Proxy Attack Summaries 2016/01/01 thru 2016/01/31

Sorted by Source Network Range
Sorted by Total Connections From Source Network
Sorted by Source Country
Sorted by Total Connections From Source Country
Counts by fetch target URL.
Counts by fetch target URL - sorted by URL in rev. domain order.

Sorted by Source Network Range


Source Network Registered owner Local Target IP or range Target Ports
37.59.0.0 - 37.59.63.255 OVH SAS Dedicated servers http://www.ovh.com OVH ISP FR attacked MULTIPLE-IPs for ports 22x48
46.227.244.0 - 46.227.247.255 Systemia.pl Sp. z o.o. PL attacked 132.235.1.247 for ports 22x2
104.255.64.0 - 104.255.71.255 VolumeDrive Clarks Summit, PA, US attacked MULTIPLE-IPs for ports 22x24
106.75.0.0 - 106.75.255.255 Shanghai UCloud Information Technology Company Limited Beijing, China 2nd Floor 3rd Building No.200 EAST Guoding Road ,Yangpu District,Shanghai 2nd Floor 3rd Building No.200 EAST Guoding CN attacked MULTIPLE-IPS for ports 22x10
148.251.65.32 - 148.251.65.39 Hetzner Online GmbH Solid Seo VPS 680 El Horria St. Gianaklis 21111 Alexandria EGYPT Industriestrasse 25 DE attacked MULTIPLE-IPs for ports 22x80
162.244.8.0 - 162.244.15.255 Power Up Hosting, Inc. Los Angeles, CA, US attacked MULTIPLE-IPS for ports 22x14
175.0.0.0 - 175.15.255.255 CHINANET HUNAN PROVINCE NETWORK China Telecom No.31,jingrong street CN attacked 132.235.1.2 for ports 22
185.68.111.0 - 185.68.111.255 PROFESIONALHOSTING-DC2 ES attacked MULTIPLE-IPs for ports 22x8
195.154.0.0 - 195.154.127.255 ONLINE SAS 8 rue de la ville l'eveque 75008 PARIS 8, rue de la ville l'eveque 75008 Paris FR attacked MULTIPLE-IPs for ports 22x66
195.154.128.0 - 195.154.255.255 ONLINE SAS 8 rue de la ville l'eveque 75008 PARIS 8, rue de la ville l'eveque 75008 Paris FR attacked MULTIPLE-IPs for ports 22x50

Sorted By Total Connections From Source Network

Count Source Network Registered Owner Local Target IP or Range Target Ports
1 175.0.0.0 - 175.15.255.255 CHINANET HUNAN PROVINCE NETWORK China Telecom No.31,jingrong street CN attacked 132.235.1.2 for ports 22
2 46.227.244.0 - 46.227.247.255 Systemia.pl Sp. z o.o. PL attacked 132.235.1.247 for ports 22x2
8 185.68.111.0 - 185.68.111.255 PROFESIONALHOSTING-DC2 ES attacked MULTIPLE-IPs for ports 22x8
10 106.75.0.0 - 106.75.255.255 Shanghai UCloud Information Technology Company Limited Beijing, China 2nd Floor 3rd Building No.200 EAST Guoding Road ,Yangpu District,Shanghai 2nd Floor 3rd Building No.200 EAST Guoding CN attacked MULTIPLE-IPS for ports 22x10
14 162.244.8.0 - 162.244.15.255 Power Up Hosting, Inc. Los Angeles, CA, US attacked MULTIPLE-IPS for ports 22x14
24 104.255.64.0 - 104.255.71.255 VolumeDrive Clarks Summit, PA, US attacked MULTIPLE-IPs for ports 22x24
48 37.59.0.0 - 37.59.63.255 OVH SAS Dedicated servers http://www.ovh.com OVH ISP FR attacked MULTIPLE-IPs for ports 22x48
50 195.154.128.0 - 195.154.255.255 ONLINE SAS 8 rue de la ville l'eveque 75008 PARIS 8, rue de la ville l'eveque 75008 Paris FR attacked MULTIPLE-IPs for ports 22x50
66 195.154.0.0 - 195.154.127.255 ONLINE SAS 8 rue de la ville l'eveque 75008 PARIS 8, rue de la ville l'eveque 75008 Paris FR attacked MULTIPLE-IPs for ports 22x66
80 148.251.65.32 - 148.251.65.39 Hetzner Online GmbH Solid Seo VPS 680 El Horria St. Gianaklis 21111 Alexandria EGYPT Industriestrasse 25 DE attacked MULTIPLE-IPs for ports 22x80

Summarized By Source Country

Source Country Local Target IP or Range Target Ports
CN attacked MULTIPLE-IPs for ports 22x11
DE attacked MULTIPLE-IPs for ports 22x80
ES attacked MULTIPLE-IPs for ports 22x8
FR attacked MULTIPLE-IPs for ports 22x164
PL attacked 132.235.1.247 for ports 22x2
US attacked MULTIPLE-IPs for ports 22x38

Summarized By Source Country

Total Connection Counts Source Country Local Target IP or Range Target Ports
2 PL attacked 132.235.1.247 for ports 22x2
8 ES attacked MULTIPLE-IPs for ports 22x8
11 CN attacked MULTIPLE-IPs for ports 22x11
38 US attacked MULTIPLE-IPs for ports 22x38
80 DE attacked MULTIPLE-IPs for ports 22x80
164 FR attacked MULTIPLE-IPs for ports 22x164

Summarized By Target URL to Fetch - sorted by attempts made

Count Target host name GET/PUT/etc Target URL to Fetch
1 208.82.238.146:80
1 209.99.40.222:80
1 http://azenv.net/
1 http://www.bing.com/search?q=amazon
1 http://www.bing.com/search?q=bing
1 http://www.stopforumspam.com/ipcheck/132.235.1.1
1 http://www.stopforumspam.com/ipcheck/132.235.1.2
1 http://www.stopforumspam.com/ipcheck/132.235.1.225
1 http://www.stopforumspam.com/ipcheck/132.235.1.249
1 http://www.stopforumspam.com/ipcheck/132.235.1.59
1 http://www.stopforumspam.com/ipcheck/132.235.1.64
1 http://www.stopforumspam.com/ipcheck/132.235.1.68
1 http://www.stopforumspam.com/ipcheck/132.235.1.82
1 http://www.stopforumspam.com/ipcheck/132.235.1.9
1 https://www.yandex.com/search/?text=lenovo
2 http://www.bing.com/search?q=dugduggo
2 http://www.bing.com/search?q=lenovo
2 http://www.bing.com/search?q=wikipedia
2 https://www.yandex.com/search/?text=amazon
3 http://search.yahoo.com/search?p=dugduggo
3 https://www.yandex.com/search/?text=bing
4 199.16.156.107:443
4 2.19.60.88:80
4 206.214.211.166:80
4 54.239.25.192:80
4 98.137.201.252:80
4 http://search.yahoo.com/search?p=bing
4 http://search.yahoo.com/search?p=lenovo
5 199.16.156.43:443
5 208.79.237.176:80
5 208.82.238.226:80
5 23.2.127.239:80
5 54.239.25.200:80
5 66.96.147.137:80
5 http://search.yahoo.com/search?p=amazon
5 http://www.sbjudge1.com/ip4.php
6 188.125.66.104:80
6 http://toolbarqueries.google.com/tbr?client=navclient-auto&ch=78804486762&features=Rank&q=info:h
6 http://www.anonymousproxylist.net/azenv2.php
6 https://www.whatismyip.com/
8 204.79.197.200:80
9 179.60.192.36:443
9 195.20.205.9:80
9 208.82.237.18:80
9 http://www.amazon.com
9 http://www.ebay.com/
9 https://m.facebook.com/
10 http://www.sbjudge2.com/ip4.php
11 /
15 http://bham.craigslist.org/search/sss/?excats=&sort=date&cat_id=150%2C169&cat_id=149%2C162&cat_i
15 https://mobile.twitter.com/i/guest
32 45.33.54.195:80
37 http://proxyjudge.us/judge.php

Summarized By Target URL to Fetch - sorted in reverse domain order

Target host name Count GET/PUT/etc Target URL to Fetch
/ 11
179.60.192.36:443 9
188.125.66.104:80 6
195.20.205.9:80 9
199.16.156.107:443 4
199.16.156.43:443 5
2.19.60.88:80 4
204.79.197.200:80 8
206.214.211.166:80 4
208.79.237.176:80 5
208.82.237.18:80 9
208.82.238.146:80 1
208.82.238.226:80 5
209.99.40.222:80 1
23.2.127.239:80 5
45.33.54.195:80 32
54.239.25.192:80 4
54.239.25.200:80 5
66.96.147.137:80 5
98.137.201.252:80 4
http://azenv.net/ 1
http://bham.craigslist.org/search/sss/?excats=&sort=date&cat_id=150%2C169&cat_id=149%2C162&cat_i 15
http://proxyjudge.us/judge.php 37
http://search.yahoo.com/search?p=amazon 5
http://search.yahoo.com/search?p=bing 4
http://search.yahoo.com/search?p=dugduggo 3
http://search.yahoo.com/search?p=lenovo 4
http://toolbarqueries.google.com/tbr?client=navclient-auto&ch=78804486762&features=Rank&q=info:h 6
http://www.amazon.com 9
http://www.anonymousproxylist.net/azenv2.php 6
http://www.bing.com/search?q=amazon 1
http://www.bing.com/search?q=bing 1
http://www.bing.com/search?q=dugduggo 2
http://www.bing.com/search?q=lenovo 2
http://www.bing.com/search?q=wikipedia 2
http://www.ebay.com/ 9
http://www.sbjudge1.com/ip4.php 5
http://www.sbjudge2.com/ip4.php 10
http://www.stopforumspam.com/ipcheck/132.235.1.1 1
http://www.stopforumspam.com/ipcheck/132.235.1.2 1
http://www.stopforumspam.com/ipcheck/132.235.1.225 1
http://www.stopforumspam.com/ipcheck/132.235.1.249 1
http://www.stopforumspam.com/ipcheck/132.235.1.59 1
http://www.stopforumspam.com/ipcheck/132.235.1.64 1
http://www.stopforumspam.com/ipcheck/132.235.1.68 1
http://www.stopforumspam.com/ipcheck/132.235.1.82 1
http://www.stopforumspam.com/ipcheck/132.235.1.9 1
https://m.facebook.com/ 9
https://mobile.twitter.com/i/guest 15
https://www.whatismyip.com/ 6
https://www.yandex.com/search/?text=amazon 2
https://www.yandex.com/search/?text=bing 3
https://www.yandex.com/search/?text=lenovo 1