Advertisement
internetweather

Botnet C2 104.168.199.188 – Update 2

Sep 17th, 2019
3,378
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.78 KB | None | 0 0
  1. # Botnet C2 104.168.199.188 DDoS attack commands gathered via Bad Packets C2 milker:
  2. . STD 1.1.1.1 80 10
  3. . STD 1.1.1.1 80 10
  4. . STD 101.71.138.9 80 80
  5. . STD 101.71.138.9 80 80
  6. . STD 101.71.138.9 80 80
  7. . STD 103.95.221.199 80 20
  8. . STD 103.95.221.2 80 80
  9. . STD 104.153.85.132 80 300
  10. . STD 104.153.85.132 80 300
  11. . STD 104.182.5.41 53 20
  12. . STD 104.25.216.5 80 60
  13. . STD 108.44.50.235 53 20
  14. . STD 108.44.50.235 53 20
  15. . STD 108.44.50.235 80 20
  16. . STD 108.44.50.235 80 20
  17. . STD 13.56.182.243 9013 60
  18. . STD 13.57.14.200 9010 60
  19. . STD 137.74.231.80 443 120
  20. . STD 138.128.137.45 80 30
  21. . STD 144.217.46.50 5555 60
  22. . STD 147.135.237.41 65533 80
  23. . STD 149.202.223.210 80 60
  24. . STD 149.202.223.210 80 60
  25. . STD 158.69.183.98 22 20
  26. . STD 158.69.183.98 443 300
  27. . STD 158.69.183.98 443 300
  28. . STD 158.69.183.98 443 300
  29. . STD 158.69.183.98 443 300
  30. . STD 158.69.183.98 443 300
  31. . STD 162.248.93.8 22 20
  32. . STD 172.106.165.3 80 900
  33. . STD 172.13.11.245 80 1800
  34. . STD 172.58.99.236 42105 50
  35. . STD 173.240.137.41 80 1800
  36. . STD 174.87.218.206 80 1800
  37. . STD 185.11.145.5 443 300
  38. . STD 185.11.145.5 443 300
  39. . STD 185.62.206.165 2304 180
  40. . STD 185.62.206.165 2304 300
  41. . STD 188.165.55.193 27040 60
  42. . STD 188.165.6.127 62403 70
  43. . STD 188.165.6.127 80 70
  44. . STD 188.165.6.127 80 70
  45. . STD 192.223.24.166 9307 900
  46. . STD 194.9.89.155 443 20
  47. . STD 194.9.89.155 443 20
  48. . STD 194.9.89.155 443 20
  49. . STD 204.112.204.155 80 1800
  50. . STD 212.83.135.207 80 300
  51. . STD 31.186.250.100 21 20
  52. . STD 34.196.195.31 80 90
  53. . STD 35.138.170.102 1800 80
  54. . STD 35.138.170.102 80 1300
  55. . STD 46.105.181.176 65533 100
  56. . STD 46.105.181.176 65533 60
  57. . STD 46.105.181.176 65533 60
  58. . STD 46.105.181.176 65533 60
  59. . STD 46.105.181.176 65533 60
  60. . STD 46.117.45.33 22 60
  61. . STD 46.17.45.33 22 60
  62. . STD 46.17.45.33 22 60
  63. . STD 47.155.95.172 80 1800
  64. . std 47.156.47.136 80 800
  65. . STD 47.156.47.136 80 800
  66. . STD 50.50.50.53 22 60
  67. . STD 50.50.50.53 80 30
  68. . STD 50.50.50.53 80 30
  69. . STD 51.75.166.226 65444 60
  70. . STD 51.75.166.226 65444 60
  71. . STD 54.36.24.199 65533 60
  72. . STD 54.37.73.29 22 300
  73. . STD 54.37.73.29 22 300
  74. . STD 54.37.73.29 443 300
  75. . STD 54.37.73.29 443 300
  76. . STD 54.37.73.29 443 60
  77. . STD 54.38.22.54 0 100
  78. . STD 54.38.22.54 5007 60
  79. . STD 54.38.22.54 65533 60
  80. . STD 54.38.22.54 65533 60
  81. . STD 54.38.22.54 65533 60
  82. . STD 54.38.22.54 65533 60
  83. . STD 54.38.22.54 65533 60
  84. . STD 54.38.22.54 65533 60
  85. . STD 54.38.22.54 80 1000
  86. . STD 54.39.160.89 443 20
  87. . STD 64.33.201.79 3074 300
  88. . STD 66.151.138.30 25215 60
  89. . STD 66.151.138.30 25215 60
  90. . STD 66.151.138.9 21 20
  91. . STD 66.188.66.26 3074 300
  92. . STD 66.212.32.123 80 60
  93. . STD 66.70.181.31 22 20
  94. . STD 66.70.181.31 22 20
  95. . STD 66.70.181.31 22 20
  96. . STD 66.70.181.31 22 20
  97. . STD 66.70.181.31 22 20
  98. . STD 66.70.181.31 80 20
  99. . STD 67.4.74.173 80 600
  100. . STD 68.204.67.198 80 220
  101. . STD 68.41.234.126 80 1800
  102. . STD 69.49.85.235 3074 1800
  103. . STD 71.147.0.35 80 1800
  104. . STD 71.191.211.143 80 400
  105. . STD 71.218.22.41 80 300
  106. . STD 71.227.116.152 22 60
  107. . STD 71.227.116.152 80 3600
  108. . STD 71.62.35.35 80 600
  109. . STD 73.139.20.101 80 300
  110. . STD 73.139.20.101 80 3600
  111. . STD 73.154.169.170 3074 86400
  112. . STD 73.211.44.176 80 300
  113. . STD 74.74.74.7 64567 30
  114. . STD 75.128.142.63 80 300
  115. . STD 76.123.51.46 80 1300
  116. . STD 76.172.98.240 53 20
  117. . STD 76.76.76.6 80 30
  118. . STD 76.76.76.6 80 30
  119. . STD 76.76.76.6 80 30
  120. . STD 76.76.76.6 80 30
  121. . STD 76.76.76.6 80 30
  122. . STD 76.76.76.6 80 30
  123. . STD 76.76.76.6 80 30
  124. . STD 76.76.76.6 80 30
  125. . STD 76.76.76.6 80 30
  126. . STD 76.76.76.6 80 30
  127. . STD 76.76.76.6 80 30
  128. . STD 76.76.76.6 80 30
  129. . STD 76.76.76.6 80 30
  130. . STD 76.76.76.6 80 30
  131. . STD 76.76.76.6 80 30
  132. . STD 76.76.76.6 80 30
  133. . STD 76.76.76.6 80 30
  134. . STD 76.76.76.6 80 30
  135. . STD 76.76.76.6 80 30
  136. . STD 76.76.76.6 80 30
  137. . STD 76.76.76.6 80 30
  138. . STD 76.76.76.6 80 30
  139. . STD 76.76.76.6 80 30
  140. . STD 76.76.76.6 80 30
  141. . STD 76.76.76.6 80 30
  142. . STD 76.76.76.6 80 60
  143. . STD 76.76.76.6 80 60
  144. . STD 76.76.76.6 80 60
  145. . STD 76.76.76.6 80 60
  146. . STD 76.76.76.6 80 60
  147. . STD 76.76.76.6 80 60
  148. . STD 76.76.76.6 80 60
  149. . STD 76.76.76.6 80 60
  150. . STD 76.91.86.14 80 800
  151. . STD 77.77.77.73 80 60
  152. . STD 79.137.121.164 64567 30
  153. . STD 79.152.63.202 80 3000
  154. . STD 92.222.72.160 22 20
  155. . STD 97.84.236.55 80 3600
  156. . STD 98.225.8.191 80 3600
  157. . STD 99.231.253.25 56112 10
  158. . STD 99.255.245.27 80 1800
  159. . STOP
  160. . STOP
  161. . TCP 101.71.138.9 80 80 32 ALL 0 10
  162. . TCP 101.71.138.9 80 80 32 ALL 0 10
  163. . TCP 103.95.221.199 80 20 32 ALL 0 10
  164. . TCP 104.25.216.5 80 60 32 ALL 0 10
  165. . TCP 162.248.239.104 3074 300 32 ALL 0 10
  166. . TCP 172.58.59.1 80 300 32 ALL 0 10
  167. . TCP 174.16.126.30 80 300 32 ALL 0 10
  168. . TCP 51.105.248.40 30120 20 32 ALL 0 10
  169. . TCP 69.49.85.235 80 1800 32 ALL 0 10
  170. . TCP 71.231.232.189 3074 1800 32 ALL 0 10
  171. . TCP 71.85.14.41 80 300 32 ALL 0 10
  172. . TCP 73.105.45.50 3074 300 32 ALL 0 10
  173. . TCP 73.182.162.219 80 1800 32 ALL 0 10
  174. . TCP 75.128.142.63 3074 300 32 ALL 0 10
  175. . UDP 71.147.0.35 80 1800 32 0 10
  176. . UDP 103.95.221.199 80 20 32 1460 10
  177. . UDP 103.95.221.199 80 30 32 1460 10
  178. . UDP 103.95.221.87 80 30 32 1460 10
  179. . UDP 103.95.221.87 80 60 32 1460 10
  180. . UDP 104.27.133.172 80 80 32 0 10
  181. . UDP 162.248.93.8 111 20 32 1460 10
  182. . UDP 174.87.218.206 80 1800 32 0 10
  183. . UDP 71.191.211.143 8
  184. . UDP 71.227.116.152 80 3600 32 1460 10
  185. . UDP 77.132.67.80 80 3600
  186. . VSE 103.95.221.199 80 20 32 1024 10
  187. . VSE 104.153.85.132 80 30 32 1250 10
  188. . VSE 167.56.22.76 9307 3000 32 1250 10
  189. . VSE 189.218.30.158 22871 2000 32 1250 10
  190. . VSE 20.185.73.177 30235 20 32 1250 10
  191. . VSE 201.162.176.122 9397 1000 32 1250 10
  192. . VSE 31.186.250.100 21 20 32 1024 10
  193. . VSE 45.35.204.26 53 20 32 1250 10
  194. . VSE 76.172.98.240 53 20 32 1250 10
  195. . VSE 76.76.76.6 80 30 32 1250 10
  196. .* STD 76.76.76.6 80 30
  197.  
  198.  
  199. # IP address lookups for unique hosts attacked
  200. IP Reverse DNS Country Autonomous System ASN
  201. 74.74.74.7 cpe-74-74-74-7.stny.res.rr.com United States Charter Communications Inc AS11351
  202. 64.33.201.79 bal-bb-cable-4-335.dsl.airstreamcomm.net United States Airstream Communications LLC AS11796
  203. 189.218.30.158 CableLink-189-218-30-158.Hosts.InterCable.net Mexico Television Internacional S.A. de C.V. AS11888
  204. 66.151.138.30 d-66-151-138-30.ded-machine.inap-sj.nfoservers.com United States Internap Corporation AS12182
  205. 66.151.138.9 sj-ventrilo.nfoservers.com United States Internap Corporation AS12182
  206. 212.83.135.207 212-83-135-207.rev.poneytelecom.eu France Online S.a.s. AS12876
  207. 1.1.1.1 one.one.one.one Australia Cloudflare Inc. AS13335
  208. 104.25.216.5 United States Cloudflare Inc. AS13335
  209. 104.27.133.172 United States Cloudflare Inc. AS13335
  210. 192.223.24.166 newyourk.dankvpn.com United States Internap Corporation AS13789
  211. 34.196.195.31 ec2-34-196-195-31.compute-1.amazonaws.com United States Amazon.com Inc. AS14618
  212. 77.132.67.80 80.67.132.77.rev.sfr.net France SFR SA AS15557
  213. 137.74.231.80 securityteamovhinsane2.securityteamvpn.com France OVH SAS AS16276
  214. 144.217.46.50 governmentvpn.agency Canada OVH SAS AS16276
  215. 147.135.237.41 France OVH SAS AS16276
  216. 149.202.223.210 ns3032174.ip-149-202-223.eu France OVH SAS AS16276
  217. 158.69.183.98 ungv-ovh.xyz Canada OVH SAS AS16276
  218. 188.165.55.193 game-fr-08.mtxserv.com France OVH SAS AS16276
  219. 188.165.6.127 Ireland OVH SAS AS16276
  220. 46.105.181.176 vpn3.dankvpn.com France OVH SAS AS16276
  221. 51.75.166.226 mcdonalds.ovh France OVH SAS AS16276
  222. 54.36.24.199 dankvpn.com France OVH SAS AS16276
  223. 54.37.73.29 29.ip-54-37-73.eu Germany OVH SAS AS16276
  224. 54.38.22.54 France OVH SAS AS16276
  225. 54.39.160.89 xexjustice-ovh.tk Canada OVH SAS AS16276
  226. 66.70.181.31 stoplookingatmyipskid.com Canada OVH SAS AS16276
  227. 79.137.121.164 alexaovhfr2.softether.net France OVH SAS AS16276
  228. 92.222.72.160 160.ip-92-222-72.eu France OVH SAS AS16276
  229. 173.240.137.41 173-240-137-41.pool.dsl.nctc.com United States North Central Communications AS16433
  230. 13.56.182.243 ec2-13-56-182-243.us-west-1.compute.amazonaws.com United States Amazon.com Inc. AS16509
  231. 13.57.14.200 ec2-13-57-14-200.us-west-1.compute.amazonaws.com United States Amazon.com Inc. AS16509
  232. 46.117.45.33 46-117-45-33.bb.netvision.net.il Israel Cellcom Fixed Line Communication L.P. AS1680
  233. 66.212.32.123 66-212-32-123.mannford.ok.mbo.net United States MBO Video LLC AS17049
  234. 76.172.98.240 cpe-76-172-98-240.natsow.res.rr.com United States Charter Communications Inc AS20001
  235. 76.91.86.14 cpe-76-91-86-14.socal.res.rr.com United States Charter Communications Inc AS20001
  236. 174.87.218.206 United States Charter Communications AS20115
  237. 66.188.66.26 66-188-66-26.dhcp.athn.ga.charter.com United States Charter Communications AS20115
  238. 75.128.142.63 75-128-142-63.dhcp.bycy.mi.charter.com United States Charter Communications AS20115
  239. 97.84.236.55 97-84-236-55.dhcp.sgnw.mi.charter.com United States Charter Communications AS20115
  240. 71.85.14.41 71-85-14-41.dhcp.buft.sc.charter.com United States Charter Communications AS20115
  241. 67.4.74.173 67-4-74-173.sxct.qwest.net United States CenturyLink Communications LLC AS209
  242. 71.218.22.41 71-218-22-41.hlrn.qwest.net United States CenturyLink Communications LLC AS209
  243. 174.16.126.30 174-16-126-30.hlrn.qwest.net United States CenturyLink Communications LLC AS209
  244. 172.58.99.236 United States T-Mobile USA Inc. AS21928
  245. 172.58.59.1 United States T-Mobile USA Inc. AS21928
  246. 194.9.89.155 Germany Messe Duesseldorf GmbH AS29494
  247. 162.248.93.8 s10-us.premium.vshield.pro United States Nuclearfallout Enterprises Inc. AS32374
  248. 35.138.170.102 035-138-170-102.dhcp.bhn.net United States Charter Communications Inc AS33363
  249. 68.204.67.198 68-204-67-198.res.bhn.net United States Charter Communications Inc AS33363
  250. 79.152.63.202 202.red-79-152-63.dynamicip.rima-tde.net Spain Telefonica De Espana AS3352
  251. 69.49.85.235 cbl-dhcp-85-235.machlink.com United States Muscatine Power and Water AS33734
  252. 76.76.76.6 lo0-rtc-twt.nco.riseb.net United States JAB Wireless INC. AS39939
  253. 162.248.239.104 United States Peoples Communications Inc. AS40317
  254. 172.106.165.3 unassigned.psychz.net United States Psychz Networks AS40676
  255. 45.35.204.26 unassigned.psychz.net United States Psychz Networks AS40676
  256. 185.62.206.165 Sweden City Network Hosting AB AS42695
  257. 101.71.138.9 China CHINA UNICOM China169 Backbone AS4837
  258. 103.95.221.199 China CHINA UNICOM China169 Backbone AS4837
  259. 103.95.221.2 China CHINA UNICOM China169 Backbone AS4837
  260. 103.95.221.87 China CHINA UNICOM China169 Backbone AS4837
  261. 31.186.250.100 frankfurt-ventrilo.nfoservers.com Germany InterNAP Network Services U.K. Limited AS48910
  262. 185.11.145.5 hosted-by.blazingfast.io Netherlands Dotsi Unipessoal Lda. AS49349
  263. 104.153.85.132 hosted-by.i3d.net United States i3D.net B.V AS49544
  264. 138.128.137.45 hosted-by.i3d.net United States i3D.net B.V AS49544
  265. 46.17.45.33 Russia LLC Baxet AS51659
  266. 77.77.77.73 Iran Dadeh Gostar Asr Novin P.J.S. Co. AS56402
  267. 47.155.95.172 United States Frontier Communications of America Inc. AS5650
  268. 47.156.47.136 United States Frontier Communications of America Inc. AS5650
  269. 50.50.50.53 static-50-50-50-53.arr01.waus.wi.frontiernet.net United States Frontier Communications of America Inc. AS5650
  270. 167.56.22.76 r167-56-22-76.dialup.adsl.anteldata.net.uy Uruguay Administracion Nacional de Telecomunicaciones AS6057
  271. 108.44.50.235 pool-108-44-50-235.albyny.east.verizon.net United States MCI Communications Services Inc. d/b/a Verizon Business AS701
  272. 71.191.211.143 pool-71-191-211-143.washdc.fios.verizon.net United States MCI Communications Services Inc. d/b/a Verizon Business AS701
  273. 104.182.5.41 104-182-5-41.lightspeed.chtnsc.sbcglobal.net United States AT&T Services Inc. AS7018
  274. 172.13.11.245 172-13-11-245.lightspeed.wchtks.sbcglobal.net United States AT&T Services Inc. AS7018
  275. 71.147.0.35 71-147-0-35.lightspeed.hstntx.sbcglobal.net United States AT&T Services Inc. AS7018
  276. 204.112.204.155 wnklmb0123w-ppp-204-155.dynamic.bellmts.net Canada MTS Inc. AS7122
  277. 201.162.176.122 pc201162176122.optele.net Mexico Pegaso PCS S.A. de C.V. AS7438
  278. 68.41.234.126 c-68-41-234-126.hsd1.mi.comcast.net United States Comcast Cable Communications LLC AS7922
  279. 71.227.116.152 c-71-227-116-152.hsd1.mi.comcast.net United States Comcast Cable Communications LLC AS7922
  280. 71.62.35.35 c-71-62-35-35.hsd1.va.comcast.net United States Comcast Cable Communications LLC AS7922
  281. 73.139.20.101 c-73-139-20-101.hsd1.fl.comcast.net United States Comcast Cable Communications LLC AS7922
  282. 73.154.169.170 c-73-154-169-170.hsd1.pa.comcast.net United States Comcast Cable Communications LLC AS7922
  283. 73.211.44.176 c-73-211-44-176.hsd1.il.comcast.net United States Comcast Cable Communications LLC AS7922
  284. 76.123.51.46 c-76-123-51-46.hsd1.va.comcast.net United States Comcast Cable Communications LLC AS7922
  285. 98.225.8.191 c-98-225-8-191.hsd1.wa.comcast.net United States Comcast Cable Communications LLC AS7922
  286. 71.231.232.189 c-71-231-232-189.hsd1.wa.comcast.net United States Comcast Cable Communications LLC AS7922
  287. 73.105.45.50 c-73-105-45-50.hsd1.fl.comcast.net United States Comcast Cable Communications LLC AS7922
  288. 73.182.162.219 c-73-182-162-219.hsd1.ct.comcast.net United States Comcast Cable Communications LLC AS7922
  289. 51.105.248.40 Netherlands Microsoft Corporation AS8075
  290. 20.185.73.177 United States Microsoft Corporation AS8075
  291. 99.231.253.25 CPE9050ca2344e3-CM9050ca2344e0.cpe.net.cable.rogers.com Canada Rogers Communications Canada Inc. AS812
  292. 99.255.245.27 CPEbc4dfbca2633-CMbc4dfbca2630.cpe.net.cable.rogers.com Canada Rogers Communications Canada Inc. AS812
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement