aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorCHEF-KOCH <[email protected]>2015-08-14 21:19:24 +0200
committerCHEF-KOCH <[email protected]>2015-08-14 21:19:24 +0200
commitf7c3205f7024530e96b816980bee71415654f9fd (patch)
tree374dd5705cfd2984a651ee169c1b75bce0e42b04
parentsmall corrections (diff)
downloadnsablocklist-f7c3205f7024530e96b816980bee71415654f9fd.tar.xz
nsablocklist-f7c3205f7024530e96b816980bee71415654f9fd.zip
added Terrorist Surveillance Program CIDR
-rw-r--r--HOSTS.txt12
-rw-r--r--README.md3
-rw-r--r--Super Ranges.txt142
-rw-r--r--problematic.txt20
4 files changed, 162 insertions, 15 deletions
diff --git a/HOSTS.txt b/HOSTS.txt
index fc29954..5de5ca8 100644
--- a/HOSTS.txt
+++ b/HOSTS.txt
@@ -111,11 +111,6 @@
0.0.0.0 dns3.alphared.com
0.0.0.0 dns2.alphared.com
0.0.0.0 dns1.alphared.com
-0.0.0.0 ns4.yahoo.com
-0.0.0.0 ns2.yahoo.com
-0.0.0.0 ns5.yahoo.com
-0.0.0.0 ns1.yahoo.com
-0.0.0.0 ns3.yahoo.com
0.0.0.0 ns1.nosc.mil
0.0.0.0 hamradio.ucsd.edu
0.0.0.0 dns.iarc.org
@@ -141,13 +136,6 @@
0.0.0.0 ns63.worldnic.com
0.0.0.0 ns2.anteldata.com.uy
0.0.0.0 ns1.anteldata.com.uy
-0.0.0.0 dns-06.ns.aol.com
-0.0.0.0 dns-07.ns.aol.com
-0.0.0.0 daha-07.ns.aol.com
-0.0.0.0 daha-02.ns.aol.com
-0.0.0.0 daha-01.ns.aol.com
-0.0.0.0 dns-02.ns.aol.com
-0.0.0.0 dns-01.ns.aol.com
0.0.0.0 ns2.apogeetelecom.com
0.0.0.0 ns1.apogeetelecom.com
0.0.0.0 nserver2.apple.com
diff --git a/README.md b/README.md
index 256f67d..2ead033 100644
--- a/README.md
+++ b/README.md
@@ -1,5 +1,6 @@
NSABlocklist© file original created under the MITM license 2015 by CHEF-KOCH.
+
Description:
------------
This isn't yet another [hosts file](https://en.wikipedia.org/wiki/Hosts_(file)) or [DNSBL](https://en.wikipedia.org/wiki/DNSBL) that claims to secure the web, it's specially designed to _stop_ known NSA / GCHQ / C.I.A. or F.B.I. servers from beeing connecting to you without permission. The list is not designed to block common malware, spyware or anything that is already avaible on the net via a proper designed hosts for such case. This hosts or the super ranges lists could block some of your sites/servers you may need, so you'll be warned!
@@ -48,7 +49,7 @@ ToDo:
- [ ] Find invalid entries or domains that aren't online anymore (high-prio)
- [ ] Fix/merge all reported [issues](https://github.com/CHEF-KOCH/NSABlocklist/issues)
- [ ] Add explanation how to identify compromised domains/DNS
- - [ ] May add solutions example to e.g. secure DNS via DNSCrypt or other solutions
+ - [ ] Add solutions to e.g. secure DNS via DNSCrypt/DANE
Project History
diff --git a/Super Ranges.txt b/Super Ranges.txt
index 132e564..d3af1ce 100644
--- a/Super Ranges.txt
+++ b/Super Ranges.txt
@@ -165,4 +165,144 @@ or in another format:
218.0.0.0 � 218.255.255.255
220.0.0.0 � 220.255.255.255
221.0.0.0 � 221.255.255.255
-222.0.0.0 � 222.255.255.255 \ No newline at end of file
+222.0.0.0 � 222.255.255.255
+
+
+
+# Part of the 'Terrorist Surveillance Program' #
+83.27.0.0 - 83.27.255.255
+170.86.0.0 - 170.86.255.255
+62.212.234.128 - 62.212.234.255
+81.57.102.0 - 81.57.103.255
+201.5.0.0 - 201.5.255.255
+213.151.160.0 - 213.151.191.255
+70.83.15.0 - 70.83.15.255
+166.128.0.0 - 166.255.255.255
+60.64.0.0 - 60.159.255.255
+142.191.0.0 - 142.191.255.255
+83.65.121.32 - 83.65.121.39
+12.108.2.0 - 12.108.3.255
+65.128.0.0 - 65.159.255.255
+24.158.208.0 - 24.158.223.255
+86.97.64.0 - 86.97.95.255
+201.239.128.0 - 201.239.255.255
+68.36.0.0 - 68.36.255.255
+70.44.0.0 - 70.44.255.255
+64.231.200.0 - 64.231.203.255
+189.128.0.0 - 189.255.255.255
+216.155.192.0 - 216.155.207.255
+121.6.0.0 - 121.7.255.255
+71.96.0.0 - 71.127.255.255
+190.213.196.0 - 190.213.196.255
+80.72.230.0 - 80.72.230.255
+58.29.0.0 - 58.29.255.25
+121.128.0.0 - 121.191.255.255
+88.191.3.0 - 88.191.248.255
+58.72.0.0 - 58.79.255.255
+70.16.0.0 - 70.23.255.255
+200.57.192.0 - 200.57.255.255
+201.5.0.0 - 201.5.255.255
+124.168.0.0 - 124.168.255.255
+211.200.0.0 - 211.205.255.255
+78.252.0.0 - 78.252.255.255
+59.0.0.0 - 59.31.255.255
+72.64.0.0 - 72.95.255.255
+211.200.0.0 - 211.205.255.255
+145.53.0.0 - 145.53.255.255
+71.200.0.0 - 71.200.127.255
+60.206.0.0 - 60.207.255.255
+194.178.125.48 - 194.178.125.55
+98.226.0.0 - 98.226.255.255
+201.88.0.0 - 201.88.255.255
+205.209.128.0 - 205.209.191.255
+51.0.0.0 - 51.255.255.255
+70.64.0.0 - 70.79.255.255
+70.112.0.0 - 70.127.255.255
+202.84.96.0 - 202.84.127.255
+70.32.0.0 - 70.32.31.255
+207.218.192.0 - 207.218.255.255
+69.31.88.0 - 69.31.89.255
+198.74.0.0 - 198.74.255.255
+221.0.0.0 - 221.3.127.255
+72.144.0.0 - 72.159.255.255
+220.96.0.0 - 220.99.255.255
+82.88.0.0 - 82.91.255.255
+216.128.73.0 - 216.128.73.255
+
+
+
+
+# Or as CIDR
+83.27.0.0/16
+170.86.0.0/16
+62.212.234.128/25
+81.57.102.0/23
+201.5.0.0/16
+213.151.160.0/19
+70.83.15.0/24
+166.128.0.0/9
+60.64.0.0/10
+60.128.0.0/11
+142.191.0.0/16
+83.65.121.32/29
+12.108.2.0/23
+65.128.0.0/11
+24.158.208.0/20
+86.97.64.0/19
+201.239.128.0/17
+68.36.0.0/16
+70.44.0.0/16
+64.231.200.0/22
+189.128.0.0/9
+216.155.192.0/20
+121.6.0.0/15
+71.96.0.0/11
+190.213.196.0/24
+80.72.230.0/24
+58.29.0.0/16
+121.128.0.0/10
+88.191.3.0/24
+88.191.4.0/22
+88.191.8.0/21
+88.191.16.0/20
+88.191.32.0/18
+88.191.64.0/17
+88.191.128.0/18
+88.191.192.0/19
+88.191.224.0/20
+88.191.240.0/21
+88.191.248.0/24
+58.72.0.0/13
+70.16.0.0/13
+200.57.192.0/18
+201.5.0.0/16
+124.168.0.0/16
+211.200.0.0/14
+211.204.0.0/15
+78.252.0.0/16
+59.0.0.0/11
+72.64.0.0/11
+211.200.0.0/14
+211.204.0.0/15
+145.53.0.0/16
+71.200.0.0/17
+60.206.0.0/15
+194.178.125.48/29
+98.226.0.0/16
+201.88.0.0/16
+205.209.128.0/18
+51.0.0.0/8
+70.64.0.0/12
+70.112.0.0/12
+202.84.96.0/19
+70.32.0.0/19
+207.218.192.0/18
+69.31.88.0/23
+198.74.0.0/16
+221.0.0.0/15
+221.2.0.0/16
+221.3.0.0/17
+72.144.0.0/12
+220.96.0.0/14
+82.88.0.0/14
+216.128.73.0/24 \ No newline at end of file
diff --git a/problematic.txt b/problematic.txt
index 27797a5..e996015 100644
--- a/problematic.txt
+++ b/problematic.txt
@@ -31,4 +31,22 @@ Mountain View CA US
ns3.google.com [216.239.36.10]
ns4.google.com [216.239.38.10]
ns1.google.com [216.239.32.10]
-ns2.google.com [216.239.34.10] \ No newline at end of file
+ns2.google.com [216.239.34.10]
+
+
+# AOL [NSA-affiliated IP ranges]
+0.0.0.0 dns-06.ns.aol.com
+0.0.0.0 dns-07.ns.aol.com
+0.0.0.0 daha-07.ns.aol.com
+0.0.0.0 daha-02.ns.aol.com
+0.0.0.0 daha-01.ns.aol.com
+0.0.0.0 dns-02.ns.aol.com
+0.0.0.0 dns-01.ns.aol.com
+
+
+# YahhooooooooOooOo [NSA-affiliated IP ranges]
+0.0.0.0 ns4.yahoo.com
+0.0.0.0 ns2.yahoo.com
+0.0.0.0 ns5.yahoo.com
+0.0.0.0 ns1.yahoo.com
+0.0.0.0 ns3.yahoo.com \ No newline at end of file