00:00-23:59 UTC
total number of suspected botnet IPs: 2852
number of botnet IPs notified to network operators: 2829
number of spam blocked: 188852
recipient count of spam blocked: 3232192

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1001
2CHINANET-ZJ-JH380
3CHINANET-AH260
4UNICOM-ZJ232
5CHINANET-GD199
6WASU175
7CHINANET-SC165
8WASU-BB111
9UNICOM-BJ36
10CHINANET-JS31

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1672
2Taiwan1004
3Viet Nam62
4United States25
5India11
6Brazil10
7Ukraine8
8Hong Kong6
9Kazakhstan5
10South Korea4

Wednesday, July 29, 2015

Suspected Bot List [2015-07-28]

detection period: 2015-07-28 00:00-23:59 UTC
number of suspected bots' IPs listed here: 14

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-28]

detection period: 2015-07-28 00:00-23:59 UTC
total number of suspected botnet IPs: 2803
number of botnet IPs notified to network operators: 2789
number of spam blocked: 192849
recipient count of spam blocked: 3643524

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET998
2CHINANET-ZJ-JH341
3CHINANET-AH311
4CHINANET-SC207
5UNICOM-ZJ183
6CHINANET-GD170
7WASU125
8WASU-BB115
9CHINANET-JS95
10VNPT-VNNIC-VN24

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1641
2Taiwan1002
3Viet Nam44
4United States41
5Brazil11
6Hong Kong9
7Ukraine8
8South Korea6
9Russian Federation5
10Poland2

Tuesday, July 28, 2015

Suspected Bot List [2015-07-27]

detection period: 2015-07-27 00:00-23:59 UTC
number of suspected bots' IPs listed here: 8

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-27]

detection period: 2015-07-27 00:00-23:59 UTC
total number of suspected botnet IPs: 3069
number of botnet IPs notified to network operators: 3061
number of spam blocked: 137344
recipient count of spam blocked: 3466557

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1019
2CHINANET-ZJ-JH531
3CHINANET-AH366
4UNICOM-ZJ234
5CHINANET-SC221
6WASU180
7WASU-BB155
8CHINANET-GD149
9CHINANET-JS27
10UNICOM-BJ16

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1960
2Taiwan1026
3United States24
4Viet Nam23
5Hong Kong6
6Brazil6
7India3
8Russian Federation2
9South Korea2
10Bulgaria2

Monday, July 27, 2015

Suspected Bot List [2015-07-26]

detection period: 2015-07-26 00:00-23:59 UTC
number of suspected bots' IPs listed here: 15

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-26]

detection period: 2015-07-26 00:00-23:59 UTC
total number of suspected botnet IPs: 2742
number of botnet IPs notified to network operators: 2727
number of spam blocked: 169436
recipient count of spam blocked: 4094914

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1073
2CHINANET-ZJ-JH485
3CHINANET-AH422
4CHINANET-SC194
5CHINANET-GD115
6WASU71
7UNICOM-ZJ70
8WASU-BB68
9VNPT-VNNIC-VN23
10CHINANET-JS19

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1503
2Taiwan1076
3Viet Nam47
4United States19
5Russian Federation18
6Brazil14
7Ukraine8
8South Korea8
9India6
10Turkey5

Sunday, July 26, 2015

Suspected Bot List [2015-07-25]

detection period: 2015-07-25 00:00-23:59 UTC
number of suspected bots' IPs listed here: 23

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-25]

detection period: 2015-07-25 00:00-23:59 UTC
total number of suspected botnet IPs: 2318
number of botnet IPs notified to network operators: 2295
number of spam blocked: 147433
recipient count of spam blocked: 3686452

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1017
2CHINANET-ZJ-JH458
3CHINANET-AH398
4CHINANET-SC152
5CHINANET-GD144
6UNICOM-JS29
7ERX-NETBLOCK14
8CHINANET-JX6
9CHINANET-JS6
10VNPT-VNNIC-VN3

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1231
2Taiwan1019
3United States10
4Viet Nam8
5Ukraine5
6Russian Federation5
7Brazil4
8Indonesia3
9Hong Kong3
10France3

Saturday, July 25, 2015

Suspected Bot List [2015-07-24]

detection period: 2015-07-24 00:00-23:59 UTC
number of suspected bots' IPs listed here: 51

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-24]

detection period: 2015-07-24 00:00-23:59 UTC
total number of suspected botnet IPs: 2863
number of botnet IPs notified to network operators: 2812
number of spam blocked: 162455
recipient count of spam blocked: 3890465

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET982
2CHINANET-ZJ-JH411
3CHINANET-AH343
4CHINANET-SC193
5CHINANET-GD168
6UNICOM-ZJ138
7WASU107
8UNICOM-JS80
9WASU-BB76
10VNPT-VNNIC-VN37

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1689
2Taiwan985
3Viet Nam75
4United States27
5Brazil14
6Ukraine10
7India8
8Russian Federation6
9South Korea6
10Indonesia5

Friday, July 24, 2015

Suspected Bot List [2015-07-23]

detection period: 2015-07-23 00:00-23:59 UTC
number of suspected bots' IPs listed here: 28

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-23]

detection period: 2015-07-23 00:00-23:59 UTC
total number of suspected botnet IPs: 2009
number of botnet IPs notified to network operators: 1981
number of spam blocked: 182948
recipient count of spam blocked: 4370797

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1045
2UNICOM-ZJ136
3WASU116
4CHINANET-ZJ-JH113
5WASU-BB108
6CHINANET-AH99
7CHINANET-GD66
8CHINANET-SC54
9VNPT-VNNIC-VN21
10UNICOM-BJ10

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1047
2China771
3Viet Nam48
4United States23
5Brazil23
6Russian Federation14
7India7
8Argentina7
9South Korea6
10Ukraine5

Thursday, July 23, 2015

Suspected Bot List [2015-07-22]

detection period: 2015-07-22 00:00-23:59 UTC
number of suspected bots' IPs listed here: 16

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-22]

detection period: 2015-07-22 00:00-23:59 UTC
total number of suspected botnet IPs: 1798
number of botnet IPs notified to network operators: 1782
number of spam blocked: 165678
recipient count of spam blocked: 4081928

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1073
2WASU165
3UNICOM-ZJ152
4WASU-BB107
5CHINANET-GD40
6VNPT-VNNIC-VN23
7CHINANET-JX14
8UNICOM-BJ13
9CHINANET-SH9
10FPT-VN7

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1080
2China559
3Viet Nam51
4United States14
5Brazil13
6Ukraine9
7South Korea7
8India7
9France6
10Kazakhstan5

Wednesday, July 22, 2015

Suspected Bot List [2015-07-21]

detection period: 2015-07-21 00:00-23:59 UTC
number of suspected bots' IPs listed here: 12

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-21]

detection period: 2015-07-21 00:00-23:59 UTC
total number of suspected botnet IPs: 1582
number of botnet IPs notified to network operators: 1570
number of spam blocked: 132986
recipient count of spam blocked: 3327296

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1052
2UNICOM-ZJ133
3WASU107
4WASU-BB93
5CHINANET-GD34
6UNICOM-BJ16
7VNPT-VNNIC-VN9
8CHINANET-HN7
9GIANT6
10CMNET5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1054
2China441
3United States19
4Viet Nam12
5Brazil6
6South Korea5
7Ukraine4
8Hong Kong4
9France4
10Russian Federation3

Tuesday, July 21, 2015

Suspected Bot List [2015-07-20]

detection period: 2015-07-20 00:00-23:59 UTC
number of suspected bots' IPs listed here: 101

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-20]

detection period: 2015-07-20 00:00-23:59 UTC
total number of suspected botnet IPs: 1992
number of botnet IPs notified to network operators: 1891
number of spam blocked: 116875
recipient count of spam blocked: 3157797

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1046
2UNICOM-ZJ132
3VNPT-VNNIC-VN123
4CHINANET-GD51
5WASU34
6WASU-BB31
7BSNLNET24
8VIETEL-VNNIC-VN23
9ETC-VNNIC-VN19
10VIETEL-VN18

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1057
2China337
3Viet Nam227
4India70
5South Korea27
6Argentina25
7Brazil21
8Spain19
9United States17
10Ukraine17

Monday, July 20, 2015

Suspected Bot List [2015-07-19]

detection period: 2015-07-19 00:00-23:59 UTC
number of suspected bots' IPs listed here: 21

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-19]

detection period: 2015-07-19 00:00-23:59 UTC
total number of suspected botnet IPs: 1642
number of botnet IPs notified to network operators: 1621
number of spam blocked: 121048
recipient count of spam blocked: 3118571

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1048
2UNICOM-ZJ129
3WASU125
4WASU-BB106
5CHINANET-GD43
6VNPT-VNNIC-VN13
7CHINANET-JX7
8VIETEL-VN6
9CHINANET-SH6
10CHINANET-HN6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1052
2China451
3Viet Nam32
4United States21
5France7
6Brazil7
7Italy6
8Spain6
9Argentina6
10Russian Federation4

Sunday, July 19, 2015

Suspected Bot List [2015-07-18]

detection period: 2015-07-18 00:00-23:59 UTC
number of suspected bots' IPs listed here: 13

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-18]

detection period: 2015-07-18 00:00-23:59 UTC
total number of suspected botnet IPs: 1508
number of botnet IPs notified to network operators: 1495
number of spam blocked: 209245
recipient count of spam blocked: 3402075

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1012
2CHINANET-SC123
3CHINANET-GD109
4CHINANET-ZJ-JH69
5UNICOM-ZJ23
6WASU22
7WASU-BB21
8VNPT-VNNIC-VN8
9EARTHLINK2000-D5
10CMNET5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1013
2China409
3United States22
4Viet Nam15
5India7
6France4
7Venezuela3
8Ukraine3
9Japan3
10Indonesia3

Saturday, July 18, 2015

Suspected Bot List [2015-07-17]

detection period: 2015-07-17 00:00-23:59 UTC
number of suspected bots' IPs listed here: 13

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-17]

detection period: 2015-07-17 00:00-23:59 UTC
total number of suspected botnet IPs: 2584
number of botnet IPs notified to network operators: 2571
number of spam blocked: 196767
recipient count of spam blocked: 3226983

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET984
2CHINANET-ZJ-JH438
3CHINANET-SC321
4CHINANET-GD310
5UNICOM-ZJ138
6WASU113
7WASU-BB85
8VNPT-VNNIC-VN14
9UNICOM-BJ8
10FPT-VN6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1455
2Taiwan989
3Viet Nam36
4United States18
5Brazil11
6Ukraine9
7France8
8India5
9Hong Kong5
10South Korea4

Friday, July 17, 2015

Suspected Bot List [2015-07-16]

detection period: 2015-07-16 00:00-23:59 UTC
number of suspected bots' IPs listed here: 20

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-16]

detection period: 2015-07-16 00:00-23:59 UTC
total number of suspected botnet IPs: 3195
number of botnet IPs notified to network operators: 3175
number of spam blocked: 210140
recipient count of spam blocked: 3234280

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1004
2CHINANET-ZJ-JH691
3CHINANET-SC425
4CHINANET-GD294
5CHINANET-AH166
6UNICOM-ZJ153
7WASU112
8WASU-BB81
9UNICOM-BJ24
10VNPT-VNNIC-VN20

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China2010
2Taiwan1008
3Viet Nam42
4Brazil26
5United States21
6Ukraine10
7Russian Federation7
8South Korea6
9India6
10Indonesia5

Wednesday, July 15, 2015

Suspected Bot List [2015-07-14]

detection period: 2015-07-14 00:00-23:59 UTC
number of suspected bots' IPs listed here: 22

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
CA167.114.20.225Canada

List from greylisting:

Botnet Statistics [2015-07-14]

detection period: 2015-07-14 00:00-23:59 UTC
total number of suspected botnet IPs: 2052
number of botnet IPs notified to network operators: 2030
number of spam blocked: 316697
recipient count of spam blocked: 3393417

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1019
2CHINANET-SC388
3CHINANET-AH207
4CHINANET-GD177
5VNPT-VNNIC-VN45
6UNICOM-BJ17
7VIETEL-VNNIC-VN10
8CHINANET-HN7
9WASU-BB6
10VIETEL-VN6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1024
2China838
3Viet Nam86
4United States17
5Brazil11
6India6
7United Kingdom6
8Ukraine4
9Russian Federation4
10Argentina4

Tuesday, July 14, 2015

Suspected Bot List [2015-07-13]

detection period: 2015-07-13 00:00-23:59 UTC
number of suspected bots' IPs listed here: 27

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
EG193.227.34.20Egypt
MX201.116.227.163Mexico

List from greylisting:

Botnet Statistics [2015-07-13]

detection period: 2015-07-13 00:00-23:59 UTC
total number of suspected botnet IPs: 1158
number of botnet IPs notified to network operators: 1131
number of spam blocked: 278583
recipient count of spam blocked: 2861946

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET788
2CHINANET-GD119
3VNPT-VNNIC-VN36
4UNICOM-BJ16
5VIETEL-VNNIC-VN8
6FPT-VN7
7CHINANET-SH6
8WASU5
9WASU-BB4
10GIANT4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan794
2China173
3Viet Nam66
4India14
5United States11
6Ukraine11
7Russian Federation11
8Brazil9
9Turkey6
10South Korea6

Monday, July 13, 2015

Suspected Bots' IP List for July 2015

To encourage cyber security information sharing (as some form of open data) while still giving victims enough time to clean up their computers, the IP list of suspected infected computers will be released here (as shown below) 10 days after its respective botnet statistics gets published.

New data will be added here daily. You are free to use them to create more effective defenses, discover latest trends in cyber attacks, etc.

Suspected Bots IP [2015-07-31]
Suspected Bots IP [2015-07-30]
Suspected Bots IP [2015-07-29]
Suspected Bots IP [2015-07-28]
Suspected Bots IP [2015-07-27]
Suspected Bots IP [2015-07-26]
Suspected Bots IP [2015-07-25]
Suspected Bots IP [2015-07-24]
Suspected Bots IP [2015-07-23]
Suspected Bots IP [2015-07-22]
Suspected Bots IP [2015-07-21]
Suspected Bots IP [2015-07-20]
Suspected Bots IP [2015-07-19]
Suspected Bots IP [2015-07-18]
Suspected Bots IP [2015-07-17]
Suspected Bots IP [2015-07-16]
Suspected Bots IP [2015-07-14]
Suspected Bots IP [2015-07-13]
Suspected Bots IP [2015-07-12]
Suspected Bots IP [2015-07-11]
Suspected Bots IP [2015-07-10]
Suspected Bots IP [2015-07-09]
Suspected Bots IP [2015-07-08]
Suspected Bots IP [2015-07-07]
Suspected Bots IP [2015-07-06]
Suspected Bots IP [2015-07-05]
Suspected Bots IP [2015-07-04]
Suspected Bots IP [2015-07-03]
Suspected Bots IP [2015-07-02]
Suspected Bots IP [2015-07-01]

Suspected Bot List [2015-07-12]

detection period: 2015-07-12 00:00-23:59 UTC
number of suspected bots' IPs listed here: 13

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-12]

detection period: 2015-07-12 00:00-23:59 UTC
total number of suspected botnet IPs: 1295
number of botnet IPs notified to network operators: 1282
number of spam blocked: 190784
recipient count of spam blocked: 3565469

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1020
2CHINANET-GD59
3VNPT-VNNIC-VN24
4VIETEL-VN12
5WASU10
6VIETEL-VNNIC-VN7
7CHINANET-SH6
8WASU-BB5
9IPxDSL-NET3
10FPT-VN3

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1026
2China110
3Viet Nam58
4United States11
5Ukraine11
6Russian Federation9
7Brazil8
8Indonesia5
9Turkey4
10Poland4

Sunday, July 12, 2015

Suspected Bot List [2015-07-11]

detection period: 2015-07-11 00:00-23:59 UTC
number of suspected bots' IPs listed here: 21

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-11]

detection period: 2015-07-11 00:00-23:59 UTC
total number of suspected botnet IPs: 1402
number of botnet IPs notified to network operators: 1381
number of spam blocked: 219707
recipient count of spam blocked: 3907833

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1054
2VNPT-VNNIC-VN53
3FPT-VN24
4VIETEL-VN17
5CHINANET-GD15
6ETC-VNNIC-VN8
7IPxDSL-NET7
8CHINANET-HN6
9CHINANET-SH5
10VIETEL-VNNIC-VN4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1061
2Viet Nam121
3China56
4Ukraine21
5United States20
6India16
7Russian Federation14
8Brazil10
9Israel7
10Kazakhstan6

Saturday, July 11, 2015

Suspected Bot List [2015-07-10]

detection period: 2015-07-10 00:00-23:59 UTC
number of suspected bots' IPs listed here: 19

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-10]

detection period: 2015-07-10 00:00-23:59 UTC
total number of suspected botnet IPs: 1244
number of botnet IPs notified to network operators: 1225
number of spam blocked: 394635
recipient count of spam blocked: 4931517

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1023
2VNPT-VNNIC-VN22
3CHINANET-GD21
4WASU5
5FPT-VN5
6BSNLNET5
7VIETEL-VNNIC-VN4
8UNICOM-BJ4
9MOCAH-14
10EARTHLINK2000-D4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1026
2China64
3Viet Nam40
4United States24
5India11
6Ukraine10
7Brazil9
8Kazakhstan6
9Russian Federation5
10United Kingdom5

Friday, July 10, 2015

Suspected Bot List [2015-07-09]

detection period: 2015-07-09 00:00-23:59 UTC
number of suspected bots' IPs listed here: 20

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
EG193.227.34.20Egypt

List from greylisting:

Botnet Statistics [2015-07-09]

detection period: 2015-07-09 00:00-23:59 UTC
total number of suspected botnet IPs: 1269
number of botnet IPs notified to network operators: 1249
number of spam blocked: 238571
recipient count of spam blocked: 3901187

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1002
2VNPT-VNNIC-VN39
3CHINANET-GD25
4VIETEL-VN12
5WASU7
6UNICOM-BJ7
7MSFT7
8CHINANET-SH7
9FPT-VN6
10VIETEL-VNNIC-VN5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1007
2China82
3Viet Nam68
4United States31
5Brazil12
6Indonesia5
7Argentina5
8Ukraine4
9Thailand4
10Kazakhstan4

Thursday, July 9, 2015

Suspected Bot List [2015-07-08]

detection period: 2015-07-08 00:00-23:59 UTC
number of suspected bots' IPs listed here: 22

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
CA167.114.20.225Canada

List from greylisting:

Botnet Statistics [2015-07-08]

detection period: 2015-07-08 00:00-23:59 UTC
total number of suspected botnet IPs: 1300
number of botnet IPs notified to network operators: 1278
number of spam blocked: 119711
recipient count of spam blocked: 3152669

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1028
2CHINANET-GD33
3VNPT-VNNIC-VN20
4005.405.669/0001-8712
5UNICOM-BJ11
6WASU8
7WASU-BB5
8VIETEL-VN5
9PCCW-BIA4
10GIANT4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1034
2China105
3Viet Nam44
4United States26
5Brazil20
6Ukraine6
7Russian Federation5
8Kazakhstan5
9India5
10Italy4

Wednesday, July 8, 2015

Suspected Bot List [2015-07-07]

detection period: 2015-07-07 00:00-23:59 UTC
number of suspected bots' IPs listed here: 18

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
CA167.114.20.225Canada

List from greylisting:

Botnet Statistics [2015-07-07]

detection period: 2015-07-07 00:00-23:59 UTC
total number of suspected botnet IPs: 1315
number of botnet IPs notified to network operators: 1297
number of spam blocked: 199749
recipient count of spam blocked: 3534894

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1025
2CHINANET-GD32
3VNPT-VNNIC-VN23
4UNICOM-BJ15
5CHINANET-SH9
6CHINANET-HN8
7005.405.669/0001-878
8ETC-VNNIC-VN7
9WASU-BB6
10VIETEL-VNNIC-VN6

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1028
2China119
3Viet Nam58
4United States12
5Brazil12
6Japan9
7India7
8Indonesia6
9Ukraine5
10Russian Federation5

Tuesday, July 7, 2015

Suspected Bot List [2015-07-06]

detection period: 2015-07-06 00:00-23:59 UTC
number of suspected bots' IPs listed here: 19

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-06]

detection period: 2015-07-06 00:00-23:59 UTC
total number of suspected botnet IPs: 1208
number of botnet IPs notified to network operators: 1189
number of spam blocked: 175323
recipient count of spam blocked: 3394192

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1002
2UNICOM-BJ21
3CHINANET-GD21
4005.405.669/0001-879
5WASU7
6CHINANET-SH6
7CHINANET-HN6
8VNPT-VNNIC-VN5
9GIANT4
10CHINANET-SC4

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1005
2China103
3United States17
4Brazil13
5Viet Nam11
6Russian Federation6
7Hong Kong6
8South Korea4
9Japan4
10Italy4

Monday, July 6, 2015

Suspected Bot List [2015-07-05]

detection period: 2015-07-05 00:00-23:59 UTC
number of suspected bots' IPs listed here: 11

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
CA167.114.20.225Canada

List from greylisting:

Botnet Statistics [2015-07-05]

detection period: 2015-07-05 00:00-23:59 UTC
total number of suspected botnet IPs: 1513
number of botnet IPs notified to network operators: 1502
number of spam blocked: 178849
recipient count of spam blocked: 3292645

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1033
2CHINANET-SC243
3CHINANET-GD24
4VNPT-VNNIC-VN22
5UNICOM-BJ8
6VIETEL-VNNIC-VN5
7UNICOM-SC5
8CHINANET-HN5
9FPT-NET4
10ENZUINC-US-BLK164

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1039
2China331
3Viet Nam42
4United States27
5Ukraine11
6Russian Federation8
7Brazil6
8Kazakhstan3
9South Korea3
10India3

Sunday, July 5, 2015

Botnet Statistics for June 2015

detection period: 2015-06-01 00:00 - 2015-06-30 23:59 UTC
total number of suspected botnet IPs: 30278
number of blocked spams: 3288197
recipient count of blocked spams: 88068904

The top 25 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan20269
2China6783
3Russian Federation451
4United States375
5Viet Nam334
6India180
7Brazil136
8Argentina136
9South Korea93
10Ukraine83
11Germany82
12Mexico72
13Japan64
14Indonesia64
15United Kingdom59
16Iran53
17Chile49
18Turkey48
19Kazakhstan48
20Spain45
21Italy43
22Thailand36
23Hong Kong34
24France34
25Poland33

The top 22 countries (as defined by the 2-character country code), ordered by number of blocked spams are:

RankCountry# of blocked spams
1Taiwan2874509
2United States259616
3France135693
4China9900
5Brazil5951
6United Kingdom1926
7Australia213
8Germany212
9Viet Nam58
10Ecuador31
11Israel16
12Russian Federation12
13Netherlands12
14Italy9
15South Korea8
16Egypt7
17Indonesia6
18Thailand4
19Hungary4
20Hong Kong4
21Canada4
22Czech Republic2

The top 22 countries (as defined by the 2-character country code), ordered by recipient count of blocked spams are:

Suspected Bot List [2015-07-04]

detection period: 2015-07-04 00:00-23:59 UTC
number of suspected bots' IPs listed here: 28

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry
CA167.114.20.225Canada

List from greylisting:

Botnet Statistics [2015-07-04]

detection period: 2015-07-04 00:00-23:59 UTC
total number of suspected botnet IPs: 1332
number of botnet IPs notified to network operators: 1304
number of spam blocked: 108003
recipient count of spam blocked: 2772264

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET972
2CHINANET-SC159
3CHINANET-GD16
4VNPT-VNNIC-VN7
5UNICOM-SC5
6GIANT5
7CHINANET-HN5
8FPT-VN4
9CMNET3
10CHINANET-JS3

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan975
2China218
3Viet Nam16
4United States15
5Ukraine13
6Russian Federation9
7Brazil7
8Spain6
9Argentina6
10South Korea4

Saturday, July 4, 2015

Suspected Bot List [2015-07-03]

detection period: 2015-07-03 00:00-23:59 UTC
number of suspected bots' IPs listed here: 8

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-03]

detection period: 2015-07-03 00:00-23:59 UTC
total number of suspected botnet IPs: 1400
number of botnet IPs notified to network operators: 1392
number of spam blocked: 96248
recipient count of spam blocked: 2545332

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET944
2CHINANET-JS282
3CHINANET-GD22
4UNICOM-BJ13
5WASU-BB6
6CMNET6
7HICHINA4
8GIANT4
9CHINANET-SH4
10UNICOM-HE3

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan949
2China382
3United States16
4Brazil8
5Hong Kong6
6Russian Federation5
7South Korea4
8Argentina3
9Viet Nam2
10Ukraine2

Friday, July 3, 2015

Suspected Bot List [2015-07-02]

detection period: 2015-07-02 00:00-23:59 UTC
number of suspected bots' IPs listed here: 9

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-02]

detection period: 2015-07-02 00:00-23:59 UTC
total number of suspected botnet IPs: 2126
number of botnet IPs notified to network operators: 2117
number of spam blocked: 94633
recipient count of spam blocked: 2520289

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET970
2CHINANET-JS879
3CHINANET-GD39
4UNICOM-BJ29
5MXL111
6WASU10
7WASU-BB6
8TFN-NET5
9CHINANET-SC5
10CHINANET-HN5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1China1032
2Taiwan977
3United States28
4Poland11
5Germany8
6Russian Federation6
7Ukraine5
8South Korea5
9Brazil5
10Indonesia4

Thursday, July 2, 2015

Suspected Bot List [2015-07-01]

detection period: 2015-07-01 00:00-23:59 UTC
number of suspected bots' IPs listed here: 29

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-07-01]

detection period: 2015-07-01 00:00-23:59 UTC
total number of suspected botnet IPs: 1794
number of botnet IPs notified to network operators: 1765
number of spam blocked: 101499
recipient count of spam blocked: 2740439

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET978
2CHINANET-JS529
3CHINANET-GD40
4UNICOM-BJ20
5VNPT-VNNIC-VN9
6WASU-BB8
7CHINANET-HN7
8CHINANET-SC6
9WASU5
10CMNET5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan981
2China663
3Viet Nam18
4United States18
5Russian Federation15
6Brazil15
7Argentina9
8Hong Kong8
9India6
10Ukraine5

Wednesday, July 1, 2015

Suspected Bot List [2015-06-30]

detection period: 2015-06-30 00:00-23:59 UTC
number of suspected bots' IPs listed here: 14

IP addresses listed here all exhibit strange network behavior. As I could not notify the victims for various reasons (no working abuse contact, mailbox over quota, etc.), I list them here instead. I have to emphasize that those are just *suspected* to be malware-infected computers.

List from fake open relays:

country codeIP addressCountry

List from greylisting:

Botnet Statistics [2015-06-30]

detection period: 2015-06-30 00:00-23:59 UTC
total number of suspected botnet IPs: 1778
number of botnet IPs notified to network operators: 1764
number of spam blocked: 122961
recipient count of spam blocked: 3256799

The top 10 networks (as found in WHOIS), ordered by number of suspected botnet IPs are:

RankNetwork# of suspected botnet IPs
1HINET-NET1017
2CHINANET-JS511
3CHINANET-GD46
4UNICOM-HB19
5CHINANET-SH9
6CHINANET-SC7
7WASU-BB6
8WASU6
9CHINANET-HN6
10CMNET5

The top 10 countries (as defined by the 2-character country code), ordered by number of suspected botnet IPs are:

RankCountry# of suspected botnet IPs
1Taiwan1020
2China670
3United States19
4Viet Nam5
5Russian Federation5
6India5
7France5
8Brazil5
9South Korea4
10Hong Kong4