Compare commits

...

57 Commits

Author SHA1 Message Date
C24Be
120112daa4 Update 2026.04.05 13:13:34 2026-04-05 13:13:35 +00:00
C24Be
595f1c9fc5 Update 2026.04.05 06:57:52 2026-04-05 06:57:53 +00:00
C24Be
0a61d5dc8b Update 2026.04.04 06:53:13 2026-04-04 06:53:13 +00:00
C24Be
2e6a9ddae5 Update 2026.04.03 07:00:52 2026-04-03 07:00:53 +00:00
C24Be
c3cf465574 Update 2026.04.02 07:04:49 2026-04-02 07:04:50 +00:00
C24Be
7eb67f189f Update 2026.04.02 06:22:02 2026-04-02 06:22:02 +00:00
C24Be
820501ff16 Update 2026.04.01 (#26)
* Update 2026.04.01 01:17:26

* Update 2026.04.01 04:52:43

* Update 2026.04.01 05:10:36

* Update 2026.04.01 05:17:38

* Update 2026.04.01 06:32:46

* Update 2026.04.01 06:43:40

* Update 2026.04.01 06:50:24

* Update 2026.04.01 08:20:42

* Update 2026.04.01 08:32:06

---------

Co-authored-by: C24Be <C24Be@github.com>
2026-04-02 08:18:01 +02:00
C24Be
562de399da Update 2026.04.01 07:12:29 2026-04-01 07:12:29 +00:00
C24Be
0d015fc2ff Update 2026.03.31 07:05:57 2026-03-31 07:05:57 +00:00
C24Be
dea6a75d67 Update 2026.03.30 07:19:44 2026-03-30 07:19:44 +00:00
C24Be
7690d60023 Update 2026.03.29 13:11:56 2026-03-29 13:11:57 +00:00
C24Be
1ef2a3a21e Update 2026.03.29 06:56:52 2026-03-29 06:56:52 +00:00
C24Be
128d6c3d19 Merge branch 'main' of https://github.com/C24Be/AS_Network_List 2026-03-28 12:15:26 +01:00
C24Be
4502515ab1 Readme 2026-03-28 12:15:23 +01:00
C24Be
740834b112 Update 2026.03.28 06:52:03 2026-03-28 06:52:03 +00:00
C24Be
c79108d476 Readme 2026-03-27 19:16:50 +01:00
C24Be
754f545764 Update 2026.03.27 18:14:06 2026-03-27 18:14:07 +00:00
C24Be
048810e560 big update 2026-03-27 19:12:07 +01:00
C24Be
cfed9adddf big update 2026-03-27 19:11:52 +01:00
C24Be
0107142b90 Update 2026.03.27 06:59:36 2026-03-27 06:59:36 +00:00
C24Be
5d9070946d readme 2026-03-26 11:20:52 +01:00
C24Be
4126557898 Merge branch 'main' of https://github.com/C24Be/AS_Network_List 2026-03-26 11:20:00 +01:00
C24Be
cd643625f1 readme 2026-03-26 11:19:56 +01:00
C24Be
23ca832e7d Update 2026.03.26 09:38:27 2026-03-26 09:38:27 +00:00
C24Be
760bc7409d readme files 2026-03-26 10:37:06 +01:00
C24Be
3922acb075 readme files 2026-03-26 10:34:02 +01:00
C24Be
17d64070c6 mini readmes 2026-03-26 10:17:04 +01:00
C24Be
c34ebee88f Update 2026.03.26 08:47:07 2026-03-26 08:47:07 +00:00
C24Be
96f5442eea + routes folder to commit 2026-03-26 09:45:53 +01:00
C24Be
22bbb3dd20 some fixes 2026-03-26 09:42:48 +01:00
C24Be
943e7f2498 Merge branch 'main' of https://github.com/C24Be/AS_Network_List 2026-03-26 09:41:31 +01:00
C24Be
ecc4b2e387 some fixes 2026-03-26 09:41:27 +01:00
C24Be
72d57938c0 Update 2026.03.26 08:35:16 2026-03-26 08:35:17 +00:00
C24Be
1d0162e69f some fixes 2026-03-26 09:33:42 +01:00
C24Be
75e044c01d Update 2026.03.26 08:29:31 2026-03-26 08:29:31 +00:00
C24Be
3cb9156d28 some fixes 2026-03-26 09:28:25 +01:00
C24Be
011efe4bcb some fixes 2026-03-26 09:26:41 +01:00
C24Be
849e96a16d + routes 2026-03-26 09:18:49 +01:00
C24Be
ee407903b6 + routes 2026-03-26 09:16:31 +01:00
C24Be
07284f6831 + routes 2026-03-26 09:16:11 +01:00
C24Be
f407215a72 Update 2026.03.26 07:01:14 2026-03-26 07:01:14 +00:00
C24Be
3ea564dfe8 Update 2026.03.25 06:55:56 2026-03-25 06:55:56 +00:00
C24Be
af409b55cc Update 2026.03.24 19:03:32 2026-03-24 19:03:33 +00:00
C24Be
17a668eaec Block VK / usage 2026-03-24 20:02:11 +01:00
C24Be
95d70eb428 Update 2026.03.24 18:58:35 2026-03-24 18:58:35 +00:00
C24Be
82ad171e71 usage 2026-03-24 19:57:16 +01:00
C24Be
8e3a07acc5 Update 2026.03.24 18:23:22 2026-03-24 18:23:22 +00:00
C24Be
6381ea7863 Block VK / usage 2026-03-24 19:21:52 +01:00
C24Be
4a8a10d6d6 Update 2026.03.24 18:07:56 2026-03-24 18:07:56 +00:00
C24Be
d7e0f9c7b7 Block VK / usage 2026-03-24 19:06:26 +01:00
C24Be
b98e6d008c Block VK / readme 2026-03-24 19:03:08 +01:00
C24Be
7714b6ff07 Update 2026.03.24 18:01:29 2026-03-24 18:01:30 +00:00
C24Be
2d2dfccad3 Block VK / Add special lists 2026-03-24 18:59:49 +01:00
C24Be
0b170ff24a Update 2026.03.24 06:56:56 2026-03-24 06:56:56 +00:00
C24Be
204b099d9c Update 2026.03.23 07:02:16 2026-03-23 07:02:16 +00:00
C24Be
77142cde32 Update 2026.03.22 13:11:44 2026-03-22 13:11:45 +00:00
C24Be
12f1e01c61 Update 2026.03.22 06:42:46 2026-03-22 06:42:46 +00:00
51 changed files with 10090 additions and 8642 deletions

View File

@@ -10,7 +10,7 @@ runs:
git config --global user.email "${{ env.REPO_OWNER }}@github.com" git config --global user.email "${{ env.REPO_OWNER }}@github.com"
if [ -n "${{ env.CUSTOM_BRANCH }}" ]; then if [ -n "${{ env.CUSTOM_BRANCH }}" ]; then
git checkout "${daily_branch}" 2>/dev/null || git checkout -b "${daily_branch}" git checkout "${daily_branch}" 2>/dev/null || git checkout -b "${daily_branch}"
git push --set origin "${daily_branch}" git push --set-upstream origin "${daily_branch}"
fi fi
git add ${{ env.PUSH_FILES }} git add ${{ env.PUSH_FILES }}
git diff --staged --quiet || CHANGED=true git diff --staged --quiet || CHANGED=true

View File

@@ -8,9 +8,9 @@ runs:
if [ -n "${{ env.CUSTOM_BRANCH }}" ]; then if [ -n "${{ env.CUSTOM_BRANCH }}" ]; then
git reset --hard git reset --hard
git clean -fdx git clean -fdx
git checkout "${daily_branch}" git checkout "${daily_branch}" 2>/dev/null || git checkout -b "${daily_branch}"
git pull origin "${daily_branch}" git pull origin "${daily_branch}" || true
git push --set origin "${daily_branch}" git push --set-upstream origin "${daily_branch}"
fi fi
git reset --hard git reset --hard
git clean -fdx git clean -fdx

View File

@@ -26,7 +26,7 @@ jobs:
with: with:
fetch-depth: 0 # this is required to fetch all history for all branches and tags fetch-depth: 0 # this is required to fetch all history for all branches and tags
token: ${{ env.GH_PAT }} token: ${{ env.GH_PAT }}
ref: ${{ github.branch }} ref: ${{ github.ref_name }}
- uses: ./.github/actions/gitReset - uses: ./.github/actions/gitReset
env: env:
CUSTOM_BRANCH: true CUSTOM_BRANCH: true
@@ -53,7 +53,7 @@ jobs:
with: with:
fetch-depth: 0 # this is required to fetch all history for all branches and tags fetch-depth: 0 # this is required to fetch all history for all branches and tags
token: ${{ env.GH_PAT }} token: ${{ env.GH_PAT }}
ref: ${{ github.branch }} ref: ${{ github.ref_name }}
- uses: ./.github/actions/gitReset - uses: ./.github/actions/gitReset
env: env:
CUSTOM_BRANCH: true CUSTOM_BRANCH: true
@@ -80,7 +80,7 @@ jobs:
with: with:
fetch-depth: 0 # this is required to fetch all history for all branches and tags fetch-depth: 0 # this is required to fetch all history for all branches and tags
token: ${{ env.GH_PAT }} token: ${{ env.GH_PAT }}
ref: ${{ github.branch }} ref: ${{ github.ref_name }}
- uses: ./.github/actions/gitReset - uses: ./.github/actions/gitReset
env: env:
CUSTOM_BRANCH: true CUSTOM_BRANCH: true

View File

@@ -33,6 +33,7 @@ jobs:
- run: ./blacklists_updater_nginx.sh - run: ./blacklists_updater_nginx.sh
- run: ./blacklists_updater_iptables.sh - run: ./blacklists_updater_iptables.sh
- run: ./blacklists_updater_nftables.sh - run: ./blacklists_updater_nftables.sh
- run: ./blacklists_updater_routes.sh
- uses: ./.github/actions/gitPush - uses: ./.github/actions/gitPush
env: env:
PUSH_FILES: blacklists/ blacklists_nginx/ blacklists_iptables/ blacklists_nftables/ PUSH_FILES: blacklists/ blacklists_nginx/ blacklists_iptables/ blacklists_nftables/ blacklists_route/

View File

@@ -2,14 +2,22 @@
### Blacklists are updated daily! ### Blacklists are updated daily!
> [!IMPORTANT]
> A very important feature has been added: dedicated lists of VK Cloud / VK networks that can be used to block **OUTGOING** traffic from your server (iptables/ipset and nftables formats are available).
> This can help reduce the risk of Messenger MAX being used to compromise your VPN server.
> The best security option is to avoid installing Messenger MAX at all on a phone where VPN access is configured.
This repository contains Python scripts that allow you to retrieve network lists based on either an Autonomous System (AS) name or a Network name. Also you can download and parse the whole RIPE database to get information about Networks for the further analysis. This repository contains Python scripts that allow you to retrieve network lists based on either an Autonomous System (AS) name or a Network name. Also you can download and parse the whole RIPE database to get information about Networks for the further analysis.
## Important Links
**Ready-to-use blacklists in multiple formats:** **Ready-to-use blacklists in multiple formats:**
- [Text blacklists in `blacklists/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists) - Plain text format with IPv4/IPv6 separation - [Text blacklists in `blacklists/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists) - Plain text format with IPv4/IPv6 separation
- [Nginx configurations in `blacklists_nginx/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists_nginx) - Ready to include in your nginx config - [Nginx configurations in `blacklists_nginx/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists_nginx) - Ready to include in your nginx config
- [IPTables/IPSet files in `blacklists_iptables/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists_iptables) - Optimized for iptables with ipset - [IPTables/IPSet files in `blacklists_iptables/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists_iptables) - Optimized for iptables with ipset
- [Other network and ASN lists in `auto/`](https://github.com/C24Be/AS_Network_List/tree/main/auto) - Comprehensive Russian network data - [nftables files in `blacklists_nftables/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists_nftables) - Ready-to-load sets and rules for nftables
- [Linux route files in `blacklists_route/`](https://github.com/C24Be/AS_Network_List/tree/main/blacklists_route) - VK route blackholes to loopback (IPv4/IPv6)
## Files and features ## Files and features
@@ -28,6 +36,8 @@ This repository contains Python scripts that allow you to retrieve network lists
- `blacklists_updater_txt.sh`: Generates text-based blacklists with IPv4/IPv6 separation - `blacklists_updater_txt.sh`: Generates text-based blacklists with IPv4/IPv6 separation
- `blacklists_updater_nginx.sh`: Generates nginx configuration files with deny directives - `blacklists_updater_nginx.sh`: Generates nginx configuration files with deny directives
- `blacklists_updater_iptables.sh`: Generates ipset configuration files for iptables/ip6tables - `blacklists_updater_iptables.sh`: Generates ipset configuration files for iptables/ip6tables
- `blacklists_updater_nftables.sh`: Generates nftables blacklist files (mixed/v4/v6 and VK-specific)
- `blacklists_updater_routes.sh`: Generates Linux route files to send VK networks to loopback (`127.0.0.1` / `::1`)
### Generated Blacklists ### Generated Blacklists
@@ -47,25 +57,34 @@ This repository contains Python scripts that allow you to retrieve network lists
**IPTables/IPSet Format** (`blacklists_iptables/` folder): **IPTables/IPSet Format** (`blacklists_iptables/` folder):
- `blacklist.ipset`: IPSet configuration for mixed IPv4/IPv6 (**daily generated**)
- `blacklist-v4.ipset`: IPSet configuration for IPv4 only (**daily generated**) - `blacklist-v4.ipset`: IPSet configuration for IPv4 only (**daily generated**)
- `blacklist-v6.ipset`: IPSet configuration for IPv6 only (**daily generated**) - `blacklist-v6.ipset`: IPSet configuration for IPv6 only (**daily generated**)
- `blacklist-vk-v4.ipset`: IPSet configuration for VK-only IPv4 networks (**daily generated**)
- `blacklist-vk-v6.ipset`: IPSet configuration for VK-only IPv6 networks (**daily generated**)
- `README.md`: Complete usage documentation for iptables integration - `README.md`: Complete usage documentation for iptables integration
**nftables Format** (`blacklists_nftables/` folder): **nftables Format** (`blacklists_nftables/` folder):
* `blacklist.nft`: nftables configuration for mixed IPv4/IPv6 (**daily generated**) * `blacklist.nft`: nftables set definitions for mixed IPv4/IPv6 (**daily generated**)
* `blacklist-v4.nft`: nftables configuration for IPv4 only (**daily generated**) * `blacklist-v4.nft`: nftables configuration for IPv4 only (**daily generated**)
* `blacklist-v6.nft`: nftables configuration for IPv6 only (**daily generated**) * `blacklist-v6.nft`: nftables configuration for IPv6 only (**daily generated**)
* `blacklist-vk.nft`: nftables set definitions for VK-only mixed IPv4/IPv6 (**daily generated**)
* `blacklist-vk-v4.nft`: nftables configuration for VK-only IPv4 networks (**daily generated**)
* `blacklist-vk-v6.nft`: nftables configuration for VK-only IPv6 networks (**daily generated**)
* `README.md`: Complete usage documentation for nftables integration * `README.md`: Complete usage documentation for nftables integration
**Linux Routes Format** (`blacklists_route/` folder):
* `blacklist-vk-v4.routes`: IPv4 routes for VK-only networks to `127.0.0.1` via `lo` (**daily generated**)
* `blacklist-vk-v6.routes`: IPv6 routes for VK-only networks to `::1` via `lo` (**daily generated**)
### Reference Lists ### Reference Lists
**Contributors are welcome!** **Contributors are welcome!**
- `lists/ru-gov-netnames.txt`: A list of network names associated with the Russian government. - `lists/ru-gov-netnames.txt`: A list of network names associated with the Russian government.
- `lists/ru-gov-asns.txt`: A list of AS numbers associated with the Russian government. - ASN candidates used for blacklists are derived automatically from `auto/all-ru-asn.txt`.
### Auto-Generated Data ### Auto-Generated Data
@@ -93,22 +112,55 @@ wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_ngi
**For IPTables/IPSet:** **For IPTables/IPSet:**
```bash ```bash
# Download and load into ipset # Download and load IPv4/IPv6 sets into ipset
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_iptables/blacklist.ipset wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_iptables/blacklist-v4.ipset
ipset restore < blacklist.ipset wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_iptables/blacklist-v6.ipset
iptables -I INPUT -m set --match-set blacklist-v4 src -j DROP ipset restore < blacklist-v4.ipset
ip6tables -I INPUT -m set --match-set blacklist-v6 src -j DROP ipset restore < blacklist-v6.ipset
iptables -I INPUT -m set --match-set blacklist-v4 src -m conntrack --ctstate NEW -j DROP
ip6tables -I INPUT -m set --match-set blacklist-v6 src -m conntrack --ctstate NEW -j DROP
``` ```
**For nftables:** **For nftables:**
````bash ````bash
# Download and load into nftables # Download and load nftables sets
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist.nft wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist.nft
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist-v4.nft
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist-v6.nft
sudo nft -f blacklist.nft sudo nft -f blacklist.nft
sudo nft -f blacklist-v4.nft
sudo nft -f blacklist-v6.nft
# Protect VM from incoming blacklist sources
sudo nft add chain inet filter input '{ type filter hook input priority 0; policy accept; }'
sudo nft add rule inet filter input ip saddr @blacklist_v4 counter reject
sudo nft add rule inet filter input ip6 saddr @blacklist_v6 counter reject
# VK-only outbound blocking for VPN clients via NAT/FORWARD
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist-vk.nft
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist-vk-v4.nft
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist-vk-v6.nft
sudo nft -f blacklist-vk.nft
sudo nft -f blacklist-vk-v4.nft
sudo nft -f blacklist-vk-v6.nft
sudo nft add chain inet filter forward '{ type filter hook forward priority 0; policy accept; }'
sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip daddr @blacklist_vk_v4 counter reject
sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip6 daddr @blacklist_vk_v6 counter reject
# View the loaded rules # View the loaded rules
sudo nft list ruleset sudo nft list ruleset
```` ````
**For Linux Routes (VK loopback blackhole):**
```bash
# Download and apply VK route files
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_route/blacklist-vk-v4.routes
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_route/blacklist-vk-v6.routes
sudo sh blacklist-vk-v4.routes
sudo sh blacklist-vk-v6.routes
```
**For Custom Applications:** **For Custom Applications:**
```bash ```bash
@@ -158,16 +210,16 @@ See the README files in each folder for detailed usage instructions.
./network_list_from_as.py AS61280 ./network_list_from_as.py AS61280
``` ```
2. Run the script with a URL to a file in a GitHub repository as an argument: 2. Run the script with a URL to a file with one ASN per line:
```bash ```bash
./network_list_from_as.py https://github.com/C24Be/AS_Network_List/blob/main/lists/ru-gov-asns.txt ./network_list_from_as.py https://example.com/asns.txt
``` ```
Or better use the raw file link: Or better use the raw file link:
```bash ```bash
./network_list_from_as.py https://raw.githubusercontent.com/C24Be/AS_Network_List/main/lists/ru-gov-asns.txt ./network_list_from_as.py https://example.com/asns-raw.txt
``` ```
3. To display a help message, use the `-h` or `--help` switch: 3. To display a help message, use the `-h` or `--help` switch:
@@ -232,16 +284,6 @@ This repository uses GitHub Actions to automatically update blacklists:
All blacklists are automatically regenerated and committed to ensure you always have the latest data. All blacklists are automatically regenerated and committed to ensure you always have the latest data.
## Blacklist Format Comparison
| Format | Best For | Performance | Ease of Use | File Size |
|--------|----------|-------------|-------------|-----------|
| **Text** | Custom scripts, analysis | N/A | ⭐⭐⭐⭐⭐ | Small |
| **Nginx** | Web servers, reverse proxies | Good | ⭐⭐⭐⭐ | Medium |
| **IPSet** | Firewalls, large-scale blocking | Excellent | ⭐⭐⭐ | Medium |
**Recommendation**: Use IPSet for firewall-level blocking (best performance), Nginx for web application layer, and text format for custom integrations.
## Additional information ## Additional information
- [RIPE DB Inetnum](https://ftp.ripe.net/ripe/dbase/split/ripe.db.inetnum.gz) - [RIPE DB Inetnum](https://ftp.ripe.net/ripe/dbase/split/ripe.db.inetnum.gz)

View File

@@ -192,7 +192,7 @@ AS8998 TUMTTL-AS ("Russian company" LLC)
AS9006 GEPSPD-AS (CJSC "Giproenergoprom") AS9006 GEPSPD-AS (CJSC "Giproenergoprom")
AS9032 LIDER-RF-DC (Citytelecom LLC) AS9032 LIDER-RF-DC (Citytelecom LLC)
AS9039 IIAT-AS (Institute of information & analytical technologies IIAT, Limited) AS9039 IIAT-AS (Institute of information & analytical technologies IIAT, Limited)
AS9041 rsvpu (Russian State Vocational Pedagogical University) AS9041 USPU (Ural State Pedagogical University)
AS9049 ERTH-TRANSIT-AS (JSC "ER-Telecom Holding") AS9049 ERTH-TRANSIT-AS (JSC "ER-Telecom Holding")
AS9056 PSN-AS (Keldysh Institute of Applied Mathematics, Russian Academy of Sciences) AS9056 PSN-AS (Keldysh Institute of Applied Mathematics, Russian Academy of Sciences)
AS9058 KAN-AUTO-AS (KAN AUTO Ltd.) AS9058 KAN-AUTO-AS (KAN AUTO Ltd.)
@@ -334,10 +334,8 @@ AS16020 TASCOM (PJSC Moscow city telephone network)
AS16043 SAMARA-TELECOM-AS (PJSC "Vimpelcom") AS16043 SAMARA-TELECOM-AS (PJSC "Vimpelcom")
AS16047 YAR-TT-AS (Limited Liability Company YarTranzitTelecom) AS16047 YAR-TT-AS (Limited Liability Company YarTranzitTelecom)
AS16054 NSOELSV-AS (PJSC Rostelecom) AS16054 NSOELSV-AS (PJSC Rostelecom)
AS16064 Infopac-AS ("Region Svyaz Konsalt" LLC)
AS16083 STACK-AS (StackNet Service, LLC) AS16083 STACK-AS (StackNet Service, LLC)
AS16094 MagTelecom-AS (Magistralny Telecom LLC) AS16094 MagTelecom-AS (Magistralny Telecom LLC)
AS16118 NNT-MOSCOW-AS (Thyphone Communications LLC)
AS16143 RadioNet-AS (OOO NIIR-RadioNet) AS16143 RadioNet-AS (OOO NIIR-RadioNet)
AS16173 CQGI-Rus (OOO CQGI Rus) AS16173 CQGI-Rus (OOO CQGI Rus)
AS16176 MEGALINE-RU-AS (MegaLine Ltd.) AS16176 MEGALINE-RU-AS (MegaLine Ltd.)
@@ -394,7 +392,7 @@ AS20985 ARTX-AS (ArtX LLC)
AS21017 VSI-AS (PJSC Rostelecom) AS21017 VSI-AS (PJSC Rostelecom)
AS21020 GAU-RD-CIT-AS (State Autonomous Institution of the Republic of Dagestan "Information Technology Center") AS21020 GAU-RD-CIT-AS (State Autonomous Institution of the Republic of Dagestan "Information Technology Center")
AS21023 UPB-AS (Joint Stock Company Ural Industrial Bank) AS21023 UPB-AS (Joint Stock Company Ural Industrial Bank)
AS21030 CDNNOW-AS (Docker LTD) AS21030 CDNNOW-AS (Cluster LLC)
AS21051 NIVAL-AS (ASTRUM LLC) AS21051 NIVAL-AS (ASTRUM LLC)
AS21087 ELCITY-AS (Electronniy gorod, Ltd.) AS21087 ELCITY-AS (Electronniy gorod, Ltd.)
AS21103 PRIMTEL-AS (MTS PJSC) AS21103 PRIMTEL-AS (MTS PJSC)
@@ -449,7 +447,7 @@ AS24658 IVC-AS (Information & Computing Center, Ltd.)
AS24663 COMPLAT-AS (ZAO "COMPLAT-TELECOM") AS24663 COMPLAT-AS (ZAO "COMPLAT-TELECOM")
AS24665 SUTC-AS (PJSC Rostelecom) AS24665 SUTC-AS (PJSC Rostelecom)
AS24680 COMPNET-AS (JS Company Compnet) AS24680 COMPNET-AS (JS Company Compnet)
AS24683 OSU-AS (Federal State Budgetary Educational Institution of Higher Education "Orenburg State University") AS24683 OSU-AS (Federal State Budgetary Educational Institution Of Higher Education "Orenburg State University Named After V. A. Bondarenko")
AS24684 IPPORT-NET (OOO IPPORT) AS24684 IPPORT-NET (OOO IPPORT)
AS24689 ROSINTEL-AS (JSC Rosin.telekom) AS24689 ROSINTEL-AS (JSC Rosin.telekom)
AS24697 SATURN-AS (Saturn LLC) AS24697 SATURN-AS (Saturn LLC)
@@ -523,7 +521,7 @@ AS25592 NETIS-AS (NETIS Telecom LLC)
AS25880 Yurgatelekom-AS (Public joint-stock company "RUTELEKOM") AS25880 Yurgatelekom-AS (Public joint-stock company "RUTELEKOM")
AS28703 URAL-INTERCARD-AS (PJSC "Vimpelcom") AS28703 URAL-INTERCARD-AS (PJSC "Vimpelcom")
AS28709 VKONTAKTE-REGIONAL-CDN (LLC VK) AS28709 VKONTAKTE-REGIONAL-CDN (LLC VK)
AS28712 ROSBANK ("TBANK" JSC) AS28712 T-Media ("TBANK" JSC)
AS28719 HMFES (PJSC Rostelecom) AS28719 HMFES (PJSC Rostelecom)
AS28734 ATON-AS (Aton LLC) AS28734 ATON-AS (Aton LLC)
AS28736 ZENCOM-TELECOMNET (Zencom LTD) AS28736 ZENCOM-TELECOMNET (Zencom LTD)
@@ -599,7 +597,6 @@ AS29497 KUBANGSM (MTS PJSC)
AS29503 RATMIR-MOSCOW-AS (JSC Ratmir-ADS) AS29503 RATMIR-MOSCOW-AS (JSC Ratmir-ADS)
AS29509 OST-AS (Teal fox LLC) AS29509 OST-AS (Teal fox LLC)
AS29528 ERC-AS (ERC - Financial Logistics Ltd.) AS29528 ERC-AS (ERC - Financial Logistics Ltd.)
AS29530 TRUSTINTEL (Thyphone Communications LLC)
AS29547 CENTRINFORM-NSK-AS (JSC "Centrinform") AS29547 CENTRINFORM-NSK-AS (JSC "Centrinform")
AS29554 SVYAZNOY-CHAIN-AS (Svyaznoy Chain LLC) AS29554 SVYAZNOY-CHAIN-AS (Svyaznoy Chain LLC)
AS29561 PROTEK-AS (JSC Firma Center Vnedreniya Protek) AS29561 PROTEK-AS (JSC Firma Center Vnedreniya Protek)
@@ -990,7 +987,7 @@ AS39047 KERCHNET-AS (Multiservice Networks Ltd.)
AS39048 RUNTIME-AS (Runtime LLC) AS39048 RUNTIME-AS (Runtime LLC)
AS39054 STBUR-AS (PJSC Rostelecom) AS39054 STBUR-AS (PJSC Rostelecom)
AS39058 STEP-AS (Step Logic LTD) AS39058 STEP-AS (Step Logic LTD)
AS39061 LAYKA-LTD-AS (Layka Ltd.) AS39061 LAYKA-LTD-AS (Ray-Svyaz Ltd.)
AS39068 MainTelecom (Main Telecom LLC) AS39068 MainTelecom (Main Telecom LLC)
AS39073 FGKUES-AS (PJSC Rosseti) AS39073 FGKUES-AS (PJSC Rosseti)
AS39087 PAKT-AS (P.A.K.T LLC) AS39087 PAKT-AS (P.A.K.T LLC)
@@ -1124,7 +1121,6 @@ AS41067 SEB-AS (SEB Bank JSC)
AS41082 URALTRANSCOM-AS (Company Uraltranskom Ltd.) AS41082 URALTRANSCOM-AS (Company Uraltranskom Ltd.)
AS41085 E-PORT-AS (QIWI JSC) AS41085 E-PORT-AS (QIWI JSC)
AS41098 NETFOX-AS (NetFox Ltd.) AS41098 NETFOX-AS (NetFox Ltd.)
AS41101 IntellCom ("Region Svyaz Konsalt" LLC)
AS41102 ZRTELECOM-AS (ZR-Telecom plus Ltd.) AS41102 ZRTELECOM-AS (ZR-Telecom plus Ltd.)
AS41106 teltel (My Telecom Ltd.) AS41106 teltel (My Telecom Ltd.)
AS41109 TELEMEDNET (Center of Children Telemedicin and new information technologis) AS41109 TELEMEDNET (Center of Children Telemedicin and new information technologis)
@@ -1223,7 +1219,7 @@ AS41754 ERTH-PENZA-AS (JSC "ER-Telecom Holding")
AS41762 SEVNET (Nikita Sergienko) AS41762 SEVNET (Nikita Sergienko)
AS41771 MTS-BB-OMSK (MTS PJSC) AS41771 MTS-BB-OMSK (MTS PJSC)
AS41774 KAPLIFE-AS (Kapital Life Insurance LLC) AS41774 KAPLIFE-AS (Kapital Life Insurance LLC)
AS41775 ECOM_AS (LLC E-COM) AS41775 ECOM_AS (SKB Kontur Production JSC)
AS41783 ITAEC-AS (Informational technologies and electronic communications LLC) AS41783 ITAEC-AS (Informational technologies and electronic communications LLC)
AS41786 ERTH-YOLA-AS (JSC "ER-Telecom Holding") AS41786 ERTH-YOLA-AS (JSC "ER-Telecom Holding")
AS41787 OLC-AS (Online City LLC) AS41787 OLC-AS (Online City LLC)
@@ -1269,7 +1265,6 @@ AS42038 VLADLINK-AS (Krivets Sergey Sergeevich)
AS42048 SFU-AS (Siberian Federal University) AS42048 SFU-AS (Siberian Federal University)
AS42056 MERT-RF-AS (Ministry for Economic Development of the Russian Federation) AS42056 MERT-RF-AS (Ministry for Economic Development of the Russian Federation)
AS42062 TRSKZN-AS (TR-Telecom JSC) AS42062 TRSKZN-AS (TR-Telecom JSC)
AS42065 ETELECOM-AS (AO ElectronTelecom)
AS42069 MSK-EFES-AS ("AB InBev Efes", JSC) AS42069 MSK-EFES-AS ("AB InBev Efes", JSC)
AS42071 EOFFICE-AS (OOO Electronic Office) AS42071 EOFFICE-AS (OOO Electronic Office)
AS42072 POZITIS-RU-AS (Positive Systems LLC) AS42072 POZITIS-RU-AS (Positive Systems LLC)
@@ -1716,7 +1711,6 @@ AS44674 MEGALINE-RU-AS (MegaLine Ltd.)
AS44676 VMAGE-AS (Perviy TSOD LLC) AS44676 VMAGE-AS (Perviy TSOD LLC)
AS44677 MTS-NGCLOUD-AS (MTS PJSC) AS44677 MTS-NGCLOUD-AS (MTS PJSC)
AS44678 TVT-NET (INKO Ltd.) AS44678 TVT-NET (INKO Ltd.)
AS44680 MORION-AS (Morion JSC)
AS44687 NDBANK-AS (NDBank JSC) AS44687 NDBANK-AS (NDBank JSC)
AS44688 RITS-AS (Rieltorskiy Informatsionniy Tsentr autonomous non-commercial organization) AS44688 RITS-AS (Rieltorskiy Informatsionniy Tsentr autonomous non-commercial organization)
AS44693 IT-SYSTEMY-AS (IT Sistemy Ltd.) AS44693 IT-SYSTEMY-AS (IT Sistemy Ltd.)
@@ -1749,7 +1743,7 @@ AS44840 KRONSHTADT-AS (Kronshtadt JSC)
AS44843 MALOCO-AS (MSS LLC.) AS44843 MALOCO-AS (MSS LLC.)
AS44844 UNITLINE_VLG_NET (OOO "MediaSeti") AS44844 UNITLINE_VLG_NET (OOO "MediaSeti")
AS44845 CIT ("Company Internet Technologies" LLC) AS44845 CIT ("Company Internet Technologies" LLC)
AS44847 NETLINE-NSP-AS (Russian Company Sever LLC) AS44847 NOVATEK-NTC-AS ("Russian company" LLC)
AS44848 E2CORP-AS (E2 OAO) AS44848 E2CORP-AS (E2 OAO)
AS44849 SDN-SETI-AS (S.D.N. Seti Ltd.) AS44849 SDN-SETI-AS (S.D.N. Seti Ltd.)
AS44857 VSW-AS (JSC Vyksa Steel Works) AS44857 VSW-AS (JSC Vyksa Steel Works)
@@ -2420,7 +2414,7 @@ AS50222 MARIINSKY-AS (Federal Government Cultural Organization "State Academic M
AS50227 Orbita-plus-Gagarin (LLC "Orbita plus Gagarin") AS50227 Orbita-plus-Gagarin (LLC "Orbita plus Gagarin")
AS50228 ANEXTEL-AS ("ANEXTEL" LLC) AS50228 ANEXTEL-AS ("ANEXTEL" LLC)
AS50240 EXTRACOM-AS (MTS PJSC) AS50240 EXTRACOM-AS (MTS PJSC)
AS50241 UNITTEL-AS (UnitTelecom Ltd) AS50241 UNITTEL-AS (Unittel Ltd)
AS50248 VVO-AS (Vladivostok international airport JSC) AS50248 VVO-AS (Vladivostok international airport JSC)
AS50254 sky-en (Sky Engineering LLC) AS50254 sky-en (Sky Engineering LLC)
AS50257 AMOBILE-AS (JV A-Mobile Ltd.) AS50257 AMOBILE-AS (JV A-Mobile Ltd.)
@@ -2518,7 +2512,7 @@ AS50676 TELCOMNET (TelCom LLC)
AS50677 SUPEROX (SUPEROX LLC) AS50677 SUPEROX (SUPEROX LLC)
AS50687 SAFETEL-AS (Safetel LTD) AS50687 SAFETEL-AS (Safetel LTD)
AS50688 MEDIANET (MediaNet Ltd.) AS50688 MEDIANET (MediaNet Ltd.)
AS50690 DOCROBOT-AS (E-COM LLC) AS50690 DOCROBOT-AS (SKB Kontur Production JSC)
AS50691 RU-RN-INFORM-SAMARA (Siberian Internet Company LLC) AS50691 RU-RN-INFORM-SAMARA (Siberian Internet Company LLC)
AS50701 KOMATSU-CIS (Komatsu CIS, LLC) AS50701 KOMATSU-CIS (Komatsu CIS, LLC)
AS50703 GSRAS (Federal State Budgetary Institution of Science Federal Research Center "Geophysical Survey of the Russian Academy of Sciences") AS50703 GSRAS (Federal State Budgetary Institution of Science Federal Research Center "Geophysical Survey of the Russian Academy of Sciences")
@@ -2633,7 +2627,7 @@ AS51193 INBANK-AS (OOO "Inbank")
AS51199 TechnoTek (TECHNOTEK LLC) AS51199 TechnoTek (TECHNOTEK LLC)
AS51200 DIDI-AS (LLC Digital Dialogue-Nets) AS51200 DIDI-AS (LLC Digital Dialogue-Nets)
AS51209 RN-GOSA (Siberian Internet Company LLC) AS51209 RN-GOSA (Siberian Internet Company LLC)
AS51211 former_RulevAD (CRELCOM LLC) AS51211 OpenNet (CRELCOM LLC)
AS51213 Katren-AS (JSC "SCIENTIFIC AND PRODUCTION COMPANY "KATREN") AS51213 Katren-AS (JSC "SCIENTIFIC AND PRODUCTION COMPANY "KATREN")
AS51214 VIKS-NET (Vikscom Ltd.) AS51214 VIKS-NET (Vikscom Ltd.)
AS51218 AS51218 (Zvuk LLC) AS51218 AS51218 (Zvuk LLC)
@@ -2735,7 +2729,7 @@ AS51659 ASBAXET (LLC Baxet)
AS51663 ASADMSOL (Administration of Solikamsk city) AS51663 ASADMSOL (Administration of Solikamsk city)
AS51665 TELEDISCOUNT (Telediscount AO) AS51665 TELEDISCOUNT (Telediscount AO)
AS51666 AS-OKHOST-LLC (OOO WestCall Ltd.) AS51666 AS-OKHOST-LLC (OOO WestCall Ltd.)
AS51667 RENCONS-AS (Renaissance Construction JSC) AS51667 RENCONS-AS (BaltStroyKomplektatsiya LLC)
AS51668 ASPIK (PIK SHb PJSC) AS51668 ASPIK (PIK SHb PJSC)
AS51669 HCN-NET (Home Computer Networks ltd.) AS51669 HCN-NET (Home Computer Networks ltd.)
AS51680 SSIV-AS (Soyuz Svyatogo Ioanna Voina LLC) AS51680 SSIV-AS (Soyuz Svyatogo Ioanna Voina LLC)
@@ -2870,7 +2864,7 @@ AS56420 RYAZAN-AS (JSC "ER-Telecom Holding")
AS56425 HANDY-AS (LLC HandySolutions) AS56425 HANDY-AS (LLC HandySolutions)
AS56426 ASVOLNA-NET (VOLNA-SERVIS LLC) AS56426 ASVOLNA-NET (VOLNA-SERVIS LLC)
AS56436 CHELYABINSK-AS (Ministry of Information Technologies and Communications of Chelyabinsk Region) AS56436 CHELYABINSK-AS (Ministry of Information Technologies and Communications of Chelyabinsk Region)
AS56437 ASVDC-NETWORK (VDC-ComDEK LLC) AS56437 ASVDC-NETWORK (Modus LLC)
AS56445 NNP-AS (JSC "Tomsknefteproduct" VNK) AS56445 NNP-AS (JSC "Tomsknefteproduct" VNK)
AS56451 TELEKEY-S-AS (Telekey-S Ltd) AS56451 TELEKEY-S-AS (Telekey-S Ltd)
AS56462 Destiny (Destiny.Games LLC) AS56462 Destiny (Destiny.Games LLC)
@@ -2979,12 +2973,12 @@ AS56903 INTECH-GLOBAL ("INTECH GLOBAL", LLC)
AS56915 MALINA-AS (Malina LLC) AS56915 MALINA-AS (Malina LLC)
AS56917 DALTECH-AS (DalTech Ltd) AS56917 DALTECH-AS (DalTech Ltd)
AS56923 VIRTUALFORT-AS (Virtualfort OOO) AS56923 VIRTUALFORT-AS (Virtualfort OOO)
AS56928 -no-description- (No org name found) AS56928 BIZNESFON-AS (BIZNESFON LLC)
AS56930 -no-description- (No org name found) AS56930 CLARUSTELECOM-AS (ClarusTelecom LLC)
AS56931 -no-description- (No org name found) AS56931 Eurasia-Peering (Eurasia Peering LLC)
AS56934 -no-description- (No org name found) AS56934 CRAFTHOSTING-AS (Zhemoedov Sergey Mihaylovich)
AS56935 -no-description- (No org name found) AS56935 Clinic-Aesthetic-Medicine (Clinic of Aesthetic Medicine CJSC)
AS56936 -no-description- (No org name found) AS56936 ASMBIT (Mbit City Ltd.)
AS56939 -no-description- (No org name found) AS56939 -no-description- (No org name found)
AS56947 -no-description- (No org name found) AS56947 -no-description- (No org name found)
AS56954 -no-description- (No org name found) AS56954 -no-description- (No org name found)
@@ -3087,7 +3081,6 @@ AS57418 -no-description- (No org name found)
AS57420 -no-description- (No org name found) AS57420 -no-description- (No org name found)
AS57421 -no-description- (No org name found) AS57421 -no-description- (No org name found)
AS57424 -no-description- (No org name found) AS57424 -no-description- (No org name found)
AS57425 -no-description- (No org name found)
AS57434 -no-description- (No org name found) AS57434 -no-description- (No org name found)
AS57438 -no-description- (No org name found) AS57438 -no-description- (No org name found)
AS57449 -no-description- (No org name found) AS57449 -no-description- (No org name found)
@@ -3717,7 +3710,6 @@ AS62286 -no-description- (No org name found)
AS62287 -no-description- (No org name found) AS62287 -no-description- (No org name found)
AS62288 -no-description- (No org name found) AS62288 -no-description- (No org name found)
AS62293 -no-description- (No org name found) AS62293 -no-description- (No org name found)
AS62295 -no-description- (No org name found)
AS62314 -no-description- (No org name found) AS62314 -no-description- (No org name found)
AS62316 -no-description- (No org name found) AS62316 -no-description- (No org name found)
AS62330 -no-description- (No org name found) AS62330 -no-description- (No org name found)
@@ -4142,8 +4134,10 @@ AS199624 -no-description- (No org name found)
AS199634 -no-description- (No org name found) AS199634 -no-description- (No org name found)
AS199635 -no-description- (No org name found) AS199635 -no-description- (No org name found)
AS199647 -no-description- (No org name found) AS199647 -no-description- (No org name found)
AS199651 -no-description- (No org name found)
AS199658 -no-description- (No org name found) AS199658 -no-description- (No org name found)
AS199664 -no-description- (No org name found) AS199664 -no-description- (No org name found)
AS199668 -no-description- (No org name found)
AS199669 -no-description- (No org name found) AS199669 -no-description- (No org name found)
AS199678 -no-description- (No org name found) AS199678 -no-description- (No org name found)
AS199726 -no-description- (No org name found) AS199726 -no-description- (No org name found)
@@ -4155,6 +4149,7 @@ AS199782 -no-description- (No org name found)
AS199798 -no-description- (No org name found) AS199798 -no-description- (No org name found)
AS199805 -no-description- (No org name found) AS199805 -no-description- (No org name found)
AS199809 -no-description- (No org name found) AS199809 -no-description- (No org name found)
AS199814 -no-description- (No org name found)
AS199820 -no-description- (No org name found) AS199820 -no-description- (No org name found)
AS199827 -no-description- (No org name found) AS199827 -no-description- (No org name found)
AS199833 -no-description- (No org name found) AS199833 -no-description- (No org name found)
@@ -4170,12 +4165,14 @@ AS199922 -no-description- (No org name found)
AS199933 -no-description- (No org name found) AS199933 -no-description- (No org name found)
AS199940 -no-description- (No org name found) AS199940 -no-description- (No org name found)
AS199945 -no-description- (No org name found) AS199945 -no-description- (No org name found)
AS199956 -no-description- (No org name found)
AS199961 -no-description- (No org name found) AS199961 -no-description- (No org name found)
AS199966 -no-description- (No org name found) AS199966 -no-description- (No org name found)
AS199970 -no-description- (No org name found) AS199970 -no-description- (No org name found)
AS199975 -no-description- (No org name found) AS199975 -no-description- (No org name found)
AS199991 -no-description- (No org name found) AS199991 -no-description- (No org name found)
AS199992 -no-description- (No org name found) AS199992 -no-description- (No org name found)
AS200007 -no-description- (No org name found)
AS200015 -no-description- (No org name found) AS200015 -no-description- (No org name found)
AS200022 -no-description- (No org name found) AS200022 -no-description- (No org name found)
AS200035 -no-description- (No org name found) AS200035 -no-description- (No org name found)
@@ -4187,18 +4184,27 @@ AS200066 -no-description- (No org name found)
AS200095 -no-description- (No org name found) AS200095 -no-description- (No org name found)
AS200110 -no-description- (No org name found) AS200110 -no-description- (No org name found)
AS200121 -no-description- (No org name found) AS200121 -no-description- (No org name found)
AS200122 -no-description- (No org name found)
AS200123 -no-description- (No org name found) AS200123 -no-description- (No org name found)
AS200152 -no-description- (No org name found) AS200152 -no-description- (No org name found)
AS200161 -no-description- (No org name found) AS200161 -no-description- (No org name found)
AS200166 -no-description- (No org name found) AS200166 -no-description- (No org name found)
AS200172 -no-description- (No org name found)
AS200175 -no-description- (No org name found) AS200175 -no-description- (No org name found)
AS200210 -no-description- (No org name found)
AS200214 -no-description- (No org name found) AS200214 -no-description- (No org name found)
AS200215 -no-description- (No org name found) AS200215 -no-description- (No org name found)
AS200219 -no-description- (No org name found)
AS200235 -no-description- (No org name found)
AS200264 -no-description- (No org name found) AS200264 -no-description- (No org name found)
AS200285 -no-description- (No org name found) AS200285 -no-description- (No org name found)
AS200293 -no-description- (No org name found)
AS200294 -no-description- (No org name found) AS200294 -no-description- (No org name found)
AS200302 -no-description- (No org name found) AS200302 -no-description- (No org name found)
AS200323 -no-description- (No org name found) AS200323 -no-description- (No org name found)
AS200328 -no-description- (No org name found)
AS200340 -no-description- (No org name found)
AS200341 -no-description- (No org name found)
AS200350 -no-description- (No org name found) AS200350 -no-description- (No org name found)
AS200362 -no-description- (No org name found) AS200362 -no-description- (No org name found)
AS200364 -no-description- (No org name found) AS200364 -no-description- (No org name found)
@@ -4215,6 +4221,7 @@ AS200457 -no-description- (No org name found)
AS200463 -no-description- (No org name found) AS200463 -no-description- (No org name found)
AS200466 -no-description- (No org name found) AS200466 -no-description- (No org name found)
AS200479 -no-description- (No org name found) AS200479 -no-description- (No org name found)
AS200483 -no-description- (No org name found)
AS200487 -no-description- (No org name found) AS200487 -no-description- (No org name found)
AS200496 -no-description- (No org name found) AS200496 -no-description- (No org name found)
AS200503 -no-description- (No org name found) AS200503 -no-description- (No org name found)
@@ -4327,7 +4334,6 @@ AS201417 -no-description- (No org name found)
AS201429 -no-description- (No org name found) AS201429 -no-description- (No org name found)
AS201430 -no-description- (No org name found) AS201430 -no-description- (No org name found)
AS201443 -no-description- (No org name found) AS201443 -no-description- (No org name found)
AS201465 -no-description- (No org name found)
AS201468 -no-description- (No org name found) AS201468 -no-description- (No org name found)
AS201469 -no-description- (No org name found) AS201469 -no-description- (No org name found)
AS201475 -no-description- (No org name found) AS201475 -no-description- (No org name found)
@@ -4482,7 +4488,6 @@ AS202852 -no-description- (No org name found)
AS202871 -no-description- (No org name found) AS202871 -no-description- (No org name found)
AS202873 -no-description- (No org name found) AS202873 -no-description- (No org name found)
AS202880 -no-description- (No org name found) AS202880 -no-description- (No org name found)
AS202951 -no-description- (No org name found)
AS202961 -no-description- (No org name found) AS202961 -no-description- (No org name found)
AS202963 -no-description- (No org name found) AS202963 -no-description- (No org name found)
AS202974 -no-description- (No org name found) AS202974 -no-description- (No org name found)
@@ -4634,6 +4639,7 @@ AS204496 -no-description- (No org name found)
AS204507 -no-description- (No org name found) AS204507 -no-description- (No org name found)
AS204520 -no-description- (No org name found) AS204520 -no-description- (No org name found)
AS204525 -no-description- (No org name found) AS204525 -no-description- (No org name found)
AS204531 -no-description- (No org name found)
AS204551 -no-description- (No org name found) AS204551 -no-description- (No org name found)
AS204553 -no-description- (No org name found) AS204553 -no-description- (No org name found)
AS204564 -no-description- (No org name found) AS204564 -no-description- (No org name found)
@@ -4666,7 +4672,6 @@ AS204846 -no-description- (No org name found)
AS204848 -no-description- (No org name found) AS204848 -no-description- (No org name found)
AS204878 -no-description- (No org name found) AS204878 -no-description- (No org name found)
AS204891 -no-description- (No org name found) AS204891 -no-description- (No org name found)
AS204895 -no-description- (No org name found)
AS204898 -no-description- (No org name found) AS204898 -no-description- (No org name found)
AS204908 -no-description- (No org name found) AS204908 -no-description- (No org name found)
AS204909 -no-description- (No org name found) AS204909 -no-description- (No org name found)
@@ -4691,7 +4696,6 @@ AS205135 -no-description- (No org name found)
AS205153 -no-description- (No org name found) AS205153 -no-description- (No org name found)
AS205158 -no-description- (No org name found) AS205158 -no-description- (No org name found)
AS205161 -no-description- (No org name found) AS205161 -no-description- (No org name found)
AS205162 -no-description- (No org name found)
AS205194 -no-description- (No org name found) AS205194 -no-description- (No org name found)
AS205221 -no-description- (No org name found) AS205221 -no-description- (No org name found)
AS205226 -no-description- (No org name found) AS205226 -no-description- (No org name found)
@@ -4710,7 +4714,6 @@ AS205421 -no-description- (No org name found)
AS205429 -no-description- (No org name found) AS205429 -no-description- (No org name found)
AS205432 -no-description- (No org name found) AS205432 -no-description- (No org name found)
AS205433 -no-description- (No org name found) AS205433 -no-description- (No org name found)
AS205438 -no-description- (No org name found)
AS205439 -no-description- (No org name found) AS205439 -no-description- (No org name found)
AS205442 -no-description- (No org name found) AS205442 -no-description- (No org name found)
AS205460 -no-description- (No org name found) AS205460 -no-description- (No org name found)
@@ -4996,6 +4999,7 @@ AS208461 -no-description- (No org name found)
AS208481 -no-description- (No org name found) AS208481 -no-description- (No org name found)
AS208502 -no-description- (No org name found) AS208502 -no-description- (No org name found)
AS208503 -no-description- (No org name found) AS208503 -no-description- (No org name found)
AS208509 -no-description- (No org name found)
AS208511 -no-description- (No org name found) AS208511 -no-description- (No org name found)
AS208534 -no-description- (No org name found) AS208534 -no-description- (No org name found)
AS208541 -no-description- (No org name found) AS208541 -no-description- (No org name found)
@@ -5078,7 +5082,6 @@ AS209249 -no-description- (No org name found)
AS209269 -no-description- (No org name found) AS209269 -no-description- (No org name found)
AS209284 -no-description- (No org name found) AS209284 -no-description- (No org name found)
AS209289 -no-description- (No org name found) AS209289 -no-description- (No org name found)
AS209290 -no-description- (No org name found)
AS209303 -no-description- (No org name found) AS209303 -no-description- (No org name found)
AS209307 -no-description- (No org name found) AS209307 -no-description- (No org name found)
AS209313 -no-description- (No org name found) AS209313 -no-description- (No org name found)
@@ -5133,7 +5136,6 @@ AS209773 -no-description- (No org name found)
AS209775 -no-description- (No org name found) AS209775 -no-description- (No org name found)
AS209779 -no-description- (No org name found) AS209779 -no-description- (No org name found)
AS209785 -no-description- (No org name found) AS209785 -no-description- (No org name found)
AS209787 -no-description- (No org name found)
AS209788 -no-description- (No org name found) AS209788 -no-description- (No org name found)
AS209789 -no-description- (No org name found) AS209789 -no-description- (No org name found)
AS209794 -no-description- (No org name found) AS209794 -no-description- (No org name found)
@@ -5202,6 +5204,7 @@ AS210553 -no-description- (No org name found)
AS210600 -no-description- (No org name found) AS210600 -no-description- (No org name found)
AS210616 -no-description- (No org name found) AS210616 -no-description- (No org name found)
AS210643 -no-description- (No org name found) AS210643 -no-description- (No org name found)
AS210644 -no-description- (No org name found)
AS210656 -no-description- (No org name found) AS210656 -no-description- (No org name found)
AS210662 -no-description- (No org name found) AS210662 -no-description- (No org name found)
AS210682 -no-description- (No org name found) AS210682 -no-description- (No org name found)
@@ -5239,6 +5242,7 @@ AS211002 -no-description- (No org name found)
AS211009 -no-description- (No org name found) AS211009 -no-description- (No org name found)
AS211027 -no-description- (No org name found) AS211027 -no-description- (No org name found)
AS211045 -no-description- (No org name found) AS211045 -no-description- (No org name found)
AS211063 -no-description- (No org name found)
AS211076 -no-description- (No org name found) AS211076 -no-description- (No org name found)
AS211078 -no-description- (No org name found) AS211078 -no-description- (No org name found)
AS211082 -no-description- (No org name found) AS211082 -no-description- (No org name found)
@@ -5258,6 +5262,7 @@ AS211245 -no-description- (No org name found)
AS211246 -no-description- (No org name found) AS211246 -no-description- (No org name found)
AS211247 -no-description- (No org name found) AS211247 -no-description- (No org name found)
AS211258 -no-description- (No org name found) AS211258 -no-description- (No org name found)
AS211270 -no-description- (No org name found)
AS211282 -no-description- (No org name found) AS211282 -no-description- (No org name found)
AS211291 -no-description- (No org name found) AS211291 -no-description- (No org name found)
AS211311 -no-description- (No org name found) AS211311 -no-description- (No org name found)
@@ -5327,7 +5332,6 @@ AS211860 -no-description- (No org name found)
AS211866 -no-description- (No org name found) AS211866 -no-description- (No org name found)
AS211867 -no-description- (No org name found) AS211867 -no-description- (No org name found)
AS211883 -no-description- (No org name found) AS211883 -no-description- (No org name found)
AS211915 -no-description- (No org name found)
AS211928 -no-description- (No org name found) AS211928 -no-description- (No org name found)
AS211930 -no-description- (No org name found) AS211930 -no-description- (No org name found)
AS211932 -no-description- (No org name found) AS211932 -no-description- (No org name found)
@@ -5388,7 +5392,6 @@ AS212439 -no-description- (No org name found)
AS212441 -no-description- (No org name found) AS212441 -no-description- (No org name found)
AS212452 -no-description- (No org name found) AS212452 -no-description- (No org name found)
AS212456 -no-description- (No org name found) AS212456 -no-description- (No org name found)
AS212461 -no-description- (No org name found)
AS212480 -no-description- (No org name found) AS212480 -no-description- (No org name found)
AS212487 -no-description- (No org name found) AS212487 -no-description- (No org name found)
AS212490 -no-description- (No org name found) AS212490 -no-description- (No org name found)
@@ -5451,8 +5454,8 @@ AS213278 -no-description- (No org name found)
AS213294 -no-description- (No org name found) AS213294 -no-description- (No org name found)
AS213304 -no-description- (No org name found) AS213304 -no-description- (No org name found)
AS213316 -no-description- (No org name found) AS213316 -no-description- (No org name found)
AS213329 -no-description- (No org name found) AS213329 -no-description-
AS213334 -no-description- (No org name found) AS213334 -no-description-
AS213348 -no-description- AS213348 -no-description-
AS213369 -no-description- AS213369 -no-description-
AS213381 -no-description- AS213381 -no-description-
@@ -5572,6 +5575,7 @@ AS214656 -no-description-
AS214664 -no-description- AS214664 -no-description-
AS214683 -no-description- AS214683 -no-description-
AS214697 -no-description- AS214697 -no-description-
AS214702 -no-description-
AS214719 -no-description- AS214719 -no-description-
AS214721 -no-description- AS214721 -no-description-
AS214727 -no-description- AS214727 -no-description-
@@ -5663,6 +5667,7 @@ AS215678 -no-description-
AS215688 -no-description- AS215688 -no-description-
AS215705 -no-description- AS215705 -no-description-
AS215721 -no-description- AS215721 -no-description-
AS215745 -no-description-
AS215751 -no-description- AS215751 -no-description-
AS215796 -no-description- AS215796 -no-description-
AS215805 -no-description- AS215805 -no-description-

File diff suppressed because it is too large Load Diff

View File

@@ -13,6 +13,7 @@
2001:678:190::/48 RU-FORESTNET-20162704 (Forest Net LTD) 2001:678:190::/48 RU-FORESTNET-20162704 (Forest Net LTD)
2001:678:1b0::/48 RU-IMOLNIYA-20160519 (Molniya LLC) 2001:678:1b0::/48 RU-IMOLNIYA-20160519 (Molniya LLC)
2001:678:1bc::/48 RU-CSTNET-20160524 (Ivanteevskie telecommunicacii Ltd) 2001:678:1bc::/48 RU-CSTNET-20160524 (Ivanteevskie telecommunicacii Ltd)
2001:678:1dc::/48 RU-IKNOWIT (Kniazev Ilia Igorevich)
2001:678:220::/48 KLIMENKO-AA-NET (Klimenko Anna Aleksandrovna) 2001:678:220::/48 KLIMENKO-AA-NET (Klimenko Anna Aleksandrovna)
2001:678:278::/48 RU-ROSNIIROS-20161011 ("TBANK" JSC) 2001:678:278::/48 RU-ROSNIIROS-20161011 ("TBANK" JSC)
2001:678:280::/48 RU-ROSNIIROS-20161014 (LLC Inventos) 2001:678:280::/48 RU-ROSNIIROS-20161014 (LLC Inventos)
@@ -34,7 +35,7 @@
2001:678:57c::/48 CYPHER-IPV6-NET (Ltd. "Cypher") 2001:678:57c::/48 CYPHER-IPV6-NET (Ltd. "Cypher")
2001:678:5c8::/48 EGY4v6-NET (Ellad G. Yatsko) 2001:678:5c8::/48 EGY4v6-NET (Ellad G. Yatsko)
2001:678:600::/48 ORG-ATL97-RIPE (Atlantic LLC.) 2001:678:600::/48 ORG-ATL97-RIPE (Atlantic LLC.)
2001:678:614::/48 CZ-VISSADO-20180306 (UnitTelecom Ltd) 2001:678:614::/48 CZ-VISSADO-20180306 (Unittel Ltd)
2001:678:624::/48 RU-LLC-LENVENDO-M-20250918 (Andrei Listopad) 2001:678:624::/48 RU-LLC-LENVENDO-M-20250918 (Andrei Listopad)
2001:678:62c::/48 IRONNET-IPV6-NET (IRONNET Ltd.) 2001:678:62c::/48 IRONNET-IPV6-NET (IRONNET Ltd.)
2001:678:630::/48 MEGAPOLIS-IPV6-NET (JSC TC "Megapolis") 2001:678:630::/48 MEGAPOLIS-IPV6-NET (JSC TC "Megapolis")
@@ -110,6 +111,7 @@
2001:67c:418::/48 VSU-VORONEZH (Federal State Budgetary Educational Institution of Higher Education "Voronezh State University") 2001:67c:418::/48 VSU-VORONEZH (Federal State Budgetary Educational Institution of Higher Education "Voronezh State University")
2001:67c:430::/48 GYMN-PERSPEKTIVA-NET (Municipal Budgetary Educational Institution "Gymnasium Perspektiva" of the city district of Samara) 2001:67c:430::/48 GYMN-PERSPEKTIVA-NET (Municipal Budgetary Educational Institution "Gymnasium Perspektiva" of the city district of Samara)
2001:67c:4b4::/48 Prosveshcheniye-NET (Joint-Stock Company "Prosveshcheniye publishers") 2001:67c:4b4::/48 Prosveshcheniye-NET (Joint-Stock Company "Prosveshcheniye publishers")
2001:67c:4e0::/48 RU-H-R (H-R JSC)
2001:67c:4ec::/48 IT-NET-IPV6 (IT-Net ltd.) 2001:67c:4ec::/48 IT-NET-IPV6 (IT-Net ltd.)
2001:67c:528::/48 MARIINSKY-V6 (Federal Government Cultural Organization "State Academic Mariinsky Theatre") 2001:67c:528::/48 MARIINSKY-V6 (Federal Government Cultural Organization "State Academic Mariinsky Theatre")
2001:67c:5ac::/48 ORG-LS521-RIPE (LLC STAVCOM) 2001:67c:5ac::/48 ORG-LS521-RIPE (LLC STAVCOM)
@@ -126,7 +128,7 @@
2001:67c:720::/48 ZENLINEv6 (Pro-Revizor LLC.) 2001:67c:720::/48 ZENLINEv6 (Pro-Revizor LLC.)
2001:67c:73c::/48 RU-DINET-20221024 (LIMITED LIABILITY COMPANY CLOUD SOLUTIONS) 2001:67c:73c::/48 RU-DINET-20221024 (LIMITED LIABILITY COMPANY CLOUD SOLUTIONS)
2001:67c:76c::/48 CZ-VISSADO-20200813 (TOKS Ltd) 2001:67c:76c::/48 CZ-VISSADO-20200813 (TOKS Ltd)
2001:67c:780::/48 ORG-OR70-RIPE (Osinovaya Roshcha Ltd) 2001:67c:780::/48 ORG-OR70-RIPE (Osinovaya Roshcha JSC)
2001:67c:784::/48 RU-STARLINE-NET (RPA STARLINE LLC) 2001:67c:784::/48 RU-STARLINE-NET (RPA STARLINE LLC)
2001:67c:79c::/48 AVANTEL (JSC Avantel) 2001:67c:79c::/48 AVANTEL (JSC Avantel)
2001:67c:7b4::/48 ORG-IT77-RIPE (INTERNET TECHNOLOGIES LLC) 2001:67c:7b4::/48 ORG-IT77-RIPE (INTERNET TECHNOLOGIES LLC)
@@ -628,6 +630,7 @@
2a01:be40::/32 RU-SOTCOM-20120911 (JSC Telephone Company "Sotcom") 2a01:be40::/32 RU-SOTCOM-20120911 (JSC Telephone Company "Sotcom")
2a01:e180::/29 RU-FLYVPS-20240821 (Kokunov Evgeny Andreevich) 2a01:e180::/29 RU-FLYVPS-20240821 (Kokunov Evgeny Andreevich)
2a01:e1c0::/29 RU-TSYSTEMS-20240925 (T-systems Limited Liability Company) 2a01:e1c0::/29 RU-TSYSTEMS-20240925 (T-systems Limited Liability Company)
2a01:e5c0::/29 RU-AEZAGROUP-20241002 (AEZA GROUP LLC)
2a01:eac0::/29 RU-DAGNET-20241011 (DagNet LLC) 2a01:eac0::/29 RU-DAGNET-20241011 (DagNet LLC)
2a01:f880::/29 RU-MOSCOMNET-20240830 (Moscomnet LLC) 2a01:f880::/29 RU-MOSCOMNET-20240830 (Moscomnet LLC)
2a01:fc40::/32 RU-PRIDE-NET-20241024 (Pride LLC) 2a01:fc40::/32 RU-PRIDE-NET-20241024 (Pride LLC)
@@ -776,7 +779,7 @@
2a02:eb00::/29 RU-QWARTA-20121129 (QWARTA LLC) 2a02:eb00::/29 RU-QWARTA-20121129 (QWARTA LLC)
2a02:eb80::/29 RU-SETII-20121129 (Nets and Services JCS) 2a02:eb80::/29 RU-SETII-20121129 (Nets and Services JCS)
2a02:ec40::/29 RU-TRANSITTELECOM-20121130 (Transit Telecom LLC) 2a02:ec40::/29 RU-TRANSITTELECOM-20121130 (Transit Telecom LLC)
2a02:ef00::/29 RU-1C-20121204 (1C LLC) 2a02:ef00::/29 RU-1C-20121204 (JSC "1C GROUP")
2a02:efc0::/29 RU-ELITELTELECOMGROUP-20121204 (Elitel Telecom Group Ltd) 2a02:efc0::/29 RU-ELITELTELECOMGROUP-20121204 (Elitel Telecom Group Ltd)
2a02:f500::/29 RU-SOVINTEL-20121214 (PJSC "Vimpelcom") 2a02:f500::/29 RU-SOVINTEL-20121214 (PJSC "Vimpelcom")
2a02:f560::/30 RU-ORTEL-20121221 (JSC Orient-Telecom) 2a02:f560::/30 RU-ORTEL-20121221 (JSC Orient-Telecom)
@@ -974,7 +977,7 @@
2a04:5180::/29 RU-STROYTELECOM-20150413 (Stroy-Telecom LTD) 2a04:5180::/29 RU-STROYTELECOM-20150413 (Stroy-Telecom LTD)
2a04:5500::/29 RU-MEGAGROUP-20130731 (Megagroup.ru LLC) 2a04:5500::/29 RU-MEGAGROUP-20130731 (Megagroup.ru LLC)
2a04:6000::/29 RU-SV-EN-20130830 (Svyaz-Energo Ltd.) 2a04:6000::/29 RU-SV-EN-20130830 (Svyaz-Energo Ltd.)
2a04:61c0::/29 RU-LINKY-20150331 (Artecom Ltd) 2a04:61c0::/29 RU-NAYDENKO-20150331 (Aleksandr Naydenko)
2a04:6a40::/29 RU-TETATELECOM-20130927 ("TETA TELECOM" LLC) 2a04:6a40::/29 RU-TETATELECOM-20130927 ("TETA TELECOM" LLC)
2a04:6e40::/29 RU-IPMAGNAT-20240118 (Mikhail Tonkonog) 2a04:6e40::/29 RU-IPMAGNAT-20240118 (Mikhail Tonkonog)
2a04:7240::/29 RU-MGTS-20131014 (PJSC Moscow city telephone network) 2a04:7240::/29 RU-MGTS-20131014 (PJSC Moscow city telephone network)
@@ -983,7 +986,11 @@
2a04:7c80::/29 RU-INFOTELECOMSP-20131030 (Infotelecom SP Ltd.) 2a04:7c80::/29 RU-INFOTELECOMSP-20131030 (Infotelecom SP Ltd.)
2a04:7e00::/29 RU-TELEDISCOUNT-20220125 (Telediscount AO) 2a04:7e00::/29 RU-TELEDISCOUNT-20220125 (Telediscount AO)
2a04:8240::/29 RU-RTS-20131111 (Association of financial market participants "Nonprofit Partnership for the Development of Financial Market RTS") 2a04:8240::/29 RU-RTS-20131111 (Association of financial market participants "Nonprofit Partnership for the Development of Financial Market RTS")
2a04:8580::/29 RU-DOCKER-20131115 (Docker LTD) 2a04:8580::/32 RU-CLUSTER-20131115 (Cluster LLC)
2a04:8581::/32 RU-DOCKER-20131115 (Docker LTD)
2a04:8582::/32 RU-CLUSTER-20131115 (Cluster LLC)
2a04:8583::/32 RU-DOCKER-20131115 (Docker LTD)
2a04:8584::/30 RU-DOCKER-20131115 (Docker LTD)
2a04:8a00::/29 RU-SKALA-20131122 (Company Skala LLC) 2a04:8a00::/29 RU-SKALA-20131122 (Company Skala LLC)
2a04:8a40::/29 RU-DFW-20131122 (DFW LLC) 2a04:8a40::/29 RU-DFW-20131122 (DFW LLC)
2a04:8c00::/29 RU-INTSG-20131128 (LLC INTER-SVYAZ-GROUP) 2a04:8c00::/29 RU-INTSG-20131128 (LLC INTER-SVYAZ-GROUP)
@@ -1290,7 +1297,7 @@
2a09:bd80::/29 RU-VPSVILLE1-20181219 (LLC Vpsville) 2a09:bd80::/29 RU-VPSVILLE1-20181219 (LLC Vpsville)
2a09:c140::/32 RU-MCHOST1-20190313 (McHost LLC) 2a09:c140::/32 RU-MCHOST1-20190313 (McHost LLC)
2a09:c380::/32 RU-LLCSVYAZ-20230817 (LLC Svyaz Invest) 2a09:c380::/32 RU-LLCSVYAZ-20230817 (LLC Svyaz Invest)
2a09:c480::/29 RU-UTEX-TELECOM-20181219 (Utex-telecom LLC) 2a09:c480::/29 RU-SHCHUROV-20181219 (Shchurov Mikhail Yurievich)
2a09:c700::/29 RU-AU-20181123 (Auction LLC) 2a09:c700::/29 RU-AU-20181123 (Auction LLC)
2a09:c7c0::/29 RU-SKYNETWORK1-20190314 (Skynetwork LLC) 2a09:c7c0::/29 RU-SKYNETWORK1-20190314 (Skynetwork LLC)
2a09:cc00::/29 RU-KLEYNKOM4-20181106 (Kleynkom LLC) 2a09:cc00::/29 RU-KLEYNKOM4-20181106 (Kleynkom LLC)
@@ -2075,12 +2082,14 @@
2a12:9400::/29 RU-PLATFORMA-20211102 (Big Data Platform LLC) 2a12:9400::/29 RU-PLATFORMA-20211102 (Big Data Platform LLC)
2a12:9500::/29 RU-TELECOM-20211115 (Telenet LLC) 2a12:9500::/29 RU-TELECOM-20211115 (Telenet LLC)
2a12:9700::/29 RU-LOCAL-20211115 (LIR LLC) 2a12:9700::/29 RU-LOCAL-20211115 (LIR LLC)
2a12:9c80::/29 RU-ENEVA-20260303 ("Eneva" Ltd)
2a12:9e00::/29 RU-LOCAL-20211108 (LIR LLC) 2a12:9e00::/29 RU-LOCAL-20211108 (LIR LLC)
2a12:a340::/29 RU-IPMAGNAT-20220314 (Mikhail Tonkonog) 2a12:a340::/29 RU-IPMAGNAT-20220314 (Mikhail Tonkonog)
2a12:afc0::/29 RU-LETIT-20220318 (Letit LLC) 2a12:afc0::/29 RU-LETIT-20220318 (Letit LLC)
2a12:b2c0::/29 RU-AHOST-20220321 (Ahost LLC) 2a12:b2c0::/29 RU-AHOST-20220321 (Ahost LLC)
2a12:b3c0::/29 RU-ALEXGROUP-20220322 (Alex Group LLC) 2a12:b3c0::/29 RU-ALEXGROUP-20220322 (Alex Group LLC)
2a12:b4c0::/29 RU-MTU-20220323 (MTS PJSC) 2a12:b4c0::/29 RU-MTU-20220323 (MTS PJSC)
2a12:b780::/29 RU-REAL-20260304 (Nizhnevolzhskie Telecommunication Networks Real LLC)
2a12:ba40::/29 RU-SENTASERV-20220330 (Senta Service LLC) 2a12:ba40::/29 RU-SENTASERV-20220330 (Senta Service LLC)
2a12:bbc0::/29 RU-STANMIX1-20220331 (AREAL. REGIONAL CENTER LIMITED LIABILITY COMPANY) 2a12:bbc0::/29 RU-STANMIX1-20220331 (AREAL. REGIONAL CENTER LIMITED LIABILITY COMPANY)
2a12:bdc0::/29 RU-DEDIC164-20220401 (LLC "SMART CENTER") 2a12:bdc0::/29 RU-DEDIC164-20220401 (LLC "SMART CENTER")
@@ -2091,6 +2100,7 @@
2a12:cc00::/29 RU-TELECOM-20211103 (Telenet LLC) 2a12:cc00::/29 RU-TELECOM-20211103 (Telenet LLC)
2a12:d2c0::/29 RU-NEVALINKNET-20220422 (Nevalink, LLC) 2a12:d2c0::/29 RU-NEVALINKNET-20220422 (Nevalink, LLC)
2a12:d740::/29 RU-LLC3DATA-20220425 (LLC 3data) 2a12:d740::/29 RU-LLC3DATA-20220425 (LLC 3data)
2a12:d780::/29 RU-ESTELECOM-20260305 (ES TELECOM LLC)
2a12:dcc0::/29 RU-ROSTLLC-20220428 (ROST LLC) 2a12:dcc0::/29 RU-ROSTLLC-20220428 (ROST LLC)
2a12:ebc0::/29 RU-LLC3DATA1-20220506 (LLC 3data DC) 2a12:ebc0::/29 RU-LLC3DATA1-20220506 (LLC 3data DC)
2a12:f580::/29 RU-KONSIST-OS-20211206 (Konsist-OS, joint-stock company) 2a12:f580::/29 RU-KONSIST-OS-20211206 (Konsist-OS, joint-stock company)
@@ -2111,6 +2121,7 @@
2a13:3c80::/29 RU-IPMAGNAT-20220824 (Mikhail Tonkonog) 2a13:3c80::/29 RU-IPMAGNAT-20220824 (Mikhail Tonkonog)
2a13:3d80::/29 RU-DATACHEAP1-20220824 (Datacheap LLC) 2a13:3d80::/29 RU-DATACHEAP1-20220824 (Datacheap LLC)
2a13:4040::/29 RU-MARIA1-20221124 (Maria Sergienko) 2a13:4040::/29 RU-MARIA1-20221124 (Maria Sergienko)
2a13:42c0::/29 RU-JSCTANDER-20260317 (JSC "Tander")
2a13:43c0::/29 RU-PTECH-20221125 (SIMPLE CODE LLC) 2a13:43c0::/29 RU-PTECH-20221125 (SIMPLE CODE LLC)
2a13:4fc0::/29 RU-IPMAGNAT-20221205 (Mikhail Tonkonog) 2a13:4fc0::/29 RU-IPMAGNAT-20221205 (Mikhail Tonkonog)
2a13:51c0::/29 RU-ATOMDATA-IN-20221205 (Atomdata-Innopolis JSC) 2a13:51c0::/29 RU-ATOMDATA-IN-20221205 (Atomdata-Innopolis JSC)
@@ -2118,6 +2129,7 @@
2a13:5540::/29 RU-TUTAEV-20221208 (Adam Muratovich Tutaev) 2a13:5540::/29 RU-TUTAEV-20221208 (Adam Muratovich Tutaev)
2a13:5980::/29 RU-KSTV-20220906 (CJSC Kolomna-Sviaz TV) 2a13:5980::/29 RU-KSTV-20220906 (CJSC Kolomna-Sviaz TV)
2a13:5d40::/29 RU-ETO-NET-20221213 (ETO NET, OOO) 2a13:5d40::/29 RU-ETO-NET-20221213 (ETO NET, OOO)
2a13:6440::/29 RU-DOMAINSRU-20260320 (DOMENY.RU LLC)
2a13:6d40::/29 RU-AMTGROUP-20221223 (AMT Group, JSC) 2a13:6d40::/29 RU-AMTGROUP-20221223 (AMT Group, JSC)
2a13:6e00::/29 RU-OPTIMA-20220624 (Optima Communications, LLC) 2a13:6e00::/29 RU-OPTIMA-20220624 (Optima Communications, LLC)
2a13:6e40::/29 RU-IPMAGNAT-20221227 (Mikhail Tonkonog) 2a13:6e40::/29 RU-IPMAGNAT-20221227 (Mikhail Tonkonog)

File diff suppressed because it is too large Load Diff

File diff suppressed because it is too large Load Diff

View File

View File

@@ -41,8 +41,10 @@
146.185.242.0/23 146.185.242.0/23
149.62.55.240/30 149.62.55.240/30
155.212.192.0/20 155.212.192.0/20
161.104.104.0/21
176.109.0.0/21 176.109.0.0/21
176.112.168.0/21 176.112.168.0/21
176.116.112.0/22
176.116.96.0/20 176.116.96.0/20
178.16.156.148/30 178.16.156.148/30
178.17.176.0/23 178.17.176.0/23
@@ -65,7 +67,6 @@
178.237.240.0/20 178.237.240.0/20
178.237.248.0/21 178.237.248.0/21
178.237.28.0/24 178.237.28.0/24
178.237.29.0/24
178.237.30.0/23 178.237.30.0/23
178.248.232.137/32 178.248.232.137/32
178.248.232.60/32 178.248.232.60/32
@@ -224,7 +225,6 @@
195.144.232.144/30 195.144.232.144/30
195.144.240.128/28 195.144.240.128/28
195.149.110.0/24 195.149.110.0/24
195.151.25.48/29
195.16.55.224/27 195.16.55.224/27
195.162.36.64/28 195.162.36.64/28
195.170.218.24/29 195.170.218.24/29
@@ -453,7 +453,9 @@
217.106.203.88/29 217.106.203.88/29
217.106.93.192/26 217.106.93.192/26
217.106.95.112/28 217.106.95.112/28
217.107.0.0/18
217.107.200.0/21 217.107.200.0/21
217.107.208.0/20
217.107.5.112/29 217.107.5.112/29
217.107.5.16/29 217.107.5.16/29
217.107.5.24/29 217.107.5.24/29
@@ -469,6 +471,7 @@
217.16.16.0/21 217.16.16.0/21
217.16.24.0/21 217.16.24.0/21
217.172.18.0/23 217.172.18.0/23
217.172.20.0/22
217.174.188.0/22 217.174.188.0/22
217.174.188.0/23 217.174.188.0/23
217.195.92.16/28 217.195.92.16/28
@@ -484,7 +487,10 @@
217.20.158.0/24 217.20.158.0/24
217.20.159.0/24 217.20.159.0/24
217.20.86.128/26 217.20.86.128/26
217.20.86.192/27
217.20.86.224/29
217.20.86.232/29 217.20.86.232/29
217.20.86.240/28
217.23.88.168/29 217.23.88.168/29
217.23.88.248/29 217.23.88.248/29
217.27.142.176/30 217.27.142.176/30
@@ -518,6 +524,7 @@
46.20.70.160/28 46.20.70.160/28
46.228.0.232/29 46.228.0.232/29
46.29.152.0/22 46.29.152.0/22
46.29.156.0/23
46.46.142.160/28 46.46.142.160/28
46.46.148.40/29 46.46.148.40/29
46.47.197.128/30 46.47.197.128/30
@@ -620,7 +627,6 @@
78.37.84.120/29 78.37.84.120/29
78.37.97.88/29 78.37.97.88/29
79.133.74.160/30 79.133.74.160/30
79.133.74.168/30
79.133.75.176/30 79.133.75.176/30
79.133.75.44/30 79.133.75.44/30
79.137.132.0/24 79.137.132.0/24
@@ -803,6 +809,7 @@
85.141.33.64/28 85.141.33.64/28
85.141.60.96/28 85.141.60.96/28
85.141.61.160/28 85.141.61.160/28
85.142.251.0/24
85.143.125.0/24 85.143.125.0/24
85.146.204.44/30 85.146.204.44/30
85.192.32.0/22 85.192.32.0/22
@@ -973,6 +980,7 @@
90.156.216.0/23 90.156.216.0/23
90.156.218.0/23 90.156.218.0/23
90.156.232.0/21 90.156.232.0/21
90.156.248.0/22
91.103.194.184/29 91.103.194.184/29
91.135.212.0/22 91.135.212.0/22
91.135.216.0/21 91.135.216.0/21
@@ -1095,6 +1103,7 @@
95.167.5.80/28 95.167.5.80/28
95.167.54.76/30 95.167.54.76/30
95.167.59.244/30 95.167.59.244/30
95.167.59.248/30
95.167.64.20/30 95.167.64.20/30
95.167.68.216/29 95.167.68.216/29
95.167.69.116/30 95.167.69.116/30

View File

@@ -0,0 +1,267 @@
109.120.180.0/22
109.120.180.0/23
109.120.182.0/23
109.120.188.0/22
109.120.188.0/23
109.120.190.0/23
128.140.168.0/21
128.140.168.0/23
128.140.170.0/24
128.140.171.0/24
128.140.172.0/22
130.49.224.0/19
146.185.208.0/22
146.185.208.0/23
146.185.210.0/23
146.185.240.0/22
146.185.240.0/23
146.185.242.0/23
155.212.192.0/20
161.104.104.0/21
176.112.168.0/21
178.22.88.0/21
178.22.89.64/26
178.22.94.0/23
178.237.16.0/20
178.237.16.0/21
178.237.24.0/22
178.237.30.0/23
185.100.104.0/22
185.100.104.0/23
185.100.106.0/23
185.130.112.0/22
185.130.112.0/23
185.130.114.0/23
185.131.68.0/22
185.16.148.0/22
185.16.148.0/23
185.16.150.0/23
185.16.244.0/22
185.16.244.0/23
185.16.246.0/23
185.180.200.0/22
185.187.63.0/24
185.187.63.0/25
185.187.63.128/25
185.226.52.0/22
185.226.52.0/23
185.226.54.0/23
185.241.192.0/22
185.241.192.0/23
185.241.194.0/23
185.29.128.0/22
185.29.130.0/24
185.32.248.0/22
185.32.248.0/23
185.32.250.0/23
185.5.136.0/22
185.5.136.0/23
185.5.138.0/23
185.6.244.0/22
185.6.244.0/23
185.6.246.0/23
185.86.144.0/22
185.86.144.0/23
185.86.146.0/23
188.93.56.0/21
188.93.56.0/24
188.93.57.0/24
188.93.58.0/24
188.93.60.0/24
188.93.61.0/24
188.93.62.0/24
193.203.40.0/22
194.84.16.12/30
195.211.20.0/22
195.211.22.0/24
195.211.23.0/24
212.111.84.0/22
212.233.120.0/22
212.233.72.0/21
212.233.88.0/21
212.233.96.0/22
213.219.212.0/22
213.219.212.0/23
213.219.214.0/23
217.16.16.0/20
217.16.16.0/21
217.16.24.0/21
217.174.188.0/23
217.20.144.0/20
217.20.144.0/22
217.20.148.0/24
217.20.149.0/24
217.20.150.0/23
217.20.152.0/22
217.20.156.0/23
217.20.158.0/24
217.20.159.0/24
217.69.128.0/20
217.69.128.0/21
217.69.136.0/21
37.139.32.0/22
37.139.32.0/23
37.139.34.0/23
37.139.40.0/22
37.139.40.0/23
37.139.42.0/23
45.136.20.0/22
45.136.20.0/23
45.136.22.0/23
45.84.128.0/22
45.84.128.0/23
45.84.130.0/23
5.101.40.0/22
5.101.40.0/23
5.101.42.0/23
5.181.60.0/22
5.181.60.0/24
5.181.61.0/24
5.181.62.0/23
5.188.140.0/22
5.188.140.0/23
5.188.142.0/23
5.61.16.0/21
5.61.16.0/22
5.61.20.0/22
5.61.232.0/21
5.61.232.0/22
5.61.236.0/23
5.61.238.0/24
5.61.239.0/27
5.61.239.128/25
5.61.239.40/29
5.61.239.48/28
5.61.239.64/26
62.217.160.0/20
62.217.160.0/21
62.217.168.0/21
79.137.132.0/24
79.137.132.0/25
79.137.132.128/25
79.137.139.0/24
79.137.139.0/25
79.137.139.128/25
79.137.157.0/25
79.137.157.128/25
79.137.164.0/24
79.137.164.0/25
79.137.164.128/25
79.137.167.0/24
79.137.167.0/25
79.137.167.128/25
79.137.174.0/23
79.137.174.0/24
79.137.175.0/24
79.137.180.0/24
79.137.180.0/25
79.137.180.128/25
79.137.240.0/21
79.137.240.0/22
79.137.244.0/22
83.166.232.0/21
83.166.232.0/22
83.166.236.0/22
83.166.248.0/21
83.166.248.0/22
83.166.252.0/22
83.217.216.0/22
83.217.216.0/23
83.217.218.0/23
83.222.28.0/22
84.23.52.0/22
84.23.52.0/23
84.23.54.0/23
85.114.31.108/30
85.192.32.0/22
85.192.32.0/23
85.192.34.0/23
85.198.106.0/24
85.198.107.0/24
87.239.104.0/21
87.239.104.0/22
87.239.108.0/22
87.240.128.0/18
87.240.128.0/19
87.240.160.0/19
87.242.112.0/22
89.208.196.0/22
89.208.196.0/23
89.208.198.0/23
89.208.208.0/22
89.208.208.0/23
89.208.210.0/23
89.208.216.0/21
89.208.216.0/23
89.208.218.0/23
89.208.220.0/22
89.208.228.0/22
89.208.228.0/23
89.208.230.0/23
89.208.84.0/22
89.208.84.0/23
89.208.86.0/23
89.221.228.0/22
89.221.232.0/21
90.156.148.0/22
90.156.148.0/23
90.156.150.0/23
90.156.212.0/22
90.156.212.0/23
90.156.214.0/23
90.156.216.0/22
90.156.216.0/23
90.156.218.0/23
90.156.232.0/21
91.219.224.0/22
91.231.132.0/22
91.237.76.0/24
93.153.255.84/30
93.186.224.0/20
93.186.224.0/21
93.186.232.0/21
94.100.176.0/20
94.100.176.0/21
94.100.184.0/21
94.139.244.0/22
94.139.244.0/23
94.139.246.0/23
95.142.192.0/20
95.142.192.0/21
95.142.200.0/21
95.163.180.0/22
95.163.180.0/23
95.163.182.0/23
95.163.208.0/21
95.163.208.0/23
95.163.210.0/23
95.163.212.0/22
95.163.216.0/22
95.163.216.0/23
95.163.218.0/23
95.163.248.0/21
95.163.248.0/22
95.163.252.0/23
95.163.254.0/23
95.163.32.0/19
95.163.32.0/22
95.163.36.0/22
95.163.40.0/21
95.163.48.0/20
95.213.0.0/17
95.213.0.0/20
95.213.16.0/21
95.213.24.0/23
95.213.26.0/24
95.213.27.0/24
95.213.28.0/24
95.213.29.0/24
95.213.30.0/24
95.213.31.0/24
95.213.32.0/24
95.213.33.0/24
95.213.34.0/23
95.213.36.0/22
95.213.40.0/21
95.213.48.0/20
95.213.64.0/18

View File

@@ -0,0 +1 @@
2a00:bdc0::/29

268
blacklists/blacklist-vk.txt Normal file
View File

@@ -0,0 +1,268 @@
109.120.180.0/22
109.120.180.0/23
109.120.182.0/23
109.120.188.0/22
109.120.188.0/23
109.120.190.0/23
128.140.168.0/21
128.140.168.0/23
128.140.170.0/24
128.140.171.0/24
128.140.172.0/22
130.49.224.0/19
146.185.208.0/22
146.185.208.0/23
146.185.210.0/23
146.185.240.0/22
146.185.240.0/23
146.185.242.0/23
155.212.192.0/20
161.104.104.0/21
176.112.168.0/21
178.22.88.0/21
178.22.89.64/26
178.22.94.0/23
178.237.16.0/20
178.237.16.0/21
178.237.24.0/22
178.237.30.0/23
185.100.104.0/22
185.100.104.0/23
185.100.106.0/23
185.130.112.0/22
185.130.112.0/23
185.130.114.0/23
185.131.68.0/22
185.16.148.0/22
185.16.148.0/23
185.16.150.0/23
185.16.244.0/22
185.16.244.0/23
185.16.246.0/23
185.180.200.0/22
185.187.63.0/24
185.187.63.0/25
185.187.63.128/25
185.226.52.0/22
185.226.52.0/23
185.226.54.0/23
185.241.192.0/22
185.241.192.0/23
185.241.194.0/23
185.29.128.0/22
185.29.130.0/24
185.32.248.0/22
185.32.248.0/23
185.32.250.0/23
185.5.136.0/22
185.5.136.0/23
185.5.138.0/23
185.6.244.0/22
185.6.244.0/23
185.6.246.0/23
185.86.144.0/22
185.86.144.0/23
185.86.146.0/23
188.93.56.0/21
188.93.56.0/24
188.93.57.0/24
188.93.58.0/24
188.93.60.0/24
188.93.61.0/24
188.93.62.0/24
193.203.40.0/22
194.84.16.12/30
195.211.20.0/22
195.211.22.0/24
195.211.23.0/24
212.111.84.0/22
212.233.120.0/22
212.233.72.0/21
212.233.88.0/21
212.233.96.0/22
213.219.212.0/22
213.219.212.0/23
213.219.214.0/23
217.16.16.0/20
217.16.16.0/21
217.16.24.0/21
217.174.188.0/23
217.20.144.0/20
217.20.144.0/22
217.20.148.0/24
217.20.149.0/24
217.20.150.0/23
217.20.152.0/22
217.20.156.0/23
217.20.158.0/24
217.20.159.0/24
217.69.128.0/20
217.69.128.0/21
217.69.136.0/21
2a00:bdc0::/29
37.139.32.0/22
37.139.32.0/23
37.139.34.0/23
37.139.40.0/22
37.139.40.0/23
37.139.42.0/23
45.136.20.0/22
45.136.20.0/23
45.136.22.0/23
45.84.128.0/22
45.84.128.0/23
45.84.130.0/23
5.101.40.0/22
5.101.40.0/23
5.101.42.0/23
5.181.60.0/22
5.181.60.0/24
5.181.61.0/24
5.181.62.0/23
5.188.140.0/22
5.188.140.0/23
5.188.142.0/23
5.61.16.0/21
5.61.16.0/22
5.61.20.0/22
5.61.232.0/21
5.61.232.0/22
5.61.236.0/23
5.61.238.0/24
5.61.239.0/27
5.61.239.128/25
5.61.239.40/29
5.61.239.48/28
5.61.239.64/26
62.217.160.0/20
62.217.160.0/21
62.217.168.0/21
79.137.132.0/24
79.137.132.0/25
79.137.132.128/25
79.137.139.0/24
79.137.139.0/25
79.137.139.128/25
79.137.157.0/25
79.137.157.128/25
79.137.164.0/24
79.137.164.0/25
79.137.164.128/25
79.137.167.0/24
79.137.167.0/25
79.137.167.128/25
79.137.174.0/23
79.137.174.0/24
79.137.175.0/24
79.137.180.0/24
79.137.180.0/25
79.137.180.128/25
79.137.240.0/21
79.137.240.0/22
79.137.244.0/22
83.166.232.0/21
83.166.232.0/22
83.166.236.0/22
83.166.248.0/21
83.166.248.0/22
83.166.252.0/22
83.217.216.0/22
83.217.216.0/23
83.217.218.0/23
83.222.28.0/22
84.23.52.0/22
84.23.52.0/23
84.23.54.0/23
85.114.31.108/30
85.192.32.0/22
85.192.32.0/23
85.192.34.0/23
85.198.106.0/24
85.198.107.0/24
87.239.104.0/21
87.239.104.0/22
87.239.108.0/22
87.240.128.0/18
87.240.128.0/19
87.240.160.0/19
87.242.112.0/22
89.208.196.0/22
89.208.196.0/23
89.208.198.0/23
89.208.208.0/22
89.208.208.0/23
89.208.210.0/23
89.208.216.0/21
89.208.216.0/23
89.208.218.0/23
89.208.220.0/22
89.208.228.0/22
89.208.228.0/23
89.208.230.0/23
89.208.84.0/22
89.208.84.0/23
89.208.86.0/23
89.221.228.0/22
89.221.232.0/21
90.156.148.0/22
90.156.148.0/23
90.156.150.0/23
90.156.212.0/22
90.156.212.0/23
90.156.214.0/23
90.156.216.0/22
90.156.216.0/23
90.156.218.0/23
90.156.232.0/21
91.219.224.0/22
91.231.132.0/22
91.237.76.0/24
93.153.255.84/30
93.186.224.0/20
93.186.224.0/21
93.186.232.0/21
94.100.176.0/20
94.100.176.0/21
94.100.184.0/21
94.139.244.0/22
94.139.244.0/23
94.139.246.0/23
95.142.192.0/20
95.142.192.0/21
95.142.200.0/21
95.163.180.0/22
95.163.180.0/23
95.163.182.0/23
95.163.208.0/21
95.163.208.0/23
95.163.210.0/23
95.163.212.0/22
95.163.216.0/22
95.163.216.0/23
95.163.218.0/23
95.163.248.0/21
95.163.248.0/22
95.163.252.0/23
95.163.254.0/23
95.163.32.0/19
95.163.32.0/22
95.163.36.0/22
95.163.40.0/21
95.163.48.0/20
95.213.0.0/17
95.213.0.0/20
95.213.16.0/21
95.213.24.0/23
95.213.26.0/24
95.213.27.0/24
95.213.28.0/24
95.213.29.0/24
95.213.30.0/24
95.213.31.0/24
95.213.32.0/24
95.213.33.0/24
95.213.34.0/23
95.213.36.0/22
95.213.40.0/21
95.213.48.0/20
95.213.64.0/18

View File

@@ -41,8 +41,10 @@
146.185.242.0/23 146.185.242.0/23
149.62.55.240/30 149.62.55.240/30
155.212.192.0/20 155.212.192.0/20
161.104.104.0/21
176.109.0.0/21 176.109.0.0/21
176.112.168.0/21 176.112.168.0/21
176.116.112.0/22
176.116.96.0/20 176.116.96.0/20
178.16.156.148/30 178.16.156.148/30
178.17.176.0/23 178.17.176.0/23
@@ -65,7 +67,6 @@
178.237.240.0/20 178.237.240.0/20
178.237.248.0/21 178.237.248.0/21
178.237.28.0/24 178.237.28.0/24
178.237.29.0/24
178.237.30.0/23 178.237.30.0/23
178.248.232.137/32 178.248.232.137/32
178.248.232.60/32 178.248.232.60/32
@@ -224,7 +225,6 @@
195.144.232.144/30 195.144.232.144/30
195.144.240.128/28 195.144.240.128/28
195.149.110.0/24 195.149.110.0/24
195.151.25.48/29
195.16.55.224/27 195.16.55.224/27
195.162.36.64/28 195.162.36.64/28
195.170.218.24/29 195.170.218.24/29
@@ -453,7 +453,9 @@
217.106.203.88/29 217.106.203.88/29
217.106.93.192/26 217.106.93.192/26
217.106.95.112/28 217.106.95.112/28
217.107.0.0/18
217.107.200.0/21 217.107.200.0/21
217.107.208.0/20
217.107.5.112/29 217.107.5.112/29
217.107.5.16/29 217.107.5.16/29
217.107.5.24/29 217.107.5.24/29
@@ -469,6 +471,7 @@
217.16.16.0/21 217.16.16.0/21
217.16.24.0/21 217.16.24.0/21
217.172.18.0/23 217.172.18.0/23
217.172.20.0/22
217.174.188.0/22 217.174.188.0/22
217.174.188.0/23 217.174.188.0/23
217.195.92.16/28 217.195.92.16/28
@@ -484,7 +487,10 @@
217.20.158.0/24 217.20.158.0/24
217.20.159.0/24 217.20.159.0/24
217.20.86.128/26 217.20.86.128/26
217.20.86.192/27
217.20.86.224/29
217.20.86.232/29 217.20.86.232/29
217.20.86.240/28
217.23.88.168/29 217.23.88.168/29
217.23.88.248/29 217.23.88.248/29
217.27.142.176/30 217.27.142.176/30
@@ -540,6 +546,7 @@
46.20.70.160/28 46.20.70.160/28
46.228.0.232/29 46.228.0.232/29
46.29.152.0/22 46.29.152.0/22
46.29.156.0/23
46.46.142.160/28 46.46.142.160/28
46.46.148.40/29 46.46.148.40/29
46.47.197.128/30 46.47.197.128/30
@@ -642,7 +649,6 @@
78.37.84.120/29 78.37.84.120/29
78.37.97.88/29 78.37.97.88/29
79.133.74.160/30 79.133.74.160/30
79.133.74.168/30
79.133.75.176/30 79.133.75.176/30
79.133.75.44/30 79.133.75.44/30
79.137.132.0/24 79.137.132.0/24
@@ -825,6 +831,7 @@
85.141.33.64/28 85.141.33.64/28
85.141.60.96/28 85.141.60.96/28
85.141.61.160/28 85.141.61.160/28
85.142.251.0/24
85.143.125.0/24 85.143.125.0/24
85.146.204.44/30 85.146.204.44/30
85.192.32.0/22 85.192.32.0/22
@@ -995,6 +1002,7 @@
90.156.216.0/23 90.156.216.0/23
90.156.218.0/23 90.156.218.0/23
90.156.232.0/21 90.156.232.0/21
90.156.248.0/22
91.103.194.184/29 91.103.194.184/29
91.135.212.0/22 91.135.212.0/22
91.135.216.0/21 91.135.216.0/21
@@ -1117,6 +1125,7 @@
95.167.5.80/28 95.167.5.80/28
95.167.54.76/30 95.167.54.76/30
95.167.59.244/30 95.167.59.244/30
95.167.59.248/30
95.167.64.20/30 95.167.64.20/30
95.167.68.216/29 95.167.68.216/29
95.167.69.116/30 95.167.69.116/30

View File

@@ -1,193 +1,387 @@
# Networks announced by AS28709 # Networks announced by AS28709
# AS-Name (ORG): VKONTAKTE-REGIONAL-CDN (LLC VK) # AS-Name (ORG): VKONTAKTE-REGIONAL-CDN (LLC VK)
2a00:bdc0:e003::/48
185.32.251.0/24
2a00:bdc0:e007::/48
2a00:bdc0:e005::/48
2a00:bdc0:e004::/48
178.237.28.0/24
95.142.203.0/24
178.237.22.0/24
2a00:bdc0:e002::/48 2a00:bdc0:e002::/48
2a00:bdc0:e007::/48
178.237.21.0/24
2a00:bdc0:e004::/48
128.140.170.0/24 128.140.170.0/24
178.237.24.0/24 178.237.24.0/24
178.237.21.0/24 2a00:bdc0:e005::/48
185.32.249.0/24 178.237.22.0/24
95.142.201.0/24 178.237.28.0/24
95.142.202.0/24 95.142.202.0/24
95.142.201.0/24
185.32.251.0/24
2a00:bdc0:e003::/48
185.32.249.0/24
95.142.203.0/24
# Networks announced by AS28709
# AS-Name (ORG): VKONTAKTE-REGIONAL-CDN (LLC VK)
2a00:bdc0:e002::/48
2a00:bdc0:e007::/48
178.237.21.0/24
2a00:bdc0:e004::/48
128.140.170.0/24
178.237.24.0/24
2a00:bdc0:e005::/48
178.237.22.0/24
178.237.28.0/24
95.142.202.0/24
95.142.201.0/24
185.32.251.0/24
2a00:bdc0:e003::/48
185.32.249.0/24
95.142.203.0/24
# Networks announced by AS34500 # Networks announced by AS34500
# AS-Name (ORG): CTSPI (FGUP CTSPI MGA Russia) # AS-Name (ORG): CTSPI (FGUP CTSPI MGA Russia)
80.73.16.0/24 80.73.16.0/24
80.73.16.0/20
80.73.16.0/21 80.73.16.0/21
80.73.16.0/20
# Networks announced by AS34500
# AS-Name (ORG): CTSPI (FGUP CTSPI MGA Russia)
80.73.16.0/24
80.73.16.0/21
80.73.16.0/20
# Networks announced by AS43038 # Networks announced by AS43038
# AS-Name (ORG): TVK-AS (MTS PJSC) # AS-Name (ORG): TVK-AS (MTS PJSC)
193.33.230.0/23
178.17.188.0/22
79.143.230.0/24
178.17.182.0/23
91.208.20.0/24
195.226.203.0/24
178.17.178.0/23
81.195.151.0/24
178.17.184.0/22
178.17.176.0/23 178.17.176.0/23
79.143.232.0/24 178.17.184.0/22
213.176.232.0/23 178.17.188.0/22
213.176.234.0/23 213.176.234.0/23
91.208.20.0/24
178.17.182.0/23
79.143.229.0/24 79.143.229.0/24
195.226.203.0/24
79.143.230.0/24
213.176.232.0/23
178.17.180.0/23 178.17.180.0/23
193.33.230.0/23
81.195.151.0/24
79.143.232.0/24
178.17.178.0/23
# Networks announced by AS43038
# AS-Name (ORG): TVK-AS (MTS PJSC)
178.17.176.0/23
178.17.184.0/22
178.17.188.0/22
213.176.234.0/23
91.208.20.0/24
178.17.182.0/23
79.143.229.0/24
195.226.203.0/24
79.143.230.0/24
213.176.232.0/23
178.17.180.0/23
193.33.230.0/23
81.195.151.0/24
79.143.232.0/24
178.17.178.0/23
# Networks announced by AS43720 # Networks announced by AS43720
# AS-Name (ORG): TVK-AS (MTS OJSC) # AS-Name (ORG): TVK-AS (MTS OJSC)
91.135.220.0/24
91.135.221.0/24 91.135.221.0/24
91.195.136.0/23
91.135.216.0/21 91.135.216.0/21
91.135.212.0/22 91.135.212.0/22
91.195.136.0/23
81.195.164.0/24 81.195.164.0/24
# Networks announced by AS43720
# AS-Name (ORG): TVK-AS (MTS OJSC)
91.135.220.0/24 91.135.220.0/24
91.135.221.0/24
91.195.136.0/23
91.135.216.0/21
91.135.212.0/22
81.195.164.0/24
# Networks announced by AS47541 # Networks announced by AS47541
# AS-Name (ORG): VKONTAKTE-SPB-AS (LLC VK) # AS-Name (ORG): VKONTAKTE-SPB-AS (LLC VK)
79.137.180.0/24
95.213.0.0/18 95.213.0.0/18
95.213.0.0/17
185.32.248.0/22
2a00:bdc0::/33
91.231.133.0/24
2a00:bdc0:8000::/34
2a00:bdc2::/31
91.231.134.0/24
95.142.192.0/20
95.213.44.0/24
79.137.139.0/24
2a14:25c7::/32
91.231.132.0/24
87.240.166.0/24
2a00:bdc4::/30
93.186.232.0/21
217.69.132.0/24
2a14:25c5::/32
95.142.192.0/21 95.142.192.0/21
93.186.224.0/21
79.137.183.0/24 79.137.183.0/24
2a00:bdc0:c000::/35
185.131.68.0/23
95.213.45.0/24
2a00:bdc1::/32
87.240.128.0/18
87.240.167.0/24
79.137.164.0/24 79.137.164.0/24
87.240.128.0/18
2a00:bdc0:8000::/34
91.231.132.0/24
2a00:bdc4::/30
79.137.180.0/24
91.231.133.0/24
95.213.44.0/24
2a00:bdc0:c000::/35
217.69.132.0/24
185.32.248.0/22
79.137.139.0/24
2a14:25c5::/32
93.186.232.0/21
95.142.192.0/20
2a14:25c7::/32
185.131.68.0/23
87.240.167.0/24
95.213.45.0/24
91.231.134.0/24
2a00:bdc2::/31
2a00:bdc1::/32
93.186.224.0/21
87.240.166.0/24
2a00:bdc0::/33
95.213.0.0/17
# Networks announced by AS47541
# AS-Name (ORG): VKONTAKTE-SPB-AS (LLC VK)
95.213.0.0/18
95.142.192.0/21
79.137.183.0/24
79.137.164.0/24
87.240.128.0/18
2a00:bdc0:8000::/34
91.231.132.0/24
2a00:bdc4::/30
79.137.180.0/24
91.231.133.0/24
95.213.44.0/24
2a00:bdc0:c000::/35
217.69.132.0/24
185.32.248.0/22
79.137.139.0/24
2a14:25c5::/32
93.186.232.0/21
95.142.192.0/20
2a14:25c7::/32
185.131.68.0/23
87.240.167.0/24
95.213.45.0/24
91.231.134.0/24
2a00:bdc2::/31
2a00:bdc1::/32
93.186.224.0/21
87.240.166.0/24
2a00:bdc0::/33
95.213.0.0/17
# Networks announced by AS47542 # Networks announced by AS47542
# AS-Name (ORG): VKONTAKTE-MSK-CDN-AS (LLC VK) # AS-Name (ORG): VKONTAKTE-MSK-CDN-AS (LLC VK)
95.213.45.0/24
87.240.166.0/24
95.213.44.0/24
2a00:bdc0:f000::/36 2a00:bdc0:f000::/36
87.240.167.0/24 95.213.44.0/24
95.142.204.0/23 87.240.166.0/24
95.142.207.0/24 95.142.207.0/24
95.213.45.0/24
87.240.167.0/24
128.140.173.0/24 128.140.173.0/24
95.142.204.0/23
# Networks announced by AS47542
# AS-Name (ORG): VKONTAKTE-MSK-CDN-AS (LLC VK)
2a00:bdc0:f000::/36
95.213.44.0/24
87.240.166.0/24
95.142.207.0/24
95.213.45.0/24
87.240.167.0/24
128.140.173.0/24
95.142.204.0/23
# Networks announced by AS47764 # Networks announced by AS47764
# AS-Name (ORG): VK-AS (LLC VK) # AS-Name (ORG): VK-AS (LLC VK)
212.233.96.0/22 185.100.104.0/22
2a00:1148::/29 87.242.112.0/22
90.156.151.0/24 185.16.246.0/24
90.156.148.0/22 217.174.188.0/22
89.208.84.0/22 146.185.208.0/22
95.163.248.0/21 178.22.88.0/21
95.163.208.0/21
90.156.232.0/21
94.139.244.0/24
89.221.228.0/22
146.185.240.0/22
89.221.235.0/24
2a00:46e0::/32 2a00:46e0::/32
5.181.61.0/24 195.211.20.0/22
2a14:25c0::/32
95.163.133.0/24
109.120.180.0/22
89.221.236.0/22
185.180.200.0/22
83.166.248.0/21
185.5.136.0/22
45.136.20.0/22
5.181.60.0/22
185.16.247.0/24
94.139.244.0/22
90.156.216.0/22
91.231.132.0/22
185.187.63.0/24
90.156.212.0/22
94.100.176.0/20
90.156.151.0/24
128.140.168.0/21
89.208.218.0/23
212.233.88.0/21
176.112.168.0/21
2a00:1148::/29
185.16.244.0/22
87.239.104.0/21
5.61.232.0/21
130.49.224.0/19
89.208.196.0/22
89.208.208.0/22
91.231.133.0/24
45.84.128.0/22
89.208.84.0/22
212.233.72.0/21
5.188.140.0/22
83.166.232.0/21
155.212.192.0/20
2a00:1148::/32
212.111.84.0/22
91.219.224.0/22
89.221.232.0/22
90.156.148.0/22
5.101.40.0/22
95.163.248.0/21
79.137.174.0/23
193.203.40.0/22
85.192.32.0/22
2a00:46e0:2::/48
92.38.217.0/24
84.23.52.0/22 84.23.52.0/22
188.93.56.0/21
212.233.96.0/22
185.131.68.0/22
212.233.120.0/22
5.61.16.0/21
185.226.52.0/22
178.237.16.0/20
109.120.188.0/22
89.208.220.0/22
83.217.216.0/22 83.217.216.0/22
217.16.16.0/20 217.16.16.0/20
194.186.63.0/24 194.186.63.0/24
79.137.157.0/24
94.100.176.0/20
31.177.104.0/22
83.222.28.0/22
217.20.144.0/20
185.5.136.0/22
5.101.40.0/22
178.237.16.0/20
185.130.112.0/22
89.208.220.0/22
185.226.52.0/22
90.156.212.0/22
185.16.148.0/22 185.16.148.0/22
185.16.247.0/24
128.140.168.0/21
89.221.236.0/22
155.212.192.0/20
91.231.134.0/24
45.84.128.0/22
195.218.190.0/23 195.218.190.0/23
79.137.174.0/23
91.219.224.0/22
85.192.32.0/22
2a00:46e0:2::/48
109.120.180.0/22
185.241.192.0/22
213.219.212.0/22
2a14:25c6::/32
5.188.140.0/22
212.233.72.0/21
89.208.196.0/22
89.208.208.0/22
130.49.224.0/19
90.156.216.0/22
87.239.104.0/21
62.217.160.0/20
89.208.228.0/22
5.61.232.0/21
37.139.32.0/22 37.139.32.0/22
94.139.244.0/24
193.203.40.0/22
185.86.144.0/22
212.233.88.0/21
95.163.216.0/22
176.112.168.0/21
37.139.40.0/22
185.187.63.0/24
87.242.112.0/22
2a00:b4c0::/32 2a00:b4c0::/32
95.163.208.0/21 91.231.134.0/24
5.181.60.0/22 5.181.61.0/24
83.166.248.0/21 213.219.212.0/22
185.180.200.0/22
95.163.32.0/19
178.22.88.0/21
185.16.246.0/24
146.185.208.0/22
217.174.188.0/22
89.208.216.0/23
89.221.235.0/24
95.163.180.0/22
89.221.232.0/22
79.137.240.0/21
94.139.244.0/22
185.16.244.0/23 185.16.244.0/23
91.231.132.0/22 185.241.192.0/22
178.237.29.0/24
188.93.56.0/21
185.16.244.0/22
185.131.68.0/22
91.231.133.0/24
217.69.128.0/20 217.69.128.0/20
2a14:25c6::/32
79.137.240.0/21
79.137.157.0/24
95.163.216.0/22
62.217.160.0/20
37.139.40.0/22
89.208.228.0/22
95.163.180.0/22
95.163.32.0/19
185.130.112.0/22
185.86.144.0/22
83.222.28.0/22
31.177.104.0/22
89.208.216.0/23
217.20.144.0/20
161.104.104.0/21
# Networks announced by AS47764
# AS-Name (ORG): VK-AS (LLC VK)
185.100.104.0/22
87.242.112.0/22
185.16.246.0/24
217.174.188.0/22
146.185.208.0/22
178.22.88.0/21
95.163.208.0/21
90.156.232.0/21
94.139.244.0/24
89.221.228.0/22
146.185.240.0/22 146.185.240.0/22
89.221.235.0/24
2a00:46e0::/32
195.211.20.0/22 195.211.20.0/22
2a14:25c0::/32 2a14:25c0::/32
83.166.232.0/21 95.163.133.0/24
109.120.180.0/22
89.221.236.0/22
185.180.200.0/22
83.166.248.0/21
185.5.136.0/22
45.136.20.0/22 45.136.20.0/22
5.181.60.0/22
185.16.247.0/24
94.139.244.0/22
90.156.216.0/22
91.231.132.0/22
185.187.63.0/24
90.156.212.0/22
94.100.176.0/20
90.156.151.0/24
128.140.168.0/21
89.208.218.0/23
212.233.88.0/21
176.112.168.0/21
2a00:1148::/29
185.16.244.0/22
87.239.104.0/21
5.61.232.0/21
130.49.224.0/19
89.208.196.0/22
89.208.208.0/22
91.231.133.0/24
45.84.128.0/22
89.208.84.0/22
212.233.72.0/21
5.188.140.0/22
83.166.232.0/21
155.212.192.0/20
2a00:1148::/32 2a00:1148::/32
212.111.84.0/22 212.111.84.0/22
109.120.188.0/22 91.219.224.0/22
185.100.104.0/22 89.221.232.0/22
89.221.228.0/22 90.156.148.0/22
5.61.16.0/21 5.101.40.0/22
95.163.133.0/24 95.163.248.0/21
212.233.120.0/22 79.137.174.0/23
90.156.232.0/21 193.203.40.0/22
89.208.218.0/23 85.192.32.0/22
2a00:46e0:2::/48
92.38.217.0/24 92.38.217.0/24
84.23.52.0/22
188.93.56.0/21
212.233.96.0/22
185.131.68.0/22
212.233.120.0/22
5.61.16.0/21
185.226.52.0/22
178.237.16.0/20
109.120.188.0/22
89.208.220.0/22
83.217.216.0/22
217.16.16.0/20
194.186.63.0/24
185.16.148.0/22
195.218.190.0/23
37.139.32.0/22
2a00:b4c0::/32
91.231.134.0/24
5.181.61.0/24
213.219.212.0/22
185.16.244.0/23
185.241.192.0/22
217.69.128.0/20
2a14:25c6::/32
79.137.240.0/21
79.137.157.0/24
95.163.216.0/22
62.217.160.0/20
37.139.40.0/22
89.208.228.0/22
95.163.180.0/22
95.163.32.0/19
185.130.112.0/22
185.86.144.0/22
83.222.28.0/22
31.177.104.0/22
89.208.216.0/23
217.20.144.0/20
161.104.104.0/21
# Networks announced by AS49281
# AS-Name (ORG): M100 (M100 LLC)
85.198.106.0/24
2a00:a300::/32
# Networks announced by AS49281 # Networks announced by AS49281
# AS-Name (ORG): M100 (M100 LLC) # AS-Name (ORG): M100 (M100 LLC)
85.198.106.0/24 85.198.106.0/24
@@ -195,10 +389,24 @@
# Networks announced by AS49797 # Networks announced by AS49797
# AS-Name (ORG): NESSLY (LLC VK) # AS-Name (ORG): NESSLY (LLC VK)
79.137.142.0/24 79.137.142.0/24
# Networks announced by AS49797
# AS-Name (ORG): NESSLY (LLC VK)
79.137.142.0/24
# Networks announced by AS49988 # Networks announced by AS49988
# AS-Name (ORG): odkl-as (LLC VK) # AS-Name (ORG): odkl-as (LLC VK)
85.198.107.0/24
79.137.140.0/24 79.137.140.0/24
85.198.107.0/24
85.142.251.0/24
# Networks announced by AS49988
# AS-Name (ORG): odkl-as (LLC VK)
79.137.140.0/24
85.198.107.0/24
85.142.251.0/24
# Networks announced by AS51932
# AS-Name (ORG): ORVD-AS (FGUP Goskorporatsiya po OrVD)
91.221.141.0/24
91.221.140.0/23
91.221.140.0/24
# Networks announced by AS51932 # Networks announced by AS51932
# AS-Name (ORG): ORVD-AS (FGUP Goskorporatsiya po OrVD) # AS-Name (ORG): ORVD-AS (FGUP Goskorporatsiya po OrVD)
91.221.141.0/24 91.221.141.0/24
@@ -212,7 +420,9 @@
78.108.200.0/24 78.108.200.0/24
# Network name: RU-RTCOMM-20001220 # Network name: RU-RTCOMM-20001220
217.106.0.0/16 217.106.0.0/16
217.107.0.0/18
217.107.200.0/21 217.107.200.0/21
217.107.208.0/20
# Network name: MMT # Network name: MMT
46.61.208.0/24 46.61.208.0/24
# Network name: RTCOMM-GNIVC # Network name: RTCOMM-GNIVC
@@ -226,6 +436,7 @@
95.173.128.0/20 95.173.128.0/20
95.173.144.0/20 95.173.144.0/20
176.116.96.0/20 176.116.96.0/20
176.116.112.0/22
185.183.172.0/23 185.183.172.0/23
185.183.174.0/23 185.183.174.0/23
194.226.80.0/21 194.226.80.0/21
@@ -246,6 +457,7 @@
95.173.128.0/20 95.173.128.0/20
95.173.144.0/20 95.173.144.0/20
176.116.96.0/20 176.116.96.0/20
176.116.112.0/22
185.183.172.0/23 185.183.172.0/23
185.183.174.0/23 185.183.174.0/23
194.226.80.0/21 194.226.80.0/21
@@ -332,6 +544,7 @@
95.173.128.0/20 95.173.128.0/20
95.173.144.0/20 95.173.144.0/20
176.116.96.0/20 176.116.96.0/20
176.116.112.0/22
185.183.172.0/23 185.183.172.0/23
185.183.174.0/23 185.183.174.0/23
194.226.80.0/21 194.226.80.0/21
@@ -341,6 +554,7 @@
# Network name: RU_FSKN # Network name: RU_FSKN
92.50.198.72/30 92.50.198.72/30
95.167.59.244/30 95.167.59.244/30
95.167.59.248/30
# Network name: UMNS-NOVGOROD # Network name: UMNS-NOVGOROD
213.59.91.48/29 213.59.91.48/29
# Network name: FOMS # Network name: FOMS
@@ -362,6 +576,7 @@
217.106.147.8/29 217.106.147.8/29
# Network name: GLAVNIVZ # Network name: GLAVNIVZ
46.29.152.0/22 46.29.152.0/22
46.29.156.0/23
185.168.60.0/24 185.168.60.0/24
185.168.61.0/24 185.168.61.0/24
185.168.62.0/24 185.168.62.0/24
@@ -399,7 +614,10 @@
94.25.70.64/30 94.25.70.64/30
# Network name: MNSHMAO # Network name: MNSHMAO
217.20.86.128/26 217.20.86.128/26
217.20.86.192/27
217.20.86.224/29
217.20.86.232/29 217.20.86.232/29
217.20.86.240/28
# Network name: UMNS-TUMEN # Network name: UMNS-TUMEN
213.59.59.120/29 213.59.59.120/29
213.59.59.144/29 213.59.59.144/29
@@ -538,6 +756,7 @@
77.37.128.0/17 77.37.128.0/17
# Network name: STARNET-VPN # Network name: STARNET-VPN
217.172.18.0/23 217.172.18.0/23
217.172.20.0/22
# Network name: CCC-HC # Network name: CCC-HC
89.111.176.0/22 89.111.176.0/22
# Network name: RU-NIC-HOSTING # Network name: RU-NIC-HOSTING
@@ -578,6 +797,48 @@
79.137.240.0/21 79.137.240.0/21
# NET-Name: 80.73.16.0/20 RU-CTSPI-20050201 (FGUP CTSPI MGA Russia) # NET-Name: 80.73.16.0/20 RU-CTSPI-20050201 (FGUP CTSPI MGA Russia)
80.73.16.0/20 80.73.16.0/20
# NET-Name: 83.166.232.0/21 RU-NETBRIDGE-20040611 (LLC VK)
83.166.232.0/21
# NET-Name: 83.166.248.0/21 RU-NETBRIDGE-20040611 (LLC VK)
83.166.248.0/21
# NET-Name: 83.217.216.0/22 RU-NETBRIDGE-20040310 (LLC VK)
83.217.216.0/22
# NET-Name: 83.222.28.0/22 RU-ODNOKLASSNIKI-20040421 (LLC VK)
83.222.28.0/22
# NET-Name: 84.23.52.0/22 RU-NETBRIDGE-20041012 (LLC VK)
84.23.52.0/22
# NET-Name: 85.192.32.0/22 RU-NETBRIDGE-20041206 (LLC VK)
85.192.32.0/22
# NET-Name: 87.239.104.0/21 RU-NETBRIDGE-20060104 (LLC VK)
87.239.104.0/21
# NET-Name: 87.240.128.0/18 RU-VKONTAKTE-20091223 (LLC VK)
87.240.128.0/18
# NET-Name: 87.242.112.0/22 RU-ODNOKLASSNIKI-20050722 (LLC VK)
87.242.112.0/22
# NET-Name: 89.208.84.0/22 RU-NETBRIDGE-20060418 (LLC VK)
89.208.84.0/22
# NET-Name: 89.208.196.0/22 RU-NETBRIDGE-20060418 (LLC VK)
89.208.196.0/22
# NET-Name: 89.208.208.0/22 RU-NETBRIDGE-20060418 (LLC VK)
89.208.208.0/22
# NET-Name: 89.208.216.0/21 RU-NETBRIDGE-20060418 (LLC VK)
89.208.216.0/21
# NET-Name: 89.208.228.0/22 RU-NETBRIDGE-20060418 (LLC VK)
89.208.228.0/22
# NET-Name: 89.221.228.0/22 RU-NETBRIDGE-20061011 (LLC VK)
89.221.228.0/22
# NET-Name: 89.221.232.0/21 RU-NETBRIDGE-20061011 (LLC VK)
89.221.232.0/21
# NET-Name: 90.156.148.0/22 RU-NETBRIDGE-20061117 (LLC VK)
90.156.148.0/22
# NET-Name: 90.156.212.0/22 RU-NETBRIDGE-20061117 (LLC VK)
90.156.212.0/22
# NET-Name: 90.156.216.0/22 RU-NETBRIDGE-20061117 (LLC VK)
90.156.216.0/22
# NET-Name: 90.156.232.0/21 RU-NETBRIDGE-20061117 (LLC VK)
90.156.232.0/21
# NET-Name: 90.156.248.0/22 RU-NETBRIDGE-20061117 (LLC VK)
90.156.248.0/22
# NET-Name: 212.57.133.0/24 CHUVD ROSTELECOM-MNT () [Computing Center of Regional Police Department of Chelyabinsk region] # NET-Name: 212.57.133.0/24 CHUVD ROSTELECOM-MNT () [Computing Center of Regional Police Department of Chelyabinsk region]
212.57.133.0/24 212.57.133.0/24
# NET-Name: 213.147.55.108/30 CONNECTORS MTU-NOC () [Subnetwork for TM10068-RIPE] # NET-Name: 213.147.55.108/30 CONNECTORS MTU-NOC () [Subnetwork for TM10068-RIPE]
@@ -912,8 +1173,6 @@
89.21.152.104/29 89.21.152.104/29
# NET-Name: 89.175.176.140/30 GBUMSE COMSTAR-MNT () [FGUP «GBUMSE»] # NET-Name: 89.175.176.140/30 GBUMSE COMSTAR-MNT () [FGUP «GBUMSE»]
89.175.176.140/30 89.175.176.140/30
# NET-Name: 195.151.25.48/29 UFSB-NET ROSPRINT-NCC () [(99999960) UFSB, Ekaterinburg]
195.151.25.48/29
# NET-Name: 87.249.16.32/28 TEL-NET-5728 TEL-NET-MNT () [object-VARSHAVSKOE125, client-FGUP "NII "Argon"] # NET-Name: 87.249.16.32/28 TEL-NET-5728 TEL-NET-MNT () [object-VARSHAVSKOE125, client-FGUP "NII "Argon"]
87.249.16.32/28 87.249.16.32/28
# NET-Name: 87.249.18.60/30 TEL-NET-5728 TEL-NET-MNT () [object-VARSHAVSKOE125, client-FGUP "NII "Argon"] # NET-Name: 87.249.18.60/30 TEL-NET-5728 TEL-NET-MNT () [object-VARSHAVSKOE125, client-FGUP "NII "Argon"]
@@ -1084,8 +1343,6 @@
95.167.21.104/29 95.167.21.104/29
# NET-Name: 95.167.29.104/29 FGUP_Avtomatika ROSTELECOM-MNT () [Ticket 09-43230, DVF] # NET-Name: 95.167.29.104/29 FGUP_Avtomatika ROSTELECOM-MNT () [Ticket 09-43230, DVF]
95.167.29.104/29 95.167.29.104/29
# NET-Name: 79.133.74.168/30 UFSB ROSTELECOM-MNT () [Ticket 09-08632-1]
79.133.74.168/30
# NET-Name: 79.133.74.160/30 FGUP_GTRK_Smolensk ROSTELECOM-MNT () [Ticket 09-02269-1] # NET-Name: 79.133.74.160/30 FGUP_GTRK_Smolensk ROSTELECOM-MNT () [Ticket 09-02269-1]
79.133.74.160/30 79.133.74.160/30
# NET-Name: 79.133.75.176/30 UVD_po_Kirovskoy_oblasti ROSTELECOM-MNT () [Ticket 08-02440-1] # NET-Name: 79.133.75.176/30 UVD_po_Kirovskoy_oblasti ROSTELECOM-MNT () [Ticket 08-02440-1]
@@ -1750,8 +2007,6 @@
5.61.236.0/23 5.61.236.0/23
# NET-Name: 5.61.238.0/24 VK-FRONT VKCOMPANY-MNT () [VK Services] # NET-Name: 5.61.238.0/24 VK-FRONT VKCOMPANY-MNT () [VK Services]
5.61.238.0/24 5.61.238.0/24
# NET-Name: 178.237.29.0/24 VK-FRONT VKCOMPANY-MNT () [VK Services]
178.237.29.0/24
# NET-Name: 95.163.32.0/22 VK-FRONT VKCOMPANY-MNT () [VK Services] # NET-Name: 95.163.32.0/22 VK-FRONT VKCOMPANY-MNT () [VK Services]
95.163.32.0/22 95.163.32.0/22
# NET-Name: 95.163.36.0/22 VK-FRONT VKCOMPANY-MNT () [VK Services] # NET-Name: 95.163.36.0/22 VK-FRONT VKCOMPANY-MNT () [VK Services]
@@ -2310,3 +2565,5 @@
155.212.192.0/20 155.212.192.0/20
# NET-Name: 130.49.224.0/19 RU-NETBRIDGE-19880518 VKCOMPANY-MNT RIPE-NCC-HM-MNT (ORG-LLCn4-RIPE) [] # NET-Name: 130.49.224.0/19 RU-NETBRIDGE-19880518 VKCOMPANY-MNT RIPE-NCC-HM-MNT (ORG-LLCn4-RIPE) []
130.49.224.0/19 130.49.224.0/19
# NET-Name: 161.104.104.0/21 RU-NETBRIDGE-19920624 VKCOMPANY-MNT RIPE-NCC-HM-MNT (ORG-LLCn4-RIPE) []
161.104.104.0/21

View File

@@ -1,109 +0,0 @@
# IPTables/IPSet Blacklist Configurations
Auto-generated ipset configuration files for blocking networks and IP addresses with iptables/ip6tables.
## Available Files
### IPv4 Only
- **`blacklist-v4.ipset`** - Contains only IPv4 networks (806 entries)
### IPv6 Only
- **`blacklist-v6.ipset`** - Contains only IPv6 networks (3 entries)
### Mixed IPv4/IPv6
- **`blacklist.ipset`** - Contains both IPv4 and IPv6 sets (809 total entries)
## Usage
### 1. Load the IPSet
```bash
# For IPv4 only
ipset restore < blacklist-v4.ipset
# For IPv6 only
ipset restore < blacklist-v6.ipset
# For both IPv4 and IPv6 (loads both sets)
ipset restore < blacklist.ipset
```
### 2. Apply IPTables Rules
```bash
# For IPv4
iptables -I INPUT -m set --match-set blacklist-v4 src -j DROP
iptables -I FORWARD -m set --match-set blacklist-v4 src -j DROP
# For IPv6
ip6tables -I INPUT -m set --match-set blacklist-v6 src -j DROP
ip6tables -I FORWARD -m set --match-set blacklist-v6 src -j DROP
```
### 3. Persist Rules (Optional)
To make the rules persistent across reboots:
**On Debian/Ubuntu:**
```bash
# Save iptables rules
iptables-save > /etc/iptables/rules.v4
ip6tables-save > /etc/iptables/rules.v6
# Save ipset
ipset save > /etc/ipset.conf
```
**On RHEL/CentOS:**
```bash
# Save iptables rules
service iptables save
service ip6tables save
# Save ipset
ipset save > /etc/sysconfig/ipset
```
### 4. Update Existing Sets
To update the blacklist without restarting iptables:
```bash
# Flush and reload
ipset flush blacklist-v4
ipset restore < blacklist-v4.ipset
```
### 5. Remove Sets
```bash
# Remove IPv4 set
ipset flush blacklist-v4
ipset destroy blacklist-v4
# Remove IPv6 set
ipset flush blacklist-v6
ipset destroy blacklist-v6
```
## Performance Benefits
IPSet uses hash tables for O(1) lookup performance, making it ideal for large blacklists:
- Much faster than individual iptables rules
- Minimal CPU overhead
- Supports up to 65536 entries per set (configurable)
- Kernel-level implementation for maximum efficiency
## Automatic Updates
These files are automatically regenerated when the blacklists are updated via the GitHub Actions workflow.
## Source
Generated from the blacklist files in the `blacklists/` directory.

View File

@@ -1,6 +1,6 @@
# IPSet blacklist configuration (IPv4 only) # IPSet blacklist configuration (IPv4 only)
# Auto-generated from blacklist-v4.txt # Auto-generated from blacklist-v4.txt
# Last updated: 2026-03-21 06:34:56 UTC # Last updated: 2026-04-05 06:57:51 UTC
# #
# Usage: # Usage:
# 1. Load the ipset: # 1. Load the ipset:
@@ -15,7 +15,7 @@
# ipset destroy blacklist-v4 # ipset destroy blacklist-v4
# #
create blacklist-v4 hash:net family inet hashsize 1135 maxelem 2270 create blacklist-v4 hash:net family inet hashsize 1144 maxelem 2288
add blacklist-v4 109.120.180.0/22 add blacklist-v4 109.120.180.0/22
add blacklist-v4 109.120.180.0/23 add blacklist-v4 109.120.180.0/23
add blacklist-v4 109.120.182.0/23 add blacklist-v4 109.120.182.0/23
@@ -59,8 +59,10 @@ add blacklist-v4 146.185.240.0/23
add blacklist-v4 146.185.242.0/23 add blacklist-v4 146.185.242.0/23
add blacklist-v4 149.62.55.240/30 add blacklist-v4 149.62.55.240/30
add blacklist-v4 155.212.192.0/20 add blacklist-v4 155.212.192.0/20
add blacklist-v4 161.104.104.0/21
add blacklist-v4 176.109.0.0/21 add blacklist-v4 176.109.0.0/21
add blacklist-v4 176.112.168.0/21 add blacklist-v4 176.112.168.0/21
add blacklist-v4 176.116.112.0/22
add blacklist-v4 176.116.96.0/20 add blacklist-v4 176.116.96.0/20
add blacklist-v4 178.16.156.148/30 add blacklist-v4 178.16.156.148/30
add blacklist-v4 178.17.176.0/23 add blacklist-v4 178.17.176.0/23
@@ -83,7 +85,6 @@ add blacklist-v4 178.237.24.0/24
add blacklist-v4 178.237.240.0/20 add blacklist-v4 178.237.240.0/20
add blacklist-v4 178.237.248.0/21 add blacklist-v4 178.237.248.0/21
add blacklist-v4 178.237.28.0/24 add blacklist-v4 178.237.28.0/24
add blacklist-v4 178.237.29.0/24
add blacklist-v4 178.237.30.0/23 add blacklist-v4 178.237.30.0/23
add blacklist-v4 178.248.232.137/32 add blacklist-v4 178.248.232.137/32
add blacklist-v4 178.248.232.60/32 add blacklist-v4 178.248.232.60/32
@@ -242,7 +243,6 @@ add blacklist-v4 195.144.226.224/28
add blacklist-v4 195.144.232.144/30 add blacklist-v4 195.144.232.144/30
add blacklist-v4 195.144.240.128/28 add blacklist-v4 195.144.240.128/28
add blacklist-v4 195.149.110.0/24 add blacklist-v4 195.149.110.0/24
add blacklist-v4 195.151.25.48/29
add blacklist-v4 195.16.55.224/27 add blacklist-v4 195.16.55.224/27
add blacklist-v4 195.162.36.64/28 add blacklist-v4 195.162.36.64/28
add blacklist-v4 195.170.218.24/29 add blacklist-v4 195.170.218.24/29
@@ -471,7 +471,9 @@ add blacklist-v4 217.106.203.240/29
add blacklist-v4 217.106.203.88/29 add blacklist-v4 217.106.203.88/29
add blacklist-v4 217.106.93.192/26 add blacklist-v4 217.106.93.192/26
add blacklist-v4 217.106.95.112/28 add blacklist-v4 217.106.95.112/28
add blacklist-v4 217.107.0.0/18
add blacklist-v4 217.107.200.0/21 add blacklist-v4 217.107.200.0/21
add blacklist-v4 217.107.208.0/20
add blacklist-v4 217.107.5.112/29 add blacklist-v4 217.107.5.112/29
add blacklist-v4 217.107.5.16/29 add blacklist-v4 217.107.5.16/29
add blacklist-v4 217.107.5.24/29 add blacklist-v4 217.107.5.24/29
@@ -487,6 +489,7 @@ add blacklist-v4 217.16.16.0/20
add blacklist-v4 217.16.16.0/21 add blacklist-v4 217.16.16.0/21
add blacklist-v4 217.16.24.0/21 add blacklist-v4 217.16.24.0/21
add blacklist-v4 217.172.18.0/23 add blacklist-v4 217.172.18.0/23
add blacklist-v4 217.172.20.0/22
add blacklist-v4 217.174.188.0/22 add blacklist-v4 217.174.188.0/22
add blacklist-v4 217.174.188.0/23 add blacklist-v4 217.174.188.0/23
add blacklist-v4 217.195.92.16/28 add blacklist-v4 217.195.92.16/28
@@ -502,7 +505,10 @@ add blacklist-v4 217.20.156.0/23
add blacklist-v4 217.20.158.0/24 add blacklist-v4 217.20.158.0/24
add blacklist-v4 217.20.159.0/24 add blacklist-v4 217.20.159.0/24
add blacklist-v4 217.20.86.128/26 add blacklist-v4 217.20.86.128/26
add blacklist-v4 217.20.86.192/27
add blacklist-v4 217.20.86.224/29
add blacklist-v4 217.20.86.232/29 add blacklist-v4 217.20.86.232/29
add blacklist-v4 217.20.86.240/28
add blacklist-v4 217.23.88.168/29 add blacklist-v4 217.23.88.168/29
add blacklist-v4 217.23.88.248/29 add blacklist-v4 217.23.88.248/29
add blacklist-v4 217.27.142.176/30 add blacklist-v4 217.27.142.176/30
@@ -536,6 +542,7 @@ add blacklist-v4 45.84.130.0/23
add blacklist-v4 46.20.70.160/28 add blacklist-v4 46.20.70.160/28
add blacklist-v4 46.228.0.232/29 add blacklist-v4 46.228.0.232/29
add blacklist-v4 46.29.152.0/22 add blacklist-v4 46.29.152.0/22
add blacklist-v4 46.29.156.0/23
add blacklist-v4 46.46.142.160/28 add blacklist-v4 46.46.142.160/28
add blacklist-v4 46.46.148.40/29 add blacklist-v4 46.46.148.40/29
add blacklist-v4 46.47.197.128/30 add blacklist-v4 46.47.197.128/30
@@ -638,7 +645,6 @@ add blacklist-v4 78.37.69.160/27
add blacklist-v4 78.37.84.120/29 add blacklist-v4 78.37.84.120/29
add blacklist-v4 78.37.97.88/29 add blacklist-v4 78.37.97.88/29
add blacklist-v4 79.133.74.160/30 add blacklist-v4 79.133.74.160/30
add blacklist-v4 79.133.74.168/30
add blacklist-v4 79.133.75.176/30 add blacklist-v4 79.133.75.176/30
add blacklist-v4 79.133.75.44/30 add blacklist-v4 79.133.75.44/30
add blacklist-v4 79.137.132.0/24 add blacklist-v4 79.137.132.0/24
@@ -821,6 +827,7 @@ add blacklist-v4 85.141.33.0/28
add blacklist-v4 85.141.33.64/28 add blacklist-v4 85.141.33.64/28
add blacklist-v4 85.141.60.96/28 add blacklist-v4 85.141.60.96/28
add blacklist-v4 85.141.61.160/28 add blacklist-v4 85.141.61.160/28
add blacklist-v4 85.142.251.0/24
add blacklist-v4 85.143.125.0/24 add blacklist-v4 85.143.125.0/24
add blacklist-v4 85.146.204.44/30 add blacklist-v4 85.146.204.44/30
add blacklist-v4 85.192.32.0/22 add blacklist-v4 85.192.32.0/22
@@ -991,6 +998,7 @@ add blacklist-v4 90.156.216.0/22
add blacklist-v4 90.156.216.0/23 add blacklist-v4 90.156.216.0/23
add blacklist-v4 90.156.218.0/23 add blacklist-v4 90.156.218.0/23
add blacklist-v4 90.156.232.0/21 add blacklist-v4 90.156.232.0/21
add blacklist-v4 90.156.248.0/22
add blacklist-v4 91.103.194.184/29 add blacklist-v4 91.103.194.184/29
add blacklist-v4 91.135.212.0/22 add blacklist-v4 91.135.212.0/22
add blacklist-v4 91.135.216.0/21 add blacklist-v4 91.135.216.0/21
@@ -1113,6 +1121,7 @@ add blacklist-v4 95.167.5.64/28
add blacklist-v4 95.167.5.80/28 add blacklist-v4 95.167.5.80/28
add blacklist-v4 95.167.54.76/30 add blacklist-v4 95.167.54.76/30
add blacklist-v4 95.167.59.244/30 add blacklist-v4 95.167.59.244/30
add blacklist-v4 95.167.59.248/30
add blacklist-v4 95.167.64.20/30 add blacklist-v4 95.167.64.20/30
add blacklist-v4 95.167.68.216/29 add blacklist-v4 95.167.68.216/29
add blacklist-v4 95.167.69.116/30 add blacklist-v4 95.167.69.116/30

View File

@@ -1,14 +1,14 @@
# IPSet blacklist configuration (IPv6 only) # IPSet blacklist configuration (IPv6 only)
# Auto-generated from blacklist-v6.txt # Auto-generated from blacklist-v6.txt
# Last updated: 2026-03-21 06:34:56 UTC # Last updated: 2026-04-05 06:57:51 UTC
# #
# Usage: # Usage:
# 1. Load the ipset: # 1. Load the ipset:
# ipset restore < blacklist-v6.ipset # ipset restore < blacklist-v6.ipset
# #
# 2. Use with iptables/ip6tables: # 2. Use with iptables/ip6tables:
# iptables -I INPUT -m set --match-set blacklist-v6 src -m conntrack --ctstate NEW -j DROP # ip6tables -I INPUT -m set --match-set blacklist-v6 src -m conntrack --ctstate NEW -j DROP
# iptables -I FORWARD -m set --match-set blacklist-v6 src -m conntrack --ctstate NEW -j DROP # ip6tables -I FORWARD -m set --match-set blacklist-v6 src -m conntrack --ctstate NEW -j DROP
# #
# 3. To flush/delete the set: # 3. To flush/delete the set:
# ipset flush blacklist-v6 # ipset flush blacklist-v6

View File

@@ -0,0 +1,285 @@
# IPSet blacklist configuration (VK names, IPv4 only)
# Auto-generated from blacklist-vk-v4.txt
# Last updated: 2026-04-05 06:57:51 UTC
#
# Usage:
# 1. Load the ipset:
# ipset restore < blacklist-vk-v4.ipset
#
# 2. Use with iptables/ip6tables:
# iptables -I OUTPUT -m set --match-set blacklist-vk-v4 dst -j REJECT
# iptables -I FORWARD -m set --match-set blacklist-vk-v4 dst -j REJECT
#
# 3. To flush/delete the set:
# ipset flush blacklist-vk-v4
# ipset destroy blacklist-vk-v4
#
create blacklist-vk-v4 hash:net family inet hashsize 1024 maxelem 534
add blacklist-vk-v4 109.120.180.0/22
add blacklist-vk-v4 109.120.180.0/23
add blacklist-vk-v4 109.120.182.0/23
add blacklist-vk-v4 109.120.188.0/22
add blacklist-vk-v4 109.120.188.0/23
add blacklist-vk-v4 109.120.190.0/23
add blacklist-vk-v4 128.140.168.0/21
add blacklist-vk-v4 128.140.168.0/23
add blacklist-vk-v4 128.140.170.0/24
add blacklist-vk-v4 128.140.171.0/24
add blacklist-vk-v4 128.140.172.0/22
add blacklist-vk-v4 130.49.224.0/19
add blacklist-vk-v4 146.185.208.0/22
add blacklist-vk-v4 146.185.208.0/23
add blacklist-vk-v4 146.185.210.0/23
add blacklist-vk-v4 146.185.240.0/22
add blacklist-vk-v4 146.185.240.0/23
add blacklist-vk-v4 146.185.242.0/23
add blacklist-vk-v4 155.212.192.0/20
add blacklist-vk-v4 161.104.104.0/21
add blacklist-vk-v4 176.112.168.0/21
add blacklist-vk-v4 178.22.88.0/21
add blacklist-vk-v4 178.22.89.64/26
add blacklist-vk-v4 178.22.94.0/23
add blacklist-vk-v4 178.237.16.0/20
add blacklist-vk-v4 178.237.16.0/21
add blacklist-vk-v4 178.237.24.0/22
add blacklist-vk-v4 178.237.30.0/23
add blacklist-vk-v4 185.100.104.0/22
add blacklist-vk-v4 185.100.104.0/23
add blacklist-vk-v4 185.100.106.0/23
add blacklist-vk-v4 185.130.112.0/22
add blacklist-vk-v4 185.130.112.0/23
add blacklist-vk-v4 185.130.114.0/23
add blacklist-vk-v4 185.131.68.0/22
add blacklist-vk-v4 185.16.148.0/22
add blacklist-vk-v4 185.16.148.0/23
add blacklist-vk-v4 185.16.150.0/23
add blacklist-vk-v4 185.16.244.0/22
add blacklist-vk-v4 185.16.244.0/23
add blacklist-vk-v4 185.16.246.0/23
add blacklist-vk-v4 185.180.200.0/22
add blacklist-vk-v4 185.187.63.0/24
add blacklist-vk-v4 185.187.63.0/25
add blacklist-vk-v4 185.187.63.128/25
add blacklist-vk-v4 185.226.52.0/22
add blacklist-vk-v4 185.226.52.0/23
add blacklist-vk-v4 185.226.54.0/23
add blacklist-vk-v4 185.241.192.0/22
add blacklist-vk-v4 185.241.192.0/23
add blacklist-vk-v4 185.241.194.0/23
add blacklist-vk-v4 185.29.128.0/22
add blacklist-vk-v4 185.29.130.0/24
add blacklist-vk-v4 185.32.248.0/22
add blacklist-vk-v4 185.32.248.0/23
add blacklist-vk-v4 185.32.250.0/23
add blacklist-vk-v4 185.5.136.0/22
add blacklist-vk-v4 185.5.136.0/23
add blacklist-vk-v4 185.5.138.0/23
add blacklist-vk-v4 185.6.244.0/22
add blacklist-vk-v4 185.6.244.0/23
add blacklist-vk-v4 185.6.246.0/23
add blacklist-vk-v4 185.86.144.0/22
add blacklist-vk-v4 185.86.144.0/23
add blacklist-vk-v4 185.86.146.0/23
add blacklist-vk-v4 188.93.56.0/21
add blacklist-vk-v4 188.93.56.0/24
add blacklist-vk-v4 188.93.57.0/24
add blacklist-vk-v4 188.93.58.0/24
add blacklist-vk-v4 188.93.60.0/24
add blacklist-vk-v4 188.93.61.0/24
add blacklist-vk-v4 188.93.62.0/24
add blacklist-vk-v4 193.203.40.0/22
add blacklist-vk-v4 194.84.16.12/30
add blacklist-vk-v4 195.211.20.0/22
add blacklist-vk-v4 195.211.22.0/24
add blacklist-vk-v4 195.211.23.0/24
add blacklist-vk-v4 212.111.84.0/22
add blacklist-vk-v4 212.233.120.0/22
add blacklist-vk-v4 212.233.72.0/21
add blacklist-vk-v4 212.233.88.0/21
add blacklist-vk-v4 212.233.96.0/22
add blacklist-vk-v4 213.219.212.0/22
add blacklist-vk-v4 213.219.212.0/23
add blacklist-vk-v4 213.219.214.0/23
add blacklist-vk-v4 217.16.16.0/20
add blacklist-vk-v4 217.16.16.0/21
add blacklist-vk-v4 217.16.24.0/21
add blacklist-vk-v4 217.174.188.0/23
add blacklist-vk-v4 217.20.144.0/20
add blacklist-vk-v4 217.20.144.0/22
add blacklist-vk-v4 217.20.148.0/24
add blacklist-vk-v4 217.20.149.0/24
add blacklist-vk-v4 217.20.150.0/23
add blacklist-vk-v4 217.20.152.0/22
add blacklist-vk-v4 217.20.156.0/23
add blacklist-vk-v4 217.20.158.0/24
add blacklist-vk-v4 217.20.159.0/24
add blacklist-vk-v4 217.69.128.0/20
add blacklist-vk-v4 217.69.128.0/21
add blacklist-vk-v4 217.69.136.0/21
add blacklist-vk-v4 37.139.32.0/22
add blacklist-vk-v4 37.139.32.0/23
add blacklist-vk-v4 37.139.34.0/23
add blacklist-vk-v4 37.139.40.0/22
add blacklist-vk-v4 37.139.40.0/23
add blacklist-vk-v4 37.139.42.0/23
add blacklist-vk-v4 45.136.20.0/22
add blacklist-vk-v4 45.136.20.0/23
add blacklist-vk-v4 45.136.22.0/23
add blacklist-vk-v4 45.84.128.0/22
add blacklist-vk-v4 45.84.128.0/23
add blacklist-vk-v4 45.84.130.0/23
add blacklist-vk-v4 5.101.40.0/22
add blacklist-vk-v4 5.101.40.0/23
add blacklist-vk-v4 5.101.42.0/23
add blacklist-vk-v4 5.181.60.0/22
add blacklist-vk-v4 5.181.60.0/24
add blacklist-vk-v4 5.181.61.0/24
add blacklist-vk-v4 5.181.62.0/23
add blacklist-vk-v4 5.188.140.0/22
add blacklist-vk-v4 5.188.140.0/23
add blacklist-vk-v4 5.188.142.0/23
add blacklist-vk-v4 5.61.16.0/21
add blacklist-vk-v4 5.61.16.0/22
add blacklist-vk-v4 5.61.20.0/22
add blacklist-vk-v4 5.61.232.0/21
add blacklist-vk-v4 5.61.232.0/22
add blacklist-vk-v4 5.61.236.0/23
add blacklist-vk-v4 5.61.238.0/24
add blacklist-vk-v4 5.61.239.0/27
add blacklist-vk-v4 5.61.239.128/25
add blacklist-vk-v4 5.61.239.40/29
add blacklist-vk-v4 5.61.239.48/28
add blacklist-vk-v4 5.61.239.64/26
add blacklist-vk-v4 62.217.160.0/20
add blacklist-vk-v4 62.217.160.0/21
add blacklist-vk-v4 62.217.168.0/21
add blacklist-vk-v4 79.137.132.0/24
add blacklist-vk-v4 79.137.132.0/25
add blacklist-vk-v4 79.137.132.128/25
add blacklist-vk-v4 79.137.139.0/24
add blacklist-vk-v4 79.137.139.0/25
add blacklist-vk-v4 79.137.139.128/25
add blacklist-vk-v4 79.137.157.0/25
add blacklist-vk-v4 79.137.157.128/25
add blacklist-vk-v4 79.137.164.0/24
add blacklist-vk-v4 79.137.164.0/25
add blacklist-vk-v4 79.137.164.128/25
add blacklist-vk-v4 79.137.167.0/24
add blacklist-vk-v4 79.137.167.0/25
add blacklist-vk-v4 79.137.167.128/25
add blacklist-vk-v4 79.137.174.0/23
add blacklist-vk-v4 79.137.174.0/24
add blacklist-vk-v4 79.137.175.0/24
add blacklist-vk-v4 79.137.180.0/24
add blacklist-vk-v4 79.137.180.0/25
add blacklist-vk-v4 79.137.180.128/25
add blacklist-vk-v4 79.137.240.0/21
add blacklist-vk-v4 79.137.240.0/22
add blacklist-vk-v4 79.137.244.0/22
add blacklist-vk-v4 83.166.232.0/21
add blacklist-vk-v4 83.166.232.0/22
add blacklist-vk-v4 83.166.236.0/22
add blacklist-vk-v4 83.166.248.0/21
add blacklist-vk-v4 83.166.248.0/22
add blacklist-vk-v4 83.166.252.0/22
add blacklist-vk-v4 83.217.216.0/22
add blacklist-vk-v4 83.217.216.0/23
add blacklist-vk-v4 83.217.218.0/23
add blacklist-vk-v4 83.222.28.0/22
add blacklist-vk-v4 84.23.52.0/22
add blacklist-vk-v4 84.23.52.0/23
add blacklist-vk-v4 84.23.54.0/23
add blacklist-vk-v4 85.114.31.108/30
add blacklist-vk-v4 85.192.32.0/22
add blacklist-vk-v4 85.192.32.0/23
add blacklist-vk-v4 85.192.34.0/23
add blacklist-vk-v4 85.198.106.0/24
add blacklist-vk-v4 85.198.107.0/24
add blacklist-vk-v4 87.239.104.0/21
add blacklist-vk-v4 87.239.104.0/22
add blacklist-vk-v4 87.239.108.0/22
add blacklist-vk-v4 87.240.128.0/18
add blacklist-vk-v4 87.240.128.0/19
add blacklist-vk-v4 87.240.160.0/19
add blacklist-vk-v4 87.242.112.0/22
add blacklist-vk-v4 89.208.196.0/22
add blacklist-vk-v4 89.208.196.0/23
add blacklist-vk-v4 89.208.198.0/23
add blacklist-vk-v4 89.208.208.0/22
add blacklist-vk-v4 89.208.208.0/23
add blacklist-vk-v4 89.208.210.0/23
add blacklist-vk-v4 89.208.216.0/21
add blacklist-vk-v4 89.208.216.0/23
add blacklist-vk-v4 89.208.218.0/23
add blacklist-vk-v4 89.208.220.0/22
add blacklist-vk-v4 89.208.228.0/22
add blacklist-vk-v4 89.208.228.0/23
add blacklist-vk-v4 89.208.230.0/23
add blacklist-vk-v4 89.208.84.0/22
add blacklist-vk-v4 89.208.84.0/23
add blacklist-vk-v4 89.208.86.0/23
add blacklist-vk-v4 89.221.228.0/22
add blacklist-vk-v4 89.221.232.0/21
add blacklist-vk-v4 90.156.148.0/22
add blacklist-vk-v4 90.156.148.0/23
add blacklist-vk-v4 90.156.150.0/23
add blacklist-vk-v4 90.156.212.0/22
add blacklist-vk-v4 90.156.212.0/23
add blacklist-vk-v4 90.156.214.0/23
add blacklist-vk-v4 90.156.216.0/22
add blacklist-vk-v4 90.156.216.0/23
add blacklist-vk-v4 90.156.218.0/23
add blacklist-vk-v4 90.156.232.0/21
add blacklist-vk-v4 91.219.224.0/22
add blacklist-vk-v4 91.231.132.0/22
add blacklist-vk-v4 91.237.76.0/24
add blacklist-vk-v4 93.153.255.84/30
add blacklist-vk-v4 93.186.224.0/20
add blacklist-vk-v4 93.186.224.0/21
add blacklist-vk-v4 93.186.232.0/21
add blacklist-vk-v4 94.100.176.0/20
add blacklist-vk-v4 94.100.176.0/21
add blacklist-vk-v4 94.100.184.0/21
add blacklist-vk-v4 94.139.244.0/22
add blacklist-vk-v4 94.139.244.0/23
add blacklist-vk-v4 94.139.246.0/23
add blacklist-vk-v4 95.142.192.0/20
add blacklist-vk-v4 95.142.192.0/21
add blacklist-vk-v4 95.142.200.0/21
add blacklist-vk-v4 95.163.180.0/22
add blacklist-vk-v4 95.163.180.0/23
add blacklist-vk-v4 95.163.182.0/23
add blacklist-vk-v4 95.163.208.0/21
add blacklist-vk-v4 95.163.208.0/23
add blacklist-vk-v4 95.163.210.0/23
add blacklist-vk-v4 95.163.212.0/22
add blacklist-vk-v4 95.163.216.0/22
add blacklist-vk-v4 95.163.216.0/23
add blacklist-vk-v4 95.163.218.0/23
add blacklist-vk-v4 95.163.248.0/21
add blacklist-vk-v4 95.163.248.0/22
add blacklist-vk-v4 95.163.252.0/23
add blacklist-vk-v4 95.163.254.0/23
add blacklist-vk-v4 95.163.32.0/19
add blacklist-vk-v4 95.163.32.0/22
add blacklist-vk-v4 95.163.36.0/22
add blacklist-vk-v4 95.163.40.0/21
add blacklist-vk-v4 95.163.48.0/20
add blacklist-vk-v4 95.213.0.0/17
add blacklist-vk-v4 95.213.0.0/20
add blacklist-vk-v4 95.213.16.0/21
add blacklist-vk-v4 95.213.24.0/23
add blacklist-vk-v4 95.213.26.0/24
add blacklist-vk-v4 95.213.27.0/24
add blacklist-vk-v4 95.213.28.0/24
add blacklist-vk-v4 95.213.29.0/24
add blacklist-vk-v4 95.213.30.0/24
add blacklist-vk-v4 95.213.31.0/24
add blacklist-vk-v4 95.213.32.0/24
add blacklist-vk-v4 95.213.33.0/24
add blacklist-vk-v4 95.213.34.0/23
add blacklist-vk-v4 95.213.36.0/22
add blacklist-vk-v4 95.213.40.0/21
add blacklist-vk-v4 95.213.48.0/20
add blacklist-vk-v4 95.213.64.0/18

View File

@@ -0,0 +1,19 @@
# IPSet blacklist configuration (VK names, IPv6 only)
# Auto-generated from blacklist-vk-v6.txt
# Last updated: 2026-04-05 06:57:51 UTC
#
# Usage:
# 1. Load the ipset:
# ipset restore < blacklist-vk-v6.ipset
#
# 2. Use with iptables/ip6tables:
# ip6tables -I OUTPUT -m set --match-set blacklist-vk-v6 dst -j REJECT
# ip6tables -I FORWARD -m set --match-set blacklist-vk-v6 dst -j REJECT
#
# 3. To flush/delete the set:
# ipset flush blacklist-vk-v6
# ipset destroy blacklist-vk-v6
#
create blacklist-vk-v6 hash:net family inet6 hashsize 1024 maxelem 2
add blacklist-vk-v6 2a00:bdc0::/29

File diff suppressed because it is too large Load Diff

View File

@@ -1,185 +1,52 @@
# nftables Blacklist Configuration # nftables blacklists
This folder contains nftables blacklist configurations generated from Russian government agency network lists. Short: ready-to-use nftables set files (general and VK-only, separated by IPv4/IPv6).
## Available Files ## Download links
- `blacklist.nft` - Mixed IPv4/IPv6 blacklist (**daily generated**) - https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nftables/blacklist.nft
- `blacklist-v4.nft` - IPv4-only blacklist (**daily generated**) - https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nftables/blacklist-v4.nft
- `blacklist-v6.nft` - IPv6-only blacklist (**daily generated**) - https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nftables/blacklist-v6.nft
- https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nftables/blacklist-vk.nft
- https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nftables/blacklist-vk-v4.nft
- https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nftables/blacklist-vk-v6.nft
## Quick Start ## How to use
### Download and Load ### 1) Protect VM from incoming connections (general blacklists)
````bash
# Download the blacklist
wget https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist.nft
# Load the configuration Load either mixed or split general set files:
```bash
sudo nft -f blacklist.nft sudo nft -f blacklist.nft
# or:
sudo nft -f blacklist-v4.nft
sudo nft -f blacklist-v6.nft
```
# Verify it's loaded Apply rules for inbound traffic to the VM:
sudo nft list ruleset
````
### Automatic Updates ```bash
sudo nft add chain inet filter input '{ type filter hook input priority 0; policy accept; }'
sudo nft add rule inet filter input ip saddr @blacklist_v4 counter reject
sudo nft add rule inet filter input ip6 saddr @blacklist_v6 counter reject
```
Add to crontab for daily updates: ### 2) Block VK outbound traffic for VPN clients via NAT/FORWARD
````bash
0 2 * * * wget -O /etc/nftables.d/blacklist.nft https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nftables/blacklist.nft && nft -f /etc/nftables.d/blacklist.nft
````
## Configuration Details Load either mixed or split VK set files:
The generated nftables configuration uses: ```bash
- **Sets with interval flag** for efficient CIDR matching sudo nft -f blacklist-vk.nft
- **Named sets** (`blacklist_v4` and `blacklist_v6`) for easy management # or:
- **Counter** directive to track dropped packets sudo nft -f blacklist-vk-v4.nft
- **Stateful filtering** to allow established connections sudo nft -f blacklist-vk-v6.nft
```
### Configuration Structure Apply rules for forwarded client traffic (replace `<VPN_IFACE>`):
table inet filter {
set blacklist_v4 {
type ipv4_addr
flags interval
elements = { 1.2.3.0/24, 5.6.7.0/24, ... }
}
set blacklist_v6 {
type ipv6_addr
flags interval
elements = { 2001:db8::/32, ... }
}
chain input { ```bash
type filter hook input priority 0; sudo nft add chain inet filter forward '{ type filter hook forward priority 0; policy accept; }'
policy accept; sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip daddr @blacklist_vk_v4 counter reject
sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip6 daddr @blacklist_vk_v6 counter reject
ct state { established, related } accept ```
ip saddr @blacklist_v4 counter drop
ip6 saddr @blacklist_v6 counter drop
}
}
## Integration Options
### Option 1: Standalone Configuration
Load the blacklist as a complete ruleset:
````bash
sudo nft -f blacklist.nft
````
### Option 2: Include in Existing Configuration
If you have an existing nftables configuration:
1. Copy only the set definitions from the generated file
2. Add set lookups to your existing input chain:
````bash
ip saddr @blacklist_v4 counter drop
ip6 saddr @blacklist_v6 counter drop
````
### Option 3: Persistent Configuration
For systemd-based systems:
````bash
# Copy to nftables config directory
sudo cp blacklist.nft /etc/nftables.d/
# Edit /etc/nftables.conf to include:
# include "/etc/nftables.d/blacklist.nft"
# Enable and restart
sudo systemctl enable nftables
sudo systemctl restart nftables
````
## Checking IPs Against the Blacklist
Use the `check_nft_blacklist.py` script to verify if an IP is blocked:
````bash
# Check an IPv4 address
python3 check_nft_blacklist.py blacklist.nft 192.168.1.1
# Check an IPv6 address
python3 check_nft_blacklist.py blacklist.nft 2001:db8::1
````
## Monitoring
### View Dropped Packets
````bash
# View all rules with counters
sudo nft list chain inet filter input -a
# Monitor in real-time
sudo nft monitor
````
### Check Set Contents
````bash
# View IPv4 blacklist
sudo nft list set inet filter blacklist_v4
# View IPv6 blacklist
sudo nft list set inet filter blacklist_v6
````
## Advantages of nftables
- **Better Performance**: O(1) lookup time with sets vs O(n) for sequential rules
- **Lower Memory Usage**: More efficient than iptables for large rulesets
- **Atomic Updates**: All rules updated in a single transaction
- **Modern Syntax**: Cleaner, more readable configuration
- **Unified Tool**: Single tool for IPv4, IPv6, and ARP filtering
## File Format Comparison
| Format | Use Case | Performance | Memory |
|--------|----------|-------------|--------|
| **nftables** | Modern firewalls | Excellent | Low |
| **iptables** | Legacy systems | Good | Medium |
| **nginx** | Web layer | Good | Low |
## Troubleshooting
### Configuration Won't Load
````bash
# Check syntax
sudo nft -c -f blacklist.nft
# View detailed errors
sudo nft -f blacklist.nft 2>&1 | less
````
### Rules Not Blocking Traffic
````bash
# Verify sets are populated
sudo nft list set inet filter blacklist_v4 | wc -l
# Check rule priority
sudo nft list chain inet filter input
# Test with logging temporarily
sudo nft add rule inet filter input ip saddr @blacklist_v4 log prefix "BLOCKED: "
````
### Performance Issues
If experiencing performance problems with very large sets:
1. Consider splitting into multiple smaller sets
2. Use `blacklist-v4.nft` or `blacklist-v6.nft` if only one protocol is needed
3. Ensure kernel supports nftables fully (Linux 4.0+)
## Additional Resources
- [nftables Wiki](https://wiki.nftables.org/)
- [nftables Quick Reference](https://wiki.nftables.org/wiki-nftables/index.php/Quick_reference-nftables_in_10_minutes)
- [Netfilter Documentation](https://www.netfilter.org/documentation/)
## Contributing
Found an issue or have suggestions? Please open an issue or submit a pull request!

View File

@@ -1,7 +1,14 @@
# Autogenerated nftables blacklist # Autogenerated nftables blacklist
# Generated: 2026-03-21T06:34:56.524672Z # Generated: 2026-04-05T06:57:52.339887Z
# Source: /tmp/blacklist-v4.txt # Source: /tmp/blacklist-v4.txt
# IPv4: 804, IPv6: 0 # IPv4: 804, IPv6: 0
#
# Usage:
# sudo nft -f <this-file>
# # VM protection from incoming blacklist sources
# sudo nft add chain inet filter input '{ type filter hook input priority 0; policy accept; }'
# sudo nft add rule inet filter input ip saddr @blacklist_v4 counter reject
# sudo nft add rule inet filter input ip6 saddr @blacklist_v6 counter reject
table inet filter { table inet filter {
@@ -28,6 +35,7 @@ table inet filter {
45.136.20.0/22, 45.136.20.0/22,
46.20.70.160/28, 46.20.70.160/28,
46.29.152.0/22, 46.29.152.0/22,
46.29.156.0/23,
46.46.142.160/28, 46.46.142.160/28,
46.46.148.40/29, 46.46.148.40/29,
46.47.197.128/30, 46.47.197.128/30,
@@ -107,7 +115,6 @@ table inet filter {
78.108.200.0/24, 78.108.200.0/24,
78.109.140.112/29, 78.109.140.112/29,
79.133.74.160/30, 79.133.74.160/30,
79.133.74.168/30,
79.133.75.44/30, 79.133.75.44/30,
79.133.75.176/30, 79.133.75.176/30,
79.137.132.0/24, 79.137.132.0/24,
@@ -283,6 +290,7 @@ table inet filter {
85.141.33.64/28, 85.141.33.64/28,
85.141.60.96/28, 85.141.60.96/28,
85.141.61.160/28, 85.141.61.160/28,
85.142.251.0/24,
85.143.125.0/24, 85.143.125.0/24,
85.146.204.44/30, 85.146.204.44/30,
85.192.32.0/22, 85.192.32.0/22,
@@ -379,6 +387,7 @@ table inet filter {
90.156.212.0/22, 90.156.212.0/22,
90.156.216.0/22, 90.156.216.0/22,
90.156.232.0/21, 90.156.232.0/21,
90.156.248.0/22,
91.103.194.184/29, 91.103.194.184/29,
91.135.212.0/22, 91.135.212.0/22,
91.135.216.0/21, 91.135.216.0/21,
@@ -455,6 +464,7 @@ table inet filter {
95.167.29.104/29, 95.167.29.104/29,
95.167.54.76/30, 95.167.54.76/30,
95.167.59.244/30, 95.167.59.244/30,
95.167.59.248/30,
95.167.64.20/30, 95.167.64.20/30,
95.167.68.216/29, 95.167.68.216/29,
95.167.69.116/30, 95.167.69.116/30,
@@ -510,9 +520,11 @@ table inet filter {
146.185.240.0/22, 146.185.240.0/22,
149.62.55.240/30, 149.62.55.240/30,
155.212.192.0/20, 155.212.192.0/20,
161.104.104.0/21,
176.109.0.0/21, 176.109.0.0/21,
176.112.168.0/21, 176.112.168.0/21,
176.116.96.0/20, 176.116.96.0/20,
176.116.112.0/22,
178.16.156.148/30, 178.16.156.148/30,
178.17.176.0/20, 178.17.176.0/20,
178.20.234.224/29, 178.20.234.224/29,
@@ -640,7 +652,6 @@ table inet filter {
195.144.232.144/30, 195.144.232.144/30,
195.144.240.128/28, 195.144.240.128/28,
195.149.110.0/24, 195.149.110.0/24,
195.151.25.48/29,
195.162.36.64/28, 195.162.36.64/28,
195.170.218.24/29, 195.170.218.24/29,
195.170.218.88/29, 195.170.218.88/29,
@@ -787,8 +798,7 @@ table inet filter {
213.243.106.48/28, 213.243.106.48/28,
213.243.116.0/24, 213.243.116.0/24,
217.16.16.0/20, 217.16.16.0/20,
217.20.86.128/26, 217.20.86.128/25,
217.20.86.232/29,
217.20.144.0/20, 217.20.144.0/20,
217.23.88.168/29, 217.23.88.168/29,
217.23.88.248/29, 217.23.88.248/29,
@@ -798,17 +808,14 @@ table inet filter {
217.67.177.208/29, 217.67.177.208/29,
217.69.128.0/20, 217.69.128.0/20,
217.106.0.0/16, 217.106.0.0/16,
217.107.5.8/29, 217.107.0.0/18,
217.107.5.16/28,
217.107.5.40/29,
217.107.5.80/28,
217.107.5.96/29,
217.107.5.112/29,
217.107.200.0/21, 217.107.200.0/21,
217.107.208.0/20,
217.147.23.112/28, 217.147.23.112/28,
217.148.216.156/30, 217.148.216.156/30,
217.148.220.160/29, 217.148.220.160/29,
217.172.18.0/23, 217.172.18.0/23,
217.172.20.0/22,
217.174.188.0/22, 217.174.188.0/22,
217.195.92.16/28, 217.195.92.16/28,
217.195.93.144/29, 217.195.93.144/29,
@@ -821,12 +828,4 @@ table inet filter {
flags interval flags interval
} }
chain input {
type filter hook input priority 0;
policy accept;
ct state { established, related } accept
ip saddr @blacklist_v4 counter drop
}
} }

View File

@@ -1,7 +1,14 @@
# Autogenerated nftables blacklist # Autogenerated nftables blacklist
# Generated: 2026-03-21T06:34:56.555771Z # Generated: 2026-04-05T06:57:52.372807Z
# Source: /tmp/blacklist-v6.txt # Source: /tmp/blacklist-v6.txt
# IPv4: 0, IPv6: 17 # IPv4: 0, IPv6: 17
#
# Usage:
# sudo nft -f <this-file>
# # VM protection from incoming blacklist sources
# sudo nft add chain inet filter input '{ type filter hook input priority 0; policy accept; }'
# sudo nft add rule inet filter input ip saddr @blacklist_v4 counter reject
# sudo nft add rule inet filter input ip6 saddr @blacklist_v6 counter reject
table inet filter { table inet filter {
@@ -34,12 +41,4 @@ table inet filter {
} }
} }
chain input {
type filter hook input priority 0;
policy accept;
ct state { established, related } accept
ip6 saddr @blacklist_v6 counter drop
}
} }

View File

@@ -0,0 +1,120 @@
# Autogenerated nftables blacklist
# Generated: 2026-04-05T06:57:52.432795Z
# Source: /home/runner/work/AS_Network_List/AS_Network_List/blacklists/blacklist-vk-v4.txt
# IPv4: 93, IPv6: 0
#
# Usage:
# sudo nft -f <this-file>
# # VK egress blocking for VPN clients via NAT/FORWARD
# sudo nft add chain inet filter forward '{ type filter hook forward priority 0; policy accept; }'
# sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip daddr @blacklist_vk_v4 counter reject
# sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip6 daddr @blacklist_vk_v6 counter reject
table inet filter {
set blacklist_vk_v4 {
type ipv4_addr
flags interval
elements = {
5.61.16.0/21,
5.61.232.0/21,
5.101.40.0/22,
5.181.60.0/22,
5.188.140.0/22,
37.139.32.0/22,
37.139.40.0/22,
45.84.128.0/22,
45.136.20.0/22,
62.217.160.0/20,
79.137.132.0/24,
79.137.139.0/24,
79.137.157.0/24,
79.137.164.0/24,
79.137.167.0/24,
79.137.174.0/23,
79.137.180.0/24,
79.137.240.0/21,
83.166.232.0/21,
83.166.248.0/21,
83.217.216.0/22,
83.222.28.0/22,
84.23.52.0/22,
85.114.31.108/30,
85.192.32.0/22,
85.198.106.0/23,
87.239.104.0/21,
87.240.128.0/18,
87.242.112.0/22,
89.208.84.0/22,
89.208.196.0/22,
89.208.208.0/22,
89.208.216.0/21,
89.208.228.0/22,
89.221.228.0/22,
89.221.232.0/21,
90.156.148.0/22,
90.156.212.0/22,
90.156.216.0/22,
90.156.232.0/21,
91.219.224.0/22,
91.231.132.0/22,
91.237.76.0/24,
93.153.255.84/30,
93.186.224.0/20,
94.100.176.0/20,
94.139.244.0/22,
95.142.192.0/20,
95.163.32.0/19,
95.163.180.0/22,
95.163.208.0/21,
95.163.216.0/22,
95.163.248.0/21,
95.213.0.0/17,
109.120.180.0/22,
109.120.188.0/22,
128.140.168.0/21,
130.49.224.0/19,
146.185.208.0/22,
146.185.240.0/22,
155.212.192.0/20,
161.104.104.0/21,
176.112.168.0/21,
178.22.88.0/21,
178.237.16.0/20,
185.5.136.0/22,
185.6.244.0/22,
185.16.148.0/22,
185.16.244.0/22,
185.29.128.0/22,
185.32.248.0/22,
185.86.144.0/22,
185.100.104.0/22,
185.130.112.0/22,
185.131.68.0/22,
185.180.200.0/22,
185.187.63.0/24,
185.226.52.0/22,
185.241.192.0/22,
188.93.56.0/21,
193.203.40.0/22,
194.84.16.12/30,
195.211.20.0/22,
212.111.84.0/22,
212.233.72.0/21,
212.233.88.0/21,
212.233.96.0/22,
212.233.120.0/22,
213.219.212.0/22,
217.16.16.0/20,
217.20.144.0/20,
217.69.128.0/20,
217.174.188.0/23
}
}
set blacklist_vk_v6 {
type ipv6_addr
flags interval
}
}

View File

@@ -0,0 +1,28 @@
# Autogenerated nftables blacklist
# Generated: 2026-04-05T06:57:52.459798Z
# Source: /home/runner/work/AS_Network_List/AS_Network_List/blacklists/blacklist-vk-v6.txt
# IPv4: 0, IPv6: 1
#
# Usage:
# sudo nft -f <this-file>
# # VK egress blocking for VPN clients via NAT/FORWARD
# sudo nft add chain inet filter forward '{ type filter hook forward priority 0; policy accept; }'
# sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip daddr @blacklist_vk_v4 counter reject
# sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip6 daddr @blacklist_vk_v6 counter reject
table inet filter {
set blacklist_vk_v4 {
type ipv4_addr
flags interval
}
set blacklist_vk_v6 {
type ipv6_addr
flags interval
elements = {
2a00:bdc0::/29
}
}
}

View File

@@ -0,0 +1,123 @@
# Autogenerated nftables blacklist
# Generated: 2026-04-05T06:57:52.402905Z
# Source: /home/runner/work/AS_Network_List/AS_Network_List/blacklists/blacklist-vk.txt
# IPv4: 93, IPv6: 1
#
# Usage:
# sudo nft -f <this-file>
# # VK egress blocking for VPN clients via NAT/FORWARD
# sudo nft add chain inet filter forward '{ type filter hook forward priority 0; policy accept; }'
# sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip daddr @blacklist_vk_v4 counter reject
# sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip6 daddr @blacklist_vk_v6 counter reject
table inet filter {
set blacklist_vk_v4 {
type ipv4_addr
flags interval
elements = {
5.61.16.0/21,
5.61.232.0/21,
5.101.40.0/22,
5.181.60.0/22,
5.188.140.0/22,
37.139.32.0/22,
37.139.40.0/22,
45.84.128.0/22,
45.136.20.0/22,
62.217.160.0/20,
79.137.132.0/24,
79.137.139.0/24,
79.137.157.0/24,
79.137.164.0/24,
79.137.167.0/24,
79.137.174.0/23,
79.137.180.0/24,
79.137.240.0/21,
83.166.232.0/21,
83.166.248.0/21,
83.217.216.0/22,
83.222.28.0/22,
84.23.52.0/22,
85.114.31.108/30,
85.192.32.0/22,
85.198.106.0/23,
87.239.104.0/21,
87.240.128.0/18,
87.242.112.0/22,
89.208.84.0/22,
89.208.196.0/22,
89.208.208.0/22,
89.208.216.0/21,
89.208.228.0/22,
89.221.228.0/22,
89.221.232.0/21,
90.156.148.0/22,
90.156.212.0/22,
90.156.216.0/22,
90.156.232.0/21,
91.219.224.0/22,
91.231.132.0/22,
91.237.76.0/24,
93.153.255.84/30,
93.186.224.0/20,
94.100.176.0/20,
94.139.244.0/22,
95.142.192.0/20,
95.163.32.0/19,
95.163.180.0/22,
95.163.208.0/21,
95.163.216.0/22,
95.163.248.0/21,
95.213.0.0/17,
109.120.180.0/22,
109.120.188.0/22,
128.140.168.0/21,
130.49.224.0/19,
146.185.208.0/22,
146.185.240.0/22,
155.212.192.0/20,
161.104.104.0/21,
176.112.168.0/21,
178.22.88.0/21,
178.237.16.0/20,
185.5.136.0/22,
185.6.244.0/22,
185.16.148.0/22,
185.16.244.0/22,
185.29.128.0/22,
185.32.248.0/22,
185.86.144.0/22,
185.100.104.0/22,
185.130.112.0/22,
185.131.68.0/22,
185.180.200.0/22,
185.187.63.0/24,
185.226.52.0/22,
185.241.192.0/22,
188.93.56.0/21,
193.203.40.0/22,
194.84.16.12/30,
195.211.20.0/22,
212.111.84.0/22,
212.233.72.0/21,
212.233.88.0/21,
212.233.96.0/22,
212.233.120.0/22,
213.219.212.0/22,
217.16.16.0/20,
217.20.144.0/20,
217.69.128.0/20,
217.174.188.0/23
}
}
set blacklist_vk_v6 {
type ipv6_addr
flags interval
elements = {
2a00:bdc0::/29
}
}
}

View File

@@ -1,7 +1,14 @@
# Autogenerated nftables blacklist # Autogenerated nftables blacklist
# Generated: 2026-03-21T06:34:56.478238Z # Generated: 2026-04-05T06:57:52.285014Z
# Source: /home/runner/work/AS_Network_List/AS_Network_List/blacklists/blacklist.txt # Source: /home/runner/work/AS_Network_List/AS_Network_List/blacklists/blacklist.txt
# IPv4: 804, IPv6: 17 # IPv4: 804, IPv6: 17
#
# Usage:
# sudo nft -f <this-file>
# # VM protection from incoming blacklist sources
# sudo nft add chain inet filter input '{ type filter hook input priority 0; policy accept; }'
# sudo nft add rule inet filter input ip saddr @blacklist_v4 counter reject
# sudo nft add rule inet filter input ip6 saddr @blacklist_v6 counter reject
table inet filter { table inet filter {
@@ -28,6 +35,7 @@ table inet filter {
45.136.20.0/22, 45.136.20.0/22,
46.20.70.160/28, 46.20.70.160/28,
46.29.152.0/22, 46.29.152.0/22,
46.29.156.0/23,
46.46.142.160/28, 46.46.142.160/28,
46.46.148.40/29, 46.46.148.40/29,
46.47.197.128/30, 46.47.197.128/30,
@@ -107,7 +115,6 @@ table inet filter {
78.108.200.0/24, 78.108.200.0/24,
78.109.140.112/29, 78.109.140.112/29,
79.133.74.160/30, 79.133.74.160/30,
79.133.74.168/30,
79.133.75.44/30, 79.133.75.44/30,
79.133.75.176/30, 79.133.75.176/30,
79.137.132.0/24, 79.137.132.0/24,
@@ -283,6 +290,7 @@ table inet filter {
85.141.33.64/28, 85.141.33.64/28,
85.141.60.96/28, 85.141.60.96/28,
85.141.61.160/28, 85.141.61.160/28,
85.142.251.0/24,
85.143.125.0/24, 85.143.125.0/24,
85.146.204.44/30, 85.146.204.44/30,
85.192.32.0/22, 85.192.32.0/22,
@@ -379,6 +387,7 @@ table inet filter {
90.156.212.0/22, 90.156.212.0/22,
90.156.216.0/22, 90.156.216.0/22,
90.156.232.0/21, 90.156.232.0/21,
90.156.248.0/22,
91.103.194.184/29, 91.103.194.184/29,
91.135.212.0/22, 91.135.212.0/22,
91.135.216.0/21, 91.135.216.0/21,
@@ -455,6 +464,7 @@ table inet filter {
95.167.29.104/29, 95.167.29.104/29,
95.167.54.76/30, 95.167.54.76/30,
95.167.59.244/30, 95.167.59.244/30,
95.167.59.248/30,
95.167.64.20/30, 95.167.64.20/30,
95.167.68.216/29, 95.167.68.216/29,
95.167.69.116/30, 95.167.69.116/30,
@@ -510,9 +520,11 @@ table inet filter {
146.185.240.0/22, 146.185.240.0/22,
149.62.55.240/30, 149.62.55.240/30,
155.212.192.0/20, 155.212.192.0/20,
161.104.104.0/21,
176.109.0.0/21, 176.109.0.0/21,
176.112.168.0/21, 176.112.168.0/21,
176.116.96.0/20, 176.116.96.0/20,
176.116.112.0/22,
178.16.156.148/30, 178.16.156.148/30,
178.17.176.0/20, 178.17.176.0/20,
178.20.234.224/29, 178.20.234.224/29,
@@ -640,7 +652,6 @@ table inet filter {
195.144.232.144/30, 195.144.232.144/30,
195.144.240.128/28, 195.144.240.128/28,
195.149.110.0/24, 195.149.110.0/24,
195.151.25.48/29,
195.162.36.64/28, 195.162.36.64/28,
195.170.218.24/29, 195.170.218.24/29,
195.170.218.88/29, 195.170.218.88/29,
@@ -787,8 +798,7 @@ table inet filter {
213.243.106.48/28, 213.243.106.48/28,
213.243.116.0/24, 213.243.116.0/24,
217.16.16.0/20, 217.16.16.0/20,
217.20.86.128/26, 217.20.86.128/25,
217.20.86.232/29,
217.20.144.0/20, 217.20.144.0/20,
217.23.88.168/29, 217.23.88.168/29,
217.23.88.248/29, 217.23.88.248/29,
@@ -798,17 +808,14 @@ table inet filter {
217.67.177.208/29, 217.67.177.208/29,
217.69.128.0/20, 217.69.128.0/20,
217.106.0.0/16, 217.106.0.0/16,
217.107.5.8/29, 217.107.0.0/18,
217.107.5.16/28,
217.107.5.40/29,
217.107.5.80/28,
217.107.5.96/29,
217.107.5.112/29,
217.107.200.0/21, 217.107.200.0/21,
217.107.208.0/20,
217.147.23.112/28, 217.147.23.112/28,
217.148.216.156/30, 217.148.216.156/30,
217.148.220.160/29, 217.148.220.160/29,
217.172.18.0/23, 217.172.18.0/23,
217.172.20.0/22,
217.174.188.0/22, 217.174.188.0/22,
217.195.92.16/28, 217.195.92.16/28,
217.195.93.144/29, 217.195.93.144/29,
@@ -840,13 +847,4 @@ table inet filter {
} }
} }
chain input {
type filter hook input priority 0;
policy accept;
ct state { established, related } accept
ip saddr @blacklist_v4 counter drop
ip6 saddr @blacklist_v6 counter drop
}
} }

View File

View File

@@ -1,302 +1,24 @@
# Nginx Blacklist Configurations # nginx blacklists
Auto-generated nginx configuration files for blocking networks and IP addresses. Short: ready-to-use deny lists for nginx (mixed, IPv4-only, and IPv6-only).
## Available Files ## Download links
### Mixed IPv4/IPv6 - https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nginx/blacklist.conf
- https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nginx/blacklist-v4.conf
- https://raw.githubusercontent.com/C24Be/AS_Network_List/refs/heads/main/blacklists_nginx/blacklist-v6.conf
- **`blacklist.conf`** - Contains both IPv4 and IPv6 deny rules (809 entries) ## How to use
### IPv4 Only 1. Download one file (`blacklist.conf`, `blacklist-v4.conf`, or `blacklist-v6.conf`).
2. Include it in your `server` or `location` block:
- **`blacklist-v4.conf`** - Contains only IPv4 deny rules (806 entries)
### IPv6 Only
- **`blacklist-v6.conf`** - Contains only IPv6 deny rules (3 entries)
## Usage
### Basic Usage
Include the desired configuration file in your nginx `server` or `location` block:
```nginx ```nginx
server { include /etc/nginx/blacklist.conf;
listen 80;
server_name example.com;
# Include the blacklist
include /path/to/blacklist.conf;
location / {
# your configuration
}
}
``` ```
### Separate IPv4/IPv6 Files 3. Test and reload nginx:
For more granular control, use separate files:
```nginx
server {
listen 80;
listen [::]:80;
server_name example.com;
# Include both IPv4 and IPv6 blacklists
include /path/to/blacklist-v4.conf;
include /path/to/blacklist-v6.conf;
location / {
# your configuration
}
}
```
### HTTP Block Level
Apply the blacklist globally to all virtual hosts:
```nginx
http {
# Apply blacklist globally
include /path/to/blacklist.conf;
server {
listen 80;
server_name example.com;
# ...
}
server {
listen 80;
server_name another.com;
# ...
}
}
```
### Location Block Level
For selective blocking within specific locations:
```nginx
server {
listen 80;
server_name example.com;
location /admin {
# Apply blacklist only to admin area
include /path/to/blacklist.conf;
# ...
}
location /public {
# Public area without blacklist
# ...
}
}
```
## Testing Configuration
After adding the blacklist, always test your nginx configuration:
```bash ```bash
# Test configuration sudo nginx -t && sudo systemctl reload nginx
nginx -t
# Reload nginx if test passes
nginx -s reload
# or
systemctl reload nginx
``` ```
## Custom Response
By default, denied IPs receive a connection drop. To customize the response:
```nginx
server {
listen 80;
server_name example.com;
# Return custom error page
error_page 403 /403.html;
include /path/to/blacklist.conf;
location = /403.html {
root /usr/share/nginx/html;
internal;
}
}
```
Note: For large blacklists, using `deny` directives (as in these files) is more efficient than `if` statements.
## Performance Considerations
- **Deny directives** are processed in order and stop at the first match
- For optimal performance, most frequently matched IPs should be at the top
- Current files are sorted for consistency
- Nginx handles hundreds of deny rules efficiently
- For very large blacklists (10,000+ entries), consider using:
- Nginx GeoIP2 module for geographic blocking
- nftables/iptables at the firewall level for better performance
- Stream module for TCP/UDP level blocking
## Integration Examples
### Docker Deployment
```dockerfile
FROM nginx:alpine
# Copy blacklist
COPY blacklist.conf /etc/nginx/blacklist.conf
# Copy nginx config that includes the blacklist
COPY nginx.conf /etc/nginx/nginx.conf
EXPOSE 80 443
CMD ["nginx", "-g", "daemon off;"]
```
### Kubernetes ConfigMap
```yaml
apiVersion: v1
kind: ConfigMap
metadata:
name: nginx-blacklist
data:
blacklist.conf: |
# Include blacklist content here
deny 109.124.119.88/29;
deny 109.124.66.128/30;
# ...
```
### Automated Updates
Set up a cron job to automatically fetch the latest blacklist:
```bash
#!/bin/bash
# /etc/cron.daily/update-nginx-blacklist
# Download latest blacklist
wget -q https://raw.githubusercontent.com/C24Be/AS_Network_List/main/blacklists_nginx/blacklist.conf \
-O /etc/nginx/blacklist.conf.new
# Test nginx configuration
nginx -t -c /etc/nginx/nginx.conf
# If test passes, reload nginx
if [ $? -eq 0 ]; then
mv /etc/nginx/blacklist.conf.new /etc/nginx/blacklist.conf
systemctl reload nginx
echo "Blacklist updated successfully"
else
rm /etc/nginx/blacklist.conf.new
echo "Nginx config test failed, blacklist not updated"
fi
```
## Logging Blocked Requests
To log denied requests:
```nginx
server {
listen 80;
server_name example.com;
# Custom log format for denied IPs
log_format blocked '$remote_addr - $remote_user [$time_local] '
'"$request" 403 0 '
'"$http_referer" "$http_user_agent"';
access_log /var/log/nginx/blocked.log blocked;
include /path/to/blacklist.conf;
location / {
# your configuration
}
}
```
## Monitoring
Check how many IPs are being blocked:
```bash
# Count deny rules
grep -c "deny" /path/to/blacklist.conf
# Check blocked access logs
tail -f /var/log/nginx/blocked.log
# Count blocked requests today
grep "$(date +%d/%b/%Y)" /var/log/nginx/access.log | grep " 403 " | wc -l
```
## Troubleshooting
### Configuration Test Fails
```bash
# Check syntax
nginx -t
# Check for duplicate includes
grep -r "include.*blacklist" /etc/nginx/
# Verify file permissions
ls -l /path/to/blacklist.conf
```
### Legitimate Users Blocked
Check if their IP is in the blacklist:
```bash
grep "YOUR_IP" /path/to/blacklist.conf
```
Whitelist specific IPs before applying the blacklist:
```nginx
server {
listen 80;
server_name example.com;
# Whitelist before blacklist
allow 192.168.1.100; # Trusted IP
# Then apply blacklist
include /path/to/blacklist.conf;
# Deny all others not explicitly allowed
# deny all; # Optional
}
```
## Automatic Updates
These files are automatically regenerated daily when the blacklists are updated via the GitHub Actions workflow.
## Source
Generated from the blacklist files in the `blacklists/` directory by `blacklists_updater_nginx.sh`.
## See Also
- [IPTables/IPSet Format](../blacklists_iptables/README.md) - For firewall-level blocking
- [Text Format](../blacklists/README.md) - For custom integrations
- [Main Repository](https://github.com/C24Be/AS_Network_List) - Complete documentation

View File

@@ -1,6 +1,6 @@
# Nginx blacklist configuration (IPv4 only) # Nginx blacklist configuration (IPv4 only)
# Auto-generated from blacklist-v4.txt # Auto-generated from blacklist-v4.txt
# Last updated: 2026-03-21 06:34:56 UTC # Last updated: 2026-04-05 06:57:51 UTC
# #
# Usage: Include this file in your nginx server or location block: # Usage: Include this file in your nginx server or location block:
# include /path/to/blacklist-v4.conf; # include /path/to/blacklist-v4.conf;
@@ -49,8 +49,10 @@ deny 146.185.240.0/23;
deny 146.185.242.0/23; deny 146.185.242.0/23;
deny 149.62.55.240/30; deny 149.62.55.240/30;
deny 155.212.192.0/20; deny 155.212.192.0/20;
deny 161.104.104.0/21;
deny 176.109.0.0/21; deny 176.109.0.0/21;
deny 176.112.168.0/21; deny 176.112.168.0/21;
deny 176.116.112.0/22;
deny 176.116.96.0/20; deny 176.116.96.0/20;
deny 178.16.156.148/30; deny 178.16.156.148/30;
deny 178.17.176.0/23; deny 178.17.176.0/23;
@@ -73,7 +75,6 @@ deny 178.237.24.0/24;
deny 178.237.240.0/20; deny 178.237.240.0/20;
deny 178.237.248.0/21; deny 178.237.248.0/21;
deny 178.237.28.0/24; deny 178.237.28.0/24;
deny 178.237.29.0/24;
deny 178.237.30.0/23; deny 178.237.30.0/23;
deny 178.248.232.137/32; deny 178.248.232.137/32;
deny 178.248.232.60/32; deny 178.248.232.60/32;
@@ -232,7 +233,6 @@ deny 195.144.226.224/28;
deny 195.144.232.144/30; deny 195.144.232.144/30;
deny 195.144.240.128/28; deny 195.144.240.128/28;
deny 195.149.110.0/24; deny 195.149.110.0/24;
deny 195.151.25.48/29;
deny 195.16.55.224/27; deny 195.16.55.224/27;
deny 195.162.36.64/28; deny 195.162.36.64/28;
deny 195.170.218.24/29; deny 195.170.218.24/29;
@@ -461,7 +461,9 @@ deny 217.106.203.240/29;
deny 217.106.203.88/29; deny 217.106.203.88/29;
deny 217.106.93.192/26; deny 217.106.93.192/26;
deny 217.106.95.112/28; deny 217.106.95.112/28;
deny 217.107.0.0/18;
deny 217.107.200.0/21; deny 217.107.200.0/21;
deny 217.107.208.0/20;
deny 217.107.5.112/29; deny 217.107.5.112/29;
deny 217.107.5.16/29; deny 217.107.5.16/29;
deny 217.107.5.24/29; deny 217.107.5.24/29;
@@ -477,6 +479,7 @@ deny 217.16.16.0/20;
deny 217.16.16.0/21; deny 217.16.16.0/21;
deny 217.16.24.0/21; deny 217.16.24.0/21;
deny 217.172.18.0/23; deny 217.172.18.0/23;
deny 217.172.20.0/22;
deny 217.174.188.0/22; deny 217.174.188.0/22;
deny 217.174.188.0/23; deny 217.174.188.0/23;
deny 217.195.92.16/28; deny 217.195.92.16/28;
@@ -492,7 +495,10 @@ deny 217.20.156.0/23;
deny 217.20.158.0/24; deny 217.20.158.0/24;
deny 217.20.159.0/24; deny 217.20.159.0/24;
deny 217.20.86.128/26; deny 217.20.86.128/26;
deny 217.20.86.192/27;
deny 217.20.86.224/29;
deny 217.20.86.232/29; deny 217.20.86.232/29;
deny 217.20.86.240/28;
deny 217.23.88.168/29; deny 217.23.88.168/29;
deny 217.23.88.248/29; deny 217.23.88.248/29;
deny 217.27.142.176/30; deny 217.27.142.176/30;
@@ -526,6 +532,7 @@ deny 45.84.130.0/23;
deny 46.20.70.160/28; deny 46.20.70.160/28;
deny 46.228.0.232/29; deny 46.228.0.232/29;
deny 46.29.152.0/22; deny 46.29.152.0/22;
deny 46.29.156.0/23;
deny 46.46.142.160/28; deny 46.46.142.160/28;
deny 46.46.148.40/29; deny 46.46.148.40/29;
deny 46.47.197.128/30; deny 46.47.197.128/30;
@@ -628,7 +635,6 @@ deny 78.37.69.160/27;
deny 78.37.84.120/29; deny 78.37.84.120/29;
deny 78.37.97.88/29; deny 78.37.97.88/29;
deny 79.133.74.160/30; deny 79.133.74.160/30;
deny 79.133.74.168/30;
deny 79.133.75.176/30; deny 79.133.75.176/30;
deny 79.133.75.44/30; deny 79.133.75.44/30;
deny 79.137.132.0/24; deny 79.137.132.0/24;
@@ -811,6 +817,7 @@ deny 85.141.33.0/28;
deny 85.141.33.64/28; deny 85.141.33.64/28;
deny 85.141.60.96/28; deny 85.141.60.96/28;
deny 85.141.61.160/28; deny 85.141.61.160/28;
deny 85.142.251.0/24;
deny 85.143.125.0/24; deny 85.143.125.0/24;
deny 85.146.204.44/30; deny 85.146.204.44/30;
deny 85.192.32.0/22; deny 85.192.32.0/22;
@@ -981,6 +988,7 @@ deny 90.156.216.0/22;
deny 90.156.216.0/23; deny 90.156.216.0/23;
deny 90.156.218.0/23; deny 90.156.218.0/23;
deny 90.156.232.0/21; deny 90.156.232.0/21;
deny 90.156.248.0/22;
deny 91.103.194.184/29; deny 91.103.194.184/29;
deny 91.135.212.0/22; deny 91.135.212.0/22;
deny 91.135.216.0/21; deny 91.135.216.0/21;
@@ -1103,6 +1111,7 @@ deny 95.167.5.64/28;
deny 95.167.5.80/28; deny 95.167.5.80/28;
deny 95.167.54.76/30; deny 95.167.54.76/30;
deny 95.167.59.244/30; deny 95.167.59.244/30;
deny 95.167.59.248/30;
deny 95.167.64.20/30; deny 95.167.64.20/30;
deny 95.167.68.216/29; deny 95.167.68.216/29;
deny 95.167.69.116/30; deny 95.167.69.116/30;

View File

@@ -1,6 +1,6 @@
# Nginx blacklist configuration (IPv6 only) # Nginx blacklist configuration (IPv6 only)
# Auto-generated from blacklist-v6.txt # Auto-generated from blacklist-v6.txt
# Last updated: 2026-03-21 06:34:56 UTC # Last updated: 2026-04-05 06:57:51 UTC
# #
# Usage: Include this file in your nginx server or location block: # Usage: Include this file in your nginx server or location block:
# include /path/to/blacklist-v6.conf; # include /path/to/blacklist-v6.conf;

View File

@@ -1,6 +1,6 @@
# Nginx blacklist configuration (mixed IPv4/IPv6) # Nginx blacklist configuration (mixed IPv4/IPv6)
# Auto-generated from blacklist.txt # Auto-generated from blacklist.txt
# Last updated: 2026-03-21 06:34:56 UTC # Last updated: 2026-04-05 06:57:51 UTC
# #
# Usage: Include this file in your nginx server or location block: # Usage: Include this file in your nginx server or location block:
# include /path/to/blacklist.conf; # include /path/to/blacklist.conf;
@@ -49,8 +49,10 @@ deny 146.185.240.0/23;
deny 146.185.242.0/23; deny 146.185.242.0/23;
deny 149.62.55.240/30; deny 149.62.55.240/30;
deny 155.212.192.0/20; deny 155.212.192.0/20;
deny 161.104.104.0/21;
deny 176.109.0.0/21; deny 176.109.0.0/21;
deny 176.112.168.0/21; deny 176.112.168.0/21;
deny 176.116.112.0/22;
deny 176.116.96.0/20; deny 176.116.96.0/20;
deny 178.16.156.148/30; deny 178.16.156.148/30;
deny 178.17.176.0/23; deny 178.17.176.0/23;
@@ -73,7 +75,6 @@ deny 178.237.24.0/24;
deny 178.237.240.0/20; deny 178.237.240.0/20;
deny 178.237.248.0/21; deny 178.237.248.0/21;
deny 178.237.28.0/24; deny 178.237.28.0/24;
deny 178.237.29.0/24;
deny 178.237.30.0/23; deny 178.237.30.0/23;
deny 178.248.232.137/32; deny 178.248.232.137/32;
deny 178.248.232.60/32; deny 178.248.232.60/32;
@@ -232,7 +233,6 @@ deny 195.144.226.224/28;
deny 195.144.232.144/30; deny 195.144.232.144/30;
deny 195.144.240.128/28; deny 195.144.240.128/28;
deny 195.149.110.0/24; deny 195.149.110.0/24;
deny 195.151.25.48/29;
deny 195.16.55.224/27; deny 195.16.55.224/27;
deny 195.162.36.64/28; deny 195.162.36.64/28;
deny 195.170.218.24/29; deny 195.170.218.24/29;
@@ -461,7 +461,9 @@ deny 217.106.203.240/29;
deny 217.106.203.88/29; deny 217.106.203.88/29;
deny 217.106.93.192/26; deny 217.106.93.192/26;
deny 217.106.95.112/28; deny 217.106.95.112/28;
deny 217.107.0.0/18;
deny 217.107.200.0/21; deny 217.107.200.0/21;
deny 217.107.208.0/20;
deny 217.107.5.112/29; deny 217.107.5.112/29;
deny 217.107.5.16/29; deny 217.107.5.16/29;
deny 217.107.5.24/29; deny 217.107.5.24/29;
@@ -477,6 +479,7 @@ deny 217.16.16.0/20;
deny 217.16.16.0/21; deny 217.16.16.0/21;
deny 217.16.24.0/21; deny 217.16.24.0/21;
deny 217.172.18.0/23; deny 217.172.18.0/23;
deny 217.172.20.0/22;
deny 217.174.188.0/22; deny 217.174.188.0/22;
deny 217.174.188.0/23; deny 217.174.188.0/23;
deny 217.195.92.16/28; deny 217.195.92.16/28;
@@ -492,7 +495,10 @@ deny 217.20.156.0/23;
deny 217.20.158.0/24; deny 217.20.158.0/24;
deny 217.20.159.0/24; deny 217.20.159.0/24;
deny 217.20.86.128/26; deny 217.20.86.128/26;
deny 217.20.86.192/27;
deny 217.20.86.224/29;
deny 217.20.86.232/29; deny 217.20.86.232/29;
deny 217.20.86.240/28;
deny 217.23.88.168/29; deny 217.23.88.168/29;
deny 217.23.88.248/29; deny 217.23.88.248/29;
deny 217.27.142.176/30; deny 217.27.142.176/30;
@@ -548,6 +554,7 @@ deny 45.84.130.0/23;
deny 46.20.70.160/28; deny 46.20.70.160/28;
deny 46.228.0.232/29; deny 46.228.0.232/29;
deny 46.29.152.0/22; deny 46.29.152.0/22;
deny 46.29.156.0/23;
deny 46.46.142.160/28; deny 46.46.142.160/28;
deny 46.46.148.40/29; deny 46.46.148.40/29;
deny 46.47.197.128/30; deny 46.47.197.128/30;
@@ -650,7 +657,6 @@ deny 78.37.69.160/27;
deny 78.37.84.120/29; deny 78.37.84.120/29;
deny 78.37.97.88/29; deny 78.37.97.88/29;
deny 79.133.74.160/30; deny 79.133.74.160/30;
deny 79.133.74.168/30;
deny 79.133.75.176/30; deny 79.133.75.176/30;
deny 79.133.75.44/30; deny 79.133.75.44/30;
deny 79.137.132.0/24; deny 79.137.132.0/24;
@@ -833,6 +839,7 @@ deny 85.141.33.0/28;
deny 85.141.33.64/28; deny 85.141.33.64/28;
deny 85.141.60.96/28; deny 85.141.60.96/28;
deny 85.141.61.160/28; deny 85.141.61.160/28;
deny 85.142.251.0/24;
deny 85.143.125.0/24; deny 85.143.125.0/24;
deny 85.146.204.44/30; deny 85.146.204.44/30;
deny 85.192.32.0/22; deny 85.192.32.0/22;
@@ -1003,6 +1010,7 @@ deny 90.156.216.0/22;
deny 90.156.216.0/23; deny 90.156.216.0/23;
deny 90.156.218.0/23; deny 90.156.218.0/23;
deny 90.156.232.0/21; deny 90.156.232.0/21;
deny 90.156.248.0/22;
deny 91.103.194.184/29; deny 91.103.194.184/29;
deny 91.135.212.0/22; deny 91.135.212.0/22;
deny 91.135.216.0/21; deny 91.135.216.0/21;
@@ -1125,6 +1133,7 @@ deny 95.167.5.64/28;
deny 95.167.5.80/28; deny 95.167.5.80/28;
deny 95.167.54.76/30; deny 95.167.54.76/30;
deny 95.167.59.244/30; deny 95.167.59.244/30;
deny 95.167.59.248/30;
deny 95.167.64.20/30; deny 95.167.64.20/30;
deny 95.167.68.216/29; deny 95.167.68.216/29;
deny 95.167.69.116/30; deny 95.167.69.116/30;

View File

@@ -0,0 +1,275 @@
# Linux routes for VK networks (IPv4)
# Auto-generated by blacklists_updater_routes.sh
# Last updated: 2026-04-05 06:57:52 UTC
#
# Apply:
# sudo sh blacklist-vk-v4.routes
#
ip route replace 109.120.180.0/22 via 127.0.0.1 dev lo onlink
ip route replace 109.120.180.0/23 via 127.0.0.1 dev lo onlink
ip route replace 109.120.182.0/23 via 127.0.0.1 dev lo onlink
ip route replace 109.120.188.0/22 via 127.0.0.1 dev lo onlink
ip route replace 109.120.188.0/23 via 127.0.0.1 dev lo onlink
ip route replace 109.120.190.0/23 via 127.0.0.1 dev lo onlink
ip route replace 128.140.168.0/21 via 127.0.0.1 dev lo onlink
ip route replace 128.140.168.0/23 via 127.0.0.1 dev lo onlink
ip route replace 128.140.170.0/24 via 127.0.0.1 dev lo onlink
ip route replace 128.140.171.0/24 via 127.0.0.1 dev lo onlink
ip route replace 128.140.172.0/22 via 127.0.0.1 dev lo onlink
ip route replace 130.49.224.0/19 via 127.0.0.1 dev lo onlink
ip route replace 146.185.208.0/22 via 127.0.0.1 dev lo onlink
ip route replace 146.185.208.0/23 via 127.0.0.1 dev lo onlink
ip route replace 146.185.210.0/23 via 127.0.0.1 dev lo onlink
ip route replace 146.185.240.0/22 via 127.0.0.1 dev lo onlink
ip route replace 146.185.240.0/23 via 127.0.0.1 dev lo onlink
ip route replace 146.185.242.0/23 via 127.0.0.1 dev lo onlink
ip route replace 155.212.192.0/20 via 127.0.0.1 dev lo onlink
ip route replace 161.104.104.0/21 via 127.0.0.1 dev lo onlink
ip route replace 176.112.168.0/21 via 127.0.0.1 dev lo onlink
ip route replace 178.22.88.0/21 via 127.0.0.1 dev lo onlink
ip route replace 178.22.89.64/26 via 127.0.0.1 dev lo onlink
ip route replace 178.22.94.0/23 via 127.0.0.1 dev lo onlink
ip route replace 178.237.16.0/20 via 127.0.0.1 dev lo onlink
ip route replace 178.237.16.0/21 via 127.0.0.1 dev lo onlink
ip route replace 178.237.24.0/22 via 127.0.0.1 dev lo onlink
ip route replace 178.237.30.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.100.104.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.100.104.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.100.106.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.130.112.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.130.112.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.130.114.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.131.68.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.16.148.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.16.148.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.16.150.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.16.244.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.16.244.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.16.246.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.180.200.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.187.63.0/24 via 127.0.0.1 dev lo onlink
ip route replace 185.187.63.0/25 via 127.0.0.1 dev lo onlink
ip route replace 185.187.63.128/25 via 127.0.0.1 dev lo onlink
ip route replace 185.226.52.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.226.52.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.226.54.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.241.192.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.241.192.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.241.194.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.29.128.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.29.130.0/24 via 127.0.0.1 dev lo onlink
ip route replace 185.32.248.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.32.248.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.32.250.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.5.136.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.5.136.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.5.138.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.6.244.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.6.244.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.6.246.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.86.144.0/22 via 127.0.0.1 dev lo onlink
ip route replace 185.86.144.0/23 via 127.0.0.1 dev lo onlink
ip route replace 185.86.146.0/23 via 127.0.0.1 dev lo onlink
ip route replace 188.93.56.0/21 via 127.0.0.1 dev lo onlink
ip route replace 188.93.56.0/24 via 127.0.0.1 dev lo onlink
ip route replace 188.93.57.0/24 via 127.0.0.1 dev lo onlink
ip route replace 188.93.58.0/24 via 127.0.0.1 dev lo onlink
ip route replace 188.93.60.0/24 via 127.0.0.1 dev lo onlink
ip route replace 188.93.61.0/24 via 127.0.0.1 dev lo onlink
ip route replace 188.93.62.0/24 via 127.0.0.1 dev lo onlink
ip route replace 193.203.40.0/22 via 127.0.0.1 dev lo onlink
ip route replace 194.84.16.12/30 via 127.0.0.1 dev lo onlink
ip route replace 195.211.20.0/22 via 127.0.0.1 dev lo onlink
ip route replace 195.211.22.0/24 via 127.0.0.1 dev lo onlink
ip route replace 195.211.23.0/24 via 127.0.0.1 dev lo onlink
ip route replace 212.111.84.0/22 via 127.0.0.1 dev lo onlink
ip route replace 212.233.120.0/22 via 127.0.0.1 dev lo onlink
ip route replace 212.233.72.0/21 via 127.0.0.1 dev lo onlink
ip route replace 212.233.88.0/21 via 127.0.0.1 dev lo onlink
ip route replace 212.233.96.0/22 via 127.0.0.1 dev lo onlink
ip route replace 213.219.212.0/22 via 127.0.0.1 dev lo onlink
ip route replace 213.219.212.0/23 via 127.0.0.1 dev lo onlink
ip route replace 213.219.214.0/23 via 127.0.0.1 dev lo onlink
ip route replace 217.16.16.0/20 via 127.0.0.1 dev lo onlink
ip route replace 217.16.16.0/21 via 127.0.0.1 dev lo onlink
ip route replace 217.16.24.0/21 via 127.0.0.1 dev lo onlink
ip route replace 217.174.188.0/23 via 127.0.0.1 dev lo onlink
ip route replace 217.20.144.0/20 via 127.0.0.1 dev lo onlink
ip route replace 217.20.144.0/22 via 127.0.0.1 dev lo onlink
ip route replace 217.20.148.0/24 via 127.0.0.1 dev lo onlink
ip route replace 217.20.149.0/24 via 127.0.0.1 dev lo onlink
ip route replace 217.20.150.0/23 via 127.0.0.1 dev lo onlink
ip route replace 217.20.152.0/22 via 127.0.0.1 dev lo onlink
ip route replace 217.20.156.0/23 via 127.0.0.1 dev lo onlink
ip route replace 217.20.158.0/24 via 127.0.0.1 dev lo onlink
ip route replace 217.20.159.0/24 via 127.0.0.1 dev lo onlink
ip route replace 217.69.128.0/20 via 127.0.0.1 dev lo onlink
ip route replace 217.69.128.0/21 via 127.0.0.1 dev lo onlink
ip route replace 217.69.136.0/21 via 127.0.0.1 dev lo onlink
ip route replace 37.139.32.0/22 via 127.0.0.1 dev lo onlink
ip route replace 37.139.32.0/23 via 127.0.0.1 dev lo onlink
ip route replace 37.139.34.0/23 via 127.0.0.1 dev lo onlink
ip route replace 37.139.40.0/22 via 127.0.0.1 dev lo onlink
ip route replace 37.139.40.0/23 via 127.0.0.1 dev lo onlink
ip route replace 37.139.42.0/23 via 127.0.0.1 dev lo onlink
ip route replace 45.136.20.0/22 via 127.0.0.1 dev lo onlink
ip route replace 45.136.20.0/23 via 127.0.0.1 dev lo onlink
ip route replace 45.136.22.0/23 via 127.0.0.1 dev lo onlink
ip route replace 45.84.128.0/22 via 127.0.0.1 dev lo onlink
ip route replace 45.84.128.0/23 via 127.0.0.1 dev lo onlink
ip route replace 45.84.130.0/23 via 127.0.0.1 dev lo onlink
ip route replace 5.101.40.0/22 via 127.0.0.1 dev lo onlink
ip route replace 5.101.40.0/23 via 127.0.0.1 dev lo onlink
ip route replace 5.101.42.0/23 via 127.0.0.1 dev lo onlink
ip route replace 5.181.60.0/22 via 127.0.0.1 dev lo onlink
ip route replace 5.181.60.0/24 via 127.0.0.1 dev lo onlink
ip route replace 5.181.61.0/24 via 127.0.0.1 dev lo onlink
ip route replace 5.181.62.0/23 via 127.0.0.1 dev lo onlink
ip route replace 5.188.140.0/22 via 127.0.0.1 dev lo onlink
ip route replace 5.188.140.0/23 via 127.0.0.1 dev lo onlink
ip route replace 5.188.142.0/23 via 127.0.0.1 dev lo onlink
ip route replace 5.61.16.0/21 via 127.0.0.1 dev lo onlink
ip route replace 5.61.16.0/22 via 127.0.0.1 dev lo onlink
ip route replace 5.61.20.0/22 via 127.0.0.1 dev lo onlink
ip route replace 5.61.232.0/21 via 127.0.0.1 dev lo onlink
ip route replace 5.61.232.0/22 via 127.0.0.1 dev lo onlink
ip route replace 5.61.236.0/23 via 127.0.0.1 dev lo onlink
ip route replace 5.61.238.0/24 via 127.0.0.1 dev lo onlink
ip route replace 5.61.239.0/27 via 127.0.0.1 dev lo onlink
ip route replace 5.61.239.128/25 via 127.0.0.1 dev lo onlink
ip route replace 5.61.239.40/29 via 127.0.0.1 dev lo onlink
ip route replace 5.61.239.48/28 via 127.0.0.1 dev lo onlink
ip route replace 5.61.239.64/26 via 127.0.0.1 dev lo onlink
ip route replace 62.217.160.0/20 via 127.0.0.1 dev lo onlink
ip route replace 62.217.160.0/21 via 127.0.0.1 dev lo onlink
ip route replace 62.217.168.0/21 via 127.0.0.1 dev lo onlink
ip route replace 79.137.132.0/24 via 127.0.0.1 dev lo onlink
ip route replace 79.137.132.0/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.132.128/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.139.0/24 via 127.0.0.1 dev lo onlink
ip route replace 79.137.139.0/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.139.128/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.157.0/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.157.128/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.164.0/24 via 127.0.0.1 dev lo onlink
ip route replace 79.137.164.0/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.164.128/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.167.0/24 via 127.0.0.1 dev lo onlink
ip route replace 79.137.167.0/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.167.128/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.174.0/23 via 127.0.0.1 dev lo onlink
ip route replace 79.137.174.0/24 via 127.0.0.1 dev lo onlink
ip route replace 79.137.175.0/24 via 127.0.0.1 dev lo onlink
ip route replace 79.137.180.0/24 via 127.0.0.1 dev lo onlink
ip route replace 79.137.180.0/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.180.128/25 via 127.0.0.1 dev lo onlink
ip route replace 79.137.240.0/21 via 127.0.0.1 dev lo onlink
ip route replace 79.137.240.0/22 via 127.0.0.1 dev lo onlink
ip route replace 79.137.244.0/22 via 127.0.0.1 dev lo onlink
ip route replace 83.166.232.0/21 via 127.0.0.1 dev lo onlink
ip route replace 83.166.232.0/22 via 127.0.0.1 dev lo onlink
ip route replace 83.166.236.0/22 via 127.0.0.1 dev lo onlink
ip route replace 83.166.248.0/21 via 127.0.0.1 dev lo onlink
ip route replace 83.166.248.0/22 via 127.0.0.1 dev lo onlink
ip route replace 83.166.252.0/22 via 127.0.0.1 dev lo onlink
ip route replace 83.217.216.0/22 via 127.0.0.1 dev lo onlink
ip route replace 83.217.216.0/23 via 127.0.0.1 dev lo onlink
ip route replace 83.217.218.0/23 via 127.0.0.1 dev lo onlink
ip route replace 83.222.28.0/22 via 127.0.0.1 dev lo onlink
ip route replace 84.23.52.0/22 via 127.0.0.1 dev lo onlink
ip route replace 84.23.52.0/23 via 127.0.0.1 dev lo onlink
ip route replace 84.23.54.0/23 via 127.0.0.1 dev lo onlink
ip route replace 85.114.31.108/30 via 127.0.0.1 dev lo onlink
ip route replace 85.192.32.0/22 via 127.0.0.1 dev lo onlink
ip route replace 85.192.32.0/23 via 127.0.0.1 dev lo onlink
ip route replace 85.192.34.0/23 via 127.0.0.1 dev lo onlink
ip route replace 85.198.106.0/24 via 127.0.0.1 dev lo onlink
ip route replace 85.198.107.0/24 via 127.0.0.1 dev lo onlink
ip route replace 87.239.104.0/21 via 127.0.0.1 dev lo onlink
ip route replace 87.239.104.0/22 via 127.0.0.1 dev lo onlink
ip route replace 87.239.108.0/22 via 127.0.0.1 dev lo onlink
ip route replace 87.240.128.0/18 via 127.0.0.1 dev lo onlink
ip route replace 87.240.128.0/19 via 127.0.0.1 dev lo onlink
ip route replace 87.240.160.0/19 via 127.0.0.1 dev lo onlink
ip route replace 87.242.112.0/22 via 127.0.0.1 dev lo onlink
ip route replace 89.208.196.0/22 via 127.0.0.1 dev lo onlink
ip route replace 89.208.196.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.198.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.208.0/22 via 127.0.0.1 dev lo onlink
ip route replace 89.208.208.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.210.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.216.0/21 via 127.0.0.1 dev lo onlink
ip route replace 89.208.216.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.218.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.220.0/22 via 127.0.0.1 dev lo onlink
ip route replace 89.208.228.0/22 via 127.0.0.1 dev lo onlink
ip route replace 89.208.228.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.230.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.84.0/22 via 127.0.0.1 dev lo onlink
ip route replace 89.208.84.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.208.86.0/23 via 127.0.0.1 dev lo onlink
ip route replace 89.221.228.0/22 via 127.0.0.1 dev lo onlink
ip route replace 89.221.232.0/21 via 127.0.0.1 dev lo onlink
ip route replace 90.156.148.0/22 via 127.0.0.1 dev lo onlink
ip route replace 90.156.148.0/23 via 127.0.0.1 dev lo onlink
ip route replace 90.156.150.0/23 via 127.0.0.1 dev lo onlink
ip route replace 90.156.212.0/22 via 127.0.0.1 dev lo onlink
ip route replace 90.156.212.0/23 via 127.0.0.1 dev lo onlink
ip route replace 90.156.214.0/23 via 127.0.0.1 dev lo onlink
ip route replace 90.156.216.0/22 via 127.0.0.1 dev lo onlink
ip route replace 90.156.216.0/23 via 127.0.0.1 dev lo onlink
ip route replace 90.156.218.0/23 via 127.0.0.1 dev lo onlink
ip route replace 90.156.232.0/21 via 127.0.0.1 dev lo onlink
ip route replace 91.219.224.0/22 via 127.0.0.1 dev lo onlink
ip route replace 91.231.132.0/22 via 127.0.0.1 dev lo onlink
ip route replace 91.237.76.0/24 via 127.0.0.1 dev lo onlink
ip route replace 93.153.255.84/30 via 127.0.0.1 dev lo onlink
ip route replace 93.186.224.0/20 via 127.0.0.1 dev lo onlink
ip route replace 93.186.224.0/21 via 127.0.0.1 dev lo onlink
ip route replace 93.186.232.0/21 via 127.0.0.1 dev lo onlink
ip route replace 94.100.176.0/20 via 127.0.0.1 dev lo onlink
ip route replace 94.100.176.0/21 via 127.0.0.1 dev lo onlink
ip route replace 94.100.184.0/21 via 127.0.0.1 dev lo onlink
ip route replace 94.139.244.0/22 via 127.0.0.1 dev lo onlink
ip route replace 94.139.244.0/23 via 127.0.0.1 dev lo onlink
ip route replace 94.139.246.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.142.192.0/20 via 127.0.0.1 dev lo onlink
ip route replace 95.142.192.0/21 via 127.0.0.1 dev lo onlink
ip route replace 95.142.200.0/21 via 127.0.0.1 dev lo onlink
ip route replace 95.163.180.0/22 via 127.0.0.1 dev lo onlink
ip route replace 95.163.180.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.182.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.208.0/21 via 127.0.0.1 dev lo onlink
ip route replace 95.163.208.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.210.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.212.0/22 via 127.0.0.1 dev lo onlink
ip route replace 95.163.216.0/22 via 127.0.0.1 dev lo onlink
ip route replace 95.163.216.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.218.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.248.0/21 via 127.0.0.1 dev lo onlink
ip route replace 95.163.248.0/22 via 127.0.0.1 dev lo onlink
ip route replace 95.163.252.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.254.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.163.32.0/19 via 127.0.0.1 dev lo onlink
ip route replace 95.163.32.0/22 via 127.0.0.1 dev lo onlink
ip route replace 95.163.36.0/22 via 127.0.0.1 dev lo onlink
ip route replace 95.163.40.0/21 via 127.0.0.1 dev lo onlink
ip route replace 95.163.48.0/20 via 127.0.0.1 dev lo onlink
ip route replace 95.213.0.0/17 via 127.0.0.1 dev lo onlink
ip route replace 95.213.0.0/20 via 127.0.0.1 dev lo onlink
ip route replace 95.213.16.0/21 via 127.0.0.1 dev lo onlink
ip route replace 95.213.24.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.213.26.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.27.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.28.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.29.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.30.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.31.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.32.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.33.0/24 via 127.0.0.1 dev lo onlink
ip route replace 95.213.34.0/23 via 127.0.0.1 dev lo onlink
ip route replace 95.213.36.0/22 via 127.0.0.1 dev lo onlink
ip route replace 95.213.40.0/21 via 127.0.0.1 dev lo onlink
ip route replace 95.213.48.0/20 via 127.0.0.1 dev lo onlink
ip route replace 95.213.64.0/18 via 127.0.0.1 dev lo onlink

View File

@@ -0,0 +1,9 @@
# Linux routes for VK networks (IPv6)
# Auto-generated by blacklists_updater_routes.sh
# Last updated: 2026-04-05 06:57:52 UTC
#
# Apply:
# sudo sh blacklist-vk-v6.routes
#
ip -6 route replace 2a00:bdc0::/29 via ::1 dev lo

View File

@@ -1,18 +1,43 @@
#!/bin/sh #!/bin/sh
SCRIPT_DIR="$(cd "$(dirname "$0")" && pwd)"
# Input files (generated by blacklists_updater_txt.sh) # Input files (generated by blacklists_updater_txt.sh)
blacklist_file="blacklists/blacklist.txt" blacklist_file="${SCRIPT_DIR}/blacklists/blacklist.txt"
blacklist_v4_file="blacklists/blacklist-v4.txt" blacklist_v4_file="${SCRIPT_DIR}/blacklists/blacklist-v4.txt"
blacklist_v6_file="blacklists/blacklist-v6.txt" blacklist_v6_file="${SCRIPT_DIR}/blacklists/blacklist-v6.txt"
# Source files for name-based VK filtering
auto_all_v4_file="${SCRIPT_DIR}/auto/all-ru-ipv4.txt"
auto_all_v6_file="${SCRIPT_DIR}/auto/all-ru-ipv6.txt"
auto_ripe_v4_file="${SCRIPT_DIR}/auto/ripe-ru-ipv4.txt"
vk_name_pattern='vk[[:space:]-]*cloud|vkcompany|vkontakte'
# Additional VK-only text blacklists
blacklist_vk_file="${SCRIPT_DIR}/blacklists/blacklist-vk.txt"
blacklist_vk_v4_file="${SCRIPT_DIR}/blacklists/blacklist-vk-v4.txt"
blacklist_vk_v6_file="${SCRIPT_DIR}/blacklists/blacklist-vk-v6.txt"
# Output directory and files # Output directory and files
iptables_output_dir="blacklists_iptables" iptables_output_dir="${SCRIPT_DIR}/blacklists_iptables"
iptables_output_file="${iptables_output_dir}/blacklist.ipset"
iptables_v4_output_file="${iptables_output_dir}/blacklist-v4.ipset" iptables_v4_output_file="${iptables_output_dir}/blacklist-v4.ipset"
iptables_v6_output_file="${iptables_output_dir}/blacklist-v6.ipset" iptables_v6_output_file="${iptables_output_dir}/blacklist-v6.ipset"
iptables_vk_v4_output_file="${iptables_output_dir}/blacklist-vk-v4.ipset"
iptables_vk_v6_output_file="${iptables_output_dir}/blacklist-vk-v6.ipset"
# Create iptables directory if it doesn't exist # Create required directories if they don't exist
mkdir -p "${iptables_output_dir}" mkdir -p "${iptables_output_dir}" "${SCRIPT_DIR}/blacklists"
# Build additional VK-only blacklist from network names in auto/*.txt files
tmp_vk_file="$(mktemp "${SCRIPT_DIR}/blacklists/.blacklist-vk.XXXXXX")"
for source_file in "${auto_all_v4_file}" "${auto_all_v6_file}" "${auto_ripe_v4_file}"; do
[ -f "${source_file}" ] || continue
awk -v pattern="${vk_name_pattern}" 'tolower($0) ~ pattern { print $1 }' "${source_file}" >> "${tmp_vk_file}"
done
sort -u "${tmp_vk_file}" > "${blacklist_vk_file}"
grep ':' "${blacklist_vk_file}" | sort -u > "${blacklist_vk_v6_file}" || true
grep -v ':' "${blacklist_vk_file}" | sort -u > "${blacklist_vk_v4_file}" || true
rm -f "${tmp_vk_file}"
# Function to generate ipset config from input file # Function to generate ipset config from input file
generate_ipset_config() { generate_ipset_config() {
@@ -21,6 +46,19 @@ generate_ipset_config() {
local ip_version="$3" local ip_version="$3"
local set_name="$4" local set_name="$4"
local family="$5" local family="$5"
local iptables_cmd="iptables"
local rule_primary=""
local rule_secondary=""
[ "${family}" = "inet6" ] && iptables_cmd="ip6tables"
if printf "%s" "${set_name}" | grep -q '^blacklist-vk'; then
rule_primary="${iptables_cmd} -I OUTPUT -m set --match-set ${set_name} dst -j REJECT"
rule_secondary="${iptables_cmd} -I FORWARD -m set --match-set ${set_name} dst -j REJECT"
else
rule_primary="${iptables_cmd} -I INPUT -m set --match-set ${set_name} src -m conntrack --ctstate NEW -j DROP"
rule_secondary="${iptables_cmd} -I FORWARD -m set --match-set ${set_name} src -m conntrack --ctstate NEW -j DROP"
fi
# Count entries for hash size calculation # Count entries for hash size calculation
local count=$(wc -l < "${input_file}" | tr -d ' ') local count=$(wc -l < "${input_file}" | tr -d ' ')
@@ -38,8 +76,8 @@ generate_ipset_config() {
# ipset restore < $(basename ${output_file}) # ipset restore < $(basename ${output_file})
# #
# 2. Use with iptables/ip6tables: # 2. Use with iptables/ip6tables:
# iptables -I INPUT -m set --match-set ${set_name} src -m conntrack --ctstate NEW -j DROP # ${rule_primary}
# iptables -I FORWARD -m set --match-set ${set_name} src -m conntrack --ctstate NEW -j DROP ${rule_secondary:+# ${rule_secondary}}
# #
# 3. To flush/delete the set: # 3. To flush/delete the set:
# ipset flush ${set_name} # ipset flush ${set_name}
@@ -63,34 +101,16 @@ EOF
# Generate ipset configurations from blacklist files # Generate ipset configurations from blacklist files
generate_ipset_config "${blacklist_v4_file}" "${iptables_v4_output_file}" "(IPv4 only)" "blacklist-v4" "inet" generate_ipset_config "${blacklist_v4_file}" "${iptables_v4_output_file}" "(IPv4 only)" "blacklist-v4" "inet"
generate_ipset_config "${blacklist_v6_file}" "${iptables_v6_output_file}" "(IPv6 only)" "blacklist-v6" "inet6" generate_ipset_config "${blacklist_v6_file}" "${iptables_v6_output_file}" "(IPv6 only)" "blacklist-v6" "inet6"
generate_ipset_config "${blacklist_vk_v4_file}" "${iptables_vk_v4_output_file}" "(VK names, IPv4 only)" "blacklist-vk-v4" "inet"
generate_ipset_config "${blacklist_vk_v6_file}" "${iptables_vk_v6_output_file}" "(VK names, IPv6 only)" "blacklist-vk-v6" "inet6"
# For mixed file, we need to create two sets (IPv4 and IPv6) as ipset doesn't support mixed families echo ""
cat > "${iptables_output_file}" << EOF echo "VK outgoing block examples (iptables/ipset):"
# IPSet blacklist configuration (mixed IPv4/IPv6) echo " ipset restore < ${iptables_vk_v4_output_file}"
# Auto-generated from $(basename ${blacklist_file}) echo " ipset restore < ${iptables_vk_v6_output_file}"
# Last updated: $(date -u +"%Y-%m-%d %H:%M:%S UTC") echo " iptables -I OUTPUT -m set --match-set blacklist-vk-v4 dst -j REJECT"
# echo " iptables -I FORWARD -m set --match-set blacklist-vk-v4 dst -j REJECT"
# Usage: echo " ip6tables -I OUTPUT -m set --match-set blacklist-vk-v6 dst -j REJECT"
# 1. Load the ipset: echo " ip6tables -I FORWARD -m set --match-set blacklist-vk-v6 dst -j REJECT"
# ipset restore < $(basename ${iptables_output_file}) echo ""
# echo "Tip: Do not install Messenger MAX on the same phone/device that has VPN access configured."
# 2. Use with iptables/ip6tables:
# iptables -I INPUT -m set --match-set blacklist-v4 src -m conntrack --ctstate NEW -j DROP
# iptables -I FORWARD -m set --match-set blacklist-v4 src -m conntrack --ctstate NEW -j DROP
# ip6tables -I INPUT -m set --match-set blacklist-v6 src -m conntrack --ctstate NEW -j DROP
# ip6tables -I FORWARD -m set --match-set blacklist-v6 src -m conntrack --ctstate NEW -j DROP
#
# 3. To flush/delete the sets:
# ipset flush blacklist-v4 && ipset destroy blacklist-v4
# ipset flush blacklist-v6 && ipset destroy blacklist-v6
#
EOF
# Append both IPv4 and IPv6 sets to the mixed file
tail -n +2 "${iptables_v4_output_file}" | grep -E "^(create|add)" >> "${iptables_output_file}"
echo "" >> "${iptables_output_file}"
tail -n +2 "${iptables_v6_output_file}" | grep -E "^(create|add)" >> "${iptables_output_file}"
echo "✓ Generated (mixed IPv4/IPv6): ${iptables_output_file}"
echo " Total entries: $(wc -l < "${blacklist_file}" | tr -d ' ')"

View File

@@ -7,29 +7,82 @@ SCRIPT_DIR="$(cd "$(dirname "${BASH_SOURCE[0]}")" && pwd)"
INPUT_FILE="$SCRIPT_DIR/blacklists/blacklist.txt" INPUT_FILE="$SCRIPT_DIR/blacklists/blacklist.txt"
OUTPUT_DIR="$SCRIPT_DIR/blacklists_nftables" OUTPUT_DIR="$SCRIPT_DIR/blacklists_nftables"
# Create output directory if it doesn't exist # Source files for name-based VK filtering
mkdir -p "$OUTPUT_DIR" AUTO_ALL_V4_FILE="$SCRIPT_DIR/auto/all-ru-ipv4.txt"
AUTO_ALL_V6_FILE="$SCRIPT_DIR/auto/all-ru-ipv6.txt"
AUTO_RIPE_V4_FILE="$SCRIPT_DIR/auto/ripe-ru-ipv4.txt"
VK_NAME_PATTERN='vk[[:space:]-]*cloud|vkcompany|vkontakte'
# Additional VK-only text blacklists
VK_INPUT_FILE="$SCRIPT_DIR/blacklists/blacklist-vk.txt"
VK_INPUT_V4_FILE="$SCRIPT_DIR/blacklists/blacklist-vk-v4.txt"
VK_INPUT_V6_FILE="$SCRIPT_DIR/blacklists/blacklist-vk-v6.txt"
# Create required directories if they don't exist
mkdir -p "$OUTPUT_DIR" "$SCRIPT_DIR/blacklists"
echo "Generating nftables blacklists..." echo "Generating nftables blacklists..."
# Generate mixed IPv4/IPv6 blacklist # Build additional VK-only blacklist from network names in auto/*.txt files
TMP_VK_FILE="$(mktemp "$SCRIPT_DIR/blacklists/.blacklist-vk.XXXXXX")"
for source_file in "$AUTO_ALL_V4_FILE" "$AUTO_ALL_V6_FILE" "$AUTO_RIPE_V4_FILE"; do
[[ -f "$source_file" ]] || continue
awk -v pattern="$VK_NAME_PATTERN" 'tolower($0) ~ pattern { print $1 }' "$source_file" >> "$TMP_VK_FILE"
done
sort -u "$TMP_VK_FILE" > "$VK_INPUT_FILE"
grep ':' "$VK_INPUT_FILE" | sort -u > "$VK_INPUT_V6_FILE" || true
grep -v ':' "$VK_INPUT_FILE" | sort -u > "$VK_INPUT_V4_FILE" || true
rm -f "$TMP_VK_FILE"
# Generate mixed IPv4/IPv6 blacklist (recommended single-file load)
python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \ python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \
"$INPUT_FILE" \ "$INPUT_FILE" \
"$OUTPUT_DIR/blacklist.nft" "$OUTPUT_DIR/blacklist.nft"
# Generate IPv4-only blacklist # Generate IPv4-only blacklist
grep -E '^[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+' "$INPUT_FILE" > /tmp/blacklist-v4.txt || true TMP_V4_FILE="/tmp/blacklist-v4.txt"
TMP_V6_FILE="/tmp/blacklist-v6.txt"
grep -E '^[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+' "$INPUT_FILE" > "$TMP_V4_FILE" || true
python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \ python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \
/tmp/blacklist-v4.txt \ "$TMP_V4_FILE" \
"$OUTPUT_DIR/blacklist-v4.nft" "$OUTPUT_DIR/blacklist-v4.nft"
# Generate IPv6-only blacklist # Generate IPv6-only blacklist
grep -E '^[0-9a-fA-F:]+:' "$INPUT_FILE" > /tmp/blacklist-v6.txt || true grep -E '^[0-9a-fA-F:]+:' "$INPUT_FILE" > "$TMP_V6_FILE" || true
python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \ python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \
/tmp/blacklist-v6.txt \ "$TMP_V6_FILE" \
"$OUTPUT_DIR/blacklist-v6.nft" "$OUTPUT_DIR/blacklist-v6.nft"
# Generate VK-only blacklists (network names: VK Cloud / VKCOMPANY / VKONTAKTE)
python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \
"$VK_INPUT_FILE" \
"$OUTPUT_DIR/blacklist-vk.nft"
python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \
"$VK_INPUT_V4_FILE" \
"$OUTPUT_DIR/blacklist-vk-v4.nft"
python3 "$SCRIPT_DIR/generate_nft_blacklist.py" \
"$VK_INPUT_V6_FILE" \
"$OUTPUT_DIR/blacklist-vk-v6.nft"
# Clean up temp files # Clean up temp files
rm -f /tmp/blacklist-v4.txt /tmp/blacklist-v6.txt rm -f "$TMP_V4_FILE" "$TMP_V6_FILE"
echo "nftables blacklists generated successfully!" echo "nftables blacklists generated successfully!"
echo ""
echo "VM incoming block examples (all lists, nftables):"
echo " sudo nft -f $OUTPUT_DIR/blacklist.nft"
echo " sudo nft -f $OUTPUT_DIR/blacklist-v4.nft"
echo " sudo nft -f $OUTPUT_DIR/blacklist-v6.nft"
echo " sudo nft add chain inet filter input '{ type filter hook input priority 0; policy accept; }'"
echo " sudo nft add rule inet filter input ip saddr @blacklist_v4 counter reject"
echo " sudo nft add rule inet filter input ip6 saddr @blacklist_v6 counter reject"
echo ""
echo "VK outbound block examples for VPN clients via NAT (nftables):"
echo " sudo nft -f $OUTPUT_DIR/blacklist-vk.nft"
echo " sudo nft -f $OUTPUT_DIR/blacklist-vk-v4.nft"
echo " sudo nft -f $OUTPUT_DIR/blacklist-vk-v6.nft"
echo " sudo nft add chain inet filter forward '{ type filter hook forward priority 0; policy accept; }'"
echo " sudo nft add rule inet filter forward iifname \"<VPN_IFACE>\" ip daddr @blacklist_vk_v4 counter reject"
echo " sudo nft add rule inet filter forward iifname \"<VPN_IFACE>\" ip6 daddr @blacklist_vk_v6 counter reject"
echo ""
echo "Tip: Do not install Messenger MAX on the same phone/device that has VPN access configured."

View File

@@ -11,8 +11,8 @@ nginx_output_file="${nginx_output_dir}/blacklist.conf"
nginx_v4_output_file="${nginx_output_dir}/blacklist-v4.conf" nginx_v4_output_file="${nginx_output_dir}/blacklist-v4.conf"
nginx_v6_output_file="${nginx_output_dir}/blacklist-v6.conf" nginx_v6_output_file="${nginx_output_dir}/blacklist-v6.conf"
# Create nginx directory if it doesn't exist # Create required directories if they don't exist
mkdir -p "${nginx_output_dir}" mkdir -p "${nginx_output_dir}" "blacklists"
# Function to generate nginx config from input file # Function to generate nginx config from input file
generate_nginx_config() { generate_nginx_config() {

78
blacklists_updater_routes.sh Executable file
View File

@@ -0,0 +1,78 @@
#!/bin/sh
set -e
SCRIPT_DIR="$(cd "$(dirname "$0")" && pwd)"
# Source files for name-based VK filtering
AUTO_ALL_V4_FILE="${SCRIPT_DIR}/auto/all-ru-ipv4.txt"
AUTO_ALL_V6_FILE="${SCRIPT_DIR}/auto/all-ru-ipv6.txt"
AUTO_RIPE_V4_FILE="${SCRIPT_DIR}/auto/ripe-ru-ipv4.txt"
VK_NAME_PATTERN='vk[[:space:]-]*cloud|vkcompany|vkontakte'
# Additional VK-only text blacklists
VK_INPUT_FILE="${SCRIPT_DIR}/blacklists/blacklist-vk.txt"
VK_INPUT_V4_FILE="${SCRIPT_DIR}/blacklists/blacklist-vk-v4.txt"
VK_INPUT_V6_FILE="${SCRIPT_DIR}/blacklists/blacklist-vk-v6.txt"
# Output directory and files
ROUTES_OUTPUT_DIR="${SCRIPT_DIR}/blacklists_route"
ROUTES_V4_FILE="${ROUTES_OUTPUT_DIR}/blacklist-vk-v4.routes"
ROUTES_V6_FILE="${ROUTES_OUTPUT_DIR}/blacklist-vk-v6.routes"
mkdir -p "${ROUTES_OUTPUT_DIR}" "${SCRIPT_DIR}/blacklists"
echo "Generating VK route blacklists..."
# Build additional VK-only blacklist from network names in auto/*.txt files
TMP_VK_FILE="$(mktemp "${SCRIPT_DIR}/blacklists/.blacklist-vk.XXXXXX")"
for source_file in "${AUTO_ALL_V4_FILE}" "${AUTO_ALL_V6_FILE}" "${AUTO_RIPE_V4_FILE}"; do
[ -f "${source_file}" ] || continue
awk -v pattern="${VK_NAME_PATTERN}" 'tolower($0) ~ pattern { print $1 }' "${source_file}" >> "${TMP_VK_FILE}"
done
sort -u "${TMP_VK_FILE}" > "${VK_INPUT_FILE}"
grep ':' "${VK_INPUT_FILE}" | sort -u > "${VK_INPUT_V6_FILE}" || true
grep -v ':' "${VK_INPUT_FILE}" | sort -u > "${VK_INPUT_V4_FILE}" || true
rm -f "${TMP_VK_FILE}"
# Generate IPv4 routes file (route VK prefixes to loopback via 127.0.0.1)
cat > "${ROUTES_V4_FILE}" << EOF
# Linux routes for VK networks (IPv4)
# Auto-generated by $(basename "$0")
# Last updated: $(date -u +"%Y-%m-%d %H:%M:%S UTC")
#
# Apply:
# sudo sh $(basename "${ROUTES_V4_FILE}")
#
EOF
while IFS= read -r network; do
[ -n "${network}" ] || continue
printf 'ip route replace %s via 127.0.0.1 dev lo onlink\n' "${network}" >> "${ROUTES_V4_FILE}"
done < "${VK_INPUT_V4_FILE}"
# Generate IPv6 routes file (route VK prefixes to loopback via ::1)
cat > "${ROUTES_V6_FILE}" << EOF
# Linux routes for VK networks (IPv6)
# Auto-generated by $(basename "$0")
# Last updated: $(date -u +"%Y-%m-%d %H:%M:%S UTC")
#
# Apply:
# sudo sh $(basename "${ROUTES_V6_FILE}")
#
EOF
while IFS= read -r network; do
[ -n "${network}" ] || continue
printf 'ip -6 route replace %s via ::1 dev lo\n' "${network}" >> "${ROUTES_V6_FILE}"
done < "${VK_INPUT_V6_FILE}"
echo "✓ Generated: ${ROUTES_V4_FILE} (entries: $(wc -l < "${VK_INPUT_V4_FILE}" | tr -d ' '))"
echo "✓ Generated: ${ROUTES_V6_FILE} (entries: $(wc -l < "${VK_INPUT_V6_FILE}" | tr -d ' '))"
echo ""
echo "Examples:"
echo " sudo sh ${ROUTES_V4_FILE}"
echo " sudo sh ${ROUTES_V6_FILE}"

View File

@@ -11,6 +11,8 @@ black_names="uvd|umvd|fgup|grchc|roskomnad|federalnaya sluzhba|ufsb|zonatelecom|
# M100 - mail.ru # M100 - mail.ru
white_names="ruvds" white_names="ruvds"
mkdir -p blacklists auto
grep -iE "${black_names}" auto/all-ru-asn.txt | grep -viE "${white_names}" | awk '{ print "# AS-Name: " $0 "\n" $1}' > ${auto_black_ass} grep -iE "${black_names}" auto/all-ru-asn.txt | grep -viE "${white_names}" | awk '{ print "# AS-Name: " $0 "\n" $1}' > ${auto_black_ass}
./network_list_from_as.py ${auto_black_ass} > ${outfile_w_comments} ./network_list_from_as.py ${auto_black_ass} > ${outfile_w_comments}
./network_list_from_netname.py lists/ru-gov-netnames.txt >> ${outfile_w_comments} ./network_list_from_netname.py lists/ru-gov-netnames.txt >> ${outfile_w_comments}

View File

@@ -12,6 +12,27 @@ import re
from ipaddress import ip_address, ip_network, AddressValueError from ipaddress import ip_address, ip_network, AddressValueError
from pathlib import Path from pathlib import Path
def iter_set_blocks(content):
current_name = None
current_lines = []
brace_depth = 0
for line in content.splitlines():
if current_name is None:
match = re.match(r"\s*set\s+([A-Za-z0-9_]+)\s*\{", line)
if match:
current_name = match.group(1)
current_lines = [line]
brace_depth = line.count("{") - line.count("}")
continue
current_lines.append(line)
brace_depth += line.count("{") - line.count("}")
if brace_depth == 0:
yield current_name, "\n".join(current_lines)
current_name = None
current_lines = []
def parse_nft_config(config_path): def parse_nft_config(config_path):
"""Extract IPv4 and IPv6 prefixes from nftables config.""" """Extract IPv4 and IPv6 prefixes from nftables config."""
p = Path(config_path) p = Path(config_path)
@@ -21,37 +42,20 @@ def parse_nft_config(config_path):
content = p.read_text(encoding="utf-8") content = p.read_text(encoding="utf-8")
v4_prefixes = [] v4_prefixes = []
v6_prefixes = [] v6_prefixes = []
# Parse IPv4 set (blacklist_v4) for _, block in iter_set_blocks(content):
v4_match = re.search( if "type ipv4_addr" in block:
r'set blacklist_v4\s*\{[^}]*elements\s*=\s*\{([^}]+)\}', for match in re.finditer(r"(\d+\.\d+\.\d+\.\d+(?:/\d+)?)", block):
content, try:
re.DOTALL v4_prefixes.append(ip_network(match.group(1), strict=False))
) except Exception as e:
if v4_match: print(f"Warning: Could not parse IPv4 prefix '{match.group(1)}': {e}", file=sys.stderr)
elements = v4_match.group(1) elif "type ipv6_addr" in block:
# Extract all CIDR notations for match in re.finditer(r"([0-9a-fA-F:]+(?:/\d+)?)", block):
for match in re.finditer(r'(\d+\.\d+\.\d+\.\d+(?:/\d+)?)', elements): try:
try: v6_prefixes.append(ip_network(match.group(1), strict=False))
v4_prefixes.append(ip_network(match.group(1), strict=False)) except Exception:
except Exception as e: pass
print(f"Warning: Could not parse IPv4 prefix '{match.group(1)}': {e}", file=sys.stderr)
# Parse IPv6 set (blacklist_v6)
v6_match = re.search(
r'set blacklist_v6\s*\{[^}]*elements\s*=\s*\{([^}]+)\}',
content,
re.DOTALL
)
if v6_match:
elements = v6_match.group(1)
# Extract all IPv6 CIDR notations
for match in re.finditer(r'([0-9a-fA-F:]+(?:/\d+)?)', elements):
try:
v6_prefixes.append(ip_network(match.group(1), strict=False))
except Exception as e:
# Skip false matches from comments or other text
pass
return v4_prefixes, v6_prefixes return v4_prefixes, v6_prefixes

View File

@@ -13,7 +13,7 @@ Usage:
import sys import sys
from ipaddress import ip_network, collapse_addresses from ipaddress import ip_network, collapse_addresses
from pathlib import Path from pathlib import Path
from datetime import datetime from datetime import datetime, UTC
def read_lines(path_or_dash): def read_lines(path_or_dash):
if path_or_dash == "-": if path_or_dash == "-":
@@ -43,55 +43,69 @@ def aggregate_prefixes(lines):
agg_v6 = list(collapse_addresses(sorted(v6, key=lambda x: (int(x.network_address), x.prefixlen)))) agg_v6 = list(collapse_addresses(sorted(v6, key=lambda x: (int(x.network_address), x.prefixlen))))
return agg_v4, agg_v6, invalid return agg_v4, agg_v6, invalid
def make_nft_config(agg_v4, agg_v6, comment=None): def make_nft_config(agg_v4, agg_v6, comment=None, usage_profile="vm_input"):
if usage_profile == "vk_forward":
set_v4_name = "blacklist_vk_v4"
set_v6_name = "blacklist_vk_v6"
rule_v4 = f'sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip daddr @{set_v4_name} counter reject'
rule_v6 = f'sudo nft add rule inet filter forward iifname "<VPN_IFACE>" ip6 daddr @{set_v6_name} counter reject'
else:
set_v4_name = "blacklist_v4"
set_v6_name = "blacklist_v6"
rule_v4 = f"sudo nft add rule inet filter input ip saddr @{set_v4_name} counter reject"
rule_v6 = f"sudo nft add rule inet filter input ip6 saddr @{set_v6_name} counter reject"
lines = [] lines = []
lines.append("# Autogenerated nftables blacklist") lines.append("# Autogenerated nftables blacklist")
lines.append(f"# Generated: {datetime.utcnow().isoformat()}Z") lines.append(f"# Generated: {datetime.now(UTC).isoformat().replace('+00:00', 'Z')}")
if comment: if comment:
lines.append(f"# {comment}") lines.append(f"# {comment}")
lines.append(f"# IPv4: {len(agg_v4)}, IPv6: {len(agg_v6)}") lines.append(f"# IPv4: {len(agg_v4)}, IPv6: {len(agg_v6)}")
lines.append("#")
lines.append("# Usage:")
lines.append("# sudo nft -f <this-file>")
if usage_profile == "vk_forward":
lines.append("# # VK egress blocking for VPN clients via NAT/FORWARD")
lines.append("# sudo nft add chain inet filter forward '{ type filter hook forward priority 0; policy accept; }'")
lines.append(f"# {rule_v4}")
lines.append(f"# {rule_v6}")
else:
lines.append("# # VM protection from incoming blacklist sources")
lines.append("# sudo nft add chain inet filter input '{ type filter hook input priority 0; policy accept; }'")
lines.append(f"# {rule_v4}")
lines.append(f"# {rule_v6}")
lines.append("") lines.append("")
lines.append("table inet filter {") lines.append("table inet filter {")
lines.append("") lines.append("")
# Define IPv4 blacklist set # Define IPv4 blacklist set
lines.append(" set blacklist_v4 {") lines.append(f" set {set_v4_name} {{")
lines.append(" type ipv4_addr") lines.append(" type ipv4_addr")
lines.append(" flags interval") lines.append(" flags interval")
if agg_v4: if agg_v4:
lines.append(" elements = {") lines.append(" elements = {")
for i, net in enumerate(agg_v4): for i, net in enumerate(agg_v4):
comma = "," if i < len(agg_v4) - 1 else "" comma = "," if i < len(agg_v4) - 1 else ""
lines.append(f" {net.with_prefixlen}{comma}") rendered_net = net.with_prefixlen if hasattr(net, "with_prefixlen") else str(net)
lines.append(f" {rendered_net}{comma}")
lines.append(" }") lines.append(" }")
lines.append(" }") lines.append(" }")
lines.append("") lines.append("")
# Define IPv6 blacklist set # Define IPv6 blacklist set
lines.append(" set blacklist_v6 {") lines.append(f" set {set_v6_name} {{")
lines.append(" type ipv6_addr") lines.append(" type ipv6_addr")
lines.append(" flags interval") lines.append(" flags interval")
if agg_v6: if agg_v6:
lines.append(" elements = {") lines.append(" elements = {")
for i, net in enumerate(agg_v6): for i, net in enumerate(agg_v6):
comma = "," if i < len(agg_v6) - 1 else "" comma = "," if i < len(agg_v6) - 1 else ""
lines.append(f" {net.with_prefixlen}{comma}") rendered_net = net.with_prefixlen if hasattr(net, "with_prefixlen") else str(net)
lines.append(f" {rendered_net}{comma}")
lines.append(" }") lines.append(" }")
lines.append(" }") lines.append(" }")
lines.append("") lines.append("")
# Define input chain with set lookups
lines.append(" chain input {")
lines.append(" type filter hook input priority 0;")
lines.append(" policy accept;")
lines.append("")
lines.append(" ct state { established, related } accept")
lines.append("")
if agg_v4:
lines.append(" ip saddr @blacklist_v4 counter drop")
if agg_v6:
lines.append(" ip6 saddr @blacklist_v6 counter drop")
lines.append(" }")
lines.append("}") lines.append("}")
return "\n".join(lines) return "\n".join(lines)
@@ -119,7 +133,8 @@ def main(argv):
if not any(line.strip() and not line.strip().startswith("#") for line in lines): if not any(line.strip() and not line.strip().startswith("#") for line in lines):
print("WARNING: input contains no prefixes (empty or only comments). Nothing to aggregate.") print("WARNING: input contains no prefixes (empty or only comments). Nothing to aggregate.")
nft_conf = make_nft_config([], [], comment="Empty input produced no prefixes") profile = "vk_forward" if "vk" in Path(infile).name.lower() else "vm_input"
nft_conf = make_nft_config([], [], comment="Empty input produced no prefixes", usage_profile=profile)
write_output(outfile, nft_conf) write_output(outfile, nft_conf)
return 0 return 0
@@ -137,7 +152,8 @@ def main(argv):
for n in agg_v6: for n in agg_v6:
print(" v6:", n) print(" v6:", n)
nft_conf = make_nft_config(agg_v4, agg_v6, comment=f"Source: {infile}") profile = "vk_forward" if "vk" in Path(infile).name.lower() else "vm_input"
nft_conf = make_nft_config(agg_v4, agg_v6, comment=f"Source: {infile}", usage_profile=profile)
try: try:
write_output(outfile, nft_conf) write_output(outfile, nft_conf)
except Exception as e: except Exception as e:
@@ -146,9 +162,12 @@ def main(argv):
print("Done.") print("Done.")
print("Load with: sudo nft -f <output.conf>") print("Load with: sudo nft -f <output.conf>")
print("View counters: sudo nft list chain inet filter input -a") if profile == "vk_forward":
print("View sets: sudo nft list set inet filter blacklist_v4") print("View sets: sudo nft list set inet filter blacklist_vk_v4")
print(" sudo nft list set inet filter blacklist_v6") print(" sudo nft list set inet filter blacklist_vk_v6")
else:
print("View sets: sudo nft list set inet filter blacklist_v4")
print(" sudo nft list set inet filter blacklist_v6")
return 0 return 0
if __name__ == "__main__": if __name__ == "__main__":

View File

@@ -1,60 +1,94 @@
#!/usr/bin/env python3 #!/usr/bin/env python3
import requests
import argparse import argparse
import re import re
from cymruwhois import Client import sys
import requests
from pylib.whois import whois_query from pylib.whois import whois_query
ASN_RE = re.compile(r"\bAS\d+\b", re.IGNORECASE)
def get_as_prefixes(asn): def get_as_prefixes(asn):
url = f"https://stat.ripe.net/data/announced-prefixes/data.json?resource={asn}" url = f"https://stat.ripe.net/data/announced-prefixes/data.json?resource={asn}"
response = requests.get(url) response = requests.get(url, timeout=30)
if response.status_code == 200: response.raise_for_status()
data = response.json() data = response.json()
prefixes = data['data']['prefixes'] prefixes = data["data"]["prefixes"]
return [prefix['prefix'] for prefix in prefixes] return [prefix["prefix"] for prefix in prefixes]
else:
return []
def convert_to_raw_github_url(url): def convert_to_raw_github_url(url):
return url.replace("https://github.com/", "https://raw.githubusercontent.com/").replace("/blob", "") return url.replace("https://github.com/", "https://raw.githubusercontent.com/").replace("/blob", "")
def print_prefixes(asn):
line = re.sub(r'[^AS0-9]', '', asn) def normalize_asn(value):
if not args.quiet: match = ASN_RE.search(value)
print(f"# Networks announced by {line}") if match:
response = whois_query(line, "as-name", True) return match.group(0).upper()
return None
def print_prefixes(asn, quiet=False):
normalized_asn = normalize_asn(asn)
if normalized_asn is None:
return
if not quiet:
print(f"# Networks announced by {normalized_asn}")
response = whois_query(normalized_asn, "as-name", True)
if response is not None: if response is not None:
info = response.strip() info = response.strip()
print(f"# AS-Name (ORG): {info}") print(f"# AS-Name (ORG): {info}")
prefixes = get_as_prefixes(line) prefixes = get_as_prefixes(normalized_asn)
for prefix in prefixes: for prefix in prefixes:
print(prefix) print(prefix)
def extract_asses(asn_filename_or_url):
if asn_filename_or_url.startswith('AS'): def extract_asses(asn_filename_or_url, quiet=False):
print_prefixes(asn_filename_or_url) if normalize_asn(asn_filename_or_url) and not asn_filename_or_url.startswith(("http://", "https://")):
print_prefixes(asn_filename_or_url, quiet=quiet)
return None return None
if asn_filename_or_url.startswith('http://') or asn_filename_or_url.startswith('https://'): if asn_filename_or_url.startswith("http://") or asn_filename_or_url.startswith("https://"):
if 'github.com' in asn_filename_or_url: if "github.com" in asn_filename_or_url:
asn_filename_or_url = convert_to_raw_github_url(asn_filename_or_url) asn_filename_or_url = convert_to_raw_github_url(asn_filename_or_url)
response = requests.get(asn_filename_or_url) response = requests.get(asn_filename_or_url, timeout=30)
lines = response.text.split('\n') response.raise_for_status()
lines = response.text.splitlines()
else: else:
with open(asn_filename_or_url, 'r') as file: with open(asn_filename_or_url, "r", encoding="utf-8") as file:
lines = file.readlines() lines = file.readlines()
for line in lines: for line in lines:
if re.match(r'^AS.*', line): normalized_asn = normalize_asn(line)
print_prefixes(line) if normalized_asn:
print_prefixes(normalized_asn, quiet=quiet)
return None return None
parser = argparse.ArgumentParser(description='./as_network_list.py -q AS61280')
parser.add_argument('asn_filename_or_url', help='The AS number to get networks / The file or URL to extract AS numbers from.')
parser.add_argument('-q', '--quiet', action='store_true', help='Disable all output except prefixes.')
args = parser.parse_args()
extract_asses(args.asn_filename_or_url) def build_parser():
parser = argparse.ArgumentParser(description="./network_list_from_as.py -q AS61280")
parser.add_argument("asn_filename_or_url", help="The AS number to get networks / The file or URL to extract AS numbers from.")
parser.add_argument("-q", "--quiet", action="store_true", help="Disable all output except prefixes.")
return parser
def main(argv=None):
parser = build_parser()
args = parser.parse_args(argv)
try:
extract_asses(args.asn_filename_or_url, quiet=args.quiet)
except requests.RequestException as exc:
print(f"ERROR: failed to fetch ASN data: {exc}", file=sys.stderr)
return 1
except OSError as exc:
print(f"ERROR: failed to read input: {exc}", file=sys.stderr)
return 1
return 0
if __name__ == "__main__":
sys.exit(main())

View File

@@ -1,41 +1,72 @@
#!/usr/bin/env python3 #!/usr/bin/env python3
import argparse import argparse
import requests
import re import re
from pylib.whois import whois_query import sys
from pylib.ip import convert_to_cidr
import requests
from pylib.ip import convert_to_cidr
from pylib.whois import whois_query
def convert_to_raw_github_url(url): def convert_to_raw_github_url(url):
return url.replace("https://github.com/", "https://raw.githubusercontent.com/").replace("/blob", "") return url.replace("https://github.com/", "https://raw.githubusercontent.com/").replace("/blob", "")
def extract_netname(filename_or_url):
if filename_or_url.startswith('http://') or filename_or_url.startswith('https://'): def iter_netnames(lines):
if 'github.com' in filename_or_url: for line in lines:
stripped = line.strip()
if not stripped or stripped.startswith("#"):
continue
if re.match(r"^netname:", stripped, re.IGNORECASE):
yield stripped.split(":", 1)[1].strip()
else:
yield stripped
def extract_netname(filename_or_url, quiet=False):
if filename_or_url.startswith("http://") or filename_or_url.startswith("https://"):
if "github.com" in filename_or_url:
filename_or_url = convert_to_raw_github_url(filename_or_url) filename_or_url = convert_to_raw_github_url(filename_or_url)
response = requests.get(filename_or_url) response = requests.get(filename_or_url, timeout=30)
lines = response.text.split('\n') response.raise_for_status()
lines = response.text.splitlines()
else: else:
with open(filename_or_url, 'r') as file: with open(filename_or_url, "r", encoding="utf-8") as file:
lines = file.readlines() lines = file.readlines()
for line in lines: for netname in iter_netnames(lines):
if re.match(r'^netname:', line): response = whois_query(netname, "inetnum")
netname = line.split(':')[1].strip() if response is not None and len(response) > 0:
response = whois_query(netname, "inetnum") if not quiet:
if response is not None and len(response) > 0: print(f"# Network name: {netname}")
if not args.quiet: for cidr in response:
print(f"# Network name: {netname}") for network in convert_to_cidr(cidr):
for cidr in response: print(network)
net = convert_to_cidr(cidr)
net = net[0]
print(net)
return None return None
parser = argparse.ArgumentParser(description='Extract netname from file.')
parser.add_argument('filename_or_url', help='The file or URL to extract netnames from.')
parser.add_argument('-q', '--quiet', action='store_true', help='Disable all output except prefixes.')
args = parser.parse_args()
extract_netname(args.filename_or_url) def build_parser():
parser = argparse.ArgumentParser(description="Extract netname from file.")
parser.add_argument("filename_or_url", help="The file or URL to extract netnames from.")
parser.add_argument("-q", "--quiet", action="store_true", help="Disable all output except prefixes.")
return parser
def main(argv=None):
parser = build_parser()
args = parser.parse_args(argv)
try:
extract_netname(args.filename_or_url, quiet=args.quiet)
except requests.RequestException as exc:
print(f"ERROR: failed to fetch netname data: {exc}", file=sys.stderr)
return 1
except OSError as exc:
print(f"ERROR: failed to read input: {exc}", file=sys.stderr)
return 1
return 0
if __name__ == "__main__":
sys.exit(main())

View File

@@ -1,62 +1,84 @@
#!/usr/bin/env python3 #!/usr/bin/env python3
import argparse import argparse
import re
import json import json
from pylib.ip import convert_to_cidr import sys
from pylib.ip import convert_to_cidr
country = "RU" country = "RU"
def normalize_record(record):
if not record:
return None
if record.get("country") != country:
return None
normalized = dict(record)
normalized["inetnum"] = convert_to_cidr(record["inetnum"])
return normalized
def parse(filename, output_text, output_json): def parse(filename, output_text, output_json):
cList = [] c_list = []
record = {} record = {}
with open(filename, 'r', encoding='latin-1') as f: with open(filename, "r", encoding="latin-1") as f:
lines = f.readlines() lines = f.readlines()
f.close()
for line in lines: for line in lines:
if re.match(r'^inetnum:', line): if line.startswith("inetnum:"):
if record: normalized = normalize_record(record)
record['inetnum'] = convert_to_cidr(record['inetnum']) if normalized is not None:
if record['country'] == country: c_list.append(normalized)
# print(record)
cList.append(record)
record = {} record = {}
record['inetnum'] = line.split('inetnum:', 1)[1].strip() record["inetnum"] = line.split("inetnum:", 1)[1].strip()
record['descr'] = '' record["descr"] = ""
record['netname'] = '' record["netname"] = ""
record['country'] = '' record["country"] = ""
record['org'] = '' record["org"] = ""
if re.match(r'^netname:', line): if line.startswith("netname:"):
record['netname'] = line.split('netname:', 1)[1].strip() record["netname"] = line.split("netname:", 1)[1].strip()
if re.match(r'^descr:', line): if line.startswith("descr:"):
record['descr'] = str(record['descr'].strip() + ' ' + line.split('descr:', 1)[1].strip()).strip() record["descr"] = str(record["descr"].strip() + " " + line.split("descr:", 1)[1].strip()).strip()
if re.match(r'^mnt-by:', line): if line.startswith("mnt-by:"):
record['netname'] = str(record['netname'].strip() + ' ' + line.split('mnt-by:', 1)[1].strip()).strip() record["netname"] = str(record["netname"].strip() + " " + line.split("mnt-by:", 1)[1].strip()).strip()
if re.match(r'^country:', line): if line.startswith("country:"):
record['country'] = line.split('country:', 1)[1].strip() record["country"] = line.split("country:", 1)[1].strip()
if re.match(r'^org:', line): if line.startswith("org:"):
record['org'] = line.split('org:', 1)[1].strip() record["org"] = line.split("org:", 1)[1].strip()
if record:
cList.append(record)
with open(output_json, 'w') as f: normalized = normalize_record(record)
json.dump(cList, f, indent=4) if normalized is not None:
f.close() c_list.append(normalized)
with open(output_text, 'w') as f: with open(output_json, "w", encoding="utf-8") as f:
for record in cList: json.dump(c_list, f, indent=4)
for net in record['inetnum']:
f.write(net + ' ' + record['netname'] + ' (' + record['org'] + ') [' + record['descr'] + ']\n')
f.close()
parser = argparse.ArgumentParser(description='Parse RIPE DB for getting a list of RU networks.') with open(output_text, "w", encoding="utf-8") as f:
parser.add_argument('filename', help='ripe.db.inetnum file to parse.') for item in c_list:
parser.add_argument('output_text', help='write text db to...') for net in item["inetnum"]:
parser.add_argument('output_json', help='write json do to...') f.write(net + " " + item["netname"] + " (" + item["org"] + ") [" + item["descr"] + "]\n")
args = parser.parse_args()
if not (args.filename):
parser.print_help()
exit()
parse(args.filename, args.output_text, args.output_json) def build_parser():
parser = argparse.ArgumentParser(description="Parse RIPE DB for getting a list of RU networks.")
parser.add_argument("filename", help="ripe.db.inetnum file to parse.")
parser.add_argument("output_text", help="write text db to...")
parser.add_argument("output_json", help="write json db to...")
return parser
def main(argv=None):
parser = build_parser()
args = parser.parse_args(argv)
try:
parse(args.filename, args.output_text, args.output_json)
except OSError as exc:
print(f"ERROR: {exc}", file=sys.stderr)
return 1
return 0
if __name__ == "__main__":
sys.exit(main())

View File

@@ -0,0 +1,26 @@
import tempfile
import unittest
from pathlib import Path
from check_nft_blacklist import check_ip_in_blacklist, parse_nft_config
from generate_nft_blacklist import make_nft_config
class CheckNftBlacklistTests(unittest.TestCase):
def test_vk_sets_are_parsed(self):
config = make_nft_config(["87.240.128.0/18"], [], usage_profile="vk_forward")
with tempfile.TemporaryDirectory() as tmpdir:
config_path = Path(tmpdir) / "blacklist-vk-v4.nft"
config_path.write_text(config, encoding="utf-8")
v4_prefixes, v6_prefixes = parse_nft_config(config_path)
blocked, prefix = check_ip_in_blacklist("87.240.128.1", v4_prefixes, v6_prefixes)
self.assertEqual(len(v4_prefixes), 1)
self.assertTrue(blocked)
self.assertEqual(str(prefix), "87.240.128.0/18")
if __name__ == "__main__":
unittest.main()

View File

@@ -0,0 +1,25 @@
import unittest
from generate_nft_blacklist import make_nft_config
class GenerateNftBlacklistTests(unittest.TestCase):
def test_general_profile_generates_plain_sets_only(self):
config = make_nft_config(["10.0.0.0/24"], [], usage_profile="vm_input")
self.assertIn("set blacklist_v4", config)
self.assertNotIn("chain input", config)
self.assertIn("ip saddr @blacklist_v4", config)
def test_vk_profile_uses_vk_set_names_and_forward_example(self):
config = make_nft_config(["10.0.0.0/24"], ["2001:db8::/32"], usage_profile="vk_forward")
self.assertIn("set blacklist_vk_v4", config)
self.assertIn("set blacklist_vk_v6", config)
self.assertNotIn("chain forward", config)
self.assertIn("ip daddr @blacklist_vk_v4", config)
self.assertIn("ip6 daddr @blacklist_vk_v6", config)
if __name__ == "__main__":
unittest.main()

View File

@@ -0,0 +1,41 @@
import json
import tempfile
import unittest
from pathlib import Path
from parse_ripe_db import parse
class ParseRipeDbTests(unittest.TestCase):
def test_skips_non_ru_last_record_and_normalizes_last_ru_record(self):
sample = """\
inetnum: 10.0.0.0 - 10.0.0.255
netname: TEST1
country: RU
org: ORG-1
descr: desc1
inetnum: 20.0.0.0 - 20.0.0.255
netname: TEST2
country: US
org: ORG-2
"""
with tempfile.TemporaryDirectory() as tmpdir:
source = Path(tmpdir) / "ripe.db.inetnum"
output_text = Path(tmpdir) / "out.txt"
output_json = Path(tmpdir) / "out.json"
source.write_text(sample, encoding="latin-1")
parse(str(source), str(output_text), str(output_json))
payload = json.loads(output_json.read_text(encoding="utf-8"))
self.assertEqual(len(payload), 1)
self.assertEqual(payload[0]["inetnum"], ["10.0.0.0/24"])
self.assertEqual(payload[0]["country"], "RU")
text_lines = output_text.read_text(encoding="utf-8").splitlines()
self.assertEqual(text_lines, ["10.0.0.0/24 TEST1 (ORG-1) [desc1]"])
if __name__ == "__main__":
unittest.main()