• Blocklist Manager
  • BISS Blocklists
  • Protowall
  • Hosts Manager
  • Blocklist Converter
  • Latest News
  • XeroAgent Privacy Network

For more information please visit  The Blocklist Manager 2.7.7 page...

BISS IP Blocklists

The BISS IP Blocklists are provided as a free service to help add another layer to your security toolkit.. The IP Blocklists are continuously researched and updated daily to keep up with current internet based threats in many different categories including Malware/Spyware sites, Ads - Trackers, Hijacked and Unallocated Bogon IP ranges, Anti P2P enforcers, Hackers/Crackers, Web Spiders, Bots, Crawlers, Web Server Exploits and more.

Our free Blocklist Manager software is available to download and merge your blocklists into one file or alternatively you can download the files individually from our IP Blocklists download page.

For information about the purposes and contents of each Blocklist, please view the BISS IP Blocklists FAQ.

Protowall

A powerful yet extremely light weight NDIS driver based IP filter / IP blocker. Protowall is designed to run independently or alongside a software firewall without any conflict for the sole purpose of filtering all inbound / outbound network connections and blocking large amounts of IP addresses where almost all other personal firewalls cannot.

Hosts Manager

A comprehensive application for downloading the BISS HOSTS file, with an extensive array of tools for superior HOSTS file management.

For more information please visit  The Hosts Manager page...

Online Blocklist Converter

The original online Blocklist Converter by Bluetack - The BLC allows users to input IP addresses or load a blocklist in one format and convert to another format with options to have the output list sorted and formatted in varying ways..

XeroAgent Privacy Network

Coming Soon - A new network of anonymous web sites you can trust for a little bit more personal privacy against the growing privacy intrusions, monitoring of our online browsing habits and escalating online dangers we all face. Easy to modify web filtering options are available on every portal site to control and restrict all web page elements for a less obtrusive and hopefully safer online browsing experience

Enhance your privacy and shield your IP address from detection with the XeroSurf anonymous web proxy.

BISS IP Blocklists FAQ

Wednesday, 14 January 2009

What are the BISS IP Blocklists ?

BISS's IP Blocklists are plain text files containing lists of IP addresses gathered from many different sources such as public whois databases, firewall/server logs, user reports and years of continuous research.

The IP Blocklists are compiled for security software applications such as Outpost Firewall or Online Armor or IP Blocking programs such as Protowall and Peerguardian to load in order to block access / restrict internet/network connections to and from a computer system.

There are many P2P applications such as Emule and Utorrent which also provide users with IP filtering protection.

The IP blocklists are available for download using the Blocklist Manager or the Downloads section of this site.

Recommended Lists

Originally a small number of blocklists available in the Blocklist Manager were set as default recomended lists. Due to each persons individual preferences there are no longer any default lists in the Blocklist Manager. We now leave the choices up to you, but if you would like more information to help you decide, please feel free to visit the BISS forum for assistance.

The blocklists are currently organised by the level of threat, Level 1 is the highest level of threat, Level 3 is currently the lowest level. Loading all available lists into your firewall / IP blocker should be done with caution.

Some lists may block websites we have not excluded yet or are hosted in unfriendly territory.. You may need to edit lists further to suit your personal preferences in these situations. Other lists like the spyware, ads-trackers etc should be fairly self explanatory.

What is in the blocklists ?

LEVEL 1 BLOCKLIST

Companies or organizations who are clearly involved with trying to stop filesharing (e.g. Baytsp, MediaDefender, Mediasentry a.o.).
Companies which anti-p2p activity has been seen from.
Companies that produce or have a strong financial interest in copyrighted material (e.g. music, movie, software industries a.o.).
Government ranges or companies that have a strong financial interest in doing work for governments. Legal industry ranges.
IPs or ranges of ISPs from which anti-p2p activity has been observed. Basically this list will block all kinds of internet connections that most people would rather not have during their internet travels.

For more information on this list check the Anti-P2P & Fake Files Research Section on the forum.

PLEASE NOTE: The Level1 list is recommended for general P2P users, but it all comes down to your personal choice.

Have a look through each of the lists and decide if you want to use them or not.
Please do not blame us if something like your favourite website is blocked, because we will rarely remove something unless it is classified incorrectly.

LEVEL 2 BLOCKLIST

General corporate ranges.
Ranges used by labs or researchers.
Proxies.

LEVEL 3 BLOCKLIST

Many suspicious portal-type websites.
ISP ranges that may be dodgy for some reason, or media owned / related.
Anti P2P friendly web hosts.
Ranges that belong to an individual, but which have not been determined to be used by a particular company.
Ranges for things that are unusual in some way. The L3 list is aka the paranoid list.

SPYWARE BLOCKLIST

This list is a regularly updated compilation of known malicious MALWARE, SPYWARE and ADWARE IP Address ranges.
It is compiled from our own research and various other sources.
The SPYWARE blocklist may include data from other available Spyware Blacklists, HOSTS files, from research found at Anti-Spyware support forums, logs of Spyware victims and also from the Malware Research Section here at BISS.
For more information on this list check our Malware IP Research Section on the forum.

DShield Recommended BlockList

This list contains known Hackers and such people in it.
More information can be found at the DShield Website

Microsoft List

This list covers the known Microsoft Corp ranges that are not on Level1, as well as their known associated IP ranges from around the world.

AD TRACKERS BLOCKLIST

This list is constructed to block connections from advertising - marketing research data tracking sites, bad pop-ups...
For more information check out the General IP Research Section on our forum.

Educational Institution Ranges - EDU BLOCKLIST

This list contains known Educational Institutions - University IP ranges - Educational Networks - School Districts a.o..

Tor / Proxy BlockList

This list has been compiled from a list of Tor servers and various other proxy servers.

SPIDERS BLOCKLIST

Automated software programs also known as spiders or bots, survey the Web and build their databases for search engines and some are used to track people down to automatically serve them with copyright violation notices. This list is intended to be used by webmasters to block hostile spiders from their web sites.
For more information on this list check out the Webspiders and Bots Sticky

PLEASE NOTE: Google and other less harmful search engines are also blocked by this list.

Master Exclusions

This is a list of websites and other IP's some people may not want to block.

Range Testing Blocklist

This list contains addresses of suspicious IP's that are under investigation. If you see hits that looks suspicious, please report it to the Range Testing Report Section of the forum please.

IANA - Bogon - Hijacked - Non-LAN lists

Concerned Lists
IANA Multicast List
IANA Private List
IANA Reserved List
Bogon List
Hijacked List
Non-LAN List

Below is a short description of what is in these lists:

Internet Assigned Numbers Authority (IANA) List

These are the Internet Assigned Numbers Authority lists. They are for reserved listings and IP addresses that are supposedly not in use as of yet. This list (IANA Private) and possibly the other IANA lists contain IP Ranges that will conflict with your connection if you are one a home network or a company network. You should add the IPs or Ranges that belong to your network to your Exclusions list in the Blocklist Manager.
More information on IANA can be found in the Bluetack IANA FAQ
Another important post for additional information about common IP ranges you may have trouble with and need to unblock to prevent internet connection issues is our IANA Sticky

Bogon List

Contains known Bogon IP-Blocks.
What is a bogon and why should it be blocked?
Note: We do not use the completeWhois bogons list any longer we have switched to:
http://www.cidr-report.org/bogons/freespace-prefix.txt

From CompleteWhois:

Bogons is the name used to describe IP blocks not allocated by IANA and RIRs to ISPs and organizations plus all other IP blocks that are reserved for private or special use by RFCs (the actual term bogons comes from word bogus, as in bogus IP announcements). As these IP blocks are not allocated or specially reserved, such IP blocks should not be routable and used on the internet, however some of these IP blocks do appear on the net primarily used by those individuals and organizations that are often specifically trying to avoid being identified and are often involved in such activities as DoS attacks, email abuse, hacking and other security problems. These activities obviously pose great danger to everyone and ISPs should try to filter all these bad IP routes and we are trying to help in that by working to create complete detailed list of unassigned bogon ips based on whois data.

In other words, if you get hit by an IP address from this range, then they have spoofed their IP address and they, most likely, are trying to do something untoward.

Hijacked List

Contains hijacked IP-Blocks and known IP-Blocks that are used to deliver Spam.
This list is a combination of lists with hijacked IP-Blocks
What is a Hijacked IP Block and why would I want to block it?

From CompleteWhois:

Hijacked IP space are IP blocks that are being used without permission by organizations that have no relation to original organization (or its legal successor) that received the IP block. In essence it's stealing of somebody else's IP resources.

These ranges are being used illegally and are most likely being used for illegal activities. They should not be being used and should therefore be blocked.

Non-LAN List

This list blocks LAN [Local Area Network] IP ranges. It is only recommended for use by people that do not have home networks and want to block the IANA Private address ranges which should not be used on the internet.

Bad Peers [ Previously known as Templist ]

This is a list of people who have been reported for sending corrupt data on p2p, sharing files that contain viruses etc.

Normal IP-Filter

Normal IP-Filter, available for e.g. Azurus as "splist.zip" (zipped) or Emule as "nipfilter.dat.gz" (Gzipped) for loading into Azureus/Emule.

The paranoid IP-Filter will be updated roughly every two weeks, sometimes more.
NOTE: gzip is not supported in Emule Plus

The Normal IP-Filter includes the following lists pre-merged into it:
  • Level1
  • Level2
  • Bogon
  • D-Shield
  • Hijacked IP blocks
  • IANA Multicast
  • IANA Private
  • IANA Reserved
  • Microsoft
  • NonLan list
  • Bad Peers list

Paranoid IP-Filter

Paranoid IP-Filter, available for e.g. Azureus as "psplist.zip" (zipped) or Emule as "pipfilter.dat.gz" (Gzipped) for loading into Azureus/Emule.

The paranoid IP-Filter will be updated roughly every two weeks, sometimes more.
NOTE: gzip is not supported in Emule Plus

The Paranoid IP-Filter includes all lists except the master exclusions list pre-merged into it:
  • Level1
  • Level2
  • Level3
  • Rangetest list
  • Ad Trackers
  • Bogon Ranges
  • D-Shield Recommended
  • Educational Ranges
  • Hijacked IP blocks
  • IANA Multicast
  • IANA Private
  • IANA Reserved
  • Microsoft Related
  • Non-LAN list
  • Spiders list
  • Spyware list
  • Proxy list
  • Bad Peers list

Additional Information

The main blocklists found here at Blocklist Pro and on the BISS config page are updated automatically every day.
All the main available lists can be viewed in the options -> sources panel of the Blocklist Manager.

The extra optional lists are available to add further protection to your online experience, while the main core lists are available as basic protection, please note there is no 100% protection guaranteed against all threats. IP addresses / IP ranges can and do change daily. For this reason you should try to update your blocklists at least once a week.

Using the Blocklist manager you can download these lists and they will merge together into one file and they can be exported to your p2p apps or firewalls via the program or the built-in converter.

Some lists may block large IP ranges and websites, while every effort is taken to avoid blocking these, sometimes it can't be avoided and people are advised to build up personal exclusion lists containing any website IP addresses they do not wish to have blocked in their firewalls.

Information on Excluding IP addresses in BLM:

If your firewall or p2p app is not listed in the Blocklist Manager then please use the Blocklist Converter online page - Note the level 1 list may be too large to load into the converter

If you have a request for a custom Blocklist or a section of the internet please drop us a line in the Blocklist Suggestions Section of the forum.

If you have any new IP addresses to submit please post them in the one of the following sections:

  • Anti-P2P & Fake Files Research
  • General IP Research

The Blocklist Manager

BISS provides a free program called the Blocklist Manager to help users download, sort, merge and export the Blocklists into various formats for your preferred application.

To download the blocklists with The Blocklist Manager, first press the check sources button to download/update your sources list. This file contains the urls / link locations of each blocklist file for the Blocklist Manager to download them.

Next go to Options -> Sources and double click on the name of a blocklist to enable or disable any blocklist that you would like to use ( or not use ). Detailed information about setting BLM options can be found in the How to set up BLM correctly Sticky

Once BLM has downloaded, merged and removed any duplicates, your personalized list can be exported to a text file for use in your chosen IP filtering application.

Picture of Blocklist Manager [ BLM ] Current Sources [ Jan 2009 ]:

Blocklist Manager Sources

BLM 2.7.7 Help link: requires membership:
http://www.bluetack.co.uk/forums/index.php?showtopic=17972

 

Life Support

Enter Amount: