Sicherheit »
 
Zurück
26-01-2009 - 02:03 Uhr B.I.S.S_AiO
 t0rt1 B.I.S.S
(BLUETACK.INTERNET.SECURITY.SOLUTIONS)


The BISS IP Blocklists are provided as a free service to help add another layer to your security toolkit.. The IP Blocklists are continuously researched and updated daily to keep up with current internet based threats in many different categories including Malware/Spyware sites, Ads - Trackers, Hijacked and Unallocated Bogon IP ranges, Anti P2P enforcers, Hackers/Crackers, Web Spiders, Bots, Crawlers, Web Server Exploits and more.



BISS's IP Blocklists are plain text files containing lists of IP addresses gathered from many different sources such as public whois databases, firewall/server logs, user reports and years of continuous research.

The IP Blocklists are compiled for security software applications such as Outpost Firewall or Online Armor or IP Blocking programs such as Protowall and Peerguardian to load in order to block access / restrict internet/network connections to and from a computer system.

There are many P2P applications such as Emule and Utorrent which also provide users with IP filtering protection.

The IP blocklists are available for download using the Blocklist Manager or the Downloads section of this site.


The Blocklist Manager
---------------------
BISS provides a free program called the Blocklist Manager to help users download, sort, merge and export the Blocklists into various formats for your preferred application.

To download the blocklists with The Blocklist Manager, first press the check sources button to download/update your sources list. This file contains the urls / link locations of each blocklist file for the Blocklist Manager to download them.

Next go to Options -> Sources and double click on the name of a blocklist to enable or disable any blocklist that you would like to use ( or not use ). Detailed information about setting BLM options can be found in the How to set up BLM correctly Sticky

Once BLM has downloaded, merged and removed any duplicates, your personalized list can be exported to a text file for use in your chosen IP filtering application.


Recommended Lists
-----------------
Originally a small number of blocklists available in the Blocklist Manager were set as default recomended lists. Due to each persons individual preferences there are no longer any default lists in the Blocklist Manager. We now leave the choices up to you, but if you would like more information to help you decide, please feel free to visit the BISS forum for assistance.

The blocklists are currently organised by the level of threat, Level 1 is the highest level of threat, Level 3 is currently the lowest level. Loading all available lists into your firewall / IP blocker should be done with caution.

Some lists may block websites we have not excluded yet or are hosted in unfriendly territory.. You may need to edit lists further to suit your personal preferences in these situations. Other lists like the spyware, ads-trackers etc should be fairly self explanatory.


LEVEL 1 BLOCKLIST
-----------------
Companies or organizations who are clearly involved with trying to stop filesharing (e.g. Baytsp, MediaDefender, Mediasentry a.o.).
Companies which anti-p2p activity has been seen from.
Companies that produce or have a strong financial interest in copyrighted material (e.g. music, movie, software industries a.o.).
Government ranges or companies that have a strong financial interest in doing work for governments. Legal industry ranges.
IPs or ranges of ISPs from which anti-p2p activity has been observed. Basically this list will block all kinds of internet connections that most people would rather not have during their internet travels.

For more information on this list check the Anti-P2P & Fake Files Research Section on the forum.

PLEASE NOTE: The Level1 list is recommended for general P2P users, but it all comes down to your personal choice.

Have a look through each of the lists and decide if you want to use them or not.
Please do not blame us if something like your favourite website is blocked, because we will rarely remove something unless it is classified incorrectly.


LEVEL 2 BLOCKLIST
-----------------
General corporate ranges.
Ranges used by labs or researchers.
Proxies.


LEVEL 3 BLOCKLIST
-----------------
Many suspicious portal-type websites.
ISP ranges that may be dodgy for some reason, or media owned / related.
Anti P2P friendly web hosts.
Ranges that belong to an individual, but which have not been determined to be used by a particular company.
Ranges for things that are unusual in some way. The L3 list is aka the paranoid list.


SPYWARE BLOCKLIST
-----------------
This list is a regularly updated compilation of known malicious MALWARE, SPYWARE and ADWARE IP Address ranges.
It is compiled from our own research and various other sources.
The SPYWARE blocklist may include data from other available Spyware Blacklists, HOSTS files, from research found at Anti-Spyware support forums, logs of Spyware victims and also from the Malware Research Section here at BISS.
For more information on this list check our Malware IP Research Section on the forum.


DShield Recommended BlockList
-----------------------------
This list contains known Hackers and such people in it.
More information can be found at the DShield Website


Microsoft List
--------------
This list covers the known Microsoft Corp ranges that are not on Level1, as well as their known associated IP ranges from around the world.


AD TRACKERS BLOCKLIST
---------------------
This list is constructed to block connections from advertising - marketing research data tracking sites, bad pop-ups...
For more information check out the General IP Research Section on our forum.


Educational Institution Ranges - EDU BLOCKLIST
----------------------------------------------
This list contains known Educational Institutions - University IP ranges - Educational Networks - School Districts a.o..


Tor / Proxy BlockList
---------------------
This list has been compiled from a list of Tor servers and various other proxy servers.


SPIDERS BLOCKLIST
-----------------
Automated software programs also known as spiders or bots, survey the Web and build their databases for search engines and some are used to track people down to automatically serve them with copyright violation notices. This list is intended to be used by webmasters to block hostile spiders from their web sites.
For more information on this list check out the Webspiders and Bots Sticky

PLEASE NOTE: Google and other less harmful search engines are also blocked by this list.


Master Exclusions
-----------------
This is a list of websites and other IP's some people may not want to block.


Range Testing Blocklist
-----------------------
This list contains addresses of suspicious IP's that are under investigation. If you see hits that looks suspicious, please report it to the Range Testing Report Section of the forum please.


IANA - Bogon - Hijacked - Non-LAN lists
---------------------------------------
Concerned Lists
IANA Multicast List
IANA Private List
IANA Reserved List
Bogon List
Hijacked List
Non-LAN List

Below is a short description of what is in these lists:

Internet Assigned Numbers Authority (IANA) List

These are the Internet Assigned Numbers Authority lists. They are for reserved listings and IP addresses that are supposedly not in use as of yet. This list (IANA Private) and possibly the other IANA lists contain IP Ranges that will conflict with your connection if you are one a home network or a company network. You should add the IPs or Ranges that belong to your network to your Exclusions list in the Blocklist Manager.
More information on IANA can be found in the Bluetack IANA FAQ
Another important post for additional information about common IP ranges you may have trouble with and need to unblock to prevent internet connection issues is our IANA Sticky


Bogon List
----------
Contains known Bogon IP-Blocks.
What is a bogon and why should it be blocked?
Note: We do not use the completeWhois bogons list any longer we have switched to:
http://www.cidr-report.org/bogons/freespace-prefix.txt

From CompleteWhois:

Bogons is the name used to describe IP blocks not allocated by IANA and RIRs to ISPs and organizations plus all other IP blocks that are reserved for private or special use by RFCs (the actual term bogons comes from word bogus, as in bogus IP announcements). As these IP blocks are not allocated or specially reserved, such IP blocks should not be routable and used on the internet, however some of these IP blocks do appear on the net primarily used by those individuals and organizations that are often specifically trying to avoid being identified and are often involved in such activities as DoS attacks, email abuse, hacking and other security problems. These activities obviously pose great danger to everyone and ISPs should try to filter all these bad IP routes and we are trying to help in that by working to create complete detailed list of unassigned bogon ips based on whois data.

In other words, if you get hit by an IP address from this range, then they have spoofed their IP address and they, most likely, are trying to do something untoward.


Hijacked List
-------------
Contains hijacked IP-Blocks and known IP-Blocks that are used to deliver Spam.
This list is a combination of lists with hijacked IP-Blocks
What is a Hijacked IP Block and why would I want to block it?

From CompleteWhois:

Hijacked IP space are IP blocks that are being used without permission by organizations that have no relation to original organization (or its legal successor) that received the IP block. In essence it's stealing of somebody else's IP resources.

These ranges are being used illegally and are most likely being used for illegal activities. They should not
Link melden!

Klicks: 230

HMS