# # dyndns_ponmocup # # ipv4 hash:ip ipset # # [DynDNS.org] # (http://security-research.dyndns.org/pub/malware-feeds/) # Ponmocup. The malware powering the botnet has been around # since 2006 and it’s known under various names, including # Ponmocup, Vundo, Virtumonde, Milicenso and Swisyn. It has # been used for ad fraud, data theft and downloading # additional threats to infected systems. Ponmocup is one of # the largest currently active and, with nine consecutive # years, also one of the longest running, but it is rarely # noticed as the operators take care to keep it operating # under the radar. # # Maintainer : DynDNS.org # Maintainer URL : http://security-research.dyndns.org/pub/malware-feeds/ # List source URL : http://security-research.dyndns.org/pub/malware-feeds/ponmocup-infected-domains-shadowserver.csv # Source File Date: Sat Oct 14 19:31:58 UTC 2017 # # Category : malware # Version : 587 # # This File Date : Sat Oct 14 19:44:11 UTC 2017 # Update Frequency: 1 day # Aggregation : none # Entries : 165 unique IPs # # Full list analysis, including geolocation map, history, # retention policy, overlaps with other lists, etc. # available at: # # http://iplists.firehol.org/?ipset=dyndns_ponmocup # # Generated by FireHOL's update-ipsets.sh # Processed with FireHOL's iprange # 23.111.137.174 27.54.86.145 31.22.4.94 31.22.7.7 31.22.113.24 31.186.8.63 41.208.72.170 46.4.148.81 46.30.213.4 46.30.213.8 46.30.213.198 46.30.215.31 46.30.215.106 46.242.145.96 54.207.35.24 62.149.140.104 63.111.67.20 63.247.141.235 64.70.19.52 64.71.33.129 64.130.33.227 64.207.178.167 65.182.101.135 65.254.227.240 66.7.193.7 66.33.209.144 66.96.149.32 66.96.160.128 66.147.240.186 66.147.240.193 66.147.242.95 67.23.254.129 67.202.69.37 67.222.22.117 69.89.31.137 69.89.31.197 69.90.25.210 69.162.89.10 69.163.251.203 69.175.75.178 72.167.131.114 72.167.209.38 72.172.132.43 74.208.145.145 74.208.215.229 74.208.236.230 76.74.158.89 77.55.115.55 77.92.75.4 77.105.36.226 77.232.69.164 78.46.78.55 79.124.76.10 79.170.40.33 80.94.98.99 81.88.48.95 81.169.145.81 82.118.24.217 82.165.15.141 82.165.38.187 85.9.19.128 85.13.136.51 85.13.140.101 85.13.152.178 87.98.239.19 89.163.222.68 89.221.250.12 94.136.160.106 94.152.142.131 94.231.83.148 94.247.171.78 95.142.65.77 95.173.182.184 98.124.251.203 103.28.38.158 107.152.102.248 108.170.11.82 108.174.147.63 109.123.122.230 111.118.181.161 112.213.87.130 119.59.104.32 124.150.132.6 129.121.18.207 131.153.37.2 132.148.50.129 143.95.86.254 143.95.240.16 144.76.45.43 156.54.179.186 157.7.144.5 159.100.176.27 162.213.3.199 162.255.164.228 173.201.63.1 173.201.63.128 173.209.52.122 173.254.28.119 176.31.222.193 182.18.145.17 182.239.48.60 184.154.241.54 184.168.58.1 184.168.137.128 184.173.151.165 185.32.188.146 185.36.168.127 187.45.193.205 187.45.193.220 187.45.195.65 187.45.195.127 187.45.195.183 187.45.240.68 190.111.229.183 191.252.48.39 192.99.161.26 192.116.109.121 192.169.196.1 192.185.143.215 193.107.88.208 193.218.152.20 193.252.114.12 194.8.30.56 195.8.66.1 195.110.124.188 195.114.18.162 196.22.172.201 198.23.74.144 198.154.118.68 199.67.250.59 200.170.151.200 203.170.86.225 203.174.34.49 205.186.187.121 205.234.131.222 205.234.197.147 206.123.119.90 206.188.193.120 207.21.228.180 208.109.181.3 208.113.213.71 208.180.26.16 209.126.117.81 209.217.39.150 209.217.239.109 210.242.73.200 212.227.81.10 212.227.171.163 213.156.8.70 213.186.33.18 213.186.33.19 216.97.226.245 216.250.121.2 216.250.121.102 217.16.10.3 217.76.132.246 217.160.0.131 217.160.0.174 217.160.0.204 217.160.0.240 217.160.53.183 217.160.223.120 217.160.231.206 217.198.114.93 219.84.217.10