blacklist-ips.conf 9.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255
  1. # EDIT THIS FILE AS YOU LIKE TO ADD OR REMOVE ANY BAD IP ADDRESSES OR IP RANGES YOU WANT TO BLOCK ###
  2. ##############################################################################
  3. # ___ __ #
  4. # / _ | ___ ___ _____/ / ___ #
  5. # / __ |/ _ \/ _ `/ __/ _ \/ -_) #
  6. # /_/ |_/ .__/\_,_/\__/_//_/\__/ #
  7. # __/_/ __ ___ __ ___ __ __ #
  8. # / _ )___ ____/ / / _ )___ / /_ / _ )/ /__ ____/ /_____ ____ #
  9. # / _ / _ `/ _ / / _ / _ \/ __/ / _ / / _ \/ __/ '_/ -_) __/ #
  10. # /____/\_,_/\_,_/ /____/\___/\__/ /____/_/\___/\__/_/\_\\__/_/ #
  11. # #
  12. ##############################################################################
  13. #######################################
  14. ########## CUSTOM for dev.dw ##########
  15. #######################################
  16. Require not ip 5.101.0.209
  17. Require not ip 14.29.178.230
  18. Require not ip 36.99.136.136
  19. Require not ip 36.99.136.137
  20. Require not ip 52.229.69.231
  21. Require not ip 87.251.70.160
  22. Require not ip 101.227.1.196
  23. Require not ip 101.227.1.197
  24. Require not ip 101.227.1.198
  25. Require not ip 101.227.1.199
  26. Require not ip 111.7.96.152
  27. Require not ip 111.7.96.154
  28. Require not ip 111.7.96.158
  29. Require not ip 111.7.96.162
  30. Require not ip 111.7.96.166
  31. Require not ip 111.7.96.167
  32. Require not ip 111.7.96.171
  33. Require not ip 111.7.96.174
  34. Require not ip 111.7.96.177
  35. Require not ip 111.7.96.181
  36. Require not ip 111.7.100.17
  37. Require not ip 111.7.100.18
  38. Require not ip 111.7.100.19
  39. Require not ip 114.117.163.104
  40. Require not ip 119.45.238.107
  41. Require not ip 119.91.77.10
  42. Require not ip 125.91.105.227
  43. Require not ip 175.27.165.17
  44. Require not ip 183.56.206.145
  45. Require not ip 185.153.196.45
  46. Require not ip 185.153.196.67
  47. Require not ip 185.153.196.125
  48. Require not ip 185.153.196.225
  49. Require not ip 210.16.185.3
  50. Require not ip 211.95.50.4
  51. Require not ip 211.95.50.5
  52. Require not ip 211.95.50.7
  53. Require not ip 211.95.50.8
  54. Require not ip 211.95.50.182
  55. ## zgrab scanner
  56. Require not ip 83.97.20.36
  57. Require not ip 162.243.129.33
  58. ## polaris botnet
  59. Require not ip 186.183.182.13
  60. Require not ip 219.77.156.213
  61. Require not ip 121.162.47.210
  62. # This is merely an example and gets auto included as since Version 2.2017.05 introduced on 2017-04-19
  63. # This file must exist on your system or Apache will fail a reload due to a missing file
  64. # For all intents and purposes you can delete everything inside this file and leave it
  65. # completely blank if you do not want your Apache Blocker to do any blocking of bad IP's
  66. Require not ip 104.223.37.150
  67. Require not ip 104.5.92.27
  68. Require not ip 107.150.63.170
  69. Require not ip 109.236.83.247
  70. Require not ip 137.74.49.205
  71. Require not ip 137.74.49.208
  72. Require not ip 146.0.74.150
  73. Require not ip 148.251.54.44
  74. Require not ip 149.56.151.180
  75. Require not ip 149.56.232.146
  76. Require not ip 150.70.0.0/16
  77. Require not ip 151.80.27.90
  78. Require not ip 151.80.99.90
  79. Require not ip 151.80.99.91
  80. Require not ip 154.16.199.144
  81. Require not ip 154.16.199.34
  82. Require not ip 154.16.199.48
  83. Require not ip 154.16.199.78
  84. Require not ip 158.69.142.34
  85. Require not ip 166.62.80.172
  86. Require not ip 173.212.192.219
  87. Require not ip 173.234.11.105
  88. Require not ip 173.234.153.106
  89. Require not ip 173.234.153.30
  90. Require not ip 173.234.175.68
  91. Require not ip 173.234.31.9
  92. Require not ip 173.234.38.25
  93. Require not ip 176.126.245.213
  94. Require not ip 178.238.234.1
  95. Require not ip 185.35.63.128
  96. Require not ip 185.100.87.238
  97. Require not ip 185.115.125.99
  98. Require not ip 185.119.81.11
  99. Require not ip 185.119.81.63
  100. Require not ip 185.119.81.77
  101. Require not ip 185.119.81.78
  102. Require not ip 185.130.225.65
  103. Require not ip 185.130.225.66
  104. Require not ip 185.130.225.83
  105. Require not ip 185.130.225.90
  106. Require not ip 185.130.225.94
  107. Require not ip 185.130.225.95
  108. Require not ip 185.130.226.105
  109. Require not ip 185.153.197.103
  110. Require not ip 185.159.36.6
  111. Require not ip 185.183.96.33
  112. Require not ip 185.47.62.199
  113. Require not ip 185.62.190.38
  114. Require not ip 185.70.105.161
  115. Require not ip 185.70.105.164
  116. Require not ip 185.85.239.156
  117. Require not ip 185.85.239.157
  118. Require not ip 185.86.13.213
  119. Require not ip 185.86.5.199
  120. Require not ip 185.86.5.212
  121. Require not ip 185.92.72.88
  122. Require not ip 185.93.185.11
  123. Require not ip 185.93.185.12
  124. Require not ip 188.209.52.101
  125. Require not ip 190.152.223.27
  126. Require not ip 191.96.249.29
  127. Require not ip 192.69.89.173
  128. Require not ip 193.201.224.205
  129. Require not ip 195.154.183.190
  130. Require not ip 195.229.241.174
  131. Require not ip 200.7.105.43
  132. Require not ip 210.212.194.60
  133. Require not ip 216.218.147.194
  134. Require not ip 220.227.234.129
  135. Require not ip 23.253.230.158
  136. Require not ip 23.89.159.176
  137. Require not ip 31.170.160.209
  138. Require not ip 45.32.186.11
  139. Require not ip 45.76.21.179
  140. Require not ip 46.249.38.145
  141. Require not ip 46.249.38.146
  142. Require not ip 46.249.38.148
  143. Require not ip 46.249.38.149
  144. Require not ip 46.249.38.150
  145. Require not ip 46.249.38.151
  146. Require not ip 46.249.38.152
  147. Require not ip 46.249.38.153
  148. Require not ip 46.249.38.154
  149. Require not ip 46.249.38.159
  150. Require not ip 51.255.172.22
  151. Require not ip 5.39.218.232
  152. Require not ip 5.39.219.24
  153. Require not ip 5.39.222.18
  154. Require not ip 5.39.223.134
  155. Require not ip 54.213.16.154
  156. Require not ip 54.213.9.111
  157. Require not ip 62.210.146.49
  158. Require not ip 62.210.88.4
  159. Require not ip 65.98.91.181
  160. Require not ip 69.162.124.237
  161. Require not ip 69.64.147.24
  162. Require not ip 72.8.183.202
  163. Require not ip 77.247.178.191
  164. Require not ip 77.247.178.47
  165. Require not ip 77.247.181.219
  166. Require not ip 78.31.184.0/21
  167. Require not ip 78.31.211.0/24
  168. Require not ip 79.110.128.17
  169. Require not ip 79.110.128.63
  170. Require not ip 79.110.128.252
  171. Require not ip 79.110.128.128
  172. Require not ip 80.87.205.10
  173. Require not ip 80.87.205.11
  174. Require not ip 85.17.230.23
  175. Require not ip 85.17.26.68
  176. Require not ip 91.185.190.172
  177. Require not ip 91.200.12.0/22
  178. Require not ip 91.200.12.15
  179. Require not ip 91.200.12.49
  180. Require not ip 91.200.12.91
  181. Require not ip 92.222.66.137
  182. Require not ip 93.104.209.11
  183. Require not ip 93.158.200.103
  184. Require not ip 93.158.200.105
  185. Require not ip 93.158.200.115
  186. Require not ip 93.158.200.124
  187. Require not ip 93.158.200.126
  188. Require not ip 93.158.200.66
  189. Require not ip 93.158.200.68
  190. Require not ip 93.238.202.44
  191. # Cyveillance / Qwest Communications / PSINET
  192. # *******************************************
  193. # I am extensively researching this subject - appears to be US government involved
  194. # and also appears to be used by all sorts of law enforcement agencies. For one they
  195. # do not obey robots.txt and continually disguise their User-Agent strings. Time will
  196. # tell if this is all correct or not.
  197. # For now see - https://en.wikipedia.org/wiki/Cyveillance
  198. # IMPORTANT UPDATE ON Cyveillance / Qwest Communications !!!
  199. # **********************************************************
  200. # I have done a lot of research on Cyveillance now and through monitoring my logs I know
  201. # for sure what companies are using them and what they are actually looking for.
  202. # My research has led me to understand that Cyveillance services are used by hundreds
  203. # of companies to help them dicsover theft of copyrighted materials like images, movies
  204. # music and other materials. I personally believe a lot of block lists who originally recommended
  205. # blocking Cyveillance have done so to protect their torrent or p2p sites from being scanned.
  206. # I personally have now unblocked them as image theft is a big problem of mine but if you
  207. # do want to allow Cyveillance you can simply modify the entries in the below from "Require not ip" to "Require ip"
  208. # Getty Images is one such company who appears to use Cyveillance to help monitor for copyright theft.
  209. # Use this section at YOUR OWN RISK, you may block some legitimate networks but after many hours of
  210. # Research this is now the completely updated list of all IP ranges IPV4 and IPV6 owned Qwest Communications
  211. # PSINET and Cyveillance.
  212. # IMPORTANT NOTE: If you really want to keeps bot and things out of certain parts of your web site
  213. # Rather implement a comlex Google Re-Captcha to reach sections of your sites and for people to be able
  214. # to access download links. Google Re-Captcha with images is too complex for any bot.
  215. # Only uncomment the lines below if you want to block these ranges otherwise rather just leave it as is.
  216. #Require not ip 4.17.135.32/27
  217. #Require not ip 38.0.0.0/8
  218. #Require not ip 63.144.0.0/13
  219. #Require not ip 65.112.0.0/12
  220. #Require not ip 65.192.0.0/11
  221. #Require not ip 206.2.138.0/23
  222. #Require not ip 208.71.164.0/22
  223. # BERKELEY SCANNER
  224. # ****************
  225. # The Berkeley University has a scanner testing all over the web sending a complex
  226. # payload an expecting a reply from servers who are infected or who just respond to such
  227. # a payload. The payload looks similar to this
  228. # "$\xC9\xE1\xDC\x9B+\x8F\x1C\xE71\x99\xA8\xDB6\x1E#\xBB\x19#Hx\xA7\xFD\x0F9-"
  229. # and is sometime VERY long. You may have noticed this in your logs.
  230. # I support research projects and all my servers respond with an error to this type of
  231. # string so I do not block them but if you want to block just uncomment the following line
  232. # or email them asking them not to scan your server. They do respond.
  233. # Visit http://169.229.3.91/ for more info
  234. # If you really do want to block them uncomment the line below.
  235. #Require not ip 169.229.3.88/29