Malicious IP Address List

Asphyxia

Server Monkey
Administrator
Joined
Apr 25, 2015
Messages
1,447
Reaction score
1,966
Points
252
Age
26
Location
North America
Today around an hour ago from this post, I am noticing an influx of Layer 7 DDoS (Distributed Denial of Service) traffic from these origin IP addresses. The number prefixing signifies the request count within just an hour of log time.

539: 189.89.246.242
573: 69.65.65.178
646: 207.154.200.199
807: 66.7.113.39
838: 54.36.150.1
884: 173.213.208.232
919: 167.71.182.183
931: 167.71.182.175
932: 167.71.106.246
936: 167.71.250.73
938: 167.71.105.170
941: 167.71.186.103
945: 104.236.248.219
949: 167.71.97.146
980: 51.158.120.84
985: 51.158.111.229
989: 163.172.154.72
997: 167.71.105.166
1004: 51.158.68.133
1027: 51.158.98.121
1033: 163.172.148.62
1041: 51.158.68.26
1043: 163.172.190.160
2356: 198.20.123.168
2646: 198.37.105.132
2700: 62.87.151.135
7314: 46.8.28.17
9061: 212.172.74.14
9174: 65.36.119.212
9308: 191.102.90.238
9868: 51.68.176.9
9972: 198.98.58.178
10353: 186.47.82.6
10354: 206.189.60.238
11082: 95.168.185.183
13091: 95.141.36.112
13131: 186.154.93.139
14118: 208.108.122.233
14369: 164.68.108.140
14535: 167.71.243.93
14798: 148.217.94.54
14927: 167.71.97.196
15065: 167.71.186.105
15083: 187.62.45.130
15117: 167.71.103.168
15173: 167.71.254.86
15256: 167.71.182.13
15468: 198.98.54.241
15544: 159.203.87.130
16116: 51.158.106.54
16180: 51.158.123.35
16654: 104.244.75.26
16687: 51.158.111.242
16738: 163.172.162.215
16759: 51.158.108.135

16772: 163.172.189.32

These hosts should be known as associated with a botnet.

...

Code:
FILE=access.log; for ip in `cat $FILE |cut -d ' ' -f 1 |sort |uniq`; do { COUNT=`grep ^$ip $FILE |wc -l`; if [[ "$COUNT" -gt "500" ]]; then echo "$COUNT: $ip"; fi }; done
This is the method I used for extracting the IP addresses out with counts.
 

Asphyxia

Server Monkey
Administrator
Joined
Apr 25, 2015
Messages
1,447
Reaction score
1,966
Points
252
Age
26
Location
North America
Where are the servers hosted?
1572265339088.png
Source:




IPDomainCountryRegionCityISPASN
189.89.246.24218989246242.prontonet.com.br
Brazil flag
Brazil
ParaBarcarenaPronto Net Ltda.28188
69.65.65.178crlspr-69.65.65.178.myacc.net
United States flag
United States
FloridaPompano BeachBlue Stream30404
207.154.200.199vpn.euroant.com
Germany flag
Germany
HesseFrankfurt am MainDigitalOcean, LLC14061
66.7.113.39
United States flag
United States
UtahCedar CityOff Campus Telecommunications29933
54.36.150.1ip-54-36-150-1.a.ahrefs.com
France flag
France
OVH SAS16276
173.213.208.232altanyh232.nbcuni.com
United States flag
United States
New YorkNew YorkNBCUniversal54040
167.71.182.183
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.182.175
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.106.246
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.250.73
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.105.170
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.186.103
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
104.236.248.219
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.97.146
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
51.158.120.8484-120-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
51.158.111.229229-111-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
163.172.154.7272-154-172-163.rev.cloud.scaleway.com
France flag
France
Online S.a.s.12876
167.71.105.166
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
51.158.68.133133-68-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
51.158.98.121121-98-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
163.172.148.6262-148-172-163.rev.cloud.scaleway.com
France flag
France
Online S.a.s.12876
51.158.68.2626-68-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
163.172.190.160160-190-172-163.rev.cloud.scaleway.com
France flag
France
Online S.a.s.12876
198.20.123.168.
Netherlands flag
Netherlands
North HollandAmsterdamSingleHop LLC32475
198.37.105.132105.37.198-132.dc74.net
United States flag
United States
FloridaIndialanticDC74 LLC17216
62.87.151.135CLIENT-tvkgaj-1-903.wroclaw.dialog.net.pl
Poland flag
Poland
Kujawsko-PomorskieSepolno KrajenskieNetia SA12741
46.8.28.17
Ukraine flag
Ukraine
TranscarpathiaUzhhorodWireless network and communications PE204684
212.172.74.14
Germany flag
Germany
ecotel communication ag12312
65.36.119.21265-36-119-212.static.grandenetworks.net
United States flag
United States
TexasAustinGrande Communications Networks, LLC7459
191.102.90.238azteca-comunicaciones.com
Colombia flag
Colombia
Bogota D.C.BogotáTV AZTECA SUCURSAL COLOMBIA262186
51.68.176.9
France flag
France
OVH SAS16276
198.98.58.178sing2d.top
United States flag
United States
New YorkBuffaloFranTech Solutions53667
186.47.82.66.82.47.186.static.anycast.cnt-grms.ec
Ecuador flag
Ecuador
Provincia de LojaMacaraCORPORACION NACIONAL DE TELECOMUNICACIONES - CNT EP28006
206.189.60.238
Germany flag
Germany
HesseFrankfurt am MainDigitalOcean, LLC14061
95.168.185.183
Algeria flag
Algeria
Leaseweb Uk Limited205544
95.141.36.112
Italy flag
Italy
Trentino-Alto AdigeSeflow S.N.C. Di Marco Brame' & C.49367
186.154.93.139static-186-154-93-139.static.etb.net.co
Colombia flag
Colombia
Bogota D.C.BogotáColombia19429
208.108.122.233
United States flag
United States
OhioDefianceNorthwest Ohio Computer Association62724
164.68.108.140vmi284004.contaboserver.net
Germany flag
Germany
Contabo GmbH51167
167.71.243.93
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
148.217.94.54rimd.reduaz.mx
Mexico flag
Mexico
ZacatecasZacatecas CityUninet S.A. de C.V.8151
167.71.97.196
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.186.105
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
187.62.45.130r335-pf-jangada.ibys.com.br
Brazil flag
Brazil
ParanaLondrinaSercomtel Participações S.A.22689
167.71.103.168
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.254.86
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
167.71.182.13
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
198.98.54.241.
United States flag
United States
New YorkBuffaloFranTech Solutions53667
159.203.87.130
United States flag
United States
New JerseyCliftonDigitalOcean, LLC14061
51.158.106.5454-106-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
51.158.123.3535-123-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
104.244.75.26.
United States flag
United States
ArizonaPhoenixFranTech Solutions53667
51.158.111.242242-111-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
163.172.162.215215-162-172-163.rev.cloud.scaleway.com
France flag
France
Online S.a.s.12876
51.158.108.135135-108-158-51.rev.cloud.scaleway.com
France flag
France
ParisParisOnline S.a.s.12876
163.172.189.3232-189-172-163.rev.cloud.scaleway.com
France flag
France
Online S.a.s.12876
Source:
 

Primo

Member
Joined
Feb 15, 2016
Messages
8
Reaction score
4
Points
35
Age
29
What do they want from us? Why are they attacking ...
 

Top