Known BotNet IP Addresses

This page lists IP addresses identified as part of known botnets, based on activity logged by our firewalls.

Criteria for Listing

An IP is listed if it meets any of the following criteria:

  1. Engages in brute force attacks on RDP, SSH, or other secure service ports.
  2. Makes over 3 SSH attempts within 24 hours (3 password tries per connection).
  3. Attempts RDP connections more than 10 times in 24 hours.
  4. Continues such activities for over 3 days within a 30-day span.

Removal from List

An IP is removed if no related traffic is detected for 1 year.

Logs Consulted

The following logs are consulted to identify botnet-related activities:

  1. Logs from routers and IDS/IPS.
  2. Windows Server Event logs.
  3. Linux system kernel messages.
  4. MySQL database logs.
  5. Other logs gathered using SysLog and AWS CloudWatch.

Note to Admins

As an operational security measure, systems must prioritize dropping all traffic from these IPs (i.e., before processing any rules that permit connections).

For quick reference, use this command to dump Security events from Windows Server machines into a file for later analysis:
Get-WinEvent -LogName 'Security' | Where-Object {$_.Id -eq 4625} | Format-List | Out-File {YourFilePath}\{DateTime}.log -Verbose


IPv4 List

Total entries: 236


2.57.168.13
3.31.50.197
5.78.113.208
13.90.34.73
18.118.112.199
18.207.197.84
20.168.225.107
23.27.163.190
23.142.24.77
24.213.38.187
31.43.100.170
31.220.99.207
31.220.103.182
34.134.15.172
35.163.217.217
38.6.187.45
38.54.104.137
38.87.82.20
38.92.40.74
38.92.40.80
38.92.48.44
38.126.208.37
38.255.47.98
41.77.116.90
43.130.62.228
43.153.31.166
43.205.191.217
44.229.185.202
45.8.22.153
45.41.8.79
45.130.83.201
45.131.192.18
45.131.192.71
45.131.194.229
45.132.115.86
45.132.115.208
45.146.54.153
46.245.76.235
47.225.202.178
50.193.87.252
51.15.34.47
51.219.30.215
52.202.215.126
54.37.18.80
54.39.10.93
54.39.165.38
54.213.48.98
57.128.169.108
64.64.116.12
64.64.116.37
64.64.116.61
64.64.116.143
64.64.116.149
64.112.124.86
64.222.77.122
64.235.34.25
66.94.98.73
66.94.125.165
66.103.217.150
67.211.217.179
69.63.109.246
69.165.78.98
70.164.0.224
74.208.226.222
76.81.59.46
79.143.37.35
85.237.194.151
85.239.242.110
85.239.243.125
87.236.167.36
89.117.63.135
91.92.242.226
91.191.209.202
94.153.133.190
96.67.38.98
98.159.33.20
98.159.33.25
98.159.33.51
98.159.37.125
98.159.37.224
98.159.224.49
98.159.224.93
98.159.224.168
98.159.224.181
99.125.138.225
102.129.138.53
102.129.139.205
103.20.102.185
103.225.161.95
104.129.131.231
104.234.3.215
104.234.30.111
104.234.30.235
104.234.200.122
104.234.200.184
104.238.99.54
104.249.63.207
107.167.95.92
107.172.31.12
107.172.76.146
109.123.240.84
118.193.65.77
119.96.93.150
132.148.85.94
134.195.90.159
135.148.88.226
136.144.35.123
136.144.35.163
136.144.42.18
136.144.42.65
136.144.42.67
136.144.42.99
136.144.42.132
136.144.43.62
136.144.43.136
136.144.43.154
139.162.25.32
139.162.43.72
139.177.190.179
139.177.190.242
141.98.7.36
142.132.250.113
142.147.99.59
142.147.99.218
144.126.152.244
144.202.71.191
147.135.75.138
147.135.83.189
147.135.91.23
148.59.74.155
148.113.136.104
149.28.197.85
149.50.252.16
150.109.24.26
150.136.53.239
152.32.150.205
152.32.157.13
152.32.160.216
154.12.230.0
154.38.164.53
154.53.45.188
154.53.58.71
154.85.44.227
154.205.9.92
156.96.56.71
157.254.223.95
157.254.223.101
157.254.237.111
162.142.125.222
162.213.197.148
162.244.80.158
163.123.141.199
165.154.129.203
166.146.16.51
167.88.164.142
167.94.138.36
167.114.138.249
167.248.133.123
170.205.37.153
172.1.173.207
172.84.77.31
172.98.33.167
172.104.173.156
172.104.180.169
172.104.181.40
172.105.114.182
172.232.225.149
172.232.226.99
172.232.237.129
172.232.237.241
173.225.106.186
173.225.107.93
173.225.107.143
173.239.204.85
173.239.204.93
176.37.56.116
176.111.174.174
181.215.243.204
182.75.132.102
184.68.120.182
185.187.235.252
185.238.231.143
185.238.231.188
186.190.220.201
186.211.9.23
188.165.10.64
188.215.95.160
188.215.95.196
191.96.206.23
191.96.206.27
191.96.206.32
191.96.206.37
191.96.206.68
191.96.206.85
191.96.206.87
191.101.41.60
192.3.159.135
192.46.226.253
192.142.197.79
193.36.224.170
193.36.224.249
193.37.33.22
193.56.117.17
193.56.117.142
193.56.117.145
193.138.135.139
194.49.69.73
194.140.198.50
198.50.159.39
198.50.160.208
199.191.57.115
204.9.187.98
204.111.69.66
204.116.212.46
205.209.99.229
205.209.121.236
207.127.103.87
207.244.244.254
208.117.44.11
209.23.11.195
209.126.2.181
209.145.60.135
210.212.238.34
216.24.210.127
216.24.210.168
216.24.210.220
216.24.212.161
216.24.212.193
216.73.160.245
216.73.161.138
216.73.163.162
216.73.163.230
216.128.179.7
216.173.119.153
216.173.119.155
216.173.119.157
	
Return to top